logo elektroda
logo elektroda
X
logo elektroda
REKLAMA
REKLAMA
Adblock/uBlockOrigin/AdGuard mogą powodować znikanie niektórych postów z powodu nowej reguły.

Brak internetu na drugim komputerze w sieci domowej - analiza logów OTL i GMER

BarMos 05 Kwi 2012 14:47 1330 3
REKLAMA
  • #1 10759944
    BarMos
    Poziom 9  
    Posty: 14
    Witam, mam pewien problem, a mianowicie - u mnie w domu są dwa komputery, jeden udostępnia internet drugiemu za pomocą sieci domowej i właśnie na tym drugim nie ma internetu. W ustawieniach sieciowych jest wszystko ok, więc mogą to być jakieś wirusy, dlatego proszę o sprawdzenie logów z OTL i GMER.
    Dodam jeszcze, że skanowałem kompa za pomocą Malwarebytes Anti-Malware, TDSSKiller i Combofixa i znalazło parę wirusów, ale chyba nie wszystko.
    Załączniki:
    • GMER.txt (1.63 KB) Musisz być zalogowany, aby pobrać ten załącznik.
    • OTL.Txt (175.47 KB) Musisz być zalogowany, aby pobrać ten załącznik.
  • REKLAMA
  • Pomocny post
    #2 10760085
    Kolobos
    Spec od komputerów
    Posty: 85165
    Pomógł: 17165
    Ocena: 10443
    Daj log z combofix oraz tdss, do tego extras.txt

    Odinstaluj:
    Zostaw tylko JEDEN antywirus.
    XfireXO Toolbar
    Babylon Toolbar
    DVDVideoSoftTB Toolbar
    Conduit
    Deamon Tools Toolbar
    MyAshampoo Toolbar
    uTorrentBar Toolbar
    SFT_IT Community Toolbar

    Java do aktualizacji -> www.java.com

    Wykonaj skrypt w OTL:

    :OTL
    PRC - [2012-03-27 11:53:16 | 000,099,328 | ---- | M] () -- C:\WINDOWS\system32\33u7OnVi4.com
    PRC - [2012-03-27 11:53:16 | 000,099,328 | ---- | M] () -- C:\WINDOWS\system32\33u7OnVi4.com_
    MOD - [2012-03-27 11:53:16 | 000,099,328 | ---- | M] () -- C:\WINDOWS\system32\33u7OnVi4.com_
    MOD - [2012-03-27 11:53:16 | 000,099,328 | ---- | M] () -- C:\WINDOWS\system32\33u7OnVi4.com
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wpsdrvnt.dll -- (z800mgmt)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mwsarcpkt.dll -- (YahooAUService)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ireike.dll -- (Wpsnuio)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mskssrv.dll -- (wmccds)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\omniserv.dll -- (winpower)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ps2.dll -- (wcontrol)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\hpzid412.dll -- (vulfnths)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ovsecurityserver.dll -- (vmkbd2)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\aniwzcsdservice.dll -- (vmauthdservice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cidaemon.dll -- (VCAM)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\netsvc.dll -- (USRpdA)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\comhost.dll -- (usrbridg)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\VrAcFil.dll -- (UPATC)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dlaboiom.dll -- (tvalz)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SED133x.dll -- (tmtdi)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\se45unic.dll -- (tmcomm)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tnbrlds.dll -- (tiumfwl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ELhid.dll -- (symevent)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\webdriveservice.dll -- (swwd)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\retroexplauncher.dll -- (sweepsrv.sys)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wudfpf.dll -- (ssm_bus)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\matlabserver.dll -- (sqlagent$sony_mediamgr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\oracle_load_balancer_60_client-forms6ip9.dll -- (spsslm)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\flutilssvc.dll -- (speedfan)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\USRpdA.dll -- (spcflt)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iAimFP7.dll -- (sp_clamsrv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\se2Dunic.dll -- (snpstd2)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\CAMFLT.dll -- (SNP2STD)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pduip6000dmemcrdmgr.dll -- (SNMP)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tosrfcom.dll -- (smstsmgr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\rasirda.dll -- (smbusp)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\DCamUSBEMPIA.dll -- (sis162u)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\smtpd32.dll -- (SiRemFil)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\afd.dll -- (si3114r)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\avg7rsw.dll -- (Shockprf)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lmimaint.dll -- (SGHIDI)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Appn.dll -- (SetupSys)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tfsnudfa.dll -- (servicelayer)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nvedavt.dll -- (SenFiltService)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ws2ifsl.dll -- (SE2Emdfl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ar5211.dll -- (SE2Dmdm)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\oracle_load_balancer_60_server-forms6i.dll -- (se2Bnd5)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nuvaud2.dll -- (SE2Bmgmt)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ni_nic.dll -- (se26unic)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\USA49W2KP.dll -- (SE26mgmt)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ati2mtaa.dll -- (SbieDrv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\asc3550.dll -- (SABSVC)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dsNcAdpt.dll -- (s217mgmt)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\CAMCHALA.dll -- (s117mdfl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lcs.dll -- (RTL8023xp)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\foldersize.dll -- (RR2IOMod)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\oracle_load_balancer_60_server-forms6ip9.dll -- (pxfhserd)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\epsonbidirectionalagent.dll -- (pwd_2K)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\FETNDISB.dll -- (ptbsync)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\EpmShd.dll -- (proxyhostdriver)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SRTSPL.dll -- (PPPoEWin)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\BRGSp50.dll -- (pml)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\FA312.dll -- (pensup)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\addfiltr.dll -- (pdlnsx25)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\infrastructure.dll -- (pdlndsdl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\WNIPROT5.dll -- (PCDCODEC)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\netdde.dll -- (papyjoy)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vgasave.dll -- (papycpu2)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\serialkeys.dll -- (p3)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\licensemanagersocket.dll -- (odysseyIM3)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Sunkfiltp.dll -- (nvlddmkm)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nfsds.dll -- (nlsvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pmsveh.dll -- (mysqlinventime)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wps.dll -- (msloop)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ss_mdfl.dll -- (MSFWHLPR)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wacomkey.dll -- (mpfservice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\HFACSVC.dll -- (MobilePreInstallerService)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\3c1807pd.dll -- (mmc_2K)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\CoolerXPDriver.dll -- (mferkdk)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\asuskeyboardservice.dll -- (mfehidk)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Wuser32.dll -- (matlabserver)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pciSd.dll -- (MA8032M)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\imagesrv.dll -- (lxcgcustomerconnect)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\alim1541.dll -- (LwUsbHid)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\es1371.dll -- (LoopBeMidi1)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\COMMONFX.DLL.dll -- (imonnt)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vet-filt.dll -- (iisadmin)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\se45obex.dll -- (iclarityqosservice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cvspydr2.dll -- (iaimtv1)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\F700iob.dll -- (iaantmon)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\aeaudio.dll -- (HSFHWALI)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iam.dll -- (HpqRemHid)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\symappcore.dll -- (hpgate)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lvpopflt.dll -- (fetnd5bv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pepifilter.dll -- (fa_scheduler)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\roxupnprenderer.dll -- (ErrDev)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ifp800.dll -- (EL90X)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\prohlp02.dll -- (edspport)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\odysseyIM3.dll -- (drvmcdb)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tfsnopio.dll -- (DniVad)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\risdptsk.dll -- (dlpwd)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tmxpflt.dll -- (DgiVecp)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\bits.dll -- (cxlpt)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\NWADI.dll -- (CX88ENC)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\symndis.dll -- (cwcwdm)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ndasscsi.dll -- (cusrvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wmccdsls.dll -- (crystalinputfileserver)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\MobilePreInstallerService.dll -- (cpqfcalm)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sfhlp02.dll -- (cportclm)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tbaspi.dll -- (ccsetmgr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SWNC5E00.dll -- (bufserv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\atalk.dll -- (btwusb)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ramaint.dll -- (bthidmgr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\a016mdfl.dll -- (bh611)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wkscfgsrv.dll -- (avgtdi)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vmm.dll -- (avgio)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ipnat.dll -- (ATMsrvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SNMPTRAP.dll -- (ativraxx)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ifp800.dll -- (AtiPcie)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\avsvcmonitor.dll -- (ati2mtaa)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ssm_mdm.dll -- (arc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iwebmsg.dll -- (apfiltrservice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pivotmou.dll -- (allegro)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\licensemanagersocket.dll -- (alertmanager)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ip6fw.dll -- (aic116x)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cpqdmi.dll -- (a016obex)
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.babylon.com/?babsrc=HP_ss&affID=111015&mntrId=44612fcc000000000000001cc0de546f
    IE - HKCU\..\URLSearchHook: {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\prxtbXfir.dll (Conduit Ltd.)
    IE - HKCU\..\URLSearchHook: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll (Conduit Ltd.)
    IE - HKCU\..\URLSearchHook: {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files\MyAshampoo\prxtbMyA0.dll (Conduit Ltd.)
    IE - HKCU\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTor.dll (Conduit Ltd.)
    IE - HKCU\..\SearchScopes,DefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
    IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
    IE - HKCU\..\SearchScopes\{0D7562AE-8EF6-416d-A838-AB665251703A}: "URL" = http://start.facemoods.com/?a=ironto&s={searchTerms}&f=4
    IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://search.babylon.com/web/{searchTerms}?babsrc=SP_ss&affID=111015&mntrId=44612fcc000000000000001cc0de546f
    IE - HKCU\..\SearchScopes\{12995981-2FD6-4BEE-9FB0-B1674E8E5E7E}: "URL" = http://websearch.4shared.com/results?q={searchTerms}
    IE - HKCU\..\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}: "URL" = http://www.daemon-search.com/search?q={searchTerms}
    IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2786678
    FF - prefs.js..browser.search.defaultenginename: "Search the web (Babylon)"
    FF - prefs.js..browser.search.defaultthis.engineName: "XfireXO Customized Web Search"
    FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2304157&SearchSource=3&q={searchTerms}"
    FF - prefs.js..browser.search.order.1: "Search the web (Babylon)"
    FF - prefs.js..browser.search.selectedEngine: "Search the web (Babylon)"
    FF - prefs.js..keyword.URL: "http://search.babylon.com/?babsrc=adbartrp&affID=111015&mntrId=44612fcc000000000000001cc0de546f&q="
    [2012-02-14 21:18:30 | 000,000,000 | ---D | M] (DVDVideoSoftTB Community Toolbar) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ax2to1k.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
    [2012-02-14 21:18:35 | 000,000,000 | ---D | M] (MyAshampoo Community Toolbar) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ax2to1k.default\extensions\{a1e75a0e-4397-4ba8-bb50-e19fb66890f4}
    [2011-10-26 20:06:02 | 000,000,000 | ---D | M] ("Free YouTube Download (Free Studio) Menu") -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ax2to1k.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}
    [2012-03-09 11:29:03 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ax2to1k.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
    [2012-03-18 13:39:53 | 000,000,000 | ---D | M] (SFT_IT Community Toolbar) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ax2to1k.default\extensions\{e29dfa44-501b-45be-be17-393b9e5e058a}
    [2012-02-11 22:53:34 | 000,000,000 | ---D | M] ("DAEMON Tools Toolbar") -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ax2to1k.default\extensions\DTToolbar@toolbarnet.com
    [2011-11-28 16:13:03 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ax2to1k.default\extensions\engine@conduit.com
    [2012-03-21 12:14:03 | 000,000,000 | ---D | M] (Babylon) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ax2to1k.default\extensions\ffxtlbr@babylon.com
    [2011-12-15 12:27:36 | 000,000,917 | ---- | M] () -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ax2to1k.default\searchplugins\conduit.xml
    [2011-09-27 12:02:47 | 000,002,055 | ---- | M] () -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\4ax2to1k.default\searchplugins\daemon-search.xml
    [2012-02-04 13:59:17 | 000,002,179 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\4shared.xml
    [2012-03-21 12:13:47 | 000,002,288 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
    [2011-05-12 19:54:20 | 000,002,049 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fcmdSrch.xml
    O2 - BHO: (Babylon toolbar helper) - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll (Babylon BHO)
    O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
    O2 - BHO: (XfireXO Toolbar) - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\prxtbXfir.dll (Conduit Ltd.)
    O2 - BHO: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll (Conduit Ltd.)
    O2 - BHO: (MyAshampoo Toolbar) - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files\MyAshampoo\prxtbMyA0.dll (Conduit Ltd.)
    O2 - BHO: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTor.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
    O3 - HKLM\..\Toolbar: (XfireXO Toolbar) - {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files\XfireXO\prxtbXfir.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (DVDVideoSoftTB Toolbar) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (Babylon Toolbar) - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll (Babylon Ltd.)
    O3 - HKLM\..\Toolbar: (MyAshampoo Toolbar) - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - C:\Program Files\MyAshampoo\prxtbMyA0.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (uTorrentBar Toolbar) - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTor.dll (Conduit Ltd.)
    O3 - HKCU\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
    O3 - HKCU\..\Toolbar\WebBrowser: (XfireXO Toolbar) - {5E5AB302-7F65-44CD-8211-C1D4CAACCEA3} - C:\Program Files\XfireXO\prxtbXfir.dll (Conduit Ltd.)
    O3 - HKCU\..\Toolbar\WebBrowser: (DVDVideoSoftTB Toolbar) - {872B5B88-9DB5-4310-BDD0-AC189557E5F5} - C:\Program Files\DVDVideoSoftTB\prxtbDVDV.dll (Conduit Ltd.)
    O3 - HKCU\..\Toolbar\WebBrowser: (MyAshampoo Toolbar) - {A1E75A0E-4397-4BA8-BB50-E19FB66890F4} - C:\Program Files\MyAshampoo\prxtbMyA0.dll (Conduit Ltd.)
    O3 - HKCU\..\Toolbar\WebBrowser: (uTorrentBar Toolbar) - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - C:\Program Files\uTorrentBar\prxtbuTor.dll (Conduit Ltd.)
    [2012-03-29 13:21:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\BabylonToolbar
    [2012-03-27 11:55:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\BabylonToolbar
    [2012-03-27 11:55:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Conduit
    [2012-03-27 11:55:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\uTorrentBar
    [2012-03-27 11:55:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\DVDVideoSoftTB
    [2012-03-27 11:55:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\ConduitEngine
    [2012-03-21 12:14:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Media Finder
    [2012-03-21 12:14:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\Media Finder
    [2012-03-21 12:14:05 | 000,000,000 | ---D | C] -- C:\Program Files\BabylonToolbar
    [2012-03-21 12:13:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Babylon
    [2012-03-21 12:13:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Babylon
    [2012-03-21 12:13:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\Babylon
    [2012-04-05 13:21:03 | 000,099,328 | ---- | C] () -- C:\WINDOWS\System32\33u7OnVi4.com
    [2012-03-29 13:21:02 | 000,099,328 | ---- | C] () -- C:\WINDOWS\System32\33u7OnVi4.com_
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At8.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At6.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At48.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At46.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At44.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At42.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At40.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At4.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At38.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At36.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At34.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At32.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At30.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At28.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At26.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At24.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At22.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At20.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At2.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At18.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At16.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At14.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At12.job
    [2012-03-27 11:52:44 | 000,000,366 | ---- | C] () -- C:\WINDOWS\tasks\At10.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At9.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At7.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At5.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At47.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At45.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At43.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At41.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At39.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At37.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At35.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At33.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At31.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At3.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At29.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At27.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At25.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At23.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At21.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At19.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At17.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At15.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At13.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At11.job
    [2012-03-27 11:52:44 | 000,000,364 | ---- | C] () -- C:\WINDOWS\tasks\At1.job
    [2012-03-27 11:52:44 | 000,000,112 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\fa2LrP42b.dat

    :Commands
    [emptytemp]
  • REKLAMA
  • #3 10760279
    BarMos
    Poziom 9  
    Posty: 14
    ok, wykonałem skrypt otl, odinstalowałem te toolbary, a javy nie mogę zaktualizować bo wyskakuje błąd.
    Wrzucam dodatkowe logi:
    Załączniki:
    • TDSSKiller.txt (245.98 KB) Musisz być zalogowany, aby pobrać ten załącznik.
    • Extras.Txt (36.96 KB) Musisz być zalogowany, aby pobrać ten załącznik.
    • ComboFix.txt (30.67 KB) Musisz być zalogowany, aby pobrać ten załącznik.
  • #4 10760431
    Kolobos
    Spec od komputerów
    Posty: 85165
    Pomógł: 17165
    Ocena: 10443
    Daj nowy log z combofix oraz OTL. Napisz jaki blad sie wyswietla.
REKLAMA