Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o pomoc - zavireny PC, len nabehne windows...

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
shatterhand
Návštěvník
Návštěvník
Příspěvky: 107
Registrován: 11 říj 2009 17:52
Bydliště: PB, SVK

Re: Prosim o pomoc - zavireny PC, len nabehne windows...

#16 Příspěvek od shatterhand »

Tu je log z VIRUSTOTAL, este idem skusit ten MBAM:

File cc79169b.sys received on 2009.11.24 15:19:53 (UTC)
Current status: finished
Result: 12/41 (29.27%)
Compact Compact
Print results Print results
Antivirus Version Last Update Result
a-squared 4.5.0.43 2009.11.24 -
AhnLab-V3 5.0.0.2 2009.11.24 -
AntiVir 7.9.1.70 2009.11.24 TR/Dropper.Gen
Antiy-AVL 2.0.3.7 2009.11.24 -
Authentium 5.2.0.5 2009.11.23 W32/SuspPack.AA.gen!Eldorado
Avast 4.8.1351.0 2009.11.24 -
AVG 8.5.0.425 2009.11.24 Corrupted
BitDefender 7.2 2009.11.24 Backdoor.Rustock.NFT
CAT-QuickHeal 10.00 2009.11.24 Trojan.Agent.ATV
ClamAV 0.94.1 2009.11.24 -
Comodo 3020 2009.11.24 -
DrWeb 5.0.0.12182 2009.11.24 -
eSafe 7.0.17.0 2009.11.24 -
eTrust-Vet 35.1.7139 2009.11.24 -
F-Prot 4.5.1.85 2009.11.23 W32/SuspPack.AA.gen!Eldorado
F-Secure 9.0.15370.0 2009.11.20 Backdoor.Rustock.NFT
Fortinet 4.0.14.0 2009.11.24 -
GData 19 2009.11.24 Backdoor.Rustock.NFT
Ikarus T3.1.1.74.0 2009.11.24 -
Jiangmin 11.0.800 2009.11.24 Rootkit.Agent.bxo
K7AntiVirus 7.10.903 2009.11.23 -
Kaspersky 7.0.0.125 2009.11.24 -
McAfee 5811 2009.11.23 -
McAfee+Artemis 5811 2009.11.23 -
McAfee-GW-Edition 6.8.5 2009.11.24 Trojan.Dropper.Gen
Microsoft 1.5302 2009.11.24 -
NOD32 4633 2009.11.24 -
Norman 6.03.02 2009.11.24 -
nProtect 2009.1.8.0 2009.11.24 -
Panda 10.0.2.2 2009.11.24 -
PCTools 7.0.3.5 2009.11.24 -
Prevx 3.0 2009.11.24 High Risk System Back Door
Rising 22.23.01.09 2009.11.24 -
Sophos 4.47.0 2009.11.24 -
Sunbelt 3.2.1858.2 2009.11.24 -
Symantec 1.4.4.12 2009.11.24 -
TheHacker 6.5.0.2.076 2009.11.23 -
TrendMicro 9.0.0.1003 2009.11.24 -
VBA32 3.12.12.0 2009.11.24 -
ViRobot 2009.11.24.2051 2009.11.24 -
VirusBuster 5.0.21.0 2009.11.23 Backdoor.NewRest.AV
Additional information
File size: 109376 bytes
MD5 : df73dc7b1fb87c31bcbaa557f7c8fac8
SHA1 : f94ac7588944f868766d14fc9b860c082ed45dd4
SHA256: f96d271249b726cc6bfa7c97f0bfbb39e0c7d423f0b5c25f93e9610deb794544
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1C0
timedatestamp.....: 0x477A0000 (Tue Jan 1 09:55:28 2008)
machinetype.......: 0x14C (Intel I386)

( 1 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1C0 0x5 0x40 4.55 6fe9da89cd6a4b65d2ae70b5357f0653

( 0 imports )


( 0 exports )
TrID : File type identification
Generic Win/DOS Executable (49.9%)
DOS Executable Generic (49.8%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%)
ssdeep: 3072:8TKmvXML3jYXj+8jHzITevc75t7aEtNN6t:822gUXiwHMTeU7/nH4t
Prevx Info: http://info.prevx.com/aboutprogramtext. ... 00C9FF44E4
PEiD : -
RDS : NSRL Reference Data Set

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15651
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Prosim o pomoc - zavireny PC, len nabehne windows...

#17 Příspěvek od JaRon »

cc79169b.sys je uplne iny subor ako si mal testovat, tak teda neviem :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

shatterhand
Návštěvník
Návštěvník
Příspěvky: 107
Registrován: 11 říj 2009 17:52
Bydliště: PB, SVK

Re: Prosim o pomoc - zavireny PC, len nabehne windows...

#18 Příspěvek od shatterhand »

Aha, to mi tam asi dali nejaký náhodný výpis, tu je ten správny:

File febc1436.sys received on 2010.03.09 14:37:16 (UTC)
Current status: Loading ... queued waiting scanning finished NOT FOUND STOPPED
Result: 22/41 (53.66%)
Loading server information...
Your file is queued in position: 2.
Estimated start time is between 49 and 70 seconds.
Do not close the window until scan is complete.
The scanner that was processing your file is stopped at this moment, we are going to wait a few seconds to try to recover your result.
If you are waiting for more than five minutes you have to resend your file.
Your file is being scanned by VirusTotal in this moment,
results will be shown as they're generated.
Compact Compact
Print results Print results
Your file has expired or does not exists.
Service is stopped in this moments, your file is waiting to be scanned (position: ) for an undefined time.

You can wait for web response (automatic reload) or type your email in the form below and click "request" so the system sends you a notification when the scan is finished.
Email:

Antivirus Version Last Update Result
a-squared 4.5.0.50 2010.03.09 Backdoor.Rustock!IK
AhnLab-V3 5.0.0.2 2010.03.08 -
AntiVir 8.2.1.180 2010.03.09 TR/Dropper.Gen
Antiy-AVL 2.0.3.7 2010.03.09 -
Authentium 5.2.0.5 2010.03.09 W32/SuspPack.AA.gen!Eldorado
Avast 4.8.1351.0 2010.03.09 -
Avast5 5.0.332.0 2010.03.09 -
AVG 9.0.0.787 2010.03.09 Corrupted
BitDefender 7.2 2010.03.09 Backdoor.Rustock.NFT
CAT-QuickHeal 10.00 2010.03.09 Trojan.Agent.ATV
ClamAV 0.96.0.0-git 2010.03.09 -
Comodo 4091 2010.02.28 UnclassifiedMalware
DrWeb 5.0.1.12222 2010.03.09 -
eSafe 7.0.17.0 2010.03.09 Win32.TRDropper
eTrust-Vet 35.2.7348 2010.03.09 -
F-Prot 4.5.1.85 2010.03.09 W32/SuspPack.AA.gen!Eldorado
F-Secure 9.0.15370.0 2010.03.09 Backdoor.Rustock.NFT
Fortinet 4.0.14.0 2010.03.07 -
GData 19 2010.03.09 Backdoor.Rustock.NFT
Ikarus T3.1.1.80.0 2010.03.09 Backdoor.Rustock
Jiangmin 13.0.900 2010.03.09 Rootkit.Agent.bxo
K7AntiVirus 7.10.993 2010.03.09 Trojan.Win32.Malware.3
Kaspersky 7.0.0.125 2010.03.09 -
McAfee 5914 2010.03.08 -
McAfee+Artemis 5914 2010.03.08 Artemis!DF73DC7B1FB8
McAfee-GW-Edition 6.8.5 2010.03.09 Trojan.Dropper.Gen
Microsoft 1.5502 2010.03.09 -
NOD32 4929 2010.03.09 -
Norman 6.04.08 2010.03.08 -
nProtect 2009.1.8.0 2010.03.09 Backdoor/W32.Rustock.109376
Panda 10.0.2.2 2010.03.08 Suspicious file
PCTools 7.0.3.5 2010.03.09 -
Prevx 3.0 2010.03.09 High Risk System Back Door
Rising 22.38.01.04 2010.03.09 -
Sophos 4.51.0 2010.03.09 Mal/Generic-A
Sunbelt 5800 2010.03.09 -
Symantec 20091.2.0.41 2010.03.09 Suspicious.ADH
TheHacker 6.5.2.0.226 2010.03.09 -
TrendMicro 9.120.0.1004 2010.03.09 -
ViRobot 2010.3.9.2218 2010.03.09 -
VirusBuster 5.0.27.0 2010.03.08 Backdoor.NewRest.AV
Additional information
File size: 109376 bytes
MD5...: df73dc7b1fb87c31bcbaa557f7c8fac8
SHA1..: f94ac7588944f868766d14fc9b860c082ed45dd4
SHA256: f96d271249b726cc6bfa7c97f0bfbb39e0c7d423f0b5c25f93e9610deb794544
ssdeep: 3072:8TKmvXML3jYXj+8jHzITevc75t7aEtNN6t:822gUXiwHMTeU7/nH4t
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1c0
timedatestamp.....: 0x477a0000 (Tue Jan 01 08:55:28 2008)
machinetype.......: 0x14c (I386)

( 1 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1c0 0x5 0x40 4.55 6fe9da89cd6a4b65d2ae70b5357f0653

( 0 imports )

( 0 exports )
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Generic Win/DOS Executable (49.9%)
DOS Executable Generic (49.8%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%)
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
<a href='http://info.prevx.com/aboutprogramtext. ... 00C9FF44E4' target='_blank'>http://info.prevx.com/aboutprogramtext. ... 9FF44E4</a>

shatterhand
Návštěvník
Návštěvník
Příspěvky: 107
Registrován: 11 říj 2009 17:52
Bydliště: PB, SVK

Re: Prosim o pomoc - zavireny PC, len nabehne windows...

#19 Příspěvek od shatterhand »

A tu je výpis z MBAMu:

Malwarebytes' Anti-Malware 1.44
Verze databáze: 3840
Windows 5.1.2600 Service Pack 3 (Safe Mode)
Internet Explorer 6.0.2900.5512

9. 3. 2010 15:30:46
mbam-log-2010-03-09 (15-30-33).txt

Typ kontroly: Kompletní kontrola (C:\|D:\|E:\|)
Zkontrolované objekty: 246495
Uplynulý čas: 41 minute(s), 4 second(s)

Infikované procesy v paměti: 0
Infikované moduly v paměti: 0
Infikované klíče registru: 13
Infikované hodnoty registru: 0
Infikované datové položky registru: 0
Infikované adresáře: 20
Infikované soubory: 74

Infikované procesy v paměti:
(Nebyly nalezeny žádné škodlivé položky)

Infikované moduly v paměti:
(Nebyly nalezeny žádné škodlivé položky)

Infikované klíče registru:
HKEY_CLASSES_ROOT\hotbarweather.weathercontroller (Adware.Softomate) -> No action taken.
HKEY_CLASSES_ROOT\hotbarweather.weathercontroller.1 (Adware.Softomate) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{2f9ad413-2e0b-4a85-bb2a-cf961238262a} (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{70880ce6-308c-4204-a89e-b266c3f7b7fa} (Adware.Softomate) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{8c788aa2-7530-43be-97b7-4d491f13bea3} (Adware.Softomate) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{a078f691-9c07-4af2-bf43-35e79eecf8b7} (Adware.Softomate) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{b0cb585f-3271-4e42-88d9-ae5c9330d554} (Adware.Zango) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a078f691-9c07-4af2-bf43-35e79eecf8b7} (Adware.Softomate) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{eddbb5ee-bb64-4bfc-9dbe-e7c85941335b} (Adware.Zango) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{a078f691-9c07-4af2-bf43-35e79eecf8b7} (Adware.Softomate) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setup.exe (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\hotbarax.info (Adware.Hotbar) -> No action taken.
HKEY_CLASSES_ROOT\hotbarax.info.1 (Adware.Hotbar) -> No action taken.

Infikované hodnoty registru:
(Nebyly nalezeny žádné škodlivé položky)

Infikované datové položky registru:
(Nebyly nalezeny žádné škodlivé položky)

Infikované adresáře:
C:\Documents and Settings\All Users\Data aplikací\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 (Adware.Seekmo) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\IESkins (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5 (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\HostOI (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\HostOI\dynamic (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\HostOL (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\HostOL\dynamic (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\dynamic (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\1 (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\2 (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\WeatherDPA (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\WeatherDPA\Weather_XML (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\Weather_XML (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\WeatherDPA (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hotbar (Adware.Hotbar) -> No action taken.

Infikované soubory:
C:\Documents and Settings\Administrator\Plocha\setup.exe (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\business_promo.htm (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\business_promo.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\buttondir.txt (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\buttondir.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\cursors.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\cursors.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_1000.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_1000.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_2000.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_2000.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_3000.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_3000.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_bar.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_bar.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_bbar1.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_bbar1.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_logos.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_logos.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_other.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_buttons_other.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_weather.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\d_icons_weather.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\editblbuttons.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\editblbuttons.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\hotbar_promo.htm (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\hotbar_promo.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\ie_games_icon.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\ie_games_icon.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\ie_video.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\ie_video.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\keywords.idx (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\keywords.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\layout.cdf (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\layout.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\linkpathlegal.txt (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\linkpathlegal.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\more.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\more.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\progress.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\progress.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\sales_buttons.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\sales_buttons.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\samplegroups2.txt (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\samplegroups2.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\sdfmodifier.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\sdfmodifier.xml (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\s_icons_buttons.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\s_icons_buttons.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\t2_bg.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\t2_bg.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\tsd_bg.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\tsd_bg.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\weathericon.res (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\v3.5\Hotbar\static\DownLoad\weathericon.xip (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\history (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\WeatherStartup.xml (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\WeatherDPA\Links (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\WeatherDPA\WeatherPreferences (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\WeatherDPA\Weather_XML\Display (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\WeatherDPA\Weather_XML\Loading (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\WeatherDPA\Weather_XML\screen2 (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\WeatherDPA\Weather_XML\screen3 (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\Weather_XML\Default (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\Weather_XML\Genera1 (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\Hotbar\Weather\Weather_XML\General (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hotbar\About Hotbar.lnk (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hotbar\Hotbar Customer Support Center.lnk (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hotbar\Hotbar Games!.lnk (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hotbar\Hotbar Uninstall Instructions.lnk (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hotbar\Hotbar Videos!.lnk (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hotbar\Reset Cursor.lnk (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\All Users\Nabídka Start\Programy\Hotbar\Weather.lnk (Adware.Hotbar) -> No action taken.
C:\Documents and Settings\Administrator\Data aplikací\avdrn.dat (Malware.Trace) -> No action taken.

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15651
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Prosim o pomoc - zavireny PC, len nabehne windows...

#20 Příspěvek od JaRon »

vsetko najdene v MBAM nechaj zmazat
+
restart
+
pouzi Avenger - jeho script:
Files to delete:
C:\WINDOWS\System32\drivers\febc1436.sys
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

shatterhand
Návštěvník
Návštěvník
Příspěvky: 107
Registrován: 11 říj 2009 17:52
Bydliště: PB, SVK

Re: Prosim o pomoc - zavireny PC, len nabehne windows...

#21 Příspěvek od shatterhand »

zmazane v MBAM, restartovane a zmazane v avengeri... ale problem zostava - 15 min po starte windowsu spodna lista nefunguje a firefox mrzne.... potom funguje vsetko okrem zvuku

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15651
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Prosim o pomoc - zavireny PC, len nabehne windows...

#22 Příspěvek od JaRon »

domaca uloha na dnes - ja sa na to pozriem az zajtra:
1. odinstaluj Terminatora - po tom, co sa naslo v PC je tam na dve veci :)
2. prescanuj/vycisti PC s CureIT
3. odstran vsetky ovladace s vykricnikom - restart - doinstaluj ovladace
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět