hello every one
i seen strange Popup Windows
and i search the problem
finally i find 2 Strange Service at control panel -> service
AND DELETE The Registry
* Distributed Console Manager
* Network XmlProvider Service
(Explanation is Chinease Language)
but i didn't Delete below Registery Contents
"I don't know it is Trojan or spyware
plz answer me"
===
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services
Distributed Console Manager
C:\WINDOWS\System32\svchost.exe -k netsvcs
Network XmlProvider Service
C:\WINDOWS\System32\svchost.exe -k xmlprovider
---
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_TEMPLATES\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Distributed Console Manager
Legacy REG_DWORD 0x00000001(1)
service REG_SZ Templates
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_TEMPLATES\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Distributed Console Manager
Legacy REG_DWORD 0x00000001(1)
service REG_SZ Templates
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet\Enum\Root\LEGACY_TEMPLATES\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Distributed Console Manager
Legacy REG_DWORD 0x00000001(1)
service REG_SZ Templates
---
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\XMLPROVIDER\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Network XmlProvider Service
Legacy REG_DWORD 0x00000001(1)
service REG_SZ xmlprovider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\XMLPROVIDER\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Network XmlProvider Service
Legacy REG_DWORD 0x00000001(1)
service REG_SZ xmlprovider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet\Enum\Root\XMLPROVIDER\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Network XmlProvider Service
Legacy REG_DWORD 0x00000001(1)
service REG_SZ xmlprovider
i seen strange Popup Windows
and i search the problem
finally i find 2 Strange Service at control panel -> service
AND DELETE The Registry
* Distributed Console Manager
* Network XmlProvider Service
(Explanation is Chinease Language)
but i didn't Delete below Registery Contents
"I don't know it is Trojan or spyware
plz answer me"
===
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services
Distributed Console Manager
C:\WINDOWS\System32\svchost.exe -k netsvcs
Network XmlProvider Service
C:\WINDOWS\System32\svchost.exe -k xmlprovider
---
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_TEMPLATES\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Distributed Console Manager
Legacy REG_DWORD 0x00000001(1)
service REG_SZ Templates
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_TEMPLATES\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Distributed Console Manager
Legacy REG_DWORD 0x00000001(1)
service REG_SZ Templates
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet\Enum\Root\LEGACY_TEMPLATES\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Distributed Console Manager
Legacy REG_DWORD 0x00000001(1)
service REG_SZ Templates
---
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\XMLPROVIDER\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Network XmlProvider Service
Legacy REG_DWORD 0x00000001(1)
service REG_SZ xmlprovider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\XMLPROVIDER\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Network XmlProvider Service
Legacy REG_DWORD 0x00000001(1)
service REG_SZ xmlprovider
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet\Enum\Root\XMLPROVIDER\0000
LEGACY_TEMPLATES Default REG_SZ
NextInstance 0x00000001(1)
0000 Default REG_SZ
Class REG_SZ LegacyDriver
ClassGUID REG_SZ {8ECC055D-047F-11D1-A537-0000F8753ED1}
ConfigFlags REG_DWORD 0x000000000(0)
DeviceDesc REG_SZ Network XmlProvider Service
Legacy REG_DWORD 0x00000001(1)
service REG_SZ xmlprovider