Jump to content

Проблем с Виста


Препоръчан пост

Уиндоса си беше инсталиран в drive C - сега папката ВЪОБЩЕ я НЯМА!!!!!!!!!!!!!!!!!!! :punish: :punish: :giggle: :giggle: :lookaround: :lookaround: :lookaround:

Туко що го установих. Нищо не съм трил, нито съм го местил....... :crosseyes1: :crosseyes1:

Даже не знам как може да изчезне цяла папка с уин...и той да си работи.....нещо не чаткам.....Малко помощ ако може....

post-5579-1215895533_thumb.jpg

Link to comment
Сподели другаде

  • Отговори 78
  • Създадена
  • Последен отговор

ТОП потребители в тази тема

ТОП потребители в тази тема

Публикувани изображения

Да се включа и аз с проблем с Виста.

Инсталирах преди 2 дни SuperaAntiSpyware и isyscleaner pro.Днес ги пуснах в този ред,т.е. първо Суперата,компютъра се рестартира,след това пуснах и втората.Изтрих всичко,което беше намерила за триене и каква ми беше изненада ,отваряйки Експлоръра,да прочета съобщението “Интернет Експлорър престана да функционира“.

Освен това има и още един странен проблем...при стартиране на компютъра се появява съобщение “Грешка при зареждане на C\users\h\AppData\Local\Temp\ooknaixf.dll.Процесът е прекратен.“Потърсих в Гугъл...дори той не намира подобен файл.Дали поради тази причина цялата система спря да работи?!?А и как да я намеря тая директория?

Абсолютен профан съм на тема компютри,по този повод даже не мога да си цъкна монитора,за да го покажа тук :blush:

Благодаря предварително!

 

Армагедон,извинявай че така нахълтвам...

Link to comment
Сподели другаде

Абе кво ти пука като работи.........Пробвай да рестартираш ПС то и виж пак .И на мен ми се е случвало трия някой файйл от коша и като погледна той пълен и като рестартирам и се оправя.ОООпс сори не видях снимката ми тоя Уиндоус.олд за кво ти седи
Link to comment
Сподели другаде

Logfile of HijackThis v1.99.1

Scan saved at 22:43:49, on 12-07-2008

Platform: Unknown Windows (WinNT 6.00.1904)

MSIE: Internet Explorer v7.00 (7.00.6000.16681)

 

Running processes:

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Windows\SYSTEM32\taskeng.exe

C:\Program Files\Windows Defender\MSASCui.exe

C:\Windows\RtHDVCpl.exe

C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe

C:\Program Files\Alwil Software\Avast4\ashDisp.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Keyboard & Mouse Driver\KMConfig.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\BitComet\BitComet.exe

C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe

C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

C:\Windows\system32\igfxsrvc.exe

C:\Program Files\Windows Media Player\wmpnscfg.exe

C:\Program Files\Keyboard & Mouse Driver\KMProcess.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Windows\System32\mobsync.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Windows\system32\rundll32.exe

C:\Users\h\AppData\Local\Temp\hijackthis\HijackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.abv.bg/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O1 - Hosts: ::1 localhost

O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll (file missing)

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll

O3 - Toolbar: (no name) - {80123684-A222-4009-8220-A867294D6DE8} - (no file)

O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [KMCONFIG] C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe KMConfig.exe

O4 - HKLM\..\Run: [skytel] Skytel.exe

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exe

O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe

O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"

O4 - HKLM\..\Run: [WinPCDoctor] C:\Program Files\WinPCDoctor\SysRep.exe

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKLM\..\Run: [DelayLoad] C:\Users\h\AppData\Local\Temp\atmadm2.exe

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe

O4 - HKCU\..\Run: [bitComet] "C:\Program Files\BitComet\BitComet.exe"

O4 - HKCU\..\Run: [indxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020

O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden

O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun

O4 - HKCU\..\Run: [d0ce4486] rundll32.exe "C:\Users\h\AppData\Local\Temp\ooknaixf.dll",b

O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE

O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm

O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm

O8 - Extra context menu item: Download videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm

O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll

O9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.safeiegate.com/redirect.php (file missing)

O9 - Extra 'Tools' menuitem: IE Anti-Spyware - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.safeiegate.com/redirect.php (file missing)

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll/206 (file missing)

O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe

O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe

O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll

O11 - Options group: [iNTERNATIONAL] International*

O13 - Gopher Prefix:

O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll

O20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxdev.dll

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: SQL Server (MSSMLBIZ) (MSSQL$MSSMLBIZ) - Unknown owner - c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sMSSMLBIZ (file missing)

O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)

 

Маркирах тези.Рестартирах.Няма го съобщението,но нямам Експлорър.

 

Това ми излезе с Ауторънс-

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

+ Adobe Reader Speed Launcher Adobe Acrobat SpeedLauncher Adobe Systems Incorporated c:\program files\adobe\reader 8.0\reader\reader_sl.exe

+ avast! avast! service GUI component ALWIL Software c:\program files\alwil software\avast4\ashdisp.exe

+ DelayLoad File not found: C:\Users\h\AppData\Local\Temp\atmadm2.exe

+ HotKeysCmds hkcmd Module Intel Corporation c:\windows\system32\hkcmd.exe

+ IgfxTray igfxTray Module Intel Corporation c:\windows\system32\igfxtray.exe

+ KMCONFIG DRIVER AUTORUN UASSOFT.COM c:\program files\keyboard & mouse driver\startautorun.exe

+ NBKeyScan File not found: C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe

+ NeroFilterCheck NeroCheck Nero AG c:\program files\common files\ahead\lib\nerocheck.exe

+ Persistence persistence Module Intel Corporation c:\windows\system32\igfxpers.exe

+ RtHDVCpl HD Audio Control Panel Realtek Semiconductor c:\windows\rthdvcpl.exe

+ Skytel Realtek Voice Manager Realtek Semiconductor Corp. c:\windows\skytel.exe

+ WinPCDoctor File not found: C:\Program Files\WinPCDoctor\SysRep.exe

HKCU\Software\Microsoft\Windows\CurrentVersion\Run

+ BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} Nero Home Nero AG c:\program files\common files\ahead\lib\nmbgmonitor.exe

+ BitComet BitComet - a BitTorrent Client www.BitComet.com c:\program files\bitcomet\bitcomet.exe

+ DAEMON Tools Lite DAEMON Tools Lite DT Soft Ltd c:\program files\daemon tools lite\daemon.exe

+ IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} File not found: C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe

+ LightScribe Control Panel Hewlett-Packard Company c:\program files\common files\lightscribe\lightscribecontrolpanel.exe

+ swg GoogleToolbarNotifier Google Inc. c:\program files\google\googletoolbarnotifier\1.2.1128.5462\googletoolbarnotifier.exe

HKLM\SOFTWARE\Classes\Protocols\Handler

+ skype4com Skype for COM API Skype Technologies c:\program files\common files\skype\skype4com.dll

HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components

+ LightScribe Control Panel Hewlett-Packard Company c:\program files\common files\lightscribe\lsrunonce.exe

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks

+ awtnewvm.dll c:\windows\system32\awtnewvm.dll

+ SABShellExecuteHook Class ShellExecuteHook SuperAdBlocker.com c:\program files\superantispyware\sasseh.dll

HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers

+ avast avast! Shell Extension ALWIL Software c:\program files\alwil software\avast4\ashshell.dll

+ Cover Designer Cover Designer Nero AG c:\program files\nero\nero 7\nero coverdesigner\coveredextension.dll

+ IZArcCM c:\program files\izarc\izarccm.dll

+ NBShellHook Class Nero BackItUp Nero AG c:\program files\nero\nero 7\nero backitup\nbshell.dll

+ SASContextMenu Class SUPERAntiSpyware Context Menu Extension SUPERAntiSpyware.com c:\program files\superantispyware\sasctxmn.dll

HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers

+ avast avast! Shell Extension ALWIL Software c:\program files\alwil software\avast4\ashshell.dll

+ NBShellHook Class Nero BackItUp Nero AG c:\program files\nero\nero 7\nero backitup\nbshell.dll

HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers

+ IZArcCM c:\program files\izarc\izarccm.dll

+ SASContextMenu Class SUPERAntiSpyware Context Menu Extension SUPERAntiSpyware.com c:\program files\superantispyware\sasctxmn.dll

HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers

+ igfxcui igfxpph Module Intel Corporation c:\windows\system32\igfxpph.dll

HKLM\Software\Classes\Folder\Shellex\ColumnHandlers

+ NeroDigitalColumnHandler Class Nero Digital Shell Extension Nero AG c:\program files\common files\ahead\lib\nerodigitalext.dll

+ PDF Shell Extension PDF Shell Extension Adobe Systems, Inc. c:\program files\common files\adobe\acrobat\activex\pdfshell.dll

HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved

+ avast avast! Shell Extension ALWIL Software c:\program files\alwil software\avast4\ashshell.dll

+ IZArc DragDrop Menu c:\program files\izarc\izarccm.dll

+ IZArc Shell Context Menu c:\program files\izarc\izarccm.dll

+ NeroCoverEd Live Icons Cover Designer Nero AG c:\program files\nero\nero 7\nero coverdesigner\coveredextension.dll

+ NeroDigitalIconHandler Nero Digital Shell Extension Nero AG c:\program files\common files\ahead\lib\nerodigitalext.dll

+ NeroDigitalPropSheetHandler Nero Digital Shell Extension Nero AG c:\program files\common files\ahead\lib\nerodigitalext.dll

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects

+ BitComet Helper File not found: C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll

+ Facilitador de Leitor de Link Adobe PDF Adobe PDF Helper for Internet Explorer Adobe Systems Incorporated c:\program files\common files\adobe\acrobat\activex\acroiehelper.dll

+ Google Toolbar Helper Google IE Client Toolbar Google Inc. c:\program files\google\googletoolbar1.dll

HKLM\Software\Microsoft\Internet Explorer\Toolbar

+ &Google Google IE Client Toolbar Google Inc. c:\program files\google\googletoolbar1.dll

+ DAEMON Tools Toolbar ToolBand Module c:\program files\daemon tools toolbar\dttoolbar.dll

HKLM\Software\Microsoft\Internet Explorer\Extensions

+ BitComet File not found: C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll/206

+ ICQ6 ICQ Library ICQ, Inc. c:\program files\icq6\icq.exe

+ IE Anti-Spyware File not found: http://www.safeiegate.com/redirect.php

Task Scheduler

+ \Microsoft\Windows\Wired\GatherWiredInfo c:\windows\system32\gatherwiredinfo.vbs

+ \Microsoft\Windows\Wireless\GatherWirelessInfo c:\windows\system32\gatherwirelessinfo.vbs

HKLM\System\CurrentControlSet\Services

+ aswUpdSv Осигурява авотматични обновявания на компонентите на avast!. ALWIL Software c:\program files\alwil software\avast4\aswupdsv.exe

+ avast! Antivirus Управлява и изпълнява антивирусните услуги на avast! на този компютър. Това включва резидентна защита, клетката за вируси и планировчика. ALWIL Software c:\program files\alwil software\avast4\ashserv.exe

+ KMWDSERVICE Keyboard And Mouse Communication Service UASSOFT.COM c:\program files\keyboard & mouse driver\kmwdsrv.exe

+ LightScribeService Used by the LightScribe software components to support 3rd party disc labeling applications using the LightScribe COM Application Programming Interface (LSCAPI). This service needs to run for LightScribe direct disc labeling to work. Hewlett-Packard Company c:\program files\common files\lightscribe\lssrvc.exe

HKLM\System\CurrentControlSet\Services

+ aswFsBlk avast! mini-filter driver (aswFsBlk) ALWIL Software c:\windows\system32\drivers\aswfsblk.sys

+ aswMonFlt avast! mini-filter driver (aswMonFlt) ALWIL Software c:\windows\system32\drivers\aswmonflt.sys

+ aswRdr avast! TDI RDR Driver ALWIL Software c:\windows\system32\drivers\aswrdr.sys

+ aswSP avast! self protection module ALWIL Software c:\windows\system32\drivers\aswsp.sys

+ aswTdi avast! TDI Filter Driver ALWIL Software c:\windows\system32\drivers\aswtdi.sys

+ BIOS I/O Interface driver file BIOSTAR Group c:\windows\system32\drivers\bios.sys

+ BrFiltLo Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver Brother Industries, Ltd. c:\windows\system32\drivers\brfiltlo.sys

+ BrFiltUp Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver Brother Industries, Ltd. c:\windows\system32\drivers\brfiltup.sys

+ BrUsbSer Brother USB Serial Driver Brother Industries Ltd. c:\windows\system32\drivers\brusbser.sys

+ E1G60 Intel® PRO/1000 Adapter NDIS 6 deserialized driver Intel Corporation c:\windows\system32\drivers\e1g60i32.sys

+ e4usbaw File not found: system32\DRIVERS\e4usbaw.sys

+ ialm Intel Graphics Kernel Mode Driver Intel Corporation c:\windows\system32\drivers\igdkmd32.sys

+ igfx Intel Graphics Kernel Mode Driver Intel Corporation c:\windows\system32\drivers\igdkmd32.sys

+ IKANLOADER2 File not found: System32\Drivers\e4ldr.sys

+ IntcAzAudAddService Realtek® High Definition Audio Function Driver Realtek Semiconductor Corp. c:\windows\system32\drivers\rtkvhda.sys

+ IpInIp IP in IP Tunnel Driver File not found: system32\DRIVERS\ipinip.sys

+ NwlnkFlt IPX Traffic Filter Driver File not found: system32\DRIVERS\nwlnkflt.sys

+ NwlnkFwd IPX Traffic Forwarder Driver File not found: system32\DRIVERS\nwlnkfwd.sys

+ RTL8023xp Realtek 10/100 NDIS 5.1 Driver Realtek Semiconductor Corporation c:\windows\system32\drivers\rtnicxp.sys

+ SASDIFSV SASDIFSV.SYS SUPERAdBlocker.com and SUPERAntiSpyware.com c:\program files\superantispyware\sasdifsv.sys

+ SASENUM SASENUM.SYS SUPERAdBlocker.com and SUPERAntiSpyware.com c:\program files\superantispyware\sasenum.sys

+ SASKUTIL SASKUTIL.SYS SUPERAdBlocker.com and SUPERAntiSpyware.com c:\program files\superantispyware\saskutil.sys

+ secdrv Macrovision SECURITY Driver Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K. c:\windows\system32\drivers\secdrv.sys

+ sfdrv01 FrontLine Environment Driver Protection Technology (StarForce) c:\windows\system32\drivers\sfdrv01.sys

+ sfhlp02 FrontLine Helper Driver Protection Technology (StarForce) c:\windows\system32\drivers\sfhlp02.sys

+ sfsync02 StarForce Protection Synchronization Driver Protection Technology c:\windows\system32\drivers\sfsync02.sys

+ sptd c:\windows\system32\drivers\sptd.sys

+ sscdbus SAMSUNG USB Composite Device Driver MCCI c:\windows\system32\drivers\sscdbus.sys

+ sscdmdfl SAMSUNG CDMA Modem Filter MCCI c:\windows\system32\drivers\sscdmdfl.sys

+ sscdmdm SAMSUNG CDMA Modem Drivers MCCI c:\windows\system32\drivers\sscdmdm.sys

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify

+ !SASWinLogon SUPERAntiSpyware WinLogon Processor SUPERAntiSpyware.com c:\program files\superantispyware\saswinlo.dll

+ igfxcui igfxdev Module Intel Corporation c:\windows\system32\igfxdev.dll

C:\Users\h\AppData\Local\Microsoft\Windows Sidebar\Settings.ini

+ Weather Underground Weather Underground's weather gadget. Receive weather conditions, animated radar, forecasts, severe weather alerts, and web cams for any location in the world -- delivered to your Sidebar. Weather Underground C:\Users\h\AppData\Local\Microsoft\Windows Sidebar\Gadgets\WundergroundVistaWidget[2].gadget\Gadget.xml

+ Weather Underground Weather Underground's weather gadget. Receive weather conditions, animated radar, forecasts, severe weather alerts, and web cams for any location in the world -- delivered to your Sidebar. Weather Underground C:\Users\h\AppData\Local\Microsoft\Windows Sidebar\Gadgets\WundergroundVistaWidget[1].gadget\Gadget.xml

Link to comment
Сподели другаде

Уиндоса си беше инсталиран в drive C - сега папката ВЪОБЩЕ я НЯМА!!!!!!!!!!!!!!!!!!! :punish: :punish: :giggle: :giggle: :lookaround: :lookaround: :lookaround:

Туко що го установих. Нищо не съм трил, нито съм го местил....... :crosseyes1: :crosseyes1:

Даже не знам как може да изчезне цяла папка с уин...и той да си работи.....нещо не чаткам.....Малко помощ ако може....

Кажи какви програми си инсталирал преди да "изчезне" папката. Ако можеш, дай един списък на инсталирания софтуер (става с HijackThis 1.99.1 (213KB) или CCleaner).

Link to comment
Сподели другаде

@DOROM: хайде сега преименувай exe-то на HijackThis, сканирай наново и пусни новия LOG, но първо махни следните отметки в Autoruns:

+ DelayLoad File not found: C:\Users\h\AppData\Local\Temp\atmadm2.exe

+ NBKeyScan File not found: C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe

+ WinPCDoctor File not found: C:\Program Files\WinPCDoctor\SysRep.exe

+ awtnewvm.dll c:\windows\system32\awtnewvm.dll

+ BitComet Helper File not found: C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll

+ BitComet File not found: C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll/206

+ IE Anti-Spyware File not found: http://www.safeiegate.com/redirect.php

Освен това виждам, че имаш или си имал игра със StarForce защита. Това е меко казано отвратителна защита и може да причини доста проблеми.

Link to comment
Сподели другаде

Logfile of HijackThis v1.99.1

Scan saved at 10:10 ч., on 13.7.2008 г.

Platform: Unknown Windows (WinNT 6.00.1905 SP1)

MSIE: Internet Explorer v7.00 (7.00.6001.18000)

 

Running processes:

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Windows\system32\taskeng.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files\Microsoft IntelliType Pro\itype.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

C:\Program Files\ESET\ESET Smart Security\egui.exe

C:\Program Files\Common Files\Real\Update_OB\realsched.exe

C:\Windows\system32\igfxsrvc.exe

C:\Program Files\Windows Media Player\wmpnscfg.exe

C:\Windows\system32\wbem\unsecapp.exe

C:\Program Files\Opera\opera.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Users\Armageddon\Desktop\alabala.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O1 - Hosts: ::1 localhost

O2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - (no file)

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll

O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Windows\system32\ActiveToolBand.dll

O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll

O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"

O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe

O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"

O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

O8 - Extra context menu item: &С&валяне &с BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm

O8 - Extra context menu item: &С&валяне всички видео с BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm

O8 - Extra context menu item: &С&валяне всички с BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm

O9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - (no file)

O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - (no file)

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll

O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)

O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll

O10 - Broken Internet access because of LSP provider 'c:\program files\bonjour\mdnsnsp.dll' missing

O11 - Options group: [iNTERNATIONAL] International*

O13 - Gopher Prefix:

O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab

O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab

O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll

O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL

O20 - AppInit_DLLs: eNetHook.dll

O20 - Winlogon Notify: Antiwpa - C:\Windows\SYSTEM32\antiwpa.dll

O20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxdev.dll

O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe

O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe

O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe

O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe

O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe

O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe

O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe

O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)

O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

 

Значи последно инсталирах някйкви ъпдейти след което windows-а започна да се бави леко при shut down и стартиране. Сложих оригиналният диск дадох му repair и....не намери никаква греша. Интересното е че намери че има инсталиран windiws на drive C но не намери папката.....Мисля че преди изписваше, че win-а се намира в drive C - drive C/windows - наклонената черта е обратно но съм с други драйвери за клавиатурата :giggle: Сега ми изписа, само drive C.....

 

 

Старият windows седи защото папката не може да се изтрие. Като опитам да я изтрия /виж картинката/....

post-5579-1215933908_thumb.jpg

Link to comment
Сподели другаде

След махнатите отметки в Auoruns и скаринато с HijackThis излиза това

 

Logfile of HijackThis v1.99.1

Scan saved at 08:30:13, on 13-07-2008

Platform: Unknown Windows (WinNT 6.00.1904)

MSIE: Internet Explorer v8.00 (8.00.6001.17184)

 

Running processes:

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Program Files\Windows Defender\MSASCui.exe

C:\Windows\RtHDVCpl.exe

C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe

C:\Program Files\Keyboard & Mouse Driver\KMConfig.exe

C:\Program Files\Alwil Software\Avast4\ashDisp.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\SYSTEM32\taskeng.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Windows Sidebar\sidebar.exe

C:\Program Files\BitComet\BitComet.exe

C:\Windows\system32\igfxsrvc.exe

C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe

C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

C:\Program Files\Windows Media Player\wmpnscfg.exe

C:\Program Files\Keyboard & Mouse Driver\KMProcess.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Windows\System32\mobsync.exe

C:\Windows\system32\conime.exe

C:\Users\h\Documents\Autoruns\autoruns.exe

C:\Users\h\Documents\HijackThis\HijackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=105563

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O1 - Hosts: ::1 localhost

O2 - BHO: (no name) - AutorunsDisabled - (no file)

O2 - BHO: Facilitador de Leitor de Link Adobe PDF - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll

O3 - Toolbar: (no name) - {80123684-A222-4009-8220-A867294D6DE8} - (no file)

O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll

O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide

O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [KMCONFIG] C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe KMConfig.exe

O4 - HKLM\..\Run: [skytel] Skytel.exe

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [igfxTray] C:\Windows\system32\igfxtray.exe

O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe

O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe

O4 - HKCU\..\Run: [bitComet] "C:\Program Files\BitComet\BitComet.exe"

O4 - HKCU\..\Run: [indxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020

O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden

O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"

O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun

O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE

O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm

O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm

O8 - Extra context menu item: Download videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm

O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O9 - Extra button: (no name) - AutorunsDisabled - (no file)

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll

O9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.safeiegate.com/redirect.php (file missing)

O9 - Extra 'Tools' menuitem: IE Anti-Spyware - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.safeiegate.com/redirect.php (file missing)

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O9 - Extra button: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe

O9 - Extra 'Tools' menuitem: ICQ6 - {E59EB121-F339-4851-A3BA-FE49C35617C2} - C:\Program Files\ICQ6\ICQ.exe

O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll

O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll

O11 - Options group: [iNTERNATIONAL] International*

O13 - Gopher Prefix:

O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL

O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll

O20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxdev.dll

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: SQL Server (MSSMLBIZ) (MSSQL$MSSMLBIZ) - Unknown owner - c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sMSSMLBIZ (file missing)

O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)

O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)

Link to comment
Сподели другаде

Значи последно инсталирах някйкви ъпдейти след което windows-а започна да се бави леко при shut down и стартиране. Сложих оригиналният диск дадох му repair и....не намери никаква греша. Интересното е че намери че има инсталиран windiws на drive C но не намери папката.....Мисля че преди изписваше, че win-а се намира в drive C - drive C/windows - наклонената черта е обратно но съм с други драйвери за клавиатурата :giggle: Сега ми изписа, само drive C.....

Старият windows седи защото папката не може да се изтрие. Като опитам да я изтрия /виж картинката/....

 

Night_Raven имаше предвид да генерираш списък с HijackThis на инсталирания софтуер. Това става така:

 

1) Отваряш Hijackthis и на началния екран избираш Open the Misc Tools section.

2) След това кликваш на бутона Open Uninstall Manager.

3) Кликваш на бутона Save List и в стандартния диалогов прозорец Save As избираш местоположение на твърдия диск.

4) Oтваряш файла и копираш съдържанието му тук в темата.

 

Иначе от този Log-файл, който си пуснал се виждат доста обекти, които не са зловредни, но могат да бъдат премахнати.

Това са обектите с (file missing) или (no file) в края. Може да ги маркираш и да избереш Fix Checked, като преди това затвориш IE, ако е отворен.

 

Относно Windows.old - това е папка, в която инсталационната програма премества данните от предишна инсталация на Windows, ако се извършва "чиста инсталация", а не надграждане към Vista.

 

@DOROM - все още не си преименувал изпълнимия файл на HijackThis.

Link to comment
Сподели другаде

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

2007 Microsoft Office Suite Service Pack 1 (SP1)

Acer eDataSecurity Management

Acer Empowering Technology

Acer eNet Management

Acer ePower Management

Acer ePresentation Management

Acer eSettings Management

Acer GridVista

Acer Mobility Center Plug-In

Acer OrbiCam

Acer OrbiCam

Ad-Aware 2007

Adobe Anchor Service CS3

Adobe Asset Services CS3

Adobe Bridge CS3

Adobe Bridge Start Meeting

Adobe Camera Raw 4.0

Adobe CMaps

Adobe Color - Photoshop Specific

Adobe Color Common Settings

Adobe Color EU Extra Settings

Adobe Color JA Extra Settings

Adobe Color NA Recommended Settings

Adobe Default Language CS3

Adobe Device Central CS3

Adobe ExtendScript Toolkit 2

Adobe ExtendScript Toolkit 2

Adobe Flash Player ActiveX

Adobe Flash Player Plugin

Adobe Fonts All

Adobe Help Viewer CS3

Adobe Linguistics CS3

Adobe PDF Library Files

Adobe Photoshop CS3

Adobe Photoshop CS3

Adobe Reader 8.1.2

Adobe Setup

Adobe Setup

Adobe Shockwave Player 11

Adobe Stock Photos CS3

Adobe Type Support

Adobe Update Manager CS3

Adobe Version Cue CS3 Client

Adobe WinSoft Linguistics Plugin

Adobe XMP Panels CS3

Age of Empires III

Age of Empires III - The Asian Dynasties

Age of Empires III - The WarChiefs

AusLogics Disk Defrag

BitComet 1.00

Camtasia Studio 5

CDBurnerXP

Crystal Player Professional 1.98

ESET Online Scanner

ESET Smart Security

EVEREST Ultimate Edition v4.50

FIFA MANAGER 08

GOM Player

Google Earth Pro

Heroes of Might and Magic® III Complete

HijackThis 1.99.1

IZArc 3.81

Java 6 Update 5

K-Lite Codec Pack 3.4.5 Full

Metacafe

Microsoft Office Access MUI (English) 2007

Microsoft Office Access Setup Metadata MUI (English) 2007

Microsoft Office Enterprise 2007

Microsoft Office Enterprise 2007

Microsoft Office Excel MUI (English) 2007

Microsoft Office Groove MUI (English) 2007

Microsoft Office Groove Setup Metadata MUI (English) 2007

Microsoft Office InfoPath MUI (English) 2007

Microsoft Office OneNote MUI (English) 2007

Microsoft Office Outlook MUI (English) 2007

Microsoft Office PowerPoint MUI (English) 2007

Microsoft Office Proof (English) 2007

Microsoft Office Proof (French) 2007

Microsoft Office Proof (Spanish) 2007

Microsoft Office Proofing (English) 2007

Microsoft Office Publisher MUI (English) 2007

Microsoft Office Shared MUI (English) 2007

Microsoft Office Shared Setup Metadata MUI (English) 2007

Microsoft Office Word MUI (English) 2007

Microsoft Silverlight

Microsoft Virtual PC 2007 SP1

Microsoft Visual C++ 2005 Redistributable

Microsoft Visual C++ 2005 Redistributable

MOP

MozBackup 1.4.7

Mozilla Firefox (3.0)

MSXML 4.0 SP2 (KB936181)

MSXML 4.0 SP2 (KB941833)

nLite 1.4

nLite Add-On Maker 1.2

NOD32 v3.x FiX 1.1 by TemDono (Free Updates - Expire in 2050)

Opera 9.51

PDF Settings

PPMate Network TV 2.3.1.76

RealPlayer

Realtek High Definition Audio Driver

SA Dictionary 2005 T2

Security Update for CAPICOM (KB931906)

Security Update for CAPICOM (KB931906)

Security Update for Excel 2007 (KB946974)

Security Update for Microsoft Office Publisher 2007 (KB950114)

Security Update for Microsoft Office system 2007 (KB951808)

Security Update for Microsoft Office Word 2007 (KB950113)

Security Update for Office 2007 (KB947801)

Security Update for Outlook 2007 (KB946983)

Security Update for Visio 2007 (KB947590)

Skype™ 3.8

Sony Noise Reduction Plug-In 2.0h

Sony Sound Forge 9.0

SopCast 3.0.3

Spybot - Search & Destroy

Starcraft

Synacast Plug-in 1.1.0.7

Synaptics Pointing Device Driver

The KMPlayer (remove only)

Total Recorder Editor v10.1

Total Video Converter 3.11 070908

UltimateDefrag 2008

Update for Office 2007 (KB946691)

Update for Outlook 2007 Junk Email Filter (kb953463)

Winamp

Windows Media Player Firefox Plugin

Wise Registry Cleaner 3 Free 3.2

Не съм чистил регистъра,не съм инсталирал нова програма скоро освен Total Video Converter и Metacafe. За windows.old ясно какво е - въпросът е защо не се изтрива нормално.... :lookaround:

 

Значи 1 прозорец - когато със "search" потърся някакъв фаил от директорията на windows и след това дам "open file location" отваря папката с windows. След това като давам "back" ми отваря "drive C" НО папката с windows я няма. Има я само в страничната лента!!!

 

2 Прозорезц - е като сред "search" потърся някакъв фиил от директорията на windows и след това дам "open file location" отваря папката с windows.

 

3 прозорец - като отворя myComputer или Explorer няма папка с windows нито в страничната лента, нито в полето с папкита на "drive C" - :peace: :peace: :bgflag: :bgflag: :giggle: :giggle: :giggle: :giggle: :giggle: :giggle: :giggle:

post-5579-1215960599_thumb.jpg

Link to comment
Сподели другаде

Ивинявам се, че се намесвам, но няма да бъде зле да хвърлиш едно око на Tools/Folder options/View...

Провери как са ти настройките там. :lookaround:

A за изтриване на директорията виж тук !

Link to comment
Сподели другаде

Ивинявам се, че се намесвам, но няма да бъде зле да хвърлиш едно око на Tools/Folder options/View...

Провери как са ти настройките там. :lookaround:

restart

Всичко дадох на Defaut. Истрих скоро инсталираните ъпдейти + Metacefe + restart = нищо

Link to comment
Сподели другаде

restart

Всичко дадох на Defaut. Истрих скоро инсталираните ъпдейти + Metacefe + restart = нищо

 

А да си се опитвал да възстановяваш Вистата от резервния дял на Acer???

Изобщо опитвал ли си се да инсталираш Виста/ХР?

Това, че имаш windows.old е показател, че си се опитвал да инсталираш/възстановяваш ОС-а?

P.S.

май си ползвал и Wise Registry Cleaner 3 Free 3.2?

Link to comment
Сподели другаде

А да си се опитвал да възстановяваш Вистата от резервния дял на Acer???

Изобщо опитвал ли си се да инсталираш Виста/ХР?

Това, че имаш windows.old е показател, че си се опитвал да инсталираш/възстановяваш ОС-а?

P.S.

май си ползвал и Wise Registry Cleaner 3 Free 3.2?

 

Вистата я преинсталирах преди много време.....wise regisry claeaner го ползвах еднин път преди.....хммм доста отдавна беше. Иначе не съм пробвал да въстановя уина от заделения дял на Харда....По принцип избягвам да ползвам програми да почистване и оптимизирне на windows-а /първият път отчасти затова преинсталирах - НО аз съм си виновен, защото решихд а изпробвам всички вързможни опции на vista manager-а и някакъв регистри клинър.... и аз забравих какъв беше вече/

Link to comment
Сподели другаде

restart

Всичко дадох на Defaut. Истрих скоро инсталираните ъпдейти + Metacefe + restart = нищо

Надявам се си "деинсталирал" ъпдейтите, а не си ги "изтрил".

 

Провери ли в Properties на папката дали не е с отметка Hidden или нещо такова?

Link to comment
Сподели другаде

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Гост
Отговори на тази тема

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   Не можете да качите директно снимка. Качете или добавете изображението от линк (URL)

Loading...

×
×
  • Създай ново...