Baggrundsskærm på skrivebord kan ikke fjernes
Problem: Min baggrundsskærm på skrivebordet bliver skjult af den nedenstående meddelelse, som popper op på en sort baggrund!WARNING!
YOU'RE IN DANGER!
ALL YOU DO WITH COMPUTER IS STORED FOREVER IN YOUR HARD DISK. WHEN YOU VISIT SITES, SEND EMAILS... ALL YOUR ACTIONS ARE LOGGED. AND IT IS IMPOSSIBLE TO REMOVE THEM WITH STANDARD TOOLS. YOUR DATA IS STILL AVAILABLE FOR FORENSICS. AND IN SOME CASES FOR YOUR BOSS, YOUR FRIENDS, YOUR WIFE, YOUR CHILDREN.
Every site you or somebody or even something, like spyware, opened in your browser, with all images, and all downloaded and maybe later removed movies or mp3 songs - ARE STILL THERE and could broke your life!
SECURE YOURSELF RIGHT NOW!
Removal instructions
Hvis jeg klikker på ”Removal instructions” ovenfor åbnes en side på adr:
http://213.159.117.130/?affid=NAT-13, hvor der står man kan få hjælp til at slippe af med eks. Trojaner. Hvis man åbner disse havner man på nogle porno sider!
Jeg har scannet min computer med Trojanhunter og Trojanhunter skriver efter scanning:
Registry scan
Registry key exists: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DyFuCA (matches Adware.AvenueMedia.Dyfuca.102)
Registry key exists: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Optimizer (matches Adware.AvenueMedia.InternetOptimizer.100)
Registry key exists: HKEY_LOCAL_MACHINE\SOFTWARE\Avenue Media\Internet Optimizer (matches Adware.AvenueMedia.InternetOptimizer.100)
Registry key exists: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YourSiteBar (matches Adware.IST-YourSiteBar.100)
Registry key exists: HKEY_CLASSES_ROOT\CLSID\{39DA2444-065F-47CB-B27C-CCB1A39C06B7} (matches Adware.MediaTickets.103)
Registry key exists: HKEY_CLASSES_ROOT\Interface\{81EB72D7-3949-450F-B035-DE599959814F} (matches Adware.MediaTickets.103)
Registry key exists: HKEY_CLASSES_ROOT\Interface\{3E4C3E0B-6BBE-4C94-86CA-6F055A989693} (matches Adware.MediaTickets.103)
Registry key exists: HKEY_CLASSES_ROOT\CLSID\{9EB320CE-BE1D-4304-A081-4B4665414BEF} (matches Adware.MediaTickets.103)
Registry key exists: HKEY_CLASSES_ROOT\TypeLib\{46605C8C-D306-4E2D-B367-9B53690CB867} (matches Adware.MediaTickets.103)
Registry key exists: HKEY_CLASSES_ROOT\MEDIATICKETSINSTALLER.MediaTicketsInstallerCtrl.1 (matches Adware.MediaTickets.103)
Inifile scan
No suspicious entries found
Port scan
No suspicious open ports found
Memory scan
No trojans found in memory
File scan (autostarted files, running executables)
Found possible trojan file: C:\windows\system32\taskmgn.exe (Suspicious: UPX-packed file in Windows System folder) (What's a possible trojan file?) (Submit for analysis...) (Add to ignore list)
Found possible trojan file: C:\windows\system32\taskmgn.exe (Suspicious: UPX-packed file in Windows System folder) (What's a possible trojan file?) (Submit for analysis...) (Add to ignore list)
No trojan files found
Hvordan kan jeg mon få denne uønskede baggrundsskærm væk?
VH Morten