![]() |
|
#1
|
|||
|
|||
|
Čau,
Man ir dažas problēmas ar manu datoru aptuveni nedēļu, un tas ir tikai iegūt visvairāk. Problēmas: 1. "regedit" nesāks, tas neatzīst logiem. 2. Mans uzdevums vadītājs nevar uzsākt, kad es nospiediet alt + ctrl + del. 3. Kad es jāslēdz dators man ir zils ekrāns ar fatālu kļūdu saka C000021a .. kaut kā tā. 4. Kad es piesakāties Windows man t pop ups ar reklāmām. ka logs adrese ir c: \ windows \ iexplore.html vai kaut kas ar rdmngr un ilgi turpināt .. Lai varētu izmantot savu PC I celta sērijveida ka cieša visu procesu iexplore.exe un tāpēc es esmu tagad izmanto google chrome rakstīt šo pavedienu. Aizsardzības programmas man bija tikai pāris dienas bija Symantec Norton Anti Virus + Firewall (gan ne papildināts). Programmas man ir tagad (pēc lejupielādes un dzēšana uc) ir AVG Internet Security (kas nav let me update sevi - tā saka mans interneta pieslēgums nav labi - dīvaini?) SPYWAREfighter (pilnībā atjaunota un tīru no problēmām ..) un pēdējo par visu, es domāju, ir ļoti noderīgi, viena ir Spybot S & D (pilnīgi papildināts). I'll give maz info. par to, kas notiek manā comp. now: (visas no Spybot S & D) Mans darba procesiem: --- Spybot - Search & Destroy versija: 1.6.0 (Build: 20.080.707) --- 2008/07/07 blindman.exe (1.0.0.8) 2008/07/07 SDFiles.exe (1.6.0.4) 2008/07/07 SDMain.exe (1.0.0.6) 2008/07/07 SDShred.exe (1.0.2.3) 2008/07/07 SDUpdate.exe (1.6.0.8) 2008/07/07 SDWinSec.exe (1.0.0.12) 2008/07/07 SpybotSD.exe (1.6.0.30) 2008/09/16 TeaTimer.exe (1.6.3.25) 2008/10/19 unins000.exe (51.49.0.0) 2008/07/07 Update.exe (1.6.0.7) 2008/07/07 advcheck.dll (1.6.1.12) 2007/04/02 aports.dll (2.1.0.0) 2008/06/14 DelZip179.dll (1.79.11.1) 2008/09/15 SDHelper.dll (1.6.2.14) 2008/06/19 sqlite3.dll 2008/07/07 Tools.dll (2.1.5.7) 2008/09/02 Includes \ Adware.sbi 2008/10/14 Includes \ AdwareC.sbi 2008/06/03 Includes \ Cookies.sbi 2008/09/02 Includes \ Dialer.sbi 2008/09/09 Includes \ DialerC.sbi 2008/07/23 Includes \ HeavyDuty.sbi 2008/09/02 Includes \ Hijackers.sbi 2008/10/07 Includes \ HijackersC.sbi 2008/09/09 Includes \ Keyloggers.sbi 2008/10/14 Includes \ KeyloggersC.sbi 2004/11/29 Includes \ LSP.sbi 2008/10/08 Includes \ Malware.sbi 2008/10/14 Includes \ MalwareC.sbi 2008/09/02 Includes \ PUPS.sbi 2008/10/14 Includes \ PUPSC.sbi 2007/11/07 Includes \ Revision.sbi 2008/06/18 Includes \ Security.sbi 2008/09/30 Includes \ SecurityC.sbi 2008/06/03 Includes \ Spybots.sbi 2008/06/03 Includes \ SpybotsC.sbi 2008/09/09 Includes \ Spyware.sbi 2008/10/14 Includes \ SpywareC.sbi 2008/06/03 Includes \ Tracks.uti 2008/10/15 Includes \ Trojans.sbi 2008/10/14 Includes \ TrojansC.sbi 2008/03/04 Plugins \ Chai.dll 2008/03/05 Plugins \ Fennel.dll 2008/02/26 Plugins \ Mate.dll 2007/12/24 Plugins \ TCPIPAddress.dll PID: 0 (0) [sistēmu] PID: 1420 (4) \ SystemRoot \ System32 \ Smss.exe izmērs: 50.688 PID: 1620 (1420) \? \ C: \ WINDOWS \ system32 \ csrss.exe size: 6.144 PID: 1656 (1420) \? \ C: \ WINDOWS \ system32 \ winlogon.exe izmērs: 502.272 PID: 1712 (1656) C: \ WINDOWS \ system32 \ services.exe izmērs: 108.032 MD5: C6CE6EEC82F187615D1002BB3BB50ED4 PID: 1724 (1656) C: \ WINDOWS \ system32 \ lsass.exe izmērs: 13.312 MD5: 84885F9B82F4D55C6146EBF6065D75D2 PID: 1948 (1712) C: \ WINDOWS \ system32 \ ibmpmsvc.exe izmērs: 73.782 MD5: 21ABD7E16659602723F984F512C65E02 PID: 1980 (1712) C: \ WINDOWS \ system32 \ Ati2evxx.exe izmērs: 380.928 MD5: A2093ED04D20F3ACA0C0D348234C6998 PID: 2020 (1712) C: \ WINDOWS \ system32 \ svchost.exe izmērs: 14.336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 304 (1712) C: \ WINDOWS \ system32 \ svchost.exe izmērs: 14.336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 484 (1712) C: \ WINDOWS \ System32 \ svchost.exe izmērs: 14.336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 520 (1712) C: \ WINDOWS \ system32 \ svchost.exe izmērs: 14.336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 600 (1712) C: \ Program Files \ Intel \ Bezvadu \ Bin \ EvtEng.exe izmērs: 86.016 MD5: 80AAA1C7520C86CA0641C69851E124AF PID: 692 (1712) C: \ Program Files \ Intel \ Bezvadu \ Bin \ S24EvMon.exe izmērs: 360.521 MD5: 3962B7C74E9E335FAA419CCBF4BD1835 PID: 812 (1712) C: \ WINDOWS \ system32 \ svchost.exe izmērs: 14.336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 868 (1712) C: \ WINDOWS \ system32 \ svchost.exe izmērs: 14.336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 1188 (1024) C: \ Windows \ Explorer.exe Size: 1033216 MD5: 97BD6515465659FF8F3B7BE375B2EA87 PID: 1556 (1712) C: \ WINDOWS \ system32 \ Spoolsv.exe izmērs: 57.856 MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F PID: 1248 (1712) C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgwdsvc.exe izmērs: 231.704 MD5: 9B40D378D4E521464212E878BE8216A4 PID: 1604 (1712) C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgfws8.exe Size: 1220888 MD5: 1BB3A220C3616098E4BEBD6865E8F433 PID: 544 (1712) C: \ Program Files \ ThinkPad \ Bluetooth Software \ bin \ btwdins.exe izmērs: 258.103 MD5: 32EDF745816649DFB0C1AA9E723C245F PID: 1100 (1712) C: \ Program Files \ Diskeeper Corporation \ Diskeeper \ DkService.exe izmērs: 622.700 MD5: 0700D8F92F7A93C2AB33CE2E0EBC29F4 PID: 1496 (1248) C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgam.exe izmērs: 638.744 MD5: AC67ECB5AD03CE4A3FB971221F574E6B PID: 1260 (1248) C: \ Program Files \ avg \ avg8 \ avgrsx.exe Size: 287,000 MD5: BA1CE056CE1466CA28CE118585EA86C4 PID: 1448 (1712) C: \ WINDOWS \ System32 \ svchost.exe izmērs: 14.336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 1576 (1248) C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgnsx.exe izmērs: 424.216 MD5: C9BEA16C638562EB677746D07C673F07 PID: 2756 (1712) C: \ WINDOWS \ system32 \ HPZipm12.exe izmērs: 69.632 MD5: 9D84376931440F3679BEEF2A414FA493 PID: 2880 (1712) C: \ Program Files \ Fighters \ configservice.exe izmērs: 139.912 MD5: 9B48A953DE6E8D20E17D634EBDFF1755 PID: 3144 (1712) C: \ WINDOWS \ System32 \ QCONSVC.EXE izmērs: 81.920 MD5: F34DB50EF26BC0FED48BB5ADAF9B878F PID: 3232 (1712) C: \ Program Files \ Intel \ Bezvadu \ Bin \ RegSrvc.exe izmērs: 139.264 MD5: F8489639E1D60D21F63F69A0605DD667 PID: 3272 (1712) C: \ WINDOWS \ system32 \ svchost.exe izmērs: 14.336 MD5: 8F078AE4ED187AAABC0A305146DE6716 PID: 3376 (1712) C: \ WINDOWS \ System32 \ TPHDEXLG.EXE izmērs: 77.824 MD5: 5515311013AF3EB8746FA6806AA4A859 PID: 3420 (1712) C: \ WINDOWS \ system32 \ TpKmpSVC.exe izmērs: 32.768 MD5: DFB268FF0A6DCB9280015FF527F892FF PID: 3456 (1712) C: \ Program Files \ ThinkVantage \ SystemUpdate \ UCLauncherService. exe izmērs: 40.960 MD5: 7541BD8978AA1447FC2467C1F2B39B87 PID: 2988 (2020) C: \ WINDOWS \ system32 \ wbem \ wmiprvse.exe izmērs: 218.112 MD5: 075EA6C849AB0FE416A3D6DD65C3CF41 PID: 3184 (1712) C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgemc.exe izmērs: 875.288 MD5: EC5B6AFF1A0BD1480B3B40CE78FAA527 PID: 3796 (1712) C: \ Program Files \ Fighters \ licenseservice.exe izmērs: 283.272 MD5: 7A433AA7803B408E50963F3007B7C134 PID: 2392 (1712) C: \ Program Files \ Fighters \ updateservice.exe izmērs: 307.848 MD5: 2DFBDA4C2484938B77737846446BADB5 PID: 2008 (1712) C: \ Program Files \ Fighters \ ScannerService.exe izmērs: 311.944 MD5: B0AB3FAFD1C65FA7FFC9178DAF8B5B96 PID: 992 (1712) C: \ Program Files \ Windows Media Player \ WMPNetwk.exe izmērs: 913.408 MD5: F74E3D9A7FA9556C3BBB14D4E5E63D3B PID: 2804 (1712) C: \ WINDOWS \ System32 \ alg.exe izmērs: 44.544 MD5: F1958FBF86D5C004CF19A5951A9514B7 PID: 3904 (1188) C: \ WINDOWS \ LSPRN.EXE izmērs: 16.896 MD5: 8D10954E841EEFC61E5022432E8F55E8 PID: 2436 (1188) C: \ Program Files \ Synaptics \ SynTP \ SynTPLpr.exe izmērs: 110.592 MD5: 0E6AA8A1D47148DC7AD82BF9C81AC69C PID: 2400 (1188) C: \ Program Files \ Synaptics \ SynTP \ SynTPEnh.exe Size: 512,000 MD5: 89FC9B12D36005F6A43A8F8B58306AC8 PID: 2776 (3904) C: \ WINDOWS \ system32 \ PRINTDRV.EXE izmērs: 552.748 MD5: 2B3B794301779CF6AD7EA9F2FEA87CA5 PID: 632 (1188) C: \ PROGRA ~ 1 \ ThinkPad \ UTILIT ~ 1 \ EzEjMnAp.Exe izmērs: 237.568 MD5: EB21E4E92F5A81F7A6E6B9DC8E6BFBB6 PID: 3624 (1188) C: \ PROGRA ~ 1 \ Lenovo \ PkgMgr \ Hotkey \ TPHKMGR.exe izmērs: 94.208 MD5: 8F00D8FB0E51D4AB0587B3FC06E8079E PID: 1856 (3624) C: \ Program Files \ Lenovo \ PkgMgr \ Hotkey \ TPONSCR.exe izmērs: 77.824 MD5: E56AED1AD96125AE952F9B2B1D468177 PID: 504 (3624) C: \ Program Files \ Lenovo \ PkgMgr \ HOTKEY_1 \ TpScrex.exe izmērs: 86.016 MD5: F1DE90D990C6928EF549602A5ECE4029 PID: 1148 (1188) C: \ PROGRA ~ 1 \ THINKV ~ 2 \ PrdCtr \ LPMGR.exe izmērs: 98.304 MD5: 92B1EE9575F696F75FAB3A5A2D0D6642 PID: 3296 (1188) C: \ Program Files \ Common Files \ InstallShield \ UpdateService \ issch.exe izmērs: 81.920 MD5: 763DAB43BDAB27316DBF3373192823D7 PID: 3336 (1188) C: \ Program Files \ IBM ThinkVantage \ Aizsardzības PrivateDisk \ pdservice.exe izmērs: 49.152 MD5: 64AB0F0795A0AEE366D34007D75F4A12 PID: 3140 (1188) C: \ Program Files \ ThinkPad \ ConnectUtilities \ QCWLICON.EXE izmērs: 86.016 MD5: 11ADBA54E52216F21675E75F5535C553 PID: 2252 (1188) C: \ WINDOWS \ system32 \ rundll32.exe izmērs: 33.280 MD5: DA285490BBD8A1D0CE6623577D5BA1FF PID: 2116 (1188) C: \ PROGRA ~ 1 \ ThinkPad \ savienojumus ~ 1 \ QCTray.exe izmērs: 745.472 MD5: 616EF177F379D42EBDEA5E92411A8F6E PID: 236 (1188) C: \ Program Files \ Java \ jre1.6.0_07 \ bin \ jusched.exe izmērs: 144.784 MD5: 6AB4C021FBD36DC6764924C312428D97 PID: 2480 (1188) C: \ Program Files \ Fighters \ spywarefighter \ SpywarefighterUser.e XE izmērs: 180.872 MD5: C491ABE2B0E515260CD8816F279B079F PID: 1472 (1188) C: \ PROGRA ~ 1 \ AVG \ AVG8 \ avgtray.exe Size: 1235736 MD5: B95536F0B568C4476A78966CFA7BA006 PID: 664 (1188) C: \ WINDOWS \ system32 \ ctfmon.exe izmērs: 15.360 MD5: 24232996A38C0B0CF151C2140AE29FC8 PID: 2840 (1188) C: \ Program Files \ Google \ GoogleToolbarNotifier \ GoogleToolbarNo tifier.exe izmērs: 68.856 MD5: E616A6A6E91B0A86F2F6217CDE835FFE PID: 3092 (1188) C: \ Documents and Settings \ Iris Reiss \ Local Settings \ Application Data \ Google \ Update \ GoogleUpdate.exe izmērs: 133.104 MD5: 626A24ED1228580B9518C01930936DF9 PID: 3940 (1188) C: \ Program Files \ Windows Media Player \ WMPNSCFG.exe izmērs: 204.288 MD5: 7EAED08CCCA4DDDE61A388C82598CFA9 PID: 2464 (2480) c: \ Program Files \ cīnītājiem \ spywarefighter \ SPYWAREfighterTray.e XE izmērs: 246.408 MD5: 3728857211EF65AE850DC29DF3205E10 PID: 5496 (1188) C: \ WINDOWS \ system32 \ cmd.exe izmērs: 388.608 MD5: EEB024F2C81F0D55936FB825D21A91D6 PID: 5948 (1188) C: \ Documents and Settings \ Iris Reiss \ Local Settings \ Application Data \ Google \ Chrome \ Application \ chrome.exe izmērs: 634.368 MD5: 393AF6392BA299FE1C7B13FA29C09711 PID: 796 (5948) C: \ Documents and Settings \ Iris Reiss \ Local Settings \ Application Data \ Google \ Chrome \ Application \ chrome.exe izmērs: 634.368 MD5: 393AF6392BA299FE1C7B13FA29C09711 PID: 4200 (1188) C: \ WINDOWS \ system32 \ rundll32.exe izmērs: 33.280 MD5: DA285490BBD8A1D0CE6623577D5BA1FF PID: 252 (4200) C: \ Program Files \ National Instruments \ Shared \ NIUninstaller \ uninst.exe Size: 1247840 MD5: F3B04AD6D6605A5059CC4A5CB36BED46 PID: 1408 (1712) C: \ WINDOWS \ system32 \ Msiexec.exe izmērs: 78.848 MD5: F5F0146580E7023ADB963879840777F8 PID: 6060 (5948) C: \ Documents and Settings \ Iris Reiss \ Local Settings \ Application Data \ Google \ Chrome \ Application \ chrome.exe izmērs: 634.368 MD5: 393AF6392BA299FE1C7B13FA29C09711 PID: 3260 (5948) C: \ Documents and Settings \ Iris Reiss \ Local Settings \ Application Data \ Google \ Chrome \ Application \ chrome.exe izmērs: 634.368 MD5: 393AF6392BA299FE1C7B13FA29C09711 PID: 4472 (5948) C: \ Documents and Settings \ Iris Reiss \ Local Settings \ Application Data \ Google \ Chrome \ Application \ chrome.exe izmērs: 634.368 MD5: 393AF6392BA299FE1C7B13FA29C09711 PID: 4652 (5696) C: \ Program Files \ Spybot - Search & Destroy \ SpybotSD.exe Size: 4891472 MD5: 3B1B5D09D3C9C4CD39D4DB06ED7A0855 PID: 4 (0) Sistēma PID: 4348 (1408) C: \ WINDOWS \ system32 \ Msiexec.exe izmērs: 78.848 MD5: F5F0146580E7023ADB963879840777F8 PID: 5480 (1408) C: \ Windows \ Installer \ MSI34A.tmp izmērs: 56.232 MD5: 2A7F9A2F8F08BBC0C5829B3A90B7EE96 Log failu no iepriekš šajā vakarā, kad es tikai lejupielādēt spy bot s & d --- Report Generated: 2008/10/19 18:44 --- Mājienu diena: Noklikšķiniet josla tiesības to redzēt vairāk informāciju! () AdwareAlert: [SBI $ 52C5F396] Settings (מפתח רישום, nekas nav noticis) HKEY_USERS \ S-1-5-21-343743635-3307870191-2053664491-1006 \ Software \ AdwareAlert ErrorSmart: [SBI $ 8E4C1D3D] Settings (מפתח רישום, nekas nav noticis) HKEY_USERS \ S-1-5-21-343743635-3307870191-2053664491-1006 \ Software \ ErrorSmart ErrorSmart: [SBI $ 879FA510] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ ErrorSmart \ Log \ 2008 Oct 14 - 05_31_58 PM_484.log ErrorSmart: [SBI $ 879FA510] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ ErrorSmart \ Log \ 2008 Oct 14 - 05_49_53 PM_796.log ErrorSmart: [SBI $ 879FA510] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ ErrorSmart \ Log \ 2008 Oct 14 - 08_16_38 PM_328.log ErrorSmart: [SBI $ 879FA510] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ ErrorSmart \ Log \ 2008 Oct 14 - 08_41_00 PM_671.log ErrorSmart: [SBI $ 879FA510] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ ErrorSmart \ Log \ 2008 Oct 14 - 09_27_33 PM_515.log ErrorSmart: [SBI $ 879FA510] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ ErrorSmart \ Log \ 2008 Oct 14 - 12_16_19 PM_859.log ErrorSmart: [SBI $ 7B416CCA] Data (קובץ, nekas nav noticis) C: \ WINDOWS \ Uzdevumi \ ErrorSmart Scheduled Scan.job RegistrySmart: [SBI $ FCEE4898] Settings (מפתח רישום, nekas nav noticis) HKEY_USERS \ S-1-5-21-343743635-3307870191-2053664491-1006 \ Software \ RegistrySmart RegistrySmart: [SBI $ 81F408AB] Settings (מפתח רישום, nekas nav noticis) HKEY_LOCAL_MACHINE \ Software \ RegistrySmart RegistrySmart: [SBI $ A1D98DAB] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ RegistrySmart \ Log \ log_2007_05_17_11_51_45.log RegistrySmart: [SBI $ A1D98DAB] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ RegistrySmart \ Log \ log_2007_05_17_11_51_53.log RegistrySmart: [SBI $ A1D98DAB] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ RegistrySmart \ Log \ log_2007_05_24_09_10_06.log RegistrySmart: [SBI $ A1D98DAB] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ RegistrySmart \ Log \ log_2007_06_14_10_01_53.log RegistrySmart: [SBI $ A1D98DAB] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ RegistrySmart \ Log \ log_2007_06_15_03_09_36.log RegistrySmart: [SBI $ A1D98DAB] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ RegistrySmart \ Log \ log_2007_06_20_22_29_01.log RegistrySmart: [SBI $ A1D98DAB] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ RegistrySmart \ Log \ log_2007_07_01_20_40_26.log RegistrySmart: [SBI $ A1D98DAB] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ RegistrySmart \ Log \ log_2007_07_12_12_06_09.log RegistrySmart: [SBI $ A1D98DAB] Žurnāls failu (קובץ, nekas nav noticis) C: \ Documents and Settings \ Iris Reiss \ Application Data \ RegistrySmart \ Log \ log_2007_07_14_17_02_38.log RegistrySmart: [SBI $ A6ED8F18] Data (קובץ, nekas nav noticis) C: \ WINDOWS \ Uzdevumi \ RegistrySmart Scheduled Scan.job Microsoft.Windows.Security.InternetExplorer: [SBI $ 366713D4] Settings (רישום שהשתנה, nekas nav noticis) HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Internet Explorer \ Main \ FeatureControl \ FEATURE_LOCALMACHINE_ Lockdown \ iexplore.exe Microsoft.WindowsSecurityCenter.AntiVirusOverride: [SBI $ 3604910C] Settings (רישום שהשתנה, nekas nav noticis) HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Security Center \ AntiVirusOverride Microsoft.Windows.AppFirewallBypass: [SBI $ 2593FAE5] Settings (ערך הרישום, nekas nav noticis) HKEY_LOCAL_MACHINE \ SYSTEM \ ControlSet002 \ Services \ S haredAccess \ Parameters \ FirewallPolicy \ StandardProf ile \ AuthorizedApplications \ List \ C: \ WINDOWS \ system3 2 \ winver.exe Microsoft.Windows.AppFirewallBypass: [SBI $ 17E546F4] Settings (ערך הרישום, nekas nav noticis) HKEY_LOCAL_MACHINE \ SYSTEM \ ControlSet003 \ Services \ S haredAccess \ Parameters \ FirewallPolicy \ StandardProf ile \ AuthorizedApplications \ List \ C: \ WINDOWS \ system3 2 \ winver.exe Hupigon13: [SBI $ D5A7DCB6] Settings (מפתח רישום, nekas nav noticis) HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ Image File Execution Options \ regedit.exe Virtumonde: [SBI $ 1F8EC695] Settings (מפתח רישום, nekas nav noticis) HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ MSSMGR Virtumonde.dll: [SBI $ 8770FED0] Library (קובץ, nekas nav noticis) C: \ WINDOWS \ system32 \ jkkJaxXQ.dll Virtumonde.dll: [SBI $ 8770FED0] Library (קובץ, nekas nav noticis) C: \ WINDOWS \ system32 \ geBsqpqR.dll Virtumonde.dll: [SBI $ 8770FED0] Library (קובץ, nekas nav noticis) C: \ WINDOWS \ system32 \ ddcBTNDW.dll Zlob.Downloader.bit: [SBI $ 12A26DDA] Installer (קובץ, nekas nav noticis) c: \ autorun.inf Log: Activity: COM +. Log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ COM +. Log Log: Activity: SchedLgU.Txt (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ SchedLgU.Txt Log: Activity: imsins.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ imsins.log Log: Activity: OEWABLog.txt (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ OEWABLog.txt Log: Activity: ntbtlog.txt (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ ntbtlog.txt Žurnāls: Install: comsetup.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ comsetup.log Žurnāls: Install: ocgen.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ ocgen.log Žurnāls: Install: setupact.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ setupact.log Žurnāls: Install: setupapi.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ setupapi.log Žurnāls: Install: svcpack.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ svcpack.log Žurnāls: Install: wmsetup.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ wmsetup.log Žurnāls: Install: DtcInstall.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ DtcInstall.log Žurnāls: Shutdown: System32 \ wbem \ logs \ mofcomp.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ System32 \ wbem \ logs \ mofcomp.log Žurnāls: Shutdown: System32 \ wbem \ logs \ wbemcore.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ System32 \ wbem \ logs \ wbemcore.log Žurnāls: Shutdown: System32 \ wbem \ logs \ wbemess.lo_ (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ System32 \ wbem \ logs \ wbemess.lo_ Žurnāls: Shutdown: System32 \ wbem \ logs \ wbemess.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ System32 \ wbem \ logs \ wbemess.log Žurnāls: Shutdown: System32 \ wbem \ logs \ wbemprox.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ System32 \ wbem \ logs \ wbemprox.log Žurnāls: Shutdown: System32 \ wbem \ logs \ wmiadap.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ System32 \ wbem \ logs \ wmiadap.log Žurnāls: Shutdown: System32 \ wbem \ logs \ wmiprov.log (קובץ גיבוי, nekas nav noticis) C: \ WINDOWS \ System32 \ wbem \ logs \ wmiprov.log Cookie: Cookie (22) (Cookie, nekas nav noticis) Kešatmiņa: Cache (663) (Cache, nekas nav noticis) Vēsture: Vēsture (65) (History, nekas nav noticis) --- Spybot - Search & Destroy versija: 1.6.0 (Build: 20.080.707) --- 2008/07/07 blindman.exe (1.0.0.8) 2008/07/07 SDFiles.exe (1.6.0.4) 2008/07/07 SDMain.exe (1.0.0.6) 2008/07/07 SDShred.exe (1.0.2.3) 2008/07/07 SDUpdate.exe (1.6.0.8) 2008/07/07 SDWinSec.exe (1.0.0.12) 2008/07/07 SpybotSD.exe (1.6.0.30) 2008/09/16 TeaTimer.exe (1.6.3.25) 2008/10/19 unins000.exe (51.49.0.0) 2008/07/07 Update.exe (1.6.0.7) 2008/07/07 advcheck.dll (1.6.1.12) 2007/04/02 aports.dll (2.1.0.0) 2008/06/14 DelZip179.dll (1.79.11.1) 2008/09/15 SDHelper.dll (1.6.2.14) 2008/06/19 sqlite3.dll 2008/07/07 Tools.dll (2.1.5.7) 2008/09/02 Includes \ Adware.sbi (*) 2008/10/14 Includes \ AdwareC.sbi (*) 2008/06/03 Includes \ Cookies.sbi (*) 2008/09/02 Includes \ Dialer.sbi (*) 2008/09/09 Includes \ DialerC.sbi (*) 2008/07/23 Includes \ HeavyDuty.sbi (*) 2008/09/02 Includes \ Hijackers.sbi (*) 2008/10/07 Includes \ HijackersC.sbi (*) 2008/09/09 Includes \ Keyloggers.sbi (*) 2008/10/14 Includes \ KeyloggersC.sbi (*) 2004/11/29 Includes \ LSP.sbi (*) 2008/10/08 Includes \ Malware.sbi (*) 2008/10/14 Includes \ MalwareC.sbi (*) 2008/09/02 Includes \ PUPS.sbi (*) 2008/10/14 Includes \ PUPSC.sbi (*) 2007/11/07 Includes \ Revision.sbi (*) 2008/06/18 Includes \ Security.sbi (*) 2008/09/30 Includes \ SecurityC.sbi (*) 2008/06/03 Includes \ Spybots.sbi (*) 2008/06/03 Includes \ SpybotsC.sbi (*) 2008/09/09 Includes \ Spyware.sbi (*) 2008/10/14 Includes \ SpywareC.sbi (*) 2008/06/03 Includes \ Tracks.uti 2008/10/15 Includes \ Trojans.sbi (*) 2008/10/14 Includes \ TrojansC.sbi (*) 2008/03/04 Plugins \ Chai.dll 2008/03/05 Plugins \ Fennel.dll 2008/02/26 Plugins \ Mate.dll 2007/12/24 Plugins \ TCPIPAddress.dll * Ja citas ziņas, kas vajadzīgas, lai jautāt, un jūs saņemsiet. Tas ir tas. cerību iegūt kādu ātri noderīgi padomi, kas šo ugly situācijai .. Pateicība, Rotem |
|
#2
|
||||||||||||
|
||||||||||||
|
http://www.computer-juice.com/forums...-posting-7476/
__________________
Sekojiet guide, ierīkot brīvo programmatūru un pēc log failiem. Tad malware komanda var redzēt, kas nav kārtībā ar Jūsu sistēmu. Mana sistēma: Hybr! D
|