centrum pomocy

Najprawdopodobniej było na forum lecz niemoge znaleść czegoś zbliźonego do mojego problemu.

Poradzcie dlaczego niemoge uruchomić pomocy systemowej. Prubowałem roźne metody na wywołanie pomocy (klawisz F1, ikona w menu start) ale nic sięnie dzieje . Pojaia się tylko klepsydra i zachwile znika. W menadźerze programów przez ułamek sekundy pojawia się proces niewiem jaki bo niemoge odczytać i potem znika. Wygląda to tak jakby ppomoc się otwierała i odrazu zamykała. Prosze o rade co z tym zrobić. zamieszczam log z HijackThis:

Logfile of HijackThis v1.98.2
Scan saved at 18:03:11, on 2004–12–25
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:Program FilesCommon FilesSymantec SharedccApp.exe
C:Program FilesBrowser MouseBrowser Mouse1.0lwbwheel.exe
C:Program FilesNetLimiterNetLimiter.exe
C:Program FilesJavaj2re1.4.2_01injusched.exe
C:WINDOWSwkblndo.exe
C:Program FilesISTsvcistsvc.exe
C:Program FilesWirtualna Polskawpkontaktwpkontakt.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesCommon FilesSymantec SharedccEvtMgr.exe
C:Program FilesCommon FilesMicrosoft SharedVS7DEBUGMDM.EXE
C:Program FilesNetMeterNetMeter.exe
C:Program FilesNorton AntiVirus avapsvc.exe
C:Program FilesNorton AntiVirusAdvToolsNPROTECT.EXE
c:apacheAPACHE.EXE
C:WINDOWSSystem32svchost.exe
C:Program FilesRaxcoPerfectDiskPDSched.exe
c:apacheAPACHE.EXE
C:Program FilesCommon FilesSymantec SharedSecurity CenterSymWSC.exe
C:WINDOWSexplorer.exe
C:Program FilesExpress_WebPictures_v1[1].85webpics.exe
C:WINDOWSsystem32WISPTIS.EXE
C:WINDOWSsystem32 askmgr.exe
C:Program FilesAdmilli ServiceAdmilliServ.exe
C:Program FilesAdmilli ServiceAdmilliKeep.exe
C:Program FilesInternet Exploreriexplore.exe
c: empsalm.exe
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesInternet Exploreriexplore.exe
C:HijackThisHijackThis.exe

R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.google.pl/
R0 – HKCUSoftwareMicrosoftInternet ExplorerMain,Local Page =
R1 – HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page_bak = http://www.google.pl/
R3 – URLSearchHook: (no name) – _{CFBFAE00–17A6–11D0–99CB–00C04FD64497} – (no file)
R3 – URLSearchHook: (no name) – _{00A6FAF6–072E–44cf–8957–5838F569A31D} – (no file)
O2 – BHO: (no name) – {00000010–6F7D–442C–93E3–4A4827C2E4C8} – (no file)
O2 – BHO: DAPHelper Class – {0000CC75–ACF3–4cac–A0A9–DD3868E06852} – C:Program FilesDAPDAPBHO.dll
O2 – BHO: AcroIEHlprObj Class – {06849E9F–C8D7–4D59–B87D–784B7D6BE0B3} – C:Program FilesAdobeAcrobat 6.0 CEReaderActiveXAcroIEHelper.dll
O2 – BHO: Search Relevancy – {1D7E3B41–23CE–469B–BE1B–A64B877923E1} – C:PROGRA~1SEARCH~1SEARCH~2.DLL
O2 – BHO: IE 4.x–5.x BHO in ObjectPascal – {49E0E0F0–5C30–11D4–945D–000000000000} – (no file)
O2 – BHO: CNavExtBho Class – {BDF3E430–B101–42AD–A544–FADC6B084872} – C:Program FilesNorton AntiVirusNavShExt.dll
O3 – Toolbar: Norton AntiVirus – {42CDD1BF–3FFB–4238–8AD1–7859DF00B1D6} – C:Program FilesNorton AntiVirusNavShExt.dll
O3 – Toolbar: DAP Bar – {62999427–33FC–4baf–9C9C–BCE6BD127F08} – C:Program FilesDAPDAPIEBar.dll
O4 – HKLM..Run: [ccApp] "C:Program FilesCommon FilesSymantec SharedccApp.exe"
O4 – HKLM..Run: [ccRegVfy] "C:Program FilesCommon FilesSymantec SharedccRegVfy.exe"
O4 – HKLM..Run: [Advanced Tools Check] C:PROGRA~1NORTON~1AdvToolsADVCHK.EXE
O4 – HKLM..Run: [LWBMOUSE] C:Program FilesBrowser MouseBrowser Mouse1.0lwbwheel.exe
O4 – HKLM..Run: [KillCopy] C:PROGRA~1KILLSOFTKILLCOPYkcresume.exe /startup
O4 – HKLM..Run: [NetLimiter] C:Program FilesNetLimiterNetLimiter.exe /s
O4 – HKLM..Run: [SunJavaUpdateSched] C:Program FilesJavaj2re1.4.2_01injusched.exe
O4 – HKLM..Run: [jEtmJH6] C:WINDOWSwkblndo.exe
O4 – HKLM..Run: [jEtm*aaaY_C:Program FilesISTsvcistsvc.exe] C:WINDOWSwkblndo.exe
O4 – HKLM..Run: [–
] C:WINDOWSwkblndo.exe
O4 – HKLM..Run: [IST Service] C:Program FilesISTsvcistsvc.exe
O4 – HKLM..Run: [Admilli Service] C:Program FilesAdmilli ServiceAdmilliServ.exe
O4 – HKLM..Run: [salm] c: empsalm.exe
O4 – HKLM..Run: [tct] C:WINNT ct.exe
O4 – HKCU..Run: [wpkontakt] C:Program FilesWirtualna Polskawpkontaktwpkontakt.exe –autostart
O4 – HKCU..Run: [ctfmon.exe] C:WINDOWSsystem32ctfmon.exe
O4 – HKCU..Run: [ClipMate6] C:Program FilesClipMate6ClipMate.exe
O4 – HKCU..Run: [C:Program FilesNetMeterNetMeter.exe] C:Program FilesNetMeterNetMeter.exe
O8 – Extra context menu item: &Download with &DAP – C:PROGRA~1DAPdapextie.htm
O8 – Extra context menu item: &Search – http://bar.mywebsearch.com/menusearch.html?p=ZRxdm360YYPL
O8 – Extra context menu item: Download &all with DAP – C:PROGRA~1DAPdapextie2.htm
O8 – Extra context menu item: Download with Internet TOOLS – C:Program FilesMarBitTOOLSMBdownload.htm
O8 – Extra context menu item: E&ksport do programu Microsoft Excel – res://C:PROGRA~1MICROS~2OFFICE11EXCEL.EXE/3000
O9 – Extra button: (no name) – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – (no file)
O9 – Extra 'Tools' menuitem: Sun Java Console – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – (no file)
O9 – Extra button: Run DAP – {669695BC–A811–4A9D–8CDF–BA8C795F261C} – C:PROGRA~1DAPDAP.EXE
O9 – Extra button: Badanie – {92780B25–18CC–41C8–B9BE–3C9C571A8263} – C:PROGRA~1MICROS~2OFFICE11REFIEBAR.DLL
O9 – Extra button: Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:Program FilesMessengermsmsgs.exe
O9 – Extra 'Tools' menuitem: Windows Messenger – {FB5F1910–F110–11d2–BB9E–00C04F795683} – C:Program FilesMessengermsmsgs.exe
O16 – DPF: {15AD4789–CDB4–47E1–A9DA–992EE8E6BAD6} – http://static.windupdates.com/cab/CDTInc/ie/bridge–c282.cab
O16 – DPF: {1A781DED–C22D–4153–3213–A3211E29DF13} (GameDesire Card Games) – http://67.15.101.3/g_bin/pl/cards_2_0_0_57.cab
O18 – Protocol: wpmsg – {2E0AC5A0–3597–11D6–B3ED–0001021DC1C3} – C:Program FilesWirtualna Polskawpkontakturl_wpmsg.dll

Odpowiedzi: 5

Dzięki
Mateuszpi
Dodano
26.12.2004 21:27:18
Zaznaczasz te pozycje i klikasz przycisk Fix checked.
wins
Dodano
26.12.2004 17:29:22
Pospieszyłem się z tymi podziękowaniami.

[quote="EL NINO"]
Mateuszpi:


Przy okazji usun:

R3 – URLSearchHook: (no name) – _{CFBFAE00–17A6–11D0–99CB–00C04FD64497} – (no file)
R3 – URLSearchHook: (no name) – _{00A6FAF6–072E–44cf–8957–5838F569A31D} – (no file)
O2 – BHO: (no name) – {00000010–6F7D–442C–93E3–4A4827C2E4C8} – (no file)
O2 – BHO: IE 4.x–5.x BHO in ObjectPascal – {49E0E0F0–5C30–11D4–945D–000000000000} – (no file)
O8 – Extra context menu item: &Search – http://bar.mywebsearch.com/menusearch.html?p=ZRxdm360YYPL
O9 – Extra button: (no name) – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – (no file)
O9 – Extra 'Tools' menuitem: Sun Java Console – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – (no file)
O16 – DPF: {15AD4789–CDB4–47E1–A9DA–992EE8E6BAD6} – http://static.windupdates.com/cab/CDTInc/ie/bridge–c282.cab




Prosze powiedz jak to usunąć. Bo z tymi fragmentami sobie nieradze usunołem wszystkie pozostałe pliki i wpisy rejestru ale zato niewiem jak się wziąść.
Mateuszpi
Dodano
26.12.2004 17:17:01
1. Dzięki za informacje jak to znaleść na forum. Pomogła informacja źe brałeś udziałw rozmowie. Bo bez tego było strasznie duźo wyników :)

2. Co do programów kture znam to wiem o co chodzi w programie 3:
O4 – HKLM..Run: [KillCopy] C:PROGRA~1KILLSOFTKILLCOPYkcresume.exe /startup
jest to program do kopiowania zastępuje kopiowanie windowsa.
reszte raczej usune bo niewiem co to jest.

Jeszcze raz dzięki za pomoc.
Mateuszpi
Dodano
26.12.2004 16:49:30
Mateuszpi:
Najprawdopodobniej było na forum
Ano bylo o Helpie, bo sam bralem udzial w takiej dyskusji.

Przy okazji usun:

C:WINDOWSwkblndo.exe
C:Program FilesISTsvcistsvc.exe
c: empsalm.exe
R3 – URLSearchHook: (no name) – _{CFBFAE00–17A6–11D0–99CB–00C04FD64497} – (no file)
R3 – URLSearchHook: (no name) – _{00A6FAF6–072E–44cf–8957–5838F569A31D} – (no file)
O2 – BHO: (no name) – {00000010–6F7D–442C–93E3–4A4827C2E4C8} – (no file)
O2 – BHO: Search Relevancy – {1D7E3B41–23CE–469B–BE1B–A64B877923E1} – C:PROGRA~1SEARCH~1SEARCH~2.DLL
O2 – BHO: IE 4.x–5.x BHO in ObjectPascal – {49E0E0F0–5C30–11D4–945D–000000000000} – (no file)
O4 – HKLM..Run: [jEtmJH6] C:WINDOWSwkblndo.exe
O4 – HKLM..Run: [jEtm*aaaY_C:Program FilesISTsvcistsvc.exe] C:WINDOWSwkblndo.exe
O4 – HKLM..Run: [–
] C:WINDOWSwkblndo.exe
O4 – HKLM..Run: [IST Service] C:Program FilesISTsvcistsvc.exe
O4 – HKLM..Run: [salm] c: empsalm.exe
O4 – HKLM..Run: [tct] C:WINNT ct.exe
O4 – HKCU..Run: [C:Program FilesNetMeterNetMeter.exe] C:Program FilesNetMeterNetMeter.exe
O8 – Extra context menu item: &Search – http://bar.mywebsearch.com/menusearch.html?p=ZRxdm360YYPL
O8 – Extra context menu item: Download with Internet TOOLS – C:Program FilesMarBitTOOLSMBdownload.htm
O9 – Extra button: (no name) – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – (no file)
O9 – Extra 'Tools' menuitem: Sun Java Console – {08B0E5C0–4FCB–11CF–AAA5–00401C608501} – (no file)
O16 – DPF: {15AD4789–CDB4–47E1–A9DA–992EE8E6BAD6} – http://static.windupdates.com/cab/CDTInc/ie/bridge–c282.cab


Coz to jest ? Znasz te programy ?
C:Program FilesAdmilli ServiceAdmilliServ.exe
C:Program FilesAdmilli ServiceAdmilliKeep.exe
O4 – HKLM..Run: [KillCopy] C:PROGRA~1KILLSOFTKILLCOPYkcresume.exe /startup
O4 – HKLM..Run: [Admilli Service] C:Program FilesAdmilli ServiceAdmilliServ.exe
EL NINO
Dodano
25.12.2004 21:49:55
Mateuszpi
Dodano:
25.12.2004 19:03:59
Komentarzy:
5
Strona 1 / 1