Elektroda.pl
Elektroda.pl
X
Please add exception to AdBlock for elektroda.pl.
If you watch the ads, you support portal and users.

hp nx7300 - Zamulony komp

partrol 05 Jun 2013 13:07 2241 6
  • #1
    partrol
    Level 2  
    Mam problem z komputerem od niedawna strasznie zamulił.
    Ccleaner nie pomógł. Formata narazie nie chce robić
    Menager zadań
    hp nx7300 - Zamulony komp
    Specyfikacja kompa
    Procesor: Core 2 Duo T5500 1,66
    Wielkość pamięci RAM: 1GB
    System operacyjny: Windows XP nakładka dt (nie było problemów wcześniej)
    HijackThis
    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 12:56:26, on 2013-06-05
    Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\windows\System32\smss.exe
    C:\windows\system32\winlogon.exe
    C:\windows\system32\services.exe
    C:\windows\system32\lsass.exe
    C:\windows\system32\svchost.exe
    C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    C:\windows\system32\svchost.exe
    C:\windows\system32\svchost.exe
    C:\windows\System32\WLTRYSVC.EXE
    C:\windows\System32\bcmwltry.exe
    C:\windows\system32\spoolsv.exe
    C:\windows\Explorer.EXE
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\Analog Devices\Core\smax4pnp.exe
    C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
    C:\windows\system32\svchost.exe
    C:\Program Files\Java\jre7\bin\jqs.exe
    C:\windows\system32\PnkBstrA.exe
    C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
    C:\WINDOWS\system32\wbem\wmiapsrv.exe
    C:\Program Files\COMODO\COMODO Internet Security\cis.exe
    C:\windows\system32\svchost.exe
    C:\windows\system32\msiexec.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe
  • #3
    partrol
    Level 2  
    Code: text
    Log in, to see the code
  • Helpful post
    #6
    Acorus 20
    Level 43  
    Uruchom OTL i w okno (Własne opcje skanowania/Script)wklej:

    Quote:
    :OTL
    DRV - File not found [Kernel | Disabled | Stopped] -- C:\windows\System32\Drivers\sptd.sys -- (sptd)
    DRV - File not found [Kernel | On_Demand | Stopped] -- C:\windows\system32\drivers\EagleNT.sys -- (EagleNT)
    DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\SysOp\USTAWI~1\Temp\catchme.sys -- (catchme)
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.22apple.com/?utm_source=b&ch=sof&uid=ST9120822AS_5LZ6CPS1&reg=1363108878
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
    IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=1&systemid=410&sr=0&q={searchTerms}
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-search.com/?affID=119816&tt=190313_wo3&babsrc=HP_ss&mntrId=0852001A4B6BDB6B
    IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = http://www.delta-search.com/?q={searchTerms}&affID=119357&tt=gc_&babsrc=SP_ss&mntrId=0852001A4B6BDB6B
    IE - HKCU\..\SearchScopes\{96bd48dd-741b-41ae-ac4a-aff96ba00f7e}: "URL" = http://www.bigseekpro.com/search/browser/hypercam/{F6444048-EA9F-436A-A040-98C297438BC6}?q={searchTerms}
    IE - HKCU\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410}: "URL" = http://dts.search-results.com/sr?src=ieb&appid=1&systemid=410&sr=0&q={searchTerms}
    IE - HKCU\..\SearchScopes\{A0C7C6D3-539E-4136-B568-3D5EB4FA414E}: "URL" = http://searchou.com/?q={searchTerms}&id=085277ae000000000000001a4b6bdb6b&r=359
    IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2481033
    IE - HKCU\..\SearchScopes\{B388CA98-8B13-45AF-B70C-7B813C108C6C}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ATU3&o=14594&src=crm&q={searchTerms}&locale=&apn_ptnrs=FV&apn_dtid=YYYYYYYYPL&apn_uid=31f4f0e1-a46f-4970-8e1a-1b8e8305b69e&apn_sauid=C7207013-D933-43C7-A10A-A80FDC04CF16
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = 127.0.0.1:9421;<local>
    O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngine.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (no name) - {0D704FAD-66E9-4F0A-BFED-4F665770DDB3} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - {8E718888-423F-11D2-876E-00A0C9082467} - No CLSID value found.
    O4 - HKLM..\Run: [ISTray] "C:\Program Files\PC Tools\PC Tools Security\pctsGui.exe /hideGUI" File not found
    O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - Reg Error: Key error. File not found
    O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - Reg Error: Key error. File not found
    O9 - Extra 'Tools' menuitem : @C:\Program Files\Common Files\Techland\Translator\InternetTranslator.dll,-103 - {B46B0919-62BA-4D99-A5C4-916B57A6805C} - Reg Error: Key error. File not found
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Reg Error: Value error.)
    [2013-05-24 21:40:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Dane aplikacji\BabSolution
    [2013-05-24 21:39:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Dane aplikacji\DSite
    [2013-05-24 21:39:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Babylon
    [2013-05-24 21:39:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\SysOp\Dane aplikacji\Babylon
    [2013-03-01 13:22:33 | 000,256,000 | ---- | C] () -- C:\windows\PEV.exe
    [2013-03-01 13:22:33 | 000,208,896 | ---- | C] () -- C:\windows\MBR.exe
    [2013-03-01 13:22:33 | 000,098,816 | ---- | C] () -- C:\windows\sed.exe
    [2013-03-01 13:22:33 | 000,080,412 | ---- | C] () -- C:\windows\grep.exe
    [2013-03-01 13:22:33 | 000,068,096 | ---- | C] () -- C:\windows\zip.exe
    [2013-03-26 09:07:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\eIntaller
    [2012-12-25 17:31:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\SysOp\Dane aplikacji\OpenCandy

    :Commands
    [emptytemp]


    Kliknij Wykonaj skrypt.W OTL użyj opcji Sprzątanie.
    .Przeskanuj progr.Malwarebytes Anti-Malware http://www.malwarebytes.org/products/malwarebytes_free/
    Przed skanowaniem wykonaj RĘCZNĄ AKTUALIZACJĘ BAZY SYGNATUR WIRUSÓW Malwarebytesa "Uruchom Malwarebytes, przejdź do zakładki Aktualizacja, Sprawdź aktualizacje."
  • #7
    partrol
    Level 2  
    To jeszcze nie to ale już jest sporo lepiej dzięki")