28 Sie 2009, 19:56
28 Sie 2009, 20:24
28 Sie 2009, 20:25
29 Sie 2009, 11:38
Do a system scan only
w okienku programu pokaże się log
zaznacz kratki przy podanych wpisach
klikasz Fix checkedR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?o=101764&l=dis
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R3 - URLSearchHook: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - (no file)
O2 - BHO: (no name) - {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} - (no file)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O3 - Toolbar: (no name) - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - (no file)
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Archivos de programa\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Policies\Explorer\Run: [8A3199F47DC849D] .vbe
O8 - Extra context menu item: Crawler Search - tbr:iemenu
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe (file missing)
O18 - Protocol: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - (no file)
O24 - Desktop Component 1: (no name) - C:\Documents and Settings\admin\Escritorio\waszslub.htmlFiles to delete:
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
C:\WINDOWS\tasks\OGADaily.job
C:\WINDOWS\tasks\OGALogon.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{44C50C58-04A0-4C0A-996F-5C224BA4C39D}.job
C:\DOCUME~1\admin\CONFIG~1\temp\swreg.exe
Drivers to delete:
NMIndexingService
klikasz na Paste Script from Clipboard
Execute
Potwierdzasz i zgadzasz się na restart klikając OK.Windows Registry Editor Version 5.00
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{bcb43054-8fd2-11dd-96f4-001a4d68419b}]
Zapisz jako
Ustaw rozszerzenie z TXT na Wszystkie pliki
zapisz pod nazwą FIX.REG
uruchom utworzony plik i potwierdź
29 Sie 2009, 21:54
30 Sie 2009, 12:10
30 Sie 2009, 20:51
Instrukcja31 Sie 2009, 23:12
Quarantined and deleted successfully.
Bad: (1) Good: (0)
Quarantined and deleted successfully.
Quarantined and deleted successfully.
Quarantined and deleted successfully.
01 Wrz 2009, 10:17