![]() |
| |||||||
|
![]() |
| | Thread Tools |
|
#1
| |||
| |||
| mans brālis atvienot savienots to klēpjdators. pēc tam, kad viņš saistīts to sākotnējā pc ..... mana galda, ātrums ir patiešām sāk sūkāt ....... i dont know. lejupielādēt, kas parasti notika aroun 14 kb šobrīd notiek pie max.4kb. kā piemēram, facebook, kas atver naudas pirms, tagad kinda izpaužas jāuzkar ilgu laiku, uzsākot kaut ko. Es esmu Sludinājuma mani nolaupīt log katram gadījumam. Please help. heres my ātruma tests i ir 128 ātruma ........ dont know, ja tā ir mega vai kilogramu ....... bet es domāju, ka tā visticamāk pēdējais. http://www.speedtest.net/result/381473298.png Logfile of Trend Micro HijackThis v2.0.2 Scan saglabāts 2:58:15 gada 12/31/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0013) Boot mode: Normal Running procesiem: D: \ WINDOWS \ System32 \ Smss.exe D: \ WINDOWS \ system32 \ csrss.exe D: \ WINDOWS \ system32 \ winlogon.exe D: \ WINDOWS \ system32 \ services.exe D: \ WINDOWS \ system32 \ lsass.exe D: \ WINDOWS \ system32 \ svchost.exe D: \ WINDOWS \ system32 \ svchost.exe D: \ WINDOWS \ System32 \ svchost.exe D: \ WINDOWS \ system32 \ svchost.exe D: \ WINDOWS \ system32 \ svchost.exe D: \ WINDOWS \ system32 \ Spoolsv.exe D: \ Program Files \ Common Files \ Microsoft Shared \ VS7DEBUG \ MDM.EXE D: \ WINDOWS \ system32 \ slserv.exe D: \ WINDOWS \ system32 \ wdfmgr.exe D: \ WINDOWS \ system32 \ wscntfy.exe D: \ WINDOWS \ system32 \ taskmgr.exe D: \ Program Files \ Ares \ Ares.exe D: \ WINDOWS \ explorer.exe E: \ ALL Programmatūra \ HiJackThis.exe D: \ WINDOWS \ system32 \ wbem \ wmiprvse.exe R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = aptuveni: blank R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ SearchURL (Default) = http://us.rd.yahoo.com/customize/yco.../www.yahoo.com F2 - REG: SYSTEM.INI: Shell = Explorer.exe O2 - BHO: DAPHelper Class - (0000CC75-ACF3-4cac-A0A9-DD3868E06852) - D: \ Program Files \ DAP \ DAPBHO.dll O2 - BHO: IDM Helper - (0055C089-8.582-441B-A0BF-17B458C2A3A8) - D: \ Program Files \ Internet Download Manager \ IDMIECC.dll O2 - BHO: AskBar BHO - (201f27d4-3.704-41d6-89c1-aa35e39143ed) - D: \ Program Files \ AskBarDis \ bar \ bin \ askBar.dll O2 - BHO: Skype add-on (mastermind) - (22BF413B-C6D2-4d91-82A9-A0F997BA588C) - D: \ Program Files \ Skype \ Toolbars \ Internet Explorer \ SkypeIEPlugin.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - D: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv.dll O2 - BHO: (no name) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (no file) O2 - BHO: Google Toolbar Helper - (AA58ED58-01DD-4d91-8.333-CF10577473F7) - D: \ Program Files \ Google \ googletoolbar2.dll O3 - Toolbar: & Google - (2318C2B1-4.965-11d4-9B18-009027A5CD4F) - D: \ Program Files \ Google \ googletoolbar2.dll O3 - Toolbar: (no name) - (DE9C389F-3.316-41A7-809B-AA305ED9D922) - (no file) O3 - Toolbar: Jautājiet Toolbar - (3041d03e-fd4b-44e0-b742-2d9b88305f98) - D: \ Program Files \ AskBarDis \ bar \ bin \ askBar.dll O4 - HKLM \ .. \ Run: [QuickTime Task] "D: \ Program Files \ QuickTime \ qttask.exe"-atboottime O4 - HKLM \ .. \ Run: [googletalk] D: \ Program Files \ Google \ Google Talk \ googletalk.exe / palaišana O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "D: \ Program Files \ Java \ jre1.6.0_07 \ bin \ jusched.exe" O4 - HKCU \ .. \ Run: [ctfmon.exe] D: \ WINDOWS \ system32 \ ctfmon.exe O4 - HKCU \ .. \ Run: [BitTorrent DNA] "D: \ Program Files \ DNS \ btdna.exe" Ø8 - ārpus konteksta menu item: & Download ar & DAP - D: \ PROGRA ~ 1 \ DAP \ dapextie.htm Ø8 - ārpus konteksta menu item: Download & visi ar DAP - D: \ PROGRA ~ 1 \ DAP \ dapextie2.htm Ø8 - ārpus konteksta menu item: Download visas saites ar IDM - D: \ Program Files \ Internet Download Manager \ IEGetAll.htm Ø8 - ārpus konteksta menu item: Download FLV video saturu IDM - D: \ Program Files \ Internet Download Manager \ IEGetVL.htm Ø8 - ārpus konteksta menu item: Download ar IDM - D: \ Program Files \ Internet Download Manager \ IEExt.htm Ø8 - ārpus konteksta menu item: E & ksportēt uz Microsoft Excel - res: / / D: \ PROGRA ~ 1 \ Micros ~ 2 \ Office11 \ EXCEL.EXE/3000 Ø9 - Extra button: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - D: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv.dll Ø9 - Extra 'Tools' MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - D: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv.dll Ø9 - Extra button: Skype - (77BF5300-1.474-4EC7-9.980-D32B190E9B07) - D: \ Program Files \ Skype \ Toolbars \ Internet Explorer \ SkypeIEPlugin.dll Ø9 - Extra button: (no name) - (85d1f590-48f4-11d9-9.669-0800200c9a66) - D: \ WINDOWS \ bdoscandel.exe Ø9 - Extra 'Tools' MENUITEM: Uninstall BitDefender Online Scanner v8 - (85d1f590-48f4-11d9-9.669-0800200c9a66) - D: \ WINDOWS \ bdoscandel.exe Ø9 - Extra button: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - D: \ PROGRA ~ 1 \ Micros ~ 2 \ Office11 \ REFIEBAR.DLL Ø16 - DPF: (17.492.023-C23A-453E-A040-C7C580BBF700) (Windows Genuine Advantage Validation Tool) -- http://go.microsoft.com/fwlink/?linkid=39204 Ø16 - DPF: (56762DEC-6B0D-4AB4-A8AD-989993B5D08B) (OnlineScanner Control) -- http://www.eset.eu/buxus/docs/OnlineScanner.cab Ø16 - DPF: (5D86DDB5-BDF9-441B-9E9E-D4730F4EE499) (BDSCANONLINE Control) -- http://download.bitdefender.com/reso...an8/oscan8.cab Ø16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl klase) -- http://www.update.microsoft.com/micr...?1222679603245 O18 - Protocol: skype4com - (FFC8B962-9B40-4DFF-9.458-1830C7DD7F5D) - D: \ PROGRA ~ 1 \ Common ~ 1 \ Skype \ SKYPE4 ~ 1.DLL Ø20 - Winlogon Paziņot:! SASWinLogon - D: \ Program Files \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: Ares tērzētavu serveri (AresChatServer) - Ares Development Group - D: \ Program Files \ Ares \ chatServer.exe O23 - Service: Distributed - Unknown īpašnieks - D: \ Program Files \ Common Files \ Microsoft Shared \ MSINFO \ ServerNet.exe (file missing) O23 - Service: Google Updater Service (gusvc) - Google - D: \ Program Files \ Google \ Common \ Google Updater \ GoogleUpdaterService.exe O23 - Service: PC Tools AntiVirus Engine (PCTAVSvc) - PC Tools Research Pty Ltd - D: \ Program Files \ PC Tools AntiVirus \ PCTAVSvc.exe O23 - Service: ServiceLayer - Nokia. - D: \ Program Files \ PC Connectivity Solution \ ServiceLayer.exe O23 - Service: SmartLinkService (SLService) - Smart Link - D: \ WINDOWS \ SYSTEM32 \ slserv.exe -- End Lietas - 6000 bytes |
|
#2
| |||
| |||
| Lejupielādēt Malwarebytes "Anti-Malware (MBAM)
Extra Piezīme: Ja MBAM sastopas failu, kas ir grūta, Jums tiks parādīts 1 of 2 uzvednes, noklikšķiniet uz Labi, lai nu un ļaujiet MBAM rīkoties ar dezinfekcijas procesu, ja prasīts restartēt datoru, lūdzu, dariet to nekavējoties. ---------- Lejupielādēt izlases veidā ir sistēmas informācijas rīks (RSIT) izlases / izlases no un saglabājiet to savā datorā.
|
|
#3
| |||
| |||
| Logfile izlases ir sistēmas informācijas rīks 1,05 (rakstiska ar izlases / izlases veida) Vada Burhan at 2009/01/01 23:01:39 Microsoft Windows XP Professional Service Pack 2 Sistēma drive D: ir 1 GB (16%) bez 10 GB Kopā RAM: 126 MB (17% bezmaksas) Logfile of Trend Micro HijackThis v2.0.2 Scan saglabāts 11:01:43, ar 1/1/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.5730.0013) Boot mode: Normal Running procesiem: D: \ WINDOWS \ System32 \ Smss.exe D: \ WINDOWS \ system32 \ csrss.exe D: \ WINDOWS \ system32 \ winlogon.exe D: \ WINDOWS \ system32 \ services.exe D: \ WINDOWS \ system32 \ lsass.exe D: \ WINDOWS \ system32 \ svchost.exe D: \ WINDOWS \ system32 \ svchost.exe D: \ WINDOWS \ System32 \ svchost.exe D: \ WINDOWS \ system32 \ svchost.exe D: \ WINDOWS \ system32 \ svchost.exe D: \ WINDOWS \ system32 \ Spoolsv.exe D: \ Program Files \ Common Files \ Microsoft Shared \ VS7DEBUG \ MDM.EXE D: \ WINDOWS \ system32 \ ctfmon.exe D: \ WINDOWS \ system32 \ wdfmgr.exe D: \ WINDOWS \ System32 \ alg.exe D: \ WINDOWS \ system32 \ wscntfy.exe D: \ WINDOWS \ system32 \ taskmgr.exe D: \ WINDOWS \ system32 \ wbem \ wmiprvse.exe D: \ WINDOWS \ explorer.exe D: \ Documents and Settings \ Burhan \ Desktop \ RSIT.exe E: \ ALL Programmatūra \ Burhan.exe R0 - HKCU \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = aptuveni: blank R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM \ Software \ Microsoft \ Internet Explorer \ Main, Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU \ Software \ Microsoft \ Internet Explorer \ SearchURL (Default) = http://us.rd.yahoo.com/customize/yco.../www.yahoo.com F2 - REG: SYSTEM.INI: Shell = Explorer.exe O2 - BHO: DAPHelper Class - (0000CC75-ACF3-4cac-A0A9-DD3868E06852) - D: \ Program Files \ DAP \ DAPBHO.dll O2 - BHO: Skype add-on (mastermind) - (22BF413B-C6D2-4d91-82A9-A0F997BA588C) - D: \ Program Files \ Skype \ Toolbars \ Internet Explorer \ SkypeIEPlugin.dll O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - D: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv.dll O2 - BHO: (no name) - (7E853D72-626A-48EC-A868-BA8D5E23E045) - (no file) O3 - Toolbar: (no name) - (DE9C389F-3.316-41A7-809B-AA305ED9D922) - (no file) O4 - HKLM \ .. \ Run: [QuickTime Task] "D: \ Program Files \ QuickTime \ qttask.exe"-atboottime O4 - HKLM \ .. \ Run: [googletalk] D: \ Program Files \ Google \ Google Talk \ googletalk.exe / palaišana O4 - HKLM \ .. \ Run: [SunJavaUpdateSched] "D: \ Program Files \ Java \ jre1.6.0_07 \ bin \ jusched.exe" O4 - HKCU \ .. \ Run: [ctfmon.exe] D: \ WINDOWS \ system32 \ ctfmon.exe O4 - HKCU \ .. \ Run: [BitTorrent DNA] "D: \ Program Files \ DNS \ btdna.exe" Ø8 - ārpus konteksta menu item: & Download ar & DAP - D: \ PROGRA ~ 1 \ DAP \ dapextie.htm Ø8 - ārpus konteksta menu item: Download & visi ar DAP - D: \ PROGRA ~ 1 \ DAP \ dapextie2.htm Ø8 - ārpus konteksta menu item: E & ksportēt uz Microsoft Excel - res: / / D: \ PROGRA ~ 1 \ Micros ~ 2 \ Office11 \ EXCEL.EXE/3000 Ø9 - Extra button: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - D: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv.dll Ø9 - Extra 'Tools' MENUITEM: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - D: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv.dll Ø9 - Extra button: Skype - (77BF5300-1.474-4EC7-9.980-D32B190E9B07) - D: \ Program Files \ Skype \ Toolbars \ Internet Explorer \ SkypeIEPlugin.dll Ø9 - Extra button: (no name) - (85d1f590-48f4-11d9-9.669-0800200c9a66) - D: \ WINDOWS \ bdoscandel.exe Ø9 - Extra 'Tools' MENUITEM: Uninstall BitDefender Online Scanner v8 - (85d1f590-48f4-11d9-9.669-0800200c9a66) - D: \ WINDOWS \ bdoscandel.exe Ø9 - Extra button: Research - (92780B25-18CC-41C8-B9BE-3C9C571A8263) - D: \ PROGRA ~ 1 \ Micros ~ 2 \ Office11 \ REFIEBAR.DLL Ø16 - DPF: (17.492.023-C23A-453E-A040-C7C580BBF700) (Windows Genuine Advantage Validation Tool) -- http://go.microsoft.com/fwlink/?linkid=39204 Ø16 - DPF: (56762DEC-6B0D-4AB4-A8AD-989993B5D08B) -- http://www.eset.eu/buxus/docs/OnlineScanner.cab Ø16 - DPF: (5D86DDB5-BDF9-441B-9E9E-D4730F4EE499) (BDSCANONLINE Control) -- http://download.bitdefender.com/reso...an8/oscan8.cab Ø16 - DPF: (6E32070A-766D-4EE6-879C-DC1FA91D2FC3) (MUWebControl klase) -- http://www.update.microsoft.com/micr...?1222679603245 O18 - Protocol: skype4com - (FFC8B962-9B40-4DFF-9.458-1830C7DD7F5D) - D: \ PROGRA ~ 1 \ Common ~ 1 \ Skype \ SKYPE4 ~ 1.DLL Ø20 - Winlogon Paziņot:! SASWinLogon - D: \ Program Files \ SUPERAntiSpyware \ SASWINLO.dll O23 - Service: Ares tērzētavu serveri (AresChatServer) - Ares Development Group - D: \ Program Files \ Ares \ chatServer.exe O23 - Service: Distributed - Unknown īpašnieks - D: \ Program Files \ Common Files \ Microsoft Shared \ MSINFO \ ServerNet.exe (file missing) O23 - Service: PC Tools AntiVirus Engine (PCTAVSvc) - PC Tools Research Pty Ltd - D: \ Program Files \ PC Tools AntiVirus \ PCTAVSvc.exe O23 - Service: ServiceLayer - Nokia. - D: \ Program Files \ PC Connectivity Solution \ ServiceLayer.exe O23 - Service: SmartLinkService (SLService) - Smart Link - D: \ WINDOWS \ SYSTEM32 \ slserv.exe -- End of failu - 4.970 bytes ====== Registry dump ====== [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Explorer \ Browser Helper Objects \ (0000CC75-ACF3-4cac-A0A9-DD3868E06852)] DAPHelper klase - D: \ Program Files \ DAP \ DAPBHO.dll [2007/11/27 98.304] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Explorer \ Browser Helper Objects \ (22BF413B-C6D2-4d91-82A9-A0F997BA588C)] Skype add-on (mastermind) - D: \ Program Files \ Skype \ Toolbars \ Internet Explorer \ SkypeIEPlugin.dll [2008/05/30 1.410.344] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Explorer \ Browser Helper Objects \ (761497BB-D6F0-462C-B6EB-D4DAF1D92D43)] SSVHelper klase - D: \ Program Files \ Java \ jre1.6.0_07 \ bin \ ssv.dll [2008/06/10 509.328] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Explorer \ Browser Helper Objects \ (7E853D72-626A-48EC-A868-BA8D5E23E045)] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Internet Explorer \ Toolbar] (DE9C389F-3.316-41A7-809B-AA305ED9D922) [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ Curr entVersion \ Run] "QuickTime Task" = D: \ Program Files \ QuickTime \ qttask.exe [2006/09/01 282.624] "googletalk" = D: \ Program Files \ Google \ Google Talk \ googletalk.exe [2007/01/02 3.739.648] "SunJavaUpdateSched" = D: \ Program Files \ Java \ jre1.6.0_07 \ bin \ jusched.exe [2008/06/10 144.784] [HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ Curre ntVersion \ Run] "ctfmon.exe" = D: \ WINDOWS \ system32 \ ctfmon.exe [2004/08/03 15.360] "BitTorrent DNS" = D: \ Program Files \ DNS \ btdna.exe [2008/12/30 342.848] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ ctfmon.exe] D: \ WINDOWS \ system32 \ ctfmon.exe [2004/08/03 15.360] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ PCSuiteTrayApplication] [] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ kopīgi instrumenti \ msconfig \ startupreg \ PCTAVApp] D: \ Program Files \ PC Tools AntiVirus \ PCTAV.exe [2008/09/25 1.370.000] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ Winlogon \ Paziņot \! SASWinLogon] D: \ Program Files \ SUPERAntiSpyware \ SASWINLO.dll [2008/07/23 352.256] [HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ Curr entVersion \ Explorer \ ShellExecuteHooks] "(5AE067D3-9AFB-48E0-853A-EBB7F4A000DA)" = D: \ Program Files \ SUPERAntiSpyware \ SASSEH.DLL [2008/05/13 77.824] [HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ contro l \ SafeBoot \ Minimal \ SBCSSvc] [HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ contro l \ SafeBoot \ tīkls \ PCTAVSvc] [HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ contro l \ SafeBoot \ tīkls \ SBCSSvc] [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ Curr entVersion \ Policies \ System] "dontdisplaylastusername" = 0 "legalnoticecaption" = "legalnoticetext" = "shutdownwithoutlogon" = 1 "undockwithoutlogon" = 1 [HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ Curre ntVersion \ Policies \ Explorer] "NoDrives" = 0 "NoDriveAutoRun" = FFFFFFFF "NoDriveTypeAutoRun" = 36 [HKEY_LOCAL_MACHINE \ Software \ Microsoft \ Windows \ Curr entVersion \ Policies \ Explorer] "NoDriveTypeAutoRun" = "NoDrives" = "NoDriveAutoRun" = [HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ servic es \ sharedaccess \ Parameters \ firewallpolicy \ standarta profils \ authorizedapplications \ list] "% windir% \ system32 \ sessmgr.exe" = "% windir% \ system32 \ sessmgr.exe: *: enabled: @ xpsp2res.dll, -22.019" "D: \ Program Files \ Ares \ Ares.exe" = "D: \ Program Files \ Ares \ Ares.exe: *: Enabled: Ares P2P logiem" "D: \ Program Files \ NetMeeting \ conf.exe" = "D: \ Program Files \ NetMeeting \ conf.exe: *: Enabled: Windows ® NetMeeting ®" "D: \ Program Files \ Opera \ Opera.exe" = "D: \ Program Files \ Opera \ Opera.exe: *: Enabled: Opera Internet Browser" "D: \ Program Files \ Google \ Google Talk \ googletalk.exe" = "D: \ Program Files \ Google \ Google Talk \ googletalk.exe: *: Enabled: Google Talk" "D: \ Program Files \ Yahoo! \ Messenger \ YahooMessenger.exe" = "D: \ Pro gram Files \ Yahoo! \ Messenger \ YahooMessenger.exe: *: Enable d: Yahoo! Messenger" "D: \ Program Files \ Yahoo! \ Messenger \ YServer.exe" = "D: \ Program Files \ Yahoo! \ Messenger \ YServer.exe: *: Enabled: Yahoo! FT Server" "D: \ Program Files \ AIM6 \ aim6.exe" = "D: \ Program Files \ AIM6 \ aim6.exe: *: Enabled: AIM" "D: \ Program Files \ Skype \ Phone \ Skype.exe" = "D: \ Program Files \ Skype \ Phone \ Skype.exe: *: Enabled: Skype" "D: \ Program Files \ Trillian \ trillian.exe" = "D: \ Program Files \ Trillian \ trillian.exe: *: Enabled: Trillian" "D: \ Program Files \ Miranda IM \ miranda32.exe" = "D: \ Program Files \ Miranda IM \ miranda32.exe: *: Enabled: Miranda IM" "D: \ Program Files \ limewire \ LimeWire.exe" = "D: \ Program Files \ limewire \ LimeWire.exe: *: Enabled: limewire" "D: \ Program Files \ MSN Messenger \ msnmsgr.exe" = "D: \ Program Files \ MSN Messenger \ msnmsgr.exe: *: Enabled: Windows Live Messenger 8,1" "D: \ Program Files \ MSN Messenger \ livecall.exe" = "D: \ Program Files \ MSN Messenger \ livecall.exe: *: Enabled: Windows Live Messenger 8.1 (Phone)" "D: \ Program Files \ DNS \ btdna.exe" = "D: \ Program Files \ DNS \ btdna.exe: *: Enabled: DNS" "D: \ Program Files \ BitTorrent \ bittorrent.exe" = "D: \ Program Files \ BitTorrent \ bittorrent.exe: *: Enabled: BitTorre nt" [HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ servic es \ sharedaccess \ Parameters \ firewallpolicy \ domainpr ofile \ authorizedapplications \ list] "% windir% \ system32 \ sessmgr.exe" = "% windir% \ system32 \ sessmgr.exe: *: enabled: @ xpsp2res.dll, -22.019" "D: \ Program Files \ MSN Messenger \ msncall.exe" = "D: \ Program Files \ MSN Messenger \ msncall.exe: *: Enabled: Windows Live Messenger 8.0 (Phone)" "D: \ Program Files \ MSN Messenger \ msnmsgr.exe" = "D: \ Program Files \ MSN Messenger \ msnmsgr.exe: *: Enabled: Windows Live Messenger 8,1" "D: \ Program Files \ MSN Messenger \ livecall.exe" = "D: \ Program Files \ MSN Messenger \ livecall.exe: *: Enabled: Windows Live Messenger 8.1 (Phone)" [HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ Curre ntversion \ Explorer \ mountpoints2 \ (dafa2220-8.123-11dd-aa9c-00065b298742)] shell \ Autorun \ Command - G: \ CONFIG \ S-1-5-21-1482476501-1644491937-682003330-1013 \ Cfg.exe shell \ atvērt \ Command - G: \ CONFIG \ S-1-5-21-1482476501-1644491937-682003330-1013 \ Cfg.exe ====== Saraksts failus / mapes izveidoti pēdējos 1 mēnesis ====== 2009/01/01 20:51:34 ---- SHD ---- D: \ FOUND.174 2008/12/31 19:12:10 ---- SHD ---- D: \ FOUND.173 2008/12/30 23:08:48 ---- SHD ---- D: \ FOUND.172 2008/12/30 18:53:42 ---- SHD ---- D: \ FOUND.171 2008/12/30 16:16:01 ---- D ---- D: \ Documents and Settings \ Burhan \ Application Data \ BitTorrent 2008/12/30 16:15:44 ---- D ---- D: \ Program Files \ DNS 2008/12/30 16:15:44 ---- D ---- D: \ Program Files \ BitTorrent 2008/12/30 16:15:44 ---- D ---- D: \ Documents and Settings \ Burhan \ Application Data \ DNS 2008/12/30 14:46:46 ---- SHD ---- D: \ FOUND.170 2008/12/29 23:24:22 ---- SHD ---- D: \ FOUND.169 2008/12/29 15:06:17 ---- D ---- D: \ Documents and Settings \ Burhan \ Application Data \ IDM 2008/12/29 13:39:04 ---- SHD ---- D: \ FOUND.168 2008/12/28 05:25:52 ---- D ---- D: \ Program Files \ IrfanView 2008/12/26 22:39:46 ---- SHD ---- D: \ FOUND.167 2008/12/26 15:36:18 ---- SHD ---- D: \ FOUND.166 2008/12/26 12:37:24 ---- SHD ---- D: \ FOUND.165 2008/12/25 21:19:38 ---- SHD ---- D: \ FOUND.164 2008/12/20 14:47:41 ---- D ---- D: \ Program Files \ HyCam2 2008/12/20 12:02:48 ---- D ---- D: \ Program Files \ Frets on Fire 2008/12/20 09:54:02 ---- SHD ---- D: \ FOUND.163 2008/12/17 11:38:48 ---- SHD ---- D: \ FOUND.162 2008/12/15 23:31:13 ---- D ---- D: \ Documents and Settings \ Burhan \ Application Data \ limewire 2008/12/15 23:03:16 ---- SHD ---- D: \ FOUND.161 2008/12/15 16:52:14 ---- SHD ---- D: \ FOUND.160 2008/12/13 13:47:12 ---- SHD ---- D: \ FOUND.159 2008/12/10 21:05:58 ---- SHD ---- D: \ FOUND.158 2008/12/09 23:27:12 ---- D ---- D: \ Documents and Settings \ Burhan \ Application Data \ J River 2008/12/09 13:10:10 ---- D ---- D: \ Program Files \ Common Files \ NSV 2008/12/06 05:52:44 ---- SHD ---- D: \ FOUND.157 2008/12/06 01:43:41 ---- N ---- D: \ WINDOWS \ system32 \ vxblock.dll 2008/12/06 01:43:41 ---- N ---- D: \ WINDOWS \ system32 \ pxwave.dll 2008/12/06 01:43:41 ---- N ---- D: \ WINDOWS \ system32 \ pxmas.dll 2008/12/06 01:43:41 ---- N ---- D: \ WINDOWS \ system32 \ pxhpinst.exe 2008/12/06 01:43:41 ---- N ---- D: \ WINDOWS \ system32 \ pxdrv.dll 2008/12/06 01:43:40 ---- N ---- D: \ WINDOWS \ system32 \ px.dll 2008/12/06 01:43:14 ---- D ---- D: \ Program Files \ Winamp 2008/12/06 01:43:14 ---- ---- D: \ WINDOWS \ winamp.ini 2008/12/05 14:40:22 ---- D ---- D: \ Documents and Settings \ Burhan \ Application Data \ Netscape 2008/12/05 14:39:56 ---- D ---- D: \ Program Files \ Netscape 2008/12/04 17:34:26 ---- SHD ---- D: \ FOUND.156 2008/12/04 08:55:46 ---- SHD ---- D: \ FOUND.155 2008/12/02 22:24:47 ---- D ---- D: \ Documents and Settings \ Burhan \ Application Data \ InstallShield ====== Saraksts failus / mapes maina pēdējā 1 mēnesis ====== 2008/12/31 05:00:54 ---- N ---- D: \ WINDOWS \ SchedLgU.Txt 2008/12/24 22:49:44 ---- ---- D: \ WINDOWS \ ModemLog_Smart Link 56K Voice Modem.txt ====== Saraksts vadītāju (R = Skriešana, S = Apturēts, 0 = Boot, 1 = System, 2 = Auto, 3 = Demand, 4 = Disabled )====== R1 P3 Intel PentiumIII Processor Driver; D: \ WINDOWS \ system32 \ drivers \ p3.sys [2004/08/03 42.496] R1 SASDIFSV; SASDIFSV; \? \ D: \ Program Files \ SUPERAntiSpyware \ SASDIFSV.SYS [] R1 SASKUTIL; SASKUTIL; \? \ D: \ Program Files \ SUPERAntiSpyware \ SASKUTIL.sys [] R1 WS2IFSL; Windows Socket 2,0 Non-IFS Service Provider Support Environment; D: \ WINDOWS \ System32 \ drivers \ ws2ifsl.sys [2001/08/23 12.032] R2 AVFilter; AVFilter, D: \ WINDOWS \ system32 \ drivers \ AVFilter.sys [2008/02/12 21.904] R2 dmsmbios; dmsmbios; \? \ D: \ WINDOWS \ system32 \ dmsmbios.sys [] R3 ac97intc, Intel (R) 82.801 Audio Driver Install dienests (WDM), D: \ WINDOWS \ system32 \ drivers \ ac97intc.sys [2001/08/17 96.256] R3 AVHook; AVHook, D: \ WINDOWS \ system32 \ drivers \ AVHook.sys [2007/12/06 28.568] R3 AVRec; AVRec, D: \ WINDOWS \ system32 \ drivers \ AVRec.sys [2007/12/06 21.912] R3 EL90XBC; 3Com EtherLink XL 90XB / C Adapter Driver; D: \ WINDOWS \ system32 \ drivers \ el90xbc5.sys [2001/08/17 66.591] R3 i81x; i81x, D: \ WINDOWS \ system32 \ drivers \ i81xnt5.sys [2004/08/03 161.020] R3 MODEMCSA; Unimodem Streaming Filtrs Device, D: \ WINDOWS \ system32 \ drivers \ MODEMCSA.sys [2001/08/17 16.128] R3 Mtlmnt5; Mtlmnt5, D: \ WINDOWS \ system32 \ drivers \ Mtlmnt5.sys [2004/08/03 126.686] R3 Slntamr; Smart Link 56K Modem Driver; D: \ WINDOWS \ system32 \ drivers \ slntamr.sys [2004/08/03 404.990] R3 SlWdmSup; SlWdmSup, D: \ WINDOWS \ system32 \ drivers \ SlWdmSup.sys [2004/08/03 13.240] R3 usbhub; USB2 Enabled Hub, D: \ WINDOWS \ system32 \ drivers \ Usbhub.sys [2004/08/03 57.600] R3 usbuhci; Microsoft USB Universal Host Controller Miniport Driver; D: \ WINDOWS \ system32 \ drivers \ usbuhci.sys [2004/08/03 20.480] S1 b88b9e8e; b88b9e8e, D: \ WINDOWS \ System32 \ drivers \ b88b9e8e.sys [2008/08/05 109.150] S3 AvFlt; Antivirus Filter Driver; D: \ WINDOWS \ system32 \ drivers \ av5flt.sys [] S3 CCDECODE; Closed Caption Decoder; D: \ WINDOWS \ system32 \ drivers \ CCDECODE.sys [2004/08/03 17.024] S3 iAimFP0; iAimFP0, D: \ WINDOWS \ system32 \ drivers \ wADV01nt.sys [2004/08/03 12.415] S3 iAimFP1; iAimFP1, D: \ WINDOWS \ system32 \ drivers \ wADV02NT.sys [2004/08/03 12.127] S3 iAimFP2; iAimFP2, D: \ WINDOWS \ system32 \ drivers \ wADV05NT.sys [2004/08/03 11.775] S3 iAimFP3; iAimFP3, D: \ WINDOWS \ system32 \ drivers \ wSiINTxx.sys [2004/08/03 12.063] S3 iAimFP4; iAimFP4, D: \ WINDOWS \ system32 \ drivers \ wVchNTxx.sys [2004/08/03 19.455] S3 iAimFP5; iAimFP5, D: \ WINDOWS \ system32 \ drivers \ wADV07nt.sys [2004/08/03 11.807] S3 iAimFP6; iAimFP6, D: \ WINDOWS \ system32 \ drivers \ wADV08nt.sys [2004/08/03 11.295] S3 iAimFP7; iAimFP7, D: \ WINDOWS \ system32 \ drivers \ wADV09nt.sys [2004/08/03 11.871] S3 iAimTV0; iAimTV0, D: \ WINDOWS \ system32 \ drivers \ wATV01nt.sys [2004/08/03 29.311] S3 iAimTV1; iAimTV1, D: \ WINDOWS \ system32 \ drivers \ wATV02NT.sys [2004/08/03 19.551] S3 iAimTV3; iAimTV3, D: \ WINDOWS \ system32 \ drivers \ wATV04nt.sys [2004/08/03 33.599] S3 iAimTV4; iAimTV4, D: \ WINDOWS \ system32 \ drivers \ wCh7xxNT.sys [2004/08/03 23.615] S3 iAimTV5; iAimTV5, D: \ WINDOWS \ system32 \ drivers \ wATV10nt.sys [2004/08/03 25.471] S3 iAimTV6; iAimTV6, D: \ WINDOWS \ system32 \ drivers \ wATV06nt.sys [2004/08/03 22.271] S3 MBAMSwissArmy; MBAMSwissArmy; \? \ D: \ WINDOWS \ system32 \ drivers \ mbamswissarmy.sys [] S3 MSTEE; Microsoft Streaming Tee / Sink-to-Sink Converter, D: \ WINDOWS \ system32 \ drivers \ MSTEE.sys [2004/08/03 5.504] S3 Mtlstrm; Mtlstrm, D: \ WINDOWS \ system32 \ drivers \ Mtlstrm.sys [2004/08/03 1.309.184] S3 NABTSFEC; NABTS / FEC VBI Codec, D: \ WINDOWS \ system32 \ drivers \ NABTSFEC.sys [2004/08/03 85.376] S3 NdisIP; Microsoft TV / Video Connection, D: \ WINDOWS \ system32 \ drivers \ NdisIP.sys [2004/08/03 10.880] S3 nmwcd; Nokia USB Phone Parent, D: \ WINDOWS \ system32 \ drivers \ nmwcd.sys [2007/02/22 137.216] S3 nmwcdc; Nokia USB Generic, D: \ WINDOWS \ system32 \ drivers \ nmwcdc.sys [2007/02/22 8.320] S3 nmwcdcj; Nokia USB Port; D: \ WINDOWS \ system32 \ drivers \ nmwcdcj.sys [2007/02/22 12.288] S3 nmwcdcm; Nokia USB Modem, D: \ WINDOWS \ system32 \ drivers \ nmwcdcm.sys [2007/02/22 12.288] S3 NtMtlFax; NtMtlFax, D: \ WINDOWS \ system32 \ drivers \ NtMtlFax.sys [2004/08/03 180.360] S3 SASENUM; SASENUM; \? \ D: \ Program Files \ SUPERAntiSpyware \ SASENUM.SYS [] S3 SBRE, SBRE; \? \ D: \ WINDOWS \ system32 \ drivers \ SBREdrv.sys [] S3 SLIP; BDA Slip De-Framer, D: \ WINDOWS \ system32 \ drivers \ SLIP.sys [2004/08/03 11.136] S3 SlNtHal; SlNtHal, D: \ WINDOWS \ system32 \ drivers \ Slnthal.sys [2004/08/03 95.424] S3 streamip; BDA IPSink, D: \ WINDOWS \ system32 \ drivers \ StreamIP.sys [2004/08/03 15.360] S3 usbprint; Microsoft USB PRINTER klasē; D: \ WINDOWS \ system32 \ drivers \ usbprint.sys [2004/08/03 25.856] S3 USBSTOR; USB Mass Storage Driver; D: \ WINDOWS \ system32 \ drivers \ USBSTOR.SYS [2004/08/03 26.496] S3 WpdUsb; WpdUsb, D: \ WINDOWS \ System32 \ Drivers \ wpdusb.sys [2004/08/11 18.944] S3 WSTCODEC, Pasaules Standard Teleteksts Codec, D: \ WINDOWS \ system32 \ drivers \ WSTCODEC.SYS [2004/08/03 19.328] S3 XIRLINK; IBM PC Camera, D: \ WINDOWS \ system32 \ drivers \ C-itnt.sys [1999/10/19 435.655] ====== Pakalpojumu sarakstu (R = Skriešana, S = Apturēts, 0 = Boot, 1 = System, 2 = Auto, 3 = Demand, 4 = Disabled )====== R2 MDM; Machine Debug Manager, D: \ Program Files \ Common Files \ Microsoft Shared \ VS7DEBUG \ MDM.EXE [2003/06/19 322.120] R2 UMWdf; Windows Lietotājs Mode Driver Framework, D: \ WINDOWS \ system32 \ wdfmgr.exe [2004/08/11 38.912] S2 Distributed; Distributed, D: \ Program Files \ Common Files \ Microsoft Shared \ MSINFO \ ServerNet.exe [] S2 PCTAVSvc; PC Tools AntiVirus Engine, D: \ Program Files \ PC Tools AntiVirus \ PCTAVSvc.exe [2008/09/23 995.520] S2 SLService; SmartLinkService, D: \ WINDOWS \ system32 \ slserv.exe [2004/08/04 73.796] S3 AresChatServer; Ares tērzētavu serveris, D: \ Program Files \ Ares \ chatServer.exe [2007/03/20 263.168] S3 aspnet_state; ASP.NET Valsts dienests D: \ WINDOWS \ Microsoft.NET \ Framework \ v2.0.50727 \ aspn et_state.exe [2005/09/23 29.896] S3 clr_optimization_v2.0.50727_32;. NET Runtime Optimization Service v2.0.50727_X86, D: \ WINDOWS \ Microsoft.NET \ Framework \ v2.0.50727 \ MSCO rsvw.exe [2005/09/23 66.240] S3 Ose; Office Source Engine, D: \ Program Files \ Common Files \ Microsoft Shared \ Source Engine \ OSE.EXE [2003/07/28 89.136] S3 ServiceLayer; ServiceLayer, D: \ Program Files \ PC Connectivity Solution \ ServiceLayer.exe [2007/06/15 300.544] S3 usnjsvc; Messenger Sharing Folders USN Vēstnesis Reader pakalpojumu, D: \ Program Files \ MSN Messenger \ usnsvc.exe [2007/01/19 97.136] S3 WLSetupSvc; Windows Live Setup dienests D: \ Program Files \ Windows Live \ Installer \ WLSetupSvc.exe [2007/10/25 266.240] ----------------- EOF ----------------- |
|
#4
| |||
| |||
| info.txt logfile izlases ir sistēmas informācijas rīks 1,02 2008/09/26 23:02:40 ====== Uninstall saraksts ====== -> D: \ WINDOWS \ IsUninst.exe-f "D: \ Program Files \ IbmPcCamera \ Uninst.isu" -> rundll32.exe setupapi.dll, InstallHinfSection DefaultUninstall 132 D: \ WINDOWS \ INF \ PCHealth.inf ACDSee -> D: \ PROGRA ~ 1 \ ACDSYS ~ 1 \ ACDSee \ UNWISE.EXE D: \ PROGRA ~ 1 \ ACDSYS ~ 1 \ ACDSee \ INSTALL.LOG Adobe Flash Player ActiveX -> D: \ WINDOWS \ system32 \ Macromed \ Flash \ uninstall_acti veX.exe Adobe Flash Player Plugin -> D: \ WINDOWS \ system32 \ Macromed \ Flash \ uninstall_plug in.exe AIM 6 -> D: \ Program Files \ AIM6 \ uninst.exe Ares 2.0.9 -> "D: \ Program Files \ Ares \ uninstall.exe" Astro123 v1.40--> "D: \ Program Files \ Astro123 \ unins000.exe" Axialis AX-Icons 4.5 -> D: \ Program Files \ Axialis \ AX-Icons \ UnInstall.exe "AX-Ikonas, 4.5" "AXIcons.exe" CCleaner (noņemt tikai )-->" D: \ Program Files \ CCleaner \ uninst.exe " CDisplay 1.8 -> "D: \ Program Files \ CDisplay \ unins000.exe" Download Accelerator Plus -> D: \ PROGRA ~ 1 \ DAP \ UNWISE.EXE D: \ PROGRA ~ 1 \ DAP \ INSTALL.LOG ESET Online Scanner -> D: \ WINDOWS \ system32 \ OnlineScannerUninstaller.ex e ffdshow [rev 2.019] [2008/06/22 ]-->" D: \ Program Files \ ffdshow \ unins000.exe " Flash Studio PRO Trial -> "D: \ Program Files \ Flash Studio Pro Trial \ unins000.exe" FLV Player 2.0, būvēt 24 -> C: \ Program Files \ FLV Player \ uninst.exe Foxit Reader -> C: \ Program Files \ Foxit Software \ Foxit Reader \ Uninstall.exe Glary Registry Repair 2.9 -> "D: \ Program Files \ Glary Registry Repair \ unins000.exe" Google Earth -> Msiexec.exe / I (1D14373E-7.970-4F2F-A467-ACA4F0EA21E3) Google Talk (noņemt tikai )-->" D: \ Program Files \ Google \ Google Talk \ uninstall.exe " Google Toolbar Internet Explorer -> Msiexec.exe / I (DBEA1034-5.882-4A88-8.033-81C4EF0CFA29) Google Toolbar Internet Explorer -> regsvr32 / u / s "d: \ Program Files \ Google \ googletoolbar2.dll" HijackThis 2.0.2 -> "D: \ Documents and Settings \ Burhan \ My Documents \ ALL Programmatūra \ HijackThis.exe" / uninstall Labojumfailu Windows XP (KB915865 )-->" D: \ WINDOWS \ $ NtUninstallKB915865 $ \ spuninst \ spunin st.exe " Internet Download Manager -> D: \ Program Files \ Internet Download Manager \ Uninstall.exe Malwarebytes "Anti-Malware ->" D: \ Program Files \ Malwarebytes "Anti-Malware \ unins000.exe" Microsoft National Language Support Downlevel API -> "D: \ WINDOWS \ $ NtServicePackUninstallNLSDownlevelMa pping $ \ spuninst \ Spuninst.exe" Microsoft Office Excel Viewer 2003 -> Msiexec.exe / I (90.840.409-6.000-11D3-8CFE-0150048383C9) Microsoft Office XP Professional ar FrontPage -> Msiexec.exe / I (90280409-6000-11D3-8CFE-0050048383C9) Microsoft Visual Basic 6,0 Enterprise Edition -> "D: \ Program Files \ Microsoft Visual Studio \ VB98 \ Setup \ 1.033 \ Setup.exe" Microsoft Web Publishing Wizard 1,53 -> RunDll32 ADVPACK.DLL, LaunchINFSection D: \ WINDOWS \ INF \ wpie3x86.inf, WebPostUninstall Mobysaurus Thesaurus -> "D: \ WINDOWS \ system32 \ SpoonUninstall.exe" <uninstall> D: \ WINDOWS \ system32 \ SpoonUninstall-Mobysaurus Thesaurus.dat Nokia Connectivity Cable Driver -> Msiexec.exe / X (11964613-805F-432D-A12B-169554B793E7) Nokia Multimedia Player -> D: \ PROGRA ~ 1 \ Common ~ 1 \ ierīkot ~ 1 \ Driver \ 7 \ INTEL3 ~ 1 \ I Driver.exe / M (4D6183C0-005C-4B1F-8.261-4B0F71F1C4A5) Nokia PC Suite -> D: \ Documents and Settings \ All Users \ Application Data \ Iekārtas \ (A982E6CC-9F0D-4.948-9B18-BDFD55DE4A72) \ Nokia_PC_Suite_6_84_10_3_EA.exe Nokia PC Suite -> Msiexec.exe / I (A982E6CC-9F0D-4.948-9B18-BDFD55DE4A72) Opera 9,51 -> Msiexec.exe / X (179624B1-2.683-45ED-965A-B72189EB5820) PC Connectivity Solution -> Msiexec.exe / I (99A40651-0BC2-4.095-8F9A-A40FAB224FEF) PowerDVD -> RunDll32 D: \ PROGRA ~ 1 \ Common ~ 1 \ ierīkot ~ 1 \ motors \ 6 \ INTEL3 ~ 1 \ Ct or.dll, LaunchSetup "D: \ Program Files \ InstallShield Installation Information \ (6811CAA0-BF12 - 11D4-9EA1-0050BAE317E1) \ Setup.exe "-uninstall QuickTime -> Msiexec.exe / I (F07B861C-72B9-40A4-8B1A-AAED4C06A7E8) RichFX Player -> RunDll32 D: \ PROGRA ~ 1 \ Common ~ 1 \ RichFX \ npvpg004.dll, Uninstall _Player Skype ™ 3.8 -> Msiexec.exe / X (5C82DAE5-6EB0-4.374-9.254-BE3319BA4E82) LAIKI Izglītība - Level Fizika -> D: \ WINDOWS \ uninst.exe-f "D: \ Program Files \ LAIKI Izglītība \ Level \ fizikas \ DeIsL2.isu"-CD: \ PROGRA ~ 1 \ TIMESE ~ 1 \ ALEVEL ~ 1 \ Fizika \ _ISREG32.DL L TZ Connection Booster 2.6 -> "D: \ Program Files \ TZ Connection Booster \ unins000.exe" USB Drive AntiVirus 2.3 -> "D: \ Program Files \ USBAntiVirus \ unins000.exe" Viedoklis Media Player -> D: \ Program Files \ Viewpoint \ Viewpoint Media Player \ mtsAxInstaller.exe / u Windows Driver Package - Nokia (WUDFRd) wpd (06/01/2007 6.84.33.0) -> D: \ PROGRA ~ 1 \ DIFX \ 270581355A767BF1 \ dpinst.exe / u D: \ WINDOWS \ system32 \ DRVSTORE \ pccswpddri_044C8712DB 44F83D9DE6C376991EE9254E0A69E4 \ pccswpddriver.inf Windows Driver Package - Nokia Modem (02/15/2007 3,1) -> D: \ PROGRA ~ 1 \ DIFX \ 270581355A767BF1 \ dpinst.exe / u D: \ WINDOWS \ system32 \ DRVSTORE \ pccs_bluet_8B37DC7291 8CCD58A6EC20373AF6242B037A293B \ pccs_bluetooth.inf Windows Driver Package - Nokia Modem (02/15/2007 3,1) -> D: \ PROGRA ~ 1 \ DIFX \ 270581355A767BF1 \ dpinst.exe / u D: \ WINDOWS \ system32 \ DRVSTORE \ pccs_bluet_F12A08B6F7 76984A95553486F64C541356F86E38 \ pccs_bluetooth.inf Windows Driver Package - Nokia Modem (05/24/2007 6.84.0.1) -> D: \ PROGRA ~ 1 \ DIFX \ 270581355A767BF1 \ dpinst.exe / u D: \ WINDOWS \ system32 \ DRVSTORE \ nokbtmdm_5E1541AFF1E1 EA3554CE566743CCAD323ED1C108 \ nokbtmdm.inf Windows Installer 3.1 (KB893803 )-->" D: \ WINDOWS \ $ MSI31Uninstall_KB893803v2 $ \ spuninst \ Spuninst.exe " Windows Live uzstādītājs -> Msiexec.exe / X (A7E4ECCA-4A8E-4.258-8EC8-2DCCF5B11320) Windows Live Messenger -> Msiexec.exe / I (571700F0-DB9D-4B3A-B03D-35A14BB5939F) Windows Media Format Runtime -> "D: \ Program Files \ Windows Media Player \ wmsetsdk.exe" / UninstallAll Windows Media Player 10 -> "D: \ Program Files \ Windows Media Player \ Setup_wm.exe" / Uninstall WinRAR archiver -> D: \ Program Files \ WinRAR \ uninstall.exe Yahoo! Messenger -> D: \ PROGRA ~ 1 \ 'Yahoo! \ MESSEN ~ 1 \ UNWISE.EXE / UD: \ PROGRA ~ 1 \' Yahoo! \ MESSEN ~ 1 \ INSTALL.LOG ====== Vides mainīgie ====== "ComSpec" =% SystemRoot% \ system32 \ cmd.exe "Ceļš" =% systemroot% \ system32;% systemroot%% systemr oot% \ system32 \ wbem, D: \ Program Files \ PC Connectivity Solution, D: \ Program Files \ QuickTime \ QTSYSTEM "windir" =% SystemRoot% "FP_NO_HOST_CHECK" = NO "OS" = Windows_NT "PROCESSOR_ARCHITECTURE" = x86 "PROCESSOR_LEVEL" = 6 "PROCESSOR_IDENTIFIER" = x86 Family 6 Model 8 Stepping 10, GenuineIntel "PROCESSOR_REVISION" = 080a "NUMBER_OF_PROCESSORS" = 1 "PATHEXT" =. COM;. EXE,. LPTP;. CMD;. VBS,. VBE;. JS,. JSE;. WSF;. Wsh "TEMP" =% SystemRoot% \ TEMP "TMP" =% SystemRoot% \ TEMP "CLASSPATH" =., D: \ Program Files \ QuickTime \ QTSystem \ QTJava.zip "QTJAVA" = D: \ Program Files \ QuickTime \ QTSystem \ QTJava.zip ----------------- EOF ----------------- |
|
#5
| |||
| |||
| Malwarebytes "Anti-Malware 1,28 Database version: 1234 Windows 5.1.2600 Service Pack 2 12/31/2008 6:04:35 mbam-log-2008-12-31 (06-04-35). txt Scan type: Full Scan (D: \ |) Objekti skenēts: 107.121 Pagājušo laiku: 24 minūte (s), 0 second (s) Memory Processes Inficētie: 0 Memory Modules Inficētie: 0 Registry Keys Inficētie: 2 Reģistra vērtības Inficētie: 0 Registry Data Items Infected: 0 Mapes Inficētie: 0 Faili Inficētie: 0 Atmiņas procesi Inficētie: (No ļaunprātīgs preces konstatētas) Memory Modules Inficētie: (No ļaunprātīgs preces konstatētas) Registry Keys Inficētie: HKEY_CLASSES_ROOT \ AppID \ (bdbebf18-7.615-4.971-9ac3-bd6ffb7ad6c1) (Adware.WebDir) -> Karantīnā ievietotie un svītrots veiksmīgi. HKEY_CLASSES_ROOT \ AppID \ DLP.DLL (Trojan.BHO) -> Karantīnā ievietotie un svītrots veiksmīgi. Reģistra vērtības Inficētie: (No ļaunprātīgs preces konstatētas) Registry Data Items Infected: (No ļaunprātīgs preces konstatētas) Mapes Inficētie: (No ļaunprātīgs preces konstatētas) Faili Inficētie: (No ļaunprātīgs preces konstatētas) |
|
#6
| |||
| |||
| Open HijackThis un izvēlieties Vai sistēmas skenēšanu tikai. Vieta atzīme blakus šādiem ierakstiem: (ja ir) F2 - REG: SYSTEM.INI: Shell = Explorer.exe Svarīgi: Aizveriet visus atvērtos logus, izņemot HijackThis un pēc tam noklikšķiniet uz Fix pārbaudīja. Kad pabeigts, izbraukšanas HijackThis. ---------- Download ComboFix © by subs no vienas no saitēm. Pārliecinieties top saglabājiet to Desktop. Link # 1 Link # 2 ** Piezīme: Ir svarīgi, ka tā ir saglabāta tieši jūsu Desktop DO NOT palaist vēl! Piezīme: Instrukcijas turpmāk tika izveidota speciāli šim lietotājam. Ja Jums nav šī lietotāja, DO NOT ievērojiet šos norādījumus, jo tie varētu kaitēt jūsu sistēmas darbības principus Izdzēst šos failus / mapes, tas ir: 1. Doties uz Sākums > Skriet > Type Notepad.exe un noklikšķiniet uz OK atvērt Notepad. Tas vajag ir Notepad, nevis Wordpad. 2. Kopēt tekstu tālāk kodu ailē, uzsverot visu tekstu un nospiediet Ctrl + C Kods: Killall:: File:: D: \ FOUND.174 D: \ FOUND.173 D: \ FOUND.172 D: \ FOUND.171 D: \ FOUND.170 D: \ FOUND.169 D: \ FOUND.168 D: \ FOUND.167 D: \ FOUND.166 D: \ FOUND.165 D: \ FOUND.164 D: \ FOUND.163 D: \ FOUND.162 D: \ FOUND.161 D: \ FOUND.160 D: \ FOUND ,159 D: \ FOUND.158 D: \ FOUND.157 D: \ FOUND.156 D: \ FOUND.155 Registry: [-HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Explorer \ Browser Helper Objects \ (7E853D72 - 626A-48EC-A868-BA8D5E23E045)] [-HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Internet Explorer \ Toolbar] (DE9C389F-3.316-41A7-809B-AA305ED9D922) [-HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ CurrentVersion \ Explorer \ mountpoints2 \ ( dafa2220-8.123-11dd-aa9c-00065b298742)] 4. Pēc tam noklikšķiniet uz Fails > Glābt 5. Nosaukums failu CFScript.txt - Saglabāt failu darbvirsmā 6. Velciet CFScript (turiet peles kreiso pogu un velkot failu) un nometiet to (izlaide peles kreiso pogu) pārnes ComboFix.exe kā redzat attēlā zemāk. Svarīgi: Veic šo instrukciju uzmanīgi! ![]() ComboFix sāks izpildīt, vienkārši sekojiet instrukcijām. Pēc reboot (ja tā lūdz atsāknēšana), tā sagatavos log for you. Post (Combofix.txt), kas ieiet jūsu nākamo atbildi. Piezīme: Nav mouseclick ComboFix loga kamēr tas darbojas. Tas var izraisīt sistēmas iesaldēt |