Wednesday, December 30, 2009

Oooops, I did it Again! APCProtect!

How was your holidays? Did you have a great time? What are you planning for the celebration of the New Year?
Personally, this time wasn't as successful as expected to me. At least I hope to have a better New Year. This time it happened once again to my cousin. He can't stop visiting all the malicious sites. I've been removing all the fake files from his PC and now everything seems to be the past. However, I had to put great effort to get rid of all the traces of the fake software (here is the full list of removal instructions).
If you have been in the same problem, you are welcome to share how was your luck fighting this rogueware.
Sincerely.

Monday, December 21, 2009

Do you Feel it?

Christmas spirit is in the air, at least at my home! Do you feel it?
I hope that all the holidays will be safe and warm for everyone reading my blog.

TheDefend Does Not Defend!


Hi, how was your weekend? I had a Christmas party with my colleagues. At least, I didn't have to work there, just to have fun. And I did, actually.
Still the weekend was spoiled after hearing that I needed to rush to Peter, a friend of mine, to fix his PC because he didn't know what was happening to it.
After switching his PC on, I knew that he is in trouble. He got the infection TheDefend. He said to be on the Internet for the whole Saturday but he didn't visit any maliciuos sites. And he didn't have to...it was enough to update his flash player and he got the infection.
Luckily, I was lucky and had to remove all these files (click here), and his PC was recovered.
This time it was easy. I hope next time will be...oh, there would be no next time! :)

Monday, December 14, 2009

Internet Security 2010 Does Not Guarantee Security at all!

Hello, how was your weekend? Did you have fun? I was in a HELLLLLL

I HAD FUN! Well, it reminded me more of a hell than fun. All the weekend I was fighting with that new rogueware Internet Security 2010 because all my friends and friends on the friends are ALWAYS asking me for help. That happens when you succeed in helping one single time. I don't regret that but sometimes it's a way too much for me. It looks like every weekend I have to work and work, and a little bit more work...
Be careful with Internet Security 2010. That's the main scope of my article. It might make a day or two the whole miserable.
If it's too late and you are infected, know that you can first try to use the removal instructions on xp-vista site (click here) and then, if that doesn't help, you need a more experienced person to aid you.

Monday, December 7, 2009

Are You Feeling Safe in the Internet?

Hi, New week brings new challenges.
Hope all of them are going to be positive :)
I just want to ask you whether you feel safe surfing the Internet? Is your antivirus enough for you? Or you would like more protection? What kind of?

Friday, December 4, 2009

Antivir Rogue Spreading its Poison!

Recently discussed Antivir rogue seems to be one of the top dangers these days. Many people think that Antivir is just Avira's Antivir, although they are TOTALLY wrong. Hackers are thinking of more and more ways to make "green" computer users slip and believe in their fake programs.
I am not sure who hasn't got this rogue on their PCs. My aunt, my uncle, a cousin, and even my brother got the infection as soon as the product became live.
Ted,my cousin, was off the hook just after ending the program on the task manager and getting rod of all the registry keys and files created by Antivir (here is the list in case you need them as well).
However, my aunt had to take her laptop to some specialists. I am not sure she got it back. I will ask her and let you know.
Once again my advice is: pay attention what sites you are visiting! :)

Hackers Playing with Enviroment! Eco AntiVirus 2010!

They are everywhere. It seems that every sphere of our lives is affected by them. This time they changed their perspective to saving the environment.
I am talking of the creators of roguewares which are getting an increasing popularity, although from the negative perspective.
Eco AntiVirus 2010 rogue seems to have tried to attack not only my PC. I was just in time to save it from this threat, although some people weren't as lucky.
As in the xp-vista.com, some people had this application removed very quickly. Read the real post from the site:

"Juan, I just finished removing eco-av from my computer. If you follow these instructions exactly and make sure you go and try to end the process (ctrl Alt delete) in the task manager after you delete the files then it will go away. I had to randomly select which file to delete in the processes. In short, these directions are pretty straight forward. Good Luck."

Wednesday, December 2, 2009

Wednesday, November 18, 2009

Control Center Will Damage Your PC!

Hi to all,
just a very quick note to you.
As I am writing this blog and paying attention to roguewares, I received a comment to write on Control Center. It seems to be more dangerous application than others because Eric, who commented, said that it wasn't enough to remove the files and keys which are listed on xp-vista site. He also had to talk to some specialists in order to fix his PC.
However, the only advice Eric was given, was to take care of your computer privacy as much as possible. Sometimes antivirus does not really help if you go to fake sites which advertise the product, or download video codecs from anywhere in the Internet.

LinkSafeness is Unsafe!

"LinkSafeness is the unsafest and the most malicious anti-spyware application from the same well-known family, called Wini, or Winisoft or Winiguard." You keep hearing this time after time. And, of course, you must keep this in mind. I would never advise you to have anything in common with these guys. Or you will get into a real trouble, starting from annoying pop-ups and finishing with changes on your PC system.
Although Christmas is coming, LinkSafeness isn't the gift you are looking for yourself:)
If you have been bad this year, and got this rogueware under your Christmas tree, there is a way out of this trouble, removing the application following these instructions.

Friday, November 13, 2009

Oh No!!! AntiAID Attacked My Cousins!

AntiAid is the rogueware, although it sounds like an ordinary security application. This innocent name made some teenagers believe that the software can scan and protect your pc. But guess what did they get after the scan? I think you are right! The answer is TROUBLES!
Although they were advised to delete many files and registry keys from the PC (here is the list), that didn't help. These teens were stuck too deeply than expected.
I would advise you not to be a teenager :) But imo it would be better to advice you to be careful ;)

Thursday, November 12, 2009

SystemVeteran Attacking! Like a Crocodile!

Hundreds and thousands of computer users are in a great danger. Wini family is proud to announce that they created a new application, although this should sound like a warning to everyone of us.
The Wini hackers keep expanding their forces, and isn't anyone able to do anything? Sometimes it is not enough to enter the site, look for the removal instructions and delete the files because the trojans on which these applications are based act in a very malicious way.

Wednesday, November 11, 2009

BlockProtector Blocking All Computers!!! Danger!

Welcome back once again :) How are you? Still happy and shiny? :)
I hope you are having much better time than some people these days.
Don't be the same as my brother-in-law. He just blocked his PC with Block Protector and is having real difficulties removing this fake software. If you are desperate with that, keep in mind to get rid of all these files, registry values.

Monday, November 9, 2009

MaCatte Antivirus 2009 Pretending to Be McAffe!!

Many people got hooked as it just appeared. I almost did that myself. But "almost" is better than "for sure."
I am talking about MaCatte which sounds just as McAffe, doesn't it?Computer hackers think of different ways how to make you, the inexperienced computer user, believe in what they do, trust their evil activities.
What strikes most, there are still soooo many people who believe in them. My aunt of 5o years has started using PC several years ago, and she was warned that roguewares are very popular these days, and what you think, she didn't pay the attention that it was MACATTE, not MCAFFE when she clicked on the download button. At least, my cousin was able to help her. Before removong, he even made a screenshot of this rogueware. Here it is:














So just don't be fooled. This is just one more way to trick you, despite stealing money in the streets. In case this "joy" is on your machine, take a look at the instructions which files are to be deleted while cleaning the infected machine. Be careful with everyone and everything you don't know.

BlockWatcher Will Block Your PC!

Hi to all,
How was your weekend? At last it's over for me! Do you want to find out why? That's because I was fighting with some fake and annoying rogueware. It just didn't get out of my pc so easily. I had to search for help. After getting all the registry keys and files deleted (xp-vista provides the entire list of them), finally I have saved my computer.
So my advise would be: Be extremely careful when you download video codecs from the almighty Internet and don't get the BlockWatcher or any other rogueware instead of the codec.

New Threats to Your PC! It's a Real Danger! Windows Enterprise Suite.

Hi there,
every day Internet is becoming more and more dangerous. The biggest source to cash in these days is to use the inexperienced computer users as bait. The hackers are acting in this way. New type of fake applications are attacking the world of the Inernet every single day. It looks like roguewares have split all over the world and do not seem to stop spreading.
Have you ever had a feeling you've been watched?
One of the latest fake applications Windows Enterprise Suite is hiding in the malicious sites of the Internet, trying to steal money from you. Of course, it first infects your computer like shown in this video:

In order to get rid of this malware, find out how to remove it with the help of xp vista site instructions.

Sunday, August 16, 2009

Funny Sign


So the translation of this sign means says there is a "little parking square" 300 feet down the road. You don't have to pay, but it is not secure at all!

Thursday, August 6, 2009

Kaip galima atidaryti vyno butelį su WC sėdynė?

Šis klipas privertė mane juoktis, kol aš ašaros mano akyse. Tai labai juokingi video iš Bulgarijos. http://www.youtube.com/watch?v=LYV3jyHNdKU

Sunday, August 2, 2009

I just liked this

I have missed more than 9000 shots in my career. I have lost almost 300 games. On 26 occasions I have been entrusted to take the game winning shot... and missed. And I have failed over and over and over again in my life. And that is why... I succeed." -Michael Jordan

Thursday, July 23, 2009

Mesainis Svajones

Turi buti nuobodu su savo gyvename.
Nes aš šiandien tik galvoju
ar važiuosiu 5 valandos nes Mesainis arba ne

čia nuotraukas iš vieta kur galima valgyti kaip amerikietis kad esu

Tuesday, July 21, 2009

Dar žodžiai iš lietuvių kalbų

smalsu - curious
su jomis - with them (f)
kantri - patient
vėluojančių - delays
pakankamai - enough
būk atsargus - be careful
atskirti - distinguish
nusprendžiau padaryti pertrauką. - I decided to take a break
Bet aš stengiuosi ne nerimauti. - I try not to worry

Saturday, July 18, 2009

Internet Explorer: TIKSLĄ kompiuterių piratai vėl?

IE-warning.jpg Vienas iš gerai patiko ir plačiai naudojamas interneto naršyklių, Internet Explorer komponentas "Microsoft Windows perėmė blogi vaikinai dar kartą. Dėl Internet Explorer saugumo, galima pažymėti, kad nepaisant to, kad lopai ir atnaujinimai, išleisti ir reguliariai pateikiama per "Windows Update" paslauga ir automatinius naujinimus, jis dažnai tampa tikslą žalinga vartotojams. Šis straipsnis yra skirtas neseniai nustatė "Microsoft Internet Explorer" AddFavorite "metodas denial of service vulnerability.

Nors saugumo lopai būti toliau išduodami už įvairias platformas, labiausiai funkcija papildymai ir saugumo infrastruktūros patobulinimų yra tik pateikiami operacinės sistemos, kurios yra "Microsoft" pagrindinės paramos etapą. Internet Explorer linkusius nuotolinio denial-of-service vulnerability.

Todėl, jeigu šią spragą yra panaudojama sėkmingai, ji galėtų denial-of-service conditions, leidžianti nuotoliniu puola į avariją pažeidžiama naršyklė. Šis trūkumas atsiranda, kai vartotojas pateikė duomenis būtų vykdoma "AddFavorite JavaScript metodą. Puola gali greitai šią problemą, siųsti didelės seka vertės metodas.

Kas turėtų nuotoliniu atakującej daryti, siekiant panaudoti šią specialiąją pažeidžiamumą? Puola turi įtikinti yra nenojauš vartotojo apsilankyti specialiai paruošta svetainėje. Sėkmingai naudoja būtų pakabinti orientuojasi naršyklė, todėl denial-of-paslaugos. Kai kurios ataskaitos rodo, kad šis pažeidžiamumas gali būti naudojamas siekiant sugadintas procesas atmintį ir daryti įtaką vykdyti kodą. Tačiau tai nebuvo įrodyta.
Affected Software:
Microsoft Internet Explorer 7
Microsoft Internet Explorer 8
Microsoft Windows Vista
Microsoft Windows Vista Business
Microsoft Windows Vista Enterprise
Microsoft Windows Vista Home Basic
Microsoft Windows Vista Home Premium
Microsoft Windows Vista Ultimate

1 lentelė. Affected įranga

Kai kurie failai, susiję su pažeidžiamas "Windows Vista" apima, bet neapsiriboja: actionqueue.dll, arunres.dll, diager.dll, diagnostic.dll, etfsboot.com taip pat installmw.exe. Labai svarbu, kad vartotojai žino, kad kitos versijos gali būti paveiktos taip pat. Dėl šios priežasties, yra galimybė, kad Internet Explorer 6 gali būti įtraukta į pažeidžiamas programinės įrangos. Kai kurie failai, susiję su galimai pažeidžiamų Internet Explorer 6, apima: accesscontrol.dll, addusers.exe, BASE64.DLL, kerbtray.exe ir kix32.exe.

Kas yra išspręsti šią svarbią saugumo problemą? Šiuo metu, be tiekėjo pateiktos lopai yra. Ką reikėtų padaryti, tai tikimės dėl pakeitimo turi būti pateikta per trumpiausią erdvėje laiko.

Wednesday, June 10, 2009

Aš pagaliau grįžta į Ameriką.

Aš nemačiau Amerikos vienerius metus su puse. Pasiilgau mano šeima. Pasiilgau valgyti mėsainius. Pasiilgau vairuotojo gatvėse Brooklyn. Jis bus malonu grįžti į savo žemę

Aš įsigyti seną pastatą Williamsburg. Tai buvo svajonė mano daugelį metų. Aš atlikau tai gražus. Bet aš nemanau, kad ten gyventi. Tiesiog investicijos, aš visada norėjau.




Tai brzydki žalia kairėje. Manau, kad kai condos jau Eime dėl laisvų partijos vaizdą.
Aš padariau, kad pastato kažkas neįtikėtina.

Saturday, May 30, 2009

Sniffpol.dll - O kur galiu surasti?

aš labai noriu tureti
nauja DLL failas
Mačiau šia puslapi apie MS Windows
Sniffpol.dll ir kita Windows XP DLL Files
ir jo rašai apie šia DLL bet kur yra?
jeigu žinai prašau rasyk man. :-)

Friday, April 3, 2009

Sunku Kalbu

išskirtinai - exceptionally
stovas - stand
pagirtinas - praiseworthy
begalė - huge number, tremendous
pasiilgimas - longing
užimtas - busy

Monday, March 30, 2009

Phrases in Lithuanian

Aš ilsejausi su draugais.
I was relaxing with my friends (male).



"tuo metu" - at that time
"pazaidziu poola" - play pool
"pasiimti su savimi" - take with me
"svarbu pastangos" - whats important is the efforts
"gal ir atrasčio laiko" - maybe if I find the time
"neatsiprasinek" - don't get uncomfortable?
"dar anksti" - too early
"ar as ar ne" - whether or not
"juk tai tiesa" - Is it true?
"laikui begant" - Over time

Saturday, March 28, 2009

Dar Naujai Žodiai

Kasdien išmokti kažkas nauja

Paskatinti - to induce
Klaida - Mistake
pagauti - to catch
marškiniai - shirt
sutinku - agree
uždaryti - closed
požiuris - point of view, standpoint
sužavėti - fascinate, charm
prasinešioti - to get comfortable
trukstamas - missing
atrasti - to find
ateityje - in the future
megstamas - favorite
šiaurys - north
skirsti - be chapped?
pagrindas - foundation

Sunday, March 22, 2009

Naujiai Žodiai

nušluostyti - to wipe off
nosis - nose
pagarba - honor
paplepeti - to have a chat
susitarti - to make arrangements
lėkti - fly, run
trumpas - short
kilmė - origin
laisvesnis - More Free
būtent - exactly as in Who Exactly, What Exactly

Tuesday, March 17, 2009

Virut NTOS Kernel Hooks

Aš skaičiau šią forumą ir ji sakė, kad Virut ne tik kabliukų su NTOS KERNEL. Bet irgi rasysi savo kodą į Explorer.exe ir Userinit.exe

Pasak vienas vyras prie sysinternals forumo "Šiuo metu tirpalo, kad būtų pašalinti Tu iš savo kompiuterio, išskyrus FDISK ir FORMAT jūsų kietajame diske. Kiek suprantu, kad šis virusas yra atminties rezidentų, ir ji taip pat naudoja MBR. Todėl, visiškai maitinimo žemyn į kompiuterį reikia iš karto po išbraukta VISŲ partions. Tada galite paleisti atgal į Windows, sukurti naują partion (-ių), visiškai formatu jūsų HDD, tada su savo OS. "

So I was reading this thread and it said that Virut not only hooks the NTOS Kernel. But also injects its code to Explorer.exe, and UserInit.exe

According to one poster at sysinternals, "There is no current solution to remove this BadBoy from your computer, other than to FDISK and FORMAT your HDD. It is my understanding that this virus is memory resident, and it also exploits the MBR. Therefore, a complete powering down of the computer is required immediately following the deletion of ALL partions. You can then boot back into your Windows installation, create your new partion(s), full format your HDD, then proceed with your OS installation."

Monday, March 16, 2009

Naujiai Žodiai

"Nesu Tikras" - I am not sure
įrankis - Tool, Instrument
Sukurti - To make
Jis Sukuria - It made, He made
Tikėtinas - Presumably, Probably
pranešimas - Report
paleisti - Start
palyginimas - Comparison
susirūpinęs - Anxious, Worried
apgaulė - Fraud, Deception, Trick
"atkreipia dėmesį į savo" - To put attention or emphasis on
atkreipti - Direct
dėmesio - attention
straipsnis - article
nuoroda - reference
paslėpti - to hide
realus - real
realybė - reality
turinis - Voluminous, Full
kabliukas - Hook
skaitytuvai - Abacus
paprastai - simply
grąžinti - return
saugoti - to take care of
saugojimas - protection
"Antras kabliu" - Second Hook
Išbraukta - Deleted
perrašyti - Overwritten

MBR Rootkits Hooking Driver\Disk\IRP_MJ_READ



Nesu tikras, ar tai, ką aš ieškau, bet radau šį įrankį iš "Microsoft".

http://support.microsoft.com/kb/102870

Jis sukuria daug C++ failų. Tikėtinai pranešimą apie Master Boot Record. Aš galvojau, kad paleisti ant švaraus komputeras tada daryti palyginimą po infekcijos. Aš esu susirūpinęs, kad ši priemonė gali būti apgaulė su gera rootkit.

kaip GMER atkreipia dėmesį į savo straipsnį į šią nuorodą http://www2.gmer.net/mbr/

"Norėdami paslėpti realaus turinio MBR ir kitų sektorių iš AV skaitytuvams Rootkit kabliukų" \ Driver \ diske "IRP_MJ_READ. Paprastai, kai API glasis sektorius 0 (MBR) rootkit pakeičia diskas IRP_MJ_READ skambinti ir grąžina kopiją originalios MBA saugomi sektoriuje 62 . Antras kabliu (IRP_MJ_WRITE) apsaugo nuo Išbraukta / perrašyti. "

Taigi, jei \ Driver \ disko IRP_MJ_READ yra hooked pateikė gerą rootkit. Ši priemonė gali būti neveiksminga.

Ir jis taip pat nebuvo aišku straipsnį, jei GMer reguliariuosiuose skaitytuvas gali aptikti šią arba

Ar kas nors čia žino apie tai?

Exile in Kaunas

Mano Nauja Video Apie Kaunas

Friday, March 13, 2009

Naujas Velnės - Conficker.C

Labai Dirba blogas žmones kad rašai Conficker Virus. O šiandien skaičiau DarkReading kad yra Naujas Conficker.C Variant. Aišku kad Velnė nerami.

Aš šiandien padejo Conficker mano Komputere ir BDTools, Symantec, ir Microsoft URL jau nedirba su CONFICKER. Tik Enigma Galiau matyti

Wednesday, March 11, 2009

Vilnius Skyline



Čia labai gražiai Skyline iš mūsų mažą sostinę miestę

O kas yra Conficker???

Labai blogai virus Tikrai!
ir maciau kad beveik 13 millionas komputeriai jau turi
Ir čia tu gali Remove Conficker šimta porciento laisva


Tuesday, March 3, 2009

Tobulai Nuotraukai

Esu labai toli mano šalis.
Pasiilgau mano namai, mano šeima, draugais ir visas.
Šiandien JC Construction rašai apie Jersey City Skyline
su Tobulai Nuotrokai.

Dabar galiu matyti kaip keisi NiuJorko Miestas.

Monday, March 2, 2009

Naujas Velnės - Spyfighter



Šia failas tikrai nera apie saugumo. Yra blogas programas ir tu reiki Delete.

Associated SpyFighter Files:

%UserProfile%\Desktop\SpyFighter.lnk
%UserProfile%\Start Menu\Programs\SpyFighter
%UserProfile%\Start Menu\Programs\SpyFighter\SpyFighter.lnk
%UserProfile%\Start Menu\Programs\SpyFighter\SpyFighterScan.lnk
%UserProfile%\Start Menu\Programs\SpyFighter\Uninstall.lnk
c:\Program Files\SpyFighter
c:\Program Files\SpyFighter\SpyFighter.exe
c:\Program Files\SpyFighter\uninstall.exe
c:\Documents and Settings\All Users\Application Data\SpyFighter



Associated SpyFighter Windows Registry Information:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SpyFighter
HKEY_LOCAL_MACHINE\SOFTWARE\SpyFighter
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "SpyFighter"

Apie Windows Process


Ka susidejo Vienas "Windows Process"?

  • Private Virtual Address Space. Paprastai Virtual Memory Adresas kur process gali gyventi
  • Executable programas kad sakyti Initial Code ir Data ir rašai į address space iš programa
  • sąrašas iš OPEN HANDLES į kita SYSTEM RESOURCES kad Process ir Visas Process Threads gali priėjimas. Pavyzdžui: spoolss.exe, llssrv.exe, LOCATOR.EXE, ....
  • Access Token. O šita gali sakyti apie User arba Security Group ir tikslai ka gali process daryti
  • Vienas unikalus IDENTIFIER varda yra PROCESS ID arba PID. Vidinus vardas CLIENT ID
  • Bent Viena THREAD OF EXECUTION

Wednesday, February 25, 2009

InprocServer32 / embedded nulls Tipo "False Positive" apie rootkit scan

Aš siandien noriečiau kalbeti apie kaip tu reiki supranti "Embedded Nulls". Gal kada nors tu ieskai Rootkit su programa kaip RootKitRevealerMicrosoft. Gal tu jau ieskai ir dabar žinai kad jūsų kompeterai turi Embedded Nulls. Tu turi buti Nervingas jeigu tu rasysi kad jūsų komputerai yra pilna "Embedded Nulls". Taip gal turesi, bet yra tipo False Positive.


Pirma, InprocServer32 yra COM server kad gali sakyti tikslai pathDLL. Daug informacija yra čia: http://msdn.microsoft.com/en-us/library/ms682390.aspx. Beveik visi rootkit gali daryti InprocServer arba InprocServer32. Ir kartais Registry Key su Embedded Null dirba su ImprocServerumi.



RootKitRevealer dažnai sakai gal yra Rootkit. PaVyždžiui čia yra vienas Log:

HKLM\SOFTWARE\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C 63153}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582 C741C}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C 16034}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D0 8C8B9}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83 632C0}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94 DB145}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD 34C19}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E9570 82D6D}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619 AC1A5}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF96 19B6F}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B 3DCEC}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)
HKLM\SOFTWARE\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304 BCD84}\InprocServer32* 2/19/200 5 18:15 0 bytes Key name contains embedded nulls (*)

Ir jeigu tu nori Delete TU NEGALI. Tikrai atrodai Rootkit. Bet dažnai nera. Mark Rusinovic rašo vienas mažas programas nes Delete Embedded Nulls. Čia tu gali tureti laisva: Download RegDelNull

Tuesday, February 24, 2009

Ar pirmadieniai tunos geriausai?

Aš buvau Pizza Jazz Laisves alejeje vakar. Dažnai valgau tuno ir visa menuo vasario tikrai negerai tuno. O viena diena mano vokietis draugas valgo tuno ir kvepi labai blogai kaip beždžione.

Tai vat.

Bet vakar...... Ne žinau kodel. Praejo tobulai.
Gal pirmadienis yra geriausai diena valgyti žuvies Pizza Jazzoje?


Saturday, February 21, 2009

Tarnybos, Funksijos ir Rutinos ( Services, Functions, and Routines )

DIAGRAMA 1. "SHARED DLL"
  • Windows API Functions - Documented Callable Subroutines in Windows API - pavyzdžiui CreateProcess, CreateFile, and GetMessage
  • Native System Services (or Executive System Services) - Undocumented underlying services in OS Callable from User Mode. Pavyzdžiui: NTCreateProcess yra vidinę systemą tarnybą kad CreateProcess Funksija skambina nes sudaryti nauja Process
  • Kernel Support Functions (or Routines) - Subrountines inside Windows OS kad tik gali paskambinti iš Kernel Mode. Pavyzdžiui: ExAllocatePool yra rutina kad Device Drivers skambina nes Allocate MemoryWindows System Heaps
  • Windows Services - Processes started by Windows Service Control Manager Pavyzdžiui: Task Scheduler tarnyba veiki User Mode Processoje kad gali supranti "the at command".
  • DLL (Dynamic Link Library) - Rinkimas iš Callable Subroutines kartu ir yra Binary File kad gali buti Dynamically LoadedApplications kad nauda Subroutines. Beveik visa Windows UserMode Application nauda DLL's ekstensyviausai. Kodel? DLL turi pranašumas iš Static Library nes kitam Applications gali dalyvauti vienas DLL. Ir Windows sakai kad tik yra Viena Memoryeje. Tada reiki mažesnio Memory.

Windows API

Windows API susidejo tukstentiai Callable Functions kad mes galime dalyti į sekantiai kategorijos:
  • Base Services
  • Component Services
  • User Interface Services
  • Graphics and Multimedia Services
  • Messaging and Collaboration
  • Networking
  • Web Services
.NET ir WinFX susidejo Framework Class Library
ir Common Language Runtime (CLR)


CLR yra COM Server ir jo Code Gyva Standard User Mode
Win32 DLLoje. Tikrai, visiai daliai iš .NET Framework įrankis kaip
Standard User Mode DLL.Windows API Functions.

WinFX yra seną vardą iš .NET Framework 3.0. Bus naują Windows API toliau būsimos versijos Windows

Apie "MS Windows"


Šiandien aš Rašysiu apie mano megstamą dalyką "Windows Internals".

Pirma,
Windows NT gali turėti multiprocessor systems

Gal tu dabar galvoji, O Kas yra
multiprocessor systems?
Multiprocessor System yra kai jūsų komputera turi du arba daug CPU, ir Windows gali nauda visa CPU kartu.

Antra,
Windows NT gali turėti neblogai saugumo su Discretionary Access Control (DAC). Tą prasme. Kokį object gali vadovauti kokį object. Pavyzdžiui - Applications gali vadovauti Win32 API, ir Win32 API gali vadovauti Functions kaip zwEnumerateValueKey

Windows NT yra tik 32bit OS. Windows 7 turesi 32bit OS arba BETA 64bit OS. Ir žinoma bus daug labai blogai computer viruses del 64bit OS.

Windows NT
yra pilnai Reentrant. Šita yra labai gerai apie Multi-threading.

Windows NT
duoja pasirinkimas vadovauja 16 bit applications Address Space. Vienas geras dalykas apie šita yra jeigu 16 bit application neturi savo Address Space, lengvas gali Corrupt kita Applications.

Process shared memory Windows NT
yje tik yra matomas iš applications kad yra mapping arba sharing tas pats Memory Section. O šita yra tikslai svarbu apie saugumą nes yra dar sunku rasyti arba pakeisti kita Process.




Friday, February 20, 2009

Profesijos

---- Puikai ----- ir dabar meginu išrasysiu kažkas su naujais žodiais




Virėjas. Čia yra vienas šeimos narį. Jis yra labai seną pensininką. Jo seiminės padetio yra vienišas. Buvo vedęs, bet žmona dabar mirusi. Ir jis dar neturi nauja.





Šokėja. Čia yra kita giminaitė, Eglė. Mano truputi crazy pussesere. Ji yra paauglė. Dabar ji labai tinka šokti. Ji yra anūkė iš virėjo.








Lakūnas. Kada nors turesiu kūdikis. Noriu kad busi sūnų. Jeigu berniuko turesiu. Gal kai busi suaugęs, dirbsi Lakūno.







Valytoja. Čia Dovilė. Ji yra išsiskryusi. Ir dabar dirba valytojos. Ji turi dvi dukteris. Jos yra dvyniai.







Siuvėjas. Čia mano dėdė. Jis gyvena lenkijoje. Jis yra išsiskryęs, ir dabar turi nauja drauge.







Buhalterė. Ir čia yra jo drauge. Ji labai jona mergina. Ir ne žinau kodel ji patinka mano senuke dėdė.

Thursday, February 19, 2009

Dar meginu išmokti šia sunkų kalbų


Aš labai noriečau išmokti daugiau lietuvių. Man labai sunkų. Gal jeigu čia praktika, toliau išmoksiu.

Pirkau viena knyga apie lietuviškai. Meilutė Ramonienė rašo. Vardas tik "Lithuanian"
Turejo kita iš jos "Colloquial Lithuanian", bet tikrai nepatinka. Nauja yra geriesnu.

Gerai. Aš dabar parasysiu naujai žodiai reikalinga išmokti ir lengvas užmirsiu:

sūnus - son
duktę - daughter
anūkas - grandson
anūkė - granddaughter
šeimos narys - family member
pusbrolis - male cousin
pusseserė - female cousin
giminaitis - relative
šeiminė padėtis - marital status
vedęs - married man
ištekėjusi - married woman
miręs - dead
mirusi - dead (f)
išsiskryęs - divorced (m)
išsiskryusi - divorced (w)
asmuo - person
dvyniai - twins
kūdikis - baby
lytis - sex
narys - member
paauglys - teenager
pensininkas - old age person (pensioner)
suaugęs - adult (m)
suaugusi - adult (f)
buhalteris - bookkeeper
inžinierus - engineer
jūrininkas - sailor
kirpėjas - hairdresser
lakūnas - pilot
mokslininkas - scientist
muzikantas - musician
padavėjas - waiter
pardavėjas - salesperson
rašytojas - writer
siuvėjas - tailor
šokėjas - dancer
tarnautojas - official
ūkinkas - farmer
vadovas - manager
vairuotojas - driver
valytojas - cleaner, maid
vertėjas - translator
virėjas - cook
žurnalistas - journalist

Wednesday, February 18, 2009

Vokietijoje, vasario keturioliktą dieną

Puikai savaitgalio praejo su draugumi. Bet šiandien, esu šaltiausai šalyje. Šiandien yra trecią dieną kad mes turime Sniėgos.

Lauksiu pavasaro

Friday, February 13, 2009

Išskrendsiu


Pilies Potsdame Mieste (tikrai nera Lietuvoje)

Rytoj Rytas Iseisiu į vokietiją. Gerai kad nebusiu vienišas keturiolikas vasario. Dar Neturiu Panelė, but laimingas busiu Vokietoje su geriausai draugumi.

Wednesday, February 11, 2009

Sunkų Kalbų

Dabar yra Naktis. Truputi liudnas esu kad neturiu laiko iš neturiu didelį kalianą. Bet gerai lauksiu rytoj. Turiu kantrybes.

Katik skaičiau geras naujienos iš draugo. Jis sako kad savo verslas dar yra puikai. Ir turi nauja butai - offis Tukentas tris šimtu Metra. Puikai. Man labai patinka girdeti geras naujas.

Lietuviškai kalbu man labai sunku!!! Kasdien aš girdejau kažkas ir nesuprantu nieko. Arba suprantu dvidešimt minutelė veliau.

Niekam Tikęs Oras

Man atrodo žiema Lietuvoje niekada nebaigsi. Šiandien šalta kaip dažnai. Neturime saules kaip dažnai. Ir dabar mačiau sniegą mieste.

Šiandien valgau maža priešpiečiai su dideliu kaina pompejoje restorane. Aš valgau tuno su sriuba. Tuno buvo neblogai. Meksikietiška sriubos tikrai nera nieko ypatinko. Rytoj bandysiu dienos sriubos.

O bet kaip galiu veikti? Turiu buti laimingas. Noriečau ruokyti didelį kalianą šia nakti.





















Sniego Laisves Alejoje

Technorati Profile

Sunday, January 25, 2009

Thursday, January 22, 2009

Virk ir Valgyk




aliejus - oil






Bandelė - roll







batonas - french bread





(į)deti, deda, dejo - to put





(iš)gerti, geria, gėrė - to drink





įdaras - filling






(iš)kepti, kepa, kepė - to fry






kiaušinis - egg







(su)maišyti, maišo, maišė - to mix






miltai - flour







(pa)pietauti, pietauja, pietavo - to have lunch
pietūs - lunch





(į)pilti, pila, pylė - to pour







piprinai - pepper







(su)pjausyti, pjausto, pjaustė - to cut





(pa)pusryčiauti, pusryčiauja, pusryčiavo - to have breakfast






(pa)ragauti, ragauja, ragavo - to taste





silkė - herring





(pa)vakarieniauti, vakarieniauja, vakarienavo - to have dinner





virti - to cook