Код:
Registry Keys: 17
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}, , [7afa28774e2d73c301014a15966cc838],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\TYPELIB\{A0EE0278-2986-4E5A-884E-A3BF0357E476}, , [7afa28774e2d73c301014a15966cc838],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\INTERFACE\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}, , [7afa28774e2d73c301014a15966cc838],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\Updater.AmiUpd.1, , [7afa28774e2d73c301014a15966cc838],
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\Updater.AmiUpd, , [7afa28774e2d73c301014a15966cc838],
PUP.Optional.ToolBar.WA, HKLM\SOFTWARE\CLASSES\CLSID\{FE704BF8-384B-44E1-8CF2-8DBEB3637A8A}, , [2153c3dc5d1e6ec8b97daedb6999dd23],
PUP.Optional.ToolBar.WA, HKLM\SOFTWARE\CLASSES\nsWebAlta.WebAltaSearchBar, , [2153c3dc5d1e6ec8b97daedb6999dd23],
PUP.Optional.ToolBar.WA, HKU\S-1-5-21-527237240-861567501-1801674531-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{FE704BF8-384B-44E1-8CF2-8DBEB3637A8A}, , [2153c3dc5d1e6ec8b97daedb6999dd23],
PUP.Optional.ToolBar.WA, HKU\S-1-5-21-527237240-861567501-1801674531-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{61EB20A4-D4D5-4276-A2C9-DCCE8CE9F633}, , [c4b06d325d1e989e62d36920bd4549b7],
Trojan.Agent.CK, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\TNod, , [4b2949568cef0a2c706a822ed62edb25],
PUP.Optional.AppSuper.A, HKLM\SOFTWARE\AppSuper, , [a5cf712eb8c3fb3b885d904724ded32d],
PUP.Optional.VbatesHelper.A, HKLM\SOFTWARE\V-bates, , [1e563a65a3d89d998f404a9a8a781ae6],
PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\webssearchesSoftware, , [452f96098af1d6605e4993434db527d9],
PUP.Optional.ClickNMark.A, HKU\S-1-5-21-527237240-861567501-1801674531-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\click-n-mark, , [591bf5aa0279bf77a76d894d7b8745bb],
PUP.Optional.ClickNMark.A, HKU\S-1-5-21-527237240-861567501-1801674531-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\click-n-mark, , [cfa5e4bb3744c07630e6884ef60ceb15],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-527237240-861567501-1801674531-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, , [5222247bee8d2d09fe2c8a59c63c34cc],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-527237240-861567501-1801674531-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, , [591b8c13ccaf999d57d8a257d52e2ed2],
Registry Values: 2
Trojan.Agent, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER\RUN|26847, C:\DOCUME~1\ALLUSE~1\LOCALS~1\Temp\msqezviii.exe, , [3341128d0c6f2f07ddfd415fea198878]
PUP.Optional.InstallCore.A, HKU\S-1-5-21-527237240-861567501-1801674531-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, zr2X2X1G1S1F2V1S2Q0V, , [591b8c13ccaf999d57d8a257d52e2ed2]
Registry Data:
Hijack.Search, HKU\S-1-5-21-527237240-861567501-1801674531-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, http://webalta.ru/search, Good: (http://www.google.com/), Bad: (http://webalta.ru/search),,[d0a45a45542731057bb3d4c6838108f8]
Hijack.SearchPage, HKU\S-1-5-21-527237240-861567501-1801674531-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, http://webalta.ru/search, Good: (http://www.Google.com/), Bad: (http://webalta.ru/search),,[cea6f1aec9b20f274fe0a9f1b351ef11]
Folders: 4
Trojan.Agent, C:\RECYCLER\S-1-5-21-0243936033-3052116371-381863308-1811, , [ff75d6c9b5c62511a9e50990649e38c8],
Worm.AutoRun, C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1413, , [f57fd2cdfa81cb6b6944a0fc8082eb15],
PUP.Optional.NextLive.A, C:\Documents and Settings\11\Application Data\newnext.me, , [70040996a3d80f2781acc3deba48a45c],
PUP.Optional.NextLive.A, C:\Documents and Settings\11\Application Data\newnext.me\cache, , [70040996a3d80f2781acc3deba48a45c],
Files:
PUP.Optional.NextLive.A, C:\System Volume Information\_restore{56EF1334-5484-4870-82DF-D8BD7AF63F6B}\RP881\A0472739.dll, , [e58fd5cab2c932048564dc7ff70a8a76],
PUP.Optional.NextLive.A, C:\System Volume Information\_restore{56EF1334-5484-4870-82DF-D8BD7AF63F6B}\RP881\A0472740.dll, , [7202712e7efdc472b732560526db52ae],
Trojan.Miner, C:\Documents and Settings\11\Application Data\Microsoft\sys32\minerd.exe, , [92e2326ded8e58de56d268554cb6c937],
PUP.Optional.MailRU.A, C:\Documents and Settings\11\Application Data\Mozilla\Firefox\Profiles\nahd6ha2.default\searchplugins\mailru.xml, , [87edd4cba3d841f5bbfae8ece81a43bd],
Trojan.Miner, C:\Documents and Settings\11\Application Data\Microsoft\sys32\Elevate.exe, , [84f0752aa0db2115abb0967b59abb24e],
Trojan.Miner, C:\Documents and Settings\11\Application Data\Microsoft\sys32\Elevate.pdb, , [ec88b7e805760b2b94c7fb16966eee12],
Misused.Legit, C:\Documents and Settings\11\Application Data\Microsoft\sys32\7za.exe, , [056f7f202f4ca0961549df32c143fc04],
Trojan.Agent, C:\RECYCLER\S-1-5-21-0243936033-3052116371-381863308-1811\Desktop.ini, , [ff75d6c9b5c62511a9e50990649e38c8],
Worm.AutoRun, C:\RECYCLER\S-1-5-21-0243556031-888888379-781863308-1413\Desktop.ini, , [f57fd2cdfa81cb6b6944a0fc8082eb15],
PUP.Optional.NextLive.A, C:\Documents and Settings\11\Application Data\newnext.me\nengine.cookie, , [70040996a3d80f2781acc3deba48a45c],
PUP.Optional.NextLive.A, C:\Documents and Settings\11\Application Data\newnext.me\cache\spark.bin, , [70040996a3d80f2781acc3deba48a45c],
После удаления ещё раз просканируйте и прикрепите к своему сообщению новый лог.