michal7103
(Michal710323)
14 Listopad 2005 23:28
#1
Gutek2222
-sorki że w ten sposób pytam ale ręce mi opadają- kumpel określił to co robię, cyt.: wygrzebywaniem bakterii z du…y za pomocą paznokci, ale się uparłem- jeszcze nie chcę robić formatu, a nuż się uda?
Logfile of HijackThis v1.99.1 Scan saved at 00:14:43, on 2005-11-15 Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\RunDll32.exe C:\Program Files\Logitech\iTouch\iTouch.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe C:\Program Files\Winamp\winampa.exe C:\windows\adtech2005.exe C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Nokia\PC Suite for Nokia 9210i Communicator\ECTaskScheduler.exe C:\Program Files\Nokia\PC Suite for Nokia 9210i Communicator\ConnectState.exe C:\Program Files\OpenOffice.ux.pl 2.0\program\soffice.exe C:\Program Files\OpenOffice.ux.pl 2.0\program\soffice.BIN C:\Program Files\Logitech\MouseWare\system\em_exec.exe C:\PROGRA~1\Nokia\PCSUIT~1\BROADC~1.EXE C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe C:\WINDOWS\system32\wscntfy.exe C:\DOCUME~1\Misiek\USTAWI~1\Temp\Katalog tymczasowy 10 dla hijackthis.zip\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O4 - HKLM…\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd O4 - HKLM…\Run: [iMJPMIG8.1] “C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE” /Spoil /RemAdvDef /Migration32 O4 - HKLM…\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe O4 - HKLM…\Run: [Logitech Utility] Logi_MwX.Exe O4 - HKLM…\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM…\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM…\Run: [Onet.pl AutoUpdate] “C:\Program Files\Common Files\Onet.pl\NewAutoUpdate.exe” /updateexetsr O4 - HKLM…\Run: [TkBellExe] “C:\Program Files\Common Files\Real\Update_OB\realsched.exe” -osboot O4 - HKLM…\Run: [RemoteControl] “C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe” O4 - HKLM…\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM…\Run: [adtech2005] C:\windows\adtech2005.exe O4 - HKLM…\Run: [OfficeGuard RegChecker] “C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe” O4 - HKLM…\Run: [AVPCC] “C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe” /wait O4 - HKLM…\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKCU…\Run: [Gadu-Gadu] “C:\Program Files\Gadu-Gadu\gg.exe” /tray O4 - HKCU…\Run: [MSMSGS] “C:\Program Files\Messenger\msmsgs.exe” /background O4 - HKCU…\Run: [skype] “C:\Program Files\Skype\Phone\Skype.exe” /nosplash /minimized O4 - Startup: OpenOffice.ux.pl 2.0.lnk = C:\Program Files\OpenOffice.ux.pl 2.0\program\quickstart.exe O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: PC Suite for Nokia 9210i Communicator - Harmonogram zadań.lnk = C:\Program Files\Nokia\PC Suite for Nokia 9210i Communicator\ECTaskScheduler.exe O4 - Global Startup: PC Suite for Nokia 9210i Communicator.lnk = C:\Program Files\Nokia\PC Suite for Nokia 9210i Communicator\ConnectState.exe O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html O9 - Extra button: Ustrzel To! - {C3881663-B3FA-49F4-BA57-183B02F47280} - res://snipit.dll/101 (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O20 - Winlogon Notify: policies - C:\WINDOWS\system32\lv0m09d1e.dll O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing) O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\UQ\command.exe O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing) O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: IrBridge User-Level Interface (USRBRIDG) - Extended Systems, Inc. - C:\WINDOWS\system32\usrbridg.exe
Gutek
(Gutek)
14 Listopad 2005 23:42
#2
Start >>> Uruchom >>> services.msc >>> zatrzymaj i wyłącz Command Service i potem usuń folder recznie
Prosze o log
z programu L2Mfix - Usuwanie VX2.BetterInternet - opis jak zrobic taki log
kuz5
(Kuz5)
15 Listopad 2005 00:08
#3
michal7103 nie podpinaj się do kogoś tematu, tylko zakładaj własne :?
Ciachnij jeszcze to:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = O4 - HKLM…\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u
michal7103
(Michal710323)
15 Listopad 2005 12:22
#4
Adware Away wyrzuca mi coś takiego:
Notify Dll Hijacker=> HKLM\SOFTWARE\Microsoft\WindowsNT\CurrentVersion\Winlogon\Notify\installer
Podaję loga:
Logfile of HijackThis v1.99.1 Scan saved at 13:22:15, on 2005-11-15 Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\system32\Ati2evxx.exe C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\RunDll32.exe C:\Program Files\Logitech\iTouch\iTouch.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe C:\Program Files\Winamp\winampa.exe C:\windows\adtech2005.exe C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Nokia\PC Suite for Nokia 9210i Communicator\ECTaskScheduler.exe C:\Program Files\Logitech\MouseWare\system\em_exec.exe C:\Program Files\Nokia\PC Suite for Nokia 9210i Communicator\ConnectState.exe C:\Program Files\OpenOffice.ux.pl 2.0\program\soffice.exe C:\Program Files\OpenOffice.ux.pl 2.0\program\soffice.BIN C:\PROGRA~1\Nokia\PCSUIT~1\BROADC~1.EXE C:\Program Files\Gadu-Gadu\gg.exe C:\Program Files\Internet Explorer\iexplore.exe C:\DOCUME~1\Misiek\USTAWI~1\Temp\Katalog tymczasowy 16 dla hijackthis.zip\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O4 - HKLM…\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd O4 - HKLM…\Run: [iMJPMIG8.1] “C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE” /Spoil /RemAdvDef /Migration32 O4 - HKLM…\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe O4 - HKLM…\Run: [Logitech Utility] Logi_MwX.Exe O4 - HKLM…\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM…\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM…\Run: [Onet.pl AutoUpdate] “C:\Program Files\Common Files\Onet.pl\NewAutoUpdate.exe” /updateexetsr O4 - HKLM…\Run: [TkBellExe] “C:\Program Files\Common Files\Real\Update_OB\realsched.exe” -osboot O4 - HKLM…\Run: [RemoteControl] “C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe” O4 - HKLM…\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM…\Run: [adtech2005] C:\windows\adtech2005.exe O4 - HKLM…\Run: [OfficeGuard RegChecker] “C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe” O4 - HKLM…\Run: [AVPCC] “C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe” /wait O4 - HKLM…\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKCU…\Run: [Gadu-Gadu] “C:\Program Files\Gadu-Gadu\gg.exe” /tray O4 - HKCU…\Run: [MSMSGS] “C:\Program Files\Messenger\msmsgs.exe” /background O4 - HKCU…\Run: [skype] “C:\Program Files\Skype\Phone\Skype.exe” /nosplash /minimized O4 - Startup: OpenOffice.ux.pl 2.0.lnk = C:\Program Files\OpenOffice.ux.pl 2.0\program\quickstart.exe O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: PC Suite for Nokia 9210i Communicator - Harmonogram zadań.lnk = C:\Program Files\Nokia\PC Suite for Nokia 9210i Communicator\ECTaskScheduler.exe O4 - Global Startup: PC Suite for Nokia 9210i Communicator.lnk = C:\Program Files\Nokia\PC Suite for Nokia 9210i Communicator\ConnectState.exe O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O20 - Winlogon Notify: Installer - C:\WINDOWS\system32\j66mlgj116o.dll O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: AVP Control Centre Service (AVPCC) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /service (file missing) O23 - Service: KAV Monitor Service (KAVMonitorService) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe" /service (file missing) O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: IrBridge User-Level Interface (USRBRIDG) - Extended Systems, Inc. - C:\WINDOWS\system32\usrbridg.exe
-chyba jednak nie będzie formatu- robi się jakby “czyściej”
Gutek
(Gutek)
15 Listopad 2005 14:08
#5
LOG OK zbedniki w autostarcie:
4 pierwsze wpisy Start >>> Uruchom >>> msconfig >>> w zakładce Uruchamianie wyłącz te wpisy.
5 wpis: odinstalować RealOne playera i zastąpić Real Alternative
6 wpis: Ten UserFaultCheck możesz usunąć Hijackiem i całkowicie zapobiec powstawaniu tego wpisu poprzez:
Panel sterowania >>> System >>> Zaawansowne >>> Uruchamianie i odzyskiwanie
Klikasz Ustawienia i w sekcji Zapisywanie informacji o debugowaniu ustaw opcję na Brak.
7 wpis: XP-Antispy odinstaluj messengera, zaznacz opcję w ustawieniach.
8 wpis: Start >>> Programy >>> Autostart >>> kasacja z prawokliku.
michal7103
(Michal710323)
15 Listopad 2005 22:51
#6
SpyBot-Search&Destroy pokazuje mi jakiś “winlogon” :
— Spybot - Search & Destroy version: 1.4 (build: 20050523) — 2005-05-31 blindman.exe (1.0.0.1) 2005-05-31 SpybotSD.exe (1.4.0.3) 2005-05-31 TeaTimer.exe (1.4.0.2) 2005-11-13 unins000.exe (51.41.0.0) 2005-05-31 Update.exe (1.4.0.0) 2005-05-31 advcheck.dll (1.0.2.0) 2005-05-31 aports.dll (2.1.0.0) 2005-05-31 borlndmm.dll (7.0.4.453) 2005-05-31 delphimm.dll (7.0.4.453) 2005-05-31 SDHelper.dll (1.4.0.0) 2005-05-31 Tools.dll (2.0.0.2) 2005-05-31 UnzDll.dll (1.73.1.1) 2005-05-31 ZipDll.dll (1.73.2.0) 2005-11-11 Includes\Cookies.sbi 2005-11-11 Includes\Dialer.sbi 2005-11-11 Includes\Hijackers.sbi 2005-11-11 Includes\Keyloggers.sbi 2005-11-11 Includes\Malware.sbi 2005-11-11 Includes\PUPS.sbi 2005-11-11 Includes\Revision.sbi 2005-11-11 Includes\Security.sbi 2005-11-11 Includes\Spybots.sbi 2005-02-17 Includes\Tracks.uti 2005-11-11 Includes\Trojans.sbi Located: HK_LM:Run, adtech2005 command: C:\windows\adtech2005.exe file: C:\windows\adtech2005.exe size: 69888 MD5: 4418743e67749e73b2e3498ea2c40429 Located: HK_LM:Run, ATIPTA command: C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe file: C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe size: 335872 MD5: 2b4ec8708af814dc49e55404988d010a Located: HK_LM:Run, AVPCC command: “C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe” /wait file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe size: 479296 MD5: 0402207234c7c623b10925e1fe5674dd Located: HK_LM:Run, Cmaudio command: RunDll32 cmicnfg.cpl,CMICtrlWnd file: Located: HK_LM:Run, IMJPMIG8.1 command: “C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE” /Spoil /RemAdvDef /Migration32 file: C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE size: 208952 MD5: 7bbe4cf421aecc7f0226edd75f12079f Located: HK_LM:Run, Logitech Utility command: Logi_MwX.Exe file: C:\WINDOWS\Logi_MwX.Exe size: 19968 MD5: 34a14cd6b6e9c8bfbabeaf6eed5149bb Located: HK_LM:Run, OfficeGuard RegChecker command: “C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe” file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe size: 24576 MD5: 12ce31b22a0d8cab310aafaa1c1858c1 Located: HK_LM:Run, UserFaultCheck command: %systemroot%\system32\dumprep 0 -u file: C:\WINDOWS\system32\dumprep.exe size: 10752 MD5: 3ba5175f93f5155f9209864b86730f26 Located: HK_LM:Run, zBrowser Launcher command: C:\Program Files\Logitech\iTouch\iTouch.exe file: C:\Program Files\Logitech\iTouch\iTouch.exe size: 892928 MD5: 9aee9bcb32d82bcc36474eb921f3bb49 Located: HK_CU:Run, Gadu-Gadu command: “C:\Program Files\Gadu-Gadu\gg.exe” /tray file: C:\Program Files\Gadu-Gadu\gg.exe size: 770048 MD5: 63a9ca811db721ecf174c7d0a7ef4952 Located: HK_CU:Run, Skype command: “C:\Program Files\Skype\Phone\Skype.exe” /nosplash /minimized file: C:\Program Files\Skype\Phone\Skype.exe size: 14892072 MD5: dda9e7a1b3ddf8714a971243c8643594 Located: Autostart (wspólny), Adobe Gamma Loader.lnk command: C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe file: C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe size: 113664 MD5: c2ff17734176cd15221c10044ef0ba1a Located: WinLogon, Internet Settings command: C:\WINDOWS\system32\m4po0e73eh.dll file: C:\WINDOWS\system32\m4po0e73eh.dll size: 0 MD5: d41d8cd98f00b204e9800998ecf8427e ??? Located: WinLogon, AtiExtEvent (DISABLED) command: Ati2evxx.dll file: Ati2evxx.dll Located: WinLogon, crypt32chain (DISABLED) command: crypt32.dll file: crypt32.dll Located: WinLogon, cryptnet (DISABLED) command: cryptnet.dll file: cryptnet.dll Located: WinLogon, cscdll (DISABLED) command: cscdll.dll file: cscdll.dll Located: WinLogon, CSCSettings (DISABLED) command: C:\WINDOWS\system32\kt86l7ls1.dll file: C:\WINDOWS\system32\kt86l7ls1.dll Located: WinLogon, Installer (DISABLED) command: C:\WINDOWS\system32\m4pole731h.dll file: C:\WINDOWS\system32\m4pole731h.dll Located: WinLogon, Internet Settings (DISABLED) command: C:\WINDOWS\system32\m4po0e73eh.dll file: C:\WINDOWS\system32\m4po0e73eh.dll size: 0 MD5: d41d8cd98f00b204e9800998ecf8427e ??? Located: WinLogon, ModuleUsage (DISABLED) command: C:\WINDOWS\system32\fp4o03h3e.dll file: C:\WINDOWS\system32\fp4o03h3e.dll Located: WinLogon, ScCertProp (DISABLED) command: wlnotify.dll file: wlnotify.dll Located: WinLogon, Schedule (DISABLED) command: wlnotify.dll file: wlnotify.dll Located: WinLogon, sclgntfy (DISABLED) command: sclgntfy.dll file: sclgntfy.dll Located: WinLogon, SensLogn (DISABLED) command: WlNotify.dll file: WlNotify.dll Located: WinLogon, termsrv (DISABLED) command: wlnotify.dll file: wlnotify.dll Located: WinLogon, Themes (DISABLED) command: C:\WINDOWS\system32\gpnul3591.dll file: C:\WINDOWS\system32\gpnul3591.dll Located: WinLogon, UNIMODEM (DISABLED) command: C:\WINDOWS\system32\h0j40a1qed.dll file: C:\WINDOWS\system32\h0j40a1qed.dll Located: WinLogon, WebCheck (DISABLED) command: C:\WINDOWS\system32\o4840elqehqe0.dll file: C:\WINDOWS\system32\o4840elqehqe0.dll Located: WinLogon, wlballoon (DISABLED) command: wlnotify.dll file: wlnotify.dll
Gutek
(Gutek)
15 Listopad 2005 22:55
#7
Usuwanie VX2.BetterInternet i daj log nr 1 z L2Mfix - przeczytaj uważnie