![]() |
| |||||||
| Inregistrare | Site-ul Spy | Lista de stat | Doneaza | Căuta | Posturi de azi | Marchează forumurile citite | Forum Regulamentul |
|
![]() |
| | Thread Tools |
|
#1
| |||
| |||
| calculatorul meu este un fel de noi, dar pastrand crashing. sa întâmplat de multe ori deja. cînd i log în mişcare ecran doesnt. crusser rămâne în aceeaşi poziţie. I tried swithing it off, dar it doesnt swtich off. Eu a trebuit să deconectaţi-l pentru ca această să se întâmple. Uneori este crash doesnt dar este 50/50. i dont know ce la spre a face ca i sînt un newbie ![]() aici este hijact acest jurnal Logfile de Trend Micro HijackThis v2.0.2 Scan saved at 00:51:31, pe 22/02/2008 Platforma: Windows XP SP2 (WINNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Rularea procese: C: \ Windows \ system32 \ smss.exe C: \ Windows \ system32 \ winlogon.exe C: \ Windows \ system32 \ services.exe C: \ Windows \ system32 \ lsass.exe C: \ Windows \ system32 \ svchost.exe C: \ Windows \ system32 \ svchost.exe C: \ Windows \ system32 \ ZoneLabs \ vsmon.exe C: \ WINDOWS \ Explorer.exe C: \ Windows \ system32 \ Spoolsv.exe C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgamsvr.exe C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgupsvc.exe C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgemc.exe C: \ Program Files \ CyberLink \ PowerCinema \ Kernel \ TV \ CLCapSvc.exe C: \ Program Files \ CyberLink \ PowerCinema \ Kernel \ TV \ CLSched.exe C: \ Program Files \ CyberLink \ Shared Files \ CLML_NTService \ CLMLServer.exe C: \ WINDOWS \ eHome \ ehRecvr.exe C: \ Program Files \ CyberLink \ Shared Files \ CLML_NTService \ CLMLService.exe C: \ WINDOWS \ eHome \ ehSched.exe C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ Apache Group \ Apache2 \ bin \ apache.exe C: \ Windows \ system32 \ inetsrv \ inetinfo.exe C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcIp.exe C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcLog.exe C: \ Windows \ system32 \ nvsvc32.exe C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcAppFlt.ex e C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ Apache Group \ Apache2 \ bin \ apache.exe C: \ Windows \ system32 \ dllhost.exe C: \ WINDOWS \ ehome \ ehtray.exe C: \ Program Files \ QuickTime \ qttask.exe C: \ Program Files \ CyberLink \ PowerCinema \ PCMService.exe C: \ WINDOWS \ eHome \ ehmsas.exe C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nTrayFw.exe C: \ WINDOWS \ RTHDCPL.EXE C: \ Windows \ system32 \ svchost.exe C: \ Windows \ system32 \ RUNDLL32.EXE C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgcc.exe C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ jusched.exe C: \ Program Files \ Zone Labs \ ZoneAlarm \ zlclient.exe C: \ Windows \ system32 \ Ctfmon.exe C: \ Program Files \ MSN Messenger \ MsnMsgr.Exe C: \ Program Files \ Common Files \ LightScribe \ LightScribeControlPanel.exe C: \ Program Files \ Common Files \ Ahead \ Lib \ NMBgMonitor.exe C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe C: \ Program Files \ Common Files \ Ahead \ Lib \ NMIndexingService.exe C: \ Program Files \ Common Files \ Ahead \ Lib \ NMIndexStoreSvr.exe C: \ Program Files \ kworld multimedia \ tuner TV Utilităţi Card \ HMCP3XCtl.exe C: \ Program Files \ Internet Explorer \ iexplore.exe C: \ Windows \ system32 \ wuauclt.exe C: \ WINDOWS \ system32 \ wpabaln.exe C: \ Program Files \ Trend Micro \ HijackThis \ HijackThis.exe R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Bar = http://uk.rd.yahoo.com/customize/yco...search/ie.html R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://uk.rd.yahoo.com/customize/yco...//uk.yahoo.com R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://www.google.co.uk/ R1 - HKLM \ SOFTWARE \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.meshcomputers.com R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ SearchURL, (Default) = http://uk.rd.yahoo.com/customize/yco...//uk.yahoo.com R3 - URLSearchHook: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Program Files \ Yahoo! \ Companion \ Instalează \ cpn \ yt.dll O2 - BHO: & Yahoo! Bara de instrumente Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C: \ Program Files \ Yahoo! \ Companion \ Instalează \ cpn \ yt.dll O2 - BHO: AcroIEHlprObj Class - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C: \ Program Files \ Adobe \ Acrobat 7.0 \ ActiveX \ AcroIEHelper.dll O2 - BHO: Spybot-S & D IE Protecţia - (53707962-6F74-2D53-2644-206D7942484F) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll O2 - BHO: ZoneAlarm Spy Blocker BHO - (F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA) - C: \ Program Files \ ZoneAlarmSB \ bar \ 1.bin \ SPYBLOCK.DLL O3 - Toolbar: ZoneAlarm Spy Blocker - (F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA) - C: \ Program Files \ ZoneAlarmSB \ bar \ 1.bin \ SPYBLOCK.DLL O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C: \ Program Files \ Yahoo! \ Companion \ Instalează \ cpn \ yt.dll O4 - HKLM \ .. \ Run: [ehTray] C: \ WINDOWS \ ehome \ ehtray.exe O4 - HKLM \ .. \ Run: [QuickTime Task] "C: \ Program Files \ QuickTime \ qttask.exe"-atboottime O4 - HKLM \ .. \ Run: [PCMService] "C: \ Program Files \ CyberLink \ PowerCinema \ PCMService.exe" O4 - HKLM \ .. \ Run: [RemoteControl] "C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe" O4 - HKLM \ .. \ Run: [(1290A33C-85F5-4164-A1BE-7DD299D4986A)] "C: \ Program Files \ CyberLink \ PowerBackup \ PBKScheduler.exe" O4 - HKLM \ .. \ Run: [TkBellExe] "C: \ Program Files \ Common Files \ Real \ Update_OB \ realsched.exe"-osboot O4 - HKLM \ .. \ Run: [Ptipbmf] ptipbmf.dll rundll32.exe, SetWriteCacheMode O4 - HKLM \ .. \ Run: [nTrayFw] C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nTrayFw.exe O4 - HKLM \ .. \ Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM \ .. \ Run: [SkyTel] SkyTel.EXE O4 - HKLM \ .. \ Run: [Alcmtr] ALCMTR.EXE O4 - HKLM \ .. \ Run: [NvCplDaemon] RUNDLL32.EXE C: \ Windows \ system32 \ NvCpl.dll, NvStartup O4 - HKLM \ .. \ Run: [nwiz] nwiz.exe / install O4 - HKLM \ .. \ Run: [NvMediaCenter] RUNDLL32.EXE C: \ Windows \ system32 \ NvMcTray.dll, NvTaskbarInit O4 - HKLM \ .. \ Run: [JMB36X Configuraţi] C: \ WINDOWS \ system32 \ boot JMRaidTool.exe O4 - HKLM \ .. \ Run: [NeroFilterCheck] C: \ Program Files \ Common Files \ Ahead \ Lib \ NeroCheck.exe O4 - HKLM \ .. \ Run: [AVG7_CC] C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgcc.exe / startup O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ jusched.exe O4 - HKLM \ .. \ Run: [ZoneAlarm Client] "C: \ Program Files \ Zone Labs \ ZoneAlarm \ zlclient.exe" O4 - HKCU \ .. \ Run: [Ctfmon.exe] C: \ Windows \ system32 \ Ctfmon.exe O4 - HKCU \ .. \ Run: [MsnMsgr] "C: \ Program Files \ MSN Messenger \ MsnMsgr.Exe" / fundal O4 - HKCU \ .. \ Run: [Centrul de agent] C: \ Program Files \ KWorld Multimedia \ HyperMediaCenter \ DTVR \ Scheduled.exe O4 - HKCU \ .. \ Run: [LightScribe Control Panel] C: \ Program Files \ Common Files \ LightScribe \ LightScribeControlPanel.exe-ascuns O4 - HKCU \ .. \ Run: [BgMonitor_ (79662E04-7C6C-4d9f-84C7-88D8A56B10AA)] "C: \ Program Files \ Common Files \ Ahead \ Lib \ NMBgMonitor.exe" O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe O4 - HKUS \ S-1-5-19 \ .. \ Run: [Ctfmon.exe] C: \ Windows \ system32 \ Ctfmon.exe (User 'LOCAL SERVICE') O4 - HKUS \ S-1-5-19 \ .. \ Run: [AVG7_Run] C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgw.exe / RunOnce (User 'LOCAL SERVICE') O4 - HKUS \ S-1-5-20 \ .. \ Run: [Ctfmon.exe] C: \ Windows \ system32 \ Ctfmon.exe (User 'NETWORK SERVICE') O4 - HKUS \ S-1-5-18 \ .. \ Run: [Ctfmon.exe] C: \ Windows \ system32 \ Ctfmon.exe (User 'SYSTEM') O4 - HKUS \. DEFAULT \ .. \ Run: [Ctfmon.exe] C: \ Windows \ system32 \ Ctfmon.exe (User 'Default user') O4 - Global Startup: Adobe Reader Speed Launch.lnk = C: \ Program Files \ Adobe \ Acrobat 7.0 \ Reader \ reader_sl.exe O4 - Global Startup: de la distanţă Control.lnk = C: \ Program Files \ kworld multimedia \ tuner TV Card Utilities \ HMCP3XCtl.exe O8 - Extra context menu item: E & xportaţi la Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ milionimi ~ 2 \ OFFICE11 \ EXCEL.EXE/3000 O9 - Extra button: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll O9 - Extra 'Tools' MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll O9 - Extra button: Cercetare - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ milionimi ~ 2 \ OFFICE11 \ REFIEBAR.DLL O9 - Extra button: (no name) - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll O9 - Extra 'Tools' MENUITEM: Spybot - Search & Destroy Configuration - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll O9 - Extra button: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O14 - IERESET.INF: START_PAGE_URL = http://www.meshcomputers.com O20 - Winlogon Notify:! SASWinLogon - C: \ Program Files \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, sro - C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, sro - C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgupsvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, sro - C: \ PROGRA ~ 1 \ Grisoft \ AVG7 \ avgemc.exe O23 - Service: CyberLink Background Captură Service (CBCS) (CLCapSvc) - Unknown owner - C: \ Program Files \ CyberLink \ PowerCinema \ Kernel \ TV \ CLCapSvc.exe O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C: \ Program Files \ CyberLink \ PowerCinema \ Kernel \ TV \ CLSched.exe O23 - Service: CyberLink Media Biblioteca Service - Cyberlink - C: \ Program Files \ CyberLink \ Shared Files \ CLML_NTService \ CLMLServer.exe O23 - Service: ForceWare Intelligent Application Manager (IAM) - Unknown owner - C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcAppFlt.ex e O23 - Service: Forceware Web Interface (ForcewareWebInterface) - Apache Software Foundation - C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ Apache Group \ Apache2 \ bin \ apache.exe O23 - Service: LightScribeService Direct Disc Etichetarea Service (LightScribeService) - Hewlett-Packard Company - C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe O23 - Service: NBService - Nero AG - C: \ Program Files \ Nero \ Nero 7 \ Nero BackItUp \ NBService.exe O23 - Service: NMIndexingService - Nero AG - C: \ Program Files \ Common Files \ Ahead \ Lib \ NMIndexingService.exe O23 - Service: ForceWare IP service (nSvcIp) - NVIDIA Corporation - C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcIp.exe O23 - Service: ForceWare user log service (nSvcLog) - NVIDIA - C: \ Program Files \ NVIDIA Corporation \ NetworkAccessManager \ bin \ nSvcLog.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C: \ Windows \ system32 \ nvsvc32.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C: \ Windows \ system32 \ ZoneLabs \ vsmon.exe -- Sfârşit de fişier - 10194 bytes |
|
#2
| |||
| |||
| i dont know dacă aceasta este o problemă virus sau o problemă de hardware-ul? |
|
#3
| |||
| |||
| Aţi făcut de obicei şi verificate pentru acumularea de praf în jurul etc cpu radiator? |
|
#4
| |||
| |||
| Citat:
i sînt un newbie, şi nu destul de sigur ce radiatorului procesorului este.mulţumesc |
|
#5
| ||||||||||||
| ||||||||||||
| Poti sa cizme into În siguranţă Model? .... (Atingeţi tasta F8 în mod repetat, de la cizme sus)
__________________
Sistemul meu: Home Build
|
|
#6
| |||
| |||
| Log Hijackthis este curat. Aţi instalat nimic nou în jur de ora aceasta a început intampla? Poate chiar o săptămână sau aşa înainte de a se întâmplă pentru prima dată. |
|
#7
| |||
| |||
| fereastra curat, zona de alarma, Spybot şi nord anti virus |
|
#8
| |||
| |||
| Ce tot a fost curatata cu fereastra mai curat şi-a început după ce folosesc? Zone Alarm sau Norton nu sunt cele mai eficiente privind resursele, ar putea fi, de asemenea, aceste. |
|
#9
| |||
| |||
| Citat:
Şi un radiator procesorului este mare lucru de metal cu un ventilator în partea de sus pe placa de baza pentru a menţine Cool procesorului. |
|
#10
| |||
| |||
| Imi pare rau medie Avg. i va verifica ventilatorul afară. în loc de zona de alarme ce s-ar voi recomanda. |