BMW_CS_CONCEPT Публикувано Август 20, 2010 Report Share Публикувано Август 20, 2010 Когато си пусна компа ми излиза това съобщение http://store.picbg.net/pubpic/0D/ED/98a0c5108c780ded.png Другото, след него постоянно ми се показва щита долу до часовника, където види до автоматичното ъпгрейдване на софтуера, защитната стена и т.н.!Пуснах прегледи с 3 програми и тук ще дам *.rar филе да не ги поставям логовете им в поста да не става много дълъг!ESET Online Scanner Malwarebytes SuperAntiSpyware.rar Цитирай Link to comment Сподели другаде More sharing options...
panevdd Публикувано Август 20, 2010 Report Share Публикувано Август 20, 2010 Провери си системата с Avira AntiVir Rescue System или Dr.Web® LiveCD.След това направи един log с Autoruns и го прикачи, за да го разгледаме. Цитирай Link to comment Сподели другаде More sharing options...
BMW_CS_CONCEPT Публикувано Август 20, 2010 Author Report Share Публикувано Август 20, 2010 Заповядай това autoruns.txt Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Август 20, 2010 Report Share Публикувано Август 20, 2010 Можеш да махнеш отметките на следните обекти:+ "sqlite3.dll" "" "" "c:\documents and settings\all users\start menu\programs\startup\sqlite3.dll"+ "n/a" "" "" "File not found: C:\WINDOWS\system32\Bifrost\server.exe s"+ "ah9cxmkv" "" "" "File not found: C:\WINDOWS\System32\Drivers\ah9cxmkv.sys" Цитирай Link to comment Сподели другаде More sharing options...
BMW_CS_CONCEPT Публикувано Август 21, 2010 Author Report Share Публикувано Август 21, 2010 Можеш да махнеш отметките на следните обекти: Махнах отметката на:1 "sqlite3.dll"2 "n/a" .....3 "ah9cxmkv" неможах да го намеря къде е търсих го. но....Ето пак от ауторън-аAutoRuns.txt Но след като махнах отметката на 1-то sqlite3.dll, се показа това!+ "sqlite3.dll" "" "" "c:\documents and settings\all users\start menu\programs\startup\sqlite3.dll"X "sqlite3.dll" "" "" "c:\documents and settings\all users\start menu\programs\startup\autorunsdisabled\sqlite3.dll" И като се опитам да му махна отметката ми излиза някаква грешка, дори на долното да искам пак да му сложа пак грещка излиза! Сега пуснах да направя проверка с Dr. Web Цитирай Link to comment Сподели другаде More sharing options...
dudev851 Публикувано Август 24, 2010 Report Share Публикувано Август 24, 2010 Отвори уиндоус експлорър и напиши в адресната лента: "c:\documents and settings\all users\start menu\programs\startup\" и ентер. Изтрий файла "sqlite3.dll". Рестартирай. Ако излиза в началото някакво съобщение за грешка(липсва файл), можеш да го махнеш по следния начин: HKCU refers to HKEY_CURRENT_USERHKLM refers to HKEY_LOCAL_MACHINE HKCU\Software\Microsoft\Windows\CurrentVersion\RunOnceHKCU\Software\Microsoft\Windows\CurrentVersion\RunServicesHKCU\Software\Microsoft\Windows\CurrentVersion\RunServicesOnceHKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run HKCU\Software\Microsoft\Windows\CurrentVersion\RunHKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows (In right-pane, Value named "Run" & "Load") HKLM\Software\Microsoft\Windows\CurrentVersion\RunHKLM\Software\Microsoft\Windows\CurrentVersion\RunServicesHKLM\Software\Microsoft\Windows\CurrentVersion\RunServicesOnceHKLM\Software\Microsoft\Windows\CurrentVersion\RunOnceHKLM\Software\Microsoft\Windows\CurrentVersion\RunOnceExHKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\RunHKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit C:\Documents and Settings\All Users\Start Menu\Programs\StartupC:\Documents and Settings\{Username}\Start Menu\Programs\Startup Това го копирах от форум. Това са надявам се всички възможни пътища до регистри които стартират приложения след окончателното стартиране на windows (има и други начини за зареждане на програми в началото). Последните две са пътища към папки, в които като сложиш нещо се изпълнява или поне се опитва . А за горните:Start -> Run. (Това е бутона "Start" на уиндоус долу в ъгъла вляво и "Run...")Пишеш "regedit" и ОК. Ще ти отвори интерфейс за работа с небезизвестните уиндоуски регистри. И започваш, следваш пътя и гледаш какви програми ти се стартират в началото. Незнам дали се изразявам правилно(последния път ме упрекнаха), като започнеш мисля, че ще се оправиш кое какво е. Като видиш въпросния път, а именно : "...\нещо си там\sqlite3.dll", го изтрий. Като изтриеш всичко това, мисля че вече няма да се стартира в началото. Така можеш да си моделираш системата, но внимавай!Ако има нещо пиши ... Цитирай Link to comment Сподели другаде More sharing options...
dudev851 Публикувано Август 24, 2010 Report Share Публикувано Август 24, 2010 после ако въпросната програма SQ не работи я инсталирай наново и готово(но не точно същата, която си инсталирал преди ). Цитирай Link to comment Сподели другаде More sharing options...
BMW_CS_CONCEPT Публикувано Август 26, 2010 Author Report Share Публикувано Август 26, 2010 http://www.superantispyware.com Generated 08/26/2010 at 03:28 PM Application Version : 4.41.1000 Core Rules Database Version : 5408Trace Rules Database Version: 3220 Scan type : Complete ScanTotal Scan Time : 00:42:56 Memory items scanned : 595Memory threats detected : 0Registry items scanned : 8180Registry threats detected : 3File items scanned : 22811File threats detected : 101 Adware.Tracking Cookie C:\Documents and Settings\Administrator\Cookies\administrator@tribalfusion[1].txt C:\Documents and Settings\Administrator\Cookies\administrator@content.yieldmanager[1].txt C:\Documents and Settings\Administrator\Cookies\administrator@interclick[1].txt C:\Documents and Settings\Administrator\Cookies\administrator@doubleclick[1].txt C:\Documents and Settings\Administrator\Cookies\administrator@burstnet[2].txt C:\Documents and Settings\Administrator\Cookies\administrator@collective-media[2].txt C:\Documents and Settings\Administrator\Cookies\administrator@ad.yieldmanager[2].txt C:\Documents and Settings\Administrator\Cookies\administrator@www.burstnet[1].txt cdn4.specificclick.net [ C:\Documents and Settings\Administrator\Application Data\Macromedia\Flash Player\#SharedObjects\6WZC8VGB ] media.scanscout.com [ C:\Documents and Settings\Administrator\Application Data\Macromedia\Flash Player\#SharedObjects\6WZC8VGB ] secure-it.imrworldwide.com [ C:\Documents and Settings\Administrator\Application Data\Macromedia\Flash Player\#SharedObjects\6WZC8VGB ] secure-us.imrworldwide.com [ C:\Documents and Settings\Administrator\Application Data\Macromedia\Flash Player\#SharedObjects\6WZC8VGB ] wwwstatic.megaporn.com [ C:\Documents and Settings\Administrator\Application Data\Macromedia\Flash Player\#SharedObjects\6WZC8VGB ] .imrworldwide.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .imrworldwide.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .doubleclick.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .chitika.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .247realmedia.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] ox.mediabistro.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .kontera.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] www.googleadservices.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .atdmt.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .atdmt.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .smartadserver.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .smartadserver.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .smartadserver.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .smartadserver.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] rem.rezonmedia.eu [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] counter.search.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .content.yieldmanager.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .interclick.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .interclick.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .interclick.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .apmebf.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .mediaplex.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .tribalfusion.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .clickbank.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .liveperson.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .liveperson.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .clicksius.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .clicksius.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .statcounter.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .yadro.ru [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .liveperson.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .adtech.de [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] delivery.usermedia.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] delivery.usermedia.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] banners.bgmaps.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] banners.bgmaps.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] banners.bgmaps.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] banners.bgmaps.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] banners.bgmaps.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .facefuck.biz [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .facefuck.biz [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .smartadserver.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .fastclick.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .fastclick.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .fastclick.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .mediafire.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .mediafire.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .mediafire.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .media.causes.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .media.causes.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .media.causes.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .media.causes.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .media.causes.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .media.causes.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .media.causes.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .casalemedia.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .casalemedia.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .casalemedia.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .casalemedia.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .casalemedia.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .casalemedia.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] server.iad.liveperson.net [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] .content.yieldmanager.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] media.easyads.bg [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] s05.flagcounter.com [ C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\oe0dtf1q.default\cookies.sqlite ] Disabled.SecurityCenterOption HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#ANTIVIRUSDISABLENOTIFY HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#FIREWALLDISABLENOTIFY HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#UPDATESDISABLENOTIFYНякой може ли да ми каже, какво е това с червените букви което съм отбелязал, значи ако го изтрия от програмата при следващото стртирване на системата ми, ще ми излезне Щита до часовника в старт лентата, че са сложени отметките за стената на уиндоуса, автоматичното му ъпгрейдване и долу за антивирусната!Това нещо повредено ли е, което го олавя програмата? За това прозорче става дума:http://store.picbg.net/pubpic/48/48/6b9ec2380ee84848.PNG Цитирай Link to comment Сподели другаде More sharing options...
BMW_CS_CONCEPT Публикувано Август 27, 2010 Author Report Share Публикувано Август 27, 2010 Malwarebytes' Anti-Malware 1.46www.malwarebytes.org Database version: 4483 Windows 5.1.2600 Service Pack 3Internet Explorer 8.0.6001.18702 27.8.2010 г. 01:20:30mbam-log-2010-08-27 (01-20-30).txt Scan type: Full scan (C:\|D:\|)Objects scanned: 220063Time elapsed: 47 minute(s), 11 second(s) Memory Processes Infected: 0Memory Modules Infected: 0Registry Keys Infected: 2Registry Values Infected: 3Registry Data Items Infected: 3Folders Infected: 0Files Infected: 6 Memory Processes Infected:(No malicious items detected) Memory Modules Infected:(No malicious items detected) Registry Keys Infected:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{5576b67j-og41-nx6e-icqs-013enj5k7575} (Generic.Bot.H) -> No action taken.HKEY_CURRENT_USER\Software\victim (Malware.Trace) -> No action taken. Registry Values Infected:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\policies (Trojan.Agent) -> No action taken.HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\hkcu (Trojan.Agent) -> No action taken.HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\policies (Trojan.Agent) -> No action taken. Registry Data Items Infected:HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. Folders Infected:(No malicious items detected) Files Infected:C:\Documents and Settings\Administrator\Local Settings\Temp\file1.exe (Trojan.Backdoor) -> No action taken.C:\System Volume Information\_restore{B6E2839B-E551-42BB-944A-15EBD3AEE0D6}\RP16\A0011439.exe (Trojan.Backdoor) -> No action taken.C:\Documents and Settings\Administrator\Application Data\logs.dat (Bifrose.Trace) -> No action taken.C:\Documents and Settings\Administrator\Local Settings\Temp\IEPASS.abc (Malware.Trace) -> No action taken.C:\Documents and Settings\Administrator\Local Settings\Temp\UuU.uUu (Malware.Trace) -> No action taken.C:\Documents and Settings\Administrator\Local Settings\Temp\XxX.xXx (Malware.Trace) -> No action taken. Това вече изчистини ли са или има още работа по тях? Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Август 27, 2010 Report Share Публикувано Август 27, 2010 Относно редовете в червено. Да, поправката им води до появяване на Security Center. Не, не е вредно. Просто според програмата Security Center не бива да бъде забранен, защото спомага за поддържането на системата по-сигурна, като напомня/известява ако има проблеми с обновления, защитната стена и/или антивирусната.За обектиет в лога на MBAM, според програмата не са премахнати. Ако е така, ще трябва да сканираш отново и да си кликнеш Remove Selected (Премахни всички). Цитирай Link to comment Сподели другаде More sharing options...
BMW_CS_CONCEPT Публикувано Август 28, 2010 Author Report Share Публикувано Август 28, 2010 Днес като сканирах не ги прехвана, като не съм ги барал отметките и ще оставя за сега така, ще го задържа така! До колкото не изтритите, сега не ги прехвана, незнам защо! Цитирай Link to comment Сподели другаде More sharing options...
Препоръчан пост
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.