Virus Protect Pro

Jak tego ■■■■■■■■■■ sie pozbyć !!

http://cybertrash.pl/Tata/TESTY/VirusPr … ctPro.html instrukcja usuwania.

hm nie wiem o co biega! !!

Użyj Smitfraudfix w trybie awaryjnym w opcji numer 2 i pokaż plik C:\rapport.txt i log z HJT + Combofix

Logfile of HijackThis v1.99.1

Scan saved at 09:43:47, on 2007-08-09

Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe

C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\EXPLORER.EXE

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

D:\Programy\Zainstalowane\Winamp\winampa.exe

C:\WINDOWS\system32\USBIcon.exe

C:\Program Files\Multimedia Card Reader\shwicon2k.exe

D:\Programy\ZAINST~1\MYSEKR~1\MYSECR~1\MSFMON.exe

D:\Programy\Zainstalowane\DAEMON Tools\daemon.exe

D:\Programy\Zainstalowane\Anti-Blaxx 1.18\Anti-Blaxx.exe

D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\MMTray.exe

D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\mmtray2k.exe

D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\mmtraylsi.exe

C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe

C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe

C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe

C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

D:\Programy\Zainstalowane\PCPal\PalAgnt.exe

D:\Programy\Zainstalowane\WinCleaner Memory Optimizer\WinMemOpt.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

D:\Programy\Zainstalowane\GG\Gadu-Gadu\gg.exe

C:\Program Files\Electronic Arts\EA Downloader\Core.exe

C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\Opera\Opera.exe

D:\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza

R3 - URLSearchHook: (no name) - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - (no file)

F2 - REG:system.ini: Shell=explorer.exe ,svchost.exe

F2 - REG:system.ini: UserInit=userinit.exe,EXPLORER.EXE

O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Programy\Zainstalowane\Adobe reader 6.0\Reader\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O2 - BHO: Expressivo - {85F685C3-20D9-4943-95E4-EB4224056C3F} - D:\Programy\Zainstalowane\Expressivo\IH_iexplore.dll

O3 - Toolbar: Expressivo - {85F685C3-20D9-4943-95E4-EB4224056C3F} - D:\Programy\Zainstalowane\Expressivo\IH_iexplore.dll

O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

O3 - Toolbar: Protection Bar - {29C5A3B6-9A8D-4FA0-B5AD-3E20F4AA5C00} - C:\Program Files\Video ActiveX Access\iesbpl.dll

O4 - HKLM…\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd

O4 - HKLM…\Run: [ATICCC] “C:\Program Files\ATI Technologies\ATI.ACE\cli.exe” runtime -Delay

O4 - HKLM…\Run: [synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon

O4 - HKLM…\Run: [WinampAgent] D:\Programy\Zainstalowane\Winamp\winampa.exe

O4 - HKLM…\Run: [MCI USB Icon] C:\WINDOWS\system32\USBIcon.exe

O4 - HKLM…\Run: [sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe

O4 - HKLM…\Run: [MSF_Monitor] D:\Programy\ZAINST~1\MYSEKR~1\MYSECR~1\MSFMON.exe /Start

O4 - HKLM…\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKLM…\Run: [DAEMON Tools] “D:\Programy\Zainstalowane\DAEMON Tools\daemon.exe” -lang 1033

O4 - HKLM…\Run: [Anti-Blaxx Manager] D:\Programy\Zainstalowane\Anti-Blaxx 1.18\Anti-Blaxx.exe

O4 - HKLM…\Run: [MMTray] “D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\MMTray.exe”

O4 - HKLM…\Run: [mmtray2k] “D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\mmtray2k.exe”

O4 - HKLM…\Run: [mmtraylsi] “D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\mmtraylsi.exe”

O4 - HKLM…\Run: [AVP] “C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe”

O4 - HKLM…\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup

O4 - HKLM…\Run: [sunJavaUpdateSched] “C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe”

O4 - HKCU…\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] “C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe”

O4 - HKCU…\Run: [PCPal] “D:\Programy\Zainstalowane\PCPal\PalAgnt.exe” /startup

O4 - HKCU…\Run: [WinMem] D:\Programy\Zainstalowane\WinCleaner Memory Optimizer\WinMemOpt.exe

O4 - HKCU…\Run: [wsctf.exe] wsctf.exe

O4 - HKCU…\Run: [EXPLORER.EXE] EXPLORER.EXE

O4 - HKCU…\Run: [Gadu-Gadu] “D:\Programy\Zainstalowane\GG\Gadu-Gadu\gg.exe” /tray

O4 - HKCU…\Run: [skype] “C:\Program Files\Skype\Phone\Skype.exe” /nosplash /minimized

O4 - HKCU…\Run: [EA Core] C:\Program Files\Electronic Arts\EA Downloader\Core.exe -silent

O4 - Startup: Desktop Calendar StartUp.lnk = O:\Desktop Calendar 1.52\DESKCAL.EXE

O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe

O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://D:\Programy\ZAINST~1\MICROS~1\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra ‘Tools’ menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra button: Statystyki dla ochrony WWW - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\SCIEPlgn.dll

O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programy\ZAINST~1\MICROS~1\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {4539348E-01D7-11D5-9A39-0080C8D85044} (GameDesire Slots 90th) - http://67.15.101.3/g_bin/pl/slots90_2_0_0_35.cab

O16 - DPF: {83AFB5CA-ED35-11D4-A452-0080C8D85045} (GameDesire Poker Games) - http://67.15.101.3/g_bin/pl/poker_2_0_0_47.cab

O16 - DPF: {A6212120-01D4-11D5-9A39-0080C8D85044} (GameDesire Slots 70th) - http://67.15.101.3/g_bin/pl/slots70_2_0_0_35.cab

O16 - DPF: {ECEAD8AE-01D6-11D5-9A39-0080C8D85044} (GameDesire Slots 80th) - http://67.15.101.3/g_bin/pl/slots80_2_0_0_35.cab

O17 - HKLM\System\CCS\Services\Tcpip…{3EF20E92-1C6C-4806-886B-F164BFB02E26}: NameServer = 83.238.255.76 213.241.79.37

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: Kaspersky Anti-Virus 7.0 (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe" -r (file missing)

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: NBService - Nero AG - D:\Programy\Zainstalowane\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

Złączono Posta : 09.08.2007 (Czw) 9:44

Logfile of HijackThis v1.99.1

Scan saved at 09:43:47, on 2007-08-09

Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe

C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\EXPLORER.EXE

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

D:\Programy\Zainstalowane\Winamp\winampa.exe

C:\WINDOWS\system32\USBIcon.exe

C:\Program Files\Multimedia Card Reader\shwicon2k.exe

D:\Programy\ZAINST~1\MYSEKR~1\MYSECR~1\MSFMON.exe

D:\Programy\Zainstalowane\DAEMON Tools\daemon.exe

D:\Programy\Zainstalowane\Anti-Blaxx 1.18\Anti-Blaxx.exe

D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\MMTray.exe

D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\mmtray2k.exe

D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\mmtraylsi.exe

C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe

C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe

C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe

C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

D:\Programy\Zainstalowane\PCPal\PalAgnt.exe

D:\Programy\Zainstalowane\WinCleaner Memory Optimizer\WinMemOpt.exe

C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe

D:\Programy\Zainstalowane\GG\Gadu-Gadu\gg.exe

C:\Program Files\Electronic Arts\EA Downloader\Core.exe

C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

C:\Program Files\Opera\Opera.exe

D:\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza

R3 - URLSearchHook: (no name) - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - (no file)

F2 - REG:system.ini: Shell=explorer.exe ,svchost.exe

F2 - REG:system.ini: UserInit=userinit.exe,EXPLORER.EXE

O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Programy\Zainstalowane\Adobe reader 6.0\Reader\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O2 - BHO: Expressivo - {85F685C3-20D9-4943-95E4-EB4224056C3F} - D:\Programy\Zainstalowane\Expressivo\IH_iexplore.dll

O3 - Toolbar: Expressivo - {85F685C3-20D9-4943-95E4-EB4224056C3F} - D:\Programy\Zainstalowane\Expressivo\IH_iexplore.dll

O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll

O3 - Toolbar: Protection Bar - {29C5A3B6-9A8D-4FA0-B5AD-3E20F4AA5C00} - C:\Program Files\Video ActiveX Access\iesbpl.dll

O4 - HKLM…\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd

O4 - HKLM…\Run: [ATICCC] “C:\Program Files\ATI Technologies\ATI.ACE\cli.exe” runtime -Delay

O4 - HKLM…\Run: [synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon

O4 - HKLM…\Run: [WinampAgent] D:\Programy\Zainstalowane\Winamp\winampa.exe

O4 - HKLM…\Run: [MCI USB Icon] C:\WINDOWS\system32\USBIcon.exe

O4 - HKLM…\Run: [sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe

O4 - HKLM…\Run: [MSF_Monitor] D:\Programy\ZAINST~1\MYSEKR~1\MYSECR~1\MSFMON.exe /Start

O4 - HKLM…\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

O4 - HKLM…\Run: [DAEMON Tools] “D:\Programy\Zainstalowane\DAEMON Tools\daemon.exe” -lang 1033

O4 - HKLM…\Run: [Anti-Blaxx Manager] D:\Programy\Zainstalowane\Anti-Blaxx 1.18\Anti-Blaxx.exe

O4 - HKLM…\Run: [MMTray] “D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\MMTray.exe”

O4 - HKLM…\Run: [mmtray2k] “D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\mmtray2k.exe”

O4 - HKLM…\Run: [mmtraylsi] “D:\Programy\Zainstalowane\ACE Mega CoDecS Pack\SystemS\Morgan Multimedia\mmtraylsi.exe”

O4 - HKLM…\Run: [AVP] “C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe”

O4 - HKLM…\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup

O4 - HKLM…\Run: [sunJavaUpdateSched] “C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe”

O4 - HKCU…\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] “C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe”

O4 - HKCU…\Run: [PCPal] “D:\Programy\Zainstalowane\PCPal\PalAgnt.exe” /startup

O4 - HKCU…\Run: [WinMem] D:\Programy\Zainstalowane\WinCleaner Memory Optimizer\WinMemOpt.exe

O4 - HKCU…\Run: [wsctf.exe] wsctf.exe

O4 - HKCU…\Run: [EXPLORER.EXE] EXPLORER.EXE

O4 - HKCU…\Run: [Gadu-Gadu] “D:\Programy\Zainstalowane\GG\Gadu-Gadu\gg.exe” /tray

O4 - HKCU…\Run: [skype] “C:\Program Files\Skype\Phone\Skype.exe” /nosplash /minimized

O4 - HKCU…\Run: [EA Core] C:\Program Files\Electronic Arts\EA Downloader\Core.exe -silent

O4 - Startup: Desktop Calendar StartUp.lnk = O:\Desktop Calendar 1.52\DESKCAL.EXE

O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe

O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://D:\Programy\ZAINST~1\MICROS~1\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra ‘Tools’ menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll

O9 - Extra button: Statystyki dla ochrony WWW - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\SCIEPlgn.dll

O9 - Extra button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Programy\ZAINST~1\MICROS~1\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra ‘Tools’ menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {4539348E-01D7-11D5-9A39-0080C8D85044} (GameDesire Slots 90th) - http://67.15.101.3/g_bin/pl/slots90_2_0_0_35.cab

O16 - DPF: {83AFB5CA-ED35-11D4-A452-0080C8D85045} (GameDesire Poker Games) - http://67.15.101.3/g_bin/pl/poker_2_0_0_47.cab

O16 - DPF: {A6212120-01D4-11D5-9A39-0080C8D85044} (GameDesire Slots 70th) - http://67.15.101.3/g_bin/pl/slots70_2_0_0_35.cab

O16 - DPF: {ECEAD8AE-01D6-11D5-9A39-0080C8D85044} (GameDesire Slots 80th) - http://67.15.101.3/g_bin/pl/slots80_2_0_0_35.cab

O17 - HKLM\System\CCS\Services\Tcpip…{3EF20E92-1C6C-4806-886B-F164BFB02E26}: NameServer = 83.238.255.76 213.241.79.37

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

O20 - Winlogon Notify: klogon - C:\WINDOWS\system32\klogon.dll

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: Kaspersky Anti-Virus 7.0 (AVP) - Unknown owner - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe" -r (file missing)

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: NBService - Nero AG - D:\Programy\Zainstalowane\Nero\Nero 7\Nero BackItUp\NBService.exe

O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe

Złączono Posta : 09.08.2007 (Czw) 9:45

I co dalej?

Jak to co?

Po prostu czekamy, aż dasz to, o co prosił @arekmalek. (raport SmitfraudFixa oraz log z ComboFixa)

http://forum.dobreprogramy.pl/viewtopic.php?t=36654

(na dole tej strony z linku) -

Log wklej na http://wklej.org/, a w poście daj tylko link.

Przedtem sfiksuj te w/w wpisy w Hijacku:

>>Hijack>>scan(Do a system scan only)>>zaznacz je >> Fix checked.

Spróbuj usunąć ręcznie , w Trybie Awaryjnym:

Tylko nie pomyl lokalizacji “explorer.exe”

C:\WINDOWS\EXPLORER.EXE --> dobry

C:\WINDOWS\system32\explorer.exe —> zły

.

Mam ten sam problem co kolega. Oto raport z Hijack’a