![]() |
| |||||||
| Inregistrare | Site-ul Spy | Lista de stat | Doneaza | Căuta | Posturi de azi | Marchează forumurile citite | Forum Regulamentul |
|
![]() |
| | Thread Tools |
|
#1
| |||
| |||
| Vă rugăm să ajute !!!!! Calculatorul meu nu va permite-mi să intru în adăuga sau şterge programe, se spune acces denier ca nu am autoritate şi să contactaţi administratorul de sistem, acest lucru este meu PC (laptop) şi doar eu şi soţul meu au conturile stabilite pe computer, l-am încercat în contul său şi va spune acelaşi lucru. Cum pot face ca acest sortate? Vom obtinerea acestui apare un mesaj de alertă de securitate Windows, Atenţie Potential de spyware operaţiune. Cum pot opri acest apar?? Mulţumesc Hannah |
|
#2
| ||||||||||||
| ||||||||||||
| Aţi putea fi mai bine să postaţi în acest Nume, Spyware & Securitate forum
__________________
Sistemul meu: Home Build
|
|
#3
| |||
| |||
| Subiecte fuzionat. |
|
#4
| |||
| |||
| Mutat la Virus, Spyware & Securitate forum. Să vedem un log de la HijackThis va rog. Descărca HijackThis pe desktop. Faceţi dublu-clic pe fişierul pe care tocmai aţi descărcat. Click pe "Instalaţi"Pentru a instala. Acesta va instala în mod implicit în director -- C: \ Program Files \ Trend Micro \ HijackThis Vă rugăm să nu modificaţi implicit instala locaţie. După instalare, HijackThis ar trebui să se deschidă pentru tine. Next, faceţi clic pe "Fă-un sistem de scanare şi salva un fişier jurnal " buton. HijackThis va scana şi apoi un jurnal se va deschide în Notepad. În partea de sus din stânga faceţi clic pe fereastra notepad "File" > "Salvaţi ca" nume hijackthis şi apoi salvaţi-o la Spaţiul de lucru. Vă rugăm să salvaţi jurnal ca un text (. tXT) Sau fişier. Jurnal Face NU ataşa MS-Word . DOC imagini, acestea nu vor fi uitat la! În articolul dvs., adăugaţi ca un jurnal Atasament. * Nu au Hijackthis repara nimic. Cea mai mare parte a ceea ce se constată va fi inofensiv sau chiar sunt necesare. ** Nu folosiţi Analizarea Acest buton. Este scris concluziile sunt periculoase dacă interpretat greşit. Ghidul pentru fixarea jurnalele de la o posta |
|
#5
| |||
| |||
| Logfile de Trend Micro HijackThis v2.0.2 Scan salvat de la 7:42:43, pe 11.25.2007 Platforma: Windows XP SP2 (WINNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Rularea procese: C: \ Windows \ system32 \ smss.exe C: \ Windows \ system32 \ winlogon.exe C: \ Windows \ system32 \ services.exe C: \ Windows \ system32 \ lsass.exe C: \ Windows \ system32 \ Ati2evxx.exe C: \ Windows \ system32 \ svchost.exe C: \ Windows \ system32 \ svchost.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe C: \ Windows \ system32 \ Spoolsv.exe C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe C: \ Windows \ system32 \ bgsvcgen.exe C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe C: \ Program Files \ Norton AntiVirus \ navapsvc.exe C: \ Program Files \ Norton AntiVirus \ IWP \ NPFMntor.exe C: \ Program Files \ Samsung \ Samsung Network Manager \ SNMWLANService.exe C: \ Windows \ system32 \ svchost.exe C: \ Windows \ system32 \ Ati2evxx.exe C: \ WINDOWS \ Explorer.exe C: \ Windows \ system32 \ wscntfy.exe C: \ Windows \ system32 \ printer.exe C: \ Program Files \ Java \ jre1.5.0 \ bin \ jusched.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ WINDOWS \ RTHDCPL.EXE C: \ Program Files \ Samsung \ Samsung EDS \ EDSAgent.exe C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe C: \ WINDOWS \ AGRSMMSG.exe C: \ Program Files \ Samsung \ AVStation Premium 3.75 \ AVSAgent.exe C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe C: \ Program Files \ Samsung \ Samsung Acumulator Manager \ BatteryManager.exe C: \ Program Files \ SAMSUNG \ MagicKBD \ MagicKBD.exe C: \ Program Files \ Samsung \ DISPLAYMANAGER \ DisplayManager.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe C: \ WINDOWS \ SM1BG.EXE C: \ Program Files \ Samsung \ DISPLAYMANAGER \ dmhkcore.exe C: \ Program Files \ HP \ HP Software Update \ HPWuSchd2.exe C: \ Program Files \ Common Files \ PCPrivacyTool \ mc.exe C: \ Program Files \ Messenger \ msmsgs.exe C: \ Program Files \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe C: \ Program Files \ SAGEM \ SAGEM F @ st 800-840 \ dslmon.exe C: \ Program Files \ FinePixViewer \ QuickDCF2.exe C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqtra08.exe C: \ Program Files \ Microsoft Office \ Office \ OSA.EXE C: \ Windows \ system32 \ wuauclt.exe C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqSTE08.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Program Files \ Samsung \ Samsung Update Plus \ SLUTrayNotifier.exe C: \ Program Files \ Common Files \ AVSystemCare \ bm.exe C: \ Windows \ system32 \ HPZipm12.exe C: \ Program Files \ Internet Explorer \ iexplore.exe C: \ Program Files \ Easy SpyRemover \ EasySpyRemover.exe C: \ Program Files \ Trend Micro \ HijackThis \ HijackThis.exe R1 - HKLM \ SOFTWARE \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.tiscali.co.uk/broadband R1 - HKLM \ SOFTWARE \ Microsoft \ Internet Explorer \ Main, Search Bar = http://uk.red.clientapps.yahoo.com/c...o/bt_side.html F2 - REG: System.ini: Shell = Explorer.exe C: \ Windows \ system32 \ printer.exe O3 - Toolbar: Norton AntiVirus - (42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6) - C: \ Program Files \ Norton AntiVirus \ NavShExt.dll O3 - Toolbar: & Google - (2318C2B1-4965-11d4-9B18-009027A5CD4F) - C: \ Program Files \ Google \ googletoolbar2.dll O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] C: \ Program Files \ Java \ jre1.5.0 \ bin \ jusched.exe O4 - HKLM \ .. \ Run: [ATICCC] "C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe" runtime-Întârzierea O4 - HKLM \ .. \ Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM \ .. \ Run: [Alcmtr] ALCMTR.EXE O4 - HKLM \ .. \ Run: [EDS] C: \ Program Files \ Samsung \ Samsung EDS \ EDSAgent.exe O4 - HKLM \ .. \ Run: [SynTPEnh] C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe O4 - HKLM \ .. \ Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM \ .. \ Run: [AVStation Premium 3.75] C: \ Program Files \ Samsung \ AVStation Premium 3.75 \ AVSAgent.exe O4 - HKLM \ .. \ Run: [MagicKeyboard] C: \ Program Files \ SAMSUNG \ MagicKBD \ PreMKBD.exe O4 - HKLM \ .. \ Run: [RestoreIT!] "C: \ Program Files \ Phoenix Technologies Ltd \ RecoverPro_XP \ VBPTASK.EXE" VBStart O4 - HKLM \ .. \ Run: [RemoteControl] "C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe" O4 - HKLM \ .. \ Run: [BatteryManager] C: \ Program Files \ Samsung \ Samsung Acumulator Manager \ BatteryManager.exe O4 - HKLM \ .. \ Run: [DMHotKey] C: \ Program Files \ Samsung \ DISPLAYMANAGER \ DMLoader.exe O4 - HKLM \ .. \ Run: [DISPLAYMANAGER] C: \ Program Files \ Samsung \ DISPLAYMANAGER \ DisplayManager.exe O4 - HKLM \ .. \ Run: [ccApp] "C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [SM1BG] C: \ WINDOWS \ SM1BG.EXE O4 - HKLM \ .. \ Run: [adiras] adiras.exe O4 - HKLM \ .. \ Run: [HP Software Update] C: \ Program Files \ HP \ HP Software Update \ HPWuSchd2.exe O4 - HKLM \ .. \ Run: [NeroCheck] C: \ Windows \ system32 \ \ NeroCheck.exe O4 - HKLM \ .. \ Run: [Symantec NetDriver Monitor] C: \ PROGRA ~ 1 \ SYMNET ~ 1 \ SNDMon.exe / Consumatorului O4 - HKLM \ .. \ Run: [REGSHAVE] C: \ Program Files \ REGSHAVE \ REGSHAVE.EXE / AutoRun O4 - HKLM \ .. \ Run: [WinAVX] C: \ Windows \ system32 \ WinAvXX.exe O4 - HKLM \ .. \ Run: [Salestart] "C: \ Program Files \ Common Files \ AVSystemCare \ bm.exe" dm = http://avsystemcare.com; ad = http://avsystemcare.com O4 - HKLM \ .. \ Run: [Salestart (1)] "C: \ Program Files \ Common Files \ PCPrivacyTool \ mc.exe" dm = http://pcprivacytool.com; ad = http://pcprivacytool.com O4 - HKLM \ .. \ Run: [rtasks] C: \ Program Files \ AVSystemCare \ rtasks.exe O4 - HKCU \ .. \ Run: [MSMSGS] "C: \ Program Files \ Messenger \ msmsgs.exe" / background O4 - HKCU \ .. \ Run: [swg] C: \ Program Files \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe O4 - HKCU \ .. \ Run: [WinAVX] C: \ Windows \ system32 \ WinAvXX.exe O4 - HKUS \ S-1-5-18 \ .. \ Run: [Ctfmon.exe] C: \ Windows \ system32 \ Ctfmon.exe (User 'SYSTEM') O4 - HKUS \. DEFAULT \ .. \ Run: [Ctfmon.exe] C: \ Windows \ system32 \ Ctfmon.exe (User 'Default user') O4 - Startup: Microsoft Cauta Fast.lnk = C: \ Program Files \ Microsoft Office \ Office \ FINDFAST.EXE O4 - Startup: Office Startup.lnk = C: \ Program Files \ Microsoft Office \ Office \ OSA.EXE O4 - Startup: system.exe O4 - Global Startup: Adobe Reader Speed Launch.lnk = C: \ Program Files \ Adobe \ Acrobat 7.0 \ Reader \ reader_sl.exe O4 - Global Startup: autorun.exe O4 - Global Startup: DSLMON.lnk = C: \ Program Files \ SAGEM \ SAGEM F @ st 800-840 \ dslmon.exe O4 - Global Startup: Exif Launcher 2.lnk =? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqtra08.exe O7 - HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Pol icies \ System, DisableRegedit = 1 O8 - Extra context menu item: & D & ownload & cu BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddLink.htm O8 - Extra context menu item: & D & ownload all video cu BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddVideo.htm O8 - Extra context menu item: & D & ownload all with BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddAllLink.htm O9 - Extra button: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O14 - IERESET.INF: START_PAGE_URL = http://www.tiscali.co.uk/broadband O17 - HKLM \ SYSTEM \ CCS \ Services \ Tcpip \ .. \ (6309F0DB-E1B6-4D47-83F0-111ED3BCCD32): nume = 212.139.132.24 212.139.132.25 O20 - AppInit_DLLs: sulimo.dat O23 - Service: Ati HotKey Poller - ATI Technologies Inc - C: \ Windows \ system32 \ Ati2evxx.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - BHA Corporation - C: \ Windows \ system32 \ bgsvcgen.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: LightScribeService Direct Disc Etichetarea Service (LightScribeService) - Hewlett-Packard Company - C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C: \ Program Files \ Norton AntiVirus \ navapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C: \ Program Files \ Norton AntiVirus \ IWP \ NPFMntor.exe O23 - Service: Pml Driver HPZ12 - HP - C: \ Windows \ system32 \ HPZipm12.exe O23 - Service: Samsung Update Plus - Unknown owner - C: \ Program Files \ Samsung \ Samsung Update Plus \ SLUBackgroundService.exe O23 - Service: SAVScan - Symantec Corporation - C: \ Program Files \ Norton AntiVirus \ SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C: \ PROGRA ~ 1 \ COMUNĂ ~ 1 \ symant ~ 1 \ SCRIPT ~ 1 \ SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: SNM WLAN Service - Unknown owner - C: \ Program Files \ Samsung \ Samsung Network Manager \ SNMWLANService.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe -- Sfârşit de fişier - 9608 bytes Sper că acest lucru vă va ajuta?? |
|
#6
| |||
| |||
| Va avea cu siguranta unele foarte urât infecţii. 1. Descărca Malwarebytes' RogueRemover Free 2. Faceţi dublu clic pe pictogramă pentru a instala RogueRemover şi apoi a începe programul. 3. Apăsaţi Check for Updates. 4. Acest lucru vă va arăta dacă este vorba de o versiune mai nouă a bazei de date. Apăsaţi Download. 5. Du-te înapoi la ecranul principal şi apăsaţi Scanare. 6. Dacă şi când o infecţie este găsit, elimina toate obiectele găsite. ===== Descărcaţi, instalaţi şi actualizare Superantispyware (SAS) Nu rulaţi acest încă. SUPERAntispyware Free Edition ===== Este posibil să doriţi să tipăriţi sau copiaţi şi lipiţi restul de instrucţiuni şi să le salveze într-un text document pe desktop. Nu veţi putea să le vezi de la Safe Mode. Reporniţi în Safe Mode * Reporniţi computerul. * Când vedea alb-negru Incepand Windows bara din partea de jos a ecranului, începe atingerea F8 cheie. * Când vei ajunge la meniul de încărcare, utilizaţi tastele săgeată pentru a selecta Modul de siguranţă * Apoi apăsaţi Introduceţi. * La repornirea computerului în Mod protejat. ===== Deschide HijackThis şi selectaţi "Fă-un sistem de scanare numai" Se pune un semn de selectare lângă: (dacă este găsit) F2 - REG: System.ini: Shell = Explorer.exe C: \ Windows \ system32 \ printer.exe O4 - HKLM \ .. \ Run: [WinAVX] C: \ Windows \ system32 \ WinAvXX.exe O4 - HKLM \ .. \ Run: [Salestart] "C: \ Program Files \ Common Files \ AVSystemCare \ bm.exe" dm = http://avsystemcare.com; ad = http://avsystemcare.com O4 - HKLM \ .. \ Run: [Salestart (1)] "C: \ Program Files \ Common Files \ PCPrivacyTool \ mc.exe" dm = http://pcprivacytool.com; ad = http://pcprivacytool.com O4 - HKLM \ .. \ Run: [rtasks] C: \ Program Files \ AVSystemCare \ rtasks.exe O4 - HKCU \ .. \ Run: [WinAVX] C: \ Windows \ system32 \ WinAvXX.exe O4 - Startup: system.exe O4 - Global Startup: autorun.exe O7 - HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Pol icies \ System, DisableRegedit = 1 Acum, daţi clic pe "Fix verificate" Exit HijackThis ===== Acum configuraţi şi să rulaţi SUPERAntiSpyware în Safe Mode. * În conformitate cu Configurare şi preferinţele, Faceţi clic pe Preferinţe buton. * Faceţi clic pe Scanarea de control filă. * În conformitate cu Opţiuni de scanare Asiguraţi-vă că următoarele sunt verificate: + Close browsere, înainte de scanare + Scan pentru cookie-uri de urmărire Opriţi + memorie înainte de ameninţări quarantining. + Vă rugăm să lăsaţi pe ceilalţi bifat. Faceţi clic pe + Închide buton pentru a ieşi din Centrul de Control ecran. * Pe ecranul principal, în conformitate cu Scanare programelor dăunătoare faceţi clic pe Scanaţi computerul. * La stânga verifica C: \ fix Drive. * La dreapta, în conformitate cu Complete Scan, Alegeţi Efectuaţi scanare completă. * Faceţi clic Următorul pentru a începe scanarea. Vă rugăm să aveţi răbdare în timp ce scanează computerul. * După scanare completă este un rezumat va apărea caseta. Faceţi clic pe OK. * Asiguraţi-vă că totul în alb, are o caseta de control de lângă el, apoi faceţi clic pe Următorul. * Se va carantină ce găsit şi în cazul în care acesta solicită, dacă doriţi să repornirea sistemului, faceţi clic pe Da. * Pentru a prelua îndepărtarea de informaţii, vă rugăm să faceţi următoarele: + După repornirea sistemului, faceţi dublu-clic pe icoana SUPERAntiSpyware pe desktop. Faceţi clic pe + Preferinţe. Faceţi clic pe Statistici / Rapoarte filă. Sub + Scanner Rapoarte, faceţi dublu-clic pe SUPERAntiSpyware Scan Jurnal. + Se va deschide in implicit editor de text (cum ar fi Notepad / Wordpad). Notepad + Salvaţi fişierul pe spaţiul de lucru, făcând clic pe (in notepad) "Dosar""Salvare ca" * Salvează log undeva puteţi foarte uşor să-l găsiţi. (în mod normal, pe desktop) * Faceţi clic pe Închidere şi închide din nou, pentru a ieşi din program. * Vă rugăm să adăugaţi jurnal ca o ataşament împreună cu un nou log HijackThis în următorul post. ===== Next Post vă rugăm să adăugaţi ca ataşări SUPERAntiSpyware jurnal New HijackThis log |
|
#7
| |||
| |||
| Aceasta este SuperAntiSpyware Rezultate: SUPERAntiSpyware Scan Log http://www.superantispyware.com Generat 11.26.2007 la 08:56 Application Version: 3-9-1008 Reguli de bază pentru baze de date Version: 3259 Trace Regulamentul Database Version: 1270 Scan type: Quick Scan Total Scan Ora: 00:09:24 Memorie articole scanate: 564 Memorie ameninţările detectate: 0 Registrul articole scanate: 720 Registrul ameninţările detectate: 0 Elemente de fişiere scanate: 8656 File ameninţările detectate: 84 Adware.Tracking Cookie C: \ Documents and Settings \ Hannah \ Cookies \ hannah@www.burstbeacon [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@archant.122.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfmigoajiko.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfk4widpifo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ uvertură [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wflokpczkbq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@stat.errclean [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ nt hannah@ads.associatedconte [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1070878818 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ dubluclick [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@ads.pointroll [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ burstnet [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjmywjdjokp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ atdmt [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ roiservice [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@122.2o7 [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ apmebf [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlyehcjkdo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wblogncpagp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ mediaplex [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ indextools [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgmyagajsdo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@phillyburbscom.112. 2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1069870899 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ servire-sys [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ questionmarket [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfk4cpcjshq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1057062368 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adserver [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@rotator.adjuggler [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ haymarket [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@ad.yieldmanager [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlyalcpcfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adrevolver [3]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adrevolver [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@ehg-autotrader.hitbox [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ revsci [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ a [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wckigncpmfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ whatcar [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjkoejdjmgp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@tracking.webdiversi ty.co [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wglyuiazacp.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ tradedoubler [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ pistonheads [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ tribalfusion [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgl4qic5mlp.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@anat.tacoda [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ următoare [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6whkiaodzcfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ hitbox [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@haynet.adbureau [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@paypal.112.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfliujajshp.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1066670941 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgliglc5aco.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@h.starware [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@edge.ru4 [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wgkiohcpmgo.stats.esomniture [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfkysjazkgp.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@amazonms.122.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@msnportal.112.2o7 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ bluestreak [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@stat.dealtime [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wfliemdzahq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1071238990 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1070144314 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlycmajsfo.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ publicitate [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@bs.serving-sys [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ 1066767647 [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@media.adrevolver [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ adtech [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjlyqgd5ido.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ dealtime [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ tacoda [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@tracking.summitmedi a.co [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wjmikjczihq.stats.esomniture [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@www.burstnet [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ statcounter [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@try.starware [2]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@statse.webtrendsliv e [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ Hannah @ clickbank [1]. Txt C: \ Documents and Settings \ Hannah \ Cookies \ hannah@e-2dj6wbliskcjibo.stats.esomniture [2]. Txt Şi aici este HiJackThis Jurnal: Logfile de Trend Micro HijackThis v2.0.2 Scan salvat de la 9:02:38, pe 11.26.2007 Platforma: Windows XP SP2 (WINNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Rularea procese: C: \ Windows \ system32 \ smss.exe C: \ Windows \ system32 \ winlogon.exe C: \ Windows \ system32 \ services.exe C: \ Windows \ system32 \ lsass.exe C: \ Windows \ system32 \ Ati2evxx.exe C: \ Windows \ system32 \ svchost.exe C: \ Windows \ system32 \ svchost.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe C: \ Windows \ system32 \ Spoolsv.exe C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe C: \ Windows \ system32 \ bgsvcgen.exe C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe C: \ Program Files \ Norton AntiVirus \ navapsvc.exe C: \ Program Files \ Norton AntiVirus \ IWP \ NPFMntor.exe C: \ Windows \ system32 \ HPZipm12.exe C: \ Program Files \ Samsung \ Samsung Network Manager \ SNMWLANService.exe C: \ Windows \ system32 \ svchost.exe C: \ Windows \ system32 \ Ati2evxx.exe C: \ Windows \ system32 \ wscntfy.exe C: \ WINDOWS \ Explorer.exe C: \ Program Files \ Java \ jre1.5.0 \ bin \ jusched.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ WINDOWS \ RTHDCPL.EXE C: \ Program Files \ Samsung \ Samsung EDS \ EDSAgent.exe C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe C: \ WINDOWS \ AGRSMMSG.exe C: \ Program Files \ Samsung \ AVStation Premium 3.75 \ AVSAgent.exe C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe C: \ Program Files \ Samsung \ Samsung Acumulator Manager \ BatteryManager.exe C: \ Program Files \ SAMSUNG \ MagicKBD \ MagicKBD.exe C: \ Program Files \ Samsung \ DISPLAYMANAGER \ DisplayManager.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe C: \ WINDOWS \ SM1BG.EXE C: \ Program Files \ Samsung \ DISPLAYMANAGER \ dmhkcore.exe C: \ Program Files \ HP \ HP Software Update \ HPWuSchd2.exe C: \ Program Files \ Messenger \ msmsgs.exe C: \ Program Files \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe C: \ Program Files \ SAGEM \ SAGEM F @ st 800-840 \ dslmon.exe C: \ Program Files \ FinePixViewer \ QuickDCF2.exe C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqtra08.exe C: \ Program Files \ Microsoft Office \ Office \ OSA.EXE C: \ Windows \ system32 \ wuauclt.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqSTE08.exe C: \ Program Files \ Samsung \ Samsung Update Plus \ SLUTrayNotifier.exe C: \ Program Files \ Internet Explorer \ iexplore.exe C: \ Windows \ system32 \ wuauclt.exe C: \ Program Files \ Trend Micro \ HijackThis \ HijackThis.exe R1 - HKLM \ SOFTWARE \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://www.tiscali.co.uk/broadband R1 - HKLM \ SOFTWARE \ Microsoft \ Internet Explorer \ Main, Search Bar = http://uk.red.clientapps.yahoo.com/c...o/bt_side.html O3 - Toolbar: Norton AntiVirus - (42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6) - C: \ Program Files \ Norton AntiVirus \ NavShExt.dll O3 - Toolbar: & Google - (2318C2B1-4965-11d4-9B18-009027A5CD4F) - C: \ Program Files \ Google \ googletoolbar2.dll O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] C: \ Program Files \ Java \ jre1.5.0 \ bin \ jusched.exe O4 - HKLM \ .. \ Run: [ATICCC] "C: \ Program Files \ ATI Technologies \ ATI.ACE \ cli.exe" runtime-Întârzierea O4 - HKLM \ .. \ Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM \ .. \ Run: [Alcmtr] ALCMTR.EXE O4 - HKLM \ .. \ Run: [EDS] C: \ Program Files \ Samsung \ Samsung EDS \ EDSAgent.exe O4 - HKLM \ .. \ Run: [SynTPEnh] C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe O4 - HKLM \ .. \ Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM \ .. \ Run: [AVStation Premium 3.75] C: \ Program Files \ Samsung \ AVStation Premium 3.75 \ AVSAgent.exe O4 - HKLM \ .. \ Run: [MagicKeyboard] C: \ Program Files \ SAMSUNG \ MagicKBD \ PreMKBD.exe O4 - HKLM \ .. \ Run: [RestoreIT!] "C: \ Program Files \ Phoenix Technologies Ltd \ RecoverPro_XP \ VBPTASK.EXE" VBStart O4 - HKLM \ .. \ Run: [RemoteControl] "C: \ Program Files \ CyberLink \ PowerDVD \ PDVDServ.exe" O4 - HKLM \ .. \ Run: [BatteryManager] C: \ Program Files \ Samsung \ Samsung Acumulator Manager \ BatteryManager.exe O4 - HKLM \ .. \ Run: [DMHotKey] C: \ Program Files \ Samsung \ DISPLAYMANAGER \ DMLoader.exe O4 - HKLM \ .. \ Run: [DISPLAYMANAGER] C: \ Program Files \ Samsung \ DISPLAYMANAGER \ DisplayManager.exe O4 - HKLM \ .. \ Run: [ccApp] "C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe" O4 - HKLM \ .. \ Run: [SM1BG] C: \ WINDOWS \ SM1BG.EXE O4 - HKLM \ .. \ Run: [adiras] adiras.exe O4 - HKLM \ .. \ Run: [HP Software Update] C: \ Program Files \ HP \ HP Software Update \ HPWuSchd2.exe O4 - HKLM \ .. \ Run: [NeroCheck] C: \ Windows \ system32 \ \ NeroCheck.exe O4 - HKLM \ .. \ Run: [Symantec NetDriver Monitor] C: \ PROGRA ~ 1 \ SYMNET ~ 1 \ SNDMon.exe / Consumatorului O4 - HKLM \ .. \ Run: [REGSHAVE] C: \ Program Files \ REGSHAVE \ REGSHAVE.EXE / AutoRun O4 - HKLM \ .. \ Run: [Easy SpyRemover] C: \ Program Files \ Easy SpyRemover \ EasySpyRemover.exe / inteligent O4 - HKCU \ .. \ Run: [MSMSGS] "C: \ Program Files \ Messenger \ msmsgs.exe" / background O4 - HKCU \ .. \ Run: [swg] C: \ Program Files \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe O4 - HKUS \ S-1-5-18 \ .. \ Run: [Ctfmon.exe] C: \ Windows \ system32 \ Ctfmon.exe (User 'SYSTEM') O4 - HKUS \. DEFAULT \ .. \ Run: [Ctfmon.exe] C: \ Windows \ system32 \ Ctfmon.exe (User 'Default user') O4 - Startup: Microsoft Cauta Fast.lnk = C: \ Program Files \ Microsoft Office \ Office \ FINDFAST.EXE O4 - Startup: Office Startup.lnk = C: \ Program Files \ Microsoft Office \ Office \ OSA.EXE O4 - Global Startup: Adobe Reader Speed Launch.lnk = C: \ Program Files \ Adobe \ Acrobat 7.0 \ Reader \ reader_sl.exe O4 - Global Startup: DSLMON.lnk = C: \ Program Files \ SAGEM \ SAGEM F @ st 800-840 \ dslmon.exe O4 - Global Startup: Exif Launcher 2.lnk =? O4 - Global Startup: HP Digital Imaging Monitor.lnk = C: \ Program Files \ HP \ Digital Imaging \ bin \ hpqtra08.exe O8 - Extra context menu item: & D & ownload & cu BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddLink.htm O8 - Extra context menu item: & D & ownload all video cu BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddVideo.htm O8 - Extra context menu item: & D & ownload all with BitComet - res: / / C: \ Program Files \ BitComet \ BitComet.exe / AddAllLink.htm O9 - Extra button: Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe O14 - IERESET.INF: START_PAGE_URL = http://www.tiscali.co.uk/broadband O17 - HKLM \ SYSTEM \ CCS \ Services \ Tcpip \ .. \ (6309F0DB-E1B6-4D47-83F0-111ED3BCCD32): nume = 212.139.132.24 212.139.132.25 O20 - AppInit_DLLs: sulimo.dat O20 - Winlogon Notify:! SASWinLogon - C: \ Program Files \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc - C: \ Windows \ system32 \ Ati2evxx.exe O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - BHA Corporation - C: \ Windows \ system32 \ bgsvcgen.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: Google Updater Service (gusvc) - Google - C: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: LightScribeService Direct Disc Etichetarea Service (LightScribeService) - Hewlett-Packard Company - C: \ Program Files \ Common Files \ LightScribe \ LSSrvc.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C: \ Program Files \ Norton AntiVirus \ navapsvc.exe O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C: \ Program Files \ Norton AntiVirus \ IWP \ NPFMntor.exe O23 - Service: Pml Driver HPZ12 - HP - C: \ Windows \ system32 \ HPZipm12.exe O23 - Service: Samsung Update Plus - Unknown owner - C: \ Program Files \ Samsung \ Samsung Update Plus \ SLUBackgroundService.exe O23 - Service: SAVScan - Symantec Corporation - C: \ Program Files \ Norton AntiVirus \ SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C: \ PROGRA ~ 1 \ COMUNĂ ~ 1 \ symant ~ 1 \ SCRIPT ~ 1 \ SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: SNM WLAN Service - Unknown owner - C: \ Program Files \ Samsung \ Samsung Network Manager \ SNMWLANService.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe -- Sfârşit de fişier - 9092 bytes Marea paşi să urmeze, chiar am reuşit să-l. Multumesc, ce este în continuare?? |
|
#8
| |||
| |||
| Poti ajunge la Add / Remove Programs acum? Dacă este aşa merg acolo şi căutaţi şi dezinstalarea de Est Spy Remover. |
|
#9
| |||
| |||
| Nu, am mai lua de avertizare care apar se citeşte: "Această operaţiune a fost anulat ca urmare a restricţiilor în vigoare pe acest computer, vă rugăm să contactaţi sistem administator". |
|
#10
| ||||||||||||
| ||||||||||||
| Porni în modul de siguranţă.
__________________
Reporniţi computerul şi să păstreze hitting F8. Ar trebui să obţineţi un meniu. Alegeţi cea mai mare (safe mode). La selectarea conturi să fie sigur că, pentru a lua în cont de administrator. Du-te în Adăugare / eliminare programe. Aceasta ar trebui să funcţioneze. Altfel, încercaţi uciderea procesul (care poate sau nu poate fi numit "EasySpyRemover.exe" sau ceva similar). Încercaţi să adăugaţi accesarea / elimina din nou. Sistemul meu: Toshiba Satellite A200-28P
|
![]() |
|
| Marcaje |
Similar Threads | ||||
| Fir | Thread Starter | Forum | Răspunsurile | Ultimul mesaj |
| G: \ nu este accesibil, accesul este interzis. | jimmyc | Drives & Removable Media | 3 | 24 iunie 2009 02:43 |
| Access is denied! | prawleprovi | General Chat Software | 3 | 30 octombrie 2008 04:50 |
| Acces interzis | rbscooby | Sisteme de operare Windows | 7 | 9 mai 2008 16:40 |
| Acces interzis | hewybo | Sisteme de operare Windows | 6 | 16 ianuarie 2008 02:40 |
| Access is denied ... dintr-o dată | Quityourjibbajabba | Sisteme de operare Windows | 3 | 14 noiembrie 2007 06:10 |
| Thread Tools | |
| |