Jump to content

Проблем с папка System32


Dreamer

Препоръчан пост

Здравейте! При всяко пускане на компютъра ми излиза папката System32. Всъщност цялата работа тръгна от там, че от известно време пак при всяко пускане на компютъра ми излизаше това: http://son6.files.wordpress.com/2009/01/csrcs.jpg и аз се разрових в интернет да намеря разрешение за проблема и направих някакви неща според това, което намерих ... но явно не съм го направила както трябва и сега пък имам този проблем. Намерих тук тази тема: http://forums.softvisia.com/index.php?showtopic=10887 и направих всичко както е казано, но сега не знам кои отметки трябва да махна, за да се разреши проблема. Моля, помогнете ми. Извинявам се предварително, сами виждате, че не съм много добра в тези неща. Ето го резултата ми от AutoRuns:

 

"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run" "" "" ""

+ "Adobe ARM" "Adobe Reader and Acrobat Manager" "Adobe Systems Incorporated" "c:\program files\common files\adobe\arm\1.0\adobearm.exe"

+ "Adobe Reader Speed Launcher" "Adobe Acrobat SpeedLauncher" "Adobe Systems Incorporated" "c:\program files\adobe\reader 9.0\reader\reader_sl.exe"

+ "ATIPTA" "ATI Desktop Control Panel" "ATI Technologies, Inc." "c:\program files\ati technologies\ati control panel\atiptaxx.exe"

+ "AutoUpdate" "EduAutoUpdate " "" "c:\program files\sirma\autoupdate\autoupdate.exe"

+ "AVG9_TRAY" "AVG Tray Monitor" "AVG Technologies CZ, s.r.o." "c:\program files\avg\avg9\avgtray.exe"

+ "LanguageShortcut" "Language Application" "" "c:\program files\cyberlink\powerdvd\language\language.exe"

+ "NBKeyScan" "" "" "File not found: C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"

+ "QuickTime Task" "QuickTime Task" "Apple Inc." "c:\program files\k-lite codec pack\quicktime\qttask.exe"

+ "RemoteControl" "PowerDVD RC Service" "Cyberlink Corp." "c:\program files\cyberlink\powerdvd\pdvdserv.exe"

"C:\Documents and Settings\All Users\Start Menu\Programs\Startup" "" "" ""

+ "Adobe Gamma Loader.lnk" "Adobe Gamma Loader" "Adobe Systems, Inc." "c:\program files\common files\adobe\calibration\adobe gamma loader.exe"

"C:\Documents and Settings\user\Start Menu\Programs\Startup" "" "" ""

+ "Adobe Gamma.lnk" "Adobe Gamma Loader" "Adobe Systems, Inc." "c:\program files\common files\adobe\calibration\adobe gamma loader.exe"

+ "Nikon Monitor.lnk" "Monitor" "Nikon Corporation" "c:\program files\common files\nikon\monitor\nkmonitor.exe"

"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run" "" "" ""

+ "csrcs" "" "" "C:\WINDOWS\system32\"

"HKCU\Software\Microsoft\Windows\CurrentVersion\Run" "" "" ""

+ "AutoUpdate" "EduAutoUpdate " "" "c:\program files\sirma\autoupdate\autoupdate.exe"

+ "BitComet" "BitComet - a BitTorrent Client" "www.BitComet.com" "d:\bitcomet\bitcomet.exe"

+ "IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}" "" "" "File not found: C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe"

+ "LowRateVoip" "" "" "File not found: D:\install\raspppoe\files\lowratevoip\lowratevoip.exe"

+ "MorEmoticons" "" "" "d:\pictures\razni\moremoticons\moremoticons.exe"

+ "RegistryBooster" "" "" "File not found: D:\RegistryBooster\launcher.exe"

+ "swg" "GoogleToolbarNotifier" "Google Inc." "c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe"

+ "TaskMon" "" "" "File not found: C:\WINDOWS\system32\taskmon.exe"

"HKLM\SOFTWARE\Classes\Protocols\Filter" "" "" ""

+ "application/xhtml+xml" "MathPlayer MIME Filter" "Design Science, Inc." "c:\program files\design science\mathplayer\mathmlmimer.dll"

+ "text/xml" "MathPlayer MIME Filter" "Design Science, Inc." "c:\program files\design science\mathplayer\mathmlmimer.dll"

+ "text/xml; charset=iso-8859-1" "MathPlayer MIME Filter" "Design Science, Inc." "c:\program files\design science\mathplayer\mathmlmimer.dll"

+ "text/xml; charset=utf-8" "MathPlayer MIME Filter" "Design Science, Inc." "c:\program files\design science\mathplayer\mathmlmimer.dll"

"HKLM\SOFTWARE\Classes\Protocols\Handler" "" "" ""

+ "linkscanner" "Safe Search pluggable protocol" "AVG Technologies CZ, s.r.o." "c:\program files\avg\avg9\avgpp.dll"

+ "skype4com" "Skype for COM API" "Skype Technologies" "c:\program files\common files\skype\skype4com.dll"

"HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components" "" "" ""

+ "0" "" "" "File not found: http://img.neogen.ro/common/bestjobs/BestJobs.gif"

+ "1" "" "" "File not found: http://img.abv.bg/q/icq.gif"

+ "2" "" "" "File not found: About:Home"

"HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" "" "" ""

+ "LightScribe Control Panel" "" "Hewlett-Packard Company" "c:\program files\common files\lightscribe\lsrunonce.exe"

"HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers" "" "" ""

+ "AVG9 Shell Extension" "AVG Shell Extension" "AVG Technologies CZ, s.r.o." "c:\program files\avg\avg9\avgse.dll"

+ "Cover Designer" "" "" "File not found: D:\Nero 7\Nero CoverDesigner\CoverEdExtension.dll"

+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"

"HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers" "" "" ""

+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"

"HKLM\Software\Classes\Directory\Shellex\DragDropHandlers" "" "" ""

+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"

"HKLM\Software\Classes\Folder\Shellex\ColumnHandlers" "" "" ""

+ "PDF Shell Extension" "PDF Shell Extension" "Adobe Systems, Inc." "c:\program files\common files\adobe\acrobat\activex\pdfshell.dll"

"HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers" "" "" ""

+ "AVG9 Shell Extension" "AVG Shell Extension" "AVG Technologies CZ, s.r.o." "c:\program files\avg\avg9\avgse.dll"

+ "WinRAR" "" "" "c:\program files\winrar\rarext.dll"

"HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved" "" "" ""

+ "AVG Shell Extension" "AVG Shell Extension" "AVG Technologies CZ, s.r.o." "c:\program files\avg\avg9\avgse.dll"

+ "Display Panning CPL Extension" "" "" "File not found: deskpan.dll"

+ "HyperTerminal Icon Ext" "HyperTerminal Applet Library" "Hilgraeve, Inc." "c:\windows\system32\hticons.dll"

+ "NeroCoverEd Live Icons" "" "" "File not found: D:\Nero 7\Nero CoverDesigner\CoverEdExtension.dll"

+ "NeroDigitalIconHandler" "" "" "File not found: C:\Program Files\Common Files\Nero\Lib\NeroDigitalExt.dll"

+ "NeroDigitalPropSheetHandler" "" "" "File not found: C:\Program Files\Common Files\Nero\Lib\NeroDigitalExt.dll"

+ "WinRAR shell extension" "" "" "c:\program files\winrar\rarext.dll"

"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects" "" "" ""

+ "Adobe PDF Link Helper" "Adobe PDF Helper for Internet Explorer" "Adobe Systems Incorporated" "c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll"

+ "Ask Search Assistant BHO" "Ask.com Search Assistant" "Ask.com" "c:\program files\asktbar\srchastt\1.bin\a5srchas.dll"

+ "Ask Toolbar BHO" "Ask Toolbar" "Ask.com" "c:\program files\asktbar\bar\1.bin\asktbar.dll"

+ "AVG Safe Search" "Safe Search for Internet Explorer" "AVG Technologies CZ, s.r.o." "c:\program files\avg\avg9\avgssie.dll"

+ "Big Fish Games Toolbar" "" "" "File not found: C:\PROGRA~1\BFGTOO~1\BFGTOO~1.DLL"

+ "BitComet Helper" "BitCometBHO" "BitComet" "d:\bitcomet\tools\bitcometbho_1.3.7.16.dll"

+ "Google Toolbar Notifier BHO" "GoogleToolbarNotifier" "Google Inc." "c:\program files\google\googletoolbarnotifier\5.4.4525.1752\swg.dll"

"HKCU\Software\Microsoft\Internet Explorer\UrlSearchHooks" "" "" ""

+ "a5srchas.dll" "Ask.com Search Assistant" "Ask.com" "c:\program files\asktbar\srchastt\1.bin\a5srchas.dll"

+ "ICQ Toolbar" "" "" "File not found: C:\Program Files\ICQToolbar\toolbaru.dll"

"HKLM\Software\Microsoft\Internet Explorer\Toolbar" "" "" ""

+ "" "" "" "File not found: C:\PROGRA~1\BFGTOO~1\BFGTOO~1.DLL"

+ "Ask Toolbar" "Ask Toolbar" "Ask.com" "c:\program files\asktbar\bar\1.bin\asktbar.dll"

+ "ICQ Toolbar" "" "" "File not found: C:\Program Files\ICQToolbar\toolbaru.dll"

"HKLM\Software\Microsoft\Internet Explorer\Extensions" "" "" ""

+ "BitComet" "" "" "File not found: D:\BitComet\tools\BitCometBHO_1.3.7.16.dll/206"

"Task Scheduler" "" "" ""

+ "Google Software Updater.job" "gusvc" "Google" "c:\program files\google\common\google updater\googleupdaterservice.exe"

+ "GoogleUpdateTaskMachineCore.job" "Google Installer" "Google Inc." "c:\program files\google\update\googleupdate.exe"

+ "GoogleUpdateTaskMachineUA.job" "Google Installer" "Google Inc." "c:\program files\google\update\googleupdate.exe"

"HKLM\System\CurrentControlSet\Services" "" "" ""

+ "Adobe LM Service" "AdobeLM Service" "Adobe Systems" "c:\program files\common files\adobe systems shared\service\adobelmsvc.exe"

+ "Ati HotKey Poller" "" "" "c:\windows\system32\ati2evxx.exe"

+ "ATI Smart" "ATI Smart" "" "c:\windows\system32\ati2sgag.exe"

+ "avg9wd" "AVG Watchdog Service" "AVG Technologies CZ, s.r.o." "c:\program files\avg\avg9\avgwdsvc.exe"

+ "Boonty Games" "Boonty Games" "BOONTY" "c:\program files\common files\boonty shared\service\boonty.exe"

+ "gupdate1c9f8e0aae0ed00" "Поддържа използвания от вас софтуер от Google винаги актуален. Ако тази услуга е деактивирана или спряна, софтуерът няма да бъде актуализиран, което означава, че ако в сигурността възникне уязвимост, тя няма да бъде коригирана и е възможно някои функции да не работят. Тази услуга се деинсталира сама, когато не е налице софтуер от Google, с който тя да се използва." "Google Inc." "c:\program files\google\update\googleupdate.exe"

+ "gusvc" "Sluzba Google Update udrzuje vas software Google neustale aktualni. Je-li sluzba Google Update zakazana nebo zastavena, software Google nebude udrzovan v aktualnim stavu. V dusledku toho nebudou opravena pripadna slaba mista v zabezpeceni a muze se stat, ze nektere funkce nebudou dostupne." "Google" "c:\program files\google\common\google updater\googleupdaterservice.exe"

+ "IDriverT" "Provides support for the Running Object Table for InstallShield Drivers" "Macrovision Corporation" "c:\program files\common files\installshield\driver\11\intel 32\idrivert.exe"

+ "LightScribeService" "Used by the LightScribe software components to support 3rd party disc labeling applications using the LightScribe COM Application Programming Interface (LSCAPI). This service needs to run for LightScribe direct disc labeling to work." "Hewlett-Packard Company" "c:\program files\common files\lightscribe\lssrvc.exe"

+ "NMIndexingService" "" "" "File not found: C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe"

+ "RichVideo" "RichVideo Module" "" "c:\program files\cyberlink\shared files\richvideo.exe"

+ "SlovnikService" "" "" "File not found: C:\WINDOWS\system32\SlovnikService.exe"

"HKLM\System\CurrentControlSet\Services" "" "" ""

+ "ASPI32" "ASPI for WIN32 Kernel Driver" "Adaptec" "c:\windows\system32\drivers\aspi32.sys"

+ "ati2mtag" "ATI Radeon WindowsNT Miniport Driver" "ATI Technologies Inc." "c:\windows\system32\drivers\ati2mtag.sys"

+ "AvgLdx86" "AVG AVI Loader Driver" "AVG Technologies CZ, s.r.o." "c:\windows\system32\drivers\avgldx86.sys"

+ "AvgMfx86" "AVG Resident Shield Minifilter Driver" "AVG Technologies CZ, s.r.o." "c:\windows\system32\drivers\avgmfx86.sys"

+ "AvgTdiX" "AVG Network connection watcher" "AVG Technologies CZ, s.r.o." "c:\windows\system32\drivers\avgtdix.sys"

+ "Changer" "" "" "File not found: C:\WINDOWS\System32\Drivers\Changer.sys"

+ "cmuda" "C-Media Audio WDM Driver" "C-Media Inc" "c:\windows\system32\drivers\cmuda.sys"

+ "eusk2par" "SmartKey Parallel driver for Windows" "EUTRON" "c:\windows\system32\drivers\eusk2par.sys"

+ "eusk3usb" "SmartKey USB Driver for Windows" "EUTRON" "c:\windows\system32\drivers\eusk3usb.sys"

+ "FETNDIS" "NDIS 5.0 miniport driver" "VIA Technologies, Inc. " "c:\windows\system32\drivers\fetnd5.sys"

+ "FETNDISB" "NDIS 5.0 miniport driver" "VIA Technologies, Inc. " "c:\windows\system32\drivers\fetnd5b.sys"

+ "giveio" "" "" "c:\windows\system32\giveio.sys"

+ "GVCplDrv" "" "" "c:\windows\system32\drivers\gvcpldrv.sys"

+ "hamachi" "Hamachi Virtual Network Interface Driver" "LogMeIn, Inc." "c:\windows\system32\drivers\hamachi.sys"

+ "i2omgmt" "" "" "File not found: C:\WINDOWS\System32\Drivers\i2omgmt.sys"

+ "lbrtfdc" "" "" "File not found: C:\WINDOWS\System32\Drivers\lbrtfdc.sys"

+ "NTSIM" "Network Device Monitor Utility" "VIA Networking Technologies, Inc. " "c:\windows\system32\ntsim.sys"

+ "PCIDump" "" "" "File not found: C:\WINDOWS\System32\Drivers\PCIDump.sys"

+ "PDCOMP" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDCOMP.sys"

+ "PDFRAME" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDFRAME.sys"

+ "PDRELI" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDRELI.sys"

+ "PDRFRAME" "" "" "File not found: C:\WINDOWS\System32\Drivers\PDRFRAME.sys"

+ "Ptilink" "Direct Parallel Link Driver" "Parallel Technologies, Inc." "c:\windows\system32\drivers\ptilink.sys"

+ "RMSPPPOE" "PPP over Ethernet Protocol NDIS Intermediate Driver" "Robert Schlabbach" "c:\windows\system32\drivers\rmspppoe.sys"

+ "Secdrv" "SafeDisc driver" "" "c:\windows\system32\drivers\secdrv.sys"

+ "speedfan" "SpeedFan Device Driver" "Windows ® 2000 DDK provider" "c:\windows\system32\speedfan.sys"

+ "sptd" "" "" "c:\windows\system32\drivers\sptd.sys"

+ "SVKP" "SVKP driver for NT" "AntiCracking" "c:\windows\system32\svkp.sys"

+ "viaagp1" "VIA NT AGP Filter" "VIA Technologies, Inc." "c:\windows\system32\drivers\viaagp1.sys"

+ "viamraid" "" "" "File not found: system32\DRIVERS\viamraid.sys"

+ "WDICA" "" "" "File not found: C:\WINDOWS\System32\Drivers\WDICA.sys"

"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Drivers32" "" "" ""

+ "msacm.ac3acm" "AC-3 ACM Codec" "fccHandler" "c:\windows\system32\ac3acm.acm"

+ "msacm.iac2" "Indeo® audio software" "Intel Corporation" "c:\windows\system32\iac25_32.ax"

+ "msacm.l3acm" "MPEG Layer-3 Audio Codec for MSACM" "Fraunhofer Institut Integrierte Schaltungen IIS" "c:\windows\system32\l3codeca.acm"

+ "msacm.lameacm" "Lame MP3 codec engine" "http://www.mp3dev.org/" "c:\windows\system32\lameacm.acm"

+ "msacm.sl_anet" "Audio codec for MS ACM" "Sipro Lab Telecom Inc." "c:\windows\system32\sl_anet.acm"

+ "msacm.trspch" "DSP Group TrueSpeech Audio Codec for MSACM V3.50" "DSP GROUP, INC." "c:\windows\system32\tssoft32.acm"

+ "vidc.cvid" "Cinepak® Codec" "Radius Inc." "c:\windows\system32\iccvid.dll"

+ "VIDC.DIVX" "DivX" "DivX, Inc." "c:\windows\system32\divx.dll"

+ "VIDC.FFDS" "" "" "c:\windows\system32\ff_vfw.dll"

+ "vidc.iv31" "" "" "c:\windows\system32\ir32_32.dll"

+ "vidc.iv32" "" "" "c:\windows\system32\ir32_32.dll"

+ "vidc.iv41" "Intel Indeo® Video 4.5" "Intel Corporation" "c:\windows\system32\ir41_32.ax"

+ "vidc.iv50" "Intel Indeo® video 5.10" "Intel Corporation" "c:\windows\system32\ir50_32.dll"

+ "VIDC.YV12" "Helix YV12 YUV Codec" "www.helixcommunity.org" "c:\windows\system32\yv12vfw.dll"

"HKLM\Software\Classes\Filter" "" "" ""

+ "Indeo® video 4.4 Compression Filter" "Intel Indeo® Video 4.5" "Intel Corporation" "c:\windows\system32\ir41_32.ax"

+ "Indeo® video 4.4 Decompression Filter" "Intel Indeo® Video 4.5" "Intel Corporation" "c:\windows\system32\ir41_32.ax"

+ "LAME Audio Encoder" "" "" "File not found: D:\Нова папка\vReveal\lame.ax"

+ "Sony Amplitude Modulation" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack3.dll"

+ "Sony Chorus" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack1.dll"

+ "Sony Distortion" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack3.dll"

+ "Sony Dither" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sftrkfx1.dll"

+ "Sony ExpressFX Amplitude Modulation" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfxpfx2.dll"

+ "Sony ExpressFX Audio Restoration" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\xpvinyl.dll"

+ "Sony ExpressFX Chorus" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfxpfx2.dll"

+ "Sony ExpressFX Delay" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfxpfx2.dll"

+ "Sony ExpressFX Distortion" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfxpfx1.dll"

+ "Sony ExpressFX Dynamics" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfxpfx3.dll"

+ "Sony ExpressFX Equalization" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfxpfx2.dll"

+ "Sony ExpressFX Flange/Wah-Wah" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfxpfx1.dll"

+ "Sony ExpressFX Graphic EQ" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfxpfx3.dll"

+ "Sony ExpressFX Noise Gate" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfxpfx3.dll"

+ "Sony ExpressFX Reverb" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfxpfx1.dll"

+ "Sony ExpressFX Time Stretch" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfxpfx3.dll"

+ "Sony Flange/Wah-wah" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack3.dll"

+ "Sony Gapper/Snipper" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack3.dll"

+ "Sony Graphic Dynamics" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack2.dll"

+ "Sony Graphic EQ" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack2.dll"

+ "Sony Multi-Band Dynamics" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack2.dll"

+ "Sony Multi-Tap Delay" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack1.dll"

+ "Sony Noise Gate" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack2.dll"

+ "Sony Pan" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sffrgpnv.dll"

+ "Sony Paragraphic EQ" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack2.dll"

+ "Sony Parametric EQ" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack2.dll"

+ "Sony Pitch Shift" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack1.dll"

+ "Sony Resonant Filter" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfresfilter.dll"

+ "Sony Reverb" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack1.dll"

+ "Sony Simple Delay" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack1.dll"

+ "Sony Smooth/Enhance" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack3.dll"

+ "Sony Time Stretch" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack1.dll"

+ "Sony Track EQ" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sftrkfx1.dll"

+ "Sony Track Noise Gate" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sftrkfx1.dll"

+ "Sony Vibrato" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sfppack3.dll"

+ "Sony Volume" "" "" "File not found: D:\SONY Vegas Pro 9.0e (32-64bit)\Audio\sffrgpnv.dll"

"HKLM\Software\Classes\CLSID\{083863F1-70DE-11d0-BD40-00A0C911CE86}\Instance" "" "" ""

+ "AC3File" "" "" "d:\k-lite codec pack\filters\ac3file.ax"

+ "ACELP.net Audio Decoder" "ACELP.net Audio Decoder" "Sipro Lab Telecom Inc." "c:\windows\system32\acelpdec.ax"

+ "CoreVorbis Audio Decoder" "CoreVorbis" "-" "d:\k-lite codec pack\filters\corevorbis.ax"

+ "CyberLink Audio Decoder (PDVD7 UPnP)" "CyberLink Audio Decoder Filter" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\upnp\claud.ax"

+ "CyberLink Audio Decoder (PDVD7)" "CyberLink Audio Decoder Filter" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\audiofilter\claud.ax"

+ "CyberLink Audio Effect (PDVD7)" "CyberLink Audio Effect Filter" "CyberLink Corporation" "c:\program files\cyberlink\powerdvd\audiofilter\claudfx.ax"

+ "CyberLink Audio Spectrum Analyzer (PDVD7)" "CLAudSpa.ax" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\audiofilter\claudspa.ax"

+ "CyberLink AudioCD Filter (PDVD7)" "CyberLink AudioCD Filter" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\audiofilter\claudiocd.ax"

+ "CyberLink Demux (PDVD7 UPnP)" "MPEG-2 Dempltiplexer" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\upnp\cldemuxer.ax"

+ "CyberLink Demux (PDVD7)" "MPEG-2 Dempltiplexer" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\navfilter\cldemuxer.ax"

+ "CyberLink DVD Navigator (PDVD7)" "CyberLink DVD Navigation Filter" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\navfilter\clnavx.ax"

+ "CyberLink Line21 Decoder (PDVD7)" "CyberLink Line21 Decoder Filter" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\videofilter\clline21.ax"

+ "CyberLink MPEG Splitter(Scramble)" "CyberLink MPEG Splitter" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\upnp\clsplter.ax"

+ "CyberLink MPEG-4 Splitter (PDVD7)" "CyberLink MPEG-4 Splitter" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\navfilter\clm4splt.ax"

+ "CyberLink Push-Mode CLStream (PDVD7)" "CLStream" "CyberLink" "c:\program files\cyberlink\powerdvd\upnp\clstream(pushmode).ax"

+ "CyberLink SAC Video Decoder(PDVD7 HomeNetwork)" "CyberLink Video/SP Filter" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\upnp\clvsd.ax"

+ "CyberLink Streamming Filter (PDVD7)" "Cyberlink Streaming Source Filter(Scramble)" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\upnp\clstream.ax"

+ "Cyberlink SubTitle Importor (PDVD7)" "CLSubTitle.ax" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\videofilter\clsubtitle.ax"

+ "CyberLink TimeStretch Filter (PDVD7)" "CLAuTS.ax" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\audiofilter\clauts.ax"

+ "CyberLink Video/SP Decoder (PDVD7)" "CyberLink Video/SP Filter" "CyberLink Corp." "c:\program files\cyberlink\powerdvd\videofilter\clvsd.ax"

+ "DC-Bass Source" "DirectShow™ Audio Decoder" "http://www.dsp-worx.de" "d:\k-lite codec pack\filters\dcbasssource.ax"

+ "DeskShare QuickTime Encoder Filter" "DSQTEncoder DLL" "DeskShare" "c:\program files\common files\deskshare shared\ax\dsqtencoder.ax"

+ "DirectVobSub" "VobSub & TextSub filter for DirectShow/VirtualDub/Avisynth" "Gabest" "d:\k-lite codec pack\filters\vsfilter.dll"

+ "DirectVobSub (auto-loading version)" "VobSub & TextSub filter for DirectShow/VirtualDub/Avisynth" "Gabest" "d:\k-lite codec pack\filters\vsfilter.dll"

+ "DSTransInPlaceFilter" "DSTransInPlaceFilter" "DeskShare" "c:\program files\common files\deskshare shared\ax\dstransinplacefilter.ax"

+ "Essien MPEG Encoder Filter v4" "DirectShow MPEG Writing and Multiplexing DirectShow Filter" "Essien Research & Development" "c:\program files\common files\deskshare shared\ax\directencode.dll"

+ "ffdshow Audio Decoder" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "d:\k-lite codec pack\ffdshow\ffdshow.ax"

+ "ffdshow Audio Processor" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "d:\k-lite codec pack\ffdshow\ffdshow.ax"

+ "ffdshow MPEG-4 Video Decoder" "" "" "c:\windows\system32\ffdshow.ax"

+ "ffdshow raw video filter" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "d:\k-lite codec pack\ffdshow\ffdshow.ax"

+ "ffdshow subtitles filter" "DirectShow and VFW video and audio decoding/encoding/processing filter" "" "d:\k-lite codec pack\ffdshow\ffdshow.ax"

+ "File Source (Monkey Audio)" "" "" "d:\k-lite codec pack\filters\monkeysource.ax"

+ "FLV Source" "FLV Splitter" "Gabest" "d:\k-lite codec pack\filters\flvsplitter.ax"

+ "FLV Splitter" "FLV Splitter" "Gabest" "d:\k-lite codec pack\filters\flvsplitter.ax"

+ "FLV4 Video Decoder" "FLV Splitter" "Gabest" "d:\k-lite codec pack\filters\flvsplitter.ax"

+ "Haali Matroska Muxer" "Haali Media Splitter" "" "d:\k-lite codec pack\filters\haali\splitter.ax"

+ "Haali Media Splitter" "Haali Media Splitter" "" "d:\k-lite codec pack\filters\haali\splitter.ax"

+ "Haali Media Splitter (AR)" "Haali Media Splitter" "" "d:\k-lite codec pack\filters\haali\splitter.ax"

+ "Haali Simple Media Splitter" "Haali Media Splitter" "" "d:\k-lite codec pack\filters\haali\splitter.ax"

+ "Haali Video Renderer" "" "" "d:\k-lite codec pack\filters\haali\dxr.dll"

+ "Haali Video Sink" "Haali Media Splitter" "" "d:\k-lite codec pack\filters\haali\splitter.ax"

+ "Indeo Video ® 5.1 Progressive Download Source" "Intel Indeo® video IVF Source Filter 5.10" "Intel Corporation" "c:\windows\system32\ivfsrc.ax"

+ "Indeo® audio software" "Indeo® audio software" "Intel Corporation" "c:\windows\system32\iac25_32.ax"

+ "Indeo® video 5.10 Compression Filter" "Intel Indeo® video 5.10" "Intel Corporation" "c:\windows\system32\ir50_32.dll"

+ "Indeo® video 5.10 Decompression Filter" "Intel Indeo® video 5.10" "Intel Corporation" "c:\windows\system32\ir50_32.dll"

+ "LAME Audio Encoder" "" "" "File not found: D:\Нова папка\vReveal\lame.ax"

+ "madFlac Decoder" "DirectShow FLAC Decoder" "www.madshi.net" "d:\k-lite codec pack\filters\madflac.ax"

+ "madFlac Source" "DirectShow FLAC Decoder" "www.madshi.net" "d:\k-lite codec pack\filters\madflac.ax"

+ "MainConcept (Nikon) MPEG Audio Decoder" "MPEG Video and Audio Decoder" "MainConcept AG (Nikon)" "c:\program files\common files\nikon\mpeg\nikondsmpeg.ax"

+ "MainConcept (Nikon) MPEG Encoder" "MPEG Encoder and Muxer" "MainConcept AG (Nikon)" "c:\program files\common files\nikon\mpeg\nikonesmpeg.ax"

+ "MainConcept (Nikon) MPEG Splitter" "Mpeg I/II Splitter" "MainConcept AG (Nikon)" "c:\program files\common files\nikon\mpeg\nikonspmpeg.ax"

+ "MainConcept (Nikon) MPEG Video Decoder" "MPEG Video and Audio Decoder" "MainConcept AG (Nikon)" "c:\program files\common files\nikon\mpeg\nikondsmpeg.ax"

+ "MediaLooks QT Source" "" "" "File not found: D:\Нова папка\vReveal\QTSourcePXT.dll"

+ "MONOGRAM AMR Decoder" "AMR Filter Pack" "MONOGRAM Multimedia, s.r.o." "d:\k-lite codec pack\filters\mmamr.ax"

+ "MONOGRAM AMR Encoder" "AMR Filter Pack" "MONOGRAM Multimedia, s.r.o." "d:\k-lite codec pack\filters\mmamr.ax"

+ "MONOGRAM AMR Mux" "AMR Filter Pack" "MONOGRAM Multimedia, s.r.o." "d:\k-lite codec pack\filters\mmamr.ax"

+ "MONOGRAM AMR Splitter" "AMR Filter Pack" "MONOGRAM Multimedia, s.r.o." "d:\k-lite codec pack\filters\mmamr.ax"

+ "MONOGRAM Musepack Decoder" "mmmpcdec" "" "d:\k-lite codec pack\filters\mmmpcdec.ax"

+ "MONOGRAM Musepack Splitter" "mmmpcdmx" "" "d:\k-lite codec pack\filters\mmmpcdmx.ax"

+ "MP4 Source" "MP4 Splitter" "Gabest" "d:\k-lite codec pack\filters\mp4splitter.ax"

+ "MP4 Splitter" "MP4 Splitter" "Gabest" "d:\k-lite codec pack\filters\mp4splitter.ax"

+ "MPC - Mpeg Source (Gabest)" "Mpeg Splitter" "Gabest" "d:\k-lite codec pack\filters\mpegsplitter.ax"

+ "MPC - Mpeg Splitter (Gabest)" "Mpeg Splitter" "Gabest" "d:\k-lite codec pack\filters\mpegsplitter.ax"

+ "MPEG4 Video Source" "MP4 Splitter" "Gabest" "d:\k-lite codec pack\filters\mp4splitter.ax"

+ "MPEG4 Video Splitter" "MP4 Splitter" "Gabest" "d:\k-lite codec pack\filters\mp4splitter.ax"

+ "muvee Music Analyser" "Music Analyser Filter for muvee autoProducer" "muvee Technologies Pte Ltd" "c:\program files\common files\muvee technologies\030625\mvmanalyse.ax"

+ "QuickTime Source Filter" "QuickTimeSource Module" "" "c:\program files\common files\muvee technologies\030625\quicktimesource.dll"

+ "RealAudio Decoder" "RealMedia Splitter" "Gabest" "d:\k-lite codec pack\real\realmediasplitter.ax"

+ "RealMedia Source" "RealMedia Splitter" "Gabest" "d:\k-lite codec pack\real\realmediasplitter.ax"

+ "RealMedia Splitter" "RealMedia Splitter" "Gabest" "d:\k-lite codec pack\real\realmediasplitter.ax"

+ "RealVideo Decoder" "RealMedia Splitter" "Gabest" "d:\k-lite codec pack\real\realmediasplitter.ax"

+ "T" "VP7 Decompression Filter" "On2.com Inc." "d:\k-lite codec pack\filters\vp7dec.ax"

+ "WAV Dest VEM" "WAVDest Filter" "DeskShare" "c:\program files\common files\deskshare shared\ax\wavdest.ax"

+ "WavPack Audio Decoder" "WavPack Audio DirectShow Decoder" "-" "d:\k-lite codec pack\filters\wavpackdsdecoder.ax"

+ "WavPack Audio Splitter" "WavPack Audio DirectShow Splitter" "-" "d:\k-lite codec pack\filters\wavpackdssplitter.ax"

+ "WIA Stream Snapshot Filter" "WIA Stream Snapshot Filter" "MyCompanyName" "c:\windows\system32\wiasf.ax"

"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify" "" "" ""

+ "AtiExtEvent" "" "" "c:\windows\system32\ati2evxx.dll"

+ "avgrsstarter" "AVG Resident Shield Starter" "AVG Technologies CZ, s.r.o." "c:\windows\system32\avgrsstx.dll"

Link to comment
Сподели другаде

Проблема Ви се дължи на зловреден софтуер (malware).

 

+ "csrcs" "" "" "C:\WINDOWS\system32\"

 

Оригиналния файл се казва csrss.exe

 

Махнете отметката в Autoruns и направете една проверка със следните неща:

 

 

 

СТЪПКА 1

 

Изтеглете Malwarebytes' Anti-Malware от тук

 

Кликнете два пъти върху mbam-setup.exe за да инсталирате програмата.

 

  • * Уверете се, че има отметки на Update Malwarebytes' Anti-Malware и Launch Malwarebytes' Anti-Malware, след това кликнете на Finish.
    * Ако има намерени по-нови обновления, тя ще ги изтегли и инсталира.
    * Стартирайте програмата и изберете "Perform Quick Scan", след това кликнете на Scan.
    * Сканирането ще отнеме малко време, затова моля бъдете търпеливи.
    * Когато сканирането завърши, кликнете на OK, след това Show Results, за да видите резултата.
    * Уверете се, че на всички редове има отметки, и кликнете Remove Selected.
    * Когато всичко бъде премахнато, логът ще бъде отворен в Notepad. Копирайте лога и го публикувайте в следващия си коментар в темата.

 

Бележка: Ако MalwareBytes' Anti-Malware се затрудни в премахването на откритите вируси/заплахи, той ще поиска да рестартира компютъра Ви и по време на рестартирането да премахне проблемните вируси/заплахи. Ако бъдете попитани, потвърдете че желаете вашия компютър да бъде рестартиран.

 

 

 

СТЪПКА 2

 

4. Изтеглете: ESET Online Scanner

* Стартирайте esetsmartinstaller_enu.exe

* Сложете отметка на YES, I accept the Terms of Use и изберете Start

* Скенерът ще започне да изтегля компонентите, които са му необходими.

* Уверете се, че има отметки на следните редове, включително и тези от менюто Advanced Settings:

 


  • Remove found threats
  • Scan archives
  • Scan for potentially unwanted applications
  • Scan for potentially unsafe applications
  • Enable Anti-Stealth technology

 

И накрая изберете Start

 

* Скенерът ще започне да изтегля последните дефиниции.

* След, като сканирането завърши изберете Finish.

* Отидете в:

C:\Program Files\ESET\ESET Online Scanner

 

Отворете файла log.txt , копирайте съдържанието му и го поставете в следващия си пост тук.

 

Поздрави ! :)

Link to comment
Сподели другаде

Много Ви благодаря, че се отзовахте!

Ето лога от първата стъпка:

 

Malwarebytes' Anti-Malware 1.46

www.malwarebytes.org

 

Версия на базата от данни: 4289

 

Windows 5.1.2600 Service Pack 2

Internet Explorer 6.0.2900.2180

 

07.7.2010 г. 20:16:04

mbam-log-2010-07-07 (20-16-04).txt

 

Тип сканиране: Бързо сканиране

Сканирани обекти: 131644

Изминало време: 12 минута(и), 3 секунда(и)

 

Заразени процеси в паметта: 0

Заразени модули в паметта: 0

Заразени ключове в регистратурата: 41

Заразени стойности в регистратурата: 4

Заразени информационни обекти в регистратурата: 3

Заразени папки: 11

Заразени файлове: 180

 

Заразени процеси в паметта:

(Не бяха открити зловредни обекти)

 

Заразени модули в паметта:

(Не бяха открити зловредни обекти)

 

Заразени ключове в регистратурата:

HKEY_CLASSES_ROOT\bfgtoolbar.bfgtoolbar (Adware.OneToolBar) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\bfgtoolbar.bfgtoolbarmenu button (Adware.OneToolBar) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\bfgtoolbar.bfgtoolbartoggle button (Adware.OneToolBar) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{cf54be1c-9359-4395-8533-1657cf209cfe} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{a4730ebe-43a6-443e-9776-36915d323ad3} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{4e7bd74f-2b8d-469e-86bd-fd60bb9aae3a} (Adware.OneToolBar) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{4e7bd74f-2b8d-469e-86bd-fd60bb9aae3b} (Adware.OneToolBar) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{4e7bd74f-2b8d-469e-86bd-fd60bb9aae3c} (Adware.OneToolBar) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Typelib\{d518921a-4a03-425e-9873-b9a71756821e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256a51-b582-467e-b8d4-7786eda79ae0} (Trojan.Vundo) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{4e7bd74f-2b8d-469e-86bd-fd60bb9aae3a} (Adware.OneToolBar) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59c7fc09-1c83-4648-b3e6-003d2bbc7481} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68af847f-6e91-45dd-9b68-d6a12c30e5d7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170b96c-28d4-4626-8358-27e6caeef907} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d1a71fa0-ff48-48dd-9b6d-7a13a3e42127} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ddb1968e-ead6-40fd-8dae-ff14757f60c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f138d901-86f0-4383-99b6-9cdd406036da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256a51-b582-467e-b8d4-7786eda79ae0} (Trojan.Vundo) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4e7bd74f-2b8d-469e-86bd-fd60bb9aae3a} (Adware.OneToolBar) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\bfgtoolbar (Adware.OneToolBar) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DRM\amty (Worm.Autorun) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.

 

Заразени стойности в регистратурата:

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{4e7bd74f-2b8d-469e-86bd-fd60bb9aae3a} (Adware.OneToolBar) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{4e7bd74f-2b8d-469e-86bd-fd60bb9aae3a} (Adware.OneToolBar) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices\csrcs (Trojan.Agent) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Search\(default) (Adware.Hotbar) -> Quarantined and deleted successfully.

 

Заразени информационни обекти в регистратурата:

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

 

Заразени папки:

C:\Documents and Settings\user\Application Data\bfgtoolbar (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\NewCfg (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135 (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\Shared (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\MyWebSearch\bar (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\MyWebSearch\bar\History (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\MyWebSearch\bar\Settings (Adware.MyWebSearch) -> Quarantined and deleted successfully.

 

Заразени файлове:

C:\Documents and Settings\user\Application Data\bfgtoolbar\1.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\10.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\2.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\20off.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\3.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\4.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\5.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\6.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\7.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\8.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\9.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\action.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\atlantis.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\bfgtoolbarDLL.zip (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\bfgtoolbartb0500.cfg (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\bfgtoolbartb0500.cfg133406 (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\bfg_greetings.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\card.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\COMBOSEARCH.acs (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\ErrorLog.txt (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\logo.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\mahjong.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\mygames.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\mygamestoolbar.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\new.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\newgames.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\puzzle.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\search.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\thereef.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\topten.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\webgames.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Documents and Settings\user\Application Data\bfgtoolbar\word.bmp (Adware.OneToolBar) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0016620A.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\001F2FD3.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\001F4649.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\001F672F.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\001F86CD.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\001F9C39.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\001FB501.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\001FE122.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\001FF798.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00201244.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00202D9C.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00204D2A.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00206611.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00208ED6.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0020AD7A.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0020EA54.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0021418C.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0021C90C.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0021EA5F.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\002204CD.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00222286.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00225C43.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00227C20.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0022AED8.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0022DC51.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00230804.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00235029.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0023814B.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0023BA5C.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0023EB30.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0024159C.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00243326.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00245257.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00247427.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00248DC9.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0024B98C.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0024EBE7.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0025170E.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00253DFF.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\002561A4.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00257F6D.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0025C242.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0025E8A6.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\002630FA.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00266F1C.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00268F37.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0026B51E.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0026D3D1.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0026F97A.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\002744BC.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\002767D4.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0027C95D.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\002810D6.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\002831EA.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00285551.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0028851B.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0028A8DF.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0028F28B.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\002910A2.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00292D42.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\005083F0.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0050C88A.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0050E51B.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0051260C.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0051DF59.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00520C65.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00523A1C.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00526D41.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00529EE1.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0052F166.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0053462D.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0053A12E.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00543261.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00546CCB.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0054935E.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0054CBE2.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00569E02.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\006E2747.urr (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\0083D97A.urr (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00DD5A23.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00DDD8C9.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00DE6411.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00DEA0AD.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\00DEDA6A.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\f3wallpp.bmp (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\wrkparam.lst (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\001F2FD3.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\001F4649.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\001F672F.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\001F86CD.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\001F9C39.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\001FB501.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\001FE122.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\001FF798.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00201244.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00202D9C.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00204D2A.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00206611.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00208ED6.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0020AD7A.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0020EA54.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0021418C.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0021C90C.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0021EA5F.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\002204CD.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00222286.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00225C43.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00227C20.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0022AED8.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0022DC51.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00230804.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00235029.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0023814B.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0023BA5C.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0023EB30.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0024159C.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00243326.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00245257.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00247427.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00248DC9.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0024B98C.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0024EBE7.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0025170E.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00253DFF.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\002561A4.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00257F6D.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0025C242.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0025E8A6.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\002630FA.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00266F1C.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00268F37.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0026B51E.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0026D3D1.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0026F97A.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\002744BC.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\002767D4.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0027C95D.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\002810D6.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\002831EA.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00285551.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0028851B.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0028A8DF.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\0028F28B.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\002910A2.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\00292D42.jpg (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\FunWebProducts\ScreenSaver\Images\101x135\Thumbs.db (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\MyWebSearch\bar\History\search3 (Adware.MyWebSearch) -> Quarantined and deleted successfully.

C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.

 

 

Ето и лога от втората стъпка:

 

ESETSmartInstaller@High as downloader log:

all ok

# version=7

# OnlineScannerApp.exe=1.0.0.1

# OnlineScanner.ocx=1.0.0.6211

# api_version=3.0.2

# EOSSerial=1292c8cc8d8cb84cb19967f1f2517748

# end=finished

# remove_checked=true

# archives_checked=true

# unwanted_checked=true

# unsafe_checked=true

# antistealth_checked=true

# utc_time=2010-07-07 06:51:13

# local_time=2010-07-07 09:51:13 (+0200, FLE Daylight Time)

# country="Bulgaria"

# lang=1033

# osver=5.1.2600 NT Service Pack 2

# compatibility_mode=512 16777215 100 0 0 0 0 0

# compatibility_mode=1024 16777175 100 0 19976760 19976760 0 0

# compatibility_mode=8192 67108863 100 0 308 308 0 0

# scanned=83892

# found=6

# cleaned=6

# scan_time=4713

C:\Program Files\AskTBar\bar\1.bin\A5POPSWT.DLL Win32/Toolbar.AskSBar application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C

C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL Win32/Toolbar.AskSBar application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C

C:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL Win32/Toolbar.MyWebSearch application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C

D:\Games\Janes Hotel.exe probably a variant of Win32/Agent trojan (deleted - quarantined) 00000000000000000000000000000000 C

D:\Pictures\razni\1-podgotovka.vbs VBS/SkypeGift.E worm (cleaned by deleting - quarantined) 00000000000000000000000000000000 C

D:\Pictures\razni\1-podgotovka.zip VBS/SkypeGift.E worm (deleted - quarantined) 00000000000000000000000000000000 C

Link to comment
Сподели другаде

Помощ! Пуснах си аваст скенераи започна да намира някакви Malware в папка system32, кажете какво да правя, не ги чувам хич тези неща - това вируси ли са или друго нещо?
Link to comment
Сподели другаде

Така направих - някои ги изтрих по време на сканирането, другите са в клетката - сега да ги трия ли? Доста са. Мисля че са от един торент който беше архивиран и 2-3 дни все ми излизаше едно прозорче да довърша някаква инсталация, и накрая го инсталирах - не искаше да се махне...
Link to comment
Сподели другаде

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Гост
Отговори на тази тема

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   Не можете да качите директно снимка. Качете или добавете изображението от линк (URL)

Loading...
×
×
  • Създай ново...