![]() |
| |||||||
|
![]() |
| | Thread Tools |
|
#1
| ||||||||||||
| ||||||||||||
| Pirmkārt, es esmu pieņemot, ka šī ir īstā vieta likt to. Es iegāja Control Panel un efektivitāte un atrada pāris veiktspējas jautājumiem, teica:
Starting Lēnām: http://i7.photobucket.com/albums/y27...tartslowly.jpg Slēdz: http://i7.photobucket.com/albums/y27...downslowly.jpg Es arī skrēja HijackThis un dabūju šo ziņu: http://i7.photobucket.com/albums/y27...rormessage.jpg Tas ir iespējams, patiešām stulbu jautājumu, bet kā es varu labot šos? Ja jūs puiši varētu norādīt mani pareizajā virzienā, tas būtu lieliski.
__________________
__________________
Euro čempionāts tip = Spānija & Torres <- Damn man būtu laiduši bet par tiem Padarīt nabadzību par vēsturi Taisnīgumu 96 <- Lūdzu, meklēt Mana sistēma: HistoryGirls Self Build!
|
|
#2
| |||
| |||
| Ar Vista jums ir tiesības klikšķi HJT ikonas un izvēlieties "Palaist kā administratoram." Jūs esat darījuši visu tehniskās apkopes pēdējā laikā? Diska tīrīšana, defrag? |
|
#3
| |||
| |||
| Yeah es esmu palaist disk cleanup un defrag nesen tas var būt kāds bija rada problēmas? New HijackThis Log: Quote:
__________________ Euro čempionāts tip = Spānija & Torres <- Damn man būtu laiduši bet par tiem Padarīt nabadzību par vēsturi Taisnīgumu 96 <- Lūdzu, meklēt |
|
#4
| |||
| |||
| Open HijackThis un izvēlieties Vai sistēmas skenēšanu tikai. Vieta atzīme blakus šādiem ierakstiem: (ja ir)
Svarīgi: Aizveriet visus logus, izņemot HijackThis un pēc tam noklikšķiniet uz Fix pārbaudīja. Iziet HijackThis. ---------- Download ComboFix © by subs no vienas no saitēm. Pārliecinieties top saglabājiet to Desktop. Link # 1 Link # 2 ** Piezīme: Ir svarīgi, ka tā ir saglabāta tieši jūsu Desktop Aizveriet visas atvērtās interneta pārlūkprogrammas. (Firefox, Internet Explorer uc) pirms uzsākt ComboFix. Laiku sakropļot jūsu antivīruss, Un jebkuru antispyware reāllaika aizsardzību pirms veic skenēšanu. Click šo saiti redzēt sarakstu drošības programmas, kas ir invalīdi un to, kā pārtraukt to darbību. Dubultklikšķi combofix.exe un sekojiet norādījumiem. Kad pabeigts ComboFix ražos log for you. Post ComboFix log Jūsu nākamo atbildi. Svarīgi: Nav mouseclick ComboFix loga kamēr tas darbojas. Tas var izraisīt to apstāsies. Atcerieties, ka jauna aktivizētu jūsu antivīrusu un antispyware aizsardzību, ja ComboFix ir pabeigta. Ja Jums ir problēmas ar ComboFix lietošana, skatīt Kā lietot ComboFix |
|
#5
| |||
| |||
| Pirmkārt paldies par palīdzību un padomu. Es esmu darījusi to, ko jūs teicāt HJT un tas bija labi. Tomēr es esmu darījusi kā saite saka par invaliditāti AVG iedzīvotājs vairogs, taču par spīti tam, kad mēģinu un vadīt combofix, tā joprojām saka AVG anti-virus darbojas tik es neesmu pilnīgi pārliecināts, kāpēc. Vai varat ieteikt varbūt atsākt manu sistēmu?
__________________ Euro čempionāts tip = Spānija & Torres <- Damn man būtu laiduši bet par tiem Padarīt nabadzību par vēsturi Taisnīgumu 96 <- Lūdzu, meklēt |
|
#6
| |||
| |||
| AVG un Combofix to, ka šo jautājumu. Ieskriet ComboFix anyway. Ja AVG mēģina bloķēt tas tad tikai lai tā varētu darboties. |
|
#7
| |||
| |||
| Labi ok viss darīts. Žurnālā, kā prasīts. Quote:
__________________ Euro čempionāts tip = Spānija & Torres <- Damn man būtu laiduši bet par tiem Padarīt nabadzību par vēsturi Taisnīgumu 96 <- Lūdzu, meklēt |
|
#8
| |||
| |||
| Izdzēst šos failus / mapes, tas ir: 1. Doties uz Sākums > Skriet > Type Notepad.exe un noklikšķiniet uz OK atvērt Notepad. Tas vajag ir Notepad, nevis Wordpad. 2. Kopēt tekstu tālāk kodu ailē, uzsverot visu tekstu un nospiediet Ctrl + C Kods: Killall:: Registry: [-HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Security center \ Monitoring \ SymantecAntiVirus] [-HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Security center \ Monitoring \ SymantecFirewall] [-HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ CurrentVersion \ Explorer \ mountpoints2 \ E] [-HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ CurrentVersion \ Explorer \ mountpoints2 \ (c1865685-0.291-11dc-b943-806e6f6e6963)] Firefox:: FF - prefs.js: browser.search.defaulturl - hxxp: / / search.conduit.com / ResultsExt.aspx? ctid = CT1178131 & SearchSource = 3 & q = FF - prefs.js: browser.search.selectedEngine - Web Search 4. Pēc tam noklikšķiniet uz Fails > Glābt 5. Nosaukums failu CFScript.txt - Saglabāt failu darbvirsmā 6. Velciet CFScript (turiet peles kreiso pogu un velkot failu) un nometiet to (izlaide peles kreiso pogu) pārnes ComboFix.exe kā redzat attēlā zemāk. Svarīgi: Veic šo instrukciju uzmanīgi! ![]() ComboFix sāks izpildīt, vienkārši sekojiet instrukcijām. Pēc reboot (ja tā lūdz atsāknēšana), tā sagatavos log for you. Post (Combofix.txt), kas ieiet jūsu nākamo atbildi. Piezīme: Nav mouseclick ComboFix loga kamēr tas darbojas. Tas var izraisīt sistēmas iesaldēt ---------- Download Norton Removal Tool (SymNRT) uz Jūsu rakstāmgalda. Tiklīdz tie lejupielādēti lūdzu, aizveriet visus atvērtos pārlūkprogrammas, arī saglabāt jebkuru darbu, jo tas var prasīt restart.
---------- Java ir novecojis. Vecākas versijas ir ievainojamības, ka ļaunprātīgas vietnes var izmantot, lai inficēt jūsu sistēmā. Vispirms instalēt jaunu Sun Java Runtime Environment Noteikti aizvērt visus pārlūkprogrammas logus, pirms sākt uzstādīšanu. Noņemt veco versiju (s) Lejupielādēt JavaRa
Papildu piezīme: Java Quick Starter (JQS.exe) piebilst, pakalpojums, lai uzlabotu sākotnējās palaišanas laikā, Java applets un lietojumprogrammas. Atslēgt JQS pakalpojumu, ja nevēlaties to izmantot, dodieties uz Start> Control Panel> Java> Advanced> Dažādi un unizvēles rūtiņu, lai Java Quick Starter. Noklikšķiniet uz Labi un pārstartējiet datoru. ---------- Lejupielādēt ATF Apkopēja ar Atribune uz Jūsu rakstāmgalda. Alternate download link Piezīme: Vista lietotājiem jāizmanto Run As Administrator
Ņemiet vērā, ka sistēma darbosies lēnāk par reboot vai divas pēc tam izmanto šo rīku, lai nav panika. Svarīgi: Restartēt datoru, pirms turpināt. ---------- Kā datorā, kurā darbojas tagad? |
|
#9
| |||
| |||
| New ComboFix žurnāls: ComboFix 09-03-29.04 - Chloe 2009-03-31 16:37:20.2 - NTFSx86 Microsoft ® Windows Vista ™ Ultimate 6.0.6001.1.1252.1.1033.18.2046.1173 [GMT 1:00] Sākot no: c: \ users \ Chloe \ Desktop \ ComboFix.exe Komandu slēdžus izmanto:: c: \ users \ Chloe \ Desktop \ CFScript.txt AV: AVG Anti-Virus Free * On-access skenēšana ļāva * (papildināts) FW: ZoneAlarm Firewall * ļāva * * Izveido jaunu atjaunošanas punktu . ((((((((((((((((((((((((( Faili Created no 2009/02/28 līdz 2009/03/31 ))))))))))) )))))))))))))))))))) . 2009/03/31 17:15. 2009/03/31 17:15 45.056 - ------ c: \ Windows \ System32 \ acovcnt.exe 2009/03/30 22:26. 2009/03/30 22:26 <DIR> d -------- C: \ Program Files \ MediaMonkey 2009/03/29 16:23. 2008/06/20 02:14 781.344 - ------ c: \ Windows \ System32 \ PresentationNative_v0300.dll 2009/03/29 16:23. 2008/06/20 02:14 622.080 - ------ c: \ Windows \ System32 \ icardagt.exe 2009/03/29 16:23. 2008/06/20 02:14 326.160 - ------ c: \ Windows \ System32 \ PresentationHost.exe 2009/03/29 16:23. 2008/06/20 02:14 105.016 - ------ c: \ Windows \ System32 \ PresentationCFFRasterizerNativ e_v0300.dll 2009/03/29 16:23. 2008/06/20 02:14 97.800 - ------ c: \ Windows \ System32 \ infocardapi.dll 2009/03/29 16:23. 2008/06/20 02:14 43.544 - ------ c: \ Windows \ System32 \ PresentationHostProxy.dll 2009/03/29 16:23. 2008/06/20 02:14 37.384 - ------ c: \ Windows \ System32 \ infocardcpl.cpl 2009/03/29 16:23. 2008/06/20 02:14 11.264 - ------ c: \ Windows \ System32 \ icardres.dll 2009/03/29 16:15. 2008/07/27 19:03 282.112 - ------ c: \ Windows \ System32 \ mscoree.dll 2009/03/29 16:15. 2008/07/27 19:03 96.760 - ------ c: \ Windows \ System32 \ dfshim.dll 2009/03/29 16:15. 2008/07/27 19:03 41.984 - ------ c: \ Windows \ System32 \ netfxperf.dll 2009/03/29 16:14. 2008/07/27 19:03 158.720 - ------ c: \ Windows \ System32 \ mscorier.dll 2009/03/29 16:14. 2008/07/27 19:03 83.968 - ------ c: \ Windows \ System32 \ mscories.dll 2009/03/29 13:52. 2009/03/29 13:53 <DIR> d -------- C: \ Program Files \ Defraggler 2009/03/29 13:26. 2008/02/23 05:38 170.496 - ------ c: \ Windows \ System32 \ tcpipcfg.dll 2009/03/29 13:26. 2008/02/23 03:41 22.528 - ------ c: \ Windows \ System32 \ netiougc.exe 2009/03/29 13:25. 2009/02/16 00:10 1.221.512 - ------ c: \ Windows \ System32 \ zpeng25.dll 2009/03/17 21:57. 2009/03/17 21:57 <DIR> d -------- C: \ Program Files \ Microsoft 2009/03/17 21:56. 2009/03/17 21:56 <DIR> d -------- C: \ Windows \ PCHEALTH 2009/03/16 22:43. 2009/03/28 22:36 <DIR> d - h ----- C: \ $ AVG8.VAULT $ 2009/03/16 20:59. 2009/03/16 20:59 25 - ------ c: \ windows \ cdplayer.ini 2009/03/14 00:34. 2008/12/05 05:32 428.544 - ------ c: \ Windows \ System32 \ EncDec.dll 2009/03/14 00:34. 2008/12/05 05:32 293.376 - ------ c: \ Windows \ System32 \ psisdecd.dll 2009/03/14 00:34. 2008/12/05 05:31 217.088 - ------ c: \ Windows \ System32 \ psisrndr.ax 2009/03/14 00:34. 2008/12/05 05:31 177.664 - ------ c: \ Windows \ System32 \ mpg2splt.ax 2009/03/14 00:34. 2008/12/05 05:31 80.896 - ------ c: \ Windows \ System32 \ MSNP.ax 2009/03/14 00:29. 2009/03/14 00:29 <DIR> d -------- C: \ programdata \ (00D89592-F643-4D8D-8F0F-AFAE0F14D4C3) 2009/03/14 00:29. 2009/03/14 00:29 <DIR> d -------- C: \ Program Files \ iTunes 2009/03/14 00:29. 2009/03/14 00:29 <DIR> d -------- C: \ Program Files \ iPod 2009/03/14 00:29. 2008/04/17 13:12 107.368 - ------ c: \ Windows \ System32 \ GEARAspi.dll 2009/03/14 00:29. 2009/01/15 13:19 23.848 - ------ c: \ Windows \ System32 \ drivers \ GEARAspiWDM.sys 2009/03/14 00:26. 2009/03/14 00:27 <DIR> d -------- C: \ Program Files \ QuickTime 2009/03/12 23:39. 2009/03/12 23:39 <DIR> d -------- C: \ programdata \ Kontiki 2009/03/12 23:39. 2009/03/12 23:39 <DIR> d -------- C: \ Program Files \ Kontiki 2009/03/12 23:39. 2009/03/12 23:39 <DIR> d -------- C: \ Program Files \ Channel4 2009/03/12 23:38. 2009/03/12 23:38 <DIR> d -------- C: \ programdata \ Channel4 2009/03/11 22:33. 2009/03/31 17:16 <DIR> d -------- C: \ Users \ Chloe \ Tracing 2009/03/11 22:22. 2009/03/11 22:22 <DIR> d -------- C: \ Program Files \ Windows Live SkyDrive 2009/03/11 22:22. 2009/03/17 21:57 <DIR> d -------- C: \ Program Files \ Windows Live 2009/03/11 21:57. 2009/03/11 21:57 <DIR> d -------- C: \ Program Files \ Common Files \ Windows Live 2009/03/11 13:13. 2009/03/11 21:47 <DIR> d -------- C: \ Program Files \ Amazon 2009/03/11 13:13. 2009/03/11 13:13 107.272 - ------ c: \ Windows \ System32 \ drivers \ avgtdix.sys 2009/03/11 02:09. 2009/01/15 04:36 1.383.424 - ------ c: \ Windows \ System32 \ mshtml.tlb 2009/03/11 02:09. 2009/01/15 07:11 827.392 - ------ c: \ Windows \ System32 \ Wininet.dll 2009/03/11 02:05. 2008/12/16 04:29 8.147.456 - ------ c: \ Windows \ System32 \ wmploc.DLL 2009/03/11 02:05. 2008/12/16 06:31 7.680 - ------ c: \ Windows \ System32 \ spwmp.dll 2009/03/11 02:05. 2008/12/16 06:31 4.096 - ------ c: \ Windows \ System32 \ msdxm.ocx 2009/03/11 02:05. 2008/12/16 06:31 4.096 - ------ c: \ Windows \ System32 \ dxmasf.dll 2009/03/11 02:03. 2008/12/16 03:42 288.768 - ------ c: \ Windows \ System32 \ drivers \ srv.sys 2009/03/11 02:03. 2008/11/27 05:43 268.288 - ------ c: \ Windows \ System32 \ schannel.dll 2009/03/11 02:02. 2009/02/09 04:10 2.033.152 - ------ c: \ Windows \ System32 \ win32k.sys 2009/02/06 19:52. 2009/02/06 19:52 49.504 - ------ c: \ Windows \ System32 \ sirenacm.dll . (((((((((((((((((((((((((((((((((((((((( Find3M Ziņojums )))))))) )))))))))))))))))))))))))))))))))))))))))))) . 2009/03/31 16:15 --------- d --- aw c: \ programdata \ TEMP 2009/03/31 16:14 350.195 --- ha-w C: \ Windows \ system32 \ drivers \ vsconfig.xml 2009/03/29 14:42 --------- d ----- wc: \ programdata \ Spybot - Search & Destroy 2009/03/29 14:42 --------- d ----- wc: \ Program Files \ Spybot - Search & Destroy 2009/03/29 14:42 --------- d ----- wc: \ Program Files \ CCleaner 2009/03/19 16:48 --------- d ----- wc: \ Users \ Chloe \ AppData \ Roaming \ uTorrent 2009/03/16 19:58 --------- d ----- wc: \ Program Files \ Common Files \ Real 2009/03/13 23:29 --------- d ----- wc: \ programdata \ Apple Computer 2009/03/13 23:29 --------- d ----- wc: \ Program Files \ Common Files \ Apple 2009/03/13 23:27 --------- d ----- wc: \ Program Files \ Bonjour 2009/03/12 22:24 --------- d ----- wc: \ Program Files \ Google 2009/03/11 23:07 --------- d ----- wc: \ Program Files \ Microsoft Silverlight 2009/03/11 23:05 --------- d ----- wc: \ Program Files \ Windows Mail 2009/03/11 12:13 325.128 ---- aw c: \ windows \ system32 \ drivers \ avgldx86.sys 2009/03/11 11:52 --------- d ----- wc: \ programdata \ avg8 2009/02/15 23:11 293.528 ---- aw c: \ windows \ system32 \ drivers \ vsdatant.sys 2009/01/14 20:20 55.232 ---- aw c: \ users \ Chloe \ AppData \ Roaming \ GDIPFONTCACHEV1.DAT 2008/12/31 21:51 13.025 ---- aw c: \ users \ Chloe \ AppData \ Roaming \ nvModes.dat 2008/12/31 14:32 174 - SHA-w C: \ Program Files \ desktop.ini 2008/11/19 15:31 81.920 ---- aw c: \ users \ Chloe \ AppData \ Roaming \ ezpinst.exe 2008/11/19 15:31 47.360 ---- aw c: \ users \ Chloe \ AppData \ Roaming \ pcouffin.sys 2007/05/31 18:23 77.160 ---- aw c: \ users \ Chloe \ DSETUP.dll 2007/05/31 18:23 503.144 ---- aw c: \ users \ Chloe \ DXSETUP.exe 2007/05/31 18:23 1.673.576 ---- aw c: \ users \ Chloe \ dsetup32.dll . ((((((((((((((((((((((((((((( SnapShot@2009-03-30_22.13.33.29 )))))))))) ))))))))))))))))))))))))))))))) . + 2009/03/31 16:14:31 2.048 - SHA-w C: \ Windows \ ServiceProfiles \ LocalService \ AppData \ Lo cal \ lastalive0.dat + 2009/03/31 16:14:31 2.048 - SHA-w C: \ Windows \ ServiceProfiles \ LocalService \ AppData \ Lo cal \ lastalive1.dat - 2009/03/30 21:07:56 1.048.576 - SHA-w C: \ Windows \ ServiceProfiles \ LocalService \ NTUSER.DAT + 2009/03/31 16:15:44 1.048.576 - SHA-w C: \ Windows \ ServiceProfiles \ LocalService \ NTUSER.DAT - 2009/03/30 21:07:56 1.048.576 - SHA-w C: \ Windows \ ServiceProfiles \ NetworkService \ NTUSER.D AT + 2009/03/31 16:15:44 1.048.576 - SHA-w C: \ Windows \ ServiceProfiles \ NetworkService \ NTUSER.D AT - 2009/03/30 21:07:06 16.384 - SHA-w C: \ Windows \ System32 \ Config \ systemprofile \ AppData \ L ocal \ Microsoft \ Windows \ Vēsture \ History.IE5 \ index.d pie + 2009/03/31 16:14:35 16.384 - SHA-w C: \ Windows \ System32 \ Config \ systemprofile \ AppData \ L ocal \ Microsoft \ Windows \ Vēsture \ History.IE5 \ index.d pie - 2009/03/30 21:07:06 32.768 - SHA-w C: \ Windows \ System32 \ Config \ systemprofile \ AppData \ L ocal \ Microsoft \ Windows \ Temporary Internet Files \ Content.IE5 \ index.dat + 2009/03/31 16:14:35 32.768 - SHA-w C: \ Windows \ System32 \ Config \ systemprofile \ AppData \ L ocal \ Microsoft \ Windows \ Temporary Internet Files \ Content.IE5 \ index.dat - 2009/03/30 21:07:06 16.384 - SHA-w C: \ Windows \ System32 \ Config \ systemprofile \ AppData \ r oaming \ Microsoft \ Windows \ Cookies \ index.dat + 2009/03/31 16:14:35 16.384 - SHA-w C: \ Windows \ System32 \ Config \ systemprofile \ AppData \ r oaming \ Microsoft \ Windows \ Cookies \ index.dat - 2009/03/30 19:05:35 126.818 ---- aw c: \ Windows \ System32 \ perfc007.dat + 2009/03/31 15:21:23 126.818 ---- aw c: \ Windows \ System32 \ perfc007.dat - 2009/03/30 19:05:35 119.076 ---- aw c: \ Windows \ System32 \ perfc009.dat + 2009/03/31 15:21:23 119.076 ---- aw c: \ Windows \ System32 \ perfc009.dat - 2009/03/30 19:05:35 127.578 ---- aw c: \ Windows \ System32 \ perfc00C.dat + 2009/03/31 15:21:23 127.578 ---- aw c: \ Windows \ System32 \ perfc00C.dat - 2009/03/30 19:05:35 124.352 ---- aw c: \ Windows \ System32 \ perfc010.dat + 2009/03/31 15:21:23 124.352 ---- aw c: \ Windows \ System32 \ perfc010.dat - 2009/03/30 19:05:35 130.866 ---- aw c: \ Windows \ System32 \ perfc013.dat + 2009/03/31 15:21:23 130.866 ---- aw c: \ Windows \ System32 \ perfc013.dat - 2009/03/30 19:05:35 130.272 ---- aw c: \ Windows \ System32 \ perfc019.dat + 2009/03/31 15:21:23 130.272 ---- aw c: \ Windows \ System32 \ perfc019.dat - 2009/03/30 19:05:35 620.942 ---- aw c: \ Windows \ System32 \ perfh007.dat + 2009/03/31 15:21:23 620.942 ---- aw c: \ Windows \ System32 \ perfh007.dat - 2009/03/30 19:05:35 644.794 ---- aw c: \ Windows \ System32 \ perfh009.dat + 2009/03/31 15:21:23 644.794 ---- aw c: \ Windows \ System32 \ perfh009.dat - 2009/03/30 19:05:35 672.380 ---- aw c: \ Windows \ System32 \ perfh00C.dat + 2009/03/31 15:21:23 672.380 ---- aw c: \ Windows \ System32 \ perfh00C.dat - 2009/03/30 19:05:35 666.234 ---- aw c: \ Windows \ System32 \ perfh010.dat + 2009/03/31 15:21:23 666.234 ---- aw c: \ Windows \ System32 \ perfh010.dat - 2009/03/30 19:05:35 669.852 ---- aw c: \ Windows \ System32 \ perfh013.dat + 2009/03/31 15:21:23 669.852 ---- aw c: \ Windows \ System32 \ perfh013.dat - 2009/03/30 19:05:35 657.990 ---- aw c: \ Windows \ System32 \ perfh019.dat + 2009/03/31 15:21:23 657.990 ---- aw c: \ Windows \ System32 \ perfh019.dat - 2009/03/30 19:03:55 17.414 ---- aw c: \ Windows \ System32 \ WDI \ (86432a0b-3c7d-4ddf-a89c-172faa90485d) \ S-1-5-21-3600620296-2450975610 - 132854369-1000_UserData.bin + 2009/03/31 16:17:14 18.026 ---- aw c: \ Windows \ System32 \ WDI \ (86432a0b-3c7d-4ddf-a89c-172faa90485d) \ S-1-5-21-3600620296-2450975610 - 132854369-1000_UserData.bin - 2009/03/30 19:03:55 81.750 ---- aw c: \ Windows \ System32 \ WDI \ BootPerformanceDiagnostics _SystemData.bin + 2009/03/31 16:17:14 81.884 ---- aw c: \ Windows \ System32 \ WDI \ BootPerformanceDiagnostics _SystemData.bin - 2009/03/30 19:03:54 68.204 ---- aw c: \ Windows \ System32 \ WDI \ ShutdownPerformanceDiagnos tics_SystemData.bin + 2009/03/31 15:15:30 68.346 ---- aw c: \ Windows \ System32 \ WDI \ ShutdownPerformanceDiagnos tics_SystemData.bin . - Snapshot reset uz pašreizējo datumu -- . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))) )))))))))))))))))))))))))))))))))))))))) . . * Piezīme * tukši ieraksti & legit default ieraksti netiek parādīti REGEDIT4 [HKEY_CURRENT_USER \ SOFTWARE \ Microsoft \ Windows \ Curre ntVersion \ Run] "RocketDock" = "C: \ Program Files \ RocketDock \ RocketDock.exe" [2007/09/02 495.616] "msnmsgr" = "C: \ Program Files \ Windows Live \ Messenger \ msnmsgr.exe" [2009/02/06 3.885.408] "WMPNSCFG" = "C: \ Program Files \ Windows Media Player \ WMPNSCFG.exe" [2008/01/19 202.240] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Run] "ASUS Screen Saver Protector" = "c: \ windows \ ASScrPro.exe" [2007/05/15 33.136] "IFXSPMGT" = "C: \ Windows \ system32 \ ifxspmgt.exe" [2007/02/26 677.408] "ZoneAlarm Client" = "C: \ Program Files \ Zone Labs \ ZoneAlarm \ zlclient.exe" [2009/02/16 981.384] "SynTPEnh" = "C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe" [2007/03/01 857.648] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entversion \ Policies \ SYSTEM] "EnableUIADesktopToggle" = 0 (0x0) [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ Windows] "AppInit_DLLs" = APSHook.dll avgrsstx.dll [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ drivers32] "msacm.ac3filter" = ac3filter.acm [HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ contro l \ LSA] Notification Packages REG_MULTI_SZ scecli ASWLNPkg [HKLM \ ~ \ startupfolder \ C: ^ programdata ^ Microsoft ^ Vējš ows ^ Start Menu Programs ^ ^ Startup ^ WinZip Quick Pick.lnk] path = C: \ programdata \ Microsoft \ Windows \ Start Menu \ Programs \ Startup \ WinZip Quick Pick.lnk backup = c: \ windows \ PSS \ WinZip Quick Pick.lnk.CommonStartup backupExtension =. CommonStartup [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ 4oD] - ------ 2007/04/23 12:23 1.032.640 c: \ Program Files \ Kontiki \ KHost.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ Adobe Reader Speed Launcher] - ------ 2008/06/12 02:38 34.672 d: \ Program Files \ Reader \ reader_sl.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ ASUS Camera Screensaver] - ------ 2007/05/15 05:12 37.232 c: \ windows \ ASScrProlog.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ ATKMEDIA] - ------ 2006/11/02 16:27 61.440 c: \ Program Files \ HP \ ATK Media \ DMedia.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ AVG8_TRAY] - ------ 2009/03/11 13:13 1.601.304 c: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgtray.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ CognizanceTS] -ra ------ 2003/12/21 22:11 17.920 c: \ PROGRA ~ 1 \ ASUSSE ~ 1 \ ASUSSE ~ 1 \ Bin \ ASTSVCC.dll [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ ehTray.exe] - ------ 2008/01/19 08:33 125.952 c: \ windows \ ehome \ ehtray.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ Google Update] - ---- t 2009/03/17 22:06 133.104 c: \ users \ Chloe \ AppData \ Local \ Google \ Update \ GoogleU pdate.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ iTunesHelper] - ------ 2009/03/11 14:52 342.312 c: \ Program Files \ iTunes \ iTunesHelper.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ msnmsgr] - ------ 2009/02/06 19:51 3.885.408 c: \ Program Files \ Windows Live \ Messenger \ msnmsgr.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ NvCplDaemon] - ------ 2007/04/04 12:40 8.429.568 c: \ Windows \ System32 \ nvcpl.dll [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ NvMediaCenter] - ------ 2007/04/04 12:40 81.920 c: \ Windows \ System32 \ nvmctray.dll [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ NvSvc] - ------ 2007/04/04 12:40 86.016 c: \ Windows \ System32 \ nvsvc.dll [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ QuickTime Task] - ------ 2009/01/05 17:18 413.696 c: \ Program Files \ QuickTime \ QTTask.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ RocketDock] - ------ 2007/09/02 13:58 495.616 c: \ Program Files \ RocketDock \ RocketDock.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ SpybotSD TeaTimer] -rahs ---- 2009/03/05 16:07 2.260.480 c: \ Program Files \ Spybot - Search & Destroy \ TeaTimer.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ SunJavaUpdateSched] - ------ 2008/06/10 04:27 144.784 c: \ Program Files \ Java \ jre1.6.0_07 \ bin \ jusched.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ TkBellExe] - ------ 2009/03/16 20:58 198.160 c: \ Program Files \ Common Files \ Real \ Update_OB \ realsched.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ Windows Defender] - ------ 2008/01/19 08:38 1.008.184 c: \ Program Files \ Windows Defender \ MSASCui.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ WMPNSCFG] - ------ 2008/01/19 08:33 202.240 c: \ Program Files \ Windows Media Player \ wmpnscfg.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ (0228e555-4f9c-4e35-a3ec-b109a192b4c2)] - ------ 2005/07/15 22:48 479.232 c: \ Program Files \ Google \ Gmail Notifier \ gnotify.exe [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ RtHDVCpl] - ------ 2007/02/15 10:07 4.390.912 c: \ windows \ RtHDVCpl.exe [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Security center \ Monitoring] "DisableMonitoring" = DWORD: 00000001 [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Security center \ Monitoring \ ZoneLabsFirewall] "DisableMonitoring" = DWORD: 00000001 [HKLM \ ~ \ Services \ sharedaccess \ Parameters \ firewallpo licy \ DomainProfile] "EnableFirewall" = 0 (0x0) [HKLM \ ~ \ Services \ sharedaccess \ Parameters \ firewallpo licy \ FirewallRules] "(71E74FA5-D1FA-4A82-9.121-AE2CACB2ED04)" = Profila = Privāta | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "(2FE2345B-5C77-485E-9855-FC6024DE75EC)" = Profila = Privāta | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "(CC9CFD37-6.799-47CF-9AEE-1063F21C5548)" = Profila = Privāta | C: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "(3D44E6E8-68F3-42F0-B97E-1081F1354874)" = UDP: c: \ Program Files \ limewire \ LimeWire.exe: limewire 4.12.15 "(B2393435-26B3-4.482-A391-C964F3370D66)" = TCP: c: \ Program Files \ limewire \ LimeWire.exe: limewire 4.12.15 "(1B1039C9-3AEF-4B2E-85CA-DA79FB7CDBD3)" = Disabled: c: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "(F9EC3544-5A35-4D84-A067-E7167563791A)" = Disabled: c: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "(A9CE85F3-F9BA-4.875-B169-9DEF59911C8A)" = Disabled: c: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "TCP Query User (0FAAFA32-F5A3-4C35-9AFD-A648E4B3016E) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = UDP: c: \ Program Files \ uTorrent \ utorrent.exe: uTorrent "UDP Query User (CDC85196-C503-4F00-82DC-B95F8D021895) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = TCP: c: \ Program Files \ uTorrent \ utorrent.exe: uTorrent "TCP Query User (5D761702-BEB7-4B94-B693-1A7EF8E441ED) c: \ \ Program Files \ \ viegli Web TV un radio \ \ easywebtv.exe" = UDP: c: \ Program Files \ viegli Web TV un radio \ easywebtv.exe : Web TV \ Radio \ Media "UDP Query User (A7E2F9B1-976E-49B1-960A-8FE671DECB26) c: \ \ Program Files \ \ viegli Web TV un radio \ \ easywebtv.exe" = TCP: c: \ Program Files \ viegli Web TV un radio \ easywebtv.exe : Web TV \ Radio \ Media "(978D57EE-8CEF-4E88-B3CC-472590D8A602)" = c: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "(038AD6DB-57BA-4.294-B6BE-DC5AC329D87A)" = c: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "TCP Query User (20F3997A-2.406-42BC-9A96-17DBA8717938) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = UDP: c: \ Program Files \ soulseek \ slsk.exe: SoulSeek "UDP Query User (EBEDABDC-8DFA-4EA4-83A0-5D79C8A2BE45) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = TCP: c: \ Program Files \ soulseek \ slsk.exe: SoulSeek "TCP Query User (A2D20908-089C-441B-B9C8-C8811AFCAB9E) c: \ \ Program Files \ \ limewire \ \ limewire.exe" = UDP: c: \ Program Files \ limewire \ limewire.exe: limewire "UDP Query User (0B6B64F6-D6E9-4D1D-B83A-E6E85E360C05) c: \ \ Program Files \ \ limewire \ \ limewire.exe" = TCP: c: \ Program Files \ limewire \ limewire.exe: limewire "(2E890455-237D-4ABA-BE37-B5E6E1862834)" = c: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "(DDAAC8F6-7.557-495A-82B3-EBFF9330A2CC)" = c: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "(5131D757-BC24-44C9-8EA5-E268DFC6DCAC)" = c: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "TCP Query User (4C52E1A6-D998-41D5-8E99-27F21E3CA7CB) c: \ \ Program Files \ \ Mozilla Firefox \ \ firefox.exe" = UDP: c: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox "UDP Query User (80235B6B-2.462-4AC3-8A59-7534841DE76B) c: \ \ Program Files \ \ Mozilla Firefox \ \ firefox.exe" = TCP: c: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox "TCP Query User (049DD1E6-8.191-4.983-A59D-240E79B46042) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = UDP: c: \ Program Files \ uTorrent \ utorrent.exe: uTorrent "UDP Query User (9A00A32D-A675-4.425-8F5E-1528AAB521FB) c: \ \ Program Files \ \ uTorrent \ \ utorrent.exe" = TCP: c: \ Program Files \ uTorrent \ utorrent.exe: uTorrent "TCP Query User (348698D9-5A1D-4E1C-AC00-DBDC43BE0ACF) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = UDP: c: \ Program Files \ soulseek \ slsk.exe: SoulSeek "UDP Query User (60AFF659-3A7C-488C-9CCA-0A8589DD32FA) c: \ \ Program Files \ \ soulseek \ \ slsk.exe" = TCP: c: \ Program Files \ soulseek \ slsk.exe: SoulSeek "TCP Query User (3EF98A58-7B3C-42B1-8A5A-CF7DEF59C2A7) c: \ \ Program Files \ \ sopcast \ \ sopcast.exe" = UDP: c: \ Program Files \ sopcast \ sopcast.exe: SopCast Main Application "UDP Query User (D8A0735D-6D19-4.482-A90A-35A9D023DEBE) c: \ \ Program Files \ \ sopcast \ \ sopcast.exe" = TCP: c: \ Program Files \ sopcast \ sopcast.exe: SopCast Main Application "TCP Query User (7B392C25-D64F-4897-B5CC-5C9B83106BB0) c: \ \ Program Files \ \ Mozilla Firefox \ \ firefox.exe" = UDP: c: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox "UDP Query User (9990806D-9.198-4.760-93E7-C65D44E1FE8A) c: \ \ Program Files \ \ Mozilla Firefox \ \ firefox.exe" = TCP: c: \ Program Files \ Mozilla Firefox \ firefox.exe: Firefox "TCP Query User (9998DAB7-D775-4.620-A491-D752230551A3) c: \ \ Program Files \ \ Internet Explorer \ \ iexplore.exe" = UDP: c: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer "UDP Query User (B9293167-A4DC-43ED-893B-B5B1B89F9988) c: \ \ Program Files \ \ Internet Explorer \ \ iexplore.exe" = TCP: c: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer "TCP Query User (B04F6C2B-953A-469D-AFD8-4F3AE27A4941) c: \ \ Users \ \ chloe \ \ appdata \ \ viesabonēšanas \ \ s opcast \ \ adv \ \ sopadver.exe" = UDP: c: \ users \ chloe \ appdata \ viesabonēšanas \ sopcast \ adv \ izmērcēt adver.exe: sopadver.exe "UDP Query User (914B6A2A-9A2A-43A8-B4EA-BB1EEDC476B5) c: \ \ Users \ \ chloe \ \ appdata \ \ viesabonēšanas \ \ s opcast \ \ adv \ \ sopadver.exe" = TCP: c: \ users \ chloe \ appdata \ viesabonēšanas \ sopcast \ adv \ izmērcēt adver.exe: sopadver.exe "TCP Query User (69F8C35B-6.614-4.033-B40E-59012B10975A) c: \ \ Program Files \ \ bearflix \ \ bearflix.exe" = UDP: c: \ Program Files \ bearflix \ bearflix.exe: BearFlix "UDP Query User (89ABF64F-F79E-456D-9.136-82A8675A3E17) c: \ \ Program Files \ \ bearflix \ \ bearflix.exe" = TCP: c: \ Program Files \ bearflix \ bearflix.exe: BearFlix "(8D76BC83-ABC9-406B-8.945-366EA3B7074B)" = UDP: c: \ Program Files \ SmartFTP Client \ SmartFTP.exe: SmartFTP Client "(9FC79C86-3E66-4A61-AA2A-FAB0C61E0453)" = TCP: c: \ Program Files \ SmartFTP Client \ SmartFTP.exe: SmartFTP Client "TCP Query User (9FF9F89E-5323-45dB-89F0-BA37B84180EE) c: \ \ Program Files \ \ tvants \ \ tvants.exe" = UDP: c: \ Program Files \ tvants \ tvants.exe: TVAnts "UDP Query User (C10505B7-BDD4-49BB-93E6-E73B8E6C4E33) c: \ \ Program Files \ \ tvants \ \ tvants.exe" = TCP: c: \ Program Files \ tvants \ tvants.exe: TVAnts "TCP Query User (A9E241F3-D69C-4E67-938B-33C91AB576A1) c: \ \ Program Files \ \ tvuplayer \ \ tvuplayer.exe" = UDP: c: \ Program Files \ tvuplayer \ tvuplayer.exe: TVU Player Component "UDP Query User (D3542B64-2CF9-4C20-B6CB-1D9096FF27EB) c: \ \ Program Files \ \ tvuplayer \ \ tvuplayer.exe" = TCP: c: \ Program Files \ tvuplayer \ tvuplayer.exe: TVU Player Component "(F8B68D6E-3A24-4B31-8.261-FB3CA92B5740)" = c: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "TCP Query User (4E95BA55-EDF5-491D-9.059-F11FF353A128) c: \ \ Users \ \ chloe \ \ appdata \ \ viesabonēšanas \ \ s opcast \ \ adv \ \ sopadver.exe" = UDP: c: \ users \ chloe \ appdata \ viesabonēšanas \ sopcast \ adv \ izmērcēt adver.exe: sopadver.exe "UDP Query User (55C79E39-F1AC-45C7-8F99-995A835F089A) c: \ \ Users \ \ chloe \ \ appdata \ \ viesabonēšanas \ \ s opcast \ \ adv \ \ sopadver.exe" = TCP: c: \ users \ chloe \ appdata \ viesabonēšanas \ sopcast \ adv \ izmērcēt adver.exe: sopadver.exe "TCP Query User (A3EF2380-6.740-4FD5-913E-D67F54A54B11) c: \ \ Program Files \ \ sopcast \ \ sopcast.exe" = UDP: c: \ Program Files \ sopcast \ sopcast.exe: SopCast Main Application "UDP Query User (E9C164FD-CB41-4D08-9DBA-BDDB929D1C86) c: \ \ Program Files \ \ sopcast \ \ sopcast.exe" = TCP: c: \ Program Files \ sopcast \ sopcast.exe: SopCast Main Application "TCP Query User (C1148110-2D5B-4.810-8.651-98FBFD3A6751) c: \ \ Program Files \ \ Internet Explorer \ \ iexplore.exe" = UDP: c: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer "UDP Query User (F15683E5-A578-47EE-BEB1-4541978254F4) c: \ \ Program Files \ \ Internet Explorer \ \ iexplore.exe" = TCP: c: \ Program Files \ Internet Explorer \ iexplore.exe: Internet Explorer "TCP Query User (CCA39E89-B85B-41BA-9A33-CA6DB37579E4) d: \ \ Program Files \ \ clue.exe" = UDP: d: \ Program Files \ clue.exe: Clue "UDP Query User (39F3C83F-DCF0-43B4-B149-19F3630B3078) d: \ \ Program Files \ \ clue.exe" = TCP: d: \ Program Files \ clue.exe: Clue "(01834D55-82B5-480D-BEFF-52EDB82BB8B5)" = c: \ Program Files \ Windows Live \ Messenger \ livecall.exe: Windows Live Messenger (Phone) "(90ECB35B-6.897-4.166-A35A-04BC39978BA9)" = c: \ Program Files \ AVG \ AVG8 \ avgemc.exe: avgemc.exe "(504F647E-1.476-4.948-AA42-DC1DF85CA9A8)" = c: \ Program Files \ AVG \ AVG8 \ avgupd.exe: avgupd.exe "(CC411EBB-9ACA-4.217-9.994-ABB961E83B3C)" = UDP: c: \ Program Files \ uTorrent \ uTorrent.exe: μTorrent (TCP-In) "(031AA3B5-F93B-4E4B-9ED7-66C6B9FFF3E8)" = TCP: c: \ Program Files \ uTorrent \ uTorrent.exe: μTorrent (UDP-In) "(1D54F818-ABAC-418F-8F39-17EA7664FABE)" = UDP: c: \ Program Files \ Bonjour \ mDNSResponder.exe: Bonjour "(3C9FFAF4-40EA-450F-A906-D34D3E2EFA72)" = TCP: c: \ Program Files \ Bonjour \ mDNSResponder.exe: Bonjour "(6AC9F5D1-C3AC-4.878-8.740-8A3E10F857E2)" = UDP: c: \ Program Files \ iTunes \ iTunes.exe: iTunes "(77045B5E-EC2E-4.749-AC23-32130CD39567)" = TCP: c: \ Program Files \ iTunes \ iTunes.exe: iTunes "(00BE12C0-42CB-4B64-AA07-80A45C05B97C)" = Neaktīvs: UDP: c: \ Program Files \ Sports Interactive \ Football Manager 2008 \ fm.exe: Football Manager 2.008 "(0A529C81-B8E4-4809-A54B-B5141A997A78)" = Disabled: TCP: c: \ Program Files \ Sports Interactive \ Football Manager 2008 \ fm.exe: Football Manager 2.008 [HKLM \ ~ \ Services \ sharedaccess \ Parameters \ firewallpo licy \ PublicProfile] "EnableFirewall" = 0 (0x0) [HKLM \ ~ \ Services \ sharedaccess \ Parameters \ firewallpo licy \ StandardProfile] "EnableFirewall" = 0 (0x0) R1 AvgLdx86; AVG Free AVI Loader Driver x86, c: \ Windows \ System32 \ drivers \ avgldx86.sys [2008/12/24 325.128] R1 AvgTdiX; AVG8 Network virzienmainītājs c: \ Windows \ System32 \ drivers \ avgtdix.sys [2009/03/11 107.272] R1 ItSDisk; ItSDisk c: \ Windows \ System32 \ drivers \ itsdis k.sys [2006/05/16 23.496] R1 PersonalSecureDrive; PersonalSecureDrive c: \ Windows \ System32 \ drivers \ psd.sys [2007/01/23 39.080] R2 ASBroker; Logon Session Mākleris c: \ Windows \ System32 \ svchost.exe-k zināšana [2008/08/07 21.504] R2 ASChannel, vietējām sakaru kanālu, c: \ Windows \ System32 \ svchost.exe-k zināšana [2008/08/07 21.504] R2 avg8emc; AVG Free8 E-mail Scanner, c: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgemc.exe [2009/03/11 903.960] R2 avg8wd; AVG Free8 Watchdog, c: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgwdsvc.exe [2009/03/11 298.264] R2 HDDlife HDD piekļuves pakalpojumus; HDDlife HDD piekļuves pakalpojumu, c: \ Program Files \ BinarySense \ HDDlife 3 \ hldasvc.exe [2007/08/09 816.376] R2 SBSDWSCService; SBSD Security Center Service; c: \ Program Files \ Spybot - Search & Destroy \ SDWinSec.exe [2007/07/15 1.153.368] R2 StkSSrv; Syntek AVStream USB2.0 WebCam dienests c: \ Windows \ System32 \ StkCSrv.exe [2007/02/07 24.576] R3 AtcL001; NDIS Miniport draiveris priekš Attansic L1 Gigabit Ethernet Controller; c: \ Windows \ System32 \ drivers \ atl01v32.sy s [2007/03/15 48.128] R3 StkCMini; Syntek AVStream USB2.0 1.3M WebCam, c: \ Windows \ System32 \ drivers \ StkCMini.sys [2007/02/13 1.245.056] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ svchost] bthsvcs REG_MULTI_SZ BthServ Apzina REG_MULTI_SZ ASBroker ASChannel [HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ Curre ntversion \ Explorer \ mountpoints2 \ H] \ shell \ Autorun \ komandu - H: \ LaunchU3.exe [HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ Curre ntversion \ Explorer \ mountpoints2 \ (1a4a90a1-32d4-11dc-aa3d-001bfc03310e)] \ shell \ Autorun \ komandu - H: \ LaunchU3.exe . Saturs "Scheduled Tasks" mape 2009/01/11 c: \ windows \ Uzdevumi \ Defrag Job # 00.job - C: \ Program Files \ DiskTrix \ UltimateDefrag \ UDefrag.exe [] 2009/03/26 c: \ windows \ Uzdevumi \ GoogleUpdateTaskUserS-1-5-21-3600620296-2450975610-132854369-1000.job - C: \ users \ Chloe \ AppData \ Local \ Google \ Update \ GoogleU pdate.exe [2009/03/17 22:06] 2009/03/30 c: \ windows \ Uzdevumi \ User_Feed_Synchronization-(5963E371-2.796-42F4-9A54-042DA9F406BC). Darbā - C: \ windows \ system32 \ msfeedssync.exe [2008/01/19 08:33] . . ------- Papildu Scan ------- . uStart Page = hxxp: / / www.google.co.uk/ uInternet iestatījumi ProxyOverride = *. vietējo IE: E & ksportēt uz Microsoft Excel - c: \ PROGRA ~ 1 \ Micros ~ 2 \ Office10 \ EXCEL.EXE/3000 FF - ProfilePath - c: \ users \ Chloe \ AppData \ Roaming \ Mozilla \ Firefox \ Pro files \ ppnzryw9.default \ FF - prefs.js: browser.search.defaulturl - hxxp: / / search.conduit.com / ResultsExt.aspx? Ctid = CT1178131 & SearchSource = 3 & q = FF - prefs.js: browser.search.selectedEngine - Web Search FF - prefs.js: browser.startup.homepage - hxxp: / / www.google.co.uk/ FF - komponents: C: \ Program Files \ AVG \ AVG8 \ Firefox \ sastāvdaļas \ avgssff.dll FF - komponents: C: \ Program Files \ AVG \ AVG8 \ ToolbarFF \ sastāvdaļas \ vmAVGConnector. Dll FF - komponents: C: \ Program Files \ Real \ RealPlayer \ browserrecord \ sastāvdaļas \ npr pbrowserrecordplugin.dll FF - komponents: c: \ users \ Chloe \ AppData \ Roaming \ Mozilla \ Firefox \ Pro files \ ppnzryw9.default \ paplašinājumi \ (463F6CA5-EE3C-4be1-B7E6-7FEE11953374) \ platforma \ WINNT \ sastāvdaļas \ FoxyTunes. dll FF - spraudnis: c: \ Program Files \ Mozilla Firefox \ plugins \ NP-mswmp.dll FF - spraudnis: c: \ users \ Chloe \ AppData \ Local \ Google \ Update \ 1.2.141 .5 \ npGoogleOneClick7.dll FF - Plugin: d: \ Program Files \ Reader \ pārlūku \ nppdf32.dll ---- FIREFOX POLITIKA ---- FF - user.js: general.useragent.extra.zencast - Creative ZENcast v1.02.08) user_pref (general.useragent.extra.zencast, Creative ZENcast v2.00.07. ************************************************** ************************ catchme 0.3.1375 W2K/XP/Vista - rootkit / Stealth malware detektoru, ar Gmer, http://www.gmer.net Rootkit scan 2009/03/31 17:16:10 Windows 6.0.6001 Service Pack 1 NTFS skenēšana slēptās procesi ... "10ûÿét0ûÿ3ö9sHu [1166747253] 0x75636F44 "10ûÿét0ûÿ3ö9sHu [1166747253] 0x6F6D6D6F skenēšana slēptās palaišana ieraksti ... skenēšana slēptos failus ... scan sekmīgi pabeigta slēptos failus: 0 ************************************************** ************************ . --------------------- DLL Loaded Under Running Processes --------------------- - - - - - - -> "Lsass.exe" (704) c: \ Program Files \ IBM Security Center \ IBM Security Protect Manager \ bin \ ASWLNPkg.dll c: \ Program Files \ IBM Security Center \ IBM Security Protect Manager \ bin \ ItMsg.dll - - - - - - -> 'Explorer.exe "(3.304) c: \ Program Files \ RocketDock \ RocketDock.dll c: \ Program Files \ IBM Security Center \ IBM Security Protect Manager \ Bin \ SFSShell.dll c: \ Program Files \ IBM Security Center \ IBM Security Protect Manager \ Bin \ ItMsg.dll . ------------------------ Citi Running Processes ----------------------- -- . c: \ Windows \ System32 \ audiodg.exe c: \ Windows \ System32 \ ZoneLabs \ vsmon.exe c: \ Windows \ System32 \ wlanext.exe c: \ Program Files \ ATK Hotkey \ ASLDRSrv.exe c: \ Program Files \ ATKGFNEX \ GFNEXSrv.exe c: \ Program Files \ Common Files \ Apple \ Mobile Device Support \ bin \ AppleMobileDeviceService.exe c: \ Program Files \ Symantec \ LiveUpdate \ AluSchedulerSvc.exe c: \ Program Files \ Bonjour \ mDNSResponder.exe c: \ Program Files \ Intel \ Bezvadu \ Bin \ EvtEng.exe c: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgrsx.exe c: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgnsx.exe c: \ Program Files \ Intel \ Intel Matrix Storage Manager \ IAANTmon.exe c: \ Windows \ System32 \ IFXTCS.exe c: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe c: \ Windows \ System32 \ IfxPsdSv.exe c: \ Windows \ System32 \ PSIService.exe c: \ Program Files \ Intel \ Bezvadu \ Bin \ RegSrvc.exe c: \ Program Files \ HP \ NB Probe \ SPM \ spmgr.exe c: \ Program Files \ AVG \ AVG8 \ avgcsrvx.exe c: \ Program Files \ IBM Security Center \ IBM Security Protect Manager \ Bin \ asghost.exe c: \ Program Files \ ATK Hotkey \ HControl.exe c: \ Program Files \ ATKOSD2 \ ATKOSD2.exe c: \ Program Files \ Wireless Console 2 \ wcourier.exe c: \ Program Files \ HP \ Splendid \ ACMON.exe c: \ Program Files \ P4G \ BatteryLife.exe c: \ Windows \ System32 \ ACEngSvr.exe c: \ Program Files \ ATK Hotkey \ ATKOSD.exe c: \ Windows \ System32 \ IfxUAGUI.exe c: \ Program Files \ Infineon \ Security Platform Software \ PSDrt.exe c: \ Program Files \ Infineon \ Security Platform Software \ SpTNA.exe c: \ Windows \ System32 \ wbem \ WMIADAP.exe c: \ Windows \ System32 \ dllhost.exe . ************************************************** ************************ . Izpildes laiks: 2009-03-31 17:23:29 - mašīna bija rebooted ComboFix-karantīnā-files.txt 2009/03/31 16:23:16 ComboFix2.txt 2009/03/30 21:16:26 Pre-Run: 39213060096 bytes free Post-Run: 38632595456 bytes free Current = 1 default = 1 Failed = 0 LastKnownGood = 41 Sets = 1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18, 19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35, 36,37,38,39,40,41 396 --- EOF --- 2009/03/29 15:30:34
__________________ Euro čempionāts tip = Spānija & Torres <- Damn man būtu laiduši bet par tiem Padarīt nabadzību par vēsturi Taisnīgumu 96 <- Lūdzu, meklēt |
|
#10
| |||
| |||
| Attiecībā Norton pārcelšanās man nekad nav uzstādītas norton šeit bet kādēļ Symantec sarakstā?
__________________ Euro čempionāts tip = Spānija & Torres <- Damn man būtu laiduši bet par tiem Padarīt nabadzību par vēsturi Taisnīgumu 96 <- Lūdzu, meklēt |
![]() |
|
| Bookmarks |
Similar Threads | ||||
| Pavediens | Thread Starter | Forums | Replies | Last Post |
| Graphic Card problēmu var Apstāšanās Vista Starting normāli. | Jonmal | General Hardware Čats | 1 | 5 novembris 2009 11:21 |
| XP Running Lēnām, Ne Malware ... | mbonwick | Windows Operating Systems | 3 | 24 augusts 2009 07:52 |
| Dell klēpjdatoru - Trouble Starting Windows - Aiztur slēdz Off | jazker | Portatīvie datori, Mobiles & PDA | 4 | 25 marts 2009 06:59 |
| Kāpēc McAfee scan tik lēni? | stevescholes | Vīrusu, spiegprogrammatūru un drošība | 3 | 29 decembris 2008 15:48 |
| Mana Vista sasalst drīz pēc tam sākas. | Jyan29 | General Hardware Čats | 2 | 30 novembris 2008 16:40 |
| Thread Tools | |
| |