Dodaj do ulubionych

setup -nie mozna usunac

IP: *.neoplus.adsl.tpnet.pl 25.03.05, 23:06
Witam, Moze ktos mi bedzie mogl pomoc- zainstalowalem Service packa 2 - zaraz
po tym kursor sam mi zaczal sobie latac po monitorze pionowo i poziomo, a
teraz zauwazylem ze mam jakis setup na pulpicie, ktorego nie moge wyrzucic -
nie wiem czy to ma jakis zwiazek ale cos tu nie jest tak (ktos mi przeslal
plik na gg, ktory nie chcial przejsc-blad). Przelecialem Ad-ware SE, Spybotem
i AntyVirem i nic -dalej to samo. Czy ktos moze pomoc i przede wszytkim czy
to cos powaznego.
Z gory dzieki i najlepszego na swieta.
Obserwuj wątek
    • Gość: Kolobos Re: setup -nie mozna usunac IP: *.warszawa.sdi.tpnet.pl 25.03.05, 23:12
      Masz myszke A4Techa?
      • Gość: ryba Re: setup -nie mozna usunac IP: *.neoplus.adsl.tpnet.pl 25.03.05, 23:13
        tak
        • Gość: Kolobos Re: setup -nie mozna usunac IP: *.warszawa.sdi.tpnet.pl 25.03.05, 23:23
          Z tego co wiem to wystepuja problemy z myszkami a4tech badz sterownikami do
          nich i Sp2 do XP.Sprobuj podlaczyc inna myszke i zobacz czy problem zniknal.

          Wklej tez log z hijackthis:
          downloads.subratam.org/hijackthis.zip
          • Gość: Kolobos Re: setup -nie mozna usunac IP: *.warszawa.sdi.tpnet.pl 25.03.05, 23:25
            Co do myszy to poczytaj np. tutaj:
            www.pcworld.pl/forum/thread.asp?ForumID=58&TopicID=13103
            • Gość: ryba Re: setup -nie mozna usunac IP: *.neoplus.adsl.tpnet.pl 25.03.05, 23:33
              dziekuje serdecznie za info
              przeskanowalem i oto co mi wyszlo- jesli moglbys sie odniesc:
              Logfile of HijackThis v1.99.1
              Scan saved at 23:29:10, on 2005-03-25
              Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
              MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

              Running processes:
              C:\WINDOWS\System32\smss.exe
              C:\WINDOWS\SYSTEM32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\Explorer.EXE
              C:\WINDOWS\system32\spoolsv.exe
              C:\Program Files\D-Tools\daemon.exe
              C:\PROGRA~1\NEOSTR~1\CnxMon.exe
              C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
              C:\PROGRA~1\NEOSTR~1\TaskbarIcon.exe
              C:\WINDOWS\system32\RUNDLL32.EXE
              C:\Program Files\AVPersonal\AVGNT.EXE
              C:\Program Files\Messenger\msmsgs.exe
              C:\WINDOWS\system32\ctfmon.exe
              C:\Program Files\GetRight\getright.exe
              C:\Program Files\Sony Corporation\Picture Package\Picture Package
              Menu\SonyTray.exe
              C:\Program Files\Sony Corporation\Picture Package\Picture Package
              Applications\Residence.exe
              C:\Program Files\Apache Group\Apache2\bin\Apache.exe
              C:\Program Files\AVPersonal\AVWUPSRV.EXE
              C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
              C:\Program Files\Apache Group\Apache2\bin\Apache.exe
              C:\WINDOWS\System32\nvsvc32.exe
              C:\WINDOWS\Slave.exe
              C:\WINDOWS\System32\MsPMSPSv.exe
              C:\Program Files\Neostrada TP\NeostradaTP.exe
              C:\Program Files\Neostrada TP\ComComp.exe
              C:\Program Files\Neostrada TP\Watch.exe
              C:\WINDOWS\System32\svchost.exe
              C:\Program Files\Common Files\Real\Update_OB\realsched.exe
              C:\Program Files\Gadu-Gadu\gg.exe
              C:\Program Files\Internet Explorer\IEXPLORE.EXE
              C:\Program Files\AVPersonal\AVGUARD.EXE
              C:\Program Files\totalcmd\TOTALCMD.EXE
              c:\Downloads\hijackthis\HijackThis.exe

              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
              www.yahoo.com/
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
              about:blank
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
              about:blank
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Neostrada TP
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
              R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} -
              C:\PROGRA~1\NEOSTR~1\SEARCH~1.DLL
              O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} -
              C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_16_0.dll
              O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -
              C:\Program Files\Adobe\Acrobat 5.0 CE\Reader\ActiveX\AcroIEHelper.ocx
              O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program
              Files\Spybot - Search & Destroy\SDHelper.dll
              O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} -
              C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_16_0.dll
              O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32
              \NvCpl.dll,NvStartup
              O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
              O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common
              Files\Real\Update_OB\realsched.exe" -osboot
              O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -
              lang 1033
              O4 - HKLM\..\Run: [CloneCDTray] "C:\Program
              Files\SlySoft\CloneCD\CloneCDTray.exe" /s
              O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\NEOSTR~1\CnxMon.exe
              O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program
              Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
              O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\NEOSTR~1\Watch.exe
              O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\NEOSTR~1\TaskbarIcon.exe
              O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32
              \NvMcTray.dll,NvTaskbarInit
              O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
              O4 - HKLM\..\Run: [AVGCtrl] C:\Program Files\AVPersonal\AVGNT.EXE /min
              O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
              O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
              O4 - HKCU\..\Run: [Skype] "C:\Program
              Files\Skype\Phone\Skype.exe" /nosplash /minimized
              O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
              O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
              O4 - Startup: eMule.lnk = C:\Program Files\eMule\emule.exe
              O4 - Global Startup: GetRight - Tray Icon.lnk = C:\Program
              Files\GetRight\getright.exe
              O4 - Global Startup: Picture Package Menu.lnk = ?
              O4 - Global Startup: Picture Package VCD Maker.lnk = ?
              O8 - Extra context menu item: Download with GetRight - C:\Program
              Files\GetRight\GRdownload.htm
              O8 - Extra context menu item: E&ksport do programu Microsoft Excel -
              res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
              O8 - Extra context menu item: Open with GetRight Browser - C:\Program
              Files\GetRight\GRbrowse.htm
              O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
              C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
              O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -
              C:\Program Files\Messenger\msmsgs.exe
              O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-
              00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O12 - Plugin for .mov: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin.dll
              O15 - Trusted Zone: *.awmdabest.com
              O15 - Trusted Zone: *.frame.crazywinnings.com
              O15 - Trusted Zone: *.awmdabest.com (HKLM)
              O15 - Trusted Zone: *.frame.crazywinnings.com (HKLM)
              O15 - Trusted IP range: 206.161.125.149
              O15 - Trusted IP range: 206.161.125.149 (HKLM)
              O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be
              Internet Zone (HKLM)
              O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) -
              us.dl1.yimg.com/download.yahoo.com/dl/installs/yinst20040510.cab
              O16 - DPF: {B4F32846-56DD-4CF5-94FD-17DE1A12E9EB} (CounterX Class) -
              t058.com/cabtest/counter.cab
              O17 - HKLM\System\CCS\Services\Tcpip\..\{2E3A24EF-3E3A-48AD-BB59-DA18403F028A}:
              NameServer = 194.204.152.34 217.98.63.164
              O17 - HKLM\System\CCS\Services\Tcpip\..\{F863C462-CF32-47DC-BF04-BD524637FD76}:
              NameServer = 192.168.0.1
              O17 - HKLM\System\CS1\Services\Tcpip\..\{2E3A24EF-3E3A-48AD-BB59-DA18403F028A}:
              NameServer = 194.204.152.34 217.98.63.164
              O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH -
              C:\Program Files\AVPersonal\AVGUARD.EXE
              O23 - Service: Apache2 - Unknown owner - C:\Program Files\Apache Group\Apache2
              \bin\Apache.exe" -k runservice (file missing)
              O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany -
              C:\Program Files\AVPersonal\AVWUPSRV.EXE
              O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation -
              C:\WINDOWS\System32\nvsvc32.exe
              O23 - Service: RA Server (Slave) - TWD Industries SAS - C:\WINDOWS\Slave.exe
              • Gość: Kolobos Re: setup -nie mozna usunac IP: *.warszawa.sdi.tpnet.pl 25.03.05, 23:45
                Uruchom hijackthis i zaznacz te wpisy:

                > R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
                > R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
                > www.yahoo.com/
                > R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
                > about:blank
                > R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
                > about:blank
                > R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
                > R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Neostrada
                TP
                > R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
                > R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} -
                > C:\PROGRA~1\NEOSTR~1\SEARCH~1.DLL
                > O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} -
                > C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_16_0.dll
                > O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} -
                > C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_16_0.dll
                > O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common
                > Files\Real\Update_OB\realsched.exe" -osboot
                > O15 - Trusted Zone: *.awmdabest.com
                > O15 - Trusted Zone: *.frame.crazywinnings.com
                > O15 - Trusted Zone: *.awmdabest.com (HKLM)
                > O15 - Trusted Zone: *.frame.crazywinnings.com (HKLM)
                > O15 - Trusted IP range: 206.161.125.149
                > O15 - Trusted IP range: 206.161.125.149 (HKLM)
                > O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be
                > Internet Zone (HKLM)
                > O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) -
                > us.dl1.yimg.com/download.yahoo.com/dl/installs/yinst20040510.cab
                > O16 - DPF: {B4F32846-56DD-4CF5-94FD-17DE1A12E9EB} (CounterX Class) -
                > t058.com/cabtest/counter.cab
                > O23 - Service: RA Server (Slave) - TWD Industries SAS - C:\WINDOWS\Slave.exe
                <- jezeli sam tego nie zainstalowales to to tez zaznacz

                Wpisy z yahoo mozesz zostawic jak korzystasz z tego wszystkiego :-)
                Co do tego setup to plik czy katalog? jaka ma ikone? co sie pokazuje jak chcesz
                go usunac? wejdz w jego wlasciwosci i nadaj sobie pelne prawa do tego
                pliku/katalog i probuj usunac.

Nie masz jeszcze konta? Zarejestruj się


Nakarm Pajacyka