![]() |
Проблемы после баннера
Доброго времени суток.
Ловили баннер на ноут, удалили с помощью диска касперского по инструкции на их сайте. Все бы ничего, но вот когда не важно что делаешь на ноутбуке вылетает и быстро исчезает окно cmd с периодичностью минуту-полторы, естесно рассмотреть не удается. Сделал все по инструкции логи прикрепляю |
Осталась ли на ноуте какая нибудь зараза?
|
Скачайте Malwarebytes' Anti-Malware или с зеркала, установите, обновите базы, выберите "Perform Full Scan" ("Полное сканирование"), нажмите "Scan" ("Сканирование"), после сканирования - Ok - Show Results ("Показать результаты") - Откройте лог, скопируйте в Блокнот и прикрепите его к следующему посту.
Если лог не открылся, то найти его можно в следующей папке: Код:
%appdata%\Malwarebytes\Malwarebytes' Anti-Malware\Logs Подробнее читайте в руководстве |
Собственно лог!
|
Код:
Внимание !!! База поcледний раз обновлялась 20.05.2012 необходимо обновить базы при помощи автоматического обновления (Файл/Обновление баз) Пока зловредного не видно. Сделайте лог OTL by OldTimer |
Собственно логи
|
Еще один лог
|
|
alex_sev,
У меня 7 x64 и там только один пользователь, он итак администратор. Сделал как вы написали, вот: ========== PROCESSES ========== ========== OTL ========== 64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ deleted successfully. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ not found. 64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}\ deleted successfully. 64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{27B4851A-3207-45A2-B947-BE8AFE6163AB}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8984B388-A5BB-4DF7-B274-77B879E179DB}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8984B388-A5BB-4DF7-B274-77B879E179DB}\ not found. Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}\ not found. 64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully. Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{109322de-1338-11e1-ad56-ccaf78c408d6}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{109322de-1338-11e1-ad56-ccaf78c408d6}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{109322de-1338-11e1-ad56-ccaf78c408d6}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{109322de-1338-11e1-ad56-ccaf78c408d6}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{109322fc-1338-11e1-ad56-ccaf78c408d6}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{109322fc-1338-11e1-ad56-ccaf78c408d6}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{109322fc-1338-11e1-ad56-ccaf78c408d6}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{109322fc-1338-11e1-ad56-ccaf78c408d6}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2b92af56-701f-11e1-8ba3-78843ce6352e}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2b92af56-701f-11e1-8ba3-78843ce6352e}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{2b92af56-701f-11e1-8ba3-78843ce6352e}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2b92af56-701f-11e1-8ba3-78843ce6352e}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{544c61f0-13f6-11e1-974c-ccaf78c408d6}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{544c61f0-13f6-11e1-974c-ccaf78c408d6}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{544c61f0-13f6-11e1-974c-ccaf78c408d6}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{544c61f0-13f6-11e1-974c-ccaf78c408d6}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{82917a83-5404-11e1-b3de-78843ce6352e}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{82917a83-5404-11e1-b3de-78843ce6352e}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{82917a83-5404-11e1-b3de-78843ce6352e}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{82917a83-5404-11e1-b3de-78843ce6352e}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8cd08048-11ef-11e1-a76c-ccaf78c408d6}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8cd08048-11ef-11e1-a76c-ccaf78c408d6}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8cd08048-11ef-11e1-a76c-ccaf78c408d6}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8cd08048-11ef-11e1-a76c-ccaf78c408d6}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{911919dc-41ef-11e1-8d01-ccaf78c408d6}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{911919dc-41ef-11e1-8d01-ccaf78c408d6}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{911919dc-41ef-11e1-8d01-ccaf78c408d6}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{911919dc-41ef-11e1-8d01-ccaf78c408d6}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ce074dc9-4ff0-11e1-8b85-78843ce6352e}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ce074dc9-4ff0-11e1-8b85-78843ce6352e}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ce074dc9-4ff0-11e1-8b85-78843ce6352e}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ce074dc9-4ff0-11e1-8b85-78843ce6352e}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{dd9f5de0-133c-11e1-8ce5-ccaf78c408d6}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{dd9f5de0-133c-11e1-8ce5-ccaf78c408d6}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{dd9f5de0-133c-11e1-8ce5-ccaf78c408d6}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{dd9f5de0-133c-11e1-8ce5-ccaf78c408d6}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e351aa1f-69e6-11e1-8a0e-001e101fb4df}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e351aa1f-69e6-11e1-8a0e-001e101fb4df}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e351aa1f-69e6-11e1-8a0e-001e101fb4df}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e351aa1f-69e6-11e1-8a0e-001e101fb4df}\ not found. File E:\AutoRun.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\E\ deleted successfully. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\E\ not found. File E:\AutoRun.exe not found. ========== SERVICES/DRIVERS ========== ========== FILES ========== autorun.inf not found in C:\ autorun.exe not found in C:\ recycler not found in C:\ < ipconfig /flushdns /c > Ќ*бва®©Є* Їа®в®Є®«* IP ¤«п Windows Љни б®Ї®бв*ўЁвҐ«п DNS гбЇҐи*® ®зЁйҐ*. C:\Users\Marina\Desktop\cmd.bat deleted successfully. C:\Users\Marina\Desktop\cmd.txt deleted successfully. ========== REGISTRY ========== ========== COMMANDS ========== [EMPTYJAVA] User: All Users User: Default User: Default User User: Marina ->Java cache emptied: 1022360 bytes User: Public User: Все пользователи Total Java Files Cleaned = 1,00 mb [EMPTYFLASH] User: All Users User: Default ->Flash cache emptied: 56502 bytes User: Default User ->Flash cache emptied: 0 bytes User: Marina ->Flash cache emptied: 71071 bytes User: Public User: Все пользователи Total Flash Files Cleaned = 0,00 mb C:\Windows\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully OTL by OldTimer - Version 3.2.49.0 log created on 06192012_113709 |
Как самочувствие системы?
|
alex_sev,
Да вот сейчас сидел смотрел, ничего не вылетает. Спасибо огроменное!!! Подскажите в чем было дело? |
В принципе - я ничего особого не делал - только мусор в реестре почистил
|
Странно, но окно вроде больше не появляется...
|
Ознакомьтесь с этими рекомендациями
|
Время: 02:58. |
Время: 02:58.
© OSzone.net 2001-