Deprecated: preg_replace(): The /e modifier is deprecated, use preg_replace_callback instead in /home/mati/domains/forum.programosy.pl/public_html/includes/bbcode.php on line 112
Komp się zawiesza,trojan? • programosy.pl

  • Ogłoszenie:

Komp się zawiesza,trojan?

Bezpieczeństwo systemów, usuwanie wirusów, dobieranie programów antywirusowych. Obowiązkowe logi w tym dziale: trzy z FRST + Gmer.

Komp się zawiesza,trojan?

Postprzez wsk89 08 Cze 2009, 19:28

reklama
Witam,
Mam problem z kompem, po włączeniu komputer funkcjonuje normalnie przez kilka minut, jednak później zaczyna sie wszystko zamulać ponad to zawiesza się, ale nie tak całkowicie bo czasem np. otwarta wcześniej strona internetowa działa,ale żadnego programu nie uruchomię, a czasem się zawiesi wszystko,ale kursor cały czas dział tylko nie można klikać. Nie da rady uruchomic menadżera zadań itp. format przeprowadzony przez brata nic nie pomógł, problem wystąpił wczoraj samoistnie wcześniej nie było żadnych problemów. Zrobiłem kilka logów jak by ktoś potrzebował jeszcze jakieś postaram się dodać:
dds:
Kod: Zaznacz wszystko
DDS (Ver_09-05-14.01) - FAT32x86 
Run by Administrator at 19:22:23,67 on 2009-06-08
Internet Explorer: 6.0.2600.0000
Microsoft Windows XP Professional  5.1.2600.0.1250.48.1045.18.512.274 [GMT 2:00]


============== Running Processes ===============

C:\WINDOWS\system32\svchost -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
SVCHOST.EXE
SVCHOST.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
C:\Program Files\Eset\nod32kui.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\VIA\RAID\raid_tool.exe
C:\WINDOWS\System32\inetsrv\inetinfo.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
D:\mozila\firefox.exe
C:\Documents and Settings\Administrator\Pulpit\dds.com

============== Pseudo HJT Report ===============

EB: Pasek multimediów: {32683183-48a0-441b-a342-7c2a440a9478} - %SystemRoot%\System32\browseui.dll
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NVMCTRAY.DLL,NvTaskbarInit
mRun: [Smapp] c:\program files\analog devices\soundmax\SMTray.exe
mRun: [nod32kui] "c:\program files\eset\nod32kui.exe" /WAITSERVICE
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [nwiz] nwiz.exe /install
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\alluse~1\menust~1\programy\autost~1\raid_t~1.lnk - c:\program files\via\raid\raid_tool.exe
IE: {c95fe080-8f5d-11d2-a20b-00aa003c157a} - %SystemRoot%\web\related.htm
LSP: c:\windows\system32\imon.dll

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\admini~1\daneap~1\mozilla\firefox\profiles\3itgaevl.default\

============= SERVICES / DRIVERS ===============

R0 viasraid;viasraid;c:\windows\system32\drivers\viasraid.sys [2009-6-8 75904]
R2 NOD32krn;NOD32 Kernel Service;c:\program files\eset\nod32krn.exe [2009-6-8 507904]

=============== Created Last 30 ================

2009-06-08 19:06   <DIR>   --d-----   c:\program files\VIA
2009-06-08 19:06   <DIR>   --d-h---   c:\documents and settings\administrator\Szablony
2009-06-08 19:06   <DIR>   --d-----   c:\program files\Analog Devices
2009-06-08 19:05   44   a-------   c:\windows\system32\msssc.dll
2009-06-08 19:03   <DIR>   --dsh---   C:\FOUND.000
2009-06-08 18:55   36,224   a-------   c:\windows\system32\drivers\isapnp.sys
2009-06-08 18:55   36,224   a-------   c:\windows\system32\dllcache\isapnp.sys
2009-06-08 18:55   <DIR>   --d-----   c:\windows\system32\ReinstallBackups
2009-06-08 18:54   306,688   a-------   c:\windows\IsUninst.exe
2009-06-08 18:54   <DIR>   --d-----   c:\documents and settings\administrator\WINDOWS
2009-06-08 18:51   41,852   a----r--   c:\windows\system32\UpdDrv2K.exe
2009-06-08 18:51   <DIR>   --d-----   c:\windows\OPTIONS
2009-06-08 18:50   <DIR>   --d-----   C:\!KillBox
2009-06-08 18:47   396,288   a-------   C:\HijackThis.exe
2009-06-08 18:46   3,470   a-------   c:\windows\Ascd_tmp.ini
2009-06-08 18:46   5,824   a-------   c:\windows\system32\drivers\ASUSHWIO.SYS
2009-06-08 18:45   <DIR>   --d-----   c:\windows\IIS Temporary Compressed Files
2009-06-08 18:45   0   a-------   c:\windows\frontpg.ini
2009-06-08 18:43   442,880   a-------   c:\windows\system32\fxsapi.dll
2009-06-08 18:43   442,880   a-------   c:\windows\system32\dllcache\fxsapi.dll
2009-06-08 18:43   <DIR>   --d-----   c:\windows\system32\Logfiles
2009-06-08 18:42   <DIR>   --dsh---   C:\Recycled
2009-06-08 18:27   <DIR>   --d-hr--   c:\documents and settings\administrator\Dane aplikacji
2009-06-08 18:27   <DIR>   --d-h---   c:\documents and settings\administrator\Ustawienia lokalne
2009-06-08 18:27   <DIR>   --d--r--   c:\documents and settings\administrator\Ulubione
2009-06-08 18:27   <DIR>   --d--r--   c:\documents and settings\administrator\Moje dokumenty
2009-06-08 18:27   <DIR>   --d--r--   c:\documents and settings\administrator\Menu Start
2009-06-08 18:27   <DIR>   --d-----   c:\documents and settings\administrator\Pulpit
2009-06-08 18:27   <DIR>   --d-----   c:\documents and settings\Administrator
2009-06-08 18:26   8,192   a-------   c:\windows\REGLOCS.OLD
2009-06-08 18:23   843,832   a-------   c:\windows\system32\dllcache\tintlgnt.ime
2009-06-08 18:22   6,144   a-------   c:\windows\system32\dllcache\kbd106n.dll
2009-06-08 18:21   218,112   a-------   c:\windows\system32\dllcache\c_g18030.dll
2009-06-08 18:20   <DIR>   --dsh---   c:\documents and settings\all users\DRM
2009-06-08 18:19   3,346,432   a-------   c:\windows\system32\dllcache\msgr3en.dll
2009-06-08 18:19   <DIR>   --d-----   c:\program files\ESET
2009-06-08 18:18   <DIR>   --d-----   c:\program files\common files\MSSoap
2009-06-08 18:17   <DIR>   --d-h---   c:\program files\WindowsUpdate
2009-06-08 18:17   <DIR>   --d-----   c:\program files\Usługi online
2009-06-08 18:17   <DIR>   --d-----   c:\program files\Messenger
2009-06-08 18:17   <DIR>   --d-----   c:\program files\MSN Gaming Zone
2009-06-08 18:16   <DIR>   --d-----   c:\program files\Windows NT
2009-06-08 18:11   <DIR>   --d-----   c:\program files\common files\ODBC
2009-06-08 18:11   <DIR>   --d-----   c:\program files\common files\SpeechEngines
2009-06-08 18:11   <DIR>   --ds----   c:\documents and settings\administrator\UserData
2009-06-08 18:10   <DIR>   --d-h---   c:\documents and settings\all users\Szablony
2009-06-08 18:10   <DIR>   --d--r--   c:\documents and settings\all users\Menu Start
2009-06-08 18:10   <DIR>   --d--r--   c:\documents and settings\all users\Dokumenty
2009-06-08 18:10   <DIR>   --d-----   c:\documents and settings\all users\Ulubione
2009-06-08 18:10   <DIR>   --d-----   c:\documents and settings\all users\Pulpit
2009-06-08 18:09   <DIR>   --d-hr--   c:\documents and settings\all users\Dane aplikacji

==================== Find3M  ====================

2009-06-08 18:24   408,948   a-------   c:\windows\system32\perfh015.dat
2009-06-08 18:24   71,942   a-------   c:\windows\system32\perfc015.dat
2009-06-08 18:20   80,007   a-------   c:\windows\pchealth\helpctr\offlinecache\index.dat
2009-06-08 18:19   502,368   a-------   c:\windows\system32\drivers\amon.sys
2009-06-08 18:19   274,432   a-------   c:\windows\system32\imon.dll
2009-06-08 18:17   21,856   a-------   c:\windows\system32\emptyregdb.dat
2003-06-03 17:49   448,256   a-------   c:\windows\inf\EL2K_N64.sys
2003-06-03 17:48   147,328   a-------   c:\windows\inf\EL2K_XP.sys
2003-06-03 17:47   147,328   a-------   c:\windows\inf\EL2K_2K.sys

============= FINISH: 19:22:33,43 ===============

Kod: Zaznacz wszystko

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_09-05-14.01)

Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 2009-06-08 20:24:13
System Uptime: 2009-06-08 19:17:57 (0 hours ago)

Motherboard: ASUSTeK Computer INC. |  | A7V600
Processor: AMD Athlon(TM) XP 2400+ | SOCKET A | 1500/100mhz

==== Disk Partitions =========================

A: is Removable
C: is FIXED (FAT32) - 7 GiB total, 4,823 GiB free.
D: is FIXED (FAT32) - 20 GiB total, 9,02 GiB free.
E: is FIXED (FAT32) - 27 GiB total, 5,557 GiB free.
F: is FIXED (FAT32) - 20 GiB total, 1,215 GiB free.
G: is CDROM ()

==== Disabled Device Manager Items =============

Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Kontroler Uniwersalnej magistrali szeregowej (USB)
Device ID: PCI\VEN_1106&DEV_3104&SUBSYS_80ED1043&REV_86\3&61AAA01&0&84
Manufacturer:
Name: Kontroler Uniwersalnej magistrali szeregowej (USB)
PNP Device ID: PCI\VEN_1106&DEV_3104&SUBSYS_80ED1043&REV_86\3&61AAA01&0&84
Service:

==== System Restore Points ===================

RP1: 2009-06-08 18:28:12 - Punkt kontrolny systemu
RP2: 2009-06-08 19:06:44 - Installed VIA Integrated Setup Wizard

==== Installed Programs ======================

HijackThis 2.0.2
Mozilla Firefox (3.0.10)
NVIDIA Display Driver
SoundMAX
System Antywirusowy NOD32
VIA Integrated Setup Wizard
WebFldrs XP

==== End Of File ===========================


OTL:
http://wklej.org/id/103005/
Hijackthis:
http://wklej.org/id/103007/
wsk89
~user
 
Posty: 10
Dołączenie: 12 Cze 2005, 11:02



Komp się zawiesza,trojan?

Postprzez wojtas 08 Cze 2009, 20:03

1.Uruchom OTListIt2 z opcji CleanUp
2. wykonaj optymalizację windowsa
3.Wyłącz przywracanie systemu ( właściwości mój komputer-zakładka przywracanie - wyłącz przywracanie na wszystkich dyskach). Po chwili włącz je powrotem
4. Wykonaj skan Dr. Web CureIt
5. Przeskanuj obszar mojego komputera http://www.kaspersky.pl/virusscanner.html (uruchom przez IE) Daj raport z niego na forum.

i tym (skasuj co znajdzie)

Malwarebytes Anti-Malware

Jeśli masz Adobe Reader to zaaktualizuj go do najnowszej wersji
Image
Awatar użytkownika
wojtas
*mod
 
Posty: 18165
Dołączenie: 13 Sty 2006, 16:00
Miejscowość: Krzeszyce
Pochwały: 1656




Powróć do Bezpieczeństwo

Kto jest na forum

Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 19 gości