mažiau kapitalo

Magazine
Go Back   Kompiuterių sultys > Kompiuterių programinė įranga > Virus, Spyware & Security

Register


 Default 

"Microsoft" Pop Up Tell Me I Have A viruso




Reply
 
Temos įrankiai
  #1  
Old Liepa 3, 2009, 00:31
Narys
 
Default "Microsoft" Pop Up Tell Me I Have A viruso

Turėjau Microsoft "pop-up man sakai aš viruso Ran malwarebyts nieko. Ran Super Anti-Virus parodė 16 problema. Tada prisimenama, kad aš DrWeb skaitytuvo į kompiuterį ir pradėjo jį. Bet aš pastebėjau, kad ta pati vadinamoji Trojos vis iškyla.

aolcinst.exe \ core.cab \ GTDOWNAO_106.ocx, C: \ Program Files \ Common Files \ aolback \ Comps \ treneris \ aolcinst.exe; Adware.Gdow N;;
aolcinst.exe, C: \ Program Files \ Common Files \ aolback \ Comps \ treneris; archyvas yra užsikrėtę objektus; perkelta.;
TSSetup.exe \ data002, C: \ Program Files \ Common Files \ aolback \ Comps \ tpspd \ TSSetup.exe, turbūt DLOADER.Trojan;;
TSSetup.exe, C: \ Program Files \ Common Files \ aolback \ Comps \ tpspd; archyvas yra užsikrėtę objektus; perkelta.;
ppctl.dll, C: \ Program Files \ Common Files \ Scanner, turbūt DLOADER.Trojan; perkelta.;
AIM.exe \ data090, C: \ AOL Instant Messenger \ AIM.exe; Adware.Aws;;
AIM.exe, C: \ AOL Instant Messenger; archyvas yra užsikrėtę objektus; perkelta.;
Setup.exe, C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4, turbūt Backdoor.Trojan; perkelta.;
A0089111.ocx, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP212; Adware.Gdown; perkelta.;
A0089113.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP212, turbūt Backdoor.Trojan; perkelta.;
A0101519.exe \ data090, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP217 \ A0101519.exe; Adware.Aws;;
A0101519.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP217; archyvas yra užsikrėtę objektus; perkelta.;
A0122098.bat, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP257, turbūt BATCH.Virus; perkelta.;
A0122542.bat, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP265, turbūt BATCH.Virus; perkelta.;
A0122632.bat, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP265, turbūt BATCH.Virus; perkelta.;
A0138379.exe \ core.cab \ GTDOWNAO_106.ocx, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP292 \ A0138379.exe; Adware.Gdown;;
A0138379.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP292; archyvas yra užsikrėtę objektus; perkelta.;
A0139338.exe \ data090, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP293 \ A0139338.exe; Adware.Aws;;
A0139338.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP293; archyvas yra užsikrėtę objektus; perkelta.;
A0139364.exe \ core.cab \ GTDOWNAO_106.ocx, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP293 \ A0139364.exe; Adware.Gdown;;
A0139364.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP293; archyvas yra užsikrėtę objektus; perkelta.;
A0139386.exe \ data002, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP293 \ A0139386.exe, turbūt DLOADER.Trojan;;
A0139386.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP293; archyvas yra užsikrėtę objektus; perkelta.;
A0139531.DLL, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP296, turbūt DLOADER.Trojan; perkelta.;
A0156077.exe \ data090, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP315 \ A0156077.exe; Adware.Aws;;
A0156077.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP315; archyvas yra užsikrėtę objektus; perkelta.;
A0156103.exe \ core.cab \ GTDOWNAO_106.ocx, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP315 \ A0156103.exe; Adware.Gdown;;
A0156103.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP315; archyvas yra užsikrėtę objektus; perkelta.;
A0156125.exe \ data002, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP315 \ A0156125.exe, turbūt DLOADER.Trojan;;
A0156125.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP315; archyvas yra užsikrėtę objektus; perkelta.;
A0156545.DLL, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP317, turbūt DLOADER.Trojan; perkelta.;
A0157937.exe \ core.cab \ GTDOWNAO_106.ocx, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP327 \ A0157937.exe; Adware.Gdown;;
A0157937.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP327; archyvas yra užsikrėtę objektus; perkelta.;
A0157938.exe \ data002, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP327 \ A0157938.exe, turbūt DLOADER.Trojan;;
A0157938.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP327; archyvas yra užsikrėtę objektus; perkelta.;
A0157939.exe \ data090, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP327 \ A0157939.exe; Adware.Aws;;
A0157939.exe, C: \ System Volume Information \ _Restore (D9C30710-440A-4B3A-837F-765DA7B6372B) \ RP327; archyvas yra užsikrėtę objektus; perkelta.;
Ir tai bus ne išspręsti problemą, tiesiog perkelti.
Ką turėčiau naudoti, kad gauti išjungti kompiuterį Trojos kartą ir visiems laikams?
Dabar aš ne antivirusinę veikia dėl šios priežasties visiems, turiu tryed nesvarbu, jei mokama ar nemokama išlaiko traukimas AOL. (Mano ISP), kaip virusas.
  #2  
Old Liepa 3, 2009, 10:09
Moderatorius Grupė
 
Default "Microsoft" Pop Up Tell Me I Have A viruso

Atnaujinti Malwarebytes ir paleisti visas skenavimo tada po Prisijungti prašom.
__________________

  #3  
Old Liepa 3, 2009, 13:29
Narys
 
Default "Microsoft" Pop Up Tell Me I Have A viruso

Atnaujinta Malwarebytes
Malwarebytes 'Anti-Malware 1,38
Duomenų bazės versija: 2297
Windows 5.1.2600 Service Pack 2
7/2/2009 3:06:04
mbam-log-2009-07-02 (15-06-04). Txt
Scan Type: Full Scan (C: \ |)
Objektai nuskaitomi: 168.556
Praėjęs laikas: 17 minučių (-ai), 16 second (s)
Atminties procesai Infected: 0
Atminties moduliai Infected: 0
Registro raktus Infected: 0
Vertybių registrą Infected: 0
Registro duomenų elementų Infected: 0
Katalogai Infected: 0
Failai Infected: 0
Atminties procesai Infected:
(Nr. kenksminga daiktų aptikti)
Atminties moduliai Infected:
(Nr. kenksminga daiktų aptikti)
Registro raktus Infected:
(Nr. kenksminga daiktų aptikti)
Vertybių registrą Infected:
(Nr. kenksminga daiktų aptikti)
Registro duomenų elementų Infected:
(Nr. kenksminga daiktų aptikti)
Katalogai Infected:
(Nr. kenksminga daiktų aptikti)
Failai Infected:
(Nr. kenksminga daiktų aptikti)

O po to scan buvo per langą poped iki sako man ten buvo klaida ir langus reikia uždaryti.
  #4  
Old Liepa 3, 2009, 14:52
Moderatorius Grupė
 
Default "Microsoft" Pop Up Tell Me I Have A viruso

Atsisiųsti DDS nuo | Here | arba | Here | arba | Here | ir išsaugokite jį savo kompiuteryje.

Vista vartotojai Dešiniuoju pelės mygtuku spustelėkite dds pasirinkite Vykdyti kaip administratorius (Jūs gausite UAC eilutę, leiskite ji)

* XP vartotojams Dukart spustelėkite dds paleisti.
* Jei jūsų antivirusinė ar ugniasienė bando blokuoti DDS tada leiskite jį paleisti.
* Kai baigsite DDS bus atidaryti du (2) rąstų.

1) DDS.txt
2) Attach.txt

* Išsaugoti tiek Įrašai darbalaukyje.
* Nukopijuokite ir įklijuokite visą turinį ir į kitą Atsakyti rąstų.

Pastaba DDS pamokys rašyti Attach.txt prisijungti kaip priedą.
Prašome tik po to, kaip bet kurį kitą žurnalą pagal nukopijuokite ir įklijuokite jį į atsakymą.

----------

Atsisiųsti Rooter.exe darbalaukyje

* Du kartus paspauskite Rooter.exe pradėti įrankis .* DOS langas bus rodomas ir parodyti scan pažangą.
* Kai visą Notepad failas, kuriame yra pranešimas bus atidaryta.
* Nukopijuokite ir įklijuokite į savo kitą Atsakyti rezultatus.
* Uždarykite Notepad ir Wyorywacz bus uždaryti.

Prisijungti taip pat bus sutaupyti % SystemDrive% \ Rooter.txt (Kur% SystemDrive% paprastai yra C: ar diską, jūs turite įdiegti "Windows").
__________________

  #5  
Old Liepa 3, 2009, 17:13
Narys
 
Default "Microsoft" Pop Up Tell Me I Have A viruso

DDS (Ver_09-06-26,01) - FAT32x86
Paleiskite Windows vartotoju 19:43:32.90 Fri 07/03/2009
Internet Explorer 8.0.6001.18702
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1023.788 [GMT -4:00]

============== Aktyvūs procesai ===============
C: \ WINDOWS \ system32 \ Svchost-k DcomLaunch
SVCHOST.EXE
C: \ WINDOWS \ System32 \ svchost.exe-k netsvcs
SVCHOST.EXE
SVCHOST.EXE
C: \ WINDOWS \ system32 \ Spoolsv.exe
SVCHOST.EXE
C: \ Program Files \ Common Files \ AOL \ ACS \ AOLAcsd.exe
C: \ Program Files \ Java \ jre6 \ bin \ jqs.exe
C: \ WINDOWS \ system32 \ snmp.exe
C: \ WINDOWS \ System32 \ svchost.exe-k imgsvc
C: \ WINDOWS \ explorer.exe
C: \ Program Files \ Lexmark 5.200 serijos \ lxbtbmgr.exe
C: \ Program Files \ Java \ jre6 \ bin \ jusched.exe
C: \ Program Files \ Lexmark 5.200 serijos \ lxbtbmon.exe
C: \ Program Files \ Common Files \ AOL \ 1246084174 \ EE \ AOLSoftware.exe
C: \ Program Files \ Common Files \ AOL \ ACS \ AOLDial.exe
C: \ WINDOWS \ system32 \ Ctfmon.exe
C: \ Program Files \ Jet Screenshot \ jetScreenshot.exe
C: \ WINDOWS \ system32 \ wuauclt.exe
C: \ Program Files \ America Online 9.0 \ waol.exe
C: \ Program Files \ America Online 9.0 \ shellmon.exe
C: \ WINDOWS \ system32 \ rundll32.exe
C: \ DOCUME ~ 1 \ Windows ~ 1 \ MYDOCU ~ 1 \ dds.scr
============== Pseudo HJT Pranešimas ===============
uSearchMigratedDefaultURL = hxxp: / / www.google.com/search?q searchTerms = () & sourceid = ie7 & RLS = com.micros oft: en-us & ie = utf8 & oe = utf8
uStart Page = hxxp: / / www.aol.com/
uWindow Title = "Internet Explorer pateikė epix ®
mWindow Title = "Internet Explorer pateikė epix ®
BHO: AskBar BHO: (201f27d4-3704-41d6-89c1-aa35e39143ed) - C: \ Program Files \ askbardis \ bar \ bin \ askBar.dll
BHO: Java (tm) Plug-in 2 SSV Helper: (dbc80044-a445-435b-bc74-9c25c1c588a9) - C: \ Program Files \ Java \ jre6 \ bin \ jp2ssv.dll
BHO: JQSIEStartDetectorImpl klasė: (e7e6f031-17ce-4c07-bc86-eabfe594f69c) - C: \ Program Files \ Java \ jre6 \ lib \ dislokuoti \ jqs \ ty \ jqs_plugin.dll
TB: AIM Paieška: (40d41a8b-d79b-43d7-99a7-9ee0f344c385) --
TB: AOL Toolbar: (4982d40a-c53b-4615-b15b-b5b5e98d167c) - C: \ Program Files \ AOL Toolbar \ toolbar.dll
TB: Ask Toolbar: (3041d03e-fd4b-44e0-b742-2d9b88305f98) - C: \ Program Files \ askbardis \ bar \ bin \ askBar.dll
EB: Real.com: (fe54fa40-d68c-11D2-98fa-00c0f0318afe) - C: \ Windows \ system32 \ Shdocvw.dll
uRun: [Ctfmon.exe] C: \ Windows \ system32 \ Ctfmon.exe
uRun: [AOL Fast Pradžia] "C: \ Program Files \ America Online 9.0 \ AOL.EXE"-B
uRun: [Jet Screenshot] "C: \ Program Files \ Jet Screenshot \ jetScreenshot.exe"
mRun: [Lexmark 5.200 serijos] "C: \ Program Files \ Lexmark 5.200 serijos \ lxbtbmgr.exe"
mRun: [LXBTCATS] rundll32 C: \ Windows \ system32 \ spool \ drivers \ W32x86 \ 3 \ LXBTtim e.dll, _RunDLLEntry @ 16
mRun: [SunJavaUpdateSched] "C: \ Program Files \ Java \ jre6 \ bin \ jusched.exe"
mRun: [HostManager] C: \ Program Files \ Common Files \ AOL \ 1246084174 \ EE \ AOLSoftware.exe
mRun: [AOLDialer] C: \ Program Files \ Common Files \ AOL \ ACS \ AOLDial.exe
mRun: [Pure Networks Port Magic] "C: \ PROGRA ~ 1 \ purene ~ 1 \ portma ~ 1 \ PortAOL.exe"-Run
mRun: [QuickTime Task] "C: \ Program Files \ QuickTime \ qttask.exe"-atboottime
IE: & Pridėti animaciją IncrediMail Stilius Box - C: \ Program Files \ IncrediMail \ bin \ Resources \ WebMenuImg.htm
IE: & ICQ Paieška
IE: & ICQ Toolbar Search - C: \ Program Files \ AOL Toolbar \ toolbar.dll / SEARCH.HTML
IE: (e2e2dd38-d088-4134-82b7-f2ba38496583) -% windir% \ network diagnostic \ xpnetdiag.exe
IE: (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe
IE: (4982D40A-C53B-4615-B15B-B5B5E98D167C) - (4982D40A-C53B-4615-B15B-B5B5E98D167C) - C: \ Program Files \ AOL Toolbar \ toolbar.dll
IE: (CD67F990-D8E9-11D2-98FE-00C0F0318AFE) - (FE54FA40-D68C-11D2-98FA-00C0F0318AFE) - C: \ Windows \ system32 \ Shdocvw.dll
LSP: FarLsp.dll
Patikimas Zona: 88sears.com \ www
Patikimas Zona: aol.com \ www
Patikimas Zona: comodo.com \ www
Patikimas Zona: kompiuterinių juice.com \ www
Patikimas Zona: giveawayoftheday.com \ www
Patikimas Zona: newegg.com \ www
Patikimas Zona: pchelpforum.com \ www
Patikimas Zona: searscard.com \ www
Patikimas Zona: statefarm.com \ www
Patikimas Zona: winpatrol.com \ www
DPF: DirectAnimation Java klasės
DPF: "Internet Explorer klasių Java
DPF: Microsoft XML Parser for Java
DPF: Win32 klasėms
DPF: (05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8) - hxxp: / / download.microsoft.com/download/e/7/3/e7345c16-80aa-4488-ae10-9ac6be844f99/OGAControl.cab
DPF: (15589FA1-C456-11CE-BF01-00AA0055595A) - hxxp: / / w4s2.work4sure.com/c/ge/w4sgeen9.exe
DPF: (5D86DDB5-BDF9-441B-9E9E-D4730F4EE499) - hxxp: / / download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) - hxxp: / / update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab? 1181748806125
DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) - hxxp: / / update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab? 1223016488385
DPF: (8AD9C840-044E-11D1-B3E9-00805F499D93) - hxxp: / / java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
DPF: (A90A5822-F108-45AD-8482-9BC8B12DD539) - hxxp: / / www.crucial.com / kontrolė / cpcScanner.cab
DPF: (B1E2B96C-12FE-45E2-BEF1-44A219113CDD) - hxxp: / / www.superadblocker.com / ActiveX / sabspx.cab
DPF: (CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA) - hxxp: / / java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
DPF: (CAFEEFAC-ffff-ffff-ffff-ABCDEFFEDCBA) - hxxp: / / java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
DPF: (D27CDB6E-AE6D-11CF-96B8-444553540000) - hxxp: / / download.macromedia.com / pub / shockwave / kabinos / Flash / swflash.cab
DPF: (E8F628B5-259A-4734-97EE-BA914D7BE941) - hxxp: / / plugin.driveragent.com / files / driveragent.cab
AppInit_DLLs: C: \ Windows \ system32 \ cssdll32.dll
ABĮ: Pranešimas apie programos = SceCli
============= PASLAUGOS / drivers ===============
R1 SASDIFSV; SASDIFSV, C: \ Program Files \ superantispyware \ sasdifsv.sys [2006-10-10 5632]
R1 SASKUTIL; SASKUTIL, C: \ Program Files \ superantispyware \ SASKUTIL.SYS [2007-2-27 32256]
R3 Winacusb; Winacusb; c: \ windows \ system32 \ drivers \ Wina cusb.sys [2008-3-25 902860]
S2 ioloFileInfoList; iolo FileInfoList tarnyba; C: \ Program Files \ iolo \ Common \ lib \ ioloservicemanager.exe -> C: \ Program Files \ iolo \ Common \ lib \ ioloServiceManager.exe [?]
S2 ioloSystemService; iolo System tarnyba; C: \ Program Files \ iolo \ Common \ lib \ ioloservicemanager.exe -> C: \ Program Files \ iolo \ Common \ lib \ ioloServiceManager.exe [?]
S3 FarStoneFireWallDrive; FarStoneFireWallDrive; C: \ win Dows \ system32 \ drivers \ FarDrive.sys [2003-4-2 140256]
S3 ousb2hub; OrangeWare USB 2.0 Hub Support; c: \ windows \ system32 \ drivers \ ousb2hub.sys [2008-2-27 53248]
S3 PavSRK.sys; PavSRK.sys; \? \ C: \ windows \ system32 \ pavs rk.sys -> C: \ windows \ system32 \ PavSRK.sys [?]
S3 PavTPK.sys; PavTPK.sys; \? \ C: \ windows \ system32 \ pavt pk.sys -> C: \ windows \ system32 \ PavTPK.sys [?]
S3 SASENUM; SASENUM, C: \ Program Files \ superantispyware \ SASENUM.SYS [2006-2-16 4096]
S3 SIVDRIVER; SIV Kernel Driver; c: \ windows \ system32 \ drivers \ SIVX32.sys [2008-4-9 48480]
============== Failas asociacijų ===============
JSEFile = NOTEPAD.EXE% 1
VBEFile = NOTEPAD.EXE% 1
VBSFile = NOTEPAD.EXE% 1
=============== Sukurta Paskutinis 30 ================
2009-07-03 02:49 <DIR> - D ----- C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ licencijas
2009-07-03 02:49 <DIR> - D ----- C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ PCMM2009
2009-07-03 02:48 <DIR> - D ----- C: \ Program Files \ PC MightyMax 2.009
2009-07-01 09:43 <DIR> - D ----- C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ ArcticLine
2009-07-01 09:43 <DIR> - D ----- C: \ Program Files \ Jet Screenshot
2009-06-27 02:36 <DIR> - D ----- C: \ Windows \ system32 \ CatRoot_bak
2009-06-27 02:30 <DIR> - D ----- C: \ Install iTunes
2009-06-27 02:30 <DIR> - D ----- C: \ Install ICQ
2009-06-27 02:30 <DIR> - D ----- C: \ AOL Instant Messenger
2009-06-27 02:30 <DIR> - D ----- C: \ MAV
2009-06-27 02:29 <DIR> - D ----- C: \ Program Files \ Common Files \ aolshare
2009-06-27 02:29 <DIR> - D ----- C: \ Program Files \ America Online 9,0
2009-06-24 22:33 221.184 ------- C: \ Windows \ system32 \ wmpns.dll
2009-06-24 22:05 <DIR> - D ----- C: \ Windows \ system32 \ scripting
2009-06-24 22:05 <DIR> - D ----- C: \ Windows \ l2schemas
2009-06-24 22:05 <DIR> - D ----- C: \ Windows \ system32 \ LT
2009-06-24 22:05 <DIR> - D ----- C: \ Windows \ system32 \ bitai
2009-06-24 21:56 67.584 ------- C: \ Windows \ system32 \ drivers \ sdbus.sys
2009-06-24 21:56 36.096 ------- C: \ Windows \ system32 \ drivers \ Intelppm.sys
2009-06-24 21:56 15.488 ------- C: \ Windows \ system32 \ drivers \ mssmbios.sys
2009-06-24 21:56 12.416 ------- C: \ Windows \ system32 \ drivers \ tunmp.sys
2009-06-24 21:56 11.136 ------- C: \ Windows \ system32 \ drivers \ sffdisk.sys
2009-06-24 21:56 10.240 ------- C: \ Windows \ system32 \ drivers \ sffp_sd.sys
2009-06-24 21:56 262.784 ------- C: \ Windows \ system32 \ drivers \ Http.sys
2009-06-24 21:54 2.012.670 ------- C: \ windows \ system32 \ dllcache \ nt5.cat
2009-06-24 21:53 114.688 ------- C: \ windows \ system32 \ dllcache \ wscript.exe
2009-06-24 21:50 <DIR> - D ----- C: \ Windows \ eHoMe
2009-06-24 02:10 <DIR> - D ----- C: \ Program Files \ SNSafe & Software
2009-06-24 02:10 <DIR> - D ----- C: \ DOCUME ~ 1 \ alluse ~ 1 \ applic ~ 1 \ SNSafe & Software
2009-06-20 20:46 246.272 -------- C: \ Windows \ system32 \ dllcache \ ieproxy.dll
2009-06-20 20:46 12.800 -------- C: \ Windows \ system32 \ dllcache \ xpshims.dll
2009-06-17 20:32 <DIR> - DSH --- C: \ FOUND.020
2009-06-17 10:03 <DIR> - DH --- C: \ Windows \ IE8
2009-06-16 19:54 <DIR> - D ----- C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ AVS4YOU
2009-06-16 19:54 <DIR> - D ----- C: \ DOCUME ~ 1 \ alluse ~ 1 \ applic ~ 1 \ AVS4YOU
2009-06-16 19:53 <DIR> - D ----- C: \ Program Files \ Common Files \ AVSMedia
2009-06-16 19:53 1.700.352 ------- C: \ Windows \ system32 \ GdiPlus.dll
2009-06-16 19:53 974.848 ------- C: \ Windows \ system32 \ mfc70.dll
2009-06-16 19:53 487.424 ------- C: \ Windows \ system32 \ msvcp70.dll
2009-06-16 19:53 344.064 ------- C: \ Windows \ system32 \ msvcr70.dll
2009-06-16 19:53 <DIR> - D ----- C: \ Program Files \ AVS4YOU
2009-06-12 21:45 3.120 ------- C: \ Windows \ MF_C426.lfa
2009-06-11 16:27 <DIR> - D ----- C: \ Program Files \ Fresh RAM
2009-06-11 16:21 <DIR> - DSH --- C: \ FOUND.019
2009-06-11 11:55 5.465.088 ------- C: \ Fresh RAM.msi
2009-06-09 02:29 <DIR> - D ----- C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ Blitware
2009-06-09 02:29 <DIR> - D ----- C: \ Program Files \ Driver Robotas
2009-06-08 22:24 <DIR> - D ----- C: \ DOCUME ~ 1 \ alluse ~ 1 \ applic ~ 1 \ Drivers PC Headquarters
2009-06-07 23:00 <DIR> - D ----- C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ GetRightToGo
2009-06-07 19:38 7.680 ------- C: \ Windows \ system32 \ spdwnwxp.exe
2009-06-07 19:38 19.569 ------- C: \ Windows \ 002865_.tmp
2009-06-06 23:57 <DIR> - DSH --- C: \ Recycled
2009-06-06 10:46 <DIR> - D ----- C: \ Program Files \ filehippo.com
2009-06-04 23:59 <DIR> - D ----- C: \ Program Files \ DrWeb
2009-06-03 23:57 <DIR>-dshr - C: \ cmdcons
2009-06-03 23:28 161.792 ------- C: \ Windows \ SWREG.exe
2009-06-03 23:28 98.816 ------- C: \ Windows \ sed.exe
==================== ==================== Find3M
2009-06-27 02:16 76.487 ------- C: \ Windows \ PCHealth \ HELPCTR \ offlinecache \ Index.dat
2009-06-17 11:27 38.160 ------- C: \ Windows \ system32 \ drivers \ mbamswissarmy.sys
2009-06-17 11:27 19.096 ------- C: \ Windows \ system32 \ drivers \ mbam.sys
2009-06-11 18:43 1.744 ------- C: \ Windows \ system32 \ d3d9caps.dat
2009-05-27 11:21 372 ------- C: \ Program Files \ ujhonz.txt
2009-05-21 11:33 410.984 ------- C: \ Windows \ system32 \ deploytk.dll
2009-05-13 01:15 5.936.128 ------- C: \ windows \ system32 \ dllcache \ Mshtml.dll
2009-05-13 01:15 915.456 ------- C: \ Windows \ system32 \ wininet.dll
2009-05-13 01:15 915.456 ------- C: \ windows \ system32 \ dllcache \ wininet.dll
2009-05-12 01:11 102.912 -------- C: \ Windows \ system32 \ dllcache \ iecompat.dll
2009-05-07 11:44 344.064 ------- C: \ Windows \ system32 \ Localspl.dll
2009-05-07 11:44 344.064 ------- C: \ windows \ system32 \ dllcache \ Localspl.dll
2009-04-30 17:22 1.985.024 ------- C: \ windows \ system32 \ dllcache \ iertutil.dll
2009-04-30 17:22 11.064.832 ------- C: \ windows \ system32 \ dllcache \ ieframe.dll
2009-04-30 17:22 1.207.808 ------- C: \ windows \ system32 \ dllcache \ Urlmon.dll
2009-04-30 17:22 385.536 ------- C: \ windows \ system32 \ dllcache \ iedkcs32.dll
2009-04-30 17:22 25.600 ------- C: \ windows \ system32 \ dllcache \ jsproxy.dll
2009-04-30 07:21 173.056 ------- C: \ windows \ system32 \ dllcache \ ie4uinit.exe
2009-04-22 00:07 253.688 ------- C: \ Windows \ system32 \ cssdll32.dll
2009-04-17 05:58 1.846.656 ------- C: \ Windows \ system32 \ Win32k.sys
2009-04-17 05:58 1.846.656 ------- C: \ windows \ system32 \ dllcache \ Win32k.sys
2009-04-15 11:26 583.168 ------- C: \ Windows \ system32 \ Rpcrt4.dll
2009-04-15 11:26 583.168 ------- C: \ windows \ system32 \ dllcache \ Rpcrt4.dll
2008-03-18 03:11 332 ------- C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ wklnhst.dat
2007-06-10 23:19 11.079 ------- C: \ Program Files \ folder.htt
2007-06-10 23:19 266 SH --- --- C: \ Program Files \ Desktop.ini
============= Apdaila: 19:43:58.97 ===============
Nebent tai būtų konkrečiai nurodyta, Neskelbti šį failą.
Jei prašoma, ZIP IT UP & pridėti jį
DDS (Ver_09-06-26,01)
Microsoft Windows XP Home Edition
Boot Device \ Device \ HarddiskVolume1
Įdiekite data: 6/13/2007 12:27:51
Sistema veikia: 7/3/2009 6:50:56 PM (1 hours ago)
Plokštė: ECS | | K7S5A
Procesorius: AMD Athlon (tm) XP 1900 + | Socket-A | 1593/66mhz
==== Disko skirsnių =========================
: Nuimama
C: Fixed (FAT32) - 112 GB iš viso 90,479 GB nemokamai.
D: yra CDROM ()
==== Neįgaliųjų Device Manager daiktai =============
==== Sistemos atkūrimo Taškai ===================
RP205: 3/27/2009 3:00:16 AM - Software Distribution Service 3,0
RP206: 3/27/2009 3:38:07 AM - Software Distribution Service 3,0
RP207: 3/28/2009 3:52:35 AM - sistemos Checkpoint
RP208: 3/29/2009 10:01:09 PM - Software Distribution Service 3,0
RP209: 6/6/2009 10:52:13 PM - Įdiegta Dziedātājstrazds Beacon Moko Typing 15
RP210: 6/6/2009 10:52:30 PM - Pašalinta Dziedātājstrazds Beacon Moko Typing 15
RP211: 6/6/2009 10:52:49 PM - Įdiegta Panda Internet Security 2007
RP212: 6/6/2009 10:53:06 PM - Pašalinta Panda Internet Security 2007
RP213: 5/16/2009 12:48:17 PM - Software Distribution Service 3,0
RP214: 5/17/2009 4:49:29 PM - Software Distribution Service 3,0
RP215: 5/17/2009 5:35:08 PM - Software Distribution Service 3,0
RP216: 5/18/2009 8:44:14 AM - Software Distribution Service 3,0
RP217: 5/18/2009 8:51:46 AM - Software Distribution Service 3,0
RP218: 5/19/2009 12:10:32 PM - Software Distribution Service 3,0
RP219: 5/19/2009 1:35:25 PM - Software Distribution Service 3,0
RP220: 5/20/2009 8:09:36 AM - Software Distribution Service 3,0
RP221: 5/20/2009 9:17:11 AM - Software Distribution Service 3,0
RP222: 5/21/2009 8:36:45 AM - Software Distribution Service 3,0
RP223: 5/21/2009 9:24:15 AM - Software Distribution Service 3,0
RP224: 5/21/2009 3:40:47 PM - Software Distribution Service 3,0
RP225: 5/21/2009 11:38:45 PM - Software Distribution Service 3,0
RP226: 5/22/2009 7:54:23 PM - Software Distribution Service 3,0
RP227: 5/22/2009 10:48:21 PM - Software Distribution Service 3,0
RP228: 5/23/2009 7:15:10 PM - Software Distribution Service 3,0
RP229: 5/24/2009 4:32:34 PM - Software Distribution Service 3,0
RP230: 5/24/2009 6:46:46 PM - Software Distribution Service 3,0
RP231: 5/24/2009 8:21:48 PM - Software Distribution Service 3,0
RP232: 5/24/2009 11:47:56 PM - Software Distribution Service 3,0
RP233: 5/25/2009 8:18:22 AM - Software Distribution Service 3,0
RP234: 5/25/2009 8:39:45 AM - Software Distribution Service 3,0
RP235: 5/25/2009 11:41:13 PM - Software Distribution Service 3,0
RP236: 5/26/2009 10:33:23 AM - Software Distribution Service 3,0
RP237: 5/27/2009 8:13:50 AM - Software Distribution Service 3,0
RP238: 5/27/2009 8:45:24 AM - Software Distribution Service 3,0
RP239: 5/27/2009 7:16:04 PM - Software Distribution Service 3,0
RP240: 5/28/2009 4:52:25 PM - Software Distribution Service 3,0
RP241: 5/28/2009 4:58:56 PM - Software Distribution Service 3,0
RP242: 5/28/2009 5:05:35 PM - įdiegta Windows Internet Explorer 8.
RP243: 5/28/2009 5:06:37 PM - Software Distribution Service 3,0
RP244: 5/29/2009 8:39:44 AM - Software Distribution Service 3,0
RP245: 5/29/2009 8:52:41 AM - Software Distribution Service 3,0
RP246: 5/30/2009 5:01:53 AM - Software Distribution Service 3,0
RP247: 5/31/2009 9:08:55 PM - Software Distribution Service 3,0
RP248: 6/1/2009 12:30:50 AM - įdiegta Windows Internet Explorer 8.
RP249: 6/1/2009 12:31:29 AM - Software Distribution Service 3,0
RP250: 6/1/2009 1:01:01 AM - Software Distribution Service 3,0
RP251: 6/1/2009 9:59:00 AM - Software Distribution Service 3,0
RP252: 6/2/2009 1:25:10 AM - Software Distribution Service 3,0
RP253: 6/2/2009 1:44:44 PM - Software Distribution Service 3,0
RP254: 6/2/2009 9:42:45 PM - Software Distribution Service 3,0
RP255: 6/3/2009 2:52:20 AM - Software Distribution Service 3,0
RP256: 6/3/2009 10:07:30 AM - Software Distribution Service 3,0
RP257: 6/3/2009 9:03:54 PM - Software Distribution Service 3,0
RP258: 6/4/2009 1:16:16 AM - Įdiegta MSXML 4.0 SP2 (KB925672)
RP259: 6/4/2009 3:00:13 AM - Software Distribution Service 3,0
RP260: 6/4/2009 3:13:34 AM - Software Distribution Service 3,0
RP261: 6/4/2009 11:59:13 PM - Įdiegta Dr.Web anti-virus for Windows 5.0.
RP262: 6/5/2009 12:36:30 AM - Pašalinta Dr.Web anti-virus for Windows 5.0.
RP263: 6/5/2009 12:38:54 AM - Pašalinta Dr.Web anti-virus for Windows 5.0.
RP264: 6/5/2009 2:22:38 AM - Software Distribution Service 3,0
RP265: 6/6/2009 3:00:14 AM - Software Distribution Service 3,0
RP266: 6/6/2009 10:51:09 AM - Software Distribution Service 3,0
RP267: 6/7/2009 12:10:12 AM - Software Distribution Service 3,0
RP268: 6/8/2009 12:20:37 AM - Software Distribution Service 3,0
RP269: 6/8/2009 10:03:39 AM - Software Distribution Service 3,0
RP270: 6/8/2009 10:23:28 PM - įdiegta tvarkyklė detektyvas
RP271: 6/8/2009 10:41:57 PM - Software Distribution Service 3,0
RP272: 6/9/2009 2:32:24 AM - Software Distribution Service 3,0
RP273: 6/9/2009 8:29:05 AM - Software Distribution Service 3,0
RP274: 6/9/2009 1:25:29 PM - Software Distribution Service 3,0
RP275: 6/9/2009 11:06:13 PM - Software Distribution Service 3,0
RP276: 6/10/2009 8:56:06 AM - Software Distribution Service 3,0
RP277: 6/10/2009 9:40:44 AM - Software Distribution Service 3,0
RP278: 6/11/2009 1:45:31 AM - Software Distribution Service 3,0
RP279: 6/11/2009 4:27:14 PM - Installed Fresh RAM
RP280: 6/11/2009 6:45:39 PM - Configured Driver Detective
RP281: 6/12/2009 1:51:36 AM - Software Distribution Service 3,0
RP282: 6/12/2009 8:55:19 AM - Software Distribution Service 3,0
RP283: 6/13/2009 11:02:27 AM - Software Distribution Service 3,0
RP284: 6/13/2009 11:13:50 AM - Software Distribution Service 3,0
RP285: 6/14/2009 10:49:45 PM - Software Distribution Service 3,0
RP286: 6/15/2009 9:16:53 AM - Software Distribution Service 3,0
RP287: 6/15/2009 11:09:18 PM - Software Distribution Service 3,0
RP288: 6/16/2009 10:07:34 AM - Software Distribution Service 3,0
RP289: 6/17/2009 9:01:20 AM - Software Distribution Service 3,0
RP290: 6/17/2009 10:05:33 AM - įdiegta Windows Internet Explorer 8.
RP291: 6/18/2009 10:16:10 AM - Software Distribution Service 3,0
RP292: 6/18/2009 10:41:06 AM - įdiegta Windows Media Format Runtime Series 9 sąranka
RP293: 6/18/2009 1:11:48 PM - įdiegta Windows Media Format Runtime Series 9 sąranka
RP294: 6/18/2009 1:29:13 PM - Software Distribution Service 3,0
RP295: 6/19/2009 3:01:54 AM - Software Distribution Service 3,0
RP296: 6/19/2009 9:29:35 AM - Software Distribution Service 3,0
RP297: 6/19/2009 5:47:01 PM - Software Distribution Service 3,0
RP298: 6/20/2009 6:59:50 PM - Software Distribution Service 3,0
RP299: 6/20/2009 7:05:46 PM - Įdiegta Java (TM) 6 Update 14
RP300: 6/21/2009 4:07:26 PM - Software Distribution Service 3,0
RP301: 6/21/2009 4:14:22 PM - Software Distribution Service 3,0
RP302: 6/22/2009 9:44:00 AM - Software Distribution Service 3,0
RP303: 6/22/2009 11:31:38 AM - Software Distribution Service 3,0
RP304: 6/23/2009 3:00:23 AM - Software Distribution Service 3,0
RP305: 6/24/2009 9:44:31 AM - Software Distribution Service 3,0
RP306: 6/24/2009 9:55:45 AM - Software Distribution Service 3,0
RP307: 6/24/2009 10:14:50 AM - Software Distribution Service 3,0
RP308: 6/24/2009 9:41:13 PM - Software Distribution Service 3,0
RP309: 6/25/2009 2:52:04 AM - Software Distribution Service 3,0
RP310: 6/25/2009 12:17:49 PM - Software Distribution Service 3,0
RP311: 6/26/2009 9:27:47 PM - Software Distribution Service 3,0
RP312: 6/27/2009 12:41:14 AM - Restore
RP313: 6/27/2009 1:35:40 AM - Restore
RP314: 6/27/2009 2:25:58 AM - Software Distribution Service 3,0
RP315: 6/27/2009 2:30:41 AM - įdiegta Windows Media Format Runtime Series 9 sąranka
RP316: 6/28/2009 8:31:27 AM - Software Distribution Service 3,0
RP317: 6/29/2009 10:03:24 AM - Software Distribution Service 3,0
RP318: 6/29/2009 6:35:12 PM - Software Distribution Service 3,0
RP319: 6/29/2009 9:00:14 PM - Software Distribution Service 3,0
RP320: 6/30/2009 3:32:09 AM - Software Distribution Service 3,0
RP321: 6/30/2009 11:45:20 AM - Software Distribution Service 3,0
RP322: 7/1/2009 9:15:52 AM - Software Distribution Service 3,0
RP323: 7/1/2009 11:21:44 AM - Software Distribution Service 3,0
RP324: 7/1/2009 10:38:39 PM - Software Distribution Service 3,0
RP325: 7/2/2009 3:16:53 AM - Software Distribution Service 3,0
RP326: 7/2/2009 12:22:35 PM - Software Distribution Service 3,0
RP327: 7/2/2009 7:09:25 PM - Software Distribution Service 3,0
RP328: 7/3/2009 4:04:54 AM - Software Distribution Service 3,0
==== Installed Programs ======================

ABBYY FineReader Sprint Plus 5,0
Adobe Flash Player 10 "ActiveX
AOL Autobusų Versija 2.0 (Build: 20041026,5 en)
AOL ryšio paslaugos
AOL juostą
AOL Toolbar
AOL Uninstaller (Pasirinkite, kokius produktus pašalinti)
AOL You've Got Paveikslėliai Ekrano Saugotojai
C-Media Audio
C-Media WDM audio driver
COMODO SafeSurf
Suderinamumo paketas, skirtas 2007 Microsoft Office sistemos
Cool PDF Reader 1,0
Vairuotojo Robotas 1.0.6.0
filehippo.com Update Checker
Fresh RAM
HackerSmacker
HijackThis 2.0.2
Karštųjų Windows XP (KB896344)
Karštųjų Windows XP (KB914440)
Karštųjų Windows XP (KB915865)
Karštųjų Windows XP (KB952287)
IncrediMail Xe
Java (TM) 6 Update 14
Jet Screenshot v 2.0
Lexmark 5.200 serija
Macromedia Shockwave Player
Magentic
Malwarebytes 'Anti-Malware
Microsoft. NET Framework 1.1
Microsoft. NET Framework 2.0
"Microsoft" Domenų vardai minkštinimo API
Microsoft "National Language Support Downlevel API
Microsoft Office PowerPoint Viewer 2007 "(anglų k.)
Microsoft Visual C + + 2005 Redistributable
Microsoft Web Publishing Wizard 1,52
Microsoft Works
MSXML 4.0 SP2 (KB925672)
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB954430)
MSXML 6 Service Pack 2 (KB954459)
Pure Networks Port Magic
QuickTime
RealPlayer Pagrindinis
Naujinimas skirtas "Windows Internet Explorer 7" (KB933566)
Naujinimas skirtas "Windows Internet Explorer 7" (KB937143)
Naujinimas skirtas "Windows Internet Explorer 7" (KB938127)
Naujinimas skirtas "Windows Internet Explorer 7" (KB939653)
Naujinimas skirtas "Windows Internet Explorer 7" (KB942615)
Naujinimas skirtas "Windows Internet Explorer 7" (KB944533)
Naujinimas skirtas "Windows Internet Explorer 7" (KB963027)
Naujinimas skirtas "Windows Internet Explorer 8 (KB969897)
Naujinimas skirtas "Windows Media Player (KB911564)
Naujinimas skirtas "Windows Media Player (KB952069)
Naujinimas skirtas "Windows Media Player 6.4 (KB925398)
Naujinimas skirtas "Windows Media Player 9 (KB917734)
Naujinimas skirtas "Windows Media Player 9 (KB936782)
Naujinimas skirtas "Windows XP (KB893756)
Naujinimas skirtas "Windows XP (KB896358)
Naujinimas skirtas "Windows XP (KB896423)
Naujinimas skirtas "Windows XP (KB896428)
Naujinimas skirtas "Windows XP (KB899587)
Naujinimas skirtas "Windows XP (KB899591)
Naujinimas skirtas "Windows XP (KB900725)
Naujinimas skirtas "Windows XP (KB901017)
Naujinimas skirtas "Windows XP (KB901214)
Naujinimas skirtas "Windows XP (KB902400)
Naujinimas skirtas "Windows XP (KB904706)
Naujinimas skirtas "Windows XP (KB905414)
Naujinimas skirtas "Windows XP (KB905749)
Naujinimas skirtas "Windows XP (KB908519)
Naujinimas skirtas "Windows XP (KB911562)
Naujinimas skirtas "Windows XP (KB911927)
Naujinimas skirtas "Windows XP (KB913580)
Naujinimas skirtas "Windows XP (KB914388)
Naujinimas skirtas "Windows XP (KB914389)
Naujinimas skirtas "Windows XP (KB917344)
Naujinimas skirtas "Windows XP (KB917953)
Naujinimas skirtas "Windows XP (KB918118)
Naujinimas skirtas "Windows XP (KB918439)
Naujinimas skirtas "Windows XP (KB919007)
Naujinimas skirtas "Windows XP (KB920213)
Naujinimas skirtas "Windows XP (KB920670)
Naujinimas skirtas "Windows XP (KB920683)
Naujinimas skirtas "Windows XP (KB920685)
Naujinimas skirtas "Windows XP (KB921503)
Naujinimas skirtas "Windows XP (KB922819)
Naujinimas skirtas "Windows XP (KB923191)
Naujinimas skirtas "Windows XP (KB923414)
Naujinimas skirtas "Windows XP (KB923561)
Naujinimas skirtas "Windows XP (KB923689)
Naujinimas skirtas "Windows XP (KB923980)
Naujinimas skirtas "Windows XP (KB924191)
Naujinimas skirtas "Windows XP (KB924270)
Naujinimas skirtas "Windows XP (KB924496)
Naujinimas skirtas "Windows XP (KB924667)
Naujinimas skirtas "Windows XP (KB925902)
Naujinimas skirtas "Windows XP (KB926247)
Naujinimas skirtas "Windows XP (KB926255)
Naujinimas skirtas "Windows XP (KB926436)
Naujinimas skirtas "Windows XP (KB927779)
Naujinimas skirtas "Windows XP (KB927802)
Naujinimas skirtas "Windows XP (KB928255)
Naujinimas skirtas "Windows XP (KB928843)
Naujinimas skirtas "Windows XP (KB929123)
Naujinimas skirtas "Windows XP (KB930178)
Naujinimas skirtas "Windows XP (KB931261)
Naujinimas skirtas "Windows XP (KB931784)
Naujinimas skirtas "Windows XP (KB932168)
Naujinimas skirtas "Windows XP (KB933566)
Naujinimas skirtas "Windows XP (KB933729)
Naujinimas skirtas "Windows XP (KB935839)
Naujinimas skirtas "Windows XP (KB935840)
Naujinimas skirtas "Windows XP (KB936021)
Naujinimas skirtas "Windows XP (KB938464)
Naujinimas skirtas "Windows XP (KB938829)
Naujinimas skirtas "Windows XP (KB941202)
Naujinimas skirtas "Windows XP (KB941568)
Naujinimas skirtas "Windows XP (KB941569)
Naujinimas skirtas "Windows XP (KB941644)
Naujinimas skirtas "Windows XP (KB941693)
Naujinimas skirtas "Windows XP (KB943055)
Naujinimas skirtas "Windows XP (KB943460)
Naujinimas skirtas "Windows XP (KB943485)
Naujinimas skirtas "Windows XP (KB944653)
Naujinimas skirtas "Windows XP (KB945553)
Naujinimas skirtas "Windows XP (KB946026)
Naujinimas skirtas "Windows XP (KB946648)
Naujinimas skirtas "Windows XP (KB948590)
Naujinimas skirtas "Windows XP (KB948881)
Naujinimas skirtas "Windows XP (KB950749)
Naujinimas skirtas "Windows XP (KB950760)
Naujinimas skirtas "Windows XP (KB950762)
Naujinimas skirtas "Windows XP (KB950974)
Naujinimas skirtas "Windows XP (KB951066)
Naujinimas skirtas "Windows XP (KB951376-v2)
Naujinimas skirtas "Windows XP (KB951376)
Naujinimas skirtas "Windows XP (KB951698)
Naujinimas skirtas "Windows XP (KB951748)
Naujinimas skirtas "Windows XP (KB952004)
Naujinimas skirtas "Windows XP (KB952954)
Naujinimas skirtas "Windows XP (KB953839)
Naujinimas skirtas "Windows XP (KB954211)
Naujinimas skirtas "Windows XP (KB954600)
Naujinimas skirtas "Windows XP (KB955069)
Naujinimas skirtas "Windows XP (KB956391)
Naujinimas skirtas "Windows XP (KB956572)
Naujinimas skirtas "Windows XP (KB956802)
Naujinimas skirtas "Windows XP (KB956803)
Naujinimas skirtas "Windows XP (KB956841)
Naujinimas skirtas "Windows XP (KB957095)
Naujinimas skirtas "Windows XP (KB957097)
Naujinimas skirtas "Windows XP (KB958644)
Naujinimas skirtas "Windows XP (KB958687)
Naujinimas skirtas "Windows XP (KB958690)
Naujinimas skirtas "Windows XP (KB959426)
Naujinimas skirtas "Windows XP (KB960225)
Naujinimas skirtas "Windows XP (KB960715)
Naujinimas skirtas "Windows XP (KB960803)
Naujinimas skirtas "Windows XP (KB961373)
Naujinimas skirtas "Windows XP (KB961501)
Naujinimas skirtas "Windows XP (KB968537)
Naujinimas skirtas "Windows XP (KB969898)
Naujinimas skirtas "Windows XP (KB970238)
SiS 900 PCI Fast Ethernet Adapter Driver
SIW versija 2008/04/02
SUPERAntiSpyware Free Edition
Grindys 21
US Robotics 56K Faxmodem USB
Naujinimas, skirtas Windows XP (KB894391)
Naujinimas, skirtas Windows XP (KB898461)
Naujinimas, skirtas Windows XP (KB900485)
Naujinimas, skirtas Windows XP (KB904942)
Naujinimas, skirtas Windows XP (KB908531)
Naujinimas, skirtas Windows XP (KB910437)
Naujinimas, skirtas Windows XP (KB911280)
Naujinimas, skirtas Windows XP (KB916595)
Naujinimas, skirtas Windows XP (KB920342)
Naujinimas, skirtas Windows XP (KB920872)
Naujinimas, skirtas Windows XP (KB922582)
Naujinimas, skirtas Windows XP (KB927891)
Naujinimas, skirtas Windows XP (KB930916)
Naujinimas, skirtas Windows XP (KB931836)
Naujinimas, skirtas Windows XP (KB932823-v3)
Naujinimas, skirtas Windows XP (KB933360)
Naujinimas, skirtas Windows XP (KB938828)
Naujinimas, skirtas Windows XP (KB942763)
Naujinimas, skirtas Windows XP (KB955839)
Naujinimas, skirtas Windows XP (KB967715)
Viewpoint Media Player "
WebFldrs XP
"Windows Genuine Advantage Validation Tool (KB892130)
"Windows Installer 3.1 (KB893803)
"Windows Internet Explorer 8
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB891781
"Windows XP" Pašalinti
WinPatrol 2.009
Padidinti V.92 PCI Balso Faxmodem
Padidinti V92 PC Card Balso Faxmodem
==== Vyki Žinutės iš praeities ======== savaitė
7/3/2009 4:23:49 PM, klaida: Sistemos klaida [1.003] - Error code 00.000.077, parametras1 c000000e, parametras2 c000000e, parametras3 00000000, parametras4 01.422.000.
7/3/2009 2:33:40 PM, klaida: Sistemos klaida [1.003] - Klaidos kodas 000000f4, parametras1 00.000.003, parametras2 86cdb430, parametras3 86cdb5a4, parametras4 805fa1f0.
7/1/2009 10:39:09 PM klaida: Service Control Manager [7.034] - AOL TopSpeed Monitorius paslaugos netikėtai baigėsi. Jis tai padarė 6 kartus (-ų).
6/30/2009 5:05:18 PM, klaida: Spausdinti [6.161] - dokumento SYSLOG - Notepad "valdo" Windows Vartotojo nepavyko spausdinti spausdintuvas Lexmark 5.200 serija. Duomenų tipas: LEMF. Dydis spool failo baitų: 1.208.022. Baitų skaičius spausdinami: 1.208.022. Viso puslapių dokumentas: 3. Puslapių skaičius atspausdintas: 0. Kliento kompiuteryje: \ \ SUNPORCH. Win32 klaidos kodas grąžina Spausdinti Procesorius: 126 (0x7e).
6/29/2009 11:36:01 PM klaida: Service Control Manager [7.000] - SASDIFSV paslauga Nepavyko paleisti dėl šios klaidos: Nepavyko sukurti failo, kai ši byla jau egzistuoja.
6/27/2009 2:24:45 AM klaida: Service Control Manager [7.000] - Upload Manager "paslauga Nepavyko paleisti dėl šios klaidos: sąskaitą, nurodytą šios paslaugos skiriasi nuo nurodytą sąskaitą už kitas paslaugas veikia į patį procesą.
6/27/2009 2:24:37 AM klaida: BITS [16.391] - BITS darbo vietų sąrašas nėra pripažintas formatas. Jis galėjo būti sukurta pagal kitą versiją bitų. Darbo vietų sąrašas buvo išvalytas.
6/27/2009 2:08:32 AM klaida: SnsCore [20] --
6/27/2009 2:08:24 AM klaida: Service Control Manager [7.000] - iolo FileInfoList tarnyba "Nepavyko paleisti dėl šios klaidos: sistema negali rasti nurodyto failo.
6/27/2009 1:41:24 AM klaida: Service Control Manager [7.023] - NID Input Paslauga nutraukta tokia klaida: Nepavyko rasti nurodyto failo.
6/27/2009 1:41:24 AM klaida: Service Control Manager [7.000] - iolo System tarnyba "Nepavyko paleisti dėl šios klaidos: sistema negali rasti nurodyto failo.
6/27/2009 1:36:19 AM klaida: Service Control Manager [7.034] - AOL TopSpeed Monitorius paslaugos netikėtai baigėsi. Jis tai padarė 5 kartą (-ų).
6/27/2009 1:36:09 AM klaida: Service Control Manager [7.031] - AOL TopSpeed Monitorius paslaugos netikėtai baigėsi. Tai nutiko 4 kartus (-ų). Taisomųjų veiksmų bus imtasi 1000 milisekundžių: Paleiskite paslaugą.
6/27/2009 1:36:01 AM klaida: Service Control Manager [7.031] - AOL TopSpeed Monitorius paslaugos netikėtai baigėsi. Jis tai padarė 3 kartus (-ų). Taisomųjų veiksmų bus imtasi 1000 milisekundžių: Paleiskite paslaugą.
6/27/2009 1:35:53 AM klaida: Service Control Manager [7.031] - AOL TopSpeed Monitorius paslaugos netikėtai baigėsi. Jis tai padarė 2 kartus (-ų). Taisomųjų veiksmų bus imtasi 1000 milisekundžių: Paleiskite paslaugą.
6/27/2009 1:35:35 AM klaida: Service Control Manager [7.031] - AOL TopSpeed Monitorius paslaugos netikėtai baigėsi. Jis padarė šio straipsnio 1 time (s). Taisomųjų veiksmų bus imtasi 1000 milisekundžių: Paleiskite paslaugą.
6/27/2009 1:32:44 AM klaida: DCOM [10.005] - DCOM gavo klaida "% 1084" bandant paleisti paslaugą EventSystem su argumentais "norint paleisti serverį: (1BE1F766-5536-11D1 - B726-00C04FB926AF)
6/27/2009 1:30:38 AM klaida: Service Control Manager [7.026] - po boot-start arba sistemos paleidimo vairuotojas (-ai) failed to load: AFD AmdK7 FIPS IPSec MRxSmb NetBIOS NetBT RasAcd Rdbss SASDIFSV SASKUTIL SnsCore Tcpip WS2IFSL
6/27/2009 1:30:38 AM klaida: Service Control Manager [7.001] - TCP / IP NetBIOS paslaugos priklauso AFD paslaugų, kurios nepavyko paleisti dėl šios klaidos: prietaiso prie sistemos neveikia.
6/27/2009 1:30:38 AM klaida: Service Control Manager [7.001] - IPSEC Services "priklauso IPSEC vairuotojo paslaugos, kurios nepavyko paleisti dėl šios klaidos: prietaiso prie sistemos neveikia .
6/27/2009 1:30:38 AM klaida: Service Control Manager [7.001] - kliento DNS paslauga priklauso nuo protokolo TCP / IP Vairuotojų paslaugos, kurios nepavyko paleisti dėl šios klaidos: prietaiso prie sistemos neveikia.
6/27/2009 1:30:38 AM klaida: Service Control Manager [7.001] - paslaugų DHCP klientas priklauso nuo NetBIOS over Tcpip paslauga, kuriai nepavyko paleisti dėl šios klaidos: prietaiso prie sistemos nėra veikimą.
6/27/2009 1:29:52 AM klaida: DCOM [10.005] - DCOM gavo klaida "% 1084" bandant paleisti paslaugą Netman su argumentais "norint paleisti serverį: (BA126AE5-2166-11D1 - B1D0-00805FC1270E)
6/27/2009 1:19:01 AM klaida: Service Control Manager [7.009] - timeout (30000 milisekundžių) laukdami IMAPI CD-Burning COM Service paslauga prisijungti.
6/27/2009 1:19:01 AM klaida: Service Control Manager [7.000] - IMAPI CD-Burning COM Service paslauga Nepavyko paleisti dėl šios klaidos: tarnyba negali atsakyti į pradžią arba kontrolės paprašius laiku.
6/27/2009 1:16:56 AM klaida: Service Control Manager [7.023] - Terminal Services nutraukta ši klaida: Neteisingas prieigos prie atminties.
6/27/2009 1:16:56 AM klaida: Service Control Manager [7.023] - Automatiniai naujinimai nutraukta tokia klaida:%% 3228369023
6/27/2009 1:16:56 AM klaida: Service Control Manager [7.001] - Fast User Switching Compatibility paslauga priklauso "Terminal Services", kurios nepavyko paleisti dėl šios klaidos: Neteisingas prieigos prie atminties.
6/27/2009 1:05:23 AM klaida: DCOM [10.005] - DCOM gavo klaida "% 1084" bandant paleisti paslaugą wuauserv su argumentais "norint paleisti serverį: (E60687F7-01A1-40AA - 86AC-DB1CBF673334)
6/26/2009 9:29:28 PM, klaida: Windows Update Agent [20] - Installation Failure: Windows nepavyko įdiegti šį naujinimą, klaida 0x80070643: Microsoft. NET Framework 1.1 Service Pack 1.
==== Pabaigoje failą ===========================
Rooter.exe (v1.0.2) iki Eric_71
.
SeDebugPrivilege suteiktos sėkmingai ...
.
Windows XP Home Edition (5.1.2600) Service Pack 2
[32_bits] - x86 Family 6 Model 6 Stepping 2, GenuineIntel
.
[wscsvc] (Security Center) Running (valstybinės: 4)
[SharedAccess] Running (valstybinės: 4)
Windows Firewall -> Įjungta
.
Internet Explorer 8.0.6001.18702
.
: \ [Removable]
C: \ [Fiksuoto FAT32] .. (Iš viso: 112 Go - Nemokama: 90 Go)
D: \ [CD_Rom]
.
Scan: 19:57.51
Path: C: \ Documents and Settings \ Windows User \ Local Settings \ Temporary Internet Files \ Content.IE5 \ EI7LBMQF \ Wyorywacz [1]. Exe
Vartotojas: Windows vartotojas (Administrator -> YES)
.
---------------------- \ \ Procesai
.
Užrakinta [System Process] (0)
______ Sistemos (4)
______ \ SystemRoot \ System32 \ smss.exe (292)
______ \? \ C: \ WINDOWS \ system32 \ csrss.exe (348)
______ \? \ C: \ WINDOWS \ system32 \ winlogon.exe (372)
______ C: \ WINDOWS \ system32 \ services.exe (416)
______ C: \ WINDOWS \ system32 \ lsass.exe (428)
______ C: \ WINDOWS \ System32 \ svchost.exe (576)
______ C: \ WINDOWS \ System32 \ svchost.exe (620)
______ C: \ WINDOWS \ System32 \ svchost.exe (664)
______ C: \ WINDOWS \ System32 \ svchost.exe (708)
______ C: \ WINDOWS \ System32 \ svchost.exe (804)
______ C: \ WINDOWS \ system32 \ Spoolsv.exe (900)
______ C: \ WINDOWS \ System32 \ svchost.exe (980)
______ C: \ Program Files \ Common Files \ AOL \ ACS \ AOLAcsd.exe (1012)
______ C: \ Program Files \ Java \ jre6 \ bin \ jqs.exe (1056)
______ C: \ WINDOWS \ system32 \ snmp.exe (1148)
______ C: \ WINDOWS \ System32 \ svchost.exe (1180)
______ C: \ WINDOWS \ system32 \ alg.exe (1900)
______ C: \ WINDOWS \ explorer.exe (1124)
______ C: \ Program Files \ Lexmark 5.200 serijos \ lxbtbmgr.exe (528)
______ C: \ Program Files \ Java \ jre6 \ bin \ jusched.exe (1736)
______ C: \ Program Files \ Lexmark 5.200 serijos \ lxbtbmon.exe (1468)
______ C: \ Program Files \ Common Files \ AOL \ 1246084174 \ EE \ AOLSoftware.exe (1316)
______ C: \ Program Files \ Common Files \ AOL \ ACS \ AOLDial.exe (1572)
______ C: \ WINDOWS \ system32 \ Ctfmon.exe (1648)
______ C: \ Program Files \ Jet Screenshot \ jetScreenshot.exe (1216)
______ C: \ WINDOWS \ system32 \ wbem \ wmiprvse.exe (2148)
______ C: \ WINDOWS \ system32 \ wuauclt.exe (2428)
______ C: \ Program Files \ America Online 9.0 \ waol.exe (596)
______ C: \ Program Files \ America Online 9.0 \ shellmon.exe (756)
______ C: \ Documents and Settings \ Windows User \ Local Settings \ Temporary Internet Files \ Content.IE5 \ EI7LBMQF \ Wyorywacz [1]. Exe (3388)
.
---------------------- \ \ Device \ Harddisk0 \
.
\ Device \ Harddisk0 [Sektoriai: 63 x 512 baitų]
.
\ Device \ Harddisk0 \ Partition1 - [MBR] - (Start_Offset: 32.256 | Length: 120.681.275.904)
.
---------------------- \ \ Scheduled Tasks
.
C: \ WINDOWS \ Uždaviniai \ SA.DAT
C: \ WINDOWS \ Uždaviniai \ Desktop.ini
C: \ WINDOWS \ Uždaviniai \ Driver Robot.job
.
---------------------- \ \ Registry
.
.
---------------------- \ \ Failai ir aplankai
.
C: \ DOCUME ~ 1 \ Windows ~ 1 \ applic ~ 1 \ PrivacyControl
==> Rogues <==
.
---------------------- \ \ Scan baigtas 19:57.56
.
C: \ Wyorywacz $ \ Rooter_1.txt - (03/07/2009 | 19:57.56)
  #6  
Old Liepa 3, 2009, 19:01
Moderatorius Grupė
 
Default "Microsoft" Pop Up Tell Me I Have A viruso

Ištrinti šiuos failus / aplankus, taip:

1. Pereiti į Pradžia > Bėgti > Pagal tipą Notepad.exe ir paspauskite Gerai atidarykite "Notepad".
Tai privalėti būti Notepad, WordPad nėra.
2. Kopijuoti tekstą žemiau kodą langelyje, pabrėžiant visą tekstą ir paspausdami Ctrl + C

Kodas
Killall:: dds:: BHO: AskBar BHO: (201f27d4-3704-41d6-89c1-aa35e39143ed) - C: \ Program Files \ askbardis \ bar \ bin \ askBar.dll TB: Ask Toolbar: (3041d03e-fd4b-44e0 - b742-2d9b88305f98) - C: \ Program Files \ askbardis \ bar \ bin \ askBar.dll IE: (FB5F1910-F110-11D2-BB9E-00C04F795683) - C: \ Program Files \ Messenger \ msmsgs.exe katalogą: C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ licencijas C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ PCMM2009 C: \ Program Files \ PC MightyMax 2.009 C: \ Program Files \ askbardis C: \ Program Files \ Messenger
3. Grįžti į Notepad langą ir paspauskite Redaguoti > Pasta
4. Tada spustelėkite Failas > Saugoti
5. Bylos pavadinimas CFScript.txt - Išsaugokite šį failą savo darbalaukyje
6. Vilkite CFScript (paspauskite ir laikykite kairįjį pelės klavišą, vilkite failą) ir palikite jį (spaudai kairįjį pelės mygtuką) į ComboFix.exe kaip matote ekrano apačioje. Svarbu: Atlikti šį nurodymą atidžiai!



ComboFix bus pradėti vykdyti, tiesiog vykdykite ekrane pateikiamas instrukcijas.
Po perkrovimo (jei ji prašo paleisti), tai duos žurnalas Jums.
Rašyti, kad žurnalas (Combofix.txt) į jūsų kitą atsakymą.

Pastaba Don't mouseclick ComboFix lango kol jis veikia. Tai gali sukelti jūsų sistema įšaldyti
__________________

  #7  
Old Liepa 5, 2009, 14:04
Narys
 
Default "Microsoft" Pop Up Tell Me I Have A viruso

Tiesiog reikia įkelti ComboFix. Atrodo, kad failas Wes delrtrd All I Have yra teksto failus combofix.
  #8  
Old Liepa 5, 2009, 14:28
Moderatorius Grupė
 
Default "Microsoft" Pop Up Tell Me I Have A viruso

http://download.bleepingcomputer.com/sUBs/ComboFix.exe
__________________

  #9  
Old Liepa 5, 2009, 21:33
Narys
 
Default "Microsoft" Pop Up Tell Me I Have A viruso

Atsiprašome užtruko taip ilgai. Got BITE by paieškos ir buvo lėšų dauguma laiko ieškoti, ar galėčiau sužinoti, kas šiek tiek mane.
Čia skenavimas.
ComboFix 09-07-05.01 - Windows vartotojo 07/06/2009 0:04.4 - FAT32x86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1023.742 [GMT -4:00]
Veikia nuo: C: \ Documents and Settings \ vartotojas Windows \ Desktop \ ComboFix.exe
Command jungikliai naudojami: C: \ Documents and Settings \ vartotojas Windows \ Desktop \ CFScript.txt
.
((((((((((((((((((((((((((((((((((((((( Kiti deletions ))))))))) ))))))))))))))))))))))))))))))))))))))))
.
C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ licencijas
C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ licencijas \ PCMightyMax c27fe264-0186-4910-8a97-50c383296a11
C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ PCMM2009
C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ PCMM2009 \ diagnostikos \ paskutinės scan
C: \ DOCUME ~ 1 \ lango ~ 1 \ applic ~ 1 \ PCMM2009 \ pcmm2009 konfigūracijos
C: \ Program Files \ askbardis
C: \ Program Files \ askbardis \ bar \ bin \ askBar.dll
C: \ Program Files \ askbardis \ bar \ bin \ askPopStp.dll
C: \ Program Files \ askbardis \ bar \ bin \ psvince.dll
C: \ Program Files \ askbardis \ bar \ Cache \ files.ini
C: \ Program Files \ askbardis \ bar \ History \ paieška
C: \ Program Files \ askbardis \ bar \ Settings \ config.dat
C: \ Program Files \ askbardis \ bar \ Settings \ config.dat.bak
C: \ Program Files \ askbardis \ unins000.dat
C: \ Program Files \ askbardis \ unins000.exe
C: \ Program Files \ Messenger
C: \ Program Files \ Messenger \ custsat.dll
C: \ Program Files \ Messenger \ logowin.gif
C: \ Program Files \ Messenger \ lvback.gif
C: \ Program Files \ Messenger \ msgsc.dll
C: \ Program Files \ Messenger \ msgslang.dll
C: \ Program Files \ Messenger \ msmsgs.exe
C: \ Program Files \ Messenger \ newalert.wav
C: \ Program Files \ Messenger \ newemail.wav
C: \ Program Files \ Messenger \ online.wav
C: \ Program Files \ Messenger \ type.wav
C: \ Program Files \ Messenger \ xpmsgr.chm
C: \ Program Files \ PC MightyMax 2.009
C: \ Program Files \ PC MightyMax 2.009 \ pcmm2009.error.log
.
((((((((((((((((((((((((( Failus, sukurtus nuo 2009/06/06 iki 2009/07/06 ))))))))))) ))))))))))))))))))))
.
2009-07-06 02:18. 2008-12-03 16:09 59184 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ toolbarsud.exe
2009-07-06 02:18. 2006-04-06 15:33 81000 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ ProgUpd.dll
2009-07-06 02:18. 2006-04-06 15:33 33896 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ postproc.exe
2009-07-06 02:18. 2006-04-06 15:33 156264 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ setup.exe
2009-07-06 02:18. 2008-12-02 18:34 2316392 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ ocpinst.exe
2009-07-06 02:18. 2008-11-12 21:12 1370528 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ msvc9rt.exe
2009-07-06 02:18. 2008-11-06 14:42 2100984 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ aol_toolbar_dual.exe
2009-07-06 02:18. 2008-07-23 18:35 62248 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ ocpgc.exe
2009-07-06 02:18. 2008-07-23 18:35 15144 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ ocpchk.dll
2009-07-06 02:18. 2008-07-23 18:35 74536 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ instSup.dll
2009-07-06 02:18. 2006-07-31 18:41 474184 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ gui.dll
2009-07-06 02:18. 2006-04-06 15:33 25088 ------ w C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ cache \ 4381.3.4 \ EEStart.exe
2009-07-03 23:57. 2009-07-03 23:57 -------- d ----- w C: \ Wyorywacz $
2009-07-01 13:43. 2009-07-01 13:43 -------- d ----- w C: \ Documents and Settings \ vartotojas Windows \ Application Data \ ArcticLine
2009-07-01 13:43. 2009-07-01 13:43 -------- d ----- W-c: \ Program Files \ Jet Screenshot
2009-06-30 03:17. 2006-10-12 16:29 83504 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL \ UserProfiles \ All Users \ Ziepūdens \ TEMP \ ProgUpd.dll
2009-06-30 03:11. 2009-06-30 03:11 -------- d ----- w C: \ Documents and Settings \ All Users \ Application Data \ AOL OCP
2009-06-30 03:11. 2009-06-30 03:11 -------- d ----- w C: \ Documents and Settings \ Windows User \ Local Settings \ Application Data \ AOL OCP
2009-06-30 03:05. 2009-06-30 03:07 370496 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ CC UInst.exe
2009-06-30 03:05. 2009-06-30 03:05 94256 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ in stph.dll
2009-06-30 02:57. 2009-06-30 03:05 2439824 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ oc pinsti.exe
2009-06-30 02:56. 2009-06-30 02:57 260040 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ EB uinst.exe
2009-06-30 02:55. 2009-06-30 02:56 237616 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ GU i.dll
2009-06-30 02:55. 2009-06-30 02:55 127224 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ af ixlang.exe
2009-06-30 02:55. 2009-06-30 02:55 83504 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ Pr ogUpd.dll
2009-06-30 02:54. 2009-06-30 02:55 223152 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ buvo finst.exe
2009-06-30 02:53. 2009-06-30 02:54 355592 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ af ixinst.exe
2009-06-30 02:52. 2009-06-30 02:52 11056 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ CC NdInst.dll
2009-06-30 02:52. 2009-06-30 02:52 11312 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ EB uchk.dll
2009-06-30 02:52. 2009-06-30 02:52 11568 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ TB inst.dll
2009-06-30 02:52. 2009-06-30 02:52 170544 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ se tup.exe
2009-06-30 02:51. 2009-06-30 02:52 98992 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ SM instlp.exe
2009-06-30 02:51. 2009-06-30 02:51 11568 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ oc fcheck.dll
2009-06-30 02:51. 2009-06-30 02:51 15920 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ oc pchk.dll
2009-06-30 02:49. 2009-06-30 02:51 580136 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ mu inst.exe
2009-06-30 02:48. 2009-06-30 02:49 282056 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ cc ulang.exe
2009-06-30 02:48. 2009-06-30 02:48 36912 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ PO stproc.exe
2009-06-30 02:47. 2009-06-30 02:48 359184 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ setup.exe TB
2009-06-30 02:36. 2009-06-30 02:47 3147256 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ oc pinsts.exe
2009-06-30 02:36. 2009-06-30 02:36 10800 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ buvo fixchk.dll
2009-06-30 02:35. 2009-06-30 02:36 174752 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ st mninst.exe
2009-06-30 02:35. 2009-06-30 02:35 142040 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ setup.exe AL
2009-06-30 02:34. 2009-06-30 02:34 67120 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL Atsisiuntimai \ ccu_suite \ 4.3.38.1 \ ccu_suite_4.3.38.1 \ in stSup.dll
2009-06-27 06:36. 2009-06-27 06:36 -------- d ----- W-c: \ windows \ system32 \ CatRoot_bak
2009-06-27 06:31. 2009-06-27 06:31 167999 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL \ C_America Online 9.0 \ aolEULanPack \ cswitch.exe
2009-06-27 06:31. 2009-06-27 06:31 3298040 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ AOL \ C_America Online 9.0 \ aolEULanPack \ langpack.exe
2009-06-27 06:30. 2009-06-27 06:30 -------- d ----- w C: \ Install iTunes
2009-06-27 06:30. 2009-06-27 06:30 -------- d ----- w C: \ Install ICQ
2009-06-27 06:30. 2009-06-27 06:30 -------- d ----- w C: \ AOL Instant Messenger
2009-06-27 06:30. 2009-06-27 06:30 -------- d ----- w C: \ MAV
2009-06-27 06:29. 2009-06-27 06:29 -------- d ----- w C: \ Program Files \ Common Files \ aolshare
2009-06-27 06:29. 2009-06-27 06:29 -------- d ----- W-c: \ program files \ "America Online" 9,0
2009-06-27 05:04. 2009-06-27 05:04 -------- D-SH - w C: \ Documents and Settings \ Administrator \ IETldCache
2009-06-27 05:03. 2007-12-04 03:49 487323 ---- AW-C: \ Documents and Settings \ Administrator \ Application Data \ IE7Pro \ prosetup.exe
2009-06-27 05:03. 2007-12-04 03:43 -------- d --- AW-C: \ Documents and Settings \ Administrator \ Application Data \ IE7Pro
2009-06-27 05:03. 2009-06-27 05:03 -------- d ----- w C: \ Documents and Settings \ Administrator
2009-06-27 05:03. 2007-12-04 03:43 -------- d ----- w C: \ Documents and Settings \ Administrator \ Local Settings \ Application Data \ SITEguard
2009-06-27 05:03. 2007-06-13 04:19 -------- d ----- w C: \ Documents and Settings \ Administrator \ Local Settings \ Application Data \ Microsoft
2009-06-25 02:33. 2008-04-14 00:12 221184 ---- AW-c: \ windows \ system32 \ wmpns.dll
2009-06-25 02:05. 2009-06-25 02:05 -------- d ----- W-c: \ windows \ system32 \ scripting
2009-06-25 02:05. 2009-06-25 02:05 -------- d ----- W-c: \ windows \ l2schemas
2009-06-25 02:05. 2009-06-25 02:05 -------- d ----- W-c: \ windows \ system32 \ LT
2009-06-25 02:05. 2009-06-25 02:05 -------- d ----- W-c: \ windows \ system32 \ bitai
2009-06-25 01:56. 2006-02-28 16:00 67584 ---- AW-c: \ windows \ system32 \ drivers \ sdbus.sys
2009-06-25 01:56. 2006-02-28 16:00 36096 ---- AW-c: \ windows \ system32 \ drivers \ Intelppm.sys
2009-06-25 01:56. 2006-02-28 16:00 15488 ---- AW-c: \ windows \ system32 \ drivers \ mssmbios.sys
2009-06-25 01:56. 2006-02-28 16:00 12416 ---- AW-c: \ windows \ system32 \ drivers \ tunmp.sys
2009-06-25 01:56. 2006-02-28 16:00 11136 ---- AW-c: \ windows \ system32 \ drivers \ sffdisk.sys
2009-06-25 01:56. 2006-02-28 16:00 10240 ---- AW-c: \ windows \ system32 \ drivers \ sffp_sd.sys
2009-06-25 01:56. 2006-03-17 00:33 262784 ---- AW-c: \ windows \ system32 \ drivers \ Http.sys
2009-06-25 01:54. 2006-02-28 16:00 15360 ---- AW-c: \ windows \ system32 \ dllcache \ nppagent.exe
2009-06-25 01:53. 2006-02-28 16:00 82944 ---- AW-c: \ windows \ system32 \ dllcache \ ws2_32.dll
2009-06-25 01:50. 2009-06-25 01:51 -------- d ----- W-c: \ windows \ eHoMe
2009-06-24 06:11. 2009-06-24 06:11 -------- D-SH - w C: \ Documents and Settings \ LocalService \ IETldCache
2009-06-24 06:10. 2009-06-24 06:10 -------- d ----- W-c: \ Program Files \ SNSafe & Software
2009-06-24 06:10. 2009-06-24 06:10 -------- d ----- w C: \ Documents and Settings \ All Users \ Application Data \ SNSafe & Software
2009-06-21 00:46. 2009-04-30 21:22 12800 ------ W-c: \ windows \ system32 \ dllcache \ xpshims.dll
2009-06-21 00:46. 2009-04-30 21:22 246272 ------ W-c: \ windows \ system32 \ dllcache \ ieproxy.dll
2009-06-20 23:05. 2009-06-20 23:05 152576 ---- AW-C: \ Documents and Settings \ vartotojas Windows \ Application Data \ Sun \ Java \ jre1.6.0_14 \ lzma.dll
2009-06-18 00:32. 2009-06-18 00:32 -------- D-SH - w C: \ FOUND.020
2009-06-17 14:03. 2009-06-17 14:03 -------- D - H - W-c: \ windows \ IE8
2009-06-16 23:54. 2009-06-16 23:54 -------- d ----- w C: \ Documents and Settings \ vartotojas Windows \ Application Data \ AVS4YOU
2009-06-16 23:54. 2009-06-16 23:54 -------- d ----- w C: \ Documents and Settings \ All Users \ Application Data \ AVS4YOU
2009-06-16 23:53. 2009-06-16 23:53 -------- d ----- w C: \ Program Files \ Common Files \ AVSMedia
2009-06-16 23:53. 2007-02-27 22:36 974848 ---- AW-c: \ windows \ system32 \ mfc70.dll
2009-06-16 23:53. 2007-02-27 22:36 487424 ---- AW-c: \ windows \ system32 \ msvcp70.dll
2009-06-16 23:53. 2007-02-27 22:36 344064 ---- AW-c: \ windows \ system32 \ msvcr70.dll
2009-06-16 23:53. 2007-02-27 22:36 1700352 ---- AW-c: \ windows \ system32 \ GdiPlus.dll
2009-06-16 23:53. 2009-06-16 23:53 -------- d ----- W-c: \ Program Files \ AVS4YOU
2009-06-12 05:15. 2009-06-12 05:15 -------- d ----- w C: \ Program Files \ Alwil Software
2009-06-11 20:27. 2009-06-11 20:27 18942 ---- AR-c: \ Documents and Settings \ vartotojas Windows \ Application Data \ Microsoft \ Installer \ (334A33C2-B9A5-4322-AB83-EBF42BFCC470) \ _2ce7ed6.exe
2009-06-11 20:27. 2009-06-11 20:27 18942 ---- AR-c: \ Documents and Settings \ vartotojas Windows \ Application Data \ Microsoft \ Installer \ (334A33C2-B9A5-4322-AB83-EBF42BFCC470) \ _2447235c.exe
2009-06-11 20:27. 2009-06-11 20:27 -------- d ----- W-c: \ Program Files \ Fresh RAM
2009-06-11 20:21. 2009-06-11 20:21 -------- D-SH - w C: \ FOUND.019
2009-06-11 15:55. 2009-06-10 17:39 5465088 ---- AW-C: \ Fresh RAM.msi
2009-06-09 06:29. 2009-06-09 06:29 -------- d ----- w C: \ Documents and Settings \ vartotojas Windows \ Application Data \ Blitware
2009-06-09 06:29. 2009-06-09 06:29 -------- d ----- W-c: \ Program Files \ Driver Robotas
2009-06-09 02:24. 2009-06-09 02:24 -------- d ----- w C: \ Documents and Settings \ All Users \ Application Data \ PC Drivers Headquarters
2009-06-09 02:23. 2009-06-09 02:23 -------- d ----- w C: \ Documents and Settings \ Windows User \ Local Settings \ Application Data \ Downloaded Installations
2009-06-08 03:00. 2009-06-08 03:00 -------- d ----- w C: \ Documents and Settings \ vartotojas Windows \ Application Data \ GetRightToGo
2009-06-07 23:38. 2008-04-14 00:12 7680 ---- AW-c: \ windows \ system32 \ spdwnwxp.exe
2009-06-06 14:46. 2009-06-06 14:46 -------- d ----- W-c: \ Program Files \ filehippo.com
.
(((((((((((((((((((((((((((((((((((((((( Find3M Pranešimas )))))))) ))))))))))))))))))))))))))))))))))))))))))))
.
2009-07-03 06:49. 2007-06-16 18:55 302080 ---- AW-C: \ Documents and Settings \ Windows User \ Local Settings \ Application Data \ GDIPFONTCACHEV1.DAT
2009-06-30 03:32. 2009-05-21 02:29 3561743 ---- AW-C: \ Documents and Settings \ All Users \ Application Data \ Malwarebytes \ Malwarebytes 'Anti-Malware \ mbam-setup.exe
2009-06-27 06:16. 2007-06-13 04:18 76487 ---- AW-c: \ windows \ PCHealth \ HELPCTR \ OfflineCache \ Index.dat
2009-06-17 15:27. 2009-05-21 02:17 38160 ---- AW-c: \ windows \ system32 \ drivers \ mbamswissarmy.sys
2009-06-17 15:27. 2009-05-21 02:17 19096 ---- AW-c: \ windows \ system32 \ drivers \ mbam.sys
2009-06-11 22:43. 2007-06-21 02:45 1744 ---- AW-c: \ windows \ system32 \ d3d9caps.dat
2009-06-05 03:59. 2009-06-05 03:59 -------- d ----- W-c: \ Program Files \ DrWeb
2009-05-28 23:14. 2009-05-28 23:14 -------- d ----- w C: \ Program Files \ Java
2009-05-28 23:14. 2009-05-28 23:14 152576 ---- AW-C: \ Documents and Settings \ vartotojas Windows \ Application Data \ Sun \ Java \ jre1.6.0_13 \ lzma.dll
2009-05-27 15:21. 2009-05-27 15:21 372 ---- AW-c: \ Program Files \ ujhonz.txt
2009-05-21 15:33. 2009-05-28 23:15 410984 ---- AW-c: \ windows \ system32 \ deploytk.dll
2009-05-21 02:17. 2009-05-21 02:17 -------- d ----- W-c: \ Program Files \ Malwarebytes 'Anti-Malware
2009-05-17 00:04. 2009-05-17 00:04 -------- d ----- w C: \ Documents and Settings \ vartotojas Windows \ Application Data \ WinPatrol
2009-05-17 00:03. 2009-05-17 00:03 -------- d ----- W-c: \ Program Files \ BillP Studios
2009-05-13 05:15. 2007-06-13 03:56 915456 ---- AW-c: \ windows \ system32 \ wininet.dll
2009-05-07 15:44. 2009-06-25 01:53 344064 ---- AW-c: \ windows \ system32 \ Localspl.dll
2009-04-22 04:07. 2009-04-22 04:07 253688 ---- AW-c: \ windows \ system32 \ cssdll32.dll
2009-04-17 09:58. 2009-06-25 01:53 1846656 ---- AW-c: \ windows \ system32 \ Win32k.sys
2009-04-15 15:26. 2007-06-13 03:55 583168 ---- AW-c: \ windows \ system32 \ Rpcrt4.dll
2007-06-11 03:19. 2007-06-07 04:37 11079 ---- AW-c: \ Program Files \ folder.htt
.
((((((((((((((((((((((((((((( SnapShot_2009-07-06_03.59.12 )))))))))))))) )))))))))))))))))))))))))))
.
+ 2009-07-06 04:08. 2009-07-06 04:08 16384 C: \ Windows \ Temp \ Perflib_Perfdata_468.dat
+ 2009-07-06 04:08. 2009-07-06 04:08 16384 C: \ Windows \ Temp \ Perflib_Perfdata_430.dat
.
((((((((((((((((((((((((((((((((((((( Reg Kraunasi Taškai )))))))))) ))))))))))))))))))))))))))))))))))))))))
.
.
* Pastaba: * tuščių įrašų ir teisėtu default įrašai nerodoma
REGEDIT4
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ Curr entversion \ Explorer \ shelliconoverlayidentifiers \ Sl owFile Ikona perdangos]
@ = "(7D688A77-C613-11D0-999B-00C04FD655E1)"
[HKEY_CLASSES_ROOT \ CLSID \ (7D688A77-C613-11D0-999B-00C04FD655E1)]
2008-07-03 13:03 8460800 ---- AW-c: \ windows \ system32 \ shell32.dll
[HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ Curre ntVersion \ Run]
"Ctfmon.exe" = "C: \ Windows \ system32 \ Ctfmon.exe" [2006-02-28 15360]
"AOL Fast Start" = "C: \ Program Files \ America Online 9.0 \ AOL.EXE" [2005-07-12 50776]
"Jet" Ekrano "=" C: \ Program Files \ Jet Screenshot \ jetScreenshot.exe "[2009-05-10 3804160]
[HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Run]
"Lexmark 5.200 serijos" = "C: \ Program Files \ Lexmark 5.200 serijos \ lxbtbmgr.exe" [2004-06-04 57344]
"LXBTCATS" = "C: \ Windows \ System32 \ spool \ drivers \ W32X 86 \ 3 \ LXBTtime.dll" [2004-03-17 65536]
"SunJavaUpdateSched" = "C: \ Program Files \ Java \ jre6 \ bin \ jusched.exe" [2009-05-21 148888]
"HostManager" = "C: \ Program Files \ Common Files \ AOL \ 1246084174 \ EE \ AOLSoftware.exe" [2007-04-12 42032]
"AOLDialer" = "C: \ Program Files \ Common Files \ AOL \ ACS \ AOLDial.exe" [2004-10-20 34904]
"Pure Networks Port Magic" = "C: \ PROGRA ~ 1 \ PURENE ~ 1 \ PORTMA ~ 1 \ PortAOL.exe" [2004-04-05 99480]
"QuickTime Task" = "C: \ Program Files \ QuickTime \ qttask.exe" [2008-02-20 98304]
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows NT \ CurrentVersion \ Windows]
"AppInit_DLLs" = "c: \ windows \ system32 \ cssdll32.dl L
[HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ contro l \ Session Manager]
BootExecute REG_MULTI_SZ AutoCheck Autochk * \ 0autocheck smrgdf C: \ Documents and Settings \ vartotojas Windows \ Application Data \ iolo \
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ Curr entversion \ Setup \ DisabledRunKeys]
"Cmaudio" = Rundll32 cmicnfg.cpl, CMICtrlWnd
"NvCplDaemon" = RUNDLL32.EXE NvQTwk, NvCplDaemon inicijuoti
"nwiz" = nwiz.exe / install
"RegistrySmart" = "C: \ Program Files \ RegistrySmart \ RegistrySmart.exe" įkrovos
"<Nėra Name>" =
"LoadPowerProfile" = Rundll32.exe powrprof.dll, LoadCurrentPwrScheme
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Security Center]
"AntiVirusOverride" = dword: 00000001
[HKLM \ ~ \ Services \ SharedAccess \ Parameters \ firewallpo licy \ standardprofile \ AuthorizedApplications \ List]
"C: \ \ WINDOWS \ \ System32 \ \ sessmgr.exe" =
"C: \ Program Files \ IncrediMail \ \ bin \ \ ImApp.exe" =
"C: \ Program Files \ IncrediMail \ \ bin \ \ IncMail.exe" =
"C: \ Program Files \ IncrediMail \ \ bin \ \ ImpCnt.exe" =
"C: \ Program Files \ \ Magentic \ \ bin \ \ MgImp.exe" =
"C: \ Program Files \ \ Magentic \ \ bin \ \ Magentic.exe" =
"C: \ Program Files \ \ Magentic \ \ bin \ \ MgApp.exe" =
"C: \ Program Files \ Common Files \ \ AOL \ \ krautuvas \ \ aolload.exe" =
"C: \ Program Files \ Common Files \ \ AOL \ \ ACS \ \ AOLDial.exe" =
"C: \ Program Files \ Common Files \ \ AOL \ \ ACS \ \ AOLacsd.exe" =
"C: \ Program Files \ \" America Online 9.0 \ \ waol.exe "=
"C: \ Program Files \ Common Files \ \ AOL \ \ TopSpeed \ \ 2.0 \ \ aoltsmon.exe" =
"C: \ Program Files \ Common Files \ \ AOL \ \ TopSpeed \ \ 2.0 \ \ aoltpspd.exe" =
"C: \ Program Files \ Common Files \ \ AOL \ \ Sistemos informacija \ \ sinf.exe" =
"C: \ Program Files \ Common Files \ \ AolCoach \ \ en_en \ \ Player \ \ AOLNySEV.exe" =
"C: \ Program Files \ \ Malwarebytes 'Anti-Malware \ \ mbam.exe" =
"C: \ Program Files \ \ BillP Studios \ \ WinPatrol \ \ WinPatrol.exe" =
"C: \ \ WINDOWS \ \ network diagnostic \ \ xpnetdiag.exe" =
"% windir% \ \ System32 \ \ sessmgr.exe" =
"C: \ Program Files \ Common Files \ \ AOL \ \ 1246084174 \ \ EE \ \ AOLServiceHost.exe" =
R1 SASDIFSV; SASDIFSV, C: \ Program Files \ SUPERAntiSpyware \ sasdifsv.sys [10/10/2006 1:53 5.632]
R1 SASKUTIL; SASKUTIL, C: \ Program Files \ SUPERAntiSpyware \ SASKUTIL.SYS [2/27/2007 12:39 32.256]
R3 Winacusb; Winacusb; c: \ windows \ system32 \ drivers \ Wina cusb.sys [3/25/2008 6:57 902.860]
S2 ioloFileInfoList; iolo FileInfoList tarnyba; C: \ Program Files \ iolo \ Common \ lib \ ioloServiceManager.exe -> C: \ Program Files \ iolo \ Common \ lib \ ioloServiceManager.exe [?]
S2 ioloSystemService; iolo System tarnyba; C: \ Program Files \ iolo \ Common \ lib \ ioloServiceManager.exe -> C: \ Program Files \ iolo \ Common \ lib \ ioloServiceManager.exe [?]
S3 FarStoneFireWallDrive; FarStoneFireWallDrive; C: \ win Dows \ system32 \ drivers \ FarDrive.sys [4/2/2003 2:36 140.256]
S3 ousb2hub; OrangeWare USB 2.0 Hub Support; c: \ windows \ system32 \ drivers \ ousb2hub.sys [2/27/2008 7:17 53.248]
S3 PavSRK.sys; PavSRK.sys; \? \ C: \ windows \ system32 \ PavS RK.sys -> C: \ windows \ system32 \ PavSRK.sys [?]
S3 PavTPK.sys; PavTPK.sys; \? \ C: \ windows \ system32 \ PavT PK.sys -> C: \ windows \ system32 \ PavTPK.sys [?]
S3 SASENUM; SASENUM, C: \ Program Files \ SUPERAntiSpyware \ SASENUM.SYS [2/16/2006 5:51 4.096]
S3 SIVDRIVER; SIV Kernel Driver; c: \ windows \ system32 \ drivers \ SIVX32.sys [4/9/2008 9:47 48.480]
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Active Setup \ Installed Components \> (60B49E34-C7CC-11D0-8953-00A0C90347FF)]
"C: \ Windows \ system32 \ rundll32.exe" "C: \ Windows \ system32 \ iedkcs32.dll" BrandIEActiveSe Baba REGISTRUOKIS
[HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Active Setup \ Installed Components \ (9EF0045A-CDD9-438e-95E6-02B9AFEC8E11)]
C: \ Windows \ System32 \ updcrl.exe-e-UC: \ windows \ system \ verisignpub1.crl
.
Turinys "Scheduled Tasks" katalogą
2009/06/09 C: \ Windows \ Uždaviniai \ Driver Robot.job
- C: \ Program Files \ Driver Robotas \ 1.0.6.0 \ DriverRobot.exe [2009-06-09 13:02]
.
- - - - Orphans nuimti - - - --
BHO-(201f27d4-3704-41d6-89c1-aa35e39143ed) - (no file)

.
------- Papildomos Scan -------
.
uSearchMigratedDefaultURL = hxxp: / / www.google.com/search?q searchTerms = () & sourceid = ie7 & RLS = com.micros oft: en-us & ie = utf8 & oe = utf8
uStart Page = hxxp: / / www.aol.com/
mWindow Title = "Internet Explorer pateikė epix
IE: & Pridėti animaciją IncrediMail Stilius Box - C: \ Program Files \ IncrediMail \ bin \ Resources \ WebMenuImg.htm
IE: & ICQ Paieška
IE: & ICQ Toolbar Search - C: \ Program Files \ AOL Toolbar \ toolbar.dll / SEARCH.HTML
LSP: FarLsp.dll
Patikimas Zona: 88sears.com \ www
Patikimas Zona: aol.com \ www
Patikimas Zona: comodo.com \ www
Patikimas Zona: kompiuterinių juice.com \ www
Patikimas Zona: giveawayoftheday.com \ www
Patikimas Zona: newegg.com \ www
Patikimas Zona: pchelpforum.com \ www
Patikimas Zona: searscard.com \ www
Patikimas Zona: statefarm.com \ www
Patikimas Zona: winpatrol.com \ www
TCP: (68589BEF-2503-4090-B404-9FB7D2105BB4) = 205.188.146.145
DPF: DirectAnimation Java klasės
DPF: "Internet Explorer klasių Java
DPF: Microsoft XML Parser for Java
DPF: Win32 klasėms
.
************************************************** ************************
catchme 0.3.1398 W2K/XP/Vista - rootkit / Stealth kenkėjiškų detektorius pagal Gmer, http://www.gmer.net
Rootkit scan 2009-07-06 00:08
Windows 5.1.2600 Service Pack 2 FAT NTAPI
skenavimo paslėptus procesus ...
skenavimo paslėptas autostart entries ...
HKLM \ Software \ Microsoft \ Windows \ CurrentVersion \ Run
LXBTCATS = rundll32 C: \ Windows \ System32 \ spool \ drivers \ W32x86 \ 3 \ LXBTtim e.dll, _RunDLLEntry @ 16 ???????????????????????? ????? ?????????????????????????????????????????????????? ?????????????????????????????????????????????????? ??????????????????????????????????????????????????
skenavimo paslėptus failus ...
skenavimas baigtas sėkmingai
paslėptus failus: 0
************************************************** ************************
.
--------------------- LOCKED registro raktus ---------------------
[HKEY_USERS \ $ $ $ \ Software \ Microsoft \ SystemCertificat es \ addressbook *]
@ Neleidžiami: (Skaityti) (RestrictedCode)
@ Neleidžiami: (Skaityti) (RestrictedCode)
.
--------------------- DLL Loaded Pagal aktyvūs procesai ---------------------
- - - - - - -> "Lsass.exe" (428)
C: \ Windows \ system32 \ FarLsp.dll
- - - - - - -> "Explorer.exe" (2420)
C: \ Windows \ system32 \ wininet.dll
C: \ Program Files \ Common Files \ AOL \ ACS \ WLHook.dll
C: \ Program Files \ AOL paieškos juostą \ deskbar.dll
C: \ Program Files \ Common Files \ AOL \ AOL Toolbar \ AOLHelper.dll
C: \ Windows \ system32 \ ieframe.dll
C: \ Windows \ system32 \ Webcheck.dll
.
------------------------ Kitos aktyvūs procesai ----------------------- --
.
C: \ Program Files \ Common Files \ AOL \ ACS \ AOLACSD.EXE
C: \ Program Files \ Java \ JRE6 \ bin \ JQS.EXE
C: \ Windows \ System32 \ SNMP.EXE
C: \ Program Files \ LEXMARK 5.200 serija \ LXBTBMON.EXE
C: \ Program Files \ America Online 9.0 \ WAOL.EXE
C: \ Program Files \ America Online 9.0 \ SHELLMON.EXE
.
************************************************** ************************
.
Atlikimo laikas: 2009-07-06 0:10 - mašina buvo paleistas
ComboFix-karantine-files.txt 2009-07-06 04:10
ComboFix2.txt 2009-07-06 04:01
ComboFix3.txt 2009-06-06 14:20
ComboFix4.txt 2009-06-04 04:03
Pre-Rida: 97549156352 bytes nemokamai
Post-Rida: 97532772352 bytes nemokamai
320 --- EOF --- 2009-07-05 21:28
  #10  
Old 6 liepa 2009, 09:43
Moderatorius Grupė
 
Default "Microsoft" Pop Up Tell Me I Have A viruso

Skaitymo Įtartinas failas (-ai)

Eikite į VirusTotal.com
(Jei daugiau nei vienas failas turi nuskaityti turi būti daroma atskirai ir žurnalai Posted už kiekvieną)

1. Nukopijuokite failą į kelias žemiau kodas dėžė:

Kodas
C: \ Documents and Settings \ vartotojas Windows \ Application Data \ Microsoft \ Installer \ (334A33C2-B9A5-4322-AB83-EBF42BFCC470) \ _2ce7ed6.exe
2. Tuo įkelti puslapį, paspauskite vieną kartą lango viduje šalia Žmonės.
3. Spauda Ctrl + V klaviatūra (ir tuo pačiu metu), įrašykite kelią iki failo į langą.
4. Kitas paspauskite Siųsti failą
Jūsų byla greičiausiai bus įrašytas į eilę, kuri paprastai trunka mažiau nei minutę, aišku.
Tai atliks nuskaitymo daugelyje skirtingų virusų skanavimo sistemos.
Svarbu: Palaukite, visos skanavimo variklių užpildyti.
5. Nukopijuokite ir įklijuokite nuorodą į kitą Atsakyti rezultatai
__________________

Reply

Register

Bookmarks

Panašios Temos
Siūlas Thread Starter Forumas Atsakymai Last Post
Perėjimas nuo 2007, Microsoft Office Outlook PC 2 Microsoft Office X Entoutage Mac jjuli Office Suites & Applications 0 Birželis 11, 2009 15:52
Virus klausimas - Ar kas nors pasakyti, jei man gali turėti virusų billozz Virus, Spyware & Security 1 2 balandis 2009 13:58
$ 250,000 (£ 172,000) buvo pasiūlyta Microsoft Rasti Kas už Downadup / Conficker Virus Hybr! D Virus, Spyware & Security 1 17 vasaris 2009 11:03
Mano draugai Mac yra virusas ... umm ... yeah ... Virus ... cheesepuff Virus, Spyware & Security 3 29 spalis 2008 12:58
Microsoft palieka ant Vista philthomas Windows "operacinės sistemos 2 8 balandis 2008 16:09
Temos įrankiai




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright © 2006 - 2009 Kompiuterių Sultys.

Powered by vBulletin ® Copyright © 2000 - 2009 Jelsoft Enterprises Ltd SEO by © 2009 vBSEO, zaindeksowania, Inc