It's really depressing! Running on my computer is so arrogant,
The features are as follows:
No suspicious Processes
No service can be created.
TMD can't figure out how it runs, and occasionally generates an advertisement (not every time, but randomly). The initial address is popup.adv.net, and then the page contains a bunch of scripts, after N jumps, the advertisement is displayed !!!!
Shit! Ah, this word is used by foreigners. I Googled it. Of course, when searching for and killing the virus, an advertisement also pops up! -- Fuck me! (This is what I said)
The foreigner's original article is here (I just did what he said): http://bukhory.web.id/internet/shit-popup-from-http-popupadv-net-how-to-fix.html
Me too .........
However, I find a solution to this problem by downloading a soft malwarebytes 'anti-malware, failed!
Poor little worm, locked up by me ~~~
The log is like this
Malwarebytes ' Anti-malware 1.32
Database Version: 1626
Windows 5.1 . 2600 Service Pack 3
2009 - 1 - 7 14 : 55 : 30
MBAM - Log - 2009 - 01 - 07 ( 14 - 55 - 30 Cmd.txt
Scan type: Full scan (C :\|)
Number of scanned objects:111495
Time passed:47Minute (s ),25Second (s)
Number of infected memory processes:0
Number of infected memory modules:0
Number of infected registry entries:1
Number of infected registry values:0
Number of infected registry data items:1
Number of infected folders:0
Number of infected files:3
Number of infected memory processes:
(No harmful items are detected)
Number of infected memory modules:
(No harmful items are detected)
Number of infected registry entries:
Hkey_classes_root \ videosoft (Trojan. dnschanger)->QuarantinedAndDeleted successfully.
Number of infected registry values:
(No harmful items are detected)
Number of infected registry data items:
HKEY_CURRENT_USER \ Software \ Microsoft \ Windows \ CurrentVersion \ Explorer \ Advanced \ start_showmydocs (hijack. startmenu)->Bad :(0) Good :(1)->QuarantinedAndDeleted successfully.
Number of infected folders:
(No harmful items are detected)
Number of infected files:
C: \ windows \ system32 \ msqpdxoasbpfqp. dll (Trojan. Agent)->Delete on Reb
Now, the world is finally clean .....