Armageddon8 Публикувано Юли 12, 2008 Report Share Публикувано Юли 12, 2008 Уиндоса си беше инсталиран в drive C - сега папката ВЪОБЩЕ я НЯМА!!!!!!!!!!!!!!!!!!! :punish: :giggle: :lookaround: Туко що го установих. Нищо не съм трил, нито съм го местил....... :crosseyes1: Даже не знам как може да изчезне цяла папка с уин...и той да си работи.....нещо не чаткам.....Малко помощ ако може.... Цитирай Link to comment Сподели другаде More sharing options...
dipg Публикувано Юли 12, 2008 Report Share Публикувано Юли 12, 2008 Да се включа и аз с проблем с Виста.Инсталирах преди 2 дни SuperaAntiSpyware и isyscleaner pro.Днес ги пуснах в този ред,т.е. първо Суперата,компютъра се рестартира,след това пуснах и втората.Изтрих всичко,което беше намерила за триене и каква ми беше изненада ,отваряйки Експлоръра,да прочета съобщението “Интернет Експлорър престана да функционира“.Освен това има и още един странен проблем...при стартиране на компютъра се появява съобщение “Грешка при зареждане на C\users\h\AppData\Local\Temp\ooknaixf.dll.Процесът е прекратен.“Потърсих в Гугъл...дори той не намира подобен файл.Дали поради тази причина цялата система спря да работи?!?А и как да я намеря тая директория?Абсолютен профан съм на тема компютри,по този повод даже не мога да си цъкна монитора,за да го покажа тук Благодаря предварително! Армагедон,извинявай че така нахълтвам... Цитирай Link to comment Сподели другаде More sharing options...
AMD3000 Публикувано Юли 12, 2008 Report Share Публикувано Юли 12, 2008 Абе кво ти пука като работи.........Пробвай да рестартираш ПС то и виж пак .И на мен ми се е случвало трия някой файйл от коша и като погледна той пълен и като рестартирам и се оправя.ОООпс сори не видях снимката ми тоя Уиндоус.олд за кво ти седи Цитирай Link to comment Сподели другаде More sharing options...
dipg Публикувано Юли 12, 2008 Report Share Публикувано Юли 12, 2008 Logfile of HijackThis v1.99.1Scan saved at 22:43:49, on 12-07-2008Platform: Unknown Windows (WinNT 6.00.1904)MSIE: Internet Explorer v7.00 (7.00.6000.16681) Running processes:C:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Windows\SYSTEM32\taskeng.exeC:\Program Files\Windows Defender\MSASCui.exeC:\Windows\RtHDVCpl.exeC:\Program Files\Keyboard & Mouse Driver\StartAutorun.exeC:\Program Files\Alwil Software\Avast4\ashDisp.exeC:\Windows\System32\igfxtray.exeC:\Windows\System32\hkcmd.exeC:\Windows\System32\igfxpers.exeC:\Program Files\Keyboard & Mouse Driver\KMConfig.exeC:\Program Files\Windows Sidebar\sidebar.exeC:\Program Files\BitComet\BitComet.exeC:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exeC:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exeC:\Windows\system32\igfxsrvc.exeC:\Program Files\Windows Media Player\wmpnscfg.exeC:\Program Files\Keyboard & Mouse Driver\KMProcess.exeC:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exeC:\Program Files\Windows Sidebar\sidebar.exeC:\Windows\System32\mobsync.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Windows\system32\rundll32.exeC:\Users\h\AppData\Local\Temp\hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.abv.bg/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhostO2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll (file missing)O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dllO3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dllO3 - Toolbar: (no name) - {80123684-A222-4009-8220-A867294D6DE8} - (no file)O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dllO4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hideO4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exeO4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"O4 - HKLM\..\Run: [KMCONFIG] C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe KMConfig.exeO4 - HKLM\..\Run: [skytel] Skytel.exeO4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exeO4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exeO4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exeO4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exeO4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"O4 - HKLM\..\Run: [WinPCDoctor] C:\Program Files\WinPCDoctor\SysRep.exeO4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exeO4 - HKLM\..\Run: [DelayLoad] C:\Users\h\AppData\Local\Temp\atmadm2.exeO4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRunO4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exeO4 - HKCU\..\Run: [bitComet] "C:\Program Files\BitComet\BitComet.exe"O4 - HKCU\..\Run: [indxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hiddenO4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorunO4 - HKCU\..\Run: [d0ce4486] rundll32.exe "C:\Users\h\AppData\Local\Temp\ooknaixf.dll",bO4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exeO4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXEO8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htmO8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htmO8 - Extra context menu item: Download videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htmO8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dllO9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.safeiegate.com/redirect.php (file missing)O9 - Extra 'Tools' menuitem: IE Anti-Spyware - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.safeiegate.com/redirect.php (file missing)O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLLO9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll/206 (file missing)O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exeO9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exeO10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dllO10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dllO11 - Options group: [iNTERNATIONAL] International*O13 - Gopher Prefix: O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dllO18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLLO18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLLO20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dllO20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxdev.dllO23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exeO23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exeO23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exeO23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exeO23 - Service: SQL Server (MSSMLBIZ) (MSSQL$MSSMLBIZ) - Unknown owner - c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sMSSMLBIZ (file missing)O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exeO23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exeO23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing) Маркирах тези.Рестартирах.Няма го съобщението,но нямам Експлорър. Това ми излезе с Ауторънс-HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run + Adobe Reader Speed Launcher Adobe Acrobat SpeedLauncher Adobe Systems Incorporated c:\program files\adobe\reader 8.0\reader\reader_sl.exe+ avast! avast! service GUI component ALWIL Software c:\program files\alwil software\avast4\ashdisp.exe+ DelayLoad File not found: C:\Users\h\AppData\Local\Temp\atmadm2.exe+ HotKeysCmds hkcmd Module Intel Corporation c:\windows\system32\hkcmd.exe+ IgfxTray igfxTray Module Intel Corporation c:\windows\system32\igfxtray.exe+ KMCONFIG DRIVER AUTORUN UASSOFT.COM c:\program files\keyboard & mouse driver\startautorun.exe+ NBKeyScan File not found: C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe+ NeroFilterCheck NeroCheck Nero AG c:\program files\common files\ahead\lib\nerocheck.exe+ Persistence persistence Module Intel Corporation c:\windows\system32\igfxpers.exe+ RtHDVCpl HD Audio Control Panel Realtek Semiconductor c:\windows\rthdvcpl.exe+ Skytel Realtek Voice Manager Realtek Semiconductor Corp. c:\windows\skytel.exe+ WinPCDoctor File not found: C:\Program Files\WinPCDoctor\SysRep.exeHKCU\Software\Microsoft\Windows\CurrentVersion\Run + BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} Nero Home Nero AG c:\program files\common files\ahead\lib\nmbgmonitor.exe+ BitComet BitComet - a BitTorrent Client www.BitComet.com c:\program files\bitcomet\bitcomet.exe+ DAEMON Tools Lite DAEMON Tools Lite DT Soft Ltd c:\program files\daemon tools lite\daemon.exe+ IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} File not found: C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe+ LightScribe Control Panel Hewlett-Packard Company c:\program files\common files\lightscribe\lightscribecontrolpanel.exe+ swg GoogleToolbarNotifier Google Inc. c:\program files\google\googletoolbarnotifier\1.2.1128.5462\googletoolbarnotifier.exeHKLM\SOFTWARE\Classes\Protocols\Handler + skype4com Skype for COM API Skype Technologies c:\program files\common files\skype\skype4com.dllHKLM\SOFTWARE\Microsoft\Active Setup\Installed Components + LightScribe Control Panel Hewlett-Packard Company c:\program files\common files\lightscribe\lsrunonce.exeHKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks + awtnewvm.dll c:\windows\system32\awtnewvm.dll+ SABShellExecuteHook Class ShellExecuteHook SuperAdBlocker.com c:\program files\superantispyware\sasseh.dllHKLM\Software\Classes\*\ShellEx\ContextMenuHandlers + avast avast! Shell Extension ALWIL Software c:\program files\alwil software\avast4\ashshell.dll+ Cover Designer Cover Designer Nero AG c:\program files\nero\nero 7\nero coverdesigner\coveredextension.dll+ IZArcCM c:\program files\izarc\izarccm.dll+ NBShellHook Class Nero BackItUp Nero AG c:\program files\nero\nero 7\nero backitup\nbshell.dll+ SASContextMenu Class SUPERAntiSpyware Context Menu Extension SUPERAntiSpyware.com c:\program files\superantispyware\sasctxmn.dllHKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers + avast avast! Shell Extension ALWIL Software c:\program files\alwil software\avast4\ashshell.dll+ NBShellHook Class Nero BackItUp Nero AG c:\program files\nero\nero 7\nero backitup\nbshell.dllHKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers + IZArcCM c:\program files\izarc\izarccm.dll+ SASContextMenu Class SUPERAntiSpyware Context Menu Extension SUPERAntiSpyware.com c:\program files\superantispyware\sasctxmn.dllHKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers + igfxcui igfxpph Module Intel Corporation c:\windows\system32\igfxpph.dllHKLM\Software\Classes\Folder\Shellex\ColumnHandlers + NeroDigitalColumnHandler Class Nero Digital Shell Extension Nero AG c:\program files\common files\ahead\lib\nerodigitalext.dll+ PDF Shell Extension PDF Shell Extension Adobe Systems, Inc. c:\program files\common files\adobe\acrobat\activex\pdfshell.dllHKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved + avast avast! Shell Extension ALWIL Software c:\program files\alwil software\avast4\ashshell.dll+ IZArc DragDrop Menu c:\program files\izarc\izarccm.dll+ IZArc Shell Context Menu c:\program files\izarc\izarccm.dll+ NeroCoverEd Live Icons Cover Designer Nero AG c:\program files\nero\nero 7\nero coverdesigner\coveredextension.dll+ NeroDigitalIconHandler Nero Digital Shell Extension Nero AG c:\program files\common files\ahead\lib\nerodigitalext.dll+ NeroDigitalPropSheetHandler Nero Digital Shell Extension Nero AG c:\program files\common files\ahead\lib\nerodigitalext.dllHKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects + BitComet Helper File not found: C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll+ Facilitador de Leitor de Link Adobe PDF Adobe PDF Helper for Internet Explorer Adobe Systems Incorporated c:\program files\common files\adobe\acrobat\activex\acroiehelper.dll+ Google Toolbar Helper Google IE Client Toolbar Google Inc. c:\program files\google\googletoolbar1.dllHKLM\Software\Microsoft\Internet Explorer\Toolbar + &Google Google IE Client Toolbar Google Inc. c:\program files\google\googletoolbar1.dll+ DAEMON Tools Toolbar ToolBand Module c:\program files\daemon tools toolbar\dttoolbar.dllHKLM\Software\Microsoft\Internet Explorer\Extensions + BitComet File not found: C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll/206+ ICQ6 ICQ Library ICQ, Inc. c:\program files\icq6\icq.exe+ IE Anti-Spyware File not found: http://www.safeiegate.com/redirect.phpTask Scheduler + \Microsoft\Windows\Wired\GatherWiredInfo c:\windows\system32\gatherwiredinfo.vbs+ \Microsoft\Windows\Wireless\GatherWirelessInfo c:\windows\system32\gatherwirelessinfo.vbsHKLM\System\CurrentControlSet\Services + aswUpdSv Осигурява авотматични обновявания на компонентите на avast!. ALWIL Software c:\program files\alwil software\avast4\aswupdsv.exe+ avast! Antivirus Управлява и изпълнява антивирусните услуги на avast! на този компютър. Това включва резидентна защита, клетката за вируси и планировчика. ALWIL Software c:\program files\alwil software\avast4\ashserv.exe+ KMWDSERVICE Keyboard And Mouse Communication Service UASSOFT.COM c:\program files\keyboard & mouse driver\kmwdsrv.exe+ LightScribeService Used by the LightScribe software components to support 3rd party disc labeling applications using the LightScribe COM Application Programming Interface (LSCAPI). This service needs to run for LightScribe direct disc labeling to work. Hewlett-Packard Company c:\program files\common files\lightscribe\lssrvc.exeHKLM\System\CurrentControlSet\Services + aswFsBlk avast! mini-filter driver (aswFsBlk) ALWIL Software c:\windows\system32\drivers\aswfsblk.sys+ aswMonFlt avast! mini-filter driver (aswMonFlt) ALWIL Software c:\windows\system32\drivers\aswmonflt.sys+ aswRdr avast! TDI RDR Driver ALWIL Software c:\windows\system32\drivers\aswrdr.sys+ aswSP avast! self protection module ALWIL Software c:\windows\system32\drivers\aswsp.sys+ aswTdi avast! TDI Filter Driver ALWIL Software c:\windows\system32\drivers\aswtdi.sys+ BIOS I/O Interface driver file BIOSTAR Group c:\windows\system32\drivers\bios.sys+ BrFiltLo Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver Brother Industries, Ltd. c:\windows\system32\drivers\brfiltlo.sys+ BrFiltUp Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver Brother Industries, Ltd. c:\windows\system32\drivers\brfiltup.sys+ BrUsbSer Brother USB Serial Driver Brother Industries Ltd. c:\windows\system32\drivers\brusbser.sys+ E1G60 Intel® PRO/1000 Adapter NDIS 6 deserialized driver Intel Corporation c:\windows\system32\drivers\e1g60i32.sys+ e4usbaw File not found: system32\DRIVERS\e4usbaw.sys+ ialm Intel Graphics Kernel Mode Driver Intel Corporation c:\windows\system32\drivers\igdkmd32.sys+ igfx Intel Graphics Kernel Mode Driver Intel Corporation c:\windows\system32\drivers\igdkmd32.sys+ IKANLOADER2 File not found: System32\Drivers\e4ldr.sys+ IntcAzAudAddService Realtek® High Definition Audio Function Driver Realtek Semiconductor Corp. c:\windows\system32\drivers\rtkvhda.sys+ IpInIp IP in IP Tunnel Driver File not found: system32\DRIVERS\ipinip.sys+ NwlnkFlt IPX Traffic Filter Driver File not found: system32\DRIVERS\nwlnkflt.sys+ NwlnkFwd IPX Traffic Forwarder Driver File not found: system32\DRIVERS\nwlnkfwd.sys+ RTL8023xp Realtek 10/100 NDIS 5.1 Driver Realtek Semiconductor Corporation c:\windows\system32\drivers\rtnicxp.sys+ SASDIFSV SASDIFSV.SYS SUPERAdBlocker.com and SUPERAntiSpyware.com c:\program files\superantispyware\sasdifsv.sys+ SASENUM SASENUM.SYS SUPERAdBlocker.com and SUPERAntiSpyware.com c:\program files\superantispyware\sasenum.sys+ SASKUTIL SASKUTIL.SYS SUPERAdBlocker.com and SUPERAntiSpyware.com c:\program files\superantispyware\saskutil.sys+ secdrv Macrovision SECURITY Driver Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K. c:\windows\system32\drivers\secdrv.sys+ sfdrv01 FrontLine Environment Driver Protection Technology (StarForce) c:\windows\system32\drivers\sfdrv01.sys+ sfhlp02 FrontLine Helper Driver Protection Technology (StarForce) c:\windows\system32\drivers\sfhlp02.sys+ sfsync02 StarForce Protection Synchronization Driver Protection Technology c:\windows\system32\drivers\sfsync02.sys+ sptd c:\windows\system32\drivers\sptd.sys+ sscdbus SAMSUNG USB Composite Device Driver MCCI c:\windows\system32\drivers\sscdbus.sys+ sscdmdfl SAMSUNG CDMA Modem Filter MCCI c:\windows\system32\drivers\sscdmdfl.sys+ sscdmdm SAMSUNG CDMA Modem Drivers MCCI c:\windows\system32\drivers\sscdmdm.sysHKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify + !SASWinLogon SUPERAntiSpyware WinLogon Processor SUPERAntiSpyware.com c:\program files\superantispyware\saswinlo.dll+ igfxcui igfxdev Module Intel Corporation c:\windows\system32\igfxdev.dllC:\Users\h\AppData\Local\Microsoft\Windows Sidebar\Settings.ini + Weather Underground Weather Underground's weather gadget. Receive weather conditions, animated radar, forecasts, severe weather alerts, and web cams for any location in the world -- delivered to your Sidebar. Weather Underground C:\Users\h\AppData\Local\Microsoft\Windows Sidebar\Gadgets\WundergroundVistaWidget[2].gadget\Gadget.xml+ Weather Underground Weather Underground's weather gadget. Receive weather conditions, animated radar, forecasts, severe weather alerts, and web cams for any location in the world -- delivered to your Sidebar. Weather Underground C:\Users\h\AppData\Local\Microsoft\Windows Sidebar\Gadgets\WundergroundVistaWidget[1].gadget\Gadget.xml Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Юли 12, 2008 Report Share Публикувано Юли 12, 2008 Уиндоса си беше инсталиран в drive C - сега папката ВЪОБЩЕ я НЯМА!!!!!!!!!!!!!!!!!!! :punish: :giggle: :lookaround: Туко що го установих. Нищо не съм трил, нито съм го местил....... :crosseyes1: Даже не знам как може да изчезне цяла папка с уин...и той да си работи.....нещо не чаткам.....Малко помощ ако може....Кажи какви програми си инсталирал преди да "изчезне" папката. Ако можеш, дай един списък на инсталирания софтуер (става с HijackThis 1.99.1 (213KB) или CCleaner). Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Юли 12, 2008 Report Share Публикувано Юли 12, 2008 @DOROM: хайде сега преименувай exe-то на HijackThis, сканирай наново и пусни новия LOG, но първо махни следните отметки в Autoruns:+ DelayLoad File not found: C:\Users\h\AppData\Local\Temp\atmadm2.exe+ NBKeyScan File not found: C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe+ WinPCDoctor File not found: C:\Program Files\WinPCDoctor\SysRep.exe+ awtnewvm.dll c:\windows\system32\awtnewvm.dll+ BitComet Helper File not found: C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll+ BitComet File not found: C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll/206+ IE Anti-Spyware File not found: http://www.safeiegate.com/redirect.phpОсвен това виждам, че имаш или си имал игра със StarForce защита. Това е меко казано отвратителна защита и може да причини доста проблеми. Цитирай Link to comment Сподели другаде More sharing options...
Armageddon8 Публикувано Юли 13, 2008 Author Report Share Публикувано Юли 13, 2008 Logfile of HijackThis v1.99.1Scan saved at 10:10 ч., on 13.7.2008 г.Platform: Unknown Windows (WinNT 6.00.1905 SP1)MSIE: Internet Explorer v7.00 (7.00.6001.18000) Running processes:C:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Windows\system32\taskeng.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\Microsoft IntelliType Pro\itype.exeC:\Windows\System32\hkcmd.exeC:\Windows\System32\igfxpers.exeC:\Program Files\Microsoft Office\Office12\GrooveMonitor.exeC:\Program Files\ESET\ESET Smart Security\egui.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeC:\Windows\system32\igfxsrvc.exeC:\Program Files\Windows Media Player\wmpnscfg.exeC:\Windows\system32\wbem\unsecapp.exeC:\Program Files\Opera\opera.exeC:\Windows\system32\SearchFilterHost.exeC:\Users\Armageddon\Desktop\alabala.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.localR0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhostO2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - (no file)O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dllO2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dllO2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dllO2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dllO2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Windows\system32\ActiveToolBand.dllO3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dllO4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exeO4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exeO4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exeO4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitserviceO4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osbootO4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exeO8 - Extra context menu item: &С&валяне &с BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htmO8 - Extra context menu item: &С&валяне всички видео с BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htmO8 - Extra context menu item: &С&валяне всички с BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htmO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htmO9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - (no file)O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - (no file)O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dllO9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dllO9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dllO9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLLO9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dllO10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dllO10 - Broken Internet access because of LSP provider 'c:\program files\bonjour\mdnsnsp.dll' missingO11 - Options group: [iNTERNATIONAL] International*O13 - Gopher Prefix: O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cabO16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cabO18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dllO18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dllO18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLLO18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLLO20 - AppInit_DLLs: eNetHook.dllO20 - Winlogon Notify: Antiwpa - C:\Windows\SYSTEM32\antiwpa.dllO20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxdev.dllO23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exeO23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - %windir%\system32\svchost.exe (file missing)O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exeO23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exeO23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exeO23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeO23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exeO23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exeO23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exeO23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exeO23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe Значи последно инсталирах някйкви ъпдейти след което windows-а започна да се бави леко при shut down и стартиране. Сложих оригиналният диск дадох му repair и....не намери никаква греша. Интересното е че намери че има инсталиран windiws на drive C но не намери папката.....Мисля че преди изписваше, че win-а се намира в drive C - drive C/windows - наклонената черта е обратно но съм с други драйвери за клавиатурата Сега ми изписа, само drive C..... Старият windows седи защото папката не може да се изтрие. Като опитам да я изтрия /виж картинката/.... Цитирай Link to comment Сподели другаде More sharing options...
dipg Публикувано Юли 13, 2008 Report Share Публикувано Юли 13, 2008 След махнатите отметки в Auoruns и скаринато с HijackThis излиза това Logfile of HijackThis v1.99.1Scan saved at 08:30:13, on 13-07-2008Platform: Unknown Windows (WinNT 6.00.1904)MSIE: Internet Explorer v8.00 (8.00.6001.17184) Running processes:C:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Program Files\Windows Defender\MSASCui.exeC:\Windows\RtHDVCpl.exeC:\Program Files\Keyboard & Mouse Driver\StartAutorun.exeC:\Program Files\Keyboard & Mouse Driver\KMConfig.exeC:\Program Files\Alwil Software\Avast4\ashDisp.exeC:\Windows\System32\igfxtray.exeC:\Windows\SYSTEM32\taskeng.exeC:\Windows\System32\hkcmd.exeC:\Windows\System32\igfxpers.exeC:\Program Files\Windows Sidebar\sidebar.exeC:\Program Files\BitComet\BitComet.exeC:\Windows\system32\igfxsrvc.exeC:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exeC:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exeC:\Program Files\Windows Media Player\wmpnscfg.exeC:\Program Files\Keyboard & Mouse Driver\KMProcess.exeC:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exeC:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Windows\System32\mobsync.exeC:\Windows\system32\conime.exeC:\Users\h\Documents\Autoruns\autoruns.exeC:\Users\h\Documents\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=105563R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhostO2 - BHO: (no name) - AutorunsDisabled - (no file)O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dllO2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dllO3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dllO3 - Toolbar: (no name) - {80123684-A222-4009-8220-A867294D6DE8} - (no file)O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dllO4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hideO4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exeO4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"O4 - HKLM\..\Run: [KMCONFIG] C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe KMConfig.exeO4 - HKLM\..\Run: [skytel] Skytel.exeO4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exeO4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exeO4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exeO4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exeO4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exeO4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRunO4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exeO4 - HKCU\..\Run: [bitComet] "C:\Program Files\BitComet\BitComet.exe"O4 - HKCU\..\Run: [indxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hiddenO4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorunO4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exeO4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXEO8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htmO8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htmO8 - Extra context menu item: Download videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htmO8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000O9 - Extra button: (no name) - AutorunsDisabled - (no file)O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dllO9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dllO9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.safeiegate.com/redirect.php (file missing)O9 - Extra 'Tools' menuitem: IE Anti-Spyware - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.safeiegate.com/redirect.php (file missing)O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLLO9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exeO9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exeO10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dllO10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dllO11 - Options group: [iNTERNATIONAL] International*O13 - Gopher Prefix: O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dllO18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLLO18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLLO20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dllO20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxdev.dllO23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exeO23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exeO23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exeO23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exeO23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exeO23 - Service: SQL Server (MSSMLBIZ) (MSSQL$MSSMLBIZ) - Unknown owner - c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sMSSMLBIZ (file missing)O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exeO23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exeO23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing) Цитирай Link to comment Сподели другаде More sharing options...
Aquarius Публикувано Юли 13, 2008 Report Share Публикувано Юли 13, 2008 Значи последно инсталирах някйкви ъпдейти след което windows-а започна да се бави леко при shut down и стартиране. Сложих оригиналният диск дадох му repair и....не намери никаква греша. Интересното е че намери че има инсталиран windiws на drive C но не намери папката.....Мисля че преди изписваше, че win-а се намира в drive C - drive C/windows - наклонената черта е обратно но съм с други драйвери за клавиатурата Сега ми изписа, само drive C.....Старият windows седи защото папката не може да се изтрие. Като опитам да я изтрия /виж картинката/.... Night_Raven имаше предвид да генерираш списък с HijackThis на инсталирания софтуер. Това става така: 1) Отваряш Hijackthis и на началния екран избираш Open the Misc Tools section.2) След това кликваш на бутона Open Uninstall Manager.3) Кликваш на бутона Save List и в стандартния диалогов прозорец Save As избираш местоположение на твърдия диск.4) Oтваряш файла и копираш съдържанието му тук в темата. Иначе от този Log-файл, който си пуснал се виждат доста обекти, които не са зловредни, но могат да бъдат премахнати. Това са обектите с (file missing) или (no file) в края. Може да ги маркираш и да избереш Fix Checked, като преди това затвориш IE, ако е отворен. Относно Windows.old - това е папка, в която инсталационната програма премества данните от предишна инсталация на Windows, ако се извършва "чиста инсталация", а не надграждане към Vista. @DOROM - все още не си преименувал изпълнимия файл на HijackThis. Цитирай Link to comment Сподели другаде More sharing options...
Armageddon8 Публикувано Юли 13, 2008 Author Report Share Публикувано Юли 13, 2008 2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)2007 Microsoft Office Suite Service Pack 1 (SP1)Acer eDataSecurity ManagementAcer Empowering TechnologyAcer eNet ManagementAcer ePower ManagementAcer ePresentation ManagementAcer eSettings ManagementAcer GridVistaAcer Mobility Center Plug-InAcer OrbiCamAcer OrbiCam Ad-Aware 2007Adobe Anchor Service CS3Adobe Asset Services CS3Adobe Bridge CS3Adobe Bridge Start MeetingAdobe Camera Raw 4.0Adobe CMapsAdobe Color - Photoshop SpecificAdobe Color Common SettingsAdobe Color EU Extra SettingsAdobe Color JA Extra SettingsAdobe Color NA Recommended SettingsAdobe Default Language CS3Adobe Device Central CS3Adobe ExtendScript Toolkit 2Adobe ExtendScript Toolkit 2Adobe Flash Player ActiveXAdobe Flash Player PluginAdobe Fonts AllAdobe Help Viewer CS3Adobe Linguistics CS3Adobe PDF Library FilesAdobe Photoshop CS3Adobe Photoshop CS3Adobe Reader 8.1.2Adobe SetupAdobe SetupAdobe Shockwave Player 11Adobe Stock Photos CS3Adobe Type SupportAdobe Update Manager CS3Adobe Version Cue CS3 ClientAdobe WinSoft Linguistics PluginAdobe XMP Panels CS3Age of Empires IIIAge of Empires III - The Asian DynastiesAge of Empires III - The WarChiefsAusLogics Disk DefragBitComet 1.00Camtasia Studio 5CDBurnerXPCrystal Player Professional 1.98ESET Online ScannerESET Smart SecurityEVEREST Ultimate Edition v4.50FIFA MANAGER 08GOM PlayerGoogle Earth ProHeroes of Might and Magic® III CompleteHijackThis 1.99.1IZArc 3.81Java 6 Update 5K-Lite Codec Pack 3.4.5 FullMetacafeMicrosoft Office Access MUI (English) 2007Microsoft Office Access Setup Metadata MUI (English) 2007Microsoft Office Enterprise 2007Microsoft Office Enterprise 2007Microsoft Office Excel MUI (English) 2007Microsoft Office Groove MUI (English) 2007Microsoft Office Groove Setup Metadata MUI (English) 2007Microsoft Office InfoPath MUI (English) 2007Microsoft Office OneNote MUI (English) 2007Microsoft Office Outlook MUI (English) 2007Microsoft Office PowerPoint MUI (English) 2007Microsoft Office Proof (English) 2007Microsoft Office Proof (French) 2007Microsoft Office Proof (Spanish) 2007Microsoft Office Proofing (English) 2007Microsoft Office Publisher MUI (English) 2007Microsoft Office Shared MUI (English) 2007Microsoft Office Shared Setup Metadata MUI (English) 2007Microsoft Office Word MUI (English) 2007Microsoft SilverlightMicrosoft Virtual PC 2007 SP1Microsoft Visual C++ 2005 RedistributableMicrosoft Visual C++ 2005 RedistributableMOPMozBackup 1.4.7Mozilla Firefox (3.0)MSXML 4.0 SP2 (KB936181)MSXML 4.0 SP2 (KB941833)nLite 1.4nLite Add-On Maker 1.2NOD32 v3.x FiX 1.1 by TemDono (Free Updates - Expire in 2050)Opera 9.51PDF SettingsPPMate Network TV 2.3.1.76RealPlayerRealtek High Definition Audio DriverSA Dictionary 2005 T2Security Update for CAPICOM (KB931906)Security Update for CAPICOM (KB931906)Security Update for Excel 2007 (KB946974)Security Update for Microsoft Office Publisher 2007 (KB950114)Security Update for Microsoft Office system 2007 (KB951808)Security Update for Microsoft Office Word 2007 (KB950113)Security Update for Office 2007 (KB947801)Security Update for Outlook 2007 (KB946983)Security Update for Visio 2007 (KB947590)Skype™ 3.8Sony Noise Reduction Plug-In 2.0hSony Sound Forge 9.0SopCast 3.0.3Spybot - Search & DestroyStarcraftSynacast Plug-in 1.1.0.7Synaptics Pointing Device DriverThe KMPlayer (remove only)Total Recorder Editor v10.1Total Video Converter 3.11 070908UltimateDefrag 2008Update for Office 2007 (KB946691)Update for Outlook 2007 Junk Email Filter (kb953463)WinampWindows Media Player Firefox PluginWise Registry Cleaner 3 Free 3.2Не съм чистил регистъра,не съм инсталирал нова програма скоро освен Total Video Converter и Metacafe. За windows.old ясно какво е - въпросът е защо не се изтрива нормално.... Значи 1 прозорец - когато със "search" потърся някакъв фаил от директорията на windows и след това дам "open file location" отваря папката с windows. След това като давам "back" ми отваря "drive C" НО папката с windows я няма. Има я само в страничната лента!!! 2 Прозорезц - е като сред "search" потърся някакъв фиил от директорията на windows и след това дам "open file location" отваря папката с windows. 3 прозорец - като отворя myComputer или Explorer няма папка с windows нито в страничната лента, нито в полето с папкита на "drive C" - :peace: :bgflag: :giggle: :giggle: :giggle: Цитирай Link to comment Сподели другаде More sharing options...
Petar_kir2000 Публикувано Юли 13, 2008 Report Share Публикувано Юли 13, 2008 Ивинявам се, че се намесвам, но няма да бъде зле да хвърлиш едно око на Tools/Folder options/View...Провери как са ти настройките там. A за изтриване на директорията виж тук ! Цитирай Link to comment Сподели другаде More sharing options...
Armageddon8 Публикувано Юли 13, 2008 Author Report Share Публикувано Юли 13, 2008 Ивинявам се, че се намесвам, но няма да бъде зле да хвърлиш едно око на Tools/Folder options/View...Провери как са ти настройките там. restartВсичко дадох на Defaut. Истрих скоро инсталираните ъпдейти + Metacefe + restart = нищо Цитирай Link to comment Сподели другаде More sharing options...
Petar_kir2000 Публикувано Юли 13, 2008 Report Share Публикувано Юли 13, 2008 restartВсичко дадох на Defaut. Истрих скоро инсталираните ъпдейти + Metacefe + restart = нищо А да си се опитвал да възстановяваш Вистата от резервния дял на Acer???Изобщо опитвал ли си се да инсталираш Виста/ХР?Това, че имаш windows.old е показател, че си се опитвал да инсталираш/възстановяваш ОС-а?P.S.май си ползвал и Wise Registry Cleaner 3 Free 3.2? Цитирай Link to comment Сподели другаде More sharing options...
Armageddon8 Публикувано Юли 13, 2008 Author Report Share Публикувано Юли 13, 2008 А да си се опитвал да възстановяваш Вистата от резервния дял на Acer???Изобщо опитвал ли си се да инсталираш Виста/ХР?Това, че имаш windows.old е показател, че си се опитвал да инсталираш/възстановяваш ОС-а?P.S.май си ползвал и Wise Registry Cleaner 3 Free 3.2? Вистата я преинсталирах преди много време.....wise regisry claeaner го ползвах еднин път преди.....хммм доста отдавна беше. Иначе не съм пробвал да въстановя уина от заделения дял на Харда....По принцип избягвам да ползвам програми да почистване и оптимизирне на windows-а /първият път отчасти затова преинсталирах - НО аз съм си виновен, защото решихд а изпробвам всички вързможни опции на vista manager-а и някакъв регистри клинър.... и аз забравих какъв беше вече/ Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Юли 13, 2008 Report Share Публикувано Юли 13, 2008 restartВсичко дадох на Defaut. Истрих скоро инсталираните ъпдейти + Metacefe + restart = нищоНадявам се си "деинсталирал" ъпдейтите, а не си ги "изтрил". Провери ли в Properties на папката дали не е с отметка Hidden или нещо такова? Цитирай Link to comment Сподели другаде More sharing options...
Препоръчан пост
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.