Problem z usunięciem pliku appdata/roaming/newnext.me

po włączeniu komputera pojawia mi sie wiadomość

  C:\Users\Anna\AppData\Roaming\newnext.me\nengine.dll   

 

jak mam to usunąć?

 

otl

http://wklej.org/id/1259954/

 

extras

http://wklej.org/id/1259957/

Użyj AdwCleaner http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/2-adwcleaner z funkcji Skan(Szukaj) a następnie Clean(usuń) (w przypadku Visty/Windows7 uruchom z prawokliku jako Administrator).

Pokaż nowy OTL.txt

niestety nadal to jest

 

http://wklej.org/id/1264137/

Uruchom OTL i w okno (Własne opcje skanowania/Script)wklej:

:OTL
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://aartemis.com/?type=hpts=1387114232from=wpcuid=ST31000528AS_9VP9G2R0XXXX9VP9G2R0
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.aartemis.com/web/?type=dsts=1387114232from=wpcuid=ST31000528AS_9VP9G2R0XXXX9VP9G2R0q={searchTerms}
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.aartemis.com/web/?type=dsts=1387114232from=wpcuid=ST31000528AS_9VP9G2R0XXXX9VP9G2R0q={searchTerms}
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://aartemis.com/?type=hpts=1387114232from=wpcuid=ST31000528AS_9VP9G2R0XXXX9VP9G2R0
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://aartemis.com/?type=hpts=1387114232from=wpcuid=ST31000528AS_9VP9G2R0XXXX9VP9G2R0
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.aartemis.com/web/?type=dsts=1387114232from=wpcuid=ST31000528AS_9VP9G2R0XXXX9VP9G2R0q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.aartemis.com/web/?type=dsts=1387114232from=wpcuid=ST31000528AS_9VP9G2R0XXXX9VP9G2R0q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://aartemis.com/?type=hpts=1387114232from=wpcuid=ST31000528AS_9VP9G2R0XXXX9VP9G2R0
IE - HKU\S-1-5-21-3663886569-1163407495-3464828782-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://aartemis.com/?type=hpts=1387114232from=wpcuid=ST31000528AS_9VP9G2R0XXXX9VP9G2R0
IE - HKU\S-1-5-21-3663886569-1163407495-3464828782-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://aartemis.com/?type=hpts=1387114232from=wpcuid=ST31000528AS_9VP9G2R0XXXX9VP9G2R0
O2:64bit: - BHO: (surf Aand keep) - {154DD954-02CB-B08B-F8A1-5367A199A0A0} - C:\Program Files (x86)\surf Aand keep\wUTpFq3MB8.x64.dll File not found
O2:64bit: - BHO: (YoutubeAdblocker) - {2090B595-C18F-D235-9987-3A3FA3D5816B} - C:\Program Files (x86)\YoutubeAdblocker\EgQAM0NtH6.x64.dll File not found
O2:64bit: - BHO: (siuarf and! kEepu) - {E3132060-A6C6-A40C-2B0F-AD9AC1FBFEC3} - C:\Program Files (x86)\siuarf and! kEepu\G6bj.x64.dll File not found
O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe File not found
O4 - HKU\S-1-5-21-3663886569-1163407495-3464828782-1001..\Run: [NextLive] C:\Windows\SysWOW64\rundll32.exe "C:\Users\Anna\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l File not found
[2014-02-02 18:11:04 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014-01-15 12:39:12 | 000,000,000 | ---D | C] -- C:\Users\Anna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
[2014-01-15 01:09:34 | 000,000,000 | ---D | C] -- C:\Users\Anna\.android
[2014-01-15 01:09:33 | 000,000,000 | ---D | C] -- C:\Users\Anna\AppData\Local\genienext

:Commands
[emptytemp]

Kliknij Wykonaj skrypt.

jest ok, wielkie dzieki :slight_smile: