![]() |
| |||||||
| Registruotis | Svetainės spy | Narių sąrašas | Donate | Ieškoti | Šiandien Žinutės | Pažymėti forumus kaip skaitytus | Forumo taisyklės |
|
![]() |
| | Temos įrankiai |
|
#1
| ||||||||||||
| ||||||||||||
| Pirmiausia aš tariant, tai yra tinkama vieta įgyvendinti šią. Nuėjau į Control Panel ir veiklos rezultatų rasta rezultatų klausimais sakydamas pora:
Pradžia Lėtai: http://i7.photobucket.com/albums/y27...tartslowly.jpg Uždarymas: http://i7.photobucket.com/albums/y27...downslowly.jpg Aš taip pat vyko HijackThis ir gavo tokį pranešimą: http://i7.photobucket.com/albums/y27...rormessage.jpg Tai turbūt labai kvailas klausimas, bet kaip man ištaisyti tai? Jei vaikinai, galėtų mane teisinga kryptimi, kad būtų labai gerai.
__________________
__________________
Europos futbolo čempionatas Patarimas = Ispanija Torres & <- Damn man turėtų būti pateiktas bet apie juos Te skurdas tampa praeitimi Teisingumas 96 <- Pažiūrėk Mano sistema: HistoryGirls Self Build!
|
|
#2
| |||
| |||
| Su Vista, turite paspausti dešiniuoju pelės klavišu HJT piktogramą ir pasirinkite "Run as Administrator". Tu padarei bet kokią techninę priežiūrą pastaruoju metu? Disk cleanup, defrag? |
|
#3
| |||
| |||
| Taip turiu aš paleisti disko valymo ir Defrag neseniai taip, kad būtų, kas sukelia problemų? Naujas HijackThis: Citata:
__________________ Europos futbolo čempionatas Patarimas = Ispanija Torres & <- Damn man turėtų būti pateiktas bet apie juos Te skurdas tampa praeitimi Teisingumas 96 <- Pažiūrėk |
|
#4
| |||
| |||
| Atidaryti HijackThis ir pasirinkite Ar sistema nuskaito tik. Vieta varnelė prie šių įrašų: (jei yra)
Svarbu: Uždaryti visus išskyrus HijackThis langai ir spustelėkite Fix patikrinta. Išeitis HijackThis. ---------- Parsisiųsti ComboFix © by einantys iš vienos iš žemiau nuorodų. Būtinai įrašykite jį į viršų Desktop. Link # 1 Link # 2 ** Pastaba: Svarbu, kad ji yra saugomi tiesiai darbalaukyje Uždarykite visus atidarytus interneto naršyklių. (Firefox, Internet Explorer, ir tt) prieš pradedant ComboFix. Laikinai daryti nepajėgų tavo AntivirusIr bet Antispyware realaus laiko apsauga prieš atlikti nuskaitymo. Spauskite šį saitą matyti saugumo programų sąrašą, kuris turėtų būti išjungtas ir kaip juos išjungti. Dukart spustelėkite combofix.exe ir vykdykite ekrane pateikiamas instrukcijas. Baigę ComboFix gamins žurnalas Jums. Skelbti ComboFix Prisijungti Jūsų kitą atsakymą. Svarbu: Don't mouseclick ComboFix lango kol jis veikia. Tai gali sukelti ją gardas. Atminkite, kad vėl įjungti antivirusinės ir apsaugos nuo šnipinėjimo programų, kai ComboFix baigtas. Jei turite problemų su ComboFix naudojimą žr Kaip naudotis ComboFix |
|
#5
| |||
| |||
| Pirma, ačiū už pagalbą ir patarimus. I've done ką pasakė HJT ir kad buvo bauda. Tačiau I've done su nuoroda sako apie neįgalumą AVG gyventojas skydas, tačiau nepaisant to, kai aš pabandyti paleisti combofix, jis vis dar teigia, AVG Anti-Virus veikia taip, aš nesu visiškai tikras, kodėl. Gal galėtumėte pasiūlyti paleisti mano sistemos?
__________________ Europos futbolo čempionatas Patarimas = Ispanija Torres & <- Damn man turėtų būti pateiktas bet apie juos Te skurdas tampa praeitimi Teisingumas 96 <- Pažiūrėk |
|
#6
| |||
| |||
| AVG ir Combofix turi šiuo klausimu. Tiesiog paleiskite ComboFix vistiek. Jei AVG bando blokuoti ji tada tiesiog leisti jai veikti. |
|
#7
| |||
| |||
| Teisė Gerai visiems nuveikti. Prisijunkite prašymu. Citata:
__________________ Europos futbolo čempionatas Patarimas = Ispanija Torres & <- Damn man turėtų būti pateiktas bet apie juos Te skurdas tampa praeitimi Teisingumas 96 <- Pažiūrėk |
|
#8
| |||
| |||
| Ištrinti šiuos failus / aplankus, taip: 1. Pereiti į Pradžia > Bėgti > Pagal tipą Notepad.exe ir paspauskite Gerai atidarykite "Notepad". Tai privalėti būti Notepad, WordPad nėra. 2. Kopijuoti tekstą žemiau kodą langelyje, pabrėžiant visą tekstą ir paspausdami Ctrl + C Kodas Killall: Registras:: [-HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Security Center \ Stebėsena \ SymantecAntiVirus] [-HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Security Center \ Stebėsena \ SymantecFirewall] [-HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ CurrentVersion \ Explorer \ mountpoints2 \ E] [-HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ CurrentVersion \ Explorer \ mountpoints2 \ (c1865685-0291-11DC-b943-806e6f6e6963)] "Firefox": FF - prefs.js: browser.search.defaulturl - hxxp: / / search.conduit.com / ResultsExt.aspx? ctid = CT1178131 & SearchSource = 3 & q = FF - prefs.js: browser.search.selectedEngine - Web Search 4. Tada spustelėkite Failas > Saugoti 5. Bylos pavadinimas CFScript.txt - Išsaugokite šį failą savo darbalaukyje 6. Vilkite CFScript (paspauskite ir laikykite kairįjį pelės klavišą, vilkite failą) ir palikite jį (spaudai kairįjį pelės mygtuką) į ComboFix.exe kaip matote ekrano apačioje. Svarbu: Atlikti šį nurodymą atidžiai! ![]() ComboFix bus pradėti vykdyti, tiesiog vykdykite ekrane pateikiamas instrukcijas. Po perkrovimo (jei ji prašo paleisti), tai duos žurnalas Jums. Rašyti, kad žurnalas (Combofix.txt) į jūsų kitą atsakymą. Pastaba Don't mouseclick ComboFix lango kol jis veikia. Tai gali sukelti jūsų sistema įšaldyti ---------- Parsisiųsti Norton Removal Tool (SymNRT) darbalaukyje. Kai atsisiųsti Uždarykite visus naršyklės, taip pat išsaugoti bet kokį darbą, nes tai gali pareikalauti iš naujo.
---------- Java yra pasenusi. Senesnės versijos turi silpnąsias vietas, kad kenkėjiškų svetainių galima naudoti užkrėsti savo sistemą. Pirmiausia įdiekite naują Sun Java Runtime Environment Būtinai uždaryti visus naršyklės langus, prieš pradedant diegti. Pašalinti seną versiją (-ai) Atsisiųsti JavaRa
Papildomos pastabos: Java Quick Starter (JQS.exe) papildomas paslaugas, siekiant pagerinti Pradinė laikas Java applets and applications. Išjungti JQS paslaugą, jei nenorite juo naudotis, eikite į Pradėti> Valdymo skydas> Java> Advanced> Įvairūs ir JTPažymėkite langelį Java Quick Starter. Paspauskite OK ir perkraukite kompiuterį. ---------- Atsisiųsti ATF Cleaner pagal Atribune darbalaukyje. Pakaitinis parsisiuntimo nuorodą Pastaba Vista vartotojai turi naudoti Vykdyti kaip administratorius
Atkreipkite dėmesį, kad jūsų sistema veiks lėčiau, dėl sistemos perkrovimo ar dvi po to, kai ši priemonė naudojama taip nesijaudinkite. Svarbu: Perkraukite kompiuterį, prieš tęsiant. ---------- Kaip kompiuteris veikia dabar? |
|
#9
| |||
| |||
| Naujoji ComboFix Prisijungti: ComboFix 09-03-29.04 - Chloe 2009-03-31 16:37:20.2 - NTFSx86 Microsoft ® Windows Vista ™ Ultimate 6.0.6001.1.1252.1.1033.18.2046.1173 [GMT 1:00] Veikia nuo: C: \ Users \ Chloe \ Desktop \ ComboFix.exe Command jungikliai naudojami: C: \ Users \ Chloe \ Desktop \ CFScript.txt AV: AVG Anti-Virus Free * On prieiga skenavimo įjungti * (Atnaujinta) FW: ZoneAlarm ugniasienė įjungta * * * Sukurtas naujas atkūrimo taškas . ((((((((((((((((((((((((( Failus, sukurtus nuo 2009/02/28 iki 2009/03/31 ))))))))))) )))))))))))))))))))) . 2009-03-31 17:15. 2009-03-31 17:15 45.056 - ------ C: \ Windows \ System32 \ acovcnt.exe 2009-03-30 22:26. 2009-03-30 22:26 <DIR> d -------- C: \ Program Files \ MediaMonkey 2009-03-29 16:23. 2008-06-20 02:14 781.344 - ------ C: \ Windows \ System32 \ PresentationNative_v0300.dll 2009-03-29 16:23. 2008-06-20 02:14 622.080 - ------ C: \ Windows \ System32 \ icardagt.exe 2009-03-29 16:23. 2008-06-20 02:14 326.160 - ------ C: \ Windows \ System32 \ PresentationHost.exe 2009-03-29 16:23. 2008-06-20 02:14 105.016 - ------ C: \ Windows \ System32 \ PresentationCFFRasterizerNativ e_v0300.dll 2009-03-29 16:23. 2008-06-20 02:14 97.800 - ------ C: \ Windows \ System32 \ infocardapi.dll 2009-03-29 16:23. 2008-06-20 02:14 43.544 - ------ C: \ Windows \ System32 \ PresentationHostProxy.dll 2009-03-29 16:23. 2008-06-20 02:14 37.384 - ------ C: \ Windows \ System32 \ infocardcpl.cpl 2009-03-29 16:23. 2008-06-20 02:14 11.264 - ------ C: \ Windows \ System32 \ icardres.dll 2009-03-29 16:15. 2008-07-27 19:03 282.112 - ------ C: \ Windows \ System32 \ failo Mscoree.dll 2009-03-29 16:15. 2008-07-27 19:03 96.760 - ------ C: \ Windows \ System32 \ dfshim.dll 2009-03-29 16:15. 2008-07-27 19:03 41.984 - ------ C: \ Windows \ System32 \ netfxperf.dll 2009-03-29 16:14. 2008-07-27 19:03 158.720 - ------ C: \ Windows \ System32 \ mscorier.dll 2009-03-29 16:14. 2008-07-27 19:03 83.968 - ------ C: \ Windows \ System32 \ mscories.dll 2009-03-29 13:52. 2009-03-29 13:53 <DIR> d -------- C: \ Program Files \ Defraggler 2009-03-29 13:26. 2008-02-23 05:38 170.496 - ------ C: \ Windows \ System32 \ tcpipcfg.dll 2009-03-29 13:26. 2008-02-23 03:41 22.528 - ------ C: \ Windows \ System32 \ netiougc.exe 2009-03-29 13:25. 2009-02-16 00:10 1.221.512 - ------ C: \ Windows \ System32 \ zpeng25.dll 2009-03-17 21:57. 2009-03-17 21:57 <DIR> d -------- C: \ Program Files \ Microsoft 2009-03-17 21:56. 2009-03-17 21:56 <DIR> d -------- C: \ Windows \ PCHEALTH 2009-03-16 22:43. 2009-03-28 22:36 <DIR> D - h ----- C: \ $ $ AVG8.VAULT 2009-03-16 20:59. 2009-03-16 20:59 25 - ------ C: \ Windows \ cdplayer.ini 2009-03-14 00:34. 2008-12-05 05:32 428.544 - ------ C: \ Windows \ System32 \ EncDec.dll 2009-03-14 00:34. 2008-12-05 05:32 293.376 - ------ C: \ Windows \ System32 \ Psisdecd.dll 2009-03-14 00:34. 2008-12-05 05:31 217.088 - ------ C: \ Windows \ System32 \ psisrndr.ax 2009-03-14 00:34. 2008-12-05 05:31 177.664 - ------ C: \ Windows \ System32 \ mpg2splt.ax 2009-03-14 00:34. 2008-12-05 05:31 80.896 - ------ C: \ Windows \ System32 \ MSNP.ax 2009-03-14 00:29. 2009-03-14 00:29 <DIR> d -------- C: \ Programdata \ (00D89592-F643-4D8D-8F0F-AFAE0F14D4C3) 2009-03-14 00:29. 2009-03-14 00:29 <DIR> d -------- C: \ Program Files \ iTunes 2009-03-14 00:29. 2009-03-14 00:29 <DIR> d -------- C: \ Program Files \ iPod 2009-03-14 00:29. 2008-04-17 13:12 107.368 - ------ C: \ Windows \ System32 \ GEARAspi.dll 2009-03-14 00:29. 2009-01-15 13:19 23.848 - ------ c: \ windows \ system32 \ drivers \ GEARAspiWDM.sys 2009-03-14 00:26. 2009-03-14 00:27 <DIR> d -------- C: \ Program Files \ QuickTime 2009-03-12 23:39. 2009-03-12 23:39 <DIR> d -------- C: \ Programdata \ Kontiki 2009-03-12 23:39. 2009-03-12 23:39 <DIR> d -------- C: \ Program Files \ Kontiki 2009-03-12 23:39. 2009-03-12 23:39 <DIR> d -------- C: \ Program Files \ Channel4 2009-03-12 23:38. 2009-03-12 23:38 <DIR> d -------- C: \ Programdata \ Channel4 2009-03-11 22:33. 2009-03-31 17:16 <DIR> d -------- C: \ Users \ Chloe \ Tracing 2009-03-11 22:22. 2009-03-11 22:22 <DIR> d -------- C: \ Program Files \ Windows Live SkyDrive " 2009-03-11 22:22. 2009-03-17 21:57 <DIR> d -------- C: \ Program Files \ Windows Live " 2009-03-11 21:57. 2009-03-11 21:57 <DIR> d -------- C: \ Program Files \ Common Files \ Windows Live " 2009-03-11 13:13. 2009-03-11 21:47 <DIR> d -------- C: \ Program Files \ Amazon 2009-03-11 13:13. 2009-03-11 13:13 107.272 - ------ c: \ windows \ system32 \ drivers \ avgtdix.sys 2009-03-11 02:09. 2009-01-15 04:36 1.383.424 - ------ C: \ Windows \ System32 \ mshtml.tlb 2009-03-11 02:09. 2009-01-15 07:11 827.392 - ------ C: \ Windows \ System32 \ wininet.dll 2009-03-11 02:05. 2008-12-16 04:29 8.147.456 - ------ C: \ Windows \ System32 \ wmploc.DLL 2009-03-11 02:05. 2008-12-16 06:31 7.680 - ------ C: \ Windows \ System32 \ spwmp.dll 2009-03-11 02:05. 2008-12-16 06:31 4.096 - ------ C: \ Windows \ System32 \ Msdxm.ocx 2009-03-11 02:05. 2008-12-16 06:31 4.096 - ------ C: \ Windows \ System32 \ Dxmasf.dll 2009-03-11 02:03. 2008-12-16 03:42 288.768 - ------ c: \ windows \ system32 \ drivers \ srv.sys 2009-03-11 02:03. 2008-11-27 05:43 268.288 - ------ C: \ Windows \ System32 \ Schannel.dll 2009-03-11 02:02. 2009-02-09 04:10 2.033.152 - ------ C: \ Windows \ System32 \ Win32k.sys 2009-02-06 19:52. 2009-02-06 19:52 49.504 - ------ C: \ Windows \ System32 \ sirenacm.dll . (((((((((((((((((((((((((((((((((((((((( Find3M Pranešimas )))))))) )))))))))))))))))))))))))))))))))))))))))))) . 2009-03-31 16:15 --------- d --- AW C: \ Programdata \ TEMP 2009-03-31 16:14 350.195 --- ha-W c: \ windows \ system32 \ drivers \ vsconfig.xml 2009-03-29 14:42 --------- ----- WC d: \ Programdata \ Spybot - Search & Destroy 2009-03-29 14:42 --------- d ----- WC: \ Program Files \ Spybot - Search & Destroy 2009-03-29 14:42 --------- ----- WC d: \ Program Files \ CCleaner 2009-03-19 16:48 --------- ----- WC d: \ Users \ Chloe \ AppData \ Roaming \ uTorrent 2009-03-16 19:58 --------- d ----- WC: \ Program Files \ Common Files \ Real 2009-03-13 23:29 --------- ----- WC d: \ Programdata \ "Apple Computer 2009-03-13 23:29 --------- d ----- WC: \ Program Files \ Common Files \ Apple 2009-03-13 23:27 --------- d ----- WC: \ Program Files \ Bonjour 2009-03-12 22:24 --------- ----- WC d: \ Program Files \ Google 2009-03-11 23:07 --------- d ----- WC: \ Program Files \ Microsoft Silverlight 2009-03-11 23:05 --------- d ----- WC: \ Program Files \ Windows Mail 2009-03-11 12:13 325.128 ---- AW C: \ Windows \ system32 \ drivers \ avgldx86.sys 2009-03-11 11:52 --------- ----- WC d: \ Programdata \ avg8 2009-02-15 23:11 293.528 ---- AW C: \ Windows \ system32 \ drivers \ vsdatant.sys 2009-01-14 20:20 55.232 ---- AW C: \ Users \ Chloe \ AppData \ Roaming \ GDIPFONTCACHEV1.DAT 2008-12-31 21:51 13.025 ---- AW C: \ Users \ Chloe \ AppData \ Roaming \ nvModes.dat 2008-12-31 14:32 174 - sha-w C: \ Program Files \ Desktop.ini 2008-11-19 15:31 81.920 ---- AW C: \ Users \ Chloe \ AppData \ Roaming \ ezpinst.exe 2008-11-19 15:31 47.360 ---- AW C: \ Users \ Chloe \ AppData \ Roaming \ pcouffin.sys 2007-05-31 18:23 77.160 ---- AW C: \ Users \ Chloe \ DSETUP.dll 2007-05-31 18:23 503.144 ---- AW C: \ Users \ Chloe \ DXSETUP.exe 2007-05-31 18:23 1.673.576 ---- AW C: \ Users \ Chloe \ dsetup32.dll . ((((((((((((((((((((((((((((( SnapShot@2009-03-30_22.13.33.29 )))))))))) ))))))))))))))))))))))))))))))) . + 2009-03-31 16:14:31 2.048 - SHA-w C: \ Windows \ ServiceProfiles \ LocalService \ AppData \ Lo CAL \ lastalive0.dat + 2009-03-31 16:14:31 2.048 - SHA-w C: \ Windows \ ServiceProfiles \ LocalService \ AppData \ Lo CAL \ lastalive1.dat - 2009-03-30 21:07:56 1.048.576 - SHA-w C: \ Windows \ ServiceProfiles \ LocalService \ Ntuser.dat + 2009-03-31 16:15:44 1.048.576 - SHA-w C: \ Windows \ ServiceProfiles \ LocalService \ Ntuser.dat - 2009-03-30 21:07:56 1.048.576 - SHA-w C: \ Windows \ ServiceProfiles \ NetworkService \ NTUSER.D AT + 2009-03-31 16:15:44 1.048.576 - SHA-w C: \ Windows \ ServiceProfiles \ NetworkService \ NTUSER.D AT - 2009-03-30 21:07:06 16.384 - SHA-w C: \ Windows \ system32 \ config \ systemprofile \ AppData \ L Ocal \ Microsoft \ Windows \ History \ History.IE5 \ index.d ne + 2009-03-31 16:14:35 16.384 - SHA-w C: \ Windows \ system32 \ config \ systemprofile \ AppData \ L Ocal \ Microsoft \ Windows \ History \ History.IE5 \ index.d ne - 2009-03-30 21:07:06 32.768 - SHA-w C: \ Windows \ system32 \ config \ systemprofile \ AppData \ L Ocal \ Microsoft \ Windows \ Temporary Internet Files \ Content.IE5 \ Index.dat + 2009-03-31 16:14:35 32.768 - SHA-w C: \ Windows \ system32 \ config \ systemprofile \ AppData \ L Ocal \ Microsoft \ Windows \ Temporary Internet Files \ Content.IE5 \ Index.dat - 2009-03-30 21:07:06 16.384 - SHA-w C: \ Windows \ system32 \ config \ systemprofile \ AppData \ R oaming \ Microsoft \ Windows \ Cookies \ Index.dat + 2009-03-31 16:14:35 16.384 - SHA-w C: \ Windows \ system32 \ config \ systemprofile \ AppData \ R oaming \ Microsoft \ Windows \ Cookies \ Index.dat - 2009-03-30 19:05:35 126.818 ---- AW C: \ Windows \ System32 \ perfc007.dat + 2009-03-31 15:21:23 126.818 ---- AW C: \ Windows \ System32 \ perfc007.dat - 2009-03-30 19:05:35 119.076 ---- AW C: \ Windows \ System32 \ perfc009.dat + 2009-03-31 15:21:23 119.076 ---- AW C: \ Windows \ System32 \ perfc009.dat - 2009-03-30 19:05:35 127.578 ---- AW C: \ Windows \ System32 \ perfc00C.dat + 2009-03-31 15:21:23 127.578 ---- AW C: \ Windows \ System32 \ perfc00C.dat - 2009-03-30 19:05:35 124.352 ---- AW C: \ Windows \ System32 \ perfc010.dat + 2009-03-31 15:21:23 124.352 ---- AW C: \ Windows \ System32 \ perfc010.dat - 2009-03-30 19:05:35 130.866 ---- AW C: \ Windows \ System32 \ perfc013.dat + 2009-03-31 15:21:23 130.866 ---- AW C: \ Windows \ System32 \ perfc013.dat - 2009-03-30 19:05:35 130.272 ---- AW C: \ Windows \ System32 \ perfc019.dat + 2009-03-31 15:21:23 130.272 ---- AW C: \ Windows \ System32 \ perfc019.dat - 2009-03-30 19:05:35 620.942 ---- AW C: \ Windows \ System32 \ perfh007.dat + 2009-03-31 15:21:23 620.942 ---- AW C: \ Windows \ System32 \ perfh007.dat - 2009-03-30 19:05:35 644.794 ---- AW C: \ Windows \ System32 \ perfh009.dat + 2009-03-31 15:21:23 644.794 ---- AW C: \ Windows \ System32 \ perfh009.dat - 2009-03-30 19:05:35 672.380 ---- AW C: \ Windows \ System32 \ perfh00C.dat + 2009-03-31 15:21:23 672.380 ---- AW C: \ Windows \ System32 \ perfh00C.dat - 2009-03-30 19:05:35 666.234 ---- AW C: \ Windows \ System32 \ perfh010.dat + 2009-03-31 15:21:23 666.234 ---- AW C: \ Windows \ System32 \ perfh010.dat - 2009-03-30 19:05:35 669.852 ---- AW C: \ Windows \ System32 \ perfh013.dat + 2009-03-31 15:21:23 669.852 ---- AW C: \ Windows \ System32 \ perfh013.dat - 2009-03-30 19:05:35 657.990 ---- AW C: \ Windows \ System32 \ perfh019.dat + 2009-03-31 15:21:23 657.990 ---- AW C: \ Windows \ System32 \ perfh019.dat - 2009-03-30 19:03:55 17.414 ---- AW C: \ Windows \ System32 \ WDI \ (86432a0b-3c7d-4ddf-a89c-172faa90485d) \ S-1-5-21-3600620296-2450975610 - 132854369-1000_UserData.bin + 2009-03-31 16:17:14 18.026 ---- AW C: \ Windows \ System32 \ WDI \ (86432a0b-3c7d-4ddf-a89c-172faa90485d) \ S-1-5-21-3600620296-2450975610 - 132854369-1000_UserData.bin - 2009-03-30 19:03:55 81.750 ---- AW C: \ Windows \ System32 \ WDI \ BootPerformanceDiagnostics _SystemData.bin + 2009-03-31 16:17:14 81.884 ---- AW C: \ Windows \ System32 \ WDI \ BootPerformanceDiagnostics _SystemData.bin - 2009-03-30 19:03:54 68.204 ---- AW C: \ Windows \ System32 \ WDI \ ShutdownPerformanceDiagnos tics_SystemData.bin + 2009-03-31 15:15:30 68.346 ---- AW C: \ Windows \ System32 \ WDI \ ShutdownPerformanceDiagnos tics_SystemData.bin . - Snapshot Reset dabartines data -- . ((((((((((((((((((((((((((((((((((((( Reg Kraunasi Taškai )))))))))) )))))))))))))))))))))))))))))))))))))))) . . * Pastaba: * tuščių įrašų ir teisėtu default įrašai nerodoma REGEDIT4 [HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ Curre ntVersion \ Run] "RocketDock" = "C: \ Program Files \ RocketDock \ RocketDock.exe" [2007-09-02 495616] "msnmsgr" = "C: \ Program Files \ Windows Live \ Messenger \ msnmsgr.exe" [2009-02-06 3885408] "WMPNSCFG" = "C: \ Program Files \ Windows Media Player \ WMPNSCFG.exe" [2008-01-19 202240] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Run] "Asus Screen Saver Protector" = "C: \ Windows \ ASScrPro.exe" [2007-05-15 33136] "IFXSPMGT" = "C: \ Windows \ system32 \ ifxspmgt.exe" [2007-02-26 677408] "ZoneAlarm" Klientas "=" C: \ Program Files \ Zone Labs \ ZoneAlarm \ zlclient.exe "[2009-02-16 981384] "SynTPEnh" = "C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe" [2007-03-01 857648] [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ Curr entversion \ Policies \ System] "EnableUIADesktopToggle" = 0 (0x0) [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ Windows] "AppInit_DLLs" = APSHook.dll avgrsstx.dll [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ drivers32] "msacm.ac3filter" = ac3filter.acm [HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ contro l \ Lsa] Pranešimas Paketai REG_MULTI_SZ SceCli ASWLNPkg [HKLM \ ~ \ startupfolder \ C: Programdata ^ ^ ^ "Microsoft Vėjas ows ^ Start Menu Programs ^ ^ ^ Paleidimas WinZip Quick Pick.lnk] PATH = C: \ Programdata \ Microsoft \ Windows \ Start Menu \ Programs \ Startup \ WinZip Quick Pick.lnk Backup = C: \ Windows \ PSS \ WinZip Quick Pick.lnk.CommonStartup backupExtension =. CommonStartup [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ 4oD] - ------ 2007-04-23 12:23 1032640 c: \ Program Files \ Kontiki \ KHost.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ "Adobe Reader Speed Launcher] - ------ 2008-06-12 02:38 34672 D: \ Program Files \ Reader \ reader_sl.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ ASUS Fotoaparatas ScreenSaver] - ------ 2007-05-15 05:12 37232 C: \ Windows \ ASScrProlog.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ ATKMEDIA] - ------ 2006-11-02 16:27 61440 C: \ Program Files \ ASUS \ ATK Media \ DMedia.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ AVG8_TRAY] - ------ 2009-03-11 13:13 1601304 C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgtray.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ CognizanceTS] -RA ------ 2003-12-21 22:11 17920 C: \ PROGRA ~ 1 \ ASUSSE ~ 1 \ ASUSSE ~ 1 \ bin \ ASTSVCC.dll [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ ehTray.exe] - ------ 2008-01-19 08:33 125952 C: \ Windows \ eHoMe \ ehtray.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ Google Update] - ---- T-2009-03-17 22:06 133104 C: \ Users \ Chloe \ AppData \ Local \ Google \ update \ GoogleU pdate.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ iTunesHelper] - ------ 2009-03-11 14:52 342312 C: \ Program Files \ iTunes \ iTunesHelper.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ msnmsgr] - ------ 2009-02-06 19:51 3885408 C: \ Program Files \ Windows Live \ Messenger \ msnmsgr.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ NvCplDaemon] - ------ 2007-04-04 12:40 8429568 c: \ windows \ system32 \ nvcpl.dll [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ NvMediaCenter] - ------ 2007-04-04 12:40 81920 C: \ Windows \ System32 \ nvmctray.dll [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ NvSvc] - ------ 2007-04-04 12:40 86016 C: \ Windows \ System32 \ nvsvc.dll [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ QuickTime Task] - ------ 2009-01-05 17:18 413696 C: \ Program Files \ QuickTime \ QTTask.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ RocketDock] - ------ 2007-09-02 13:58 495616 C: \ Program Files \ RocketDock \ RocketDock.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ SpybotSD TeaTimer] -rahs ---- 2009-03-05 16:07 2260480 C: \ Program Files \ Spybot - Search & Destroy \ TeaTimer.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ SunJavaUpdateSched] - ------ 2008-06-10 04:27 144784 C: \ Program Files \ Java \ jre1.6.0_07 \ bin \ jusched.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ TkBellExe] - ------ 2009-03-16 20:58 198160 C: \ Program Files \ Common Files \ Real \ Update_OB \ realsched.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ Windows Defender] - ------ 2008-01-19 08:38 1008184 C: \ Program Files \ Windows Defender \ MSASCui.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ WMPNSCFG] - ------ 2008-01-19 08:33 202240 C: \ Program Files \ Windows Media Player \ wmpnscfg.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ (0228e555-4f9c-4e35-a3ec-b109a192b4c2)] - ------ 2005-07-15 22:48 479232 C: \ Program Files \ Google \ Gmail Notifier \ gnotify.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Shared Tools \ msconfig \ startupreg \ RtHDVCpl] - ------ 2007-02-15 10:07 4390912 c: \ Windows \ RtHDVCpl.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Security Center \ Stebėsena] "DisableMonitoring" = dword: 00000001 [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Security Center \ Stebėsena \ ZoneLabsFirewall] "DisableMonitoring" = dword: 00000001 [HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ DomainProfile] "EnableFirewall" = 0 (0x0) [HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ FirewallRules] (71E74FA5-D1FA-4A82-9121-AE2CACB2ED04) "= Profilis Asmeninis = | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) (2FE2345B-5C77-485E-9855-FC6024DE75EC) "= Profilis Asmeninis = | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) (CC9CFD37-6799-47CF-9AEE-1063F21C5548) "= Profilis Asmeninis = | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) (3D44E6E8-68F3-42F0-B97E-1081F1354874) "= UDP: C: \ Program Files \ LimeWire \ LimeWire.exe: LimeWire 4.12.15 (B2393435-26B3-4482-A391-C964F3370D66) "= TCP: C: \ Program Files \ LimeWire \ LimeWire.exe: LimeWire 4.12.15 (1B1039C9-3AEF-4B2E-85CA-DA79FB7CDBD3) "= Disabled: C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) (F9EC3544-5A35-4D84-A067-E7167563791A) "= Disabled: C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) (A9CE85F3-F9BA-4875-B169-9DEF59911C8A) "= Disabled: C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) "TCP Užklausa Vartotojo (0FAAFA32-F5A3-4C35-9AFD-A648E4B3016E) C: \ \ Program Files \ uTorrent \ \ utorrent.exe" = UDP: C: \ Program Files \ uTorrent \ utorrent.exe: uTorrent "UDP Query Vartotojo (CDC85196-C503-4F00-82DC-B95F8D021895) C: \ \ Program Files \ uTorrent \ \ utorrent.exe" = TCP: C: \ Program Files \ uTorrent \ utorrent.exe: uTorrent "TCP Užklausa Vartotojo (5D761702-BEB7-4B94-B693-1A7EF8E441ED) C: \ Program Files \ \ lengvai WebTV & Radio \ \ easywebtv.exe" = UDP: C: \ Program Files \ lengvai WebTV & Radio \ easywebtv.exe : internetinė televizija \ Radio \ Žiniasklaida "UDP užklausos Vartotojo (A7E2F9B1-976E-49B1-960A-8FE671DECB26) C: \ Program Files \ \ lengvai WebTV & Radio \ \ easywebtv.exe" = TCP: C: \ Program Files \ lengvai WebTV & Radio \ easywebtv.exe : internetinė televizija \ Radio \ Žiniasklaida (978D57EE-8CEF-4E88-B3CC-472590D8A602) "= C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) (038AD6DB-57BA-4294-B6BE-DC5AC329D87A) "= C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) "TCP Užklausa Vartotojo (20F3997A-2406-9A96-42BC-17DBA8717938) C: \ \ Program Files \ Soulseek \ \ slsk.exe" = UDP: C: \ Program Files \ Soulseek \ slsk.exe: Soulseek "UDP Query Vartotojo (EBEDABDC-8DFA-4EA4-83A0-5D79C8A2BE45) C: \ \ Program Files \ Soulseek \ \ slsk.exe" = TCP: C: \ Program Files \ Soulseek \ slsk.exe: Soulseek "TCP Užklausa Vartotojo (A2D20908-089C-441B-B9C8-C8811AFCAB9E) C: \ Program Files \ \ LimeWire \ \ limewire.exe" = UDP: C: \ Program Files \ LimeWire \ limewire.exe: LimeWire "UDP užklausos Vartotojo (0B6B64F6-D6E9-4D1D-B83A-E6E85E360C05) C: \ Program Files \ \ LimeWire \ \ limewire.exe" = TCP: C: \ Program Files \ LimeWire \ limewire.exe: LimeWire (2E890455-237D-4ABA-BE37-B5E6E1862834) "= C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) (DDAAC8F6-7557-495A-82B3-EBFF9330A2CC) "= C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) (5131D757-BC24-44C9-8EA5-E268DFC6DCAC) "= C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) "TCP Užklausa Vartotojo (4C52E1A6-D998-41D5-8E99-27F21E3CA7CB) C: \ Program Files \ Mozilla Firefox \ \ firefox.exe" = UDP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox "UDP užklausos Vartotojo (80235B6B-2462-4AC3-8A59-7534841DE76B) C: \ Program Files \ Mozilla Firefox \ \ firefox.exe" = TCP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox "TCP Užklausa Vartotojo (049DD1E6-8191-4983-A59D-240E79B46042) C: \ \ Program Files \ uTorrent \ \ utorrent.exe" = UDP: C: \ Program Files \ uTorrent \ utorrent.exe: uTorrent "UDP užklausos Vartotojo (9A00A32D-A675-4425-8F5E-1528AAB521FB) C: \ \ Program Files \ uTorrent \ \ utorrent.exe" = TCP: C: \ Program Files \ uTorrent \ utorrent.exe: uTorrent "TCP Užklausa Vartotojo (348698D9-5A1D-4E1C-AC00-DBDC43BE0ACF) C: \ \ Program Files \ Soulseek \ \ slsk.exe" = UDP: C: \ Program Files \ Soulseek \ slsk.exe: Soulseek "UDP Query Vartotojo (60AFF659-3A7C-488C-9CCA-0A8589DD32FA) C: \ \ Program Files \ Soulseek \ \ slsk.exe" = TCP: C: \ Program Files \ Soulseek \ slsk.exe: Soulseek "TCP Užklausa Vartotojo (3EF98A58-7B3C-42b1-8A5A-CF7DEF59C2A7) C: \ Program Files \ \ SopCast \ \ sopcast.exe" = UDP: C: \ Program Files \ SopCast \ sopcast.exe: SopCast Main application "UDP užklausos Vartotojo (D8A0735D-6D19-4482-A90A-35A9D023DEBE) C: \ Program Files \ \ SopCast \ \ sopcast.exe" = TCP: C: \ Program Files \ SopCast \ sopcast.exe: SopCast Main application "TCP Užklausa Vartotojo (7B392C25-D64F-4897-B5CC-5C9B83106BB0) C: \ Program Files \ Mozilla Firefox \ \ firefox.exe" = UDP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox "UDP užklausos Vartotojo (9990806D-9198-4760-93E7-C65D44E1FE8A) C: \ Program Files \ Mozilla Firefox \ \ firefox.exe" = TCP: C: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox "TCP Užklausa Vartotojo (9998DAB7-D775-4620-A491-D752230551A3) C: \ Program Files \ Internet Explorer \ \ iexplore.exe" = UDP: C: \ Program Files \ Internet Explorer \ iexplore.exe: "Internet Explorer" "UDP užklausos Vartotojo (B9293167-A4DC-43ED-893B-B5B1B89F9988) C: \ Program Files \ Internet Explorer \ \ iexplore.exe" = TCP: C: \ Program Files \ Internet Explorer \ iexplore.exe: "Internet Explorer" "TCP Užklausa Vartotojo (B04F6C2B-953A-469D-AFD8-4F3AE27A4941) C: \ Users \ \ Chloe \ \ AppData \ \ Roaming \ \ s opcast \ \ ADV \ \ sopadver.exe" = UDP: C: \ Users \ Chloe \ AppData \ Roaming \ SopCast \ ADV \ SOP adver.exe: sopadver.exe "UDP Query Vartotojo (914B6A2A-9A2A-43A8-B4EA-BB1EEDC476B5) C: \ Users \ \ Chloe \ \ AppData \ \ Roaming \ \ s opcast \ \ ADV \ \ sopadver.exe" = TCP: C: \ Users \ Chloe \ AppData \ Roaming \ SopCast \ ADV \ SOP adver.exe: sopadver.exe "TCP Užklausa Vartotojo (69F8C35B-6614-4033-B40E-59012B10975A) C: \ Program Files \ \ bearflix \ \ bearflix.exe" = UDP: C: \ Program Files \ bearflix \ bearflix.exe: BearFlix "UDP užklausos Vartotojo (89ABF64F-F79E-456D-9136-82A8675A3E17) C: \ Program Files \ \ bearflix \ \ bearflix.exe" = TCP: C: \ Program Files \ bearflix \ bearflix.exe: BearFlix (8D76BC83-ABC9-406B-8945-366EA3B7074B) "= UDP: C: \ Program Files \ SmartFTP Client \ SmartFTP.exe: SmartFTP Client (9FC79C86-3E66-4A61-AA2A-FAB0C61E0453) "= TCP: C: \ Program Files \ SmartFTP Client \ SmartFTP.exe: SmartFTP Client "TCP Užklausa Vartotojo (9FF9F89E-5323-45dB-89F0-BA37B84180EE) C: \ Program Files \ \ tvants \ \ tvants.exe" = UDP: C: \ Program Files \ tvants \ tvants.exe: TVAnts "UDP užklausos Vartotojo (C10505B7-BDD4-49BB-93E6-E73B8E6C4E33) C: \ Program Files \ \ tvants \ \ tvants.exe" = TCP: C: \ Program Files \ tvants \ tvants.exe: TVAnts "TCP Užklausa Vartotojo (A9E241F3-D69C-4E67-938B-33C91AB576A1) C: \ Program Files \ \ tvuplayer \ \ tvuplayer.exe" = UDP: C: \ Program Files \ tvuplayer \ tvuplayer.exe: TVU Player "komponentas "UDP užklausos Vartotojo (D3542B64-2CF9-4C20-B6CB-1D9096FF27EB) C: \ Program Files \ \ tvuplayer \ \ tvuplayer.exe" = TCP: C: \ Program Files \ tvuplayer \ tvuplayer.exe: TVU Player "komponentas (F8B68D6E-3A24-4B31-8261-FB3CA92B5740) "= C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) "TCP Užklausa Vartotojo (4E95BA55-EDF5-491D-9059-F11FF353A128) C: \ Users \ \ Chloe \ \ AppData \ \ Roaming \ \ s opcast \ \ ADV \ \ sopadver.exe" = UDP: C: \ Users \ Chloe \ AppData \ Roaming \ SopCast \ ADV \ SOP adver.exe: sopadver.exe "UDP Query Vartotojo (55C79E39-F1AC-45C7-8F99-995A835F089A) C: \ Users \ \ Chloe \ \ AppData \ \ Roaming \ \ s opcast \ \ ADV \ \ sopadver.exe" = TCP: C: \ Users \ Chloe \ AppData \ Roaming \ SopCast \ ADV \ SOP adver.exe: sopadver.exe "TCP Užklausa Vartotojo (A3EF2380-6740-4FD5-913E-D67F54A54B11) C: \ Program Files \ \ SopCast \ \ sopcast.exe" = UDP: C: \ Program Files \ SopCast \ sopcast.exe: SopCast Main application "UDP užklausos Vartotojo (E9C164FD-CB41-4D08-9DBA-BDDB929D1C86) C: \ Program Files \ \ SopCast \ \ sopcast.exe" = TCP: C: \ Program Files \ SopCast \ sopcast.exe: SopCast Main application "TCP Užklausa Vartotojo (C1148110-2D5B-4810-8651-98FBFD3A6751) C: \ Program Files \ Internet Explorer \ \ iexplore.exe" = UDP: C: \ Program Files \ Internet Explorer \ iexplore.exe: "Internet Explorer" "UDP užklausos Vartotojo (F15683E5-A578-47EE-BEB1-4541978254F4) C: \ Program Files \ Internet Explorer \ \ iexplore.exe" = TCP: C: \ Program Files \ Internet Explorer \ iexplore.exe: "Internet Explorer" "TCP Užklausa Vartotojo (CCA39E89-B85B-41BA-9A33-CA6DB37579E4) d: \ \ Program Files \ \ clue.exe" = UDP: D: \ Program Files \ clue.exe: Clue "UDP Query Vartotojo (39F3C83F-DCF0-43B4-B149-19F3630B3078) d: \ \ Program Files \ \ clue.exe" = TCP: D: \ Program Files \ clue.exe: Clue (01834D55-82B5-480D-BEFF-52EDB82BB8B5) "= C: \ Program Files \ Windows Live \ Messenger \ livecall.exe:" Windows Live Messenger (telefonas) (90ECB35B-6897-4166-A35A-04BC39978BA9) "= C: \ Program Files \ AVG \ AVG8 \ avgemc.exe: avgemc.exe (504F647E-1476-4948-AA42-DC1DF85CA9A8) "= C: \ Program Files \ AVG \ AVG8 \ avgupd.exe: avgupd.exe (CC411EBB-9ACA-4217-9994-ABB961E83B3C) "= UDP: C: \ Program Files \ uTorrent \ uTorrent.exe: μTorrent (TCP-In) (031AA3B5-F93B-4E4B-9ED7-66C6B9FFF3E8) "= TCP: C: \ Program Files \ uTorrent \ uTorrent.exe: μTorrent UDP (-Į) (1D54F818-ABAC-418F-8F39-17EA7664FABE) "= UDP: C: \ Program Files \ Bonjour \ mDNSResponder.exe: Bonjour (3C9FFAF4-40EA-450F-A906-D34D3E2EFA72) "= TCP: C: \ Program Files \ Bonjour \ mDNSResponder.exe: Bonjour (6AC9F5D1-C3AC-4878-8740-8A3E10F857E2) "= UDP: C: \ Program Files \ iTunes \ iTunes.exe: iTunes (77045B5E-EC2E-4749-AC23-32130CD39567) "= TCP: C: \ Program Files \ iTunes \ iTunes.exe: iTunes (00BE12C0-42CB-4B64-AA07-80A45C05B97C) "= neįgaliesiems: UDP: C: \ Program Files \ Sports Interactive \ Football Manager 2008 \ fm.exe: Football Manager 2008 (0A529C81-B8E4-4809-A54B-B5141A997A78) "= Disabled: TCP: C: \ Program Files \ Sports Interactive \ Football Manager 2008 \ fm.exe: Football Manager 2008 [HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ PublicProfile] "EnableFirewall" = 0 (0x0) [HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ StandardProfile] "EnableFirewall" = 0 (0x0) R1 AvgLdx86, AVG Free AVI Loader Vairuotojas x86, c: \ windows \ system32 \ drivers \ avgldx86.sys [2008-12-24 325128] R1 AvgTdiX; AVG8 Tinklo readresatora; c: \ windows \ system32 \ drivers \ avgtdix.sys [2009-03-11 107272] R1 ItSDisk; ItSDisk; c: \ windows \ system32 \ drivers \ itsdis k.sys [2006-05-16 23496] R1 PersonalSecureDrive; PersonalSecureDrive; c: \ windows \ system32 \ drivers \ psd.sys [2007-01-23 39080] R2 ASBroker; sesijos prisijungimo broker; C: \ Windows \ System32 \ svchost.exe-k teismingumas [2008-08-07 21504] R2 ASChannel; vietinio ryšio kanalas; C: \ Windows \ System32 \ svchost.exe-k teismingumas [2008-08-07 21504] R2 avg8emc; AVG Free8 E-mail Scanner, C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgemc.exe [2009-03-11 903960] R2 avg8wd; AVG Free8 WatchDog, C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgwdsvc.exe [2009-03-11 298264] R2 HDDlife HDD prieigos paslauga; HDDlife HDD prieigos paslaugų; C: \ Program Files \ BinarySense \ HDDlife 3 \ hldasvc.exe [2007-08-09 816376] R2 SBSDWSCService; SBSD Security Center Service; C: \ Program Files \ Spybot - Search & Destroy \ SDWinSec.exe [2007-07-15 1153368] R2 StkSSrv; Syntek AVStream USB2.0 Kamera tarnyba; C: \ Windows \ System32 \ StkCSrv.exe [2007-02-07 24576] R3 AtcL001; NDIS miniprievado Driver Attansic L1 Gigabit Ethernet Controller; c: \ windows \ system32 \ drivers \ atl01v32.sy S [2007-03-15 48128] R3 StkCMini; Syntek AVStream USB2.0, 1.3M Webcam, c: \ windows \ system32 \ drivers \ StkCMini.sys [2007-02-13 1245056] [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ Svchost] bthsvcs REG_MULTI_SZ BthServ Herbo REG_MULTI_SZ ASBroker ASChannel [HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ Curre ntversion \ Explorer \ mountpoints2 \ h] \ shell \ Autorun \ command - H: \ LaunchU3.exe [HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ Curre ntversion \ Explorer \ mountpoints2 \ (1a4a90a1-32d4-11DC-aa3d-001bfc03310e)] \ shell \ Autorun \ command - H: \ LaunchU3.exe . Turinys "Scheduled Tasks" katalogą 2009/01/11 C: \ Windows \ Uždaviniai \ Defrag Job # 00.job - C: \ Program Files \ DiskTrix \ UltimateDefrag \ UDefrag.exe [] 2009/03/26 C: \ Windows \ Uždaviniai \ GoogleUpdateTaskUserS-1-5-21-3600620296-2450975610-132854369-1000.job - C: \ Users \ Chloe \ AppData \ Local \ Google \ update \ GoogleU pdate.exe [2009-03-17 22:06] 2009/03/30 C: \ Windows \ Uždaviniai \ User_Feed_Synchronization-(5963E371-2796-42F4-9A54-042DA9F406BC). Užsakymas - C: \ Windows \ system32 \ msfeedssync.exe [2008-01-19 08:33] . . ------- Papildomos Scan ------- . uStart Page = hxxp: / / www.google.co.uk/ uInternet Parametrai ProxyOverride = *. vietos IE: E & Eksportuoti į "Microsoft Excel - C: \ PROGRA ~ 1 \ Micros ~ 2 \ Office10 \ EXCEL.EXE/3000 FF - ProfilePath - C: \ Users \ Chloe \ AppData \ Roaming \ Mozilla \ Firefox \ Pro Files \ ppnzryw9.default \ FF - prefs.js: browser.search.defaulturl - hxxp: / / search.conduit.com / ResultsExt.aspx? Ctid = CT1178131 & SearchSource = 3 & q = FF - prefs.js: browser.search.selectedEngine - Web Search FF - prefs.js: browser.startup.homepage - hxxp: / / www.google.co.uk/ FF - komponentas: C: \ Program Files \ AVG \ AVG8 \ Firefox \ Components \ avgssff.dll FF - komponentas: C: \ Program Files \ AVG \ AVG8 \ ToolbarFF \ Components \ vmAVGConnector. Dll FF - komponentas: C: \ Program Files \ Real \ "RealPlayer \ browserrecord \ Components \ npr pbrowserrecordplugin.dll FF - komponentas: C: \ Users \ Chloe \ AppData \ Roaming \ Mozilla \ Firefox \ Pro Files \ ppnzryw9.default \ Extensions \ (463F6CA5-EE3C-4be1-B7E6-7FEE11953374) \ platform \ WINNT \ Components \ FoxyTunes. Dll FF - plugin: C: \ Program Files \ Mozilla Firefox \ Plugins \ np-mswmp.dll FF - plugin: C: \ Users \ Chloe \ AppData \ Local \ Google \ update \ 1.2.141 .5 \ npGoogleOneClick7.dll FF - plugin: D: \ Program Files \ Reader \ browser \ nppdf32.dll ---- FIREFOX POLITIKA ---- FF - user.js: general.useragent.extra.zencast - Creative ZENcast v1.02.08); user_pref (general.useragent.extra.zencast, Creative ZENcast v2.00.07. ************************************************** ************************ catchme 0.3.1375 W2K/XP/Vista - rootkit / Stealth kenkėjiškų detektorius pagal Gmer, http://www.gmer.net Rootkit scan 2009-03-31 17:16:10 Windows 6.0.6001 Service Pack 1 NTFS skenavimo paslėptus procesus ... "10ûÿét0ûÿ3ö9sHu [1166747253] 0x75636F44 "10ûÿét0ûÿ3ö9sHu [1166747253] 0x6F6D6D6F skenavimo paslėptas autostart entries ... skenavimo paslėptus failus ... skenavimas baigtas sėkmingai paslėptus failus: 0 ************************************************** ************************ . --------------------- DLL Loaded Pagal aktyvūs procesai --------------------- - - - - - - -> "Lsass.exe" (704) C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ bin \ ASWLNPkg.dll C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ bin \ ItMsg.dll - - - - - - -> "Explorer.exe" (3304) C: \ Program Files \ RocketDock \ RocketDock.dll C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ bin \ SFSShell.dll C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ bin \ ItMsg.dll . ------------------------ Kitos aktyvūs procesai ----------------------- -- . C: \ Windows \ System32 \ audiodg.exe C: \ Windows \ System32 \ ZoneLabs \ vsmon.exe C: \ Windows \ System32 \ wlanext.exe C: \ Program Files \ ATK Hotkey \ ASLDRSrv.exe C: \ Program Files \ ATKGFNEX \ GFNEXSrv.exe C: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe C: \ Program Files \ Symantec \ LIVEUPDATE \ aluschedulersvc.exe C: \ Program Files \ Bonjour \ mDNSResponder.exe C: \ Program Files \ Intel \ Wireless \ Bin \ EvtEng.exe C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgrsx.exe C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgnsx.exe C: \ Program Files \ Intel \ Intel Matrix Storage Manager \ IAANTmon.exe C: \ Windows \ System32 \ IFXTCS.exe C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe C: \ Windows \ System32 \ IfxPsdSv.exe C: \ Windows \ System32 \ PSIService.exe C: \ Program Files \ Intel \ Wireless \ Bin \ RegSrvc.exe C: \ Program Files \ ASUS \ nb zondas \ SPM \ spmgr.exe C: \ Program Files \ AVG \ AVG8 \ avgcsrvx.exe C: \ Program Files \ ASUS Security Center \ ASUS Security Protect Manager \ bin \ asghost.exe C: \ Program Files \ ATK Hotkey \ HControl.exe C: \ Program Files \ ATKOSD2 \ ATKOSD2.exe C: \ Program Files \ Wireless Console 2 \ wcourier.exe C: \ Program Files \ ASUS \ Splendid \ ACMON.exe C: \ Program Files \ P4G \ BatteryLife.exe C: \ Windows \ System32 \ ACEngSvr.exe C: \ Program Files \ ATK Hotkey \ ATKOSD.exe C: \ Windows \ System32 \ IfxUAGUI.exe C: \ Program Files \ Infineon \ Security Platform Software \ PSDrt.exe C: \ Program Files \ Infineon \ Security Platform Software \ SpTNA.exe C: \ Windows \ System32 \ wbem \ WMIADAP.exe C: \ Windows \ System32 \ dllhost.exe . ************************************************** ************************ . Atlikimo laikas: 2009-03-31 17:23:29 - mašina buvo paleistas ComboFix-karantine-files.txt 2009-03-31 16:23:16 ComboFix2.txt 2009-03-30 21:16:26 Pre-Rida: 39213060096 bytes nemokamai Post-Rida: 38632595456 bytes nemokamai Current = 1 Default = 1 Failed = 0 LastKnownGood = 41 Rinkiniai = 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18, 19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35, 36,37,38,39,40,41 396 --- EOF --- 2009-03-29 15:30:34
__________________ Europos futbolo čempionatas Patarimas = Ispanija Torres & <- Damn man turėtų būti pateiktas bet apie juos Te skurdas tampa praeitimi Teisingumas 96 <- Pažiūrėk |
|
#10
| |||
| |||
| Dėl Norton pašalinimas Aš niekada įdiegta Norton čia dėl to, kodėl yra "Symantec" sąraše?
__________________ Europos futbolo čempionatas Patarimas = Ispanija Torres & <- Damn man turėtų būti pateiktas bet apie juos Te skurdas tampa praeitimi Teisingumas 96 <- Pažiūrėk |
![]() |
|
| Bookmarks |
Panašios Temos | ||||
| Siūlas | Thread Starter | Forumas | Atsakymai | Last Post |
| Graphic Card problema gali būti sustojimo Vista Nuo normaliai. | Jonmal | General Hardware Chat | 1 | 5 lapkritis, 2009 11:21 |
| XP lėtas, Ne kenkėjiškų programų ... | mbonwick | Windows "operacinės sistemos | 3 | Rugpjūtis 24, 2009 07:52 |
| Dell Laptop - Trouble Starting Windows - užtikrina išjungimas | jazker | Nešiojamieji kompiuteriai, PDA ir mobiliuosius telefonus | 4 | Kovas 25, 2009 06:59 |
| Kodėl McAfee nuskaitymas taip lėtai? | stevescholes | Virus, Spyware & Security | 3 | 29 gruodis 2008 15:48 |
| Mano Vista užšąla tuoj po pradžios. | Jyan29 | General Hardware Chat | 2 | Lapkritis 30, 2008 16:40 |
| Temos įrankiai | |
| |