1. Este site usa cookies. Ao continuar a usar este site está a concordar com o nosso uso de cookies. Saber Mais.
  2. Informação: Pela 0:30 desta Sexta-feira (9 de Dezembro, 23:30 de Quinta-feira nos Açores) o Fórum e restantes sites da ZWAME vão estar offline para manutenção durante cerca de 1h30.
    Se necessário faremos actualizações via Twitter e Facebook.
    Remover anúncio
  3. A secção Microsoft/Windows encontra-se actualmente em processo de reestruturação.
    Remover anúncio

Problema iniciar windows estranho

Discussão em 'Windows 7 e anteriores' iniciada por God_Like, 1 de Junho de 2009. (Respostas: 18; Visualizações: 1670)

  1. God_Like

    God_Like I fold therefore I AM

    boas pessoal! eu estou com um pekeno problema, ao iniciar o windows, aparece-me sempre isto...

    [​IMG]

    como não pedi esse suposto ficheiro, cancelo... eu queria saber porque ra*os inicia a transferencia se não a pedi, será um virus?

    2º pergunta, como retirar isso?

    obrigado
     
  2. Blue Zee

    Blue Zee Power Member

    Descarregue, instale e actualize o Malwarebytes Anti-Malware.

    Faça um scan completo, limpe o que lhe for sugerido.

    Coloque aqui o relatório final.

    Zee
     
  3. God_Like

    God_Like I fold therefore I AM

    nenhuma ocorrencia a relatar! fico a aguardar indicações, obrigado!
     
  4. Blue Zee

    Blue Zee Power Member

  5. God_Like

    God_Like I fold therefore I AM

    tudo na mesma... outra soluçao, obrigado
     
  6. PJTuga

    PJTuga Power Member

    ja experimentaste ver a lista de programas que tens no arranque?
    podes ver e desactivar os que nao queres atraves do msconfig
     
  7. Blue Zee

    Blue Zee Power Member

    Descarregue e instale o HijackThis.

    Use o instalador (Installer), que cria as pastas apropriadas e coloca um ícone no ambiente de trabalho.

    Arranque o programa usando esse ícone e clique no botão Do a system scan and save a logfile.

    No final abrir-se-á um texto em Notepad. Copie esse texto e coloque-o aqui.

    Depois disso veremos o que terá de estranho que possa estar a causar problemas.

    Zee
     
  8. God_Like

    God_Like I fold therefore I AM


    ja vi essa lista ainda antes de postar e nada de estranho... só não sei o k é o "vsnpstd2.exe" e o "tsnpstd.exe" alguem k m esclareca? obrigado

    ja fiz o scan, onde esta o log?
     
    Última edição pelo moderador: 11 de Junho de 2009
  9. G0dLik3

    G0dLik3 Power Member

    No final abrir-se-á um texto em Notepad. Copie esse texto e coloque-o aqui.
     
  10. Imortal_Killer

    Imortal_Killer Power Member

    Description

    vsnpstd2.exe is a process installed alongside SmartCam USB Cameras and provides additional configuration options for these devices. "If you have any information with more details, please e-mail us with the details at [email protected].\r"

    Click to run a free scan for vsnpstd2.exe related errors.

    Recommendation

    Disable and Remove vsnpstd2.exe IMMEDIATELY. This process is most likely an adware or spyware. It is highly recommended to Run a Free Performance Scan to automatically optimize memory, CPU and Internet Settings.
    ___________________________________________

    o outro avho que tbm é..


    Tebnta reinstalar o internet explorer ou o browser que usas e ve se o problema continua
     
  11. God_Like

    God_Like I fold therefore I AM

    no hostfile do system32 tenho isto

    o k significa isto?
     
  12. PJTuga

    PJTuga Power Member

    isso sao so exemplos para exemplificar a estrutura do ficheiro.
    essas linhas nao fazem nada porque estão comentadas
     
  13. God_Like

    God_Like I fold therefore I AM

    ca esta o log

    Código:
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 20:03:36, on 11-06-2009
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal
    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Windows\System32\qttask.exe
    C:\Program Files\a-squared Anti-Dialer\a2adguard.exe
    C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
    C:\Program Files\COMODO\VEngine\VEngine.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
    C:\Windows\vsnpstd2.exe
    C:\Program Files\Logitech\Gaming Software\LWEMon.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\DAEMON Tools Lite\daemon.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Windows\system32\wbem\unsecapp.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Windows Live\Contacts\wlcomm.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\SearchFilterHost.exe
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = [URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [URL]http://www.google.pt/[/URL]
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [URL]http://go.microsoft.com/fwlink/?LinkId=69157[/URL]
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [URL]http://go.microsoft.com/fwlink/?LinkId=54896[/URL]
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [URL]http://go.microsoft.com/fwlink/?LinkId=69157[/URL]
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
    O1 - Hosts: ::1 localhost
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
    O2 - BHO: Programa Auxiliar de Início de Sessão do Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Comodo VerificationEngine Browser Helper NEW - {A968A4B4-C492-4834-B651-17602C3885C8} - C:\Program Files\Comodo\VEngine\VEngineIE32.dll
    O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Windows\System32\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [a-squared] "C:\Program Files\a-squared Anti-Dialer\a2adguard.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
    O4 - HKLM\..\Run: [VEngine] C:\Program Files\Comodo\VEngine\VEngine.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
    O4 - HKLM\..\Run: [tsnpstd] C:\Windows\tsnpstd.exe
    O4 - HKLM\..\Run: [snpstd2] C:\Windows\vsnpstd2.exe
    O4 - HKLM\..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
    O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe
    O4 - HKCU\..\Run: [Arovax AntiSpyware] C:\Program Files\Arovax AntiSpyware\arovaxantispyware.exe /s
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVIÇO LOCAL')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVIÇO LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'Serviço de rede')
    O8 - Extra context menu item: E&xportar para o Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: Transferir com FDM - [URL]file://C:\Program[/URL] Files\Free Download Manager\dllink.htm
    O8 - Extra context menu item: Transferir todos com FDM - [URL]file://C:\Program[/URL] Files\Free Download Manager\dlall.htm
    O8 - Extra context menu item: Transferir vídeo com FDM - [URL]file://C:\Program[/URL] Files\Free Download Manager\dlfvideo.htm
    O8 - Extra context menu item: Transferência seleccionada pelo FDM - [URL]file://C:\Program[/URL] Files\Free Download Manager\dlselected.htm
    O9 - Extra button: Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: &Enviar para o OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O13 - Gopher Prefix: 
    O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - [URL]http://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab[/URL]
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - [URL]http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab[/URL]
    O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
    O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
    O23 - Service: a-squared Anti-Dialer Service (a2AntiDialer) - Emsi Software GmbH - C:\Program Files\a-squared Anti-Dialer\a2service.exe
    O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
    O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - Unknown owner - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
    O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
    O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
    O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
    --
    End of file - 8265 bytes
    
     
  14. Blue Zee

    Blue Zee Power Member

    Desactive o TeaTimer no Spybot S&D e teste.
     
  15. God_Like

    God_Like I fold therefore I AM


    antes de mais obrigado pela ajuda que me disponibilizou! vou testar, kuando tiver resultados postarei!
     
  16. God_Like

    God_Like I fold therefore I AM


    nada resolveu, tudo na mesma!!! :s
     
  17. Blue Zee

    Blue Zee Power Member

    Desactive todos os addons no Internet Explorer e teste.
     
  18. God_Like

    God_Like I fold therefore I AM


    como se faz isso?
     
  19. Blue Zee

    Blue Zee Power Member

    Em Inglês, no IE:

    Tools > Manage Addons > desactivar uma a uma

    Zee
     

Partilhar esta Página