Just nu i M3-nätverket
Jump to content

Snälla hjälp!


Cläry

Recommended Posts

  • Replies 76
  • Created
  • Last Reply

ok men har du fått något att funka än? cli.exe eller autostore.exe eller har du fått nåt nytt problem ?, för hänger ej med här riktigt :)

 

Link to comment
Share on other sites

Pust, nu har jag gjort en hel del. Jag har kört Malware och Spybot. Försökte efter det att insallera senaste versionen av lava, men fivk då bifogade felmeddelanden.

 

Jag har oxå gjort

"If the NOS files are found, the issue can be mitigated by:"
, men hittar inget ställe att deleta getPlus®helper

 

[bild bifogad 2009-09-04 20:45:52 av Cläry]

[bild raderad 2009-09-04 20:53:07 av Cläry]

[bild bifogad 2009-09-04 20:53:17 av Cläry]

[bild bifogad 2009-09-04 20:53:33 av Cläry]

1158798_thumb.jpg

Link to comment
Share on other sites

Pust, nu har jag kört Malware och Spybot. Försökte efter det att installera senaste Java-versionen men fick då upp bifogade felmeddelanden.

 

Försökte oxå ta bort getPlus®Helper, men ser inte hur jag ska göra det.

 

[bild bifogad 2009-09-04 20:49:23 av Cläry]

1158800_thumb.jpg

Link to comment
Share on other sites

Nu har jag kört Malware och Spybt. Försökte efter det att installera Java, men får bifogade felmeddelanden.

 

Försökte oxå ta bort getPlus®Helper, men hittar inget sätt att göra det på. Bifogar en bild till det oxå.

 

[bild bifogad 2009-09-04 20:52:10 av Cläry]

1158801_thumb.jpg

Link to comment
Share on other sites

Ska säga dej att jag hänger snart inte med själv heller. Problemet från början var att jag inte kan installera ATI =) rätt. Och inte kan fortfarande.

 

Link to comment
Share on other sites

ok :) men kom på en sak , cli.exe har med ati catalys control center och tror ej det programet är nödvändigt att ha , så kolla på lägg till/ta bort program och kolla om du bara kan ta på catalys control center, annars ska det nog finnas drivrutiner utan det med.

 

Link to comment
Share on other sites

hmm , värkar som det är i samma , men kan du säga vad du har för grafik kort och så kan ja kolla up om det finns nån drivers utan catalys CC :) höger klicka bara på skrivbordet och så egenskaper och sen taben inställningar så ska det stå under "skärmen" där vad du har för grafikkort.

 

Link to comment
Share on other sites

men prova som ja sa tidigare , men om inte det skulle funka så har ja hittat endast video drivrutiner för ditt grafikkort, men får man länka på detta forum ?

 

Link to comment
Share on other sites

men får man länka på detta forum
Du får länka till sådant som någon har nytta av.

 

Försökte oxå ta bort getPlus®Helper, men ser inte hur jag ska göra det.
Dubbelklicka på getPlus®Helper och i nästa fönster väljer du Startmetod inaktiverad.

 

När det gäller Java så försök med Offline-filen på

http://java.com/sv/download/manual.jsp

 

Pust, nu har jag kört Malware och Spybot.
Hittade de något?

 

Link to comment
Share on other sites

Då vill jag gärna se loggarna från programmen. I MBAM hittar du loggen på fliken Loggar och i Spybot finns det ett val som heter Recovery.

 

Link to comment
Share on other sites

Okej, men hur ska jag kunna visa spybot-loggen för dej?[log]Malwarebytes' Anti-Malware 1.40

Databasversion: 2738

Windows 5.1.2600 Service Pack 3

 

2009-09-04 10:53:04

mbam-log-2009-09-04 (10-53-04).txt

 

Skanningstyp: Snabb skanning

Antal skannade objekt: 110496

Förfluten tid: 9 minute(s), 54 second(s)

 

Infekterade minnesprocesser: 0

Infekterade minnesmoduler: 0

Infekterade registernycklar: 55

Infekterade registervärden: 1

Infekterade registerdataposter: 0

Infekterade mappar: 17

Infekterade filer: 25

 

Infekterade minnesprocesser:

(Inga illasinnade poster hittades)

 

Infekterade minnesmoduler:

(Inga illasinnade poster hittades)

 

Infekterade registernycklar:

HKEY_CLASSES_ROOT\coresrv.coreservices (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\coresrv.coreservices.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\coresrv.lfgax (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\coresrv.lfgax.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hbcoresrv.dynamicprop (Adware.Hotbar) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hbcoresrv.dynamicprop.1 (Adware.Hotbar) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hbmain.commband (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hbmain.commband.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hbr.hbmain (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hbr.hbmain.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hostie.bho (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hostie.bho.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hostol.mailanim (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hostol.mailanim.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hostol.webmailsend (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\hostol.webmailsend.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\wallpaper.wallpapermanager (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\wallpaper.wallpapermanager.1 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{00b77587-be1b-4201-b8e9-09fcf50ab771} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{1230cf51-6bc4-4a23-b3f1-c7cf0afed619} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{2b81f920-6660-4f76-93bf-b1c67bf5d1a0} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{34e29700-0d13-46aa-b9a5-ace68e21a091} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{3661af2d-c27b-499c-9bcf-66c8502a3806} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{4e8b851b-05b0-4baf-b24d-d0dfe88dded3} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{50c3e2b3-4fd7-4cb9-91f9-641a6e6b3689} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{5a4737a8-b92a-4e54-970e-c2891d98ce3f} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{62b0b239-f9ac-4a5b-bfae-62c7a23f7627} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{726f0ab9-b842-4ae4-90c7-230e233e6a99} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{99123ac9-7dda-4c82-b252-44c2804bf392} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{99ccfb8c-6380-4a14-8fdd-ef3e7e95335d} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{ace99e77-aa2a-43c2-8c9d-caf2020fdf2b} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{b9cc2b92-5611-453f-8381-8b6f72d9c0b8} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{c4543e64-1498-410d-8e72-4744eea99ab9} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Interface\{e0fb1610-b25b-49f6-be20-751b2f230e6f} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{1e0004ec-5df0-48c7-a8f0-fbb0488a3d94} (Adware.Hotbar) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{54a3f8b7-228e-4ed8-895b-de832b2c3959} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{8971cb48-9fca-445a-be77-e8e8a4cc9df7} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{93b0fa7b-50f6-41b4-ac7e-612a72ce8c3c} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{b0cb585f-3271-4e42-88d9-ae5c9330d554} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{b88e4484-3ff6-4ea9-815b-a54fe20d4387} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{bf1bf02c-5a86-4ecf-adac-472c54c4d21e} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{d2221ccb-f2bb-4858-aad4-57c754153603} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\CLSID\{ea0b6a1a-6a59-4a58-9c41-9966504898a5} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Typelib\{08755390-f46d-4d09-968c-3430166b3189} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Typelib\{087c4054-0a2b-4f35-b0db-bed3e21650f4} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Typelib\{229d2451-a617-4b30-b5e8-8138694240cb} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CLASSES_ROOT\Typelib\{c23fa5a4-1fea-419f-8b14-f7465df062bc} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Installer\Products\568267acfc5644dab06f058006ddbae3 (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{93b0fa7b-50f6-41b4-ac7e-612a72ce8c3c} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07aa283a-43d7-4cbe-a064-32a21112d94d} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{54a3f8b7-228e-4ed8-895b-de832b2c3959} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{93b0fa7b-50f6-41b4-ac7e-612a72ce8c3c} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{54a3f8b7-228e-4ed8-895b-de832b2c3959} (Adware.Zango) -> Quarantined and deleted successfully.

HKEY_CURRENT_USER\SOFTWARE\AntiSpywareBot (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

 

Infekterade registervärden:

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{07aa283a-43d7-4cbe-a064-32a21112d94d} (Adware.Zango) -> Quarantined and deleted successfully.

 

Infekterade registerdataposter:

(Inga illasinnade poster hittades)

 

Infekterade mappar:

C:\Documents and Settings\All Users\Application Data\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 (Adware.Seekmo) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Log (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Quarantine (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Registry Backups (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Settings (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32 (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Bin (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Config (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Download (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Download\NVC10041 (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Download\NVC10041\Data (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Download\NVC10041\Data\Bin (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Logs (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Nse (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Nse\Bin (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Temp (Trojan.Agent) -> Quarantined and deleted successfully.

 

Infekterade filer:

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\rs.dat (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Log\2007 Dec 19 - 08_39_30 PM_046.log (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Log\2007 Dec 19 - 08_39_39 PM_140.log (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Log\2007 Dec 20 - 04_32_37 PM_656.log (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Log\2007 Dec 20 - 04_50_43 PM_437.log (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Settings\CustomScan.stg (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Settings\IgnoreList.stg (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Settings\ScanInfo.stg (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Settings\ScanResults.stg (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Settings\SelectedFolders.stg (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\Documents and Settings\Mortitia\Application Data\AntiSpywareBot\Settings\Settings.stg (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Bin\Licwiz.ini (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Bin\ninfo.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Config\Config.ndf (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Download\NVC10041\Ginstall.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Download\NVC10041\GINSTALL.INI (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Download\NVC10041\Data\Bin\D2htls32.dll (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Download\NVC10041\Data\Bin\Delnvc5.exe (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Download\NVC10041\Data\Bin\Ndlg.dll (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Download\NVC10041\Data\Bin\Ndlg.hlp (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Download\NVC10041\Data\Bin\Nlog5.dll (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Logs\nvc00000.log (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Temp\Prefspp.ndf (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\system32\system32\Temp\Relnotes.htm (Trojan.Agent) -> Quarantined and deleted successfully.

C:\WINDOWS\Tasks\AntiSpywareBot Scheduled Scan.job (Rogue.AntiSpywareBot) -> Quarantined and deleted successfully.

[/log]

 

 

 

Link to comment
Share on other sites

Det var en del det. Inte undra på om datorn har blivit lite konstig. Den skulle nog må bra av en ominstallation. Vad säger du om det?

 

Link to comment
Share on other sites

Jo, jag har väl så smått börjat inse att det inte finns så mycket annat att välja på :(

 

Bara att börja skriva ner vilka program man vill ha igen och vilka länkar man ska spara på nätet ;)

 

Suck . . .

 

Link to comment
Share on other sites

Men jag vet inte hur det blir med mitt Norman då. Den nyckeln jag har fungerar inte längre. Dom har bytt utseende på nycklarna.

 

Å andra sidan verkar det ju inte ha fungerat så bra, så man kanske skulle skaffa nåt annat :)

 

Link to comment
Share on other sites

Tyvärr så blir det ofta så med datorer som blir infekterade med mycket. Det var ju synd att det inte syntes något i HijackThis-loggen du klistrade in i början för nu har du ju fått göra en del i onödan.

 

Du kan läsa mina vanliga råd för en säkrare dator, men det är så klart viktigt att man använder sitt förnuft också, så att du har dem till efter ominstallationen.

http://ceblstockholm.googlepages.com/home

 

Link to comment
Share on other sites

När det gäller Normans antivirus så kan du ju alltid kontakta Norman och höra vad som gäller. Men Norman verkar inte höra till de allra bästa programmen längre.

 

Link to comment
Share on other sites

Nej, de två programmen är inte antivirusprogram och har i sina gratisvarianter inget realtidsskydd, dvs de kollar inte varenda fil som sparas på datorn i samma ögonblick som den sparas. Det ser ut som att du har Telia som internetleverantör i HijackThis-loggen och då kan man ju få F-secure (Telia Säker Surf) från dem. F-secure brukar ligga bra till i olika tester.

 

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.




×
×
  • Create New...