M3rcury
(M3rcury)
28 Luty 2012 10:44
#1
Witam,
od dwóch dni mam problem, mianowicie co jakiś czas “głos” z komputera mówi mi “congratulations you won”. niestety ani mój nod ani Malwarebytes Anti-Malware nie wykrył żadnego robala w systemie więc zwracam się tu o pomoc w rozwiązaniu problemu.
przesyłam logi z OTL:
http://wklej.org/id/697833/ otl.txt
http://wklej.org/id/697835/ extras.txt
Leon1
(Leon$)
28 Luty 2012 11:40
#2
w logach nic specjalnego
jeśli używasz FF to zainstaluj dodatek adblock plus 2.0.3
https://addons.mozilla.org/pl/firefox/a … lock-plus/
M3rcury
(M3rcury)
28 Luty 2012 12:38
#3
używam Chrome ale Adblock-a mam zainstalowanego.
a głos odzywa się również jak przeglądarka jest zamknięta
Przeczyść system ccleanerem ewentualnie jeszcze skan malwarebytes
M3rcury
(M3rcury)
28 Luty 2012 14:34
#5
Dzięki wielkie za odpowiedzi:)
pozdrawiam
Leon1
(Leon$)
28 Luty 2012 20:14
#6
z loga wynikało że masz również FF
FF:64bit: - HKLM\Software\MozillaPlugins@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found FF:64bit: - HKLM\Software\MozillaPlugins@microsoft.com/GENUINE: disabled File not found FF:64bit: - HKLM\Software\MozillaPlugins@microsoft.com/wpi,version=1.3: C:\Program Files\Microsoft\Web Platform Installer\npwpidetector.dll () FF - HKLM\Software\MozillaPlugins@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins@microsoft.com/wpi,version=1.3: C:\Program Files\Microsoft\Web Platform Installer\npwpidetector.dll () FF - HKLM\Software\MozillaPlugins@real.com/nppl3260;version=6.0.12.450: C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins@real.com/nprpjplug;version=6.0.12.448: C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins@tools.google.com/Google Update;version=3: C:\Users\Dominik\AppData\Local\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins@tools.google.com/Google Update;version=9: C:\Users\Dominik\AppData\Local\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\fassoxpcom@sensiblevision.com: C:\Program Files (x86)\Sensible Vision\Fast Access\xpcom_fasso\ [2011-05-28 18:56:47 | 000,000,000 | —D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0.1\extensions\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011-10-27 21:49:34 | 000,000,000 | —D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0.1\extensions\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012-01-21 19:51:34 | 000,000,000 | —D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2010-04-04 11:55:45 | 000,000,000 | —D | M] [2011-03-29 18:53:04 | 000,000,000 | —D | M] (No name found) – C:\Users\Dominik\AppData\Roaming\mozilla\Extensions [2011-10-07 16:57:01 | 000,000,000 | —D | M] (No name found) – C:\Users\Dominik\AppData\Roaming\mozilla\Firefox\Profiles\xt7azl4z.default\extensions [2011-10-07 16:57:01 | 000,000,000 | —D | M] (Live HTTP Headers) – C:\Users\Dominik\AppData\Roaming\mozilla\Firefox\Profiles\xt7azl4z.default\extensions{8f8fe09b-0bd3-4470-bc1b-8cad42b8203a} [2011-10-23 21:39:47 | 000,000,000 | —D | M] (No name found) – C:\Program Files (x86)\mozilla firefox\extensions [2011-04-29 11:20:56 | 000,000,000 | —D | M] (Java Console) – C:\Program Files (x86)\mozilla firefox\extensions{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} [2011-07-29 15:49:44 | 000,000,000 | —D | M] (Java Console) – C:\Program Files (x86)\mozilla firefox\extensions{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} [2011-10-23 21:39:47 | 000,000,000 | —D | M] (Java Console) – C:\Program Files (x86)\mozilla firefox\extensions{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} [2011-05-20 16:11:02 | 000,142,296 | ---- | M] (Mozilla Foundation) – C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll [2011-10-03 04:06:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) – C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll [2010-01-01 09:00:00 | 000,002,767 | ---- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\allegro-pl.xml [2010-01-01 09:00:00 | 000,001,406 | ---- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\fbc-pl.xml [2010-01-01 09:00:00 | 000,000,917 | ---- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\merlin-pl.xml [2010-01-01 09:00:00 | 000,000,858 | ---- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\pwn-pl.xml [2010-01-01 09:00:00 | 000,001,183 | ---- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-pl.xml [2010-01-01 09:00:00 | 000,001,683 | ---- | M] () – C:\Program Files (x86)\mozilla firefox\searchplugins\wp-pl.xml
jęśli go nie używasz to go odinstaluj lub zainstaluj Adblocka
M3rcury
(M3rcury)
28 Luty 2012 22:18
#7
a no tak mam i ie9 i opere i ff i chroma a nawet safari haha:D