co to jest?

IP: *.devs.futuro.pl 07.04.05, 21:57
przy wyłączaniu systemu pojawia się okno "kończenie pracy programu ISTsvcWND", który zresztą nie odpowiada...itd.
co to za cholera? siedzi na liście w dodaj/usuń, ale przy próbie usunięcia pojawiają się pogróżki, i dalej to ja się boję;
wie ktoś mądry?
pozdrawiam
    • Gość: Kolobos Re: co to jest? IP: *.warszawa.sdi.tpnet.pl 07.04.05, 22:11
      Wklej log z hijackthis:
      www.spychecker.com/program/hijackthis.html

      A co do STsvcWND to spyware, dlatego tez wklej log z hijackthis.
      • Gość: poczatkujacy a co to znaczy... IP: *.neoplus.adsl.tpnet.pl 07.04.05, 22:14
        wkleic?:)
        ja mam obecnie straszny problem ze Spyware/Dyfuca...to tez mi pomoze?
        • Gość: Kolobos Re: a co to znaczy... IP: *.warszawa.sdi.tpnet.pl 07.04.05, 22:16
          Uruchamiasz hijackthis i naciskasz Do a system scan and save a logfile i
          otworzy Ci sie plik tekstowy i to wlasnie jego zawartosc masz wkleic tutaj na
          forum.
          • Gość: poczatkujacy wytlumacz glupiemu....:) IP: *.neoplus.adsl.tpnet.pl 07.04.05, 22:33
            gdzie uruchomic ten hijackthis?w windows'ie XP
            to moj dyfuca
            C:\Program Files\Mtfyaca\Zrhfj.exe



          • Gość: poczatkujacy mam!moj hijack. IP: *.neoplus.adsl.tpnet.pl 07.04.05, 22:39
            Logfile of HijackThis v1.99.1
            Scan saved at 22:38:57, on 2005-04-07
            Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
            MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

            Running processes:
            C:\WINDOWS\System32\smss.exe
            C:\WINDOWS\system32\csrss.exe
            C:\WINDOWS\system32\winlogon.exe
            C:\WINDOWS\system32\services.exe
            C:\WINDOWS\system32\lsass.exe
            C:\WINDOWS\System32\Ati2evxx.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\system32\spoolsv.exe
            C:\WINDOWS\System32\cisvc.exe
            C:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe
            C:\Program Files\Panda Software\Panda Titanium Antivirus 2004\pavsrv51.exe
            C:\Program Files\Panda Software\Panda Titanium Antivirus 2004\PsImSvc.exe
            C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
            C:\WINDOWS\System32\svchost.exe
            C:\Program Files\Panda Software\Panda Titanium Antivirus 2004\AVENGINE.EXE
            C:\WINDOWS\System32\wdfmgr.exe
            C:\WINDOWS\System32\MsPMSPSv.exe
            C:\WINDOWS\System32\alg.exe
            C:\WINDOWS\system32\Ati2evxx.exe
            C:\WINDOWS\Explorer.EXE
            C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
            C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
            C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
            C:\Program Files\Roxio\Easy CD Creator 6\DragToDisc\DrgToDsc.exe
            C:\Program Files\Panda Software\Panda Titanium Antivirus 2004\APVXDWIN.EXE
            C:\Program Files\Winamp\winampa.exe
            C:\Program Files\QuickTime\qttask.exe
            C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
            C:\PROGRA~1\NEOSTR~1\CnxMon.exe
            C:\WINDOWS\system32\ctfmon.exe
            C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
            C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
            C:\Program Files\Panda Software\Panda Titanium Antivirus 2004\WebProxy.exe
            C:\Program Files\SEC\Natural Color\NaturalColorLoad.exe
            C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
            C:\Program Files\Neostrada TP\NeostradaTP.exe
            C:\WINDOWS\system32\cidaemon.exe
            C:\Program Files\Neostrada TP\ComComp.exe
            C:\Program Files\Neostrada TP\Watch.exe
            C:\Program Files\Internet Explorer\IEXPLORE.EXE
            C:\Program Files\Mozilla Firefox\firefox.exe
            C:\WINDOWS\system32\NOTEPAD.EXE
            C:\DOCUME~1\ŁUKASZ\USTAWI~1\Temp\Rar$EX00.219\HijackThis.exe

            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
            www.neostrada.pl/
            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Neostrada TP
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
            R3 - URLSearchHook: (no name) - _{08C06D61-F1F3-4799-86F8-BE1A89362C85} - (no file)
            O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -
            C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
            O2 - BHO: QUICKfind BHO Object - {C08DF07A-3E49-4E25-9AB0-D3882835F153} -
            C:\PROGRA~1\TEXTware\QUICKF~1\PlugIns\IEHelp.dll
            O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control
            Panel\atiptaxx.exe
            O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog
            Devices\SoundMAX\SMax4PNP.exe
            O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog
            Devices\SoundMAX\Smax4.exe" /tray
            O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio
            Shared\System\EngUtil.exe"
            O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy CD Creator
            6\DragToDisc\DrgToDsc.exe"
            O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
            O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Software\Panda Titanium
            Antivirus 2004\APVXDWIN.EXE" /s
            O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
            O4 - HKLM\..\Run: [autoclk] autoclk.exe
            O4 - HKLM\..\Run: [adiras] adiras.exe
            O4 - HKLM\..\Run: [DeskMateAutoUpdate] C:\PROGRA~1\DESKMA~1\DeskMateAutoUpdate.exe
            O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe"
            -atboottime
            O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program
            Files\Java\jre1.5.0_02\bin\jusched.exe
            O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\NEOSTR~1\CnxMon.exe
            O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\NEOSTR~1\Watch.exe
            O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
            O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy
            Sweeper\SpySweeper.exe" /0
            O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft
            Office\Office\OSA9.EXE
            O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program
            Files\InterVideo\Common\Bin\WinCinemaMgr.exe
            O4 - Global Startup: NaturalColorLoad.lnk = ?
            O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st
            800-840\dslmon.exe
            O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} -
            C:\Program Files\Messenger\msmsgs.exe
            O9 - Extra 'Tools' menuitem: Windows Messenger -
            -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
            C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
            O9 - Extra 'Tools' menuitem: Sun Java Console -
            {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program
            Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
            O9 - Extra button: eBay - Homepage - {EF79EAC5-3452-4E02-B8BD-BA4C89F1AC7A} -
            C:\Program Files\IrfanView\Ebay\Ebay.htm
            O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
            O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
            www.pandasoftware.com/activescan/as5/asinst.cab
            O16 - DPF: {E7544C6C-CFD6-43EA-B4E9-360CEE20BDF7} (MainControl Class) -
            skaner.mks.com.pl/SkanerOnline.cab
            O16 - DPF: {F96D229F-129A-43B5-9B51-B7820E1BF2D3} (GameControl2 Control) -
            www.miastoplusa.pl/applets/GameControl104.cab
            O17 - HKLM\System\CCS\Services\Tcpip\..\{1864188C-4488-47F0-92DB-6FDC231F6303}:
            NameServer = 194.204.152.34 217.98.63.164
            O17 - HKLM\System\CS1\Services\Tcpip\..\{1864188C-4488-47F0-92DB-6FDC231F6303}:
            NameServer = 194.204.152.34 217.98.63.164
            O18 - Protocol: textwareilluminatorbase - {CE5CD329-1650-414A-8DB0-4CBF72FAED87}
            - C:\WINDOWS\System32\textwareilluminatorbaseProtocol.dll
            O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
            O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
            O23 - Service: Panda Process Protection Service (PavPrSrv) - Panda Software -
            C:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe
            O23 - Service: Panda anti-virus service (PAVSRV) - Panda Software - C:\Program
            Files\Panda Software\Panda Titanium Antivirus 2004\pavsrv51.exe
            O23 - Service: Panda IManager Service (PSIMSVC) - Panda Software Internacional -
            C:\Program Files\Panda Software\Panda Titanium Antivirus 2004\PsImSvc.exe
            O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) -
            Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
            • Gość: poczatkujacy Re: mam!moj hijack. IP: *.neoplus.adsl.tpnet.pl 07.04.05, 22:42
              tozto to czarna magia dla mnie...Pomocne duszyczki prosze o pomoc...:)
              • Gość: Kolobos Re: mam!moj hijack. IP: *.warszawa.sdi.tpnet.pl 08.04.05, 19:37
                Odinstaluj ten program:
                O4 - HKLM\..\Run: [DeskMateAutoUpdate] C:\PROGRA~1\DESKMA~1
                \DeskMateAutoUpdate.exe
                W dodaj-usun programy i nigdy wiecej nie instaluj, po usunieciu skasuj jego
                katalog o ile cos zostalo.


                • Gość: Kolobos Re: mam!moj hijack. IP: *.warszawa.sdi.tpnet.pl 08.04.05, 19:41
                  Przegapilem jeszcze to:
                  O18 - Protocol: textwareilluminatorbase - {CE5CD329-1650-414A-8DB0-
                  4CBF72FAED87} - C:\WINDOWS\System32\textwareilluminatorbaseProtocol.dll

                  Sciagnij killbox:
                  www.downloads.subratam.org/KillBox.zip
                  Zaznacz delete on reboot i wklej do niego sciezke do tego pliku:
                  C:\WINDOWS\System32\textwareilluminatorbaseProtocol.dll
                  nastepnie nacisnij czerwony przycisk, ale na pytanie o reset odpowiedz nie.
                  To samo zrob z:
                  C:\Program Files\Mtfyaca\Zrhfj.exe
                  I wybierz ze chcesz zresetowac.
                  Po resecie skasuj katalog:
                  C:\Program Files\Mtfyaca\

                  Uruchom hijackthis i zaznacz w nim te wpisy (o ile beda):

                  O4 - HKLM\..\Run: [DeskMateAutoUpdate] C:\PROGRA~1\DESKMA~1
                  \DeskMateAutoUpdate.exe
                  O18 - Protocol: textwareilluminatorbase - {CE5CD329-1650-414A-8DB0-
                  4CBF72FAED87} - C:\WINDOWS\System32\textwareilluminatorbaseProtocol.dll

                  Znowu reset i wklej nowy log z hijackthis :-)
                  • Gość: poczatkujacy Re: mam!moj hijack. IP: *.neoplus.adsl.tpnet.pl 10.04.05, 16:05
                    Kolobos!trojan Dyfuca zwalczony....:)
    • Gość: marianna Re: co to jest? IP: *.devs.futuro.pl 07.04.05, 22:30
      bardzo mi milo, ze taka natychmiastowa reakcja:)
      dziekuje!
      gdzie wkleic?! wytlumaczcie glupiej...
      • szafa.bojowa Re: co to jest? 07.04.05, 22:37
        www.spychecker.com/program/hijackthis.html
        stad sciagasz program...
        potem go uruchamiasz i naciskasz 'Do a system scan and save a logfile', a potem to sie skanuje i tworzy ci sie plik tekstowy w notatniku, wtedy zaznacz wszystko co w tym pliku jest i wklej na forum
        • szafa.bojowa Re: co to jest? 07.04.05, 22:37
          jeszcze raz link: www.spychecker.com/program/hijackthis.html
        • Gość: marianna Re: co to jest? IP: *.devs.futuro.pl 07.04.05, 22:39
          a! o tak?

          Logfile of HijackThis v1.99.1
          Scan saved at 22:35:07, on 2005-04-07
          Platform: Windows XP (WinNT 5.01.2600)
          MSIE: Internet Explorer v6.00 (6.00.2600.0000)

          Running processes:
          C:\WINDOWS\System32\smss.exe
          C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\Explorer.EXE
          C:\WINDOWS\system32\spoolsv.exe
          C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe
          C:\Program Files\ahead\InCD\InCD.exe
          C:\WINDOWS\System32\CTHELPER.EXE
          C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
          C:\WINDOWS\System32\___r.exe
          C:\WINDOWS\System32\lewpoy.exe
          C:\Program Files\ISTsvc\istsvc.exe
          C:\WINDOWS\bihincjk.exe
          C:\program files\180solutions\sais.exe
          D:\Phone\Skype.exe
          C:\Program Files\Gadu-Gadu\gg.exe
          C:\Program Files\ISS\BlackICE\blackice.exe
          C:\Program Files\Norton SystemWorks\Norton Utilities\SYSDOC32.EXE
          C:\Program Files\ISS\BlackICE\blackd.exe
          C:\WINDOWS\System32\CTsvcCDA.exe
          C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
          C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
          C:\WINDOWS\System32\nvsvc32.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\System32\MsPMSPSv.exe
          C:\Program Files\Opera\Opera.exe
          C:\WINDOWS\Explorer.EXE
          C:\Program Files\hijacks\HijackThis.exe

          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = results.dashbar.com/search?c=27440&b=17862&t=0&ce=DI&m=MA==&ver=2.1.0.0
          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.gazeta.pl/
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
          O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll
          O2 - BHO: BAHelper Class - {A3FDD654-A057-4971-9844-4ED8E67DBBB8} - C:\Program Files\SideFind\sfbho.dll
          O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
          O2 - BHO: QUICKfind BHO Object - {C08DF07A-3E49-4E25-9AB0-D3882835F153} - C:\PROGRA~1\TEXTware\QUICKF~1\PlugIns\IEHelp.dll
          O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
          O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
          O3 - Toolbar: ISTbar - {FAA356E4-D317-42a6-AB41-A3021C6E7D52} - C:\Program Files\ISTbar\istbarcm.dll
          O4 - HKLM\..\Run: [Soltek] C:\WINDOWS\System32\autorun.exe
          O4 - HKLM\..\Run: [WheelMouse] C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe
          O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
          O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
          O4 - HKLM\..\Run: [InCD] C:\Program Files\ahead\InCD\InCD.exe
          O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
          O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
          O4 - HKLM\..\Run: [CTStartup] C:\Program Files\Creative\Splash Screen\CTEaxSpl.EXE /run
          O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
          O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe"
          O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
          O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
          O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe
          O4 - HKLM\..\Run: [Microsoft Windows DHCP] C:\WINDOWS\System32\___r.exe
          O4 - HKLM\..\Run: [Windows Compliant] lewpoy.exe
          O4 - HKLM\..\Run: [IST Service] C:\Program Files\ISTsvc\istsvc.exe
          O4 - HKLM\..\Run: [KEFyBa] C:\WINDOWS\bihincjk.exe
          O4 - HKLM\..\Run: [sais] c:\program files\180solutions\sais.exe
          O4 - HKLM\..\Run: [ytqx] C:\WINDOWS\ytqx.exe
          O4 - HKLM\..\RunServices: [Windows Compliant] lewpoy.exe
          O4 - HKCU\..\Run: [Skype] "D:\Phone\Skype.exe" /nosplash /minimized
          O4 - HKCU\..\Run: [Gadu-Gadu] "C:\Program Files\Gadu-Gadu\gg.exe" /tray
          O4 - HKCU\..\Run: [Windows Compliant] lewpoy.exe
          O4 - Global Startup: BlackICE PC Protection.lnk = C:\Program Files\ISS\BlackICE\blackice.exe
          O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
          O4 - Global Startup: Norton System Doctor.lnk = C:\Program Files\Norton SystemWorks\Norton Utilities\SYSDOC32.EXE
          O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
          O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
          O9 - Extra button: SideFind - {10E42047-DEB9-4535-A118-B3F6EC39B807} - C:\Program Files\SideFind\sidefind.dll
          O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
          O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
          O15 - Trusted Zone: ny.contentmatch.net (HKLM)
          O17 - HKLM\System\CCS\Services\Tcpip\..\{FC9B975E-72D8-4A53-94D7-45A073ED3989}: NameServer = 62.233.128.17,62.233.128.18
          O18 - Protocol: textwareilluminatorbase - {CE5CD329-1650-414A-8DB0-4CBF72FAED87} - C:\WINDOWS\System32\textwareilluminatorbaseProtocol.dll
          O23 - Service: BlackICE - Internet Security Systems, Inc. - C:\Program Files\ISS\BlackICE\blackd.exe
          O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
          O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
          O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
          O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
          O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
          O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
          O23 - Service: RapApp - Internet Security Systems, Inc. - C:\Program Files\ISS\BlackICE\rapapp.exe
          O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
          O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
          O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe

    • Gość: marianna Re: co to jest? IP: *.devs.futuro.pl 07.04.05, 22:45
      i co dalej? szafo.b.?
      czy ja mam to ISTsvcWMD brutalnie usunac poprzez dodaj/usun pomimo pogrozek?
      • szafa.bojowa Re: co to jest? 07.04.05, 22:53
        yyyyy...na tym to ja juz sie nie znam :((
        trza ci poczkeac na forumowych specjalistow jak kolobos albo piecyk (pozdrowienia :P)
        a jak nikt sie nie zjawi, to zaloz nowy watek i popros ladnie na wstepie, a potem wklej ten log :]
        • Gość: poczatkujacy dzieki za rade...tak zrobie:) IP: *.neoplus.adsl.tpnet.pl 07.04.05, 22:55
Pełna wersja