-
Вложений: 1
trojan
hello,
1.kaspersky sees at least 3 troyans but it is unabble to remove them.
2.Thirteen windows appear systematically when computer starts
3.Streaming videos are very slow
4.CPU is running at 100 percent when playing a short video
5.I tried differents things with the help of different forums for the second,the third and forth points wich led me to the probability of having virus in my system.
Sorry for my english,
Cordially,
thomas.
-
Welcome!
1. What are the names of viruses and where kaspersky detect your viruses (i mean,the exact location) ?
Have you tried to launch avptool in safe mode ( push F8 after restart) and clean the computer with it in automatic mode? Do it now. If you did it already, try [url=http://www.freedrweb.com/download+cureit/gr/]CureIt[/url] in safe mode.
2.What is the disk I in your system? If it some removable disk on key, and you have it.--> Please press on Shift and hold it, then connect this device to your computer.
3. Disable avast and disconnect from internet, execute this script
in avptool:
[code]
begin
SearchRootkit(true, true);
SetAVZGuardStatus(True);
QuarantineFile('C:\Program Files\Web Technologies\iebtm.exe','');
QuarantineFile('C:\WINDOWS\system32\ezSP_Px.exe','');
QuarantineFile('I:\autorun.inf','');
DelBHO('{00000001-C003-4A2F-9142-7CB1D78DE6C1}');
DelBHO('{5C255C8A-E604-49b4-9D64-90988571CECB}');
DelBHO('{8D9C7B8D-0C90-B55C-50B3-468F286DDC2A}');
DelBHO('{D46BEAA4-A304-40B3-A9DA-EC7F7F501F25}');
DelBHO('{65742936-8079-408B-9F3C-874B78030A72}');
BC_ImportAll;
BC_Activate;
SetAVZPMStatus(True);
ExecuteRepair(6);
ExecuteRepair(8);
ExecuteRepair(9);
RebootWindows(true);
end.
[/code]
4.After reboot execute following script in Manual Cure
[code]
begin
CreateQurantineArchive('C:\quarantine.zip');
end.
[/code]
5.Upload the C:\quarantine.zip over the link [COLOR="Red"][B]Upload quarantined files[/B][/COLOR] on the top of this page.
Let us know, when you will done.
P.s. Do you intend in near future to update your Windows? Otherwise, it is a good chance to catch malware on every connection to the Internet.:)
-
here is the list
not found: Trojan program Backdoor.Win32.UltimateDefender.kf File: C:\Documents and Settings\gl\Local Settings\Application Data\kjacaaaa.exe//PE_Patch.UPX//UPX
not found: Trojan program Backdoor.Win32.UltimateDefender.kf File: C:\Documents and Settings\gl\Local Settings\Application Data\nonaaaaa.exe//PE_Patch.UPX//UPX
not found: Trojan program Trojan-Downloader.HTML.IFrame.abw File: C:\Documents and Settings\gl\Local Settings\Application Data\P2P_Energy\rss\http___www_worldnova_org_rss_php_cat=1.xml
thank you for your quick answer,
i'm gonna try what you told me
cordially,
Thomas.
[size="1"][color="#666686"][B][I]Добавлено через 1 час 31 минуту[/I][/B][/color][/size]
I have sent the quarantined zip file:
File saved as 091020_224417_quarantine_4ade0501a81ea.zip
File size 16228
MD5 8c93f83467e30fb721a044fd090d523f
Disk I is a removable hard disk,i don't think it is the source of the problem because it is not plugged all the time.When it's not i have the same problems.
Many thanks in advance.
-
Please run some program for temporary files cleaning. I like: [url]http://www.ccleaner.com/download/builds/downloadbinportable[/url] Just unzip it to new folder, and click on exe...Then click on button [B]Run Ccleaner[/B].
Only after cleaning, please make an another log with avptool like you did in your first post and attach it to next post, i would like to see the difference between them.
Page generated in 0.01126 seconds with 10 queries