hello
my computer is infected
my homepage is changed to internet explorer Mozzilla frefox, google chrome
at the address
and I have no deleted
can not install intel chipset is especially the latest version 9.4.0.1026 thank you
Printable View
hello
my computer is infected
my homepage is changed to internet explorer Mozzilla frefox, google chrome
at the address
and I have no deleted
can not install intel chipset is especially the latest version 9.4.0.1026 thank you
Уважаемый(ая) [B]akram fattoum[/B], спасибо за обращение на наш форум!
Помощь в лечении комьютера на VirusInfo.Info оказывается абсолютно бесплатно. Хелперы, в самое ближайшее время, ответят на Ваш запрос. Для оказания помощи необходимо предоставить логи сканирования утилитами АВЗ и HiJackThis, подробнее можно прочитать в [URL="http://virusinfo.info/pravila.html"]правилах оформления запроса о помощи[/URL].
Если наш сайт окажется полезен Вам и у Вас будет такая возможность - пожалуйста [URL="http://virusinfo.info/content.php?r=113-virusinfo.info-donate"]поддержите проект[/URL].
Turn AVZ PM off, close your games and other unnecessary apps. Create log-files again.
HELLO
HAJIKTHIS LOG SCAN AGAIN
And AVZ too.
hello
[URL="http://virusinfo.info/showthread.php?t=7239"][COLOR="#ff0033"][SIZE=3][FONT=Century Gothic]Execute following script in AVZ:[/FONT][/SIZE][/COLOR][/URL]
[CODE]
BEGIN
ClearQuarantine;
SearchRootkit(true, true);
SetAVZGuardStatus(true);
QuarantineFile('c:\progra~1\movies~1\safety~1\safety~2.dll','');
QuarantineFile('C:\Windows\System32\NDF\eventlog.etl','');
QuarantineFile('C:\ProgramData\Microsoft\Windows\Power Efficiency Diagnostics\energy-trace.etl','');
DeleteFileMask('c:\progra~1\movies~1','*',true);
DeleteDirectory('c:\progra~1\movies~1');
BC_ImportDeletedList;
ExecuteSysClean;
BC_Activate;
CreateQurantineArchive(GetAVZDirectory+'quarantine.zip');
RebootWindows(true);
END.
[/CODE]
[B]After reboot[/B], use [URL="http://virusinfo.info/upload_virus.php?tid=149143"]this link[/URL] for uploading "quarantine.zip" file.
Rescan your system with AVZ/HJT and upload new log-files.
HELLO
thank you
I analyzed my computer and this is the log
thank you
Create a log of Adwcleaner:
1. Download and run the [URL="http://general-changelog-team.fr/en/downloads/finish/20-outils-de-xplode/2-adwcleaner"]adwcleaner[/URL].
2. Click "scan" button.
3. Attach file [I]C:\AdwCleaner\AdwCleaner[R0].txt[/I] to your next post.
thank you
HERE IS THE LOG
thank you
Ok.
Now, run Adwcleaner again. Click [B]"scan"[/B] button, after the scan is complete - click [B]"clean"[/B] button. Reboot your computer.
Attach file [I]C:\AdwCleaner\AdwCleaner[S0].txt [/I] to your next post.
HELLO
Now your problem solved?
hello
one problem is corrected but the intel chipset encounters an unknown error and exits during installation despited downolad the intel site and I thank you for sending the installation package
help me please
[quote="akram fattoum;1058976"]but the intel chipset encounters an unknown error and exits during installation despited downolad the intel site and I thank you for sending the installation package[/quote]
Unfortunately, I can't help you with drivers package. Visit Intel official site.
Статистика проведенного лечения:
[LIST][*]Получено карантинов: [B]4[/B][*]Обработано файлов: [B]31[/B][*]В ходе лечения вредоносные программы в карантинах не обнаружены[/LIST]
[QUOTE]is another infection that restore[/QUOTE]
More information, please.
HELLO
THE REPORT FOR INFECTED FILES
THANKS
This is cleanup log file, files has been deleted.
THANK YOU
THE FOLLOWING files ALWAYS RESTORED although the netoiyage is fin
- \ \ Mozilla Firefox v25.0 (en)
[File: C: \ Users \ pc \ AppData \ Roaming \ Mozilla \ Firefox \ Profiles \ 2mfhvnj9.default \ prefs.js]
[File: C: \ Users \ pc \ AppData \ Roaming \ Mozilla \ Firefox \ Profiles \ extensions \ prefs.js]
[File: C: \ Users \ pc \ AppData \ Roaming \ Mozilla \ Firefox \ Profiles \ [opt] rs0 \ prefs.js]
- \ \ Chrome v31.0.1650.48
[File: C: \ Users \ pc \ AppData \ Local \ Google \ Chrome \ User Data \ Default \ preferences]
why??
HELP ME
what the probleme
help me please
[quote="akram fattoum;1059974"]why??[/quote]
Because those files contain browser settings. [B]This is correct[/B], no actions needed.
why kaspersky pure 3 does not detect its infection
I deleted kaspersky pure 3 of my pc and I excute AdwCleaner
# AdwCleaner v3.012 - created at 12/11/2013 9:54:27 p.m. Report
# Updated 11/11/2013 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 ( 32-bit )
# Username : pc - ACER
# Executed from : C: \ Users \ pc \ Downloads \ Programs \ adwcleaner.exe
# Option : Clean
***** [Services] *****
***** [ File / Folder ] *****
Deleted file : C: \ Users \ pc \ AppData \ Local \ SwvUpdater
Deleted file : C: \ Windows \ Tasks \ AmiUpdXp.job
Deleted file: C : \ Windows \ System32 \ Tasks \ AmiUpdXp
***** [ Shortcuts ] *****
***** [ Register ] *****
[#] Key Deleted : HKLM \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ Schedule \ TaskCache \ Logon \ { 5489AC8D - 6FD7 - 446E - 971A - 364B32007B03 }
[#] Key Deleted : HKLM \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ Schedule \ TaskCache \ Tasks \ { 5489AC8D - 6FD7 - 446E - 971A - 364B32007B03 }
Removed key : HKLM \ SOFTWARE \ Classes \ Updater.AmiUpd
Removed key : HKLM \ SOFTWARE \ Classes \ Updater.AmiUpd.1
Removed key : HKLM \ SOFTWARE \ Classes \ CLSID \ { 67BD9EEB - AA06 - 4329 - A940 - D250019300C9 }
Removed key : HKLM \ SOFTWARE \ Classes \ Interface \ { 9EDC0C90 - 2B5B -4512 - 953E - 35767BAD5C67 }
Removed key : HKLM \ SOFTWARE \ Classes \ TypeLib \ { A0EE0278 -2986 - 4E5A - 884th - A3BF0357E476 }
Removed key : HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uninstall \ { 99C91FC5 - DB5B - 4AA0- BB70 - 5D89C5A4DF96 }
***** [Agents] *****
- \ \ Internet Explorer v10.0.9200.16720
- \ \ Mozilla Firefox v25.0 (en)
[File : C: \ Users \ pc \ AppData \ Roaming \ Mozilla \ Firefox \ Profiles \ 2mfhvnj9.default \ prefs.js ]
[File : C: \ Users \ pc \ AppData \ Roaming \ Mozilla \ Firefox \ Profiles \ extensions \ prefs.js ]
[File : C: \ Users \ pc \ AppData \ Roaming \ Mozilla \ Firefox \ Profiles \ [ opt] rs0 \ prefs.js ]
- \ \ Chrome v31.0.1650.48
[File : C: \ Users \ pc \ AppData \ Local \ Google \ Chrome \ User Data \ Default \ preferences ]
thanks
[LIST][*]Download [B]SecurityCheck by glax24[/B] [URL="http://tools.safezone.cc/glax24/SecurityCheck/SecurityCheck.exe"]here[/URL] and save utility on your [I] Desktop [/I][*]Double-click it (For [I]Windows XP[/I] users) or right-click and choose [I]Run As Administrator[/I] (For [I]Windows Vista/7[/I] users)[*]Do not block the utility by [U]your Firewall warnings[/U] (if any).[*]Wait for the end of scan. Log [B]SecurityCheck.txt[/B] will be open in the Notepad;[*]In case you close the Notepad you can find a log in the system root folder named [I]SecurityCheck[/I], for example [I][COLOR="Blue"]C:\SecurityCheck\SecurityCheck.txt[/COLOR][/I][/LIST]
HELLO
THE LOG
THANKS
Install update the links.
Adobe Flash Player 11 ActiveX v.11.9.900.117 [color=red][b]Warning! [url=http://download.macromedia.com/get/flashplayer/current/licensing/win/install_flash_player_11_active_x.exe]Download Update[/url][/b][/color]
Adobe Flash Player 11 Plugin v.11.9.900.117 [color=red][b]Warning! [url=http://download.macromedia.com/get/flashplayer/current/licensing/win/install_flash_player_11_plugin.exe]Download Update[/url][/b][/color]
HELLO
THE LOG
THANKS
What's the problem?
why kaspersky pure 3 does not detect its infection
I deleted kaspersky pure 3 of my pc and I excute AdwCleaner
# AdwCleaner v3.012 - created at 12/11/2013 9:54:27 p.m. Report
# Updated 11/11/2013 by Xplode
# Operating System : Windows 7 Ultimate Service Pack 1 ( 32-bit )
# Username : pc - ACER
# Executed from : C: \ Users \ pc \ Downloads \ Programs \ adwcleaner.exe
# Option : Clean
***** [Services] *****
***** [ File / Folder ] *****
Deleted file : C: \ Users \ pc \ AppData \ Local \ SwvUpdater
Deleted file : C: \ Windows \ Tasks \ AmiUpdXp.job
Deleted file: C : \ Windows \ System32 \ Tasks \ AmiUpdXp
***** [ Shortcuts ] *****
***** [ Register ] *****
[#] Key Deleted : HKLM \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ Schedule \ TaskCache \ Logon \ { 5489AC8D - 6FD7 - 446E - 971A - 364B32007B03 }
[#] Key Deleted : HKLM \ SOFTWARE \ Microsoft \ Windows NT \ CurrentVersion \ Schedule \ TaskCache \ Tasks \ { 5489AC8D - 6FD7 - 446E - 971A - 364B32007B03 }
Removed key : HKLM \ SOFTWARE \ Classes \ Updater.AmiUpd
Removed key : HKLM \ SOFTWARE \ Classes \ Updater.AmiUpd.1
Removed key : HKLM \ SOFTWARE \ Classes \ CLSID \ { 67BD9EEB - AA06 - 4329 - A940 - D250019300C9 }
Removed key : HKLM \ SOFTWARE \ Classes \ Interface \ { 9EDC0C90 - 2B5B -4512 - 953E - 35767BAD5C67 }
Removed key : HKLM \ SOFTWARE \ Classes \ TypeLib \ { A0EE0278 -2986 - 4E5A - 884th - A3BF0357E476 }
Removed key : HKLM \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uninstall \ { 99C91FC5 - DB5B - 4AA0- BB70 - 5D89C5A4DF96 }
***** [Agents] *****
- \ \ Internet Explorer v10.0.9200.16720
- \ \ Mozilla Firefox v25.0 (en)
[File : C: \ Users \ pc \ AppData \ Roaming \ Mozilla \ Firefox \ Profiles \ 2mfhvnj9.default \ prefs.js ]
[File : C: \ Users \ pc \ AppData \ Roaming \ Mozilla \ Firefox \ Profiles \ extensions \ prefs.js ]
[File : C: \ Users \ pc \ AppData \ Roaming \ Mozilla \ Firefox \ Profiles \ [ opt] rs0 \ prefs.js ]
- \ \ Chrome v31.0.1650.48
[File : C: \ Users \ pc \ AppData \ Local \ Google \ Chrome \ User Data \ Default \ preferences ]
thanks
In the antivirus you need to put a check here.
[ATTACH=CONFIG]446696[/ATTACH]