x-kom hosting

Rootkit_Detective

amarozo
utworzono
utworzono
Object-Type: Registry-keyObject-Name: DataINDOWSsystem32driversiksysflt.sysObject-Path: HKEY_LOCAL_MACHINESOFTWAREMicrosoftProtected Storage System Provider*Local Machine*DataStatus: HiddenObject-Type: Registry-keyObject-Name: a5c5c2e4-6bee-4ef9-a0f5-f76a07cce771 System Provider*Local Machine*DataObject-Path: HKEY_LOCAL_MACHINESOFTWAREMicrosoftProtected Storage System Provider*Local Machine*Dataa5c5c2e4-6bee-4ef9-a0f5-f76a07cce771Status: HiddenObject-Type: Registry-keyObject-Name: 00000000-0000-0000-0000-000000000000 System Provider*Local Machine*Dataa5c5c2e4-6bee-4ef9-a0f5-f76a07cce771Object-Path: HKEY_LOCAL_MACHINESOFTWAREMicrosoftProtected Storage System Provider*Local Machine*Dataa5c5c2e4-6bee-4ef9-a0f5-f76a07cce77100000000-0000-0000-0000-000000000000Status: HiddenObject-Type: Registry-keyObject-Name: {6340E680-FF06-435f-8767-B79D88AEBD4D}ystem Provider*Local Machine*Dataa5c5c2e4-6bee-4ef9-a0f5-f76a07cce77100000000-0000-0000-0000-000000000000Object-Path: HKEY_LOCAL_MACHINESOFTWAREMicrosoftProtected Storage System Provider*Local Machine*Dataa5c5c2e4-6bee-4ef9-a0f5-f76a07cce77100000000-0000-0000-0000-000000000000{6340E680-FF06-435f-8767-B79D88AEBD4D}Status: HiddenObject-Type: Registry-valueObject-Name: Item DataObject-Path: HKEY_LOCAL_MACHINESOFTWAREMicrosoftProtected Storage System Provider*Local Machine*Dataa5c5c2e4-6bee-4ef9-a0f5-f76a07cce77100000000-0000-0000-0000-000000000000{6340E680-FF06-435f-8767-B79D88AEBD4D}Status: HiddenObject-Type: Registry-valueObject-Name: Display StringObject-Path: HKEY_LOCAL_MACHINESOFTWAREMicrosoftProtected Storage System Provider*Local Machine*Dataa5c5c2e4-6bee-4ef9-a0f5-f76a07cce77100000000-0000-0000-0000-000000000000Status: HiddenObject-Type: Registry-valueObject-Name: Display StringObject-Path: HKEY_LOCAL_MACHINESOFTWAREMicrosoftProtected Storage System Provider*Local Machine*Dataa5c5c2e4-6bee-4ef9-a0f5-f76a07cce771Status: HiddenObject-Type: Registry-keyObject-Name: Data 2REMicrosoftProtected Storage System Provider*Local Machine*Dataa5c5c2e4-6bee-4ef9-a0f5-f76a07cce771Object-Path: HKEY_LOCAL_MACHINESOFTWAREMicrosoftProtected Storage System Provider*Local Machine*Data 2Status: HiddenObject-Type: Registry-keyObject-Name: WindowsEMicrosoftProtected Storage System Provider*Local Machine*Data 2Object-Path: HKEY_LOCAL_MACHINESOFTWAREMicrosoftProtected Storage System Provider*Local Machine*Data 2WindowsStatus: HiddenObject-Type: Registry-valueObject-Name: ValueObject-Path: HKEY_LOCAL_MACHINESOFTWAREMicrosoftProtected Storage System Provider*Local Machine*Data 2WindowsStatus: HiddenObject-Type: File/FolderObject-Name: System Idle ProcessPid: n/aObject-Path: System Idle ProcessStatus: VisibleObject-Type: ProcessObject-Name: svchost.exePid: 1024Object-Path: C:WINDOWSsystem32svchost.exeStatus: VisibleObject-Type: ProcessObject-Name: SystemPid: 4Object-Path: Status: VisibleObject-Type: ProcessObject-Name: ashDisp.exePid: 1812Object-Path: C:PROGRA~1ALWILS~1Avast4ashDisp.exeStatus: VisibleObject-Type: ProcessObject-Name: smss.exePid: 536Object-Path: C:WINDOWSsystem32smss.exeStatus: VisibleObject-Type: ProcessObject-Name: svchost.exePid: 1816Object-Path: C:WINDOWSsystem32svchost.exeStatus: VisibleObject-Type: ProcessObject-Name: ati2evxx.exePid: 1824Object-Path: C:WINDOWSsystem32ati2evxx.exeStatus: VisibleObject-Type: ProcessObject-Name: jusched.exePid: 2084Object-Path: C:Program FilesJavajre1.6.0_02binjusched.exeStatus: VisibleObject-Type: ProcessObject-Name: lxcecoms.exePid: 2348Object-Path: C:WINDOWSsystem32lxcecoms.exeStatus: VisibleObject-Type: ProcessObject-Name: svchost.exePid: 1068Object-Path: C:WINDOWSsystem32svchost.exeStatus: VisibleObject-Type: ProcessObject-Name: ati2evxx.exePid: 828Object-Path: C:WINDOWSsystem32ati2evxx.exeStatus: VisibleObject-Type: ProcessObject-Name: spoolsv.exePid: 1596Object-Path: C:WINDOWSsystem32spoolsv.exeStatus: VisibleObject-Type: ProcessObject-Name: svchost.exePid: 840Object-Path: C:WINDOWSsystem32svchost.exeStatus: VisibleObject-Type: ProcessObject-Name: csrss.exePid: 600Object-Path: C:WINDOWSsystem32csrss.exeStatus: VisibleObject-Type: ProcessObject-Name: ezprint.exePid: 2152Object-Path: C:Program FilesLexmark 4300 Seriesezprint.exeStatus: VisibleObject-Type: ProcessObject-Name: aswUpdSv.exePid: 1384Object-Path: C:Program FilesAlwil SoftwareAvast4aswUpdSv.exeStatus: VisibleObject-Type: ProcessObject-Name: winlogon.exePid: 624Object-Path: C:WINDOWSsystem32winlogon.exeStatus: VisibleObject-Type: ProcessObject-Name: Rootkit_DetectiPid: 3960Object-Path: C:Documents and SettingsWłaścicielPulpitRootkit_Detective(AJO.PL).exeStatus: VisibleObject-Type: ProcessObject-Name: alg.exePid: 388Object-Path: C:WINDOWSsystem32alg.exeStatus: VisibleObject-Type: ProcessObject-Name: svchost.exePid: 1168Object-Path: C:WINDOWSsystem32svchost.exeStatus: VisibleObject-Type: ProcessObject-Name: ashServ.exePid: 1432Object-Path: C:Program FilesAlwil SoftwareAvast4ashServ.exeStatus: VisibleObject-Type: ProcessObject-Name: services.exePid: 668Object-Path: C:WINDOWSsystem32services.exeStatus: VisibleObject-Type: ProcessObject-Name: svchost.exePid: 932Object-Path: C:WINDOWSsystem32svchost.exeStatus: VisibleObject-Type: ProcessObject-Name: lsass.exePid: 680Object-Path: C:WINDOWSsystem32lsass.exeStatus: VisibleObject-Type: ProcessObject-Name: ctfmon.exePid: 2220Object-Path: C:WINDOWSsystem32ctfmon.exeStatus: VisibleObject-Type: ProcessObject-Name: ashMaiSv.exePid: 176Object-Path: C:Program FilesAlwil SoftwareAvast4ashMaiSv.exeStatus: VisibleObject-Type: ProcessObject-Name: explorer.exePid: 1972Object-Path: C:WINDOWSexplorer.exeStatus: VisibleObject-Type: ProcessObject-Name: ashWebSv.exePid: 196Object-Path: C:Program FilesAlwil SoftwareAvast4ashWebSv.exeStatus: Visible

CatchMe
komentarz
komentarz

Wklej logi z Gmera.

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.