Witam,
od kilku tygodni komputer potwornie mi zamula, jednak wyłącznie gdy jestem podłączony do sieci. Po odłączeniu internetu śmiga jak burza.
Task manager wskazuje 100% użycia procesora, bez wyraźnie dominującego procesu, a obciążenie zawsze rozkłada się na różne aktywne aplikacje.
Komputer przeskanowany Ad-aware, Trojan Remover, AVG, Kaspersky - i nic. Jakieś cholerstwo jednak musi tu siedzieć przecież, bo wcześniej nie miałem tego problemu.
Dodatkowo, dość często czas i data w komputerze są nagle przestawione o kilkanaście lat :?
Proszę o pomoc, bo już nie wiem co robić, a frustracja moja powoli zaczyna sięgać zenitu
Reinstalacji systemu wolałbym uniknać… Z góry dziękuję za pomoc!
Poniżej logi z HijackThis oraz Silent Runners.
Logfile of HijackThis v1.99.1 Scan saved at 01:15:19, on 2007-05-07 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\D-Link\AirPlus XtremeG\AirPlusCFG.exe C:\WINDOWS\system32\CTHELPER.EXE C:\WINDOWS\system32\RunDll32.exe C:\Program Files\Xerox One Touch\OneTouchMon.exe C:\WINDOWS\system32\RunDLL32.exe C:\WINDOWS\system32\rundll32.exe C:\Program Files\Eset\nod32kui.exe C:\WINDOWS\system32\ctfmon.exe E:\Programy\Lavasoft\AD-AWA~1\Ad-Watch.exe E:\Programy\Gadu-Gadu\gg.exe E:\Programy\Adobe\Acrobat 6.0\Distillr\acrotray.exe C:\Program Files\SEC\Natural Color\NaturalColorLoad.exe C:\Program Files\Eset\nod32krn.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Media Player\wmplayer.exe E:\Programy\Adobe\Acrobat 6.0\Acrobat\Acrobat.exe C:\WINDOWS\system32\WISPTIS.EXE C:\Program Files\Mozilla Firefox\firefox.exe C:\Documents and Settings\Octahedron\Desktop\hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - E:\Programy\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Idea2 SidebarBrowserMonitor Class - {45AD732C-2CE2-4666-B366-B2214AD57A49} - E:\Programy\Desktop Sidebar\sbhelp.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - E:\Programy\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - E:\Programy\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O4 - HKLM…\Run: [D-Link AirPlus XtremeG] C:\Program Files\D-Link\AirPlus XtremeG\AirPlusCFG.exe O4 - HKLM…\Run: [WINDVDPatch] CTHELPER.EXE O4 - HKLM…\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM…\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd O4 - HKLM…\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM…\Run: [nwiz] nwiz.exe /install O4 - HKLM…\Run: [RegisterDropHandler] e:\programy\TEXTBR~1.0\Bin\REGIST~1.EXE O4 - HKLM…\Run: [OneTouch Monitor] “C:\Program Files\Xerox One Touch\OneTouchMon.exe” O4 - HKLM…\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit O4 - HKLM…\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,BluetoothAuthenticationAgent O4 - HKLM…\Run: [QuickTime Task] “C:\WINDOWS\system32\qttask.exe” -atboottime O4 - HKLM…\Run: [nod32kui] “C:\Program Files\Eset\nod32kui.exe” /WAITSERVICE O4 - HKLM…\RunServices: [RegisterDropHandler] e:\programy\TEXTBR~1.0\Bin\REGIST~1.EXE O4 - HKCU…\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU…\Run: [AWMON] “E:\Programy\Lavasoft\AD-AWA~1\Ad-Watch.exe” O4 - HKCU…\Run: [Gadu-Gadu] “E:\Programy\Gadu-Gadu\gg.exe” /tray O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Acrobat Assistant.lnk = E:\Programy\Adobe\Acrobat 6.0\Distillr\acrotray.exe O4 - Global Startup: NaturalColorLoad.lnk = ? O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://E:\Programy\MICROS~1\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll O9 - Extra ‘Tools’ menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll O9 - Extra button: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - E:\Programy\Desktop Sidebar\sbhelp.dll O9 - Extra ‘Tools’ menuitem: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - E:\Programy\Desktop Sidebar\sbhelp.dll O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra ‘Tools’ menuitem: @xpsp3res.dll ,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} (MksSkanerOnline Class) - http://www.mks.com.pl/skaner/SkanerOnline.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
log z Silent Runners:
“Silent Runners.vbs”, revision R50, http://www.silentrunners.org/ Operating System: Windows XP SP2 Output limited to non-default values, except where indicated by “{++}” Startup items buried in registry: --------------------------------- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++} “ctfmon.exe” = “C:\WINDOWS\system32\ctfmon.exe” [MS] “AWMON” = ““E:\Programy\Lavasoft\AD-AWA~1\Ad-Watch.exe”” [“Lavasoft Sweden”] “Gadu-Gadu” = ““E:\Programy\Gadu-Gadu\gg.exe” /tray” [“sms-express.com ”] HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ {++} “D-Link AirPlus XtremeG” = “C:\Program Files\D-Link\AirPlus XtremeG\AirPlusCFG.exe” [“D-Link”] “WINDVDPatch” = “CTHELPER.EXE” [“Creative Technology Ltd”] “NeroFilterCheck” = “C:\WINDOWS\system32\NeroCheck.exe” [“Ahead Software Gmbh”] “Cmaudio” = “RunDll32 cmicnfg.cpl,CMICtrlWnd” [MS] “NvCplDaemon” = “RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup” [MS] “nwiz” = “nwiz.exe /install” [“NVIDIA Corporation”] “RegisterDropHandler” = “e:\programy\TEXTBR~1.0\Bin\REGIST~1.EXE” [empty string] “OneTouch Monitor” = ““C:\Program Files\Xerox One Touch\OneTouchMon.exe”” [“Visioneer Inc”] “NvMediaCenter” = “RunDLL32.exe NvMCTray.dll,NvTaskbarInit” [MS] “BluetoothAuthenticationAgent” = “rundll32.exe bthprops.cpl,BluetoothAuthenticationAgent” [MS] “QuickTime Task” = ““C:\WINDOWS\system32\qttask.exe” -atboottime” [“Apple Computer, Inc.”] “nod32kui” = ““C:\Program Files\Eset\nod32kui.exe” /WAITSERVICE” ["Eset "] HKLM\Software\Microsoft\Active Setup\Installed Components\ <{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}(Default) = “IE7 Uninstall Stub” \StubPath = “C:\WINDOWS\system32\ieudinit.exe” [MS] HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}(Default) = (no title provided) -> {HKLM…CLSID} = “AcroIEHlprObj Class” \InProcServer32(Default) = “E:\Programy\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll” [“Adobe Systems Incorporated”] {45AD732C-2CE2-4666-B366-B2214AD57A49}(Default) = “Idea2 SidebarBrowserMonitor Class” -> {HKLM…CLSID} = “Idea2 SidebarBrowserMonitor Class” \InProcServer32(Default) = “E:\Programy\Desktop Sidebar\sbhelp.dll” [“Idea2”] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}(Default) = (no title provided) -> {HKLM…CLSID} = “SSVHelper Class” \InProcServer32(Default) = “C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll” [“Sun Microsystems, Inc.”] {AE7CD045-E861-484f-8273-0445EE161910}(Default) = (no title provided) -> {HKLM…CLSID} = “AcroIEToolbarHelper Class” \InProcServer32(Default) = “E:\Programy\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll” [null data] HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\ “{42071714-76d4-11d1-8b24-00a0c9068ff3}” = “Display Panning CPL Extension” -> {HKLM…CLSID} = “Display Panning CPL Extension” \InProcServer32(Default) = “deskpan.dll” [file not found] “{88895560-9AA2-1069-930E-00AA0030EBC8}” = “HyperTerminal Icon Ext” -> {HKLM…CLSID} = “HyperTerminal Icon Ext” \InProcServer32(Default) = “C:\WINDOWS\system32\hticons.dll” [“Hilgraeve, Inc.”] “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” = “WinRAR shell extension” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “E:\Programy\WinRAR\rarext.dll” [null data] “{4CCEFB41-18FA-11D3-9EF3-00A0C9E897FD}” = “Skladnik rozszerzenia powloki CorelDRAW” -> {HKLM…CLSID} = “CorelDRAW Shell Extension Component” \InProcServer32(Default) = “E:\Programy\Corel\DRAW\CDRVIEWER\CrlShell110.dll” [null data] “{42042206-2D85-11D3-8CFF-005004838597}” = “Microsoft Office HTML Icon Handler” -> {HKLM…CLSID} = (no title provided) \InProcServer32(Default) = “E:\Programy\Microsoft Office\OFFICE11\msohev.dll” [MS] “{D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802}” = “Adobe.Acrobat.ContextMenu” -> {HKLM…CLSID} = “Acrobat Elements Context Menu” \InProcServer32(Default) = “E:\Programy\Adobe\Acrobat 6.0\Acrobat Elements\ContextMenu.dll” [“Adobe Systems Inc.”] “{A70C977A-BF00-412C-90B7-034C51DA2439}” = “NvCpl DesktopContext Class” -> {HKLM…CLSID} = “DesktopContext Class” \InProcServer32(Default) = “C:\WINDOWS\system32\nvcpl.dll” [“NVIDIA Corporation”] “{FFB699E0-306A-11d3-8BD1-00104B6F7516}” = “Play on my TV helper” -> {HKLM…CLSID} = “NVIDIA CPL Extension” \InProcServer32(Default) = “C:\WINDOWS\system32\nvcpl.dll” [“NVIDIA Corporation”] “{1CDB2949-8F65-4355-8456-263E7C208A5D}” = “Desktop Explorer” -> {HKLM…CLSID} = “Desktop Explorer” \InProcServer32(Default) = “C:\WINDOWS\system32\nvshell.dll” [“NVIDIA Corporation”] “{1E9B04FB-F9E5-4718-997B-B8DA88302A47}” = “Desktop Explorer Menu” -> {HKLM…CLSID} = (no title provided) \InProcServer32(Default) = “C:\WINDOWS\system32\nvshell.dll” [“NVIDIA Corporation”] “{1E9B04FB-F9E5-4718-997B-B8DA88302A48}” = “nView Desktop Context Menu” -> {HKLM…CLSID} = “nView Desktop Context Menu” \InProcServer32(Default) = “C:\WINDOWS\system32\nvshell.dll” [“NVIDIA Corporation”] “{F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4}” = “Shell Extensions for RealOne Player” -> {HKLM…CLSID} = “RealOne Player Context Menu Class” \InProcServer32(Default) = “e:\Programy\ACE Mega CoDecS Pack\SystemS\RealMedia\rpshell.dll” [“RealNetworks, Inc.”] “{F2185E5D-720E-4956-90D9-75F6AC141575}” = “Idea2 SidebarIconHandler Class” -> {HKLM…CLSID} = “SidebarIconHandler Class” \InProcServer32(Default) = “E:\Programy\Desktop Sidebar\sbhelp.dll” [“Idea2”] “{cc86590a-b60a-48e6-996b-41d25ed39a1e}” = “Portable Media Devices Menu” -> {HKLM…CLSID} = “Portable Media Devices Menu” \InProcServer32(Default) = “C:\WINDOWS\system32\Audiodev.dll” [MS] “{0561EC90-CE54-4f0c-9C55-E226110A740C}” = “Haali Column Provider” -> {HKLM…CLSID} = “Haali Column Provider” \InProcServer32(Default) = “C:\Program Files\Haali\MatroskaSplitter\mmfinfo.dll” [null data] “{5574006C-28F5-4a65-A28C-74DE6BFBE0BB}” = “Haali Matroska Shell Property Page” -> {HKLM…CLSID} = “Haali Matroska Shell Property Page” \InProcServer32(Default) = “C:\Program Files\Haali\MatroskaSplitter\mmfinfo.dll” [null data] “{327669A0-59A7-4be9-B99E-1C9F3A57611A}” = “Haali Matroska Thumbnail Exctractor” -> {HKLM…CLSID} = “Haali Matroska Thumbnail Extractor” \InProcServer32(Default) = “C:\Program Files\Haali\MatroskaSplitter\mmfinfo.dll” [null data] “{B089FE88-FB52-11D3-BDF1-0050DA34150D}” = “NOD32 Context Menu Shell Extension” -> {HKLM…CLSID} = “NOD32 Context Menu Shell Extension” \InProcServer32(Default) = “C:\Program Files\Eset\nodshex.dll” [null data] HKLM\System\CurrentControlSet\Control\Session Manager\ <> “BootExecute” = “autocheck autochk *”|“smrgdf C:\Documents and Settings\Octahedron\Application Data\iolo” [file not found] HKLM\Software\Classes\PROTOCOLS\Filter\ <> text/xml\CLSID = “{807553E5-5146-11D5-A672-00B0D022E945}” -> {HKLM…CLSID} = (no title provided) \InProcServer32(Default) = “C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL” [MS] HKLM\Software\Classes\Folder\shellex\ColumnHandlers\ {0561EC90-CE54-4f0c-9C55-E226110A740C}(Default) = “Haali Column Provider” -> {HKLM…CLSID} = “Haali Column Provider” \InProcServer32(Default) = “C:\Program Files\Haali\MatroskaSplitter\mmfinfo.dll” [null data] HKLM\Software\Classes*\shellex\ContextMenuHandlers\ Adobe.Acrobat.ContextMenu(Default) = “{D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802}” -> {HKLM…CLSID} = “Acrobat Elements Context Menu” \InProcServer32(Default) = “E:\Programy\Adobe\Acrobat 6.0\Acrobat Elements\ContextMenu.dll” [“Adobe Systems Inc.”] NOD32 Context Menu Shell Extension(Default) = “{B089FE88-FB52-11D3-BDF1-0050DA34150D}” -> {HKLM…CLSID} = “NOD32 Context Menu Shell Extension” \InProcServer32(Default) = “C:\Program Files\Eset\nodshex.dll” [null data] ProtectorPlus2000(Default) = “{e33318a0-7321-11d6-9c95-0040056df1d1}” -> {HKLM…CLSID} = “ProtectorPlus2000” \InProcServer32(Default) = “C:\WINDOWS\system32_PPCXM_.DLL” [“Proland Software”] WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “E:\Programy\WinRAR\rarext.dll” [null data] HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\ WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “E:\Programy\WinRAR\rarext.dll” [null data] HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\ NOD32 Context Menu Shell Extension(Default) = “{B089FE88-FB52-11D3-BDF1-0050DA34150D}” -> {HKLM…CLSID} = “NOD32 Context Menu Shell Extension” \InProcServer32(Default) = “C:\Program Files\Eset\nodshex.dll” [null data] ProtectorPlus2000(Default) = “{e33318a0-7321-11d6-9c95-0040056df1d1}” -> {HKLM…CLSID} = “ProtectorPlus2000” \InProcServer32(Default) = “C:\WINDOWS\system32_PPCXM_.DLL” [“Proland Software”] WinRAR(Default) = “{B41DB860-8EE4-11D2-9906-E49FADC173CA}” -> {HKLM…CLSID} = “WinRAR” \InProcServer32(Default) = “E:\Programy\WinRAR\rarext.dll” [null data] Group Policies {GPedit.msc branch and setting}: ----------------------------------------------- Note: detected settings may not have any effect. HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\ “NoToolbarCustomize” = (REG_DWORD) hex:0x00000000 {User Configuration|Administrative Templates|Windows Components|Internet Explorer|Toolbars| Disable customizing browser toolbar buttons} “NoBandCustomize” = (REG_DWORD) hex:0x00000000 {User Configuration|Administrative Templates|Windows Components|Internet Explorer|Toolbars| Disable customizing browser toolbars} HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\ “shutdownwithoutlogon” = (REG_DWORD) hex:0x00000001 {Computer Configuration|Windows Settings|Security Settings|Local Policies|Security Options| Shutdown: Allow system to be shut down without having to log on} “undockwithoutlogon” = (REG_DWORD) hex:0x00000001 {Computer Configuration|Windows Settings|Security Settings|Local Policies|Security Options| Devices: Allow undock without having to log on} Active Desktop and Wallpaper: ----------------------------- Active Desktop may be enabled at this entry: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState Displayed if Active Desktop enabled and wallpaper not set by Group Policy: HKCU\Software\Microsoft\Internet Explorer\Desktop\General\ “Wallpaper” = “C:\WINDOWS\system32\config\systemprofile\Desktop\desktopik.jpg” Displayed if Active Desktop disabled and wallpaper not set by Group Policy: HKCU\Control Panel\Desktop\ “Wallpaper” = “C:\Documents and Settings\Octahedron\Local Settings\Application Data\Microsoft\Wallpaper1.bmp” Startup items in “Octahedron” & “All Users” startup folders: ------------------------------------------------------------ C:\Documents and Settings\Octahedron\Start Menu\Programs\Startup “Adobe Gamma” -> shortcut to: “C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe” [“Adobe Systems, Inc.”] C:\Documents and Settings\All Users\Start Menu\Programs\Startup “Acrobat Assistant” -> shortcut to: “E:\Programy\Adobe\Acrobat 6.0\Distillr\acrotray.exe” [“Adobe Systems Inc.”] “NaturalColorLoad” -> shortcut to: “C:\Program Files\SEC\Natural Color\NaturalColorLoad.exe” [empty string] Winsock2 Service Provider DLLs: ------------------------------- Namespace Service Providers HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++} 000000000001\LibraryPath = “%SystemRoot%\System32\mswsock.dll” [MS] 000000000002\LibraryPath = “%SystemRoot%\System32\winrnr.dll” [MS] 000000000003\LibraryPath = “%SystemRoot%\System32\mswsock.dll” [MS] 000000000004\LibraryPath = “%SystemRoot%\system32\wshbth.dll” [MS] Transport Service Providers HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++} 0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range: C:\WINDOWS\system32\imon.dll ["Eset "], 01 - 05, 24 %SystemRoot%\system32\mswsock.dll [MS], 06 - 08, 11 - 23 %SystemRoot%\system32\rsvpsp.dll [MS], 09 - 10 Toolbars, Explorer Bars, Extensions: ------------------------------------ Toolbars HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\ “{47833539-D0C5-4125-9FA8-0819E2EAAC93}” -> {HKLM…CLSID} = “Adobe PDF” \InProcServer32(Default) = “E:\Programy\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll” [null data] HKLM\Software\Microsoft\Internet Explorer\Toolbar\ “{47833539-D0C5-4125-9FA8-0819E2EAAC93}” = (no title provided) -> {HKLM…CLSID} = “Adobe PDF” \InProcServer32(Default) = “E:\Programy\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll” [null data] Explorer Bars HKLM\Software\Microsoft\Internet Explorer\Explorer Bars\ {182EC0BE-5110-49C8-A062-BEB1D02A220B}(Default) = (no title provided) -> {HKLM…CLSID} = “Adobe PDF” \InProcServer32(Default) = “E:\Programy\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll” [null data] HKLM\Software\Classes\CLSID{FF059E31-CC5A-4E2E-BF3B-96E929D65503}(Default) = “&Badanie” Implemented Categories{00021493-0000-0000-C000-000000000046}\ [vertical bar] InProcServer32(Default) = “E:\Programy\MICROS~1\OFFICE11\REFIEBAR.DLL” [MS] Extensions (Tools menu items, main toolbar menu buttons) HKLM\Software\Microsoft\Internet Explorer\Extensions\ {08B0E5C0-4FCB-11CF-AAA5-00401C608501}\ “MenuText” = “Sun Java Console” “CLSIDExtension” = “{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBC}” -> {HKCU…CLSID} = “Java Plug-in 1.5.0_10” \InProcServer32(Default) = “C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll” [“Sun Microsystems, Inc.”] -> {HKLM…CLSID} = “Java Plug-in 1.5.0_10” \InProcServer32(Default) = “C:\Program Files\Java\jre1.5.0_10\bin\npjpi150_10.dll” [“Sun Microsystems, Inc.”] {09FE188B-6E85-479E-9411-51FB2220DF80}\ “ButtonText” = “Subscribe in Desktop Sidebar” “MenuText” = “Subscribe in Desktop Sidebar” “CLSIDExtension” = “{45AD732C-2CE2-4666-B366-B2214AD57A49}” -> {HKLM…CLSID} = “Idea2 SidebarBrowserMonitor Class” \InProcServer32(Default) = “E:\Programy\Desktop Sidebar\sbhelp.dll” [“Idea2”] {92780B25-18CC-41C8-B9BE-3C9C571A8263}\ “ButtonText” = “Badanie” {E2E2DD38-D088-4134-82B7-F2BA38496583}\ “MenuText” = “@xpsp3res.dll ,-20001” “Exec” = “%windir%\Network Diagnostic\xpnetdiag.exe” [MS] {FB5F1910-F110-11D2-BB9E-00C04F795683}\ “ButtonText” = “Messenger” “MenuText” = “Windows Messenger” “Exec” = “C:\Program Files\Messenger\msmsgs.exe” [MS] Running Services (Display Name, Service Name, Path {Service DLL}): ------------------------------------------------------------------ Bluetooth Support Service, BthServ, “C:\WINDOWS\system32\svchost.exe -k bthsvcs” {“C:\WINDOWS\System32\bthserv.dll” [MS]} NOD32 Kernel Service, NOD32krn, ““C:\Program Files\Eset\nod32krn.exe”” ["Eset "] NVIDIA Display Driver Service, NVSvc, “C:\WINDOWS\system32\nvsvc32.exe” [“NVIDIA Corporation”] Windows User Mode Driver Framework, UMWdf, “C:\WINDOWS\system32\wdfmgr.exe” [MS] Print Monitors: --------------- HKLM\System\CurrentControlSet\Control\Print\Monitors\ Adobe PDF Port\Driver = “C:\WINDOWS\system32\AdobePDF.dll” [“Adobe Systems Incorporated.”] GCC USB Port\Driver = “gccumnt.dll” [“PandP”] Microsoft Document Imaging Writer Monitor\Driver = “mdimon.dll” [MS] ---------- <>: Suspicious data at a malware launch point. + This report excludes default entries except where indicated. + To see *everywhere* the script checks and *everything* it finds, launch it from a command prompt or a shortcut with the -all parameter. + To search all directories of local fixed drives for DESKTOP.INI DLL launch points, use the -supp parameter or answer “No” at the first message box and “Yes” at the second message box. ---------- (total run time: 203 seconds)
Miałem kiedyś podobny problem.W końcu za pmocą programu TuneUp Utilites znalazłem jeden proces.Nazywało się toto gadu-gadu update.temp.Siedziało w folderze “dane aplikacji”.Więc może to.Usunąłem go w trybie awaryjnym i wszystko wróciło do normy.
Agaton
(Agatonster)
7 Maj 2007 09:11
#3
W tym dziale - jeżeli nie masz doświadczenia w sprawdzaniu logów - nie komentuj - to dział dla znawców logów.
Post - jako OT zasila KOSZ
Joan
(Joan Sunshine)
7 Maj 2007 10:27
#4
Octahedron witaj na Forum
Używamy tu polskich znaków w pisowni - użyj proszę przycisku
Otwórz notatnik i wklej w nim to:
Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager] “BootExecute”=hex(7):61,00,75,00,74,00,6f,00,63,00,68,00,65,00,63,00,6b,00,20,\ 00,61,00,75,00,74,00,6f,00,63,00,68,00,6b,00,20,00,2a,00,00,00,00,00
Plik - zapisz jako - zmień rozszerzenie na wszystkie pliki - zapisz pod nazwą FIX.REG
Odpal plik FIX.REG i potwierdź dodanie do rejestru i reset kompa
Co do daty w systemie zapewne bateyjka na płycie głównej jest do wymiany.
Sprawdź błędy w podglądzie zdarzeń:
Start = Panel Sterowania = Narzędzia Administracyjne = Podgląd zdarzeń
Jeśli będą jakieś na czerwono, to wklej szczegóły.
Cześć, dzięki za miłe przyjęcie i szybką odpowiedź!
Używamy tu polskich znaków w pisowni - użyj proszę przycisku i popraw posta. Jasne! przepraszam. :oops: Już poprawiony post. Otwórz notatnik i wklej w nim to: Plik - zapisz jako - zmień rozszerzenie na wszystkie pliki - zapisz pod nazwą FIX.REG Odpal plik FIX.REG i potwierdź dodanie do rejestru i reset kompa wykonane! Sprawdź błędy w podglądzie zdarzeń: Start = Panel Sterowania = Narzędzia Administracyjne = Podgląd zdarzeń Jeśli będą jakieś na czerwono, to wklej szczegóły. Są na czerwono, w rzeczy samej! Poniżej zamieszczam fragment wykesportowanych list zakładek APPLICATION oraz SYSTEM, w których pojawiły się właśnie czerwone pozycje typu Error. Jest również masa pozycji typu WARNING, więc napisz, proszę, czy też je tu wkleić : Zakładka APPLICATION: Type Date Time Source Category Event User Computer Error 2007-03-12 18:43:24 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-21 13:43:56 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-02-27 01:41:18 nview_info None 1 N/A OBSCURESQUE Error 2007-03-01 16:18:09 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-02-27 23:22:43 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-21 22:53:01 nview_info None 1 N/A OBSCURESQUE Error 2007-02-26 19:54:48 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-02-27 20:40:43 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-03 12:06:06 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-04-06 14:50:36 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-23 19:58:36 nview_info None 1 N/A OBSCURESQUE Error 2007-04-06 14:51:23 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-02-26 20:00:36 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-02-26 20:32:57 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-06 14:50:32 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-05-03 18:33:17 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-05-01 20:24:58 Application Error None 1000 N/A OBSCURESQUE Error 2007-04-06 14:50:15 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-02-27 03:32:58 nview_info None 1 N/A OBSCURESQUE Error 2007-04-06 14:50:14 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-12 10:57:01 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-30 02:04:08 Application Error None 1000 N/A OBSCURESQUE Error 2007-04-05 11:51:47 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-05 11:51:42 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-22 22:31:18 MsiInstaller None 11713 Octahedron OBSCURESQUE Error 2007-03-22 22:31:56 MsiInstaller None 11713 Octahedron OBSCURESQUE Error 2007-03-25 01:24:43 Application Error None 1000 N/A OBSCURESQUE Error 2007-04-09 19:29:04 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-29 13:55:13 Application Error None 1000 N/A OBSCURESQUE Error 2007-04-29 13:54:57 Application Error None 1000 N/A OBSCURESQUE Error 2007-04-29 12:53:42 Application Error None 1000 N/A OBSCURESQUE Error 2007-04-09 21:49:53 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-28 19:36:27 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-01 13:53:17 Application Error None 1000 N/A OBSCURESQUE Error 2007-04-11 21:54:15 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-01 13:30:08 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-23 11:00:05 MsiInstaller None 11713 Octahedron OBSCURESQUE Error 2007-04-01 13:28:41 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-01 13:28:41 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-05 22:18:35 nview_info None 1 N/A OBSCURESQUE Error 2007-04-14 20:07:46 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-27 00:42:39 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-01 13:28:41 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-08 17:38:52 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-21 22:52:08 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-31 13:24:48 Application Hang None 1001 N/A OBSCURESQUE Error 2007-03-05 17:50:36 Microsoft Office 11 None 2001 N/A OBSCURESQUE Error 2007-04-25 18:52:15 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-10 02:15:29 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-25 01:02:10 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-25 00:36:27 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-31 13:24:38 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-04-15 09:34:10 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-08 15:27:30 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-23 12:29:07 nview_info None 1 N/A OBSCURESQUE Error 2007-04-15 22:26:02 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-09 14:09:35 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-23 01:55:50 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-23 12:45:52 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-05-06 23:16:21 Application Error (100) 1005 N/A OBSCURESQUE Error 2007-05-06 23:16:33 Application Error (100) 1000 N/A OBSCURESQUE Error 2007-04-22 21:49:35 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-23 13:03:59 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-23 19:54:00 nview_info None 1 N/A OBSCURESQUE Error 2007-03-21 12:26:16 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-25 01:58:31 nview_info None 1 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-25 02:05:27 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-25 02:23:22 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-26 13:08:39 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-26 13:20:32 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-02 10:18:12 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-02 10:18:38 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-12 18:21:11 nview_info None 1 N/A OBSCURESQUE Error 2007-03-26 15:44:27 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-31 12:35:44 Application Error None 1000 N/A OBSCURESQUE Error 2007-04-11 19:13:16 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-12 18:44:09 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-26 23:18:38 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-26 23:49:11 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-16 22:25:41 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-31 12:12:08 Application Error None 1001 N/A OBSCURESQUE Error 2007-03-31 12:11:36 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-18 16:03:11 nview_info None 1 N/A OBSCURESQUE Error 2007-03-27 11:27:18 MsiInstaller None 11500 Octahedron OBSCURESQUE Error 2007-04-08 21:31:19 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-30 20:12:23 Application Error None 1000 N/A OBSCURESQUE Error 2007-04-19 13:35:59 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-03 14:49:43 nview_info None 1 N/A OBSCURESQUE Error 2007-04-10 12:44:17 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-30 02:16:54 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-27 11:30:35 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-29 23:45:37 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-03 16:19:12 Application Hang None 1001 N/A OBSCURESQUE Error 2007-03-27 11:36:54 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-27 12:03:54 MsiInstaller None 11713 Octahedron OBSCURESQUE Error 2007-03-28 21:56:40 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-28 19:32:18 Application Error None 1000 N/A OBSCURESQUE Error 2007-04-17 20:47:14 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-23 19:57:26 nview_info None 1 N/A OBSCURESQUE Error 2007-04-11 01:42:12 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-28 19:32:06 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-18 01:00:11 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-18 19:35:17 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-28 00:40:34 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-27 22:05:18 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-18 01:01:28 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-27 12:16:09 MsiInstaller None 11713 Octahedron OBSCURESQUE Error 2007-04-11 11:34:56 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-03 21:17:53 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-04-18 13:09:53 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-27 12:45:09 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-16 04:04:05 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-15 21:21:42 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-21 22:51:53 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-21 16:55:13 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-21 00:47:48 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-19 11:48:34 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-20 12:32:34 nview_info None 1 N/A OBSCURESQUE Error 2007-03-22 10:45:23 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-03 21:17:48 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-04 12:25:01 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-18 23:32:25 nview_info None 1 N/A OBSCURESQUE Error 2007-03-18 22:39:21 nview_info None 1 N/A OBSCURESQUE Error 2007-03-03 16:19:07 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-08 17:48:09 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-12 18:21:12 nview_info None 1 N/A OBSCURESQUE Error 2007-03-13 02:01:00 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-11 14:53:03 nview_info None 1 N/A OBSCURESQUE Error 2007-03-12 18:50:34 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-13 02:01:07 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-12 18:21:10 nview_info None 1 N/A OBSCURESQUE Error 2007-03-13 11:45:44 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-07 21:21:35 nview_info None 1 N/A OBSCURESQUE Error 2007-03-04 12:25:12 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-17 00:30:29 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-05 01:08:06 nview_info None 1 N/A OBSCURESQUE Error 2007-03-07 21:21:46 nview_info None 1 N/A OBSCURESQUE Error 2007-03-09 02:13:41 nview_info None 1 N/A OBSCURESQUE Error 2007-03-06 18:57:08 nview_info None 1 N/A OBSCURESQUE Error 2007-03-08 19:05:10 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-02-26 20:07:45 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-18 22:39:18 nview_info None 1 N/A OBSCURESQUE Error 2007-03-21 21:20:07 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-03 14:56:00 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-22 10:06:55 Application Error None 1000 N/A OBSCURESQUE Error 2007-03-01 04:44:16 Application Hang (101) 1002 N/A OBSCURESQUE Error 2007-03-03 20:57:34 nview_info None 1 N/A OBSCURESQUE Error 2007-03-22 21:57:31 nview_info None 1 N/A OBSCURESQUE Zakładka SYSTEM: Type Date Time Source Category Event User Computer Error 2007-05-03 01:06:02 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-05-03 16:02:50 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-24 22:22:40 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-05-03 16:36:26 sr None 1 N/A OBSCURESQUE Error 2007-05-01 17:17:52 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-05-02 09:16:16 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-30 09:42:27 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-30 02:11:52 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-25 09:41:46 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-05-04 09:31:43 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-29 23:17:07 Service Control Manager None 7000 N/A OBSCURESQUE Error 1970-01-01 01:00:00 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-29 11:28:45 System Error (102) 1003 N/A OBSCURESQUE Error 2007-04-29 11:26:53 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-28 23:59:02 ntfs Disk 55 N/A OBSCURESQUE Error 2007-04-28 19:31:37 ntfs Disk 55 N/A OBSCURESQUE Error 1970-01-01 01:00:00 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-26 00:24:16 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-05-07 11:53:42 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-28 14:54:26 disk None 11 N/A OBSCURESQUE Error 2007-04-28 11:48:26 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-28 01:11:28 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-27 20:55:56 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-27 18:23:31 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-05-04 20:39:14 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-27 13:47:56 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-27 09:36:59 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-27 09:34:39 ntfs Disk 55 N/A OBSCURESQUE Error 2007-05-05 11:13:26 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-26 20:56:09 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-26 13:25:33 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-04-26 09:44:57 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-05-06 14:35:51 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-05-06 21:43:55 Service Control Manager None 7000 N/A OBSCURESQUE Error 2007-05-07 09:50:35 Service Control Manager None 7000 N/A OBSCURESQUE Czy ten wspomniany program TuneUp Utilities także mam znaleźć? Dzięki wielkie za Waszą pomoc i kolejne sugestie! Octahedron
Joan
(Joan Sunshine)
7 Maj 2007 16:35
#6
Kliknij 2 razy na błędy typu “Application Error” i “System Error” i wklej szczegóły z okienka, które się pokaże.
Stworzyłem, jak poradzono plik rejestru i go odpaliłem.
Znalazłem też aplikacje TuneUp Utilities , ktora rzekomo ma podregulować ogólne dzialnie systemu. Uruchomiłem więc praktycznie wszystkie narzędzia jakie oferuje.
Różnica w kondycji komputera jest bardzo niewielka. Nadal użycie procesora oscyluje w okolicach 90% przy samym Firefoxie i gg, zaś gdy włącze do tego muzykę - na nowo 100%, constant…
Poniżej po kilka przykładowych (łącznie jest ich masa) szczegółów z okienek Event Properties.
Dla zakładki Application :
Event Type: Error Event Source: Application Hang Event Category: (101) Event ID: 1002 Date: 2007-05-03 Time: 18:33:17 User: N/A Computer: OBSCURESQUE Description: Hanging application Azureus.exe, version 1.0.0.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp . Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 48 61 6e 67 ion Hang 0010: 20 20 41 7a 75 72 65 75 Azureu 0018: 73 2e 65 78 65 20 31 2e s.exe 1. 0020: 30 2e 30 2e 30 20 69 6e 0.0.0 in 0028: 20 68 75 6e 67 61 70 70 hungapp 0030: 20 30 2e 30 2e 30 2e 30 0.0.0.0 0038: 20 61 74 20 6f 66 66 73 at offs 0040: 65 74 20 30 30 30 30 30 et 00000 0048: 30 30 30 000 ************************************************ Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 2007-05-01 Time: 20:24:58 User: N/A Computer: OBSCURESQUE Description: Faulting application gg.exe, version 6.1.0.158, faulting module gg.exe, version 6.1.0.158, fault address 0x00050b38. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp . Data: 0000: 6c707041 74616369 206e6f69 6c696146 0010: 20657275 2e676720 20657865 2e312e36 0020: 35312e30 6e692038 2e676720 20657865 0030: 2e312e36 35312e30 74612038 66666f20 0040: 20746573 35303030 38336230 0a0d ************************************************ Event Type: Error Event Source: Application Error Event Category: None Event ID: 1000 Date: 2007-04-30 Time: 02:04:08 User: N/A Computer: OBSCURESQUE Description: Faulting application coreldrw.exe, version 11.704.0.0, faulting module cdrcore110.dll, version 11.704.0.0, fault address 0x0008a80e. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp . Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 46 61 69 6c ion Fail 0010: 75 72 65 20 20 63 6f 72 ure cor 0018: 65 6c 64 72 77 2e 65 78 eldrw.ex 0020: 65 20 31 31 2e 37 30 34 e 11.704 0028: 2e 30 2e 30 20 69 6e 20 .0.0 in 0030: 63 64 72 63 6f 72 65 31 cdrcore1 0038: 31 30 2e 64 6c 6c 20 31 10.dll 1 0040: 31 2e 37 30 34 2e 30 2e 1.704.0. 0048: 30 20 61 74 20 6f 66 66 0 at off 0050: 73 65 74 20 30 30 30 38 set 0008 0058: 61 38 30 65 0d 0a a80e… *********************************************** Event Type: Error Event Source: nview_info Event Category: None Event ID: 1 Date: 2007-03-12 Time: 18:21:10 User: N/A Computer: OBSCURESQUE Description: The description for Event ID ( 1 ) in Source ( nview_info ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: NVIEW : AirPlusCFG: WAIT_TIMEOUT, LAST SUCCESS: (tid: 0x638) (pid: 0x620) . *********************************************** Event Type: Error Event Source: MsiInstaller Event Category: None Event ID: 11713 Date: 2007-03-22 Time: 22:31:18 User: OBSCURESQUE\Octahedron Computer: OBSCURESQUE Description: Product: PaperPort 8.0 SE – Error 1713. PaperPort 8.0 SE cannot install one of its required products. Contact your technical support group. System Error: 1605. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp . Data: 0000: 7b 41 45 46 32 44 31 46 {AEF2D1F 0008: 33 2d 30 36 39 36 2d 31 3-0696-1 0010: 31 44 35 2d 38 45 36 41 1D5-8E6A 0018: 2d 30 30 43 30 34 46 37 -00C04F7 0020: 46 41 32 33 34 7d FA234} *********************************************** Event Type: Error Event Source: Application Hang Event Category: (101) Event ID: 1002 Date: 2007-04-28 Time: 19:36:27 User: N/A Computer: OBSCURESQUE Description: Hanging application slsk.exe, version 1.0.0.1, hang module hungapp, version 0.0.0.0, hang address 0x00000000. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp . Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 48 61 6e 67 ion Hang 0010: 20 20 73 6c 73 6b 2e 65 slsk.e 0018: 78 65 20 31 2e 30 2e 30 xe 1.0.0 0020: 2e 31 20 69 6e 20 68 75 .1 in hu 0028: 6e 67 61 70 70 20 30 2e ngapp 0. 0030: 30 2e 30 2e 30 20 61 74 0.0.0 at 0038: 20 6f 66 66 73 65 74 20 offset 0040: 30 30 30 30 30 30 30 30 00000000 *********************************************** Event Type: Error Event Source: Application Hang Event Category: None Event ID: 1001 Date: 2007-03-03 Time: 16:19:12 User: N/A Computer: OBSCURESQUE Description: Fault bucket 184215034. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp . Data: 0000: 42 75 63 6b 65 74 3a 20 Bucket: 0008: 31 38 34 32 31 35 30 33 18421503 0010: 34 0d 0a 4… *********************************************** Event Type: Error Event Source: Application Hang Event Category: (101) Event ID: 1002 Date: 2007-04-11 Time: 21:54:15 User: N/A Computer: OBSCURESQUE Description: Hanging application firefox.exe, version 1.8.20070.30919, hang module hungapp, version 0.0.0.0, hang address 0x00000000. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp . Data: 0000: 41 70 70 6c 69 63 61 74 Applicat 0008: 69 6f 6e 20 48 61 6e 67 ion Hang 0010: 20 20 66 69 72 65 66 6f firefo 0018: 78 2e 65 78 65 20 31 2e x.exe 1. 0020: 38 2e 32 30 30 37 30 2e 8.20070. 0028: 33 30 39 31 39 20 69 6e 30919 in 0030: 20 68 75 6e 67 61 70 70 hungapp 0038: 20 30 2e 30 2e 30 2e 30 0.0.0.0 0040: 20 61 74 20 6f 66 66 73 at offs 0048: 65 74 20 30 30 30 30 30 et 00000 0050: 30 30 30 000
Dla zakładki System :
Event Type: Error Event Source: Service Control Manager Event Category: None Event ID: 7000 Date: 2007-04-26 Time: 20:56:09 User: N/A Computer: OBSCURESQUE Description: The Par1284 service failed to start due to the following error: The system cannot find the file specified. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp . ******************************************* Event Type: Error Event Source: Disk Event Category: None Event ID: 11 Date: 2007-04-28 Time: 14:54:26 User: N/A Computer: OBSCURESQUE Description: The driver detected a controller error on \Device\Harddisk1\D. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp . Data: 0000: 0e 01 68 00 01 00 b6 00 …h…¶. 0008: 00 00 00 00 0b 00 04 c0 …À 0010: 03 01 00 00 00 00 00 00 … 0018: 00 00 00 00 00 00 00 00 … 0020: 00 00 00 00 00 00 00 00 … 0028: 33 1c 11 00 00 00 00 00 3… 0030: ff ff ff ff 06 00 00 00 ÿÿÿÿ… 0038: 40 00 00 00 00 00 00 00 @… 0040: ff 00 06 12 0c 00 00 00 ÿ… 0048: 00 00 00 00 0a 00 00 00 … 0050: 00 00 00 00 58 27 02 86 …X’. 0058: 00 00 00 00 48 5e 1d 86 …H^. 0060: 00 00 00 00 00 00 00 00 … 0068: 00 00 00 00 00 00 00 00 … 0070: 00 00 00 00 00 00 00 00 … 0078: 00 00 00 00 00 00 00 00 … 0080: 00 00 00 00 00 00 00 00 … 0088: 00 00 00 00 00 00 00 00 … ****************************************** Event Type: Error Event Source: System Error Event Category: (102) Event ID: 1003 Date: 2007-04-29 Time: 11:28:45 User: N/A Computer: OBSCURESQUE Description: Error code 1000000a, parameter1 ffff001a, parameter2 00000002, parameter3 00000000, parameter4 804e469a. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp . Data: 0000: 53 79 73 74 65 6d 20 45 System E 0008: 72 72 6f 72 20 20 45 72 rror Er 0010: 72 6f 72 20 63 6f 64 65 ror code 0018: 20 31 30 30 30 30 30 30 1000000 0020: 61 20 20 50 61 72 61 6d a Param 0028: 65 74 65 72 73 20 66 66 eters ff 0030: 66 66 30 30 31 61 2c 20 ff001a, 0038: 30 30 30 30 30 30 30 32 00000002 0040: 2c 20 30 30 30 30 30 30 , 000000 0048: 30 30 2c 20 38 30 34 65 00, 804e 0050: 34 36 39 61 469a ******************************************* Event Type: Error Event Source: sr Event Category: None Event ID: 1 Date: 2007-05-03 Time: 16:36:26 User: N/A Computer: OBSCURESQUE Description: The System Restore filter encountered the unexpected error ‘0xC000007F’ while processing the file ‘3dsmax9.exe’ on the volume ‘HarddiskVolume2’. It has stopped monitoring the volume. For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp . Data: 0000: 04 00 00 00 04 00 4e 00 …N. 0008: 00 00 00 00 01 00 00 c0 …À 0010: 00 00 00 00 00 00 00 00 … 0018: 00 00 00 00 00 00 00 00 … 0020: 00 00 00 00 00 00 00 00 …
Złączono Posta : 08.05.2007 (Wto) 19:52
jakaś szansa na kontynuację wątku?
byłbym wdzięczny za dalszą diagnoze i sugestie :co:
Złączono Posta : 09.05.2007 (Sro) 17:25
zrobiłem, jak poradziłaś.
czy da się na podstawie tego wyciągnąć jakieś wnioski i zaproponować rozwiązanie?
please help :?