ApoKalypse 1 Report post Posted November 3, 2008 salammintak tlg otai2 tgk apa masalah ni...bila kena ni je net aku terus stop,xleh nk connect kena restart baru bleh... pastu bila restart pc, aku klik start > connect > streamyx pastu dia hang plak... tunggu lama sket baru bley... napa ek?ni HJT log aku...Logfile of Trend Micro HijackThis v2.0.0 (BETA)Scan saved at 9:57:39 PM - AmZ, on 11/3/2008Platform: Windows XP SP2 (WinNT 5.01.2600)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Alwil Software\Avast4\aswUpdSv.exeC:\Program Files\Alwil Software\Avast4\ashServ.exeC:\WINDOWS\Explorer.EXEC:\WINDOWS\system32\spoolsv.exeC:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeC:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\system32\lxczcoms.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\nvsvc32.exeC:\Program Files\Raxco\PerfectDisk\PDAgent.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exeC:\HiJackThis_v2.exeC:\Program Files\Alwil Software\Avast4\ashMaiSv.exeC:\Program Files\Alwil Software\Avast4\ashWebSv.exeC:\Program Files\Raxco\PerfectDisk\PDEngine.exeC:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXEC:\Program Files\Mozilla Firefox\firefox.exeC:\PROGRA~1\Yahoo!\MESSEN~1\YServer.exeC:\Program Files\Real\RealPlayer\RecordingManager.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - D:\Program Files\Internet Download Manager\IDMIECC.dllO2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dllO2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dllO2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dllO2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllO4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exeO4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartupO4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -uO4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osbootO4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quietO4 - HKUS\S-1-5-19\..\Run: [TaskSwitchXP] C:\Program Files\TaskSwitchXP\TaskSwitchXP.exe (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [TaskSwitchXP] C:\Program Files\TaskSwitchXP\TaskSwitchXP.exe (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-20\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'NETWORK SERVICE')O4 - HKUS\S-1-5-18\..\Run: [TaskSwitchXP] C:\Program Files\TaskSwitchXP\TaskSwitchXP.exe (User 'SYSTEM')O4 - HKUS\S-1-5-18\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SYSTEM')O4 - HKUS\.DEFAULT\..\Run: [TaskSwitchXP] C:\Program Files\TaskSwitchXP\TaskSwitchXP.exe (User 'Default user')O4 - HKUS\.DEFAULT\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'Default user')O8 - Extra context menu item: Download All Links with IDM - D:\Program Files\Internet Download Manager\IEGetAll.htmO8 - Extra context menu item: Download FLV video content with IDM - D:\Program Files\Internet Download Manager\IEGetVL.htmO8 - Extra context menu item: Download with IDM - D:\Program Files\Internet Download Manager\IEExt.htmO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLLO9 - Extra button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllO17 - HKLM\System\CCS\Services\Tcpip\..\{59B5E40F-5DEF-436A-8531-46B2EE7D5F36}: NameServer = 202.188.0.133 202.188.1.5O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dllO22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dllO23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exeO23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exeO23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exeO23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exeO23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exeO23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exeO23 - Service: lxcz_device - - C:\WINDOWS\system32\lxczcoms.exeO23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exeO23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exeO23 - Service: PDAgent - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDAgent.exeO23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk\PDEngine.exeO23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exeO23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exeO23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe--End of file - 6239 bytes Quote Share this post Link to post Share on other sites
Mr Nero 1 Report post Posted November 3, 2008 pendapat aku ni spyware dh serang pc kau...aku pnah jd mcm ni dulu...internet hang...aku guna software Malwarebytes' Anti-Malware baru ok... Quote Share this post Link to post Share on other sites
ApoKalypse 1 Report post Posted November 3, 2008 QUOTE(IQPC88 @ Nov 3 2008, 10:13 PM) <{POST_SNAPBACK}>pendapat aku ni spyware dh serang pc kau...aku pnah jd mcm ni dulu...internet hang...aku guna software Malwarebytes' Anti-Malware baru ok...ko guna trial ke atau full? then ko perform quick scan utk C atau smua partition? Quote Share this post Link to post Share on other sites
Mr Nero 1 Report post Posted November 3, 2008 download kire trial la...aku quick scan je...just partition c. Quote Share this post Link to post Share on other sites
semak 0 Report post Posted November 3, 2008 ko scan je pakai benda tu buat full scan pastu ko scan semua sekali[quotethen ko perform quick scan utk C atau smua partition[/quote]rasa aku ni tak perlu kot ko tanya Quote Share this post Link to post Share on other sites
ApoKalypse 1 Report post Posted November 3, 2008 erm aku dh scan dia kata xde spyware apa2..... Quote Share this post Link to post Share on other sites
LineBZ 0 Report post Posted November 3, 2008 aku pun jadi macam ko gak.. pc baru format tak cucuk apa2 lagi pun aku try jadi macam ko gak.. aku pun tak tau pasai pa... beli cd windows cap ayam baru pun aku try jadi juga..tukar pc lain baru format pun sama juga... sapa2 tau macam mana nak buat.. letih dah.. Quote Share this post Link to post Share on other sites
ApoKalypse 1 Report post Posted November 4, 2008 harap2 ada sapa2 yg pakar dtg membantu kita Quote Share this post Link to post Share on other sites
sHäm 4 Report post Posted November 4, 2008 (edited) DLL (Microsoft Dynamic Link Library) berada dalam C:/Windows/System32 , netapi32.dll adalah driver untuk networking . Hilang/corrupt mungkin menimbulkan masaalah seperti TS.Berbagai cara boleh dibuat untuk kembalikan DLL file..antaranya1. System File Checker Klik Start > Run > taip sfc /scannow > Ok > masukkan Windows CD jika diminta.. atau2. Register kembali fail tersebut Klik Start > Run > taip CMD > Ok > taip regsvr32netapi32.dll > Enter > bila siap restart..atau3. Boot dengan Windows CD masuk Recovery Console, masukkan command berikut copy netapi32.dll C:\windows\system32 .. atau copy F:\netapi32.dll C:\windows\system32\netapi32.dll ..F nama CD drive atau4. Download netapi32.dll , extract dan overwrite existing folder ke C:\windows\system32 ..Restart PC , jika masih belum ok buat step no. 2 selepas tu ..QUOTEaku pun jadi macam ko gak.. pc baru format tak cucuk apa2 lagi pun aku try jadi macam ko gak.. aku pun tak tau pasai pa... beli cd windows cap ayam baru pun aku try jadi juga..tukar pc lain baru format pun sama juga... sapa2 tau macam mana nak buat.. letih dah....netapi32.dll missing ..boleh jadi CD tu tak perfect .. atau optical drive copyfile tak lengkap sewaktu installations .. Edited November 4, 2008 by e_sentinel Quote Share this post Link to post Share on other sites
ApoKalypse 1 Report post Posted November 4, 2008 bro e_sentinel,masa aku nk re-write file tu aku dpt error ni... padahal aku x open apa2 apps pon... Quote Share this post Link to post Share on other sites
LineBZ 0 Report post Posted November 4, 2008 (edited) mekasih bro e_sentinel, nnt kalau ubat sana tak mujarap aku try yang ni pulak...aku ada jumpa ni dalaM LYN aku baru jer try.. tak tau apa apa lagi result ramai juga yang kena wabak neh.. kekekhttp://forum.lowyat.net/index.php?showtopi...;#entry21144582 Edited November 4, 2008 by LineBZ Quote Share this post Link to post Share on other sites
ApoKalypse 1 Report post Posted November 4, 2008 aku pon baru je try, x tau la result dia camna... Quote Share this post Link to post Share on other sites
sHäm 4 Report post Posted November 4, 2008 Try dalam Safe Mode , tutup internet connections , atau pilih cara lain ..banyaksteps tu takkan satu pun tak boleh .. ..try macam kat LYN tu juga .. atau update ke SP3 ..direct update atau slipstreaming .. Quote Share this post Link to post Share on other sites
LineBZ 0 Report post Posted November 4, 2008 ekeke mari kita doakan kekek mudah2 mujarap la... hari tu 2 atau 3 bulan lepas dah pernah jadi dah kat aku tapi tak tau tetiba ok... Quote Share this post Link to post Share on other sites
LineBZ 0 Report post Posted November 9, 2008 ok internet dah ok.. so far aku dah on kan pc dah masuk 6 hari Quote Share this post Link to post Share on other sites
K.I.T.T 0 Report post Posted November 9, 2008 QUOTE(ApoKalypse @ Nov 4 2008, 09:37 AM) <{POST_SNAPBACK}>harap2 ada sapa2 yg pakar dtg membantu kita ikut pengalaman aku.software OS yang digunakan.sama ada verison lama@old version.aku pernah kena bende ni dulu.lepas beli cd OS tu dari 4 kedai berlainan baru ok.pasal kita beli lanun bukan beli ORi.aku x pasti Ori ada problem ni x?seolah-seolah OS XP pirated tu ada Vulnurable.macam ada loop holes. Quote Share this post Link to post Share on other sites