Elektroda.pl
Elektroda.pl
X
CControls
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Adblock plus - Notoryczne pojawiające się reklamy na allegro i w przeglądarce.

pablojarocin85 20 Sie 2015 01:35 1176 16
  • #1 20 Sie 2015 01:35
    pablojarocin85
    Poziom 13  

    Witam.
    Dzisiaj zaktualizował mi się windows 7 do 10, i zaczęły mi się problemy z reklamami, mam zainstalowanego adblock ale nie chyba nie daje rady.
    Ma ktoś coś na pomoc czym to zablokować???

    0 16
  • CControls
  • #2 20 Sie 2015 08:30
    Domino_2
    Pomocny dla użytkowników

    Przeskanuj komputer programem ADWCleaner i usuń wszystko co znalazł, a następnie załącz logi z FRST.

    0
  • CControls
  • Pomocny post
    #4 20 Sie 2015 10:55
    Acorus 20
    Spec od komputerów

    Otwórz notatnik systemowy i wklej:

    Cytat:
    Task: {2C15334C-B4A2-4022-9995-B896AE6B94F4} - \Microsoft\Windows\File Classification Infrastructure\Property Definition Sync -> No File <==== ATTENTION
    Task: {566529C9-77A9-45FD-AF63-DA4EF73841EF} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
    Task: {65EC2140-5856-4C03-B309-2E17C4069E92} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
    Task: {6798B4D6-468B-4D27-B44A-5985F49E5915} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
    Task: {955CAAC6-1F4D-4812-B2FC-EA451229FFFF} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
    Task: {A13189FD-D023-489A-B8C0-DE6648D1E030} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
    Task: {A37C1581-9DC5-4ADA-9E4E-2D9432EF6BD3} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
    Task: {A88DB2D3-AFB6-4505-855D-CE121C9E05DD} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
    Task: {B9CDDD96-CAE2-47A9-A1FF-7E5E1B7C2F9C} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
    Task: {C8CAAAC7-2213-42D8-A2AC-3D7BF79B9050} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
    Task: {DBBA3BD1-E1BF-4625-B90C-70C7E6047C19} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
    Task: {DE86E66E-74ED-4C41-9B5B-5450E268D273} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
    Hosts:
    HKLM-x32\...\Run: [Smart File Advisor] => C:\Program Files (x86)\Smart File Advisor\sfa.exe [282384 2015-03-22] (Filefacts.net)
    HKLM-x32\...\Run: [SFAUpdater] => C:\Program Files (x86)\Smart File Advisor\SFAUpdater.exe [656144 2015-03-18] (Filefacts.net)
    HKLM-x32\...\Run: [mbot_nl_014010051] => [X]
    GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-2612805455-2209473886-3881185747-1000 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL =
    SearchScopes: HKU\S-1-5-21-2612805455-2209473886-3881185747-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.oursurfing.com/web/?utm_source=b&a...SWT&ts=1438752087&type=default&q={searchTerms}
    SearchScopes: HKU\S-1-5-21-2612805455-2209473886-3881185747-1000 -> {85A60A59-D3D8-468F-B598-FB4393789EF4} URL = hxxp://www.oursurfing.com/web/?utm_source=b&a...SWT&ts=1438752087&type=default&q={searchTerms}




    SearchScopes: HKU\S-1-5-21-2612805455-2209473886-3881185747-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = hxxp://www.oursurfing.com/web/?utm_source=b&a...SWT&ts=1438752087&type=default&q={searchTerms}
    FF Extension: Great Find - C:\Users\Paweł\AppData\Roaming\Mozilla\Firefox\Profiles\swyh16lo.default-1424724635258\Extensions\{fcefe1dd-0baf-4b61-89e2-cb91a9b96dfe}.xpi [2015-08-19]
    FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-08-19]
    U4 idsvc; no ImagePath
    S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
    U3 wpcsvc; no ImagePath
    2015-08-10 23:58 - 2015-08-19 15:32 - 00003312 _____ C:\WINDOWS\System32\Tasks\{0228CBD5-932B-41D7-AC68-83241D824C66}
    2015-08-07 20:55 - 2015-08-19 15:32 - 00003430 _____ C:\WINDOWS\System32\Tasks\{85DA83C6-4016-4986-9F26-6337F065944F}
    2015-08-05 07:22 - 2015-08-05 07:22 - 00000000 ____D C:\Program Files (x86)\205CD1A4-1438752137-E111-9B30-DC0EA1AF95B3
    2015-08-04 22:07 - 2015-08-19 15:32 - 00003070 _____ C:\WINDOWS\System32\Tasks\{384B1A7B-CB93-4AC2-9CD1-5BCF7BD81FD0}
    2015-08-04 22:07 - 2015-08-19 15:32 - 00003070 _____ C:\WINDOWS\System32\Tasks\{164D60AA-8473-4EEA-AF69-A2E6A07839AF}
    2015-08-04 22:06 - 2015-08-19 15:32 - 00003068 _____ C:\WINDOWS\System32\Tasks\{E2DB2882-9E6F-4247-9EDC-18133714F091}
    2015-08-04 22:06 - 2015-08-19 15:32 - 00003068 _____ C:\WINDOWS\System32\Tasks\{B7E9E8D6-C555-454D-9285-7CE5CC9CB713}
    2015-08-04 22:06 - 2015-08-19 15:32 - 00003068 _____ C:\WINDOWS\System32\Tasks\{699C11C8-E86B-4F86-8447-A9F02CCD24F2}
    2015-08-04 22:06 - 2015-08-19 15:32 - 00003068 _____ C:\WINDOWS\System32\Tasks\{1D1978AC-E90D-4FE7-A1BF-F9D5FB02493C}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{FD49C202-0BBA-447E-840C-037242046B6D}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{D99373F8-6493-4930-9D43-0ABD45DB3011}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{D2F79D61-AD7B-444B-A4DF-D979C5C5E833}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{98069ECB-6E58-4AFB-942E-51D4156B4438}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{80E5AA25-650B-485C-B0AF-64383EA6C8BD}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{6E55857E-83B0-4142-8385-7956248C4873}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{63C151C2-823F-41D3-8251-CC40FF32B626}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{55D261AF-947D-4EAA-9587-68F4BF891160}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{3B053A6F-96D1-422B-A5AE-2BE26251D315}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{3763564B-44DB-41AE-9D4E-1BB66D4A6579}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{25C32567-D6DB-4C7E-9F9D-758ADDDDDE7F}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{2049E0CE-5A03-4AD2-A3B9-5D5388063803}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{1AB4B775-FE51-470E-AE6F-91EB4F0563AD}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{157563AD-29B1-4CBF-8120-32F4DEC28196}
    2015-08-04 22:05 - 2015-08-19 15:32 - 00003058 _____ C:\WINDOWS\System32\Tasks\{0F0B5C88-E9B0-4594-BEE3-D752F477BBA4}
    2015-07-31 20:02 - 2015-08-19 15:32 - 00003250 _____ C:\WINDOWS\System32\Tasks\{1AF67831-294E-4EB1-AF94-AA986F95C00B}
    C:\ProgramData\fontcacheev1.dat
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix. Pobierz i uruchom jako administrator AdwCleaner https://toolslib.net/downloads/finish/1/ Kliknij Scan i później Cleaning.

    1
  • Pomocny post
    #5 20 Sie 2015 10:57
    Kolobos
    Spec od komputerów

    Dodaj do fixlist.txt jeszcze:
    FF Plugin HKU\S-1-5-21-2612805455-2209473886-3881185747-1000: ubisoft.com/uplaypc -> D:\GRY\HAWX\orbit\npuplaypc.dll No File
    2015-08-20 00:02 - 2014-11-03 02:33 - 00000000 ____D C:\ProgramData\7bb6df21-8ca8-4eec-965d-8cd2261544c7

    1
  • #6 20 Sie 2015 11:23
    pablojarocin85
    Poziom 13  

    Zrobione tak jak Acorus kazałeś.
    Coś jeszcze oprócz tego??

    Kolobos napisał:
    Dodaj do fixlist.txt jeszcze:
    FF Plugin HKU\S-1-5-21-2612805455-2209473886-3881185747-1000: ubisoft.com/uplaypc -> D:\GRY\HAWX\orbit\npuplaypc.dll No File
    2015-08-20 00:02 - 2014-11-03 02:33 - 00000000 ____D C:\ProgramData\7bb6df21-8ca8-4eec-965d-8cd2261544c7



    Tą linijke to gdzie mam dodać na samym końcu???

    0
  • #7 20 Sie 2015 11:26
    Kolobos
    Spec od komputerów

    Skoro juz wykonales to utworz nowy fixlist z tymi dwoma liniami.

    Po wykonaniu usun katalog C:\FRST i to wszystk o ile problem juz nie wystepuje.

    0
  • #8 20 Sie 2015 11:34
    pablojarocin85
    Poziom 13  

    Dobra dzięki za pomoc.

    0
  • #10 24 Sie 2015 20:04
    Acorus 20
    Spec od komputerów

    Odinstaluj DailyPcClean Support. Otwórz notatnik systemowy i wklej:

    Cytat:
    Task: {018671E2-D5EA-4A1C-883D-7F390B7A57B8} - \{D2F79D61-AD7B-444B-A4DF-D979C5C5E833} -> No File <==== ATTENTION
    Task: {02FEC5AA-87D9-412C-B86F-6F648EAC1FB4} - \{0F0B5C88-E9B0-4594-BEE3-D752F477BBA4} -> No File <==== ATTENTION
    Task: {0B242627-6791-4247-A573-F035318D764C} - \{0228CBD5-932B-41D7-AC68-83241D824C66} -> No File <==== ATTENTION
    Task: {0C50BF70-945B-4CDC-B7E0-0CAF139A8720} - System32\Tasks\VXMRDLUK1 => C:\ProgramData\FlashBeat\FlashBeat.exe <==== ATTENTION
    Task: {15631A9D-1ACB-4633-926A-DBB61402A773} - \{6E55857E-83B0-4142-8385-7956248C4873} -> No File <==== ATTENTION
    Task: {1B9DD776-53E6-442A-B3A8-E37A34D30D0D} - \{25C32567-D6DB-4C7E-9F9D-758ADDDDDE7F} -> No File <==== ATTENTION
    Task: {1BD73A5E-C1BE-4081-83F0-D770470A0C91} - \{384B1A7B-CB93-4AC2-9CD1-5BCF7BD81FD0} -> No File <==== ATTENTION
    Task: {29D12BE6-4552-4049-A415-E81ED0E77B27} - \{80E5AA25-650B-485C-B0AF-64383EA6C8BD} -> No File <==== ATTENTION
    Task: {36CAEAFF-7DC1-499A-ACD9-E1DAC10CAEDE} - \{157563AD-29B1-4CBF-8120-32F4DEC28196} -> No File <==== ATTENTION
    Task: {4985CE54-2DB3-4778-8B19-0728B817F202} - \{55D261AF-947D-4EAA-9587-68F4BF891160} -> No File <==== ATTENTION
    Task: {50297EEE-EEC6-4409-8785-C85D39AB3B84} - \{1AB4B775-FE51-470E-AE6F-91EB4F0563AD} -> No File <==== ATTENTION
    Task: {65167E87-55F2-4DA2-A437-4BDCDD35BD4B} - \{B7E9E8D6-C555-454D-9285-7CE5CC9CB713} -> No File <==== ATTENTION
    Task: {71781DCD-02A2-4B41-AE81-159BB929C1AB} - \{2049E0CE-5A03-4AD2-A3B9-5D5388063803} -> No File <==== ATTENTION
    Task: {7A978F2B-7E91-4B6D-B732-9E418DB9CAB8} - \{85DA83C6-4016-4986-9F26-6337F065944F} -> No File <==== ATTENTION
    Task: {8D734B34-517F-472A-8752-A8CE6D58E2B8} - \{63C151C2-823F-41D3-8251-CC40FF32B626} -> No File <==== ATTENTION
    Task: {778D758C-60A9-495E-9D80-A648134B01B3} - System32\Tasks\QVEFMOMBWCIOVOIO => C:\ProgramData\Service1291\Service1291.exe [2015-08-20] () <==== ATTENTION
    Task: {8F4933C8-6E56-4E52-88A8-D6928C3B141C} - \{1AF67831-294E-4EB1-AF94-AA986F95C00B} -> No File <==== ATTENTION
    Task: {91CD4B28-0A79-4DEC-BCE2-DFB1CB08E346} - \{3B053A6F-96D1-422B-A5AE-2BE26251D315} -> No File <==== ATTENTION
    Task: {933C1165-431C-4BE7-A36A-7F117A7B48C1} - \{164D60AA-8473-4EEA-AF69-A2E6A07839AF} -> No File <==== ATTENTION
    Task: C:\WINDOWS\Tasks\QVEFMOMBWCIOVOIO.job => C:\ProgramData\Service1291\Service1291.exe <==== ATTENTION
    Task: C:\WINDOWS\Tasks\VXMRDLUK1.job => C:\ProgramData\FlashBeat\FlashBeat.exe <==== ATTENTION
    HKLM-x32\...\Run: [gmsd_nl_005010069] => [X]
    AppInit_DLLs: C:\ProgramData\FlashBeat\FlashBeat64.dll => C:\ProgramData\FlashBeat\FlashBeat64.dll File not found
    AppInit_DLLs-x32: C:\ProgramData\FlashBeat\FlashBeat32.dll => "C:\ProgramData\FlashBeat\FlashBeat32.dll" File not found
    Toolbar: HKLM - avast! WebRep - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
    CHR HKLM-x32\...\Chrome\Extension: [dnligehkhogpcngalffdoomehjcbecna] - https://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [gehmndecgbcffhmfjkenpamdgechcgpe] - https://clients2.google.com/service/update2/crx
    R2 fimevebo; C:\Program Files (x86)\205CD1A4-1440412045-E111-9B30-DC0EA1AF95B3\hnslBD94.tmp [137728 2015-08-24] () [File not signed]
    R2 jimocoso; C:\Program Files (x86)\205CD1A4-1440412045-E111-9B30-DC0EA1AF95B3\jnsuA1FB.tmp [227328 2015-08-24] () [File not signed]
    R2 kyvedobu; C:\Program Files (x86)\205CD1A4-1440412045-E111-9B30-DC0EA1AF95B3\knsuDFA3.tmp [359936 2015-08-24] () [File not signed]
    2015-08-24 13:03 - 2015-08-24 13:03 - 00613255 _____ (CMI Limited) C:\Users\Paweł\AppData\Local\nsz7408.tmp
    2015-08-24 12:43 - 2015-08-24 12:43 - 00613255 _____ (CMI Limited) C:\Users\Paweł\AppData\Local\nss310A.tmp
    2015-08-24 12:37 - 2015-08-24 17:54 - 00000372 ____H C:\WINDOWS\Tasks\QVEFMOMBWCIOVOIO.job
    2015-08-24 12:37 - 2015-08-24 17:54 - 00000360 _____ C:\WINDOWS\Tasks\VXMRDLUK1.job
    2015-08-24 12:37 - 2015-08-24 12:37 - 00003448 _____ C:\WINDOWS\System32\Tasks\QVEFMOMBWCIOVOIO
    2015-08-24 12:37 - 2015-08-24 12:37 - 00002928 _____ C:\WINDOWS\System32\Tasks\VXMRDLUK1
    2015-08-24 12:37 - 2015-08-24 12:37 - 00000000 ____D C:\ProgramData\Service1291
    2015-08-24 12:37 - 2015-08-24 12:37 - 00000000 ____D C:\ProgramData\28341ff220e0446c9fff27c4493d622e
    2015-08-24 12:37 - 2015-08-24 12:37 - 00000000 _____ C:\dummy.htm
    2015-08-24 12:27 - 2015-08-24 14:28 - 00000000 ____D C:\Program Files (x86)\205CD1A4-1440412045-E111-9B30-DC0EA1AF95B3
    2015-08-19 15:32 - 2015-07-13 23:14 - 00003250 _____ C:\WINDOWS\System32\Tasks\{8C0B98AD-4B43-4AA9-BF07-6DC195265909}
    2015-08-19 15:32 - 2015-07-13 21:00 - 00003342 _____ C:\WINDOWS\System32\Tasks\{0F1E6FED-0039-4F1E-8CD5-AF2F046E0EC3}
    2015-08-19 15:32 - 2015-07-13 20:53 - 00003238 _____ C:\WINDOWS\System32\Tasks\{A37DD8DC-E685-4BBB-A6E9-854A7C02474A}
    2015-08-19 15:32 - 2015-06-28 16:18 - 00003122 _____ C:\WINDOWS\System32\Tasks\{B590747D-36AE-463D-A4E3-292FB68885B6}
    2015-08-19 15:32 - 2015-06-28 16:18 - 00003122 _____ C:\WINDOWS\System32\Tasks\{9F7D910E-85B1-4173-BEFD-24F2155ADEEB}
    2015-08-19 15:32 - 2015-06-28 16:18 - 00003122 _____ C:\WINDOWS\System32\Tasks\{83236B87-BA91-4D94-A136-623483A48582}
    2015-08-19 15:32 - 2015-06-28 16:18 - 00003122 _____ C:\WINDOWS\System32\Tasks\{60C7BD6B-33D5-4D07-ACF4-38336C899F9F}
    2015-08-19 15:32 - 2015-06-28 16:18 - 00003122 _____ C:\WINDOWS\System32\Tasks\{49B84BFC-565B-4F57-99A9-A012609DE631}
    2015-08-19 15:32 - 2015-06-28 16:16 - 00003122 _____ C:\WINDOWS\System32\Tasks\{87E3ECD7-DBE7-4A7D-BFBB-F926C7858F84}
    2015-08-19 15:32 - 2015-06-28 16:16 - 00003122 _____ C:\WINDOWS\System32\Tasks\{73DAC489-3555-4C9D-8173-A51DD780AD2F}
    2015-08-19 15:32 - 2015-06-28 16:16 - 00003122 _____ C:\WINDOWS\System32\Tasks\{10C6ADE7-702C-48B6-BB51-0B6D82385C6D}
    2015-08-19 15:32 - 2015-06-28 14:59 - 00003252 _____ C:\WINDOWS\System32\Tasks\{F879DA4E-8F55-4FDB-BC5F-AE81B923B258}
    2015-08-19 15:32 - 2015-06-28 10:21 - 00003368 _____ C:\WINDOWS\System32\Tasks\{7C45F863-3550-46E7-93C1-D744712211E8}
    2015-08-19 15:32 - 2015-05-17 19:27 - 00003116 _____ C:\WINDOWS\System32\Tasks\{EA0BA5FC-B13E-4A4B-8585-20E0285AD221}
    2015-08-19 15:32 - 2015-05-17 19:27 - 00003116 _____ C:\WINDOWS\System32\Tasks\{941638C5-4B50-4762-B05B-3B497AA7ACEC}
    2015-08-19 15:32 - 2015-05-17 19:24 - 00003116 _____ C:\WINDOWS\System32\Tasks\{C9F8CF8A-C7B3-4A9D-89A4-A8820BEB163E}
    2015-08-19 15:32 - 2015-05-17 19:24 - 00003116 _____ C:\WINDOWS\System32\Tasks\{86B6AFA9-A8A4-4BE8-9443-52E84243C0B2}
    2015-08-19 15:32 - 2015-05-09 21:05 - 00003458 _____ C:\WINDOWS\System32\Tasks\{8A3CB6E9-54B7-4E6F-BC98-75CB0F8656DC}
    2015-08-19 15:32 - 2015-05-01 14:54 - 00003374 _____ C:\WINDOWS\System32\Tasks\{64E66B60-A43B-46F9-A6DA-B6025590A46E}
    2015-08-19 15:32 - 2015-04-22 05:48 - 00003140 _____ C:\WINDOWS\System32\Tasks\{F977BA07-254D-4593-84BB-D100EED278BD}
    2015-08-19 15:32 - 2015-04-22 05:48 - 00003140 _____ C:\WINDOWS\System32\Tasks\{BE856C02-7716-4073-B294-CED930316C21}
    2015-08-19 15:32 - 2015-04-22 05:45 - 00003358 _____ C:\WINDOWS\System32\Tasks\{A0F7325B-5F94-429B-834C-FB9744534359}
    2015-08-19 15:32 - 2014-10-16 23:30 - 00003200 _____ C:\WINDOWS\System32\Tasks\{6249DEFA-2B4E-41B0-A147-408408F45681}
    2015-08-19 15:32 - 2014-09-09 17:41 - 00003384 _____ C:\WINDOWS\System32\Tasks\{387B3AAF-57D4-4B88-8BFF-DD91D7F08E00}
    2015-08-19 15:32 - 2014-03-22 11:46 - 00003196 _____ C:\WINDOWS\System32\Tasks\{78F17D49-8098-4234-B0E6-65FA522F08C7}
    2015-08-24 12:43 - 2015-08-24 12:43 - 0613255 _____ (CMI Limited) C:\Users\Paweł\AppData\Local\nss310A.tmp
    2015-08-24 13:37 - 2015-08-24 13:36 - 0628688 _____ (CMI Limited) C:\Users\Paweł\AppData\Local\nst7C.tmp
    2015-08-24 13:03 - 2015-08-24 13:03 - 0613255 _____ (CMI Limited) C:\Users\Paweł\AppData\Local\nsz7408.tmp
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix. Przeskanuj programem Malwarebytes Anti-Malware https://www.malwarebytes.org/downloads/
    Podczas instalacji usuń zaznaczenie przy Uruchom okres testowy Malwarebytes Anti-Malware Premium.

    0
  • #11 24 Sie 2015 21:39
    pablojarocin85
    Poziom 13  

    Jeszcze jakiś progarm AnyProtect się instaluje sam, ja go ccleanerem usuwam a on się jakoś sam instaluje.
    I mi się jakieś strony z kasynami otwierają.
    Po przeskanowaniu MBAM 124 zagrożenia wykryte, wszystko usunięte.

    0
  • #12 25 Sie 2015 08:07
    Kolobos
    Spec od komputerów

    Daj nowe logi z FRST, ze skanowania.

    0
  • #14 25 Sie 2015 14:49
    Kolobos
    Spec od komputerów

    Widze, ze juz zdazyles ponownie zainfekowac system, jaki sens ma pomoc skoro zaraz jest to samo? Uwazaj co robisz i co sciagasz, do tego czytaj to co sie wyswietla na ekranie podczas instalacji. Nie scaigaj programow ze stron oferujacych menadzery pobierania (jak dobreprogramy)

    Odinstaluj: High Stairs

    Uzyj ponownie AdwCleaner.

    Fixlist.txt dla FRST:
    () C:\ProgramData\b4bc9939-75e9-422b-af5c-653de35c4f4b\PluginContainer.exe
    () C:\Program Files (x86)\Common Files\b4bc9939-75e9-422b-af5c-653de35c4f4b\Updater.exe
    () C:\ProgramData\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\12\Plugin.exe
    () C:\ProgramData\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\2\Plugin.exe
    () C:\ProgramData\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\12\Plugin.exe
    (DTools LIMITED) C:\ProgramData\yWinManProy\WinManPro.exe
    () C:\ProgramData\b4bc9939-75e9-422b-af5c-653de35c4f4b\plugins\8\Plugin.exe
    FF Extension: High Stairs - C:\Users\Paweł\AppData\Roaming\Mozilla\Firefox\Profiles\9f51k8tt.default\Extensions\{4c1b6388-da2f-4845-8cac-688a8018a5af}.xpi [2015-08-25]
    R2 Update Mgr HighStairs; C:\Program Files (x86)\Common Files\b4bc9939-75e9-422b-af5c-653de35c4f4b\updater.exe [705760 2015-08-25] ()
    R2 WindowsMangerProtect; C:\ProgramData\yWinManProy\WinManPro.exe [707720 2015-08-25] (DTools LIMITED) <==== UWAGA
    S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
    2015-08-25 11:44 - 2015-08-25 11:45 - 00000000 ____D C:\ProgramData\yWinManProy
    2015-08-25 11:39 - 2015-08-25 11:44 - 00000000 ____D C:\Users\Paweł\AppData\Roaming\Nico Mak Computing
    2015-08-25 11:39 - 2015-08-25 11:40 - 00000000 ____D C:\ProgramData\b4bc9939-75e9-422b-af5c-653de35c4f4b
    2015-08-25 11:39 - 2015-08-25 11:39 - 00000000 ____D C:\Program Files (x86)\High Stairs
    2015-08-25 11:38 - 2014-09-30 16:07 - 00019120 _____ (WinZip Computing, S.L.(WinZip Computing)) C:\WINDOWS\system32\roboot64.exe
    C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
    EmptyTemp:

    0
  • #15 25 Sie 2015 17:31
    pablojarocin85
    Poziom 13  

    Ja nigdzie tego high stars, ani ccleaner go wykrywa ani windows, nigdzie tego nie widze

    0
  • #16 25 Sie 2015 23:13
    Kolobos
    Spec od komputerów

    Moze adwc juz usunal. Wykonaj fixlist.

    0
  • #17 26 Sie 2015 14:19
    pablojarocin85
    Poziom 13  

    Ten fixlist zrobiłem.
    Jak na razie nie ma nic niepokojącego.

    0