Сделал все как описано в инструкции выше:
http://exfile.ru/124457 - virusinfo_syscheck.zip.
http://exfile.ru/124463 - лог прогри Malwarebytes' Anti-Malware (после проверки нашло трояна и еще что, скрин -
http://exfile.ru/124466
------------------------------------------------------------------------------------
Что касается этого - "C:\Program Files\Garena\plugins\UI\safedrv.sys
проверьте на virustotal.com результат сообщите." Скопировал то что было написано после проверки:
User:
Anonymous
Reputation:
1 credits
Comment date:
2010-08-15 12:04:50 (UTC)
I'm not sure what Microsoft's detection of this program is supposed to indicate (Program:Win32/RegCure).
Tags: regcure, program
dbeb6c555f9b2d36ad0fd1877bd7803fccb9e7b602681e8de6 87ce03e437c1d0
Was this comment helpful? Yes (0) | No (0) | Report abuse
User:
BugBopperGuy
Reputation:
7 credits
Comment date:
2010-09-07 14:10:17 (UTC)
BugBopper identifies this file as AdWare.Win32.ZenoSearch.o More info:
http://BugBopper.com/MD5/04/0449c573...f36be053a4.asp
Tags: zenosearch, program
bb49fa068baa01f0e33b8bc4e28591152a39ec121eba9cf344 2d192fc35257a4
Was this comment helpful? Yes (0) | No (0) | Report abuse
User:
BugBopperGuy
Reputation:
7 credits
Comment date:
2010-09-08 02:46:22 (UTC)
BugBopper identifies this file as AdWare.Win32.BHO.hxs More info:
http://BugBopper.com/MD5/04/04564d92...bb46d6f11a.asp
Tags: cinmus, memscan, program
e02e7abe1f51b230f8bac99cc2fc52565b1ecdc94169198def 387f2f84ca804f
Was this comment helpful? Yes (0) | No (0) | Report abuse
User:
BugBopperGuy
Reputation:
7 credits
Comment date:
2010-09-08 02:46:34 (UTC)
BugBopper identifies this file as Backdoor.Win32.Wdoor.11 More info:
http://BugBopper.com/MD5/3a/3a7d5f76...7eeb29bda8.asp
Tags: wdoor, 168014, program
67a82a7a7f4d1c8071888288b29809efc50c2e63f48a3a3290 3c847517abdbe7
Was this comment helpful? Yes (0) | No (0) | Report abuse
User:
BugBopperGuy
Reputation:
7 credits
Comment date:
2010-09-08 02:47:33 (UTC)
BugBopper identifies this file as Backdoor.Win32.WMRemote More info:
http://BugBopper.com/MD5/65/651d59cb...92c09bf989.asp
Tags: wmremote, program, 405504
e5b6eb4e005b62eae96e4a4b9e6d2f0e49fe36f04befccdb81 be0fabbea980ac