Problem z wirusami


(system) #1

Czesc nie wiem jak usunac wirusy

siedza w systemie nie odczulem zadnej roznicy typu zamulanie czy cos ale wolal bym zeby system byl "czysty"

mam G data internet security 2009 (2 skanery)

znalazl mi:

-2x Trojan.Packed45516

-Gen:Adware.Heur7034CB6969

Doadm ze jestem zielony ale jak ktos napisze co mam zrobic to dam rade.

za kilka minut dam loga z HijackThis.

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 14:39:52, on 2009-07-07

Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16850)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\RTHDCPL.EXE

C:\WINDOWS\system32\RUNDLL32.EXE

C:\Program Files\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe

C:\Program Files\G DATA\InternetSecurity\AVKTray\AVKTray.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Messenger\msmsgs.exe

C:\program files\valve\steam\steam.exe

C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe

C:\Program Files\Common Files\G DATA\AVKProxy\AVKProxy.exe

C:\Program Files\G DATA\InternetSecurity\AVK\AVKService.exe

C:\Program Files\G DATA\InternetSecurity\AVK\AVKWCtl.exe

C:\Program Files\Gizmo5\mDNSResponder.exe

C:\Program Files\Common Files\LightScribe\LSSrvc.exe

C:\WINDOWS\system32\PnkBstrA.exe

C:\WINDOWS\system32\PnkBstrB.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

C:\Program Files\G DATA\InternetSecurity\Firewall\GDFwSvc.exe

C:\Program Files\Nero\Nero 7\Core\nero.exe

C:\Program Files\Gizmo5\Gizmo5.exe

C:\Program Files\Winamp\winamp.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\G DATA\InternetSecurity\GUI\avkis.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.daemonsearch.com/intl/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll

O4 - HKLM..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM..\Run: [nwiz] nwiz.exe /install

O4 - HKLM..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM..\Run: [GDFirewallTray] C:\Program Files\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe

O4 - HKLM..\Run: [G DATA AntiVirus Trayapplication] C:\Program Files\G DATA\InternetSecurity\AVKTray\AVKTray.exe

O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKLM..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"

O4 - HKCU..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O4 - HKCU..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"

O4 - HKCU..\Run: [ALLUpdate] "C:\Program Files\ALLPlayer\ALLUpdate.exe" "sleep"

O4 - HKCU..\RunOnce: [WiseStubReboot] MSIEXEC /quiet SKIP_PPU_DRIVER_INSTALL=1 /I "C:\Program Files\Common Files\Wise Installation Wizard\WIS1C4551A64743409391E41477CD655043_9_09_0203.MSI" TRANSFORMS="C:\Program Files\Common Files\Wise Installation Wizard\WIS1C4551A64743409391E41477CD655043_9_09_0203.MST" WISE_SETUP_EXE_PATH="c:\nvidia\winxp\185.85\is\PhysX_9.09.0408_SystemSoftware.exe"

O4 - HKUS\S-1-5-19..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA')

O4 - HKUS\S-1-5-20..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA')

O4 - HKUS\S-1-5-18..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS.DEFAULT..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupda ... 6609642892

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O23 - Service: G DATA AntiVirus Proxy (AVKProxy) - G DATA Software - C:\Program Files\Common Files\G DATA\AVKProxy\AVKProxy.exe

O23 - Service: G DATA Scheduler (AVKService) - G DATA Software - C:\Program Files\G DATA\InternetSecurity\AVK\AVKService.exe

O23 - Service: Strażnik AntiVirus (AVKWCtl) - G DATA Software AG - C:\Program Files\G DATA\InternetSecurity\AVK\AVKWCtl.exe

O23 - Service: Bonjour Service - Apple Computer, Inc. - C:\Program Files\Gizmo5\mDNSResponder.exe

O23 - Service: G DATA Personal Firewall (GDFwSvc) - G DATA Software AG - C:\Program Files\G DATA\InternetSecurity\Firewall\GDFwSvc.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe

O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe

--

End of file - 6867 bytes

jakies rady?


(Mattek97) #2

Spróbuj ściągnąć Dr.WEB CureIt!

http://dobreprogramy.pl/index.php?dz=19 ... #komentarz

-- Dodane 07.07.2009 (Wt) 14:52 --

Daj pełny skan.

-- Dodane 07.07.2009 (Wt) 14:57 --

Spróbuj jeszcze to:

http://www.pctools.com/pl/spyware-docto ... 3godlBouBA


(system) #3

na szybkim skanowaniu nie wykryto zadny dam jeszcze pelne


(Mattek97) #4

No pewnie że nie .

Daj Pełne.


(system) #5

cos opornie mu to idzie


(Mattek97) #6

Mi też tak szło.

Powiedz czy coś już wykryło .


(system) #7

jeszcze nie

a znasz sie na tym logu co podalem cos mozesz powiedziec?


(Mattek97) #8

Na logach się nie znam.

Musisz poczekać na kogo innego :confused:


(system) #9

to nic przecierz i tak sie ciesze ze mi dales tez program zobaczymy


(Leon$) #10

Log wygląda na czysty

Pobierz CCleaner http://www.filehippo.com/download_ccleaner/

przeskanuj nim i wyczyść rejestr.

zrób optymalizacje uruchamiania

http://cybertrash.netarteria.pl/cyber/i ... 378.0.html

Pobierz System Repair Engineer

http://www.cybertrash.pl/images/tata/System%20Repair/System%20Repair%20Engineer.html

przeskanuj daj log

:slight_smile:


(system) #11

dobra ccc z glowy a oco chodzi z cyber trashem?

a to co mi dlaes te wylaczanie z autostartu to troszek sobie ustawilem ale nie wszystko

-- Dodane 07.07.2009 (Wt) 16:00 --

ale ja mam system dopiero ze 3 dni on sie zalacza szybko

-- Dodane 07.07.2009 (Wt) 16:17 --

2009-07-07,16:14:54


System Repair Engineer 2.7.1.1261

Smallfrogs (http://www.KZTechs.com)


Windows XP Home Edition Dodatek Service Pack 3 (Build 2600) - Administrative User - Completed Functions Allowed


Follow item(s) have been selected:

    All Boot Items (Including Registry, Startup Folders, Services and so on)

    Browser Add-ons

    Running Processes (Including process model information)

    File Associations

    Winsock Provider

    Autorun.Inf

    HOSTS File

    Process Privileges Scan

    Scheduled Tasks

    API HOOK

    Hidden Process



Boot Items

Registry

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
<"C:\Program Files\Messenger\msmsgs.exe" /background> [(Verified)Microsoft Windows Component Publisher]
<"c:\program files\valve\steam\steam.exe" -silent> [(Verified)Valve]
<"C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"> [(Verified)Nero AG]
<"C:\Program Files\ALLPlayer\ALLUpdate.exe" "sleep"> [File is missing]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
  [File is missing]

[HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<> [N/A]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
  [(Verified)Microsoft Windows Hardware Compatibility Publisher]
  [(Verified)NVIDIA Corporation]
  [NVIDIA Corporation]
  [NVIDIA Corporation]
  [(Verified)G DATA Software AG]
  [(Verified)G DATA Software AG]
  [(Verified)Nero AG]
<"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"> [(Verified)"Adobe Systems, Incorporated"]
<"C:\Program Files\Java\jre6\bin\jusched.exe"> [(Verified)"Sun Microsystems, Inc."]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  [Microsoft Corporation]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows]
<> [N/A]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
  [Microsoft Corporation]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]

    <{AEB6717E-7E19-11d0-97EE-00C04FD91972}> [Microsoft Corporation]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
<%SystemRoot%\system32\SHELL32.dll> [Microsoft Corporation]
<%SystemRoot%\system32\SHELL32.dll> [Microsoft Corporation]
  [Microsoft Corporation]
  [Microsoft Corporation]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\dimsntfy]
<%SystemRoot%\System32\dimsntfy.dll> [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]

    <{438755C2-A8BA-11D1-B96B-00A0C90312E1}><%SystemRoot%\system32\browseui.dll> [Microsoft Corporation]

    <{8C7461EF-2B13-11d2-BE35-3078302C2030}><%SystemRoot%\system32\browseui.dll> [Microsoft Corporation]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{26923b43-4d38-484f-9b9e-de460746276c}]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}MICROS]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}]
<%systemroot%\system32\shmgrate.exe OCInstallUserConfigOE> [File is missing]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
<"C:\Program Files\Common Files\LightScribe\LSRunOnce.exe"> [(Verified)Hewlett-Packard Company]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{2C7339CF-2B09-4501-B3F3-F3508C9228ED}]
<%SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll> [File is missing]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA840-CC51-11CF-AAFA-00AA00B6015C}]
<"%ProgramFiles%\Outlook Express\setup50.exe" /APP:OE /CALLER:WINNT /user /install> [File is missing]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{44BBA842-CC51-11CF-AAFA-00AA00B6015B}]
  [(Verified)Microsoft Windows Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5945c046-1e7d-11d1-bc44-00c04fd912be}]
  [(Verified)Microsoft Windows Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{7790769C-0471-11d2-AF11-00C04FA35D02}]
<"%ProgramFiles%\Outlook Express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install> [File is missing]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4340}]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89820200-ECBD-11cf-8B85-00AA005B4383}]
  [(Verified)Microsoft Windows Component Publisher]

[HKEY_CURRENT_USER\Control Panel\Desktop]
  [File is missing]


==================================

Startup Folders

[RocketDock]
 C:\WINDOWS\BRICOP~1\VISTAI~1\ROCKET~1\ROCKET~1.EXE [N/A]>


==================================

Services

[Zarządzanie aplikacjami / AppMgmt][Stopped/Manual Start]
%SystemRoot%\System32\appmgmts.dll>

[G DATA AntiVirus Proxy / AVKProxy][Running/Auto Start]

  <"C:\Program Files\Common Files\G DATA\AVKProxy\AVKProxy.exe">

[G DATA Scheduler / AVKService][Running/Auto Start]


[Strażnik AntiVirus / AVKWCtl][Running/Auto Start]


[Bonjour Service / Bonjour Service][Running/Auto Start]


[G DATA Personal Firewall / GDFwSvc][Running/Manual Start]


[Dostęp do urządzeń interfejsu HID / HidServ][Stopped/Disabled]
%SystemRoot%\System32\hidserv.dll>

[LightScribeService Direct Disc Labeling Service / LightScribeService][Running/Auto Start]

  <"C:\Program Files\Common Files\LightScribe\LSSrvc.exe">

[NBService / NBService][Stopped/Manual Start]


[NMIndexingService / NMIndexingService][Running/Manual Start]

  <"C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe">

[NVIDIA Display Driver Service / nvsvc][Running/Auto Start]


[PnkBstrA / PnkBstrA][Running/Auto Start]


[PnkBstrB / PnkBstrB][Running/Auto Start]


[Java Quick Starter / JavaQuickStarterService][Running/Auto Start]

  <"C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf">


==================================

Drivers

[GDMnIcpt / GDMnIcpt][Running/Manual Start]

  <\??\C:\WINDOWS\system32\drivers\MiniIcpt.sys>

[GDNdisIc / GDNdisIc][Running/Boot Start]

  <\SystemRoot\system32\drivers\GDNdisIc.sys>

[GDTdiInterceptor / GDTdiInterceptor][Running/Auto Start]

  <\??\C:\WINDOWS\system32\drivers\GDTdiIcpt.sys>

[GearAspiWDM / GearAspiWDM][Running/Manual Start]


[G DATA Rootkit Detector Driver / GRD][Running/System Start]

  <\??\C:\WINDOWS\system32\drivers\GRD.sys>

[Sterownik magistrali Microsoft UAA dla High Definition Audio / HDAudBus][Running/Manual Start]


[HookCentre / HookCentre][Running/Manual Start]

  <\??\C:\WINDOWS\system32\drivers\HookCentre.sys>

[Service for Realtek HD Audio (WDM) / IntcAzAudAddService][Running/Manual Start]


[nv / nv][Running/Manual Start]


[Sterownik bezpośredniego połączenia kablowego / Ptilink][Running/Manual Start]


[PxHelp20 / PxHelp20][Running/Boot Start]

  <\SystemRoot\System32\Drivers\PxHelp20.sys>

[Realtek 10/100/1000 PCI NIC Family NDIS XP Driver / RTL8023xp][Running/Manual Start]


[Secdrv / Secdrv][Stopped/Manual Start]


[sptd / sptd][Running/Boot Start]

  <\SystemRoot\System32\Drivers\sptd.sys>


==================================

Browser Add-ons

[Adobe PDF Link Helper]

  {18DF081C-E8AD-4283-A596-FA578C2EBDC3} 

[Java(tm) Plug-In 2 SSV Helper]

  {DBC80044-A445-435b-BC74-9C25C1C588A9} 

[JQSIEStartDetectorImpl Class]

  {E7E6F031-17CE-4C07-BC86-EABFE594F69C} 

[]

  {e2e2dd38-d088-4134-82b7-f2ba38496583} <%windir%\Network Diagnostic\xpnetdiag.exe, (Signed) N/A>

[Messenger]

  {FB5F1910-F110-11d2-BB9E-00C04F795683} 

[DAEMON Tools Toolbar]

  {32099AAC-C132-4136-9E9A-4E364A424E17} 

[WUWebControl Class]

  {6414512B-B978-451D-A0D8-FCFDF33E833C} 

[Java Plug-in 1.6.0_14]

  {8AD9C840-044E-11D1-B3E9-00805F499D93} 

[]

  {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} <, >

[Java Plug-in 1.6.0_14]

  {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} 

[Java Plug-in 1.6.0_14]

  {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} 

[]

  {E2883E8F-472F-4FB0-9522-AC9BF37916A7} <, >

[Windows Genuine Advantage Validation Tool]

  {17492023-C23A-453E-A040-C7C580BBF700} 

[Adobe PDF Link Helper]

  {18DF081C-E8AD-4283-A596-FA578C2EBDC3} 

[DAEMON Tools Toolbar]

  {32099AAC-C132-4136-9E9A-4E364A424E17} 

[Microsoft Terminal Services Client Control (redist)]

  {4eb89ff4-7f78-4a0f-8b8d-2bf02e94e4b2} <%systemroot%\system32\mstscax.dll, N/A>

[Microsoft Terminal Services Client Control (redist)]

  {4EDCB26C-D24C-4e72-AF07-B576699AC0DE} <%systemroot%\system32\mstscax.dll, N/A>

[WUWebControl Class]

  {6414512B-B978-451D-A0D8-FCFDF33E833C} 

[Microsoft Terminal Services Client Control (redist)]

  {7390f3d8-0439-4c05-91e3-cf5cb290c3d0} <%systemroot%\system32\mstscax.dll, N/A>

[Microsoft Terminal Services Client Control (redist)]

  {7584c670-2274-4efb-b00b-d6aaba6d3850} <%systemroot%\system32\mstscax.dll, N/A>

[]

  {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} <, >

[Microsoft Terminal Services Client Control (redist)]

  {9059f30f-4eb1-4bd2-9fdc-36f43a218f4a} <%systemroot%\system32\mstscax.dll, N/A>

[Shockwave Flash Object]

  {D27CDB6E-AE6D-11CF-96B8-444553540000} 

[]

  {E2E2DD38-D088-4134-82B7-F2BA38496583} <, >

[]

  {FB5F1910-F110-11D2-BB9E-00C04F795683} <, >


==================================

Running Processes

[PID][\SystemRoot\System32\smss.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]

[PID][\??\C:\WINDOWS\system32\csrss.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]

[PID][\??\C:\WINDOWS\system32\winlogon.exe] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_gdr.090206-1234)]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

[PID][C] [NVIDIA Corporation, 6.14.11.8585]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [NVIDIA Corporation, 6.14.11.8585]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [c] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]

    [c] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Nero AG, 2,0,13,1]

    [C] [Microsoft Corporation, 7.10.3052.4]

    [C] [Microsoft Corporation, 7.10.3077.0]

    [C] [Microsoft Corporation, 7.10.3077.0]

    [C] [BCGSoft Ltd, 8, 60, 0, 0]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [N/A,]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Nero AG, 2, 0, 0, 8]

    [C] [Microsoft Corporation, 7.10.3077.0]

    [C] [Adobe Systems, Inc., 9.1.0.2009022700]

    [C] [Microsoft Corporation, 8.00.50727.762]

    [C] [,]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Nero AG, 2, 9, 1, 0]

    [C] [N/A,]

    [C] [NVIDIA Corporation, 6.14.11.8585]

    [C] [NVIDIA Corporation, 6.14.11.8585]

    [C] [NVIDIA Corporation, 6.14.11.8585]

    [C] [,]

    [C] [G DATA Software AG, 1, 0, 0, 5]

    [C] [Nero AG, 2, 9, 1, 1]

    [C] [G DATA Software, 17]

    [C] [Sony DADC Austria AG., 1,0,201,0]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

[PID][C] [Realtek Semiconductor Corp., 2.1.4.2]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [N/A,]

[PID][C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [NVIDIA Corporation, 6.14.11.8585]

    [C] [NVIDIA Corporation, 6.14.11.8585]

    [C] [NVIDIA Corporation, 6.14.11.8585]

[PID][C] [G DATA Software, 19, 0, 8212, 157]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [N/A,]

    [C] [G DATA Software AG, 19.0.8212.158]

[PID][C] [Microsoft Corporation, 4.7.3001]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [N/A,]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [Valve Corporation, 1.0.0.0]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Valve Corporation, 2.0.0.0]

    [C] [Valve, 4.50.000]

    [C] [Valve Corporation, 1, 0, 0, 1]

    [C] [Valve Corporation, 3, 0, 0, 1]

    [C] [Valve Corporation, 1, 0, 0, 1]

    [C] [Valve Corporation, 3, 0, 0, 1]

    [C] [Valve Corporation, 3, 0, 0, 1]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [N/A,]

    [C] [Valve Corporation, 3, 0, 0, 1]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Valve Corporation, 1, 0, 0, 1]

    [C] [N/A,]

    [C] [Valve Corporation, 1, 0, 0, 1]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [c] [Valve Corporation, 3, 0, 0, 1]

    [c] [Valve Corporation, 1, 0, 0, 1]

[PID][C] [Nero AG, 2,0,13,1]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 7.10.3077.0]

    [C] [Microsoft Corporation, 7.10.3052.4]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Nero AG, 10,1,2, 10900]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Nero AG, 2,0,13,1]

    [C] [Nero AG, 2,0,13,1]

    [C] [Nero AG, 2,0,13,1]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

[PID][C] [N/A,]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [N/A,]

[PID][C] [Apple Computer, Inc., 1,0,3,1]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [Hewlett-Packard Company, 1.8.15.1]

    [C] [Hewlett-Packard Company, 1.8.15.1]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Hewlett-Packard Company, 1.8.15.1]

    [C] [Microsoft Corporation, 8.00.50727.762]

    [C] [Microsoft Corporation, 8.00.50727.762]

[PID][C] [N/A,]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

[PID][C] [N/A,]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

[PID][C] [Microsoft Corporation, 5.2.3790.1230 built by: dnsrv(bld4act)]

[PID][C] [Nero AG, 2,0,13,1]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 7.10.3077.0]

    [C] [Microsoft Corporation, 7.10.3052.4]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Nero AG, 2,0,13,1]

    [C] [Nero AG, 2,0,13,1]

    [C] [Nero AG, 1, 0, 0, 0]

    [C] [Nero AG, 2,0,13,1]

    [C] [Nero AG, 2,0,13,1]

[PID][C] [Nero AG, 2,0,13,1]

    [C] [Nero AG, 2,0,13,1]

    [C] [Microsoft Corporation, 7.10.3077.0]

    [C] [Microsoft Corporation, 7.10.3052.4]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [N/A,]

    [C] [Nero AG, 2,0,13,1]

    [C] [Nero AG, 1, 0, 0, 0]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Nero AG, 2,0,13,1]

    [C] [Nero AG, 2,0,13,1]

    [C] [Nero AG, 2,0,13,1]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Nero AG, 2,0,13,1]

    [C] [Nero AG, 4,10,5,1]

    [C] [Nero AG, 2,0,13,1]

    [C] [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-0852)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [Nero AG, 7, 9, 6, 4]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Nero AG, 7, 9, 6, 4]

    [C] [Microsoft Corporation, 7.10.3052.4]

    [C] [Microsoft Corporation, 7.10.3077.0]

    [C] [Nero AG, 7, 9, 6, 4]

    [C] [Nero AG, 7, 9, 6, 4]

    [C] [Nero AG, 7, 9, 6, 4]

    [C] [Microsoft Corporation, 7.10.3077.0]

    [C] [Nero AG, 7, 9, 6, 4]

    [C] [BCGSoft Ltd, 8, 60, 0, 0]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [N/A,]

    [C] [Nero AG, 10,1,2, 10900]

    [C] [, 8, 50, 0, 0]

    [C] [Microsoft Corporation, 7.10.3077.0]

    [C] [Nero AG, 7, 9, 6, 4]

    [C] [BCGSoft Ltd, 8, 60, 0, 0]

    [C] [Nero AG, 7.10.1.2]

    [C] [Microsoft Corporation, 8.00.50727.762]

    [C] [Nero AG, 1, 0, 0, 21]

    [C] [Nero AG, 7, 9, 6, 4]

    [C] [Nero AG, 7, 9, 6, 4]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Nero AG, 7, 9, 6, 4]

    [C] [Nero AG, 2,0,13,1]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]

    [C] [Nero AG, 2, 0, 0, 8]

    [C] [Adobe Systems, Inc., 9.1.0.2009022700]

    [C] [,]

[PID][C] [, 4,0,5,389]

    [C] [, 2,0,03,102]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Apple Computer, Inc., 1,0,3,1]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [, 4,0,5,389]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [N/A,]

    [C] [, 4,0,5,389]

    [C] [,]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

[PID][C] [Nullsoft, 5,2,2,600]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Nullsoft, Inc., 7.10.0000]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Nullsoft, 5,2,2,600]

    [C] [N/A,]

    [C] [N/A,]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [Sonic Solutions, 2.8.65.500]

    [C] [Sonic Solutions, 2.8.65.500]

    [C] [Sonic Solutions, 1.01.79a]

    [C] [Sonic Solutions, 2.8.65.500]

    [C] [Sonic Solutions, 2.8.65.500]

    [C] [Sonic Solutions, 2.8.65.500]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [N/A,]

    [C] [,]

    [C] [Fraunhofer Institut Integrierte Schaltungen IIS, 1, 9, 0, 0305]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2111)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [G DATA Software AG, 19.0.8251.145]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [N/A,]

    [C] [G DATA Software AG, 19.0.8231.145]

    [C] [N/A,]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [G DATA Software, 19.0.8254.149]

    [C] [G DATA Software, 2, 0, 0, 6]

    [C] [G DATA Software, 19.0.8212.154]

    [C] [G DATA Software AG, 2.4.8231.171]

    [C] [G DATA Software AG, 1.3.8233.922]

    [C] [G DATA Software AG, 1.3.8231.138]

    [C] [, 1, 4, 2, 4]

[PID][C] [Mozilla Corporation, 1.9.1]

    [C] [Mozilla Foundation, 1.9.1]

    [C] [sqlite.org, 3.6.10]

    [C] [Mozilla Foundation, 8.00.0000]

    [C] [Netscape Communications Corporation, 4.0]

    [C] [Mozilla Foundation, 4.8]

    [C] [Mozilla Foundation, 3.12.3 Basic ECC]

    [C] [Mozilla Foundation, 3.12.3 Basic ECC]

    [C] [Mozilla Foundation, 3.12.3]

    [C] [Mozilla Foundation, 4.8]

    [C] [Mozilla Foundation, 4.8]

    [C] [Mozilla Foundation, 3.12.3 Basic ECC]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Mozilla Foundation, 1.9.1]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [N/A,]

    [C] [Mozilla Foundation, 1.9.1]

    [C] [Mozilla Foundation, 3.12.3 Basic ECC]

    [C] [Mozilla Foundation, 3.12.3 Basic ECC]

    [C] [Mozilla Foundation, 3.12.3 Basic ECC]

    [C] [Mozilla Foundation, 1.75]

    [C] [Mozilla Foundation, 1.9.1]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [, 1,0,8,0552]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 6.00.2900.5803 (xpsp_sp3_gdr.090428-1325)]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

[PID][C] [(Verified) Microsoft Corporation, 3.1.4001.5512]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [Sun Microsystems, Inc., 6.0.140.8]

    [C] [Microsoft Corporation, 7.10.3052.4]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2108)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [(Verified) Microsoft Corporation, 5.1.2600.5755 (xpsp_sp3_gdr.090206-1234)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

[PID][C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [N/A,]

[PID][C] [Smallfrogs Studio, 2.7.1.1261]

[PID][C] [Smallfrogs Studio, 2.7.1.1261]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [Microsoft Corporation, 6.00.2900.5622 (xpsp_sp3_gdr.080617-1319)]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 6.00.2900.5512 (xpsp.080413-2105)]

    [C] [N/A,]

    [C] [Smallfrogs Studio, 2, 1, 0, 15]

    [C] [Microsoft Corporation, 7.00.6000.16850 (vista_gdr.090423-0018)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2113)]

    [C] [Microsoft Corporation, 5.1.2600.5512 (xpsp.080413-2105)]


==================================

File Associations

.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]

.EXE OK. ["%1" %*]

.COM OK. ["%1" %*]

.PIF OK. ["%1" %*]

.REG OK. [regedit.exe "%1"]

.BAT OK. ["%1" %*]

.SCR OK. ["%1" /S]

.CHM OK. ["C:\WINDOWS\hh.exe" %1]

.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]

.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]

.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]

.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]

.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]

.LNK OK. [{00021401-0000-0000-C000-000000000046}]


==================================

Winsock Provider

N/A


==================================

Autorun.Inf

N/A


==================================

HOSTS File

127.0.0.1 localhost


==================================

Process Privileges Scan

Special Privileges Enabled: SeLoadDriverPrivilege [PID = 872, C:\WINDOWS\SYSTEM32\NVSVC32.EXE]

Special Privileges Enabled: SeLoadDriverPrivilege [PID = 1616, C:\WINDOWS\EXPLORER.EXE]

Special Privileges Enabled: SeLoadDriverPrivilege [PID = 156, C:\WINDOWS\BRICOPACKS\VISTA INSPIRAT 2\ROCKETDOCK\ROCKETDOCK.EXE]

Special Privileges Enabled: SeLoadDriverPrivilege [PID = 2880, C:\PROGRAM FILES\GIZMO5\GIZMO5.EXE]

Special Privileges Enabled: SeLoadDriverPrivilege [PID = 3548, C:\PROGRAM FILES\WINAMP\WINAMP.EXE]

Special Privileges Enabled: SeLoadDriverPrivilege [PID = 3756, C:\DOCUMENTS AND SETTINGS\KOMPUTER\PULPIT\SRENG2\SRENGLDR.EXE]


==================================

Scheduled Tasks

N/A


==================================

API HOOK

N/A


==================================

Hidden Process

N/A


==================================

(Leon$) #12

w autostarcie możesz spokojnie wyłączyć

uruchom System Repair Engineer zakładka System Repair >> Browser Add-ons >> odszukaj i usuń

Otwórz notatnik i wklej

zapisz jako plik.reg >> wszystkie pliki

b57f17008275c957m.jpg

powstanie plik o takiej ikonie

062aec4c9b51c033m.jpg

w który dwa razy klikniesz potwierdzisz chęć dodania do rejestru potem restart

:slight_smile:


(system) #13

a jak to juz zrobie to moge z g data usunac z kwarantany tych 3 chulignow?


(Leon$) #14

tak myślałem że to już dawno zrobiłeś

:slight_smile:


(system) #15

ej a sluchaj juz to zrobilem ale po co mi ten plik red

jak juz wyzej pisalem to jestem zielony

-- Dodane 07.07.2009 (Wt) 17:00 --

a zeby w autostarcie to wylaczyc to jaka byla ta komenda ( to jest chyba w wierszu polecen?)

-- Dodane 07.07.2009 (Wt) 17:05 --

dobra ja slepy jestem juz nic wielkie dzieki a mozna tu jakies punkty dawac?


(Leon$) #16

start >> uruchom >> msconfig >> uruchamianie >> tam zaznaczasz >> wyłącz

nie red tylko plik.reg

tam jest wszystko wyjaśnione jak zrobić

:slight_smile: