Elektroda.pl
Elektroda.pl
X
Please add exception to AdBlock for elektroda.pl.
If you watch the ads, you support portal and users.

Nation Zoom - jak to usunac ?

baru90 21 Jan 2014 10:05 2994 10
  • #1
    baru90
    Level 2  
    Mam problem z Nation Zoom i nie wiem jak skasować tego wirusa ;/ Używałem Malwarebytes i cclener. Teraz korzystam z OTL jednak nie wiem co wpisać w tabelkę "skrypt". W zał±czniku przesyłam plik wygenerowany przez OTL. Bardzo proszę o pomoc
  • #2
    Kolobos
    IT specialist
    Odinstaluj:
    AVG PC TuneUp 2014
    McAfee Security Scan
    BatBrowse
    Mobogenie
    BonanzaDeals

    Uzyj AdwCleaner, opcja Scan i Clean/Szukaj i Usun:
    http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/2-adwcleaner

    Zrob pelny skan przy pomocy mbam i usun to co wykryje.

    Wykonaj skrypt w OTL:

    :OTL
    PRC - [2014/01/20 19:10:45 | 000,493,568 | ---- | M] (Cherished Technololgy LIMITED) -- C:\ProgramData\WPM\wprotectmanager.exe
    PRC - [2014/01/16 16:51:35 | 000,097,056 | ---- | M] () -- C:\Program Files (x86)\BatBrowse\bin\utilBatBrowse.exe
    PRC - [2014/01/14 10:04:32 | 000,508,016 | ---- | M] (Cherished Technololgy LIMITED) -- C:\ProgramData\IePluginService\PluginService.exe
    PRC - [2013/12/13 08:40:31 | 000,761,024 | ---- | M] () -- C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
    SRV - [2014/01/20 21:41:29 | 000,146,920 | ---- | M] (SaveSense) [On_Demand | Stopped] -- C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe -- (savesenselivem)
    SRV - [2014/01/20 21:41:29 | 000,146,920 | ---- | M] (SaveSense) [Auto | Stopped] -- C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe -- (savesenselive)
    SRV - [2014/01/20 19:10:45 | 000,493,568 | ---- | M] (Cherished Technololgy LIMITED) [Auto | Running] -- C:\ProgramData\WPM\wprotectmanager.exe -- (Wpm)
    SRV - [2014/01/16 16:51:35 | 000,097,056 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\BatBrowse\bin\utilBatBrowse.exe -- (Util BatBrowse)
    SRV - [2014/01/16 16:47:20 | 000,097,056 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\BatBrowse\updateBatBrowse.exe -- (Update BatBrowse)
    SRV - [2014/01/14 10:04:32 | 000,508,016 | ---- | M] (Cherished Technololgy LIMITED) [Auto | Running] -- C:\ProgramData\IePluginService\PluginService.exe -- (IePluginService)
    SRV - [2013/11/05 15:20:24 | 000,148,976 | ---- | M] (BonanzaDeals) [On_Demand | Stopped] -- C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe -- (bonanzadealslivem)
    SRV - [2013/11/05 15:20:24 | 000,148,976 | ---- | M] (BonanzaDeals) [Auto | Stopped] -- C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe -- (bonanzadealslive)
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.nationzoom.com/?type=hp&ts=1390241419&from=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.nationzoom.com/web/?type=ds&ts=139...rom=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123&q={searchTerms}
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.nationzoom.com/web/?type=ds&ts=139...rom=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123&q={searchTerms}
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.nationzoom.com/?type=hp&ts=1390241419&from=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123
    IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
    IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE:64bit: - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.nationzoom.com/web/?type=ds&ts=139...rom=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123&q={searchTerms}
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.nationzoom.com/?type=hp&ts=1390241419&from=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.nationzoom.com/web/?type=ds&ts=139...rom=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123&q={searchTerms}
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.nationzoom.com/web/?type=ds&ts=139...rom=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123&q={searchTerms}
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.nationzoom.com/?type=hp&ts=1390241419&from=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123
    IE - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=SMSTDF&pc=MASM&src=IE-SearchBox
    IE - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.nationzoom.com/web/?type=ds&ts=139...rom=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123&q={searchTerms}
    IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&crg=3.1010000&st=12&q={searchTerms}&barid={901EA379-B2C8-11E1-8EC4-D4C3AE173F28}
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.nationzoom.com/?type=hp&ts=1390241419&from=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.nationzoom.com/web/?type=ds&ts=139...rom=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123&q={searchTerms}
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.nationzoom.com/web/?type=ds&ts=139...rom=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123&q={searchTerms}
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.nationzoom.com/?type=hp&ts=1390241419&from=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
    IE - HKCU\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
    IE - HKCU\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.nationzoom.com/web/?type=ds&ts=139...rom=amt&uid=SAMSUNGXHM321HI_S26VJ9DB134123&q={searchTerms}
    IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={sear
    IE - HKCU\..\SearchScopes\{6B24C811-421C-459A-90A5-EE6D52DDD73F}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
    IE - HKCU\..\SearchScopes\{73660DE8-D7D2-4E44-98F6-BC6664B47062}: "URL" = http://www.bing.com/search?FORM=SMSTDF&PC=MASM&q={searchTerms}&src=IE-SearchBox
    IE - HKCU\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&crg=3.1010000&st=12&q={searchTerms}&barid={901EA379-B2C8-11E1-8EC4-D4C3AE173F28}
    IE - HKCU\..\SearchScopes\zbani: "URL" = http://zbani.com/en/get/{searchTerms}
    FF - prefs.js..browser.search.defaultenginename: "nationzoom"
    FF - prefs.js..browser.search.selectedEngine: "nationzoom"
    FF - prefs.js..extensions.enabledAddons: firefox%40batbrowse.com:1.0.0
    FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:2.8
    FF - prefs.js..keyword.URL: "http://search.sweetim.com/search.asp?src=2&barid={901EA379-B2C8-11E1-8EC4-D4C3AE173F28}&q="
    FF - prefs.js..sweetim.toolbar.previous.keyword.URL: "http://zbani.com/en/get/"
    FF - HKLM\Software\MozillaPlugins\@mcafee.com/McAfeeMssPlugin: C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
    FF - HKLM\Software\MozillaPlugins\@tools.bdupdater.com/BonanzaDealsLive Update;version=3: C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals)
    FF - HKLM\Software\MozillaPlugins\@tools.bdupdater.com/BonanzaDealsLive Update;version=9: C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals)
    FF - HKLM\Software\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=3: C:\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll (SaveSense)
    FF - HKLM\Software\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=9: C:\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll (SaveSense)
    [2014/01/20 21:40:39 | 000,000,000 | ---D | M] (SaveSense) -- C:\Users\Ka¶ka\AppData\Roaming\mozilla\Firefox\Profiles\ehlxrzq7.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}
    [2013/10/22 20:29:14 | 000,007,817 | ---- | M] () (No name found) -- C:\Users\Ka¶ka\AppData\Roaming\mozilla\firefox\profiles\ehlxrzq7.default\extensions\firefox@batbrowse.com.xpi
    [2011/09/27 12:02:31 | 000,001,832 | ---- | M] () -- C:\Users\Ka¶ka\AppData\Roaming\mozilla\firefox\profiles\ehlxrzq7.default\searchplugins\bing.xml
    [2013/01/18 18:46:05 | 000,004,009 | ---- | M] () -- C:\Users\Ka¶ka\AppData\Roaming\mozilla\firefox\profiles\ehlxrzq7.default\searchplugins\sweetim.xml
    File not found (No name found) -- C:\USERS\KAśKA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\EHLXRZQ7.DEFAULT\EXTENSIONS\FIREFOX@BATBROWSE.COM.XPI
    [2014/01/20 19:10:20 | 000,000,558 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\nationzoom.xml
    [2012/05/05 17:57:51 | 000,002,415 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\v9.xml
    CHR - Extension: BatBrowse = C:\Users\Ka¶ka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccncljhbalbbkkfgopogabimepmfkmff\1.0.0_2\
    CHR - Extension: SweetIM for Facebook = C:\Users\Ka¶ka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_2\Copy of
    CHR - Extension: SweetIM for Facebook = C:\Users\Ka¶ka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_2\
    CHR - Extension: BatBrowse = C:\Users\Ka¶ka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccncljhbalbbkkfgopogabimepmfkmff\1.0.0_2\
    CHR - Extension: SweetIM for Facebook = C:\Users\Ka¶ka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_2\Copy of
    CHR - Extension: SweetIM for Facebook = C:\Users\Ka¶ka\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_2\
    O2 - BHO: (SaveSense) - {0f21b1e5-5afc-43c9-9c66-515046e92ec2} - C:\Program Files (x86)\SaveSense\SaveSenseIE.dll (SaveSense)
    O2 - BHO: (IETabPage Class) - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\SupTab\SupTab.dll (Thinknice Co. Limited)
    O2 - BHO: (BatBrowse) - {b67b3dbb-c1c9-49d2-b016-2748b0b5017e} - C:\Program Files (x86)\BatBrowse\BatBrowsebho.dll (BatBrowse)
    O2 - BHO: (Bing Bar BHO) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll (Microsoft Corporation)
    O2 - BHO: (BonanzaDeals) - {fe063412-bea4-4d76-8ed3-183be6220d17} - C:\Program Files (x86)\BonanzaDeals\BonanzaDealsIE.dll (BonanzaDeals)
    O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe ()
    O4 - HKCU..\Run: [NextLive] C:\Users\Ka¶ka\AppData\Roaming\newnext.me\nengine.dll (NewNextDotMe)
    O4 - Startup: C:\Users\Ka¶ka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\lollipop.lnk = File not found
    O4 - Startup: C:\Users\Ka¶ka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SPEED CON ...z nami szybciej.lnk = File not found
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab (Java Plug-in 1.6.0_27)
    O16 - DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab (Java Plug-in 1.6.0_27)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab (Java Plug-in 1.6.0_27)
    [2014/01/20 21:41:31 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\AppData\Local\SaveSenseLive
    [2014/01/20 21:41:31 | 000,000,000 | ---D | C] -- C:\ProgramData\SaveSenseLive
    [2014/01/20 21:41:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SaveSenseLive
    [2014/01/20 21:41:26 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\AppData\Roaming\SaveSense
    [2014/01/20 21:40:37 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense
    [2014/01/20 21:40:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SaveSense
    [2014/01/20 21:40:27 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\AppData\Roaming\OpenCandy
    [2014/01/20 21:40:16 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\AppData\Roaming\rmi
    [2014/01/20 19:10:57 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginService
    [2014/01/20 19:10:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SupTab
    [2014/01/20 19:10:45 | 000,000,000 | ---D | C] -- C:\ProgramData\WPM
    [2014/01/20 19:10:03 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop
    [2014/01/06 00:02:46 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\.android
    [2014/01/06 00:02:44 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\AppData\Roaming\newnext.me
    [2014/01/06 00:02:43 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\Documents\Mobogenie
    [2014/01/06 00:02:43 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\AppData\Local\Mobogenie
    [2014/01/06 00:02:43 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\AppData\Local\genienext
    [2014/01/06 00:02:43 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\AppData\Local\cache
    [2014/01/06 00:02:03 | 000,000,000 | ---D | C] -- C:\Users\Ka¶ka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
    [2014/01/06 00:01:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mobogenie
    [2014/01/21 09:41:03 | 000,000,294 | ---- | M] () -- C:\Windows\tasks\SaveSense.job
    [2014/01/21 09:30:31 | 000,000,356 | ---- | M] () -- C:\Windows\tasks\AmiUpdXp.job
    [2014/01/21 09:30:30 | 000,000,926 | ---- | M] () -- C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineCore.job
    [2014/01/21 09:30:30 | 000,000,920 | ---- | M] () -- C:\Windows\tasks\BonanzaDealsLiveUpdateTaskMachineCore.job
    [2014/01/21 09:25:01 | 000,000,924 | ---- | M] () -- C:\Windows\tasks\BonanzaDealsLiveUpdateTaskMachineUA.job
    [2014/01/21 09:20:04 | 000,000,290 | ---- | M] () -- C:\Windows\tasks\FoxTab.job
    [2014/01/20 22:46:02 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineUA.job
    [2014/01/20 21:31:56 | 000,001,096 | ---- | M] () -- C:\Users\Ka¶ka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\lollipop.lnk
    [2014/01/20 21:41:49 | 000,000,930 | ---- | C] () -- C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineUA.job
    [2014/01/20 21:41:40 | 000,000,926 | ---- | C] () -- C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineCore.job
    [2014/01/20 21:41:27 | 000,000,294 | ---- | C] () -- C:\Windows\tasks\SaveSense.job
    [2014/01/20 19:10:03 | 000,001,096 | ---- | C] () -- C:\Users\Ka¶ka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\lollipop.lnk
    [2014/01/20 19:09:51 | 000,000,356 | ---- | C] () -- C:\Windows\tasks\AmiUpdXp.job

    :Commands
    [emptytemp]

    Po wykonaniu daj nowy log ze skanowania.
  • #3
    baru90
    Level 2  
    Kolobos Dzięki za pomoc :) wszystko działa :):):) Jeste¶ moim dłużnikiem i masz u mnie flaszkę :) kontakt na priv ;)

    Dodano po 42 [sekundy]:

    Kolobos Miło być jestem Twoim dłużnikiem:P
  • #5
    Kolobos
    IT specialist
    Odinstaluj: Google Toolbar for Internet Explorer

    Wykonaj skrypt w OTL:

    :OTL
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.nationzoom.com/?type=hp&ts=1385760...gs&uid=ST500LT012-9WS142_S0V20AGRXXXXS0V20AGR
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.nationzoom.com/web/?type=ds&ts=138...uid=ST500LT012-9WS142_S0V20AGRXXXXS0V20AGR&q={searchTerms}
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.nationzoom.com/web/?type=ds&ts=138...uid=ST500LT012-9WS142_S0V20AGRXXXXS0V20AGR&q={searchTerms}
    IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.nationzoom.com/?type=hp&ts=1385760...gs&uid=ST500LT012-9WS142_S0V20AGRXXXXS0V20AGR
    IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
    IE - HKU\S-1-5-21-2903339859-2823461398-3521891710-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.co.uk/
    IE - HKU\S-1-5-21-2903339859-2823461398-3521891710-1001\..\SearchScopes,DefaultScope = {A4D999A7-9F27-4A98-992D-D27C6921C2C8}
    O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O4 - HKU\S-1-5-21-2903339859-2823461398-3521891710-1001..\Run: [Facebook Update] C:\Users\AVANS\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
    [2014-02-01 21:55:48 | 000,000,000 | ---D | C] -- C:\AdwCleaner
    [2014-02-01 21:18:03 | 000,000,944 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-2903339859-2823461398-3521891710-1001UA.job
    [2014-01-31 12:18:02 | 000,000,922 | ---- | M] () -- C:\windows\tasks\FacebookUpdateTaskUserS-1-5-21-2903339859-2823461398-3521891710-1001Core.job
  • #6
    NaGla
    Level 2  
    Serdecznie dziękuję za odpowiedĽ Kolobos ale niestety nadal wy¶wietla mi się nation zoom:(
  • #7
    mackos_2
    Level 21  
    Usuń skróty przegl±darek i utwórz je na nowo.
  • #10
    Acorus 20
    Level 43  
    cetbal versus
    załóżcie osobne tematy bo robi się bałagan.
  • #11
    NaGla
    Level 2  
    mackos_2 Dziękuję wszystko wróciło do normy! Jestem kompletnie zielona w tych sprawach tym bardziej jestem wdzięczna.