![]() |
|
#1
| |||
| |||
| Sveiki, es nesen izgāja caur process tīrīšanas datoru kaitīgo programmu, un es ievēroju, ka tagad ir nepieciešams ļoti ilgs laiks, lai boot up. Pēc Windows slodzes un piesakās (automātiski), ekrāns ir tukšs pāris minūšu laikā. Aftewards, manas darbvirsmas parādīsies, un tā tiks ielādēta kā parasti. Vai jūs varat man palīdzēt ar šo? Te ir HJT žurnālu, ja tas palīdz. Logfile of Trend Micro HijackThis v2.0.2 Scan saglabāts 11:11:48, uz 02/23/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running procesiem: C: \ WINDOWS \ System32 \ Smss.exe C: \ WINDOWS \ system32 \ winlogon.exe C: \ WINDOWS \ system32 \ services.exe C: \ WINDOWS \ system32 \ lsass.exe C: \ WINDOWS \ system32 \ svchost.exe C: \ Program Files \ Windows Defender \ MsMpEng.exe C: \ WINDOWS \ System32 \ svchost.exe C: \ Program Files \ Intel \ Bezvadu \ Bin \ EvtEng.exe C: \ Windows \ Explorer.exe C: \ Program Files \ Intel \ Bezvadu \ Bin \ S24EvMon.exe C: \ Program Files \ Intel \ Bezvadu \ Bin \ WLKeeper.exe C: \ WINDOWS \ system32 \ ZoneLabs \ vsmon.exe C: \ Program Files \ Alwil Software \ Avast4 \ aswUpdSv.exe C: \ Program Files \ Alwil Software \ Avast4 \ ashServ.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Program Files \ Grisoft \ AVG Anti-Spyware 7,5 \ guard.exe C: \ Program Files \ Comodo \ CBOClean \ BOCORE.exe C: \ Program Files \ WIDCOMM \ Bluetooth Software \ bin \ btwdins.exe C: \ WINDOWS \ system32 \ cisvc.exe C: \ Program Files \ Diskeeper Corporation \ Diskeeper \ DkService.exe C: \ Program Files \ Common Files \ LogiShrd \ LVCOMSER \ LVComSer.exe C: \ Program Files \ Common Files \ Microsoft Shared \ VS7DEBUG \ MDM.EXE C: \ Program Files \ Intel \ Bezvadu \ Bin \ RegSrvc.exe C: \ WINDOWS \ system32 \ svchost.exe C: \ WINDOWS \ system32 \ tlntsvr.exe C: \ WINDOWS \ system32 \ fxssvc.exe C: \ Program Files \ Common Files \ LogiShrd \ LVCOMSER \ LVComSer.exe C: \ Program Files \ Alwil Software \ Avast4 \ ashMaiSv.exe C: \ Program Files \ Alwil Software \ Avast4 \ ashWebSv.exe C: \ WINDOWS \ stsystra.exe C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe C: \ Program Files \ Intel \ Bezvadu \ bin \ ZCfgSvc.exe C: \ Program Files \ Intel \ Bezvadu \ Bin \ ifrmewrk.exe C: \ Program Files \ Dell \ dzīvžogs \ quickset.exe C: \ Program Files \ Creative \ SBAudigy \ Surround Mixer \ CTSysVol.exe C: \ WINDOWS \ system32 \ hkcmd.exe C: \ WINDOWS \ system32 \ igfxpers.exe C: \ Program Files \ Windows Defender \ MSASCui.exe C: \ Program Files \ Zone Labs \ ZoneAlarm \ zlclient.exe C: \ WINDOWS \ system32 \ igfxsrvc.exe C: \ Program Files \ Google \ Google Desktop Search \ GoogleDesktop.exe C: \ PROGRA ~ 1 \ ALWILS ~ 1 \ Avast4 \ ashDisp.exe C: \ PROGRA ~ 1 \ Comodo \ CBOClean \ BOC425.EXE C: \ Program Files \ Intel \ Bezvadu \ Bin \ Dot1XCfg.exe C: \ Program Files \ Grisoft \ AVG Anti-Spyware 7,5 \ avgas.exe C: \ WINDOWS \ system32 \ ctfmon.exe C: \ Program Files \ Google \ Google Desktop Search \ GoogleDesktop.exe C: \ Program Files \ WIDCOMM \ Bluetooth Software \ BTTray.exe C: \ Program Files \ Hamachi \ hamachi.exe C: \ Program Files \ Microsoft Office \ Office12 \ Outlook.exe C: \ WINDOWS \ system32 \ cidaemon.exe C: \ WINDOWS \ system32 \ cidaemon.exe C: \ Program Files \ Mozilla Firefox \ firefox.exe C: \ Program Files \ Trend Micro \ HijackThis \ sniper.exe R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://www.google.ca/ R1 - HKCU \ Software \ Microsoft \ Windows \ CurrentVersion \ Int ernet iestatījumi ProxyOverride = *. vietējo F3 - REG: WIN.INI: kravas = F3 - REG: WIN.INI: Run = O2 - BHO: Spybot-S & D IE Protection - (53.707.962-6F74-2D53-2.644-206D7942484F) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll O4 - HKLM \ .. \ Run: [SigmatelSysTrayApp] stsystra.exe O4 - HKLM \ .. \ Run: [SynTPEnh] C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe O4 - HKLM \ .. \ Run: [IntelZeroConfig] "C: \ Program Files \ Intel \ Bezvadu \ bin \ ZCfgSvc.exe" O4 - HKLM \ .. \ Run: [IntelWireless] "C: \ Program Files \ Intel \ Bezvadu \ Bin \ ifrmewrk.exe" / tf Intel ProSet / Wireless O4 - HKLM \ .. \ Run: [Dell dzīvžogs] C: \ Program Files \ Dell \ dzīvžogs \ quickset.exe O4 - HKLM \ .. \ Run: [CTSysVol] C: \ Program Files \ Creative \ SBAudigy \ Surround Mixer \ CTSysVol.exe / r O4 - HKLM \ .. \ Run: [IgfxTray] C: \ WINDOWS \ system32 \ igfxtray.exe O4 - HKLM \ .. \ Run: [HotKeysCmds] C: \ WINDOWS \ system32 \ hkcmd.exe O4 - HKLM \ .. \ Run: [noturīgums] C: \ WINDOWS \ system32 \ igfxpers.exe O4 - HKLM \ .. \ Run: [Kernel un Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM \ .. \ Run: [Windows Defender] "C: \ Program Files \ Windows Defender \ MSASCui.exe"-hide O4 - HKLM \ .. \ Run: [ZoneAlarm Klientu] "C: \ Program Files \ Zone Labs \ ZoneAlarm \ zlclient.exe" O4 - HKLM \ .. \ Run: [NeroFilterCheck] C: \ WINDOWS \ system32 \ NeroCheck.exe O4 - HKLM \ .. \ Run: [Google Desktop Search] "C: \ Program Files \ Google \ Google Desktop Search \ GoogleDesktop.exe" / starta O4 - HKLM \ .. \ Run: [Avast!] C: \ PROGRA ~ 1 \ ALWILS ~ 1 \ Avast4 \ ashDisp.exe O4 - HKLM \ .. \ Run: [BOC-425] C: \ PROGRA ~ 1 \ Comodo \ CBOClean \ BOC425.EXE O4 - HKLM \ .. \ Run: [! AVG Anti-Spyware] "C: \ Program Files \ Grisoft \ AVG Anti-Spyware 7,5 \ avgas.exe" / minimāla O4 - HKCU \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS \ system32 \ ctfmon.exe O4 - HKCU \ .. \ Run: [SetDefaultMIDI] MIDIDef.exe O4 - HKUS \ S-1-5-19 \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS \ system32 \ CTFMON.EXE (User 'LOCAL SERVICE') O4 - HKUS \ S-1-5-20 \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS \ system32 \ CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS \ S-1-5-18 \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS \ system32 \ CTFMON.EXE (User "SISTĒMA") O4 - HKUS \. DEFAULT \ .. \ Run: [CTFMON.EXE] C: \ WINDOWS \ system32 \ CTFMON.EXE (User 'Default user') O4 - Startup: Hamachi.lnk = C: \ Program Files \ Hamachi \ hamachi.exe O4 - Global Startup: Bluetooth.lnk =? Ø8 - ārpus konteksta menu item: E & ksportēt uz Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ Micros ~ 2 \ Office11 \ EXCEL.EXE/3000 Ø8 - ārpus konteksta menu item: Send to & Bluetooth Device ... - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie_ctx.htm Ø9 - Extra button: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll Ø9 - Extra 'Tools' MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.6.0_04 \ bin \ ssv.dll Ø9 - Extra button: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ Micros ~ 2 \ Office11 \ REFIEBAR.DLL Ø9 - Extra button: @ btrez.dll, -4.015 - (CCA281CA-C863-46ef-9.331-5C8D4460577F) - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie.htm Ø9 - Extra 'Tools' MENUITEM: @ btrez.dll, -12.650 - (CCA281CA-C863-46ef-9.331-5C8D4460577F) - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ btsendto_ie.htm Ø9 - Extra button: (no name) - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll Ø9 - Extra 'Tools' MENUITEM: Spybot - Search & Destroy Configuration - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll Ø10 - Unknown failu Winsock LSP: c: \ windows \ system32 \ nwprovau.dll Ø16 - DPF: (05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8) (Office Genuine Advantage Validation Tool) -- http://go.microsoft.com/fwlink/?linkid=58813 Ø16 - DPF: (215B8138-A3CF-44C5-803F-8226143CFC0A) (Trend Micro ActiveX Scan Agent 6.6) -- http://housecall65.trendmicro.com/ho...vex/hcImpl.cab Ø16 - DPF: (56762DEC-6B0D-4AB4-A8AD-989993B5D08B) -- http://www.eset.eu/buxus/docs/OnlineScanner.cab Ø16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl klase) -- http://www.update.microsoft.com/micr...?1192932319484 Ø16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl klase) -- http://www.update.microsoft.com/micr...?1192932290562 O23 - Service: Avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ aswUpdSv.exe O23 - Service: Avast! Antivirus - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashServ.exe O23 - Service: Avast! Mail Scanner - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashMaiSv.exe O23 - Service: Avast! Web Scanner - ALWIL Software - C: \ Program Files \ Alwil Software \ Avast4 \ ashWebSv.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT sro - C: \ Program Files \ Grisoft \ AVG Anti-Spyware 7,5 \ guard.exe O23 - Service: BOCore - Comodo - C: \ Program Files \ Comodo \ CBOClean \ BOCORE.exe O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C: \ Program Files \ WIDCOMM \ Bluetooth Software \ bin \ btwdins.exe O23 - Service: Creative Labs Licensing Service - Creative Labs - C: \ Program Files \ Common Files \ Creative Labs Shared \ Service \ CreativeLicensing.exe O23 - Service: Diskeeper - Diskeeper Corporation - C: \ Program Files \ Diskeeper Corporation \ Diskeeper \ DkService.exe O23 - Service: Intel (R) ProSet / Wireless Event Log (EvtEng) - Intel Corporation - C: \ Program Files \ Intel \ Bezvadu \ Bin \ EvtEng.exe O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd - C: \ Program Files \ Common Files \ Macrovision Shared \ FLEXnet Publisher \ FNPLicensingService.exe O23 - Service: Google Desktop Manager 5.7.801.1629 (GoogleDesktopManager-010.108-205.858) - Google - C: \ Program Files \ Google \ Google Desktop Search \ GoogleDesktop.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Program Files \ Common Files \ InstallShield \ Driver \ 1.050 \ Intel 32 \ IDriverT.exe O23 - Service: LVCOMSer - Logitech Inc - C: \ Program Files \ Common Files \ LogiShrd \ LVCOMSER \ LVComSer.exe O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc - C: \ Program Files \ Common Files \ LogiShrd \ LVMVFM \ LVPrcSrv.exe O23 - Service: LVSrvLauncher - Logitech Inc - C: \ Program Files \ Common Files \ LogiShrd \ SrvLnch \ SrvLnch.exe O23 - Service: MSInfo Framework Service (MSInfoFrv) - Unknown īpašnieks - C: \ Program Files \ Common Files \ Microsoft Shared \ MSINFO \ MSInfnd.exe (file missing) O23 - Service: Intel (R) ProSet / Wireless Registry Service (RegSrvc) - Intel Corporation - C: \ Program Files \ Intel \ Bezvadu \ Bin \ RegSrvc.exe O23 - Service: CyberLink RichVideo Service (CRVS) (RichVideo) - Unknown īpašnieks - C: \ Program Files \ CyberLink \ Shared Files \ RichVideo.exe O23 - Service: Intel (R) ProSet / Wireless dienests (S24EventMonitor) - Intel Corporation - C: \ Program Files \ Intel \ Bezvadu \ Bin \ S24EvMon.exe O23 - Service: Symantec Core LC - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ CCPD-LC \ symlcsvc.exe O23 - Service: TrueVector Interneta Monitor (vsmon) - Zone Labs, LLC - C: \ WINDOWS \ system32 \ ZoneLabs \ vsmon.exe O23 - Service: Intel (R) ProSet / Wireless SSO dienests (WLANKEEPER) - Intel (R) Corporation - C: \ Program Files \ Intel \ Bezvadu \ Bin \ WLKeeper.exe -- End of failu - 10.040 bytes |
|
#2
| |||
| |||
| Ø10 - Unknown failu Winsock LSP: c: \ windows \ system32 \ nwprovau.dll F3 - REG: WIN.INI: kravas = F3 - REG: WIN.INI: Run = Tie izskatās aizdomīgs, bet sazinieties ar evilfantasy pirmās. |
|
#3
| ||||||||||||
| ||||||||||||
| Pirmā lieta ir tā, ka jums ir vairāk nekā viena firewall darboties: 1. Zone Alarm Firewall 2. Comodo Firewall Lūdzu atinstalēt viens no viņiem, jo darbojas divi ugunsmūri radīs konfliktus. Jūs varat izdzēst šos divus ierakstus: F3 - REG: WIN.INI: kravas = F3 - REG: WIN.INI: Run = Tās ir tikai palikuši pāri no kaut kā cita. Izņemot, ka dators ir tīrs, cik vien varu redzēt. Axegrinder: Ø10 Jūs minējāt, ir kaut ko darīt ar Netware un naudas sodu. http://www.bleepingcomputer.com/star...dll-13129.html
__________________
__________________
serverguy Mana sistēma: Aptumsums
|
|
#4
| |||
| |||
| Edit: Atrasts kaut kas cits. Jums ir nepieciešams, lai palaistu Norton Removal Tool. http://service1.symantec.com/SUPPORT...05033108162039 Originally Posted by serverguy ![]() Pirmā lieta ir tā, ka jums ir vairāk nekā viena firewall darboties:Pārliecinieties, nejaukt Comodo BOCLean ar Comodo Firewall. Pēc tam, kad pēc iepriekš minētajiem ieteikumiem, lūdzu, rīkojieties šādi. Scan Aizdomīgie File (s) Lūdzu, apmeklējiet viens ar šādu tekstu: (Multiple vietas ir dota, ja viens nav darba) (Ja vairāk nekā vienu failu vajadzībām skenētas tie jāveic atsevišķi un žurnāliem ievietojis katram vienam)Kopēt faila ceļu kodu lodziņā. Kods: C: \ Program Files \ Common Files \ Microsoft Shared \ MSINFO \ MSInfnd.exe
|
|
#5
| ||||||||||||
| ||||||||||||
| Varbūt u vajadzētu meklēt vīrusu?
__________________
Mana sistēma: pctipsntricks.com
|
|
#6
| |||
| |||
| Quote:
Jūs, iespējams, nav vajadzība atinstalēt ugunsmūri. Es sajaukt BOClean ar Comodo Firewall. BOClean ir ļoti labs programmatūru. Jūs varat atstāt tā uzstādīta arī atstājot Zone Alarm uzstādīta. ![]() Rok: Tas patiešām nebija ļoti noderīga post ...
__________________ serverguy |
![]() |
|
| Bookmarks |
Similar Threads | ||||
| Pavediens | Thread Starter | Forums | Replies | Last Post |
| Lēns Startup lapas ielāde | RB211 | General Software Čats | 1 | 17 novembris 2009 08:11 |
| Startup Application Help - Insert. Exe failu, lai tas starta ar logiem | Sasstraliss | Windows Operating Systems | 1 | 4 maijs 2009 09:52 |
| XP Slow Startup Problem | xalice15x | Windows Operating Systems | 2 | 1 maijs 2009 15:57 |
| Lēns Startup Windows Vista Home Premium? | LegendaryFire | Windows Operating Systems | 12 | 20 marts 2009 12:25 |
| Re: XP Startup ir ļoti lēns tagad | sungod000 | Vīrusu, spiegprogrammatūru un drošība | 5 | 27 februāris 2008 10:17 |
| Thread Tools | |
| |