Jump to content

Проблем с Task Manager


SURF_lady

Препоръчан пост

  • Отговори 140
  • Създадена
  • Последен отговор

ТОП потребители в тази тема

ТОП потребители в тази тема

Публикувани изображения

GMER 1.0.14.14536 - http://www.gmer.net

Rootkit scan 2010-05-24 11:03:55

Windows 5.1.2600 Service Pack 2

 

 

---- System - GMER 1.0.14 ----

 

SSDT d347bus.sys (PnP BIOS Extension/ ) ZwEnumerateKey [0xF72492A8]

SSDT d347bus.sys (PnP BIOS Extension/ ) ZwEnumerateValueKey [0xF7254910]

 

---- Devices - GMER 1.0.14 ----

 

Device \FileSystem\Ntfs \Ntfs 89E741F8

Device \FileSystem\Ntfs \Ntfs 89D732C8

 

AttachedDevice \FileSystem\Ntfs \Ntfs AVGIDSFilter.sys (IDS Application Activity Monitor Filter Driver./AVG Technologies CZ, s.r.o. )

AttachedDevice \Driver\Tcpip \Device\Ip avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)

AttachedDevice \Driver\Tcpip \Device\Tcp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)

AttachedDevice \Driver\Tcpip \Device\Udp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)

AttachedDevice \Driver\Tcpip \Device\RawIp avgtdix.sys (AVG Network connection watcher/AVG Technologies CZ, s.r.o.)

 

---- Modules - GMER 1.0.14 ----

 

Module _________ F71AB000-F71C3000 (98304 bytes)

 

---- EOF - GMER 1.0.14 ----

Link to comment
Сподели другаде

1. Виждам, че си с Windows XP SP2 и то при положение, че SP3 е излязъл преди повече от 2 годин. Силно препоръчително е да надградиш OS с този пакет: Windows XP Service Pack 3 Final. Той запушва множество дупки в сигурността на Windows XP. Добре е, да обновяваш OS най-малкото с критичните ъпдейти - и без това, за XP са оставени вече почти само такива.

2. Антивирусната ти е AVG. Актуална версия ли е? Не мисля, че AVG е много надеждно решение за защита, което и сам можеш да прецениш от дългото колкото Китайската стена log-че от MBAM. Разбира се, не казвам, че и ти нямаш заслуга за размерите му :) . Като по-добри варианти за безплатна защита от AVG, считам avast! Free Antivirus, Avira AntiVir Personal и Microsoft Security Essentials.

 

Периодичното сканиране с първите две програми, които те накарах да използваш, също е крачка в правилната посока.

Link to comment
Сподели другаде

Ето го и логът от SUPERAntiSpyware

 

 

 

SUPERAntiSpyware Scan Log

http://www.superantispyware.com

 

Generated 05/24/2010 at 03:24 PM

 

Application Version : 4.37.1000

 

Core Rules Database Version : 4900

Trace Rules Database Version: 2712

 

Scan type : Complete Scan

Total Scan Time : 01:58:41

 

Memory items scanned : 415

Memory threats detected : 0

Registry items scanned : 4970

Registry threats detected : 9

File items scanned : 19148

File threats detected : 64

 

Adware.Tracking Cookie

C:\Documents and Settings\Administrator\Cookies\administrator@atdmt[1].txt

C:\Documents and Settings\Administrator\Cookies\administrator@at.atwola[1].txt

C:\Documents and Settings\Administrator\Cookies\administrator@chitika[2].txt

C:\Documents and Settings\Administrator\Cookies\administrator@atwola[1].txt

C:\Documents and Settings\Administrator\Cookies\administrator@avgtechnologies.112.2o7[1].txt

C:\Documents and Settings\Administrator\Cookies\administrator@microsoftwga.112.2o7[1].txt

C:\Documents and Settings\Administrator\Cookies\administrator@account.garena[2].txt

C:\Documents and Settings\Administrator\Cookies\administrator@account.impulse[1].txt

C:\Documents and Settings\Administrator\Cookies\administrator@avgtechnologies.112.2o7[2].txt

C:\Documents and Settings\Administrator\Cookies\administrator@content.yieldmanager[1].txt

C:\Documents and Settings\Administrator\Cookies\administrator@content.yieldmanager[3].txt

C:\Documents and Settings\Administrator\Cookies\administrator@imrworldwide[1].txt

C:\Documents and Settings\Administrator\Cookies\administrator@interclick[1].txt

C:\Documents and Settings\Administrator\Cookies\administrator@interclick[2].txt

C:\Documents and Settings\Administrator\Cookies\administrator@microsoftwga.112.2o7[2].txt

C:\Documents and Settings\Administrator\Cookies\administrator@microsoftwga.112.2o7[3].txt

C:\Documents and Settings\Administrator\Cookies\administrator@microsoftwindows.112.2o7[1].txt

C:\Documents and Settings\Administrator\Cookies\administrator@microsoftwindows.112.2o7[2].txt

C:\Documents and Settings\Administrator\Cookies\administrator@statcounter[1].txt

C:\Documents and Settings\Administrator\Cookies\administrator@www.pornhub[1].txt

 

Adware.MyWebSearch/FunWebProducts

HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE

HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE#NextInstance

HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000

HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#Service

HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#Legacy

HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#ConfigFlags

HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#Class

HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#ClassGUID

HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#DeviceDesc

 

Trojan.Unclassified/Loader-Suspicious

C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\MY DOCUMENTS\MOUNT&BLADE\LOADER.EXE

C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\DESKTOP\GAMES\SHORTCUT TO LOADER.LNK

 

Adware.MyWebSearch

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP216\A0236381.DLL

 

Trojan.Agent/Gen-Nullo[short]

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236474.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236472.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236473.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236492.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236475.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236476.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236477.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236478.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236479.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236480.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236481.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236482.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236483.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236485.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236486.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236487.SCR

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236488.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236489.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236490.EXE

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236491.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236493.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236494.EXE

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236495.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236496.EXE

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236497.EXE

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236498.EXE

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236499.EXE

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236500.EXE

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236501.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236502.EXE

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236503.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236504.EXE

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236505.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236515.SCR

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236521.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236522.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP217\A0236523.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP218\A0237535.EXE

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP218\A0237536.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP218\A0237537.DLL

C:\SYSTEM VOLUME INFORMATION\_RESTORE{8E63C342-619D-422E-B550-911F9BF5E9DC}\RP218\A0237554.DLL

Link to comment
Сподели другаде

Хора да ви питам, значи като пусна Windows XP Service Pack 3 Final почва да се инсталва

и след 4-5 мин излиза ерор в който пише, че неможе да продължи инсталирането и спира няколко пъти пробвам

и всеки път така става.Какво мога да направя за да го инсталирам този пакет?

Link to comment
Сподели другаде

Нищо. Сигурно си с нелегално активирано копие на Windows XP SP2? В този случай съм виждал описаният от теб проблем. Намери си Windows XP SP3 и го инсталирай по някое време.
Link to comment
Сподели другаде

  • 5 months later...

здравейте ето и моя проблем след като натисна контролната комбинация ми излиза ето това ,прикачвам и снимка от ц/windows/system32/taskmanager ако някой прикачи тоя файл ще бъда благодарен да го изпробвам

Windows Xp SP3 операционна система сканирано с есет нод мбам и сас и трите нищо не намериха

post-12359-011300400 1288128781_thumb.jpg

post-12359-079048700 1288128821_thumb.jpg

Link to comment
Сподели другаде

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Гост
Отговори на тази тема

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   Не можете да качите директно снимка. Качете или добавете изображението от линк (URL)

Loading...

×
×
  • Създай ново...