Созданные ответы форума
-
АвторСообщения
-
Malwarebytes’ Anti-Malware 1.44
Версия базы данных: 3526
Windows 5.1.2600 Service Pack 3
Internet Explorer 7.0.5730.1309.01.2010 17:10:45
mbam-log-2010-01-09 (17-10-45).txtТип проверки: Полная (C:|D:|E:|F:|G:|H:|J:|K:|)
Проверено объектов: 295774
Прошло времени: 1 hour(s), 26 minute(s), 17 second(s)Заражено процессов в памяти: 0
Заражено модулей в памяти: 0
Заражено ключей реестра: 37
Заражено значений реестра: 3
Заражено параметров реестра: 2
Заражено папок: 15
Заражено файлов: 39Заражено процессов в памяти:
(Вредоносные программы не обнаружены)Заражено модулей в памяти:
(Вредоносные программы не обнаружены)Заражено ключей реестра:
HKEY_CLASSES_ROOTCLSID{014da6c9-189f-421a-88cd-07cfe51cff10} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypeLib{0494d0d0-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{0494d0d4-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{0494d0d6-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{0494d0da-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{0494d0dc-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{014da6cd-189f-421a-88cd-07cfe51cff10} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{0494d0d1-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{0494d0d1-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtSettings{0494d0d1-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{0494d0d1-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{0494d0d2-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{0494d0d3-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{0494d0d5-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{0494d0d7-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{0494d0d9-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{0494d0d9-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtSettings{0494d0d9-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{0494d0db-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypeLib{a04d524d-d4d6-4230-975f-648f8a658d4f} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{39ae719a-b3ae-4711-8143-65cd1f97dc7c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{bbe36a96-c9c4-492f-a5e2-c0a9e6db687b} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{825e5863-834c-4c9e-861a-5402fb2fa854} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypeLib{d6c8acd0-c524-4dd9-87be-84e6e01fee63} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{25642628-2705-43d4-adde-68922c0e6ba7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{2564262a-2705-43d4-adde-68922c0e6ba7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{25642629-2705-43d4-adde-68922c0e6ba7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{465bb38f-2b83-43e1-bde1-5f413d014350} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{d6c8acd2-c524-4dd9-87be-84e6e01fee63} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypeLib{04079850-5845-4dea-848c-3ecd647aa554} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{04079851-5845-4dea-848c-3ecd647aa554} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{04079851-5845-4dea-848c-3ecd647aa554} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtSettings{04079851-5845-4dea-848c-3ecd647aa554} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{04079851-5845-4dea-848c-3ecd647aa554} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREVkontakte (Trojan.Fkantakte) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMyWay (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREFun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.Заражено значений реестра:
HKEY_CURRENT_USERSOFTWAREMicrosoftInternet ExplorerToolbarWebBrowser{0494d0d9-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar{0494d0d9-f8e0-41ad-92a3-14154ece70ac} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionPoliciesExplorerforceclassiccontrolpanel (Hijack.ControlPanelStyle) -> Quarantined and deleted successfully.Заражено параметров реестра:
HKEY_LOCAL_MACHINESystemCurrentControlSetServicesBITSImagePath (Hijack.WindowsUpdates) -> Bad: (%fystemRoot%system32svchost.exe -k netsvcs) Good: (%SystemRoot%System32svchost.exe -k netsvcs) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESystemCurrentControlSetServiceswuauservImagePath (Hijack.WindowsUpdates) -> Bad: (%fystemroot%system32svchost.exe -k netsvcs) Good: (%SystemRoot%System32svchost.exe -k netsvcs) -> Quarantined and deleted successfully.Заражено папок:
C:Program FilesFunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesFunWebProductsMyWay (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesFunWebProductsMyWayCache (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesFunWebProductsPopSwatr (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesFunWebProductsPopSwatrHistory (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWay (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBar1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarCache (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarHistory (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarSettings (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaySrchAstt (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaySrchAstt1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaySrchAsttCache (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaySrchAsttSettings (Adware.MyWebSearch) -> Quarantined and deleted successfully.Заражено файлов:
C:Program FilesMyWaymyBar1.binMYBAR.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesSteinbergNuendo 3UNWISE.EXE (Malware.Packer.Morphine) -> Not selected for removal.
K:Distribinterneticqmiranda.5.1Miranda_LEM_PackPluginsautorun.dll (Malware.Packer.Morphine) -> Quarantined and deleted successfully.
K:DistribmultimediaplayersDVDWin DVD-7Keymaker.exe (Trojan.Downloader) -> Not selected for removal.
K:DistribmultimediaplayersvideoBSPlayer Pro v2.22.952keygen.exe (Trojan.Downloader) -> Not selected for removal.
K:Distribmultimediaобраб.аудиоSound forgeSound Forge v8.0keygen.exe (Trojan.Downloader) -> Not selected for removal.
K:Distribmultimediaобраб.аудиоSound forgeSSF-9.0RusSound_Forge_9.0a_Build_297crackKeygen.exe (Trojan.Downloader) -> Not selected for removal.
K:DistribчасыClockAnalogue Vista Clock 1.07 + SkinsSkinsClassicSkinpack.exe (Trojan.Downloader) -> Not selected for removal.
K:DistribTotal Commander 7.02PluginsarcDefault.sfx (Malware.Packer) -> Not selected for removal.
K:DistribTotal Commander 7.02UtilsfitWfitW.exe (Malware.Packer) -> Not selected for removal.
K:System Volume Information_restore{A9BFFF76-3A6E-4C9D-A776-644D98A88844}RP280A0062100.exe (Malware.Packer) -> Quarantined and deleted successfully.
C:Program FilesFunWebProductsMyWayCacheCursorManiaBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesFunWebProductsMyWayCacheSmileyCentralBtn.html (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesFunWebProductsPopSwatrHistorynotallow (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBar1.binMWHTMLMU.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBar1.binMY2NS.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBar1.binMYPOPSWT.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBar1.binMYWAYPLUGINPROXY.CLASS (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBar1.binNPMYWAY.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBar1.binPARTNER.DAT (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBar1.binPARTNER2.DAT (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarCache0E6C67D (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarCache0E6CDC1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarCache0E6CEF9.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarCache0E6D0DE.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarCache0E6D245.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarCache0E6D37D.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarCache0E6D4A6.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarCache0E6D5C0.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarCache0E6D6D9.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarCachefiles.ini (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarHistorysearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaymyBarSettingsprevcfg.htm (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaySrchAstt1.binMYSRCHAS.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaySrchAstt1.binPARTNER.DAT (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaySrchAsttCache0D5FB6B (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaySrchAsttCachefiles.ini (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Program FilesMyWaySrchAsttSettingsprevcfg.htm (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:Documents and SettingsYuraApplication Datawiaserva.log (Malware.Trace) -> Quarantined and deleted successfully.Сразу после перезагрузки машины есть возможность открыть только одно окно поверх этого баннера (по крайней мере, так было у меня). При открытии других окон, проклятый баннер снова оказывается сверху. Клавиша F8 не реагировала, поэтому откат производился вышеуказанным способом. Попробуйте! 😀
Через меню Пуск — Все программы — Стандартные — Служебные — Восстановление системы
Вот как-то так -
АвторСообщения

