Stránka 2 z 2

Re: Facebook virus pls help - ntb

Napsal: 29 říj 2011 21:15
od vyosek
:arrow: Stahnete OTM (viz muj podpis)
  • Pokud pouzivate Win Vista ci W7, kliknete na OTM pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do leveho okna Paste Instructions for Items to be Moved (pod zlutou caru) vlozte obsah, ktery mate nize
  • Kód: Vybrat vše

    :reg
    [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
    ""=-
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acer ePower Management]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AtherosBtStack]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon]
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper]
    [HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
    "{32099AAC-C132-4136-9E9A-4E364A424E17}"=-
    "{98889811-442D-49dd-99D7-DC866BE87DBC}"=-
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    "{32099AAC-C132-4136-9E9A-4E364A424E17}"=-
    
    :files
    C:\ProgramData\IObit
    C:\Users\J3ck3sss\AppData\Roaming\IObit
    C:\Program Files (x86)\Ask.com
    %windir%\system32\*.tmp.dll /s
    %windir%\system32\SET*.tmp /s
    %windir%\*.tmp
    
    :commands
    [RESETHOSTS]
    [EMPTYTEMP]
    [EMPTYFLASH]
  • Kliknete na cervene tlacitko MoveIt!
  • Budete vyzvani na restart, dejte Yes, log pote najdete C:\_OTM\MovedFiles, obsah sem vlozte

Re: Facebook virus pls help - ntb

Napsal: 29 říj 2011 21:32
od J3ck3sss
All processes killed
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LManager\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Acer ePower Management\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AtherosBtStack\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BitTorrent\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CanonSolutionMenu\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon\ not found.
Registry key HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar\\{98889811-442D-49dd-99D7-DC866BE87DBC} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{98889811-442D-49dd-99D7-DC866BE87DBC}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
========== FILES ==========
C:\ProgramData\IObit\Game Booster\Opt folder moved successfully.
C:\ProgramData\IObit\Game Booster\Essentials folder moved successfully.
C:\ProgramData\IObit\Game Booster\BackLnk folder moved successfully.
C:\ProgramData\IObit\Game Booster folder moved successfully.
C:\ProgramData\IObit\Advanced SystemCare V5 folder moved successfully.
C:\ProgramData\IObit\Advanced SystemCare V4 folder moved successfully.
C:\ProgramData\IObit folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\Smart Defrag 2 folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\IObit Malware Fighter folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\Advanced SystemCare V5\Toolbox folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\Advanced SystemCare V5\Log folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\Advanced SystemCare V5\Boottime folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\Advanced SystemCare V5\Backup folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\Advanced SystemCare V5 folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\Advanced SystemCare V4\Toolbox folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\Advanced SystemCare V4\PMonitor folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\Advanced SystemCare V4\Log folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\Advanced SystemCare V4\Backup folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit\Advanced SystemCare V4 folder moved successfully.
C:\Users\J3ck3sss\AppData\Roaming\IObit folder moved successfully.
C:\Program Files (x86)\Ask.com\assets\oobe folder moved successfully.
C:\Program Files (x86)\Ask.com\assets folder moved successfully.
C:\Program Files (x86)\Ask.com folder moved successfully.
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: J3ck3sss
->Temp folder emptied: 5688039 bytes
->Temporary Internet Files folder emptied: 133330 bytes
->FireFox cache emptied: 0 bytes
->Google Chrome cache emptied: 9572777 bytes
->Flash cache emptied: 456 bytes

User: Public
->Temp folder emptied: 0 bytes

User: Users
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 3338 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 15,00 mb


[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: J3ck3sss
->Flash cache emptied: 0 bytes

User: Public

User: Users

Total Flash Files Cleaned = 0,00 mb


OTM by OldTimer - Version 3.1.19.0 log created on 10292011_222600

Files moved on Reboot...
C:\Users\J3ck3sss\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\Windows\temp\_avast_\Webshlock.txt scheduled to be moved on reboot.
File move failed. C:\Windows\temp\dsiwmis.log scheduled to be moved on reboot.

Registry entries deleted on Reboot...

Re: Facebook virus pls help - ntb

Napsal: 29 říj 2011 21:35
od vyosek
:arrow: Spustte znovu OTM a kliknete na CleanUp! - tim po sobe uklidi

:arrow: Napiste jak se chova PC

Re: Facebook virus pls help - ntb

Napsal: 29 říj 2011 21:55
od J3ck3sss
no uz sa chova lip... v poho, myslim ze uz je OK, nerobi mi ziadne neprijemne veci.Ty kks to je taky dlhy proces ? konecne uz som po... kvoli jednemu virusu som stratil 24hod,dakujem za pomoc a ochotu.

Re: Facebook virus pls help - ntb

Napsal: 30 říj 2011 10:41
od vyosek
Zalezi jak je havet zazrazna a Vy jste tam toho mel opravdu hodne...

Pokud je na PC jen FB virus a jsem u PC, tak to jde dat do cca hodiny, hodiny a pul do poradku...

Pokud tedy nejsou problemy ci dotazy, je to z me strany vse :)