Avast wariuje - trojan JS:Downloader-ZY [Trj]


(Maciek14hks) #1

Po wejściu na dowolna stronę awast wyrzuca komunikat o wirusie.

W załącznikach logi z FRST.

Proszę o pomoc.


(Acorus) #2

Otwórz Notatnik i wklej:

HKU\S-1-5-21-1644491937-884357618-725345543-1003\...\Run: [AdobeBridge] = [X]
HKU\S-1-5-21-1644491937-884357618-725345543-1003\...\MountPoints2: {1c0ef39e-c1e3-11e0-be14-001e6851ccc6} - I:\sources\sperr32.exe x64
HKU\S-1-5-21-1644491937-884357618-725345543-1003\...\MountPoints2: {40ad1a80-568d-11e2-80bc-001e6851ccc6} - H:\RunClubSanDisk.exe
HKU\S-1-5-21-1644491937-884357618-725345543-1003\...\MountPoints2: {85ff2e00-5daf-11e3-82bb-001e6851ccc6} - H:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-1644491937-884357618-725345543-1003\...\MountPoints2: {85ff2e04-5daf-11e3-82bb-001e6851ccc6} - H:\setup_vmc_lite.exe /checkApplicationPresence
HKU\S-1-5-21-1644491937-884357618-725345543-1003\...\MountPoints2: {85ff2e07-5daf-11e3-82bb-001e6851ccc6} - H:\setup_vmc_lite.exe /checkApplicationPresence
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - {D46661F6-8C71-46B3-99F9-F571C236938A} URL = http://www.daemon-search.com/search/web?q={searchTerms}
FF Extension: Site Matcher - C:\Documents and Settings\Słoczyńscy\Dane aplikacji\Mozilla\Firefox\Profiles\s284nc31.default\Extensions\sitematcher@sitematcher.com [2014-05-20]
S3 esgiguard; \\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
S3 WinPhlash; \\C:\SwSetup\SP39158\SWinFlash\PHLASHNT.SYS [X]
2014-05-23 14:42 - 2014-04-08 19:41 - 00000000 ____ D () C:\WINDOWS\455F074C814E4520B69B5584BD90400C.TMP
2014-05-23 14:26 - 2014-04-09 12:49 - 00000000 ____ D () C:\AdwCleaner

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST