Okna reklamowe - chyba virus shoper


(prazio) #1

prosze o pomoc w usunieciu smieci z kompa.

ciagle wyskakuja okna roznych reklam.

z innychpostow wynika ze na podstawie programow adwcleaner i frst mozecie mi pomoc

 

frst: http://wklej.org/id/1475285/

additional: http://wklej.org/id/1475286/

 

prosze o wsparcie


(Acorus) #2

Odinstaluj Downloaditkeep,McAfee Security Scan Plus.Otwórz Notatnik i wklej:

Task: {160906FA-CB94-493B-B039-F545802E8B6D} - \AdobeFlashPlayerUpdate 2 No Task File ==== ATTENTION
Task: {2DF6E9ED-DF95-459F-9966-99126030F10E} - System32\Tasks\{F4D4A333-9372-48BD-8618-CC617BEC17B0} = Firefox.exe http://ui.skype.com/ui/0/6.6.60.106/pl/abandoninstall?page=tsBing
Task: {AC1AAE36-8F68-4A59-8153-09A263F06B77} - \AdobeFlashPlayerUpdate No Task File ==== ATTENTION
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Downloaditkeep - {E4C2674F-DE5A-B697-BC5E-00D7DF9E1AA8} - C:\ProgramData\Downloaditkeep\a0tGO.dll No File
FF Extension: Cinema-Plus-1.5c - C:\Users\asz\AppData\Roaming\Mozilla\Firefox\Profiles\wefh5wws.default\Extensions\DFCU50039250@GP61178090.com [2014-09-11]
FF Extension: Website Counselor - C:\Users\asz\AppData\Roaming\Mozilla\Firefox\Profiles\wefh5wws.default\Extensions\{cc6cc772-f121-49e0-b1f0-c26583cb0c5e} [2014-09-11]
FF Extension: Website Xplorer Lite - C:\Users\asz\AppData\Roaming\Mozilla\Firefox\Profiles\wefh5wws.default\Extensions\{d87d56b2-1379-49f4-b081-af2850c79d8e} [2014-09-01]
FF HKCU\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - C:\Users\asz\AppData\Roaming\Mozilla\Firefox\Profiles\wefh5wws.default\extensions\0f606e47-2ee3-45cb-ad45-5585a3f1b12e@73359c31-a0c3-4085-b9a0-af433e9f9c18.com [Not Found]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
S2 892cc6a3; "C:\Windows\system32\rundll32.exe" "c:\progra~3\perfor~1\PerformanceOptimizerSvc.dll",service
S3 catchme; \\C:\ComboFix\catchme.sys [X]
S3 MSICDSetup; \\E:\CDriver64.sys [X]
S3 NTIOLib_1_0_C; \\E:\NTIOLib_X64.sys [X]
2014-09-27 11:17 - 2014-09-27 11:18 - 00000000 ____ D () C:\AdwCleaner
2014-09-27 08:56 - 2014-09-27 09:09 - 00000000 ____ D () C:\Qoobox
2014-09-27 08:56 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-09-27 08:56 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-09-27 08:56 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-09-27 08:56 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-09-27 08:56 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-09-27 08:56 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2014-09-27 08:56 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2014-09-27 08:56 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2014-09-01 12:18 - 2014-09-01 12:18 - 00003136 _____ () C:\Windows\System32\Tasks\{8BF99524-0F5E-4E84-BC0C-257378F7D2FE}
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.