wklejto.pl

Dodane przez: ~VV (2009-12-20 08:49) -> text
1.
2.
3.
4.
5.
6.
7.
8.
9.
10.
11.
12.
13.
14.
15.
16.
17.
18.
19.
20.
21.
22.
23.
24.
25.
26.
27.
28.
29.
30.
31.
32.
33.
34.
35.
36.
37.
38.
39.
40.
41.
42.
43.
44.
45.
46.
47.
48.
49.
50.
51.
52.
53.
54.
55.
56.
57.
58.
59.
60.
61.
62.
63.
64.
65.
66.
67.
68.
69.
70.
71.
72.
73.
74.
75.
76.
77.
78.
79.
80.
81.
82.
83.
84.
85.
86.
87.
88.
89.
90.
91.
92.
93.
94.
95.
96.
97.
98.
99.
100.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 1:04:27 PM, on 12/20/2009
Platform: Unknown Windows (WinNT 6.01.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
 
Running processes:
D:\\Program Files (x86)\\uTorrent\\uTorrent.exe
C:\\Program Files (x86)\\Microsoft Office\\Office14\\OfficeSAS\\officeSASscheduler.exe
C:\\Program Files (x86)\\Sunbelt Software\\VIPRE\\SBAMTray.exe
C:\\Program Files (x86)\\Java\\jre6\\bin\\jusched.exe
C:\\Windows\\SysWOW64\\cmd.exe
D:\\Program Files (x86)\\iTunes\\iTunesHelper.exe
C:\\Program Files (x86)\\SlySoft\\CloneCD\\CloneCDTray.exe
C:\\Program Files (x86)\\Elaborate Bytes\\VirtualCloneDrive\\VCDDaemon.exe
C:\\Users\\FullFill\\AppData\\Roaming\\svchost\\svchost.exe
C:\\Program Files (x86)\\Microsoft Office\\Office14\\OfficeSAS\\OfficeSAS.exe
C:\\Users\\FullFill\\AppData\\Local\\Google\\Chrome\\Application\\chrome.exe
C:\\Users\\FullFill\\AppData\\Local\\Google\\Chrome\\Application\\chrome.exe
C:\\Users\\FullFill\\AppData\\Local\\Google\\Chrome\\Application\\chrome.exe
C:\\Users\\FullFill\\AppData\\Local\\Google\\Chrome\\Application\\chrome.exe
C:\\Users\\FullFill\\AppData\\Local\\Google\\Chrome\\Application\\chrome.exe
C:\\Users\\FullFill\\AppData\\Local\\Google\\Chrome\\Application\\chrome.exe
C:\\Program Files (x86)\\foobar2000\\foobar2000.exe
C:\\Users\\FullFill\\AppData\\Local\\Google\\Chrome\\Application\\chrome.exe
C:\\Users\\FullFill\\AppData\\Local\\Temp\\f.exe
C:\\Users\\FullFill\\Desktop\\HijackThis.exe
C:\\Program Files (x86)\\Sunbelt Software\\VIPRE\\SBAMUI.exe
 
R1 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,SearchAssistant = 
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Search,CustomizeSearch = 
R0 - HKLM\\Software\\Microsoft\\Internet Explorer\\Main,Local Page = C:\\Windows\\SysWOW64\\blank.htm
R0 - HKCU\\Software\\Microsoft\\Internet Explorer\\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\\PROGRA~2\\MICROS~1\\Office14\\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\\Program Files (x86)\\Java\\jre6\\bin\\jp2ssv.dll
O4 - HKLM\\..\\Run: [SBAMTray] C:\\Program Files (x86)\\Sunbelt Software\\VIPRE\\SBAMTray.exe
O4 - HKLM\\..\\Run: [UCam_Menu] \"C:\\Program Files (x86)\\CyberLink\\YouCam\\MUITransfer\\MUIStartMenu.exe\" \"C:\\Program Files (x86)\\CyberLink\\YouCam\" UpdateWithCreateOnce \"Software\\CyberLink\\YouCam\\2.0\"
O4 - HKLM\\..\\Run: [openvpn-gui] C:\\Program Files (x86)\\WiTopia.Net\\bin\\openvpn-gui.exe
O4 - HKLM\\..\\Run: [SunJavaUpdateSched] \"C:\\Program Files (x86)\\Java\\jre6\\bin\\jusched.exe\"
O4 - HKLM\\..\\Run: [QuickTime Task] \"C:\\Program Files (x86)\\QuickTime\\QTTask.exe\" -atboottime
O4 - HKLM\\..\\Run: [iTunesHelper] \"D:\\Program Files (x86)\\iTunes\\iTunesHelper.exe\"
O4 - HKLM\\..\\Run: [CloneCDTray] \"C:\\Program Files (x86)\\SlySoft\\CloneCD\\CloneCDTray.exe\" /s
O4 - HKLM\\..\\Run: [VirtualCloneDrive] \"C:\\Program Files (x86)\\Elaborate Bytes\\VirtualCloneDrive\\VCDDaemon.exe\" /s
O4 - HKLM\\..\\Run: [SBRegRebootCleaner] C:\\Program Files (x86)\\Sunbelt Software\\VIPRE\\SBRC.exe
O4 - HKCU\\..\\Run: [Skype] \"C:\\Program Files (x86)\\Skype\\Phone\\Skype.exe\" /nosplash /minimized
O4 - HKCU\\..\\Run: [uTorrent] \"D:\\Program Files (x86)\\uTorrent\\uTorrent.exe\"
O4 - HKCU\\..\\Run: [Google Update] \"C:\\Users\\FullFill\\AppData\\Local\\Google\\Update\\GoogleUpdate.exe\" /c
O4 - HKCU\\..\\Run: [vegas] rundll32.exe C:\\Users\\FullFill\\AppData\\Local\\Temp\\sshnas.dll,DllWork
O4 - HKCU\\..\\Run: [ZagrebLand] C:\\Users\\FullFill\\AppData\\Local\\Temp\\f.exe
O4 - HKCU\\..\\Run: [HKCU] C:\\Users\\FullFill\\AppData\\Roaming\\Microsoft_Updater\\selfupdater.exe
O4 - HKCU\\..\\Run: [Cerberus] C:\\Users\\FullFill\\AppData\\Roaming\\svchost\\svchost.exe
O4 - HKUS\\S-1-5-19\\..\\Run: [Sidebar] %ProgramFiles%\\Windows Sidebar\\Sidebar.exe /autoRun (User \'LOCAL SERVICE\')
O4 - HKUS\\S-1-5-19\\..\\RunOnce: [mctadmin] C:\\Windows\\System32\\mctadmin.exe (User \'LOCAL SERVICE\')
O4 - HKUS\\S-1-5-20\\..\\Run: [Sidebar] %ProgramFiles%\\Windows Sidebar\\Sidebar.exe /autoRun (User \'NETWORK SERVICE\')
O4 - HKUS\\S-1-5-20\\..\\RunOnce: [mctadmin] C:\\Windows\\System32\\mctadmin.exe (User \'NETWORK SERVICE\')
O4 - Global Startup: OfficeSAS.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\\Windows\\system32\\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\\PROGRA~2\\MICROS~1\\Office14\\EXCEL.EXE/3000
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - (no file)
O9 - Extra \'Tools\' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - (no file)
O13 - Gopher Prefix: 
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\\PROGRA~2\\COMMON~1\\Skype\\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\\Program Files (x86)\\Common Files\\Microsoft Shared\\OFFICE14\\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\\system32\\Alg.exe,-112 (ALG) - Unknown owner - C:\\Windows\\System32\\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\\Windows\\system32\\atiesrxx.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\\Program Files (x86)\\Common Files\\Apple\\Mobile Device Support\\bin\\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\\Program Files (x86)\\Bonjour\\mDNSResponder.exe
O23 - Service: @%SystemRoot%\\system32\\efssvc.dll,-100 (EFS) - Unknown owner - C:\\Windows\\System32\\lsass.exe (file missing)
O23 - Service: @%systemroot%\\system32\\fxsresm.dll,-118 (Fax) - Unknown owner - C:\\Windows\\system32\\fxssvc.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\\Program Files (x86)\\Google\\Common\\Google Updater\\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\\Program Files\\iPod\\bin\\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\\Windows\\system32\\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\\Windows\\System32\\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\\System32\\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\\Windows\\system32\\lsass.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - Unknown owner - C:\\Program Files (x86)\\WiTopia.Net\\bin\\openvpnserv.exe
O23 - Service: @%systemroot%\\system32\\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\\Windows\\system32\\lsass.exe (file missing)
O23 - Service: @%systemroot%\\system32\\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\\Windows\\system32\\locator.exe (file missing)
O23 - Service: @%SystemRoot%\\system32\\samsrv.dll,-1 (SamSs) - Unknown owner - C:\\Windows\\system32\\lsass.exe (file missing)
O23 - Service: VIPRE Antivirus + Antispyware (SBAMSvc) - Sunbelt Software - C:\\Program Files (x86)\\Sunbelt Software\\VIPRE\\SBAMSvc.exe
O23 - Service: @%SystemRoot%\\system32\\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\\Windows\\System32\\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\\system32\\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\\Windows\\System32\\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\\system32\\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\\Windows\\system32\\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\\system32\\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\\Windows\\system32\\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\\system32\\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\\Windows\\system32\\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\\system32\\vds.exe,-100 (vds) - Unknown owner - C:\\Windows\\System32\\vds.exe (file missing)
O23 - Service: @%systemroot%\\system32\\vssvc.exe,-102 (VSS) - Unknown owner - C:\\Windows\\system32\\vssvc.exe (file missing)
O23 - Service: @%systemroot%\\system32\\wbengine.exe,-104 (wbengine) - Unknown owner - C:\\Windows\\system32\\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\\system32\\wbem\\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\\Windows\\system32\\wbem\\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\\Windows Media Player\\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\\Program Files (x86)\\Windows Media Player\\wmpnetwk.exe (file missing)
 
--
End of file - 8829 bytes
 
Wygenerowano w 0.062s, przy pomocy GeSHi 1.0.8
'
Podziel się na Facebook Podziel się na BLIP Podziel się na Twitter Podziel się na Buzz Podziel się na Flaker Dodaj zakładkę Google Podziel się na Delicious Wykop to!

Nowy Komentarz:

Komentarze:

Brak Komentarzy!