![]() |
| |||||||
|
![]() |
| | Thread Tools |
|
#1
| |||
| |||
| Mans desktop un uzdevumjoslas trūkst un es, šķiet, saglabā visus logus atvērtas uz ilgu (Control Panel, My Computer). Mans citiem pieteikumiem strādāt tikai naudas sodu, ja es tās atvērt līdz pat no Task Manager. Tāpēc es skrienu reģistrēts un juridiskā versiju Windows XP, man nav cd vai kādu citu iekārtu sīkumi, lai es paradis varētu pārinstalēt Windows uz sava datora, lai noteiktu manu problēmu. IVE centās pārliecinoties, ka man nebija explorer.exe par darba pieteikumiem, ekspluatācijas explorer, bet tas nedarbojas vai nu. Esmu mēģinājis rādīt Spybot S & D, Runreg, Symantics un Spysweeper un dzēstos sliktas lietas (pēc googling un darītu pārliecināts, ka tas bija slikti), bet problēma joprojām pastāv. Kad man beidzas Explorer uzdevumjoslas nāk iekšā un ārā ... Heres my nolaupīt tas žurnāls: http://security.symantec.com/sscv6/h...SIVFWMFKPXKBQW |
|
#2
| |||
| |||
| tas ir noticis ar mani pirms un izklausās kā, pastāvīgiem kaitējumiem, ko veic vīrusu. visu iespējamo, lai atkārtoti instalētu Windows vai atrast remonts disku no mate vai internetā. |
|
#4
| |||
| |||
| Alright, So I did visus šos soļus, lai manu datoru un izrādās manā datorā bija haoss, un tas aizņēma daudz stuff out, bet mana galvenā problēma joprojām pastāv. Mans desktop paradis rādītas, kamēr man palaist Explorer uzdevumu menedžeris, un pat tad parādās dažas sekundes un pazūd. Es nevaru piekļūt kādai no manas mapes, jo tās slēgt laikā dažas sekundes, bet es atklāju, ka es nevaru palaist citas programmas tikai naudas sodu. Heres my new HJT failu. Logfile of Trend Micro HijackThis v2.0.2 Scan saglabāts 11:13:13, ar 1/3/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16574) Boot mode: Normal Running procesiem: C: \ WINDOWS \ System32 \ Smss.exe C: \ WINDOWS \ system32 \ winlogon.exe C: \ WINDOWS \ system32 \ services.exe C: \ WINDOWS \ system32 \ lsass.exe C: \ WINDOWS \ system32 \ svchost.exe C: \ WINDOWS \ System32 \ svchost.exe C: \ Program Files \ TGTSoft \ StyleXP \ StyleXPService.exe C: \ WINDOWS \ system32 \ svchost.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe C: \ Program Files \ Common Files \ Symantec Shared \ ccProxy.exe C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe C: \ Program Files \ Common Files \ Symantec Shared \ CCPD-LC \ symlcsvc.exe C: \ WINDOWS \ system32 \ Spoolsv.exe C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe C: \ WINDOWS \ system32 \ bmwebcfg.exe C: \ Program Files \ TOSHIBA \ ConfigFree \ CFSvcs.exe C: \ WINDOWS \ system32 \ DVDRAMSV.exe C: \ WINDOWS \ eHome \ ehRecvr.exe C: \ WINDOWS \ eHome \ ehSched.exe C: \ Program Files \ Intel \ Bezvadu \ Bin \ EvtEng.exe C: \ Program Files \ Norton Internet Security \ Norton AntiVirus \ navapsvc.exe C: \ WINDOWS \ System32 \ svchost.exe C: \ Program Files \ Novatel Wireless \ Sprint \ Sprint PCS Connection Manager \ OSCMUtilityService.exe C: \ Program Files \ Sprint \ Pantech \ Sprint Mobile Broadband (Pantech) \ PWIUtilityService.exe C: \ WINDOWS \ System32 \ svchost.exe C: \ Program Files \ Intel \ Bezvadu \ Bin \ RegSrvc.exe C: \ WINDOWS \ system32 \ svchost.exe c: \ TOSHIBA \ IVP \ swupdate \ swupdtmr.exe C: \ Program Files \ TOSHIBA \ TOSHIBA Applet \ TAPPSRV.exe C: \ WINDOWS \ system32 \ dllhost.exe C: \ Program Files \ TOSHIBA \ TOSHIBA Controls \ TFncKy.exe C: \ WINDOWS \ system32 \ TDispVol.exe C: \ WINDOWS \ AGRSMMSG.exe C: \ WINDOWS \ system32 \ TPSBattM.exe C: \ Program Files \ Sprint \ Pantech \ Sprint Mobile Broadband (Pantech) \ CMPWI.exe C: \ Program Files \ Mozilla Firefox \ firefox.exe C: \ Program Files \ Adobe \ Acrobat 7,0 \ Reader \ AcroRd32.exe C: \ WINDOWS \ system32 \ taskmgr.exe C: \ Program Files \ Trend Micro \ HijackThis \ HijackThis.exe C: \ WINDOWS \ explorer.exe R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Search Bar = http://www.toshiba.com/search R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://www.toshibadirect.com/dpdstart R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ SearchURL (Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR O3 - Toolbar: Norton Internet Security 2006 - (0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7) - C: \ Program Files \ Common Files \ Symantec Shared \ AdBlocking \ NISShExt.dll O3 - Toolbar: Norton AntiVirus - (C4069E3A-68F1-403E-B40E-20066696354B) - C: \ Program Files \ Norton Internet Security \ Norton AntiVirus \ NavShExt.dll O4 - HKLM \ .. \ Run: [TPSMain] TPSMain.exe O4 - HKLM \ .. \ Run: [THotkey] "C: \ Program Files \ Toshiba \ Toshiba Applet \ thotkey.exe" O4 - HKLM \ .. \ Run: [TFncKy] TFncKy.exe O4 - HKLM \ .. \ Run: [TDispVol] TDispVol.exe O4 - HKLM \ .. \ Run: [SynTPLpr] "C: \ Program Files \ Synaptics \ SynTP \ SynTPLpr.exe" O4 - HKLM \ .. \ Run: [SpySweeper] C: \ Program Files \ Webroot \ Spy Sweeper \ SpySweeperUI.exe / startintray O4 - HKLM \ .. \ Run: [SmoothView] "C: \ Program Files \ TOSHIBA \ TOSHIBA Zooming Utility \ SmoothView.exe" O4 - HKLM \ .. \ Run: [RegRun WinBait] C: \ WINDOWS \ xxxwinbait.exe O4 - HKLM \ .. \ Run: [PadTouch] C: \ Program Files \ TOSHIBA \ Touch un palaišanas \ PadExe.exe O4 - HKLM \ .. \ Run: [iTunesHelper] "C: \ Program Files \ iTunes \ iTunesHelper.exe" O4 - HKLM \ .. \ Run: [IntelWireless] "C: \ Program Files \ Intel \ Bezvadu \ Bin \ ifrmewrk.exe" / tf Intel ProSet / Wireless O4 - HKLM \ .. \ Run: [igfxtray] C: \ WINDOWS \ system32 \ igfxtray.exe O4 - HKLM \ .. \ Run: [igfxpers] C: \ WINDOWS \ system32 \ igfxpers.exe O4 - HKLM \ .. \ Run: [dla] C: \ WINDOWS \ system32 \ dla \ DLACTRLW.exe O4 - HKLM \ .. \ Run: [AGRSMMSG] AGRSMMSG.exe O4 - HKLM \ .. \ Run: [@ RegRunOnSecure] C: \ PROGRA ~ 1 \ Greatis \ REGRUN ~ 1 \ xxxOnSecure.exe O4 - HKCU \ .. \ Run: [Reģistrs] "C: \ Program Files \ Greatis \ RegRunSuite \ lsoon.exe" -1 30 "C: \ Program Files \ Greatis \ RegRunSuite \ rescue.exe" / "c: \ backreg \ rstore.ini " O4 - HKCU \ .. \ Run: [ctfmon.exe] C: \ WINDOWS \ system32 \ ctfmon.exe O4 - HKCU \ .. \ Run: [SUPERAntiSpyware] C: \ Program Files \ SUPERAntiSpyware \ SUPERAntiSpyware.exe O4 - HKCU \ .. \ Run: [TOSCDSPD] "C: \ Program Files \ TOSHIBA \ TOSCDSPD \ toscdspd.exe" O4 - HKCU \ .. \ Run: [STYLEXP] "C: \ Program Files \ TGTSoft \ StyleXP \ StyleXP.exe"-Hide O4 - HKCU \ .. \ Run: [SpybotSD TeaTimer] C: \ Program Files \ Spybot - Search & Destroy \ TeaTimer.exe O4 - HKCU \ .. \ Run: [Regrun2] C: \ PROGRA ~ 1 \ Greatis \ REGRUN ~ 1 \ WatchDog.exe O4 - HKCU \ .. \ Run: [msnmsgr] "C: \ Program Files \ MSN Messenger \ MsnMsgr.Exe" / background O4 - HKCU \ .. \ Run: [Aim6] "C: \ Program Files \ AIM6 \ aim6.exe" / d locale = en-US EE: / / AOL / imApp O4 - Global Startup: hpoddt01.exe.lnk =? O4 - Global Startup: RAMASST.lnk = C: \ WINDOWS \ system32 \ RAMASST.exe Ø8 - ārpus konteksta menu item: & Windows Live Search - res: / / C: \ Program Files \ Windows Live Toolbar \ msntb.dll / search.htm Ø8 - ārpus konteksta menu item: E & ksportēt uz Microsoft Excel - res: / / C: \ PROGRA ~ 1 \ Micros ~ 2 \ Office12 \ EXCEL.EXE/3000 Ø9 - Extra button: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.5.0_04 \ bin \ npjpi150_04.dll Ø9 - Extra 'Tools' MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C: \ Program Files \ Java \ jre1.5.0_04 \ bin \ npjpi150_04.dll Ø9 - Extra button: Nosūtīt OneNote - (2670000A-7350-4f3c-8.081-5663EE0C6C49) - C: \ PROGRA ~ 1 \ Micros ~ 2 \ Office12 \ ONBttnIE.dll Ø9 - Extra 'Tools' MENUITEM: S & galu OneNote - (2670000A-7350-4f3c-8.081-5663EE0C6C49) - C: \ PROGRA ~ 1 \ Micros ~ 2 \ Office12 \ ONBttnIE.dll Ø9 - Extra button: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - C: \ PROGRA ~ 1 \ Micros ~ 2 \ Office12 \ REFIEBAR.DLL Ø9 - Extra button: Real.com - (CD67F990-D8E9-11d2-98FE-00C0F0318AFE) - C: \ WINDOWS \ system32 \ Shdocvw.dll Ø9 - Extra button: (no name) - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll Ø9 - Extra 'Tools' MENUITEM: Spybot - Search & Destroy Configuration - (DFB852A3-47F8-48C4-A200-58CAB36FD2A2) - C: \ PROGRA ~ 1 \ Spybot ~ 1 \ SDHelper.dll Ø9 - Extra button: (no name) - (e2e2dd38-d088-4.134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe Ø9 - Extra 'Tools' MENUITEM: @ xpsp3res.dll, -20.001 - (e2e2dd38-d088-4.134-82b7-f2ba38496583) - C: \ WINDOWS \ Network Diagnostic \ xpnetdiag.exe Ø9 - Extra button: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe Ø9 - Extra 'Tools' MENUITEM: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe Ø10 - Unknown failu Winsock LSP: bmnet.dll Ø10 - Unknown failu Winsock LSP: bmnet.dll Ø10 - Unknown failu Winsock LSP: bmnet.dll Ø14 - IERESET.INF: START_PAGE_URL = http://www.toshibadirect.com/dpdstart Ø16 - DPF: (14B87622-7E19-4EA8-93B3-97215F77A6BC) (MessengerStatsClient klase) -- http://messenger.zone.msn.com/binary...t.cab31267.cab Ø16 - DPF: (2BC66F54-93A8-11D3-BEB6-00105AA9B6AE) (Symantec AntiVirus scanner) -- http://security.symantec.com/sscv6/S...in/AvSniff.cab Ø16 - DPF: (56762DEC-6B0D-4AB4-A8AD-989993B5D08B) (OnlineScanner Control) -- http://www.eset.eu/buxus/docs/OnlineScanner.cab Ø16 - DPF: (5F8469B4-B055-49DD-83F7-62B522420ECC) (Facebook Photo Uploader Control) -- http://upload.facebook.com/controls/...toUploader.cab Ø16 - DPF: (644E432F-49D3-41A1-8DD5-E099162EEEC5) (Symantec RuFSI Utility klase) -- http://security.symantec.com/sscv6/S.../bin/cabsa.cab Ø16 - DPF: (8E0D4DE5-3.180-4.024-A327-4DFAD1796A8D) (MessengerStatsClient klase) -- http://messenger.zone.msn.com/binary...t.cab31267.cab Ø16 - DPF: (A7A61125-0EAA-11D1-B22F-0000C08C00C4) (SSDBGrid Control 3.1 -) -- https: / / www.ext.ch2m.com/ETS/controls/sheridan3_13.cab Ø16 - DPF: (F5131C24-E56D-11CF-B78A-444.553.540.000) (Ikonic Menu Control) -- https: / / www.ext.ch2m.com/cgi-bin/controls/ikcntrls.cab Ø17 - HKLM \ System \ CCS \ Services \ Tcpip \ .. \ (75405C70-8.319-41CB-8.288-402.151.999.888): NameServer = 68.28.50.91 68.28.58.92 O18 - Protocol: grooveLocalGWS - (88FED34C-F0CA-4.636-A375-3CB6248B04CD) - C: \ PROGRA ~ 1 \ Micros ~ 2 \ Office12 \ GR99D3 ~ 1.DLL O23 - Service: Adobe LM Service - Adobe Systems - C: \ Program Files \ Common Files \ Adobe Systems Shared \ Service \ Adobelmsvc.exe O23 - Service: ASP.NET Valsts dienests (aspnet_state) - Unknown īpašnieks - C: \ WINDOWS \ Microsoft.NET \ Framework \ v2.0.50727 \ aspn et_state.exe (file missing) O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C: \ Program Files \ Symantec \ LiveUpdate \ ALUSchedulerSvc.exe O23 - Service: Bytemobile Web Configurator (bmwebcfg) - Bytemobile, Inc - C: \ WINDOWS \ system32 \ bmwebcfg.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccEvtMgr.exe O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C: \ Program Files \ Norton Internet Security \ ccPwdSvc.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ ccSetMgr.exe O23 - Service: ConfigFree Service (CFSvcs) - Toshiba Corporation - C: \ Program Files \ TOSHIBA \ ConfigFree \ CFSvcs.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C: \ Program Files \ Norton Internet Security \ comHost.exe O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co Ltd - C: \ WINDOWS \ system32 \ DVDRAMSV.exe O23 - Service: Intel (R) ProSet / Wireless Event Log (EvtEng) - Intel Corporation - C: \ Program Files \ Intel \ Bezvadu \ Bin \ EvtEng.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C: \ Program Files \ Common Files \ InstallShield \ Driver \ 1.050 \ Intel 32 \ IDriverT.exe O23 - Service: LiveUpdate - Symantec Corporation - C: \ PROGRA ~ 1 \ Symantec \ LIVEUP ~ 1 \ LUCOMS ~ 1.EXE O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C: \ Program Files \ Norton Internet Security \ Norton AntiVirus \ navapsvc.exe O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ Security Console \ NSCSRVCE.EXE O23 - Service: OSCM komunālajiem pakalpojumiem - Sprint Spectrum, LLC - C: \ Program Files \ Novatel Wireless \ Sprint \ Sprint PCS Connection Manager \ OSCMUtilityService.exe O23 - Service: Pantech komunālajiem pakalpojumiem - Sprint Spectrum, LLC - C: \ Program Files \ Sprint \ Pantech \ Sprint Mobile Broadband (Pantech) \ PWIUtilityService.exe O23 - Service: Intel (R) ProSet / Wireless Registry Service (RegSrvc) - Intel Corporation - C: \ Program Files \ Intel \ Bezvadu \ Bin \ RegSrvc.exe O23 - Service: Intel (R) ProSet / Wireless dienests (S24EventMonitor) - Intel Corporation - C: \ Program Files \ Intel \ Bezvadu \ Bin \ S24EvMon.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C: \ Program Files \ Norton Internet Security \ Norton AntiVirus \ SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ SPBBC \ SPBBCSvc.exe O23 - Service: StyleXPService - Unknown īpašnieks - C: \ Program Files \ TGTSoft \ StyleXP \ StyleXPService.exe O23 - Service: Swupdtmr - Unknown īpašnieks - c: \ TOSHIBA \ IVP \ swupdate \ swupdtmr.exe O23 - Service: Symantec Core LC - Symantec Corporation - C: \ Program Files \ Common Files \ Symantec Shared \ CCPD-LC \ symlcsvc.exe O23 - Service: TOSHIBA Application Service (TAPPSRV) - TOSHIBA Corp - C: \ Program Files \ TOSHIBA \ TOSHIBA Applet \ TAPPSRV.exe -- End of failu - 12.024 bytes |
|
#5
| |||
| |||
| Vai jūs publicējat citiem reģistriem? Open SUPERAntiSpyware > Preferences> Statistika / Logs tab> Highlight žurnāls> Skatīt žurnālu .. ESET > Iet uz C: \ Program Files \ EsetOnlineScanner \ log.txt -------------------- Lūdzu, download ATF Apkopēja by Atribune. ATF Cleaner.exe Nav izmantot vēl, mēs vēlāk. -------------------- Mums ir nepieciešams, lai izslēgtu dažus aizsardzības programmām, lai tās netraucē Jebkādus labojumus mēs cenšamies. Disable Spybot's TeaTimer Kaut TeaTimer ir lielisks līdzeklis, lai novērstu spiegprogrammatūras, tas reizēm var novērst mūsu līdzekļus no ar ko nosaka dažas lietas. Lūdzu atslēgt TeaTimer tagad, kamēr ir tīrs. TeaTimer var atkārtoti aktivizēts, kad jūsu žurnāli ir tīrs. Vispirms:
Gan Tēja taimeris un Spybot slēgts download ResetTeaTimer.zip
-------------------- Disable SpySweeper Jūs varat atkārtoti iespējot pēc tam, kad jūs esat tīri. Atslēgt SpySweeper: Atvērt Spysweeper noklikšķiniet> Options pa to pa kreisi, tad> Program Options > Neatķeksējiet "slodze logi Startup" Vairāk nekā uz kreiso klikšķi "vairogiem" un Neatķeksējiet viss tur. Neatķeksējiet "mājas lapa vairoga" Neatķeksējiet "automātiski atjaunot noklusējuma bez paziņojuma" -------------------- Es neesmu pārliecināts, vai Watch Dog Program aizsargā reģistra izmaiņu tādēļ, ja tas pēc tam atspējot. ------------------- Enable apskati Hidden System Files & Folders Doties uz My Computer-> Tools-> Folder Options-> View Tab:
Atvērt Task Manager un izvēlieties Procesiem tab. Nogalināt procesu: xxxwinbait.exe xxxOnSecure.exe -------------------- Open HijackThis un izvēlieties Vai sistēmas skenēšanu tikai tad vieta atzīmi blakus: O4 - HKLM \ .. \ Run: [RegRun WinBait] C: \ WINDOWS \ xxxwinbait.exe <<-Es domāju, ka šī programma ir vai nu nolaupīti, vai tas nebija likumīga RegRun download. Būtu winbait.exe bet parādās kā xxxwinbait.exe O4 - HKLM \ .. \ Run: [@ RegRunOnSecure] C: \ PROGRA ~ 1 \ Greatis \ REGRUN ~ 1 \ xxxOnSecure.exe <<-Es domāju, ka šī programma ir vai nu nolaupīti, vai tas nebija likumīga RegRun download. Būtu OnSecure.exe bet parādās kā xxxOnSecure.exe O4 - Global Startup: hpoddt01.exe.lnk =? Aizveriet visus logus, izņemot HijackThis un noklikšķiniet uz Fix pārbaudīja -------------------- Atvērt My Computer un atrast pēc tam dzēst šie Faili un Mapes. C: \ Windows \xxxwinbait.exe C: \ PROGRA ~ 1 \Greatis \ REGRUN ~ 1\xxxOnSecure.exe -------------------- Skriet ATF-Cleaner Pārliecinieties, ka viss pārlūkprogrammas logus slēgtas.
-------------------- Next post lūdzu, pievienojiet New HijackThis log SUPERAntiSpyware log <<- No noņemšanas instrukcijas ESET log <<- No noņemšanas instrukcijas |
|
#6
| |||
| |||
| Nevaru piekļūt savam darbvirsmas vai manas mapes though. Vai ir apmēram tādā veidā? Es centos piekļūt maniem failiem caur manu pārlūku, bet tas doesn't darbs |
|
#7
| |||
| |||
| # Version = 4 # OnlineScanner.ocx = 1.0.0.56 # OnlineScannerDLLA.dll = 1, 0, 0, 51 # OnlineScannerDLLW.dll = 1, 0, 0, 51 # OnlineScannerUninstaller.exe = 1, 0, 0, 49 # Vers_standard_module = 2762 (20080102) # Vers_arch_module = 1,060 (20.071.228) # Vers_adv_heur_module = 1,064 (20.070.717) # EOSSerial = 6051a39d0346bc4b8901f101faab2805 # End = pabeigts # Remove_checked = true # Unwanted_checked = true # Utc_time = 2008/01/03 08:02:05 # Local_time = 2008/01/03 01:02:05 (-0700, US Mountain Standard Time) # Country = "United States" # Osver = 5.1.2600 NT Service Pack 2 # Skenēts = 601.050 # Atrasts = 48 # Scan_time = 6.894 C: \ Documents and Settings \ Administrator \ Local Settings \ Temp \ TMP22.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Ģimene \ Local Settings \ Temp \ RCX3.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Ģimene \ Local Settings \ Temp \ TMP28.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 D: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ D1B9.tmp Win32/TrojanDownloader.PurityScan.EG Trojas (svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ D1B9.tmp »VSI» Yazzle1552OinAdmin.exe Win32/TrojanDownloader.PurityScan.EG Trojans (kļūda tīrīšana - darbība nav pieejams šāda veida objekts - Kļūda dzēšot - darbība nav pieejams šāda veida objekts - bija daļa svītrots objekts) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ RCX10.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ RCX29D2.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP10.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP12.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP13.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP19.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP20C.tmp Win32/TrojanDownloader.Agent.BLS Trojans (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP223.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP241.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP288C.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP29D0.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP30.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP36.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP3D.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP65.tmp Win32/TrojanDownloader.Agent.BLS Trojans (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP72.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP7766.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP8.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMP9D.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMPD.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Documents and Settings \ Mikael \ Local Settings \ Temp \ TMPD0.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ AIM6 \ aim6.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ Common Files \ Symantec Shared \ ccApp.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ Greatis \ RegRunSuite \ lsoon.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ Greatis \ RegRunSuite \ OnSecure.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ Hewlett-Packard \ HP Software Update \ HPWuSchd2.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ Intel \ Bezvadu \ Bin \ ZCfgSvc.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ Microsoft Office \ Office12 \ GrooveMonitor.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ QuickTime \ qttask. Exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ QuickTime \ qttask.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ TOSHIBA \ TOSCDSPD \ toscdspd.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ Program Files \ TOSHIBA \ TV \ TvsTray.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ WINDOWS \ mrofinu72.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ WINDOWS \ mrofinu72.exe.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ WINDOWS \ winbait.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ WINDOWS \ pchealth \ helpctr \ binaries \ msconfig.exe. TMP Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ WINDOWS \ system32 \ ctfmon.exe.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ WINDOWS \ system32 \ hkcmd.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ WINDOWS \ system32 \ mllji.exe Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ WINDOWS \ system32 \ PMNKIIF.DLL.del Win32/Adware.Virtumonde pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ WINDOWS \ system32 \ RCX416.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 C: \ WINDOWS \ system32 \ RCX8.tmp Win32/Adware.Virtumonde.CLI pieteikumā (nespēj tīrīt - svītrots) 00000000000000000000000000000000 |
|
#8
| |||
| |||
| Kā par drošais režīms? kad atraitnes sākt nospiediet F8 bottum repeadetly logi būs apear izmantot drošo režīmu uzsākt <EDIT> programmatūra ir vislabākā sistēma, drošība |
|
#9
| |||
| |||
| Quote:
|
|
#10
| |||
| |||
| Centieties iegūt SUPERAntiSpyware žurnālu un jaunu HijackThis log. |
![]() |
|
| Bookmarks |
Similar Threads | ||||
| Pavediens | Thread Starter | Forums | Replies | Last Post |
| IE Saldēšana UP - Multiple mašīnas - Multiple operētājsistēmas | ehsankhan | Web pārlūkprogrammas un FTP klienti | 1 | Jūnijs 9, 2009 12:42 |
| Jūsu Backup risinājumi | platti | Drives & Removable Media | 10 | 4 maijs 2009 10:30 |
| Hotmail kontu nolaupītas - risinājumi? | JodyM | E-pasts, VoIP & IP Discussion | 6 | 1 jūlijs 2008 23:48 |
| Volume Control icon trūkst desktop! | TheDellMan | General Software Čats | 1 | 4 novembris 2007 16:20 |
| Backup risinājumi - konsultācijas, lūdzu | Ola | Drives & Removable Media | 1 | 7 jūnijs 2007 22:45 |
| Thread Tools | |
| |