Witam. Mam ten sam problem - wirus FB. Wirusa dalej jest i blokuje on facebooka. proszę o pomoc.
Wirus blokuje mi eseta ;/ nie moge go ani usunac, ani nic. POMOCY!
Bez wklejania tekstu z tego linku:
extras.txt - http://wklej.org/id/581310/
otl.txt - http://wklej.org/id/581316/
z wklejaniem:
extras.txt - http://wklej.org/id/581331/
otl.txt - http://wklej.org/id/581335/
BARDZO PROSZĘ O POMOC
Acorus
(Acorus)
22 Sierpień 2011 15:51
#2
Uruchom OTL i w okno (Własne opcje skanowania/Script)wklej:
:OTL [2011-05-20 18:04:17 | 000,000,000 | —D | M] (“AutocompletePro - Your handy search suggestions tool”) – C:\Documents and Settings\Zemsta Grzybni\Dane aplikacji\Mozilla\Firefox\Profiles\9x0rjpym.Zemsta Grzybni\extensions\support@predictad.com [2011-01-18 18:27:04 | 000,002,037 | ---- | M] () – C:\Program Files\mozilla firefox\searchplugins\fcmdSrchw7th2.xml O2 - BHO: (no name) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - No CLSID value found. O3 - HKLM…\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKCU…\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found. O3 - HKCU…\Toolbar\WebBrowser: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found. O3 - HKCU…\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM…\Run: [21434.exe] C:\WINDOWS\TEMP\21434.exe () O4 - HKLM…\Run: [KernelFaultCheck] File not found O4 - HKLM…\Run: [tray_ico] File not found O4 - HKLM…\Run: [tray_ico2] File not found O4 - HKLM…\Run: [tray_ico3] File not found O4 - HKLM…\Run: [tray_ico4] File not found O4 - Startup: C:\Documents and Settings\Zemsta Grzybni\Menu Start\Programy\Autostart\Skype (2).lnk = File not found O4 - Startup: C:\Documents and Settings\Zemsta Grzybni\Menu Start\Programy\Autostart\Skype.lnk = File not found [2011-08-21 20:25:45 | 000,000,000 | -H-D | C] – C:\windows\update.7.1 [2011-08-21 20:24:55 | 000,000,000 | —D | C] – C:\windows\ufa [2011-08-21 20:24:55 | 000,000,000 | —D | C] – C:\windows\phoenix [2011-08-21 20:24:52 | 000,000,000 | -H-D | C] – C:\windows\update.2 [2011-08-21 20:22:47 | 000,000,000 | -H-D | C] – C:\windows\update.5.0 [2011-08-21 20:21:04 | 000,000,000 | —D | C] – C:\windows\av_ico [2011-08-21 20:19:30 | 000,000,000 | -H-D | C] – C:\windows\update.1 [2011-08-21 20:19:22 | 000,000,000 | -H-D | C] – C:\windows\update.tray-8-0-lnk [2011-08-21 20:19:22 | 000,000,000 | -H-D | C] – C:\windows\update.tray-8-0 [2011-08-21 20:19:21 | 000,000,000 | -H-D | C] – C:\windows\update.tray-3-0-lnk [2011-08-21 20:19:21 | 000,000,000 | -H-D | C] – C:\windows\update.tray-3-0 [2011-08-21 22:46:56 | 000,000,288 | ---- | M] () – C:\windows\tasks\ASC4_PerformanceMonitor.job [2011-08-21 22:46:54 | 000,000,330 | -HS- | M] () – C:\windows\tasks\YCMJ.job [2011-08-21 20:46:27 | 000,000,176 | ---- | M] () – C:\windows\info1 [2011-08-21 20:24:54 | 000,246,272 | ---- | M] () – C:\windows\unrar.exe [2011-08-21 20:24:53 | 005,589,370 | ---- | M] () – C:\windows\phoenix.rar [2011-08-21 20:24:53 | 001,075,284 | ---- | M] () – C:\windows\rpcminer.rar [2011-08-21 20:24:53 | 000,182,617 | ---- | M] () – C:\windows\ufa.rar [2011-08-21 20:23:03 | 000,904,792 | ---- | M] () – C:\windows\geoiplist.rar [2011-08-21 20:22:31 | 000,000,000 | ---- | M] () – C:\windows\loader2.exe_ok :Reg [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot] “AlternateShell”=“cmd.exe” :Commands [emptytemp] [resethosts]
Kliknij Wykonaj skrypt…Zatwierdź restart komputera. Zapisz raport, który pokaże się po restarcie. Następnie uruchom OTL ponownie, tym razem kliknij (Skanuj).
Pokaż nowy log OTL.txt oraz raport z usuwania.
Dziękuję. Już wszystko działa. Pomogłeś bardzo i pomógł mi też kolega. Dziękuję Wam!