Antivirus Protection 2012-pomocy


(Mu777) #1

Hej

Może ktoś mi pomóc z tym ustrojstwem??

To moje skany z otl

otl:http://wklej.to/CVzwz

extras:http://wklej.to/LP6W9


(Atis) #2

Do okna Własne opcje skanowania / skrypt wklej:

:OTL

IE - HKLM\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1098640

IE - HKCU\..\SearchScopes\{70D46D94-BF1E-45ED-B567-48701376298E}: "URL" = http://127.0.0.1:4664/search&s=pMlAqPbLZjYxTOD3s3cuDzSATeg?q={searchTerms}

IE - HKCU\..\SearchScopes\{7845BC4B-E501-4955-8405-824174AB6073}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=kw&q={searchTerms}&locale=en_US&apn_ptnrs=U3&apn_dtid=OSJ000YYPL&apn_uid=48B24BD2-2B9E-4484-B770-102B525C2567&apn_sauid=C9F43B8C-8E2C-4388-A83A-595AFC8C84A3

IE - HKCU\..\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1098640

O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.

O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found.

O4 - HKCU..\Run: [Antivirus Protection] C:\Users\A\AppData\Roaming\Antivirus Protection\AntivirusProtection2012.exe (Joirefers secusoft)

O4 - HKCU..\Run: [Antivirus Protection 2012 SH] C:\Users\A\AppData\Roaming\Antivirus Protection\securityhelper.exe (Joirefers secusoft)

O4 - HKCU..\Run: [Antivirus Protection 2012 SM] C:\Users\A\AppData\Roaming\Antivirus Protection\securitymanager.exe (Joirefers secusoft)

O33 - MountPoints2\{c26b026e-e648-11de-85d5-00225f3c6121}\Shell\AutoRun\command - "" = F:\vb0hsoay.exe

O33 - MountPoints2\{c26b026e-e648-11de-85d5-00225f3c6121}\Shell\open\Command - "" = F:\vb0hsoay.exe

[2012-04-03 08:46:59 | 000,000,000 | ---D | C] -- C:\Users\A\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antivirus Protection

[2012-04-03 08:46:59 | 000,000,000 | ---D | C] -- C:\Users\A\AppData\Roaming\Antivirus Protection

[2012-04-03 10:03:32 | 000,000,298 | ---- | M] () -- C:\Windows\tasks\Pztrtyv.job

[2012-04-03 08:46:59 | 000,001,846 | ---- | M] () -- C:\Users\A\Desktop\Antivirus Protection.lnk

[2012-03-25 20:26:37 | 000,102,912 | RHS- | M] () -- C:\Windows\System32\igfxzoomy.dll

[2012-04-03 08:46:59 | 000,001,832 | ---- | C] () -- C:\Users\A\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antivirus Protection.lnk


:Commands

[emptytemp]

Kliknij Wykonaj skrypt i zatwierdź restart.

Pokaż raport z usuwania i nowy log Skanuj.