Zawirusowany komputer


(Lbartnik) #1

Witam

 

komputer strasznie mi zamula a w szczególności internet

wklejam logi z OTL:

 

http://www.wklejto.pl/195524

http://www.wklejto.pl/195525

 

proszę o pomoc


(Acorus) #2

Odinstaluj HaxFix 4.57,HijackThis 1.99.1.Uruchom OTL i w okno (Własne opcje skanowania/Script)wklej:

:OTL
SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe -- (MSSQLServerADHelper)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\usbser_lowerflt.sys -- (upperdev)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\pccsmcfd.sys -- (pccsmcfd)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\k750obex.sys -- (k750obex)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\k750mgmt.sys -- (k750mgmt)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\k750mdm.sys -- (k750mdm)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\k750mdfl.sys -- (k750mdfl)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\k750bus.sys -- (k750bus)
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O4 - HKLM..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" File not found
O4 - HKU\S-1-5-21-299502267-2000478354-839522115-1003..\Run: [AutoConnect] C:\Program Files\AutoConnect\AutoConnect.exe File not found
O4 - HKU\S-1-5-21-299502267-2000478354-839522115-1003..\Run: [ISUSPM] C:\Documents and Settings\All Users\Dane aplikacji\FLEXnet\Connect\11\ISUSPM.exe -scheduler File not found
O16 - DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab (Reg Error: Key error.)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
[2014-03-17 13:43:38 | 000,000,000 | -HSD | C] -- C:\FOUND.007
[2014-03-17 09:45:40 | 000,000,000 | -HSD | C] -- C:\FOUND.006
[2014-03-14 14:36:32 | 000,000,000 | -HSD | C] -- C:\FOUND.005
[2014-03-01 20:55:56 | 000,000,000 | -HSD | C] -- C:\FOUND.004
[2014-02-25 09:20:46 | 000,000,000 | -HSD | C] -- C:\FOUND.003

:Commands
[emptytemp]

Kliknij Wykonaj skrypt.Po restarcie uruchom OTL i użyj opcji Sprzątanie.

Wyłącz i włącz przywracanie systemu.

Przeskanuj programem Malwarebytes Anti-Malware http://data-cdn.mbamupdates.com/v2/mbam/consumer/data/mbam-setup-2.0.0.1000.exe


(Lbartnik) #3

po wykonaniu wskazanych czynności net zaczął działać ale teraz proces SVCHOST.EXE obciąża procka na 100%

 

logi z OTL:

 

http://www.wklejto.pl/196935

http://www.wklejto.pl/196937


(Atis) #4

Zainstaluj Service Pack 3 i Internet Explorer 8

Przeczytaj: