Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Rising Antivirus, nie mogę usunąć folderu

Miltanix 22 Sie 2015 12:09 1005 4
  • Pomocny post
    #2 22 Sie 2015 15:43
    Acorus 20
    Spec od komputerów

    Otwórz notatnik systemowy i wklej:

    Cytat:
    CloseProcesses:
    Task: {4E6EBF66-64D8-42F9-A4ED-A8E797802AFB} - System32\Tasks\{9F455045-3350-4829-959F-416D38F267CE} => pcalua.exe -a C:\Users\Dzieciaki\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=cor <==== ATTENTION
    AlternateDataStreams: C:\Windows:B6FA250396AC3279
    BootExecute: autocheck autochk * bsmain
    GroupPolicyScripts: Group Policy detected <======= ATTENTION
    HKU\S-1-5-21-4292005165-4172884211-3786484552-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://terra.im/?sid=101
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-4292005165-4172884211-3786484552-1000 -> {4187F0FC-AF41-4E4B-AE67-84C8FD35A0AE} URL = hxxp://terra.im/search?sid=101&q={searchTerms}
    Toolbar: HKU\S-1-5-21-4292005165-4172884211-3786484552-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
    FF Plugin HKU\S-1-5-21-4292005165-4172884211-3786484552-1000: @rising.com.cn/nprising -> C:\Program Files (x86)\Rising\RAV\nprising.dll No File
    R1 rsutils; C:\Windows\System32\DRIVERS\rsutils.sys [71760 2015-04-09] (Beijing Rising Information Technology Co., Ltd.)
    R0 sysmon; C:\Windows\System32\DRIVERS\sysmon.sys [119256 2015-04-30] (Beijing Rising Information Technology Co., Ltd.)
    S3 MSICDSetup; \??\F:\CDriver64.sys [X]
    S3 NTIOLib_1_0_C; \??\F:\NTIOLib_X64.sys [X]
    S3 NVNET; system32\DRIVERS\nvmf6264.sys [X]
    S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
    S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
    S3 VGPU; System32\drivers\rdvgkmd.sys [X]
    2015-08-21 09:02 - 2015-08-22 11:31 - 00000000 ____D C:\AdwCleaner
    2015-08-08 18:12 - 2015-08-08 18:12 - 00000000 ____D C:\Users\Dzieciaki\Documents\搜狐影音
    2015-08-08 18:12 - 2015-08-08 18:12 - 00000000 ____D C:\Users\Dzieciaki\Documents\ËŃşüÓ°Ňô
    2015-08-08 18:12 - 2015-08-08 18:12 - 00000000 ____D C:\Users\Dzieciaki\AppData\Local\Temp尰
    2015-08-08 18:11 - 2015-08-08 19:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rising Antivirus
    2015-08-08 18:11 - 2015-08-08 18:11 - 00000150 __RSH C:\rising.ini
    2015-08-08 18:11 - 2015-08-08 18:11 - 00000134 _____ C:\Windows\SysWOW64\BsMain.ini
    2015-08-08 18:11 - 2015-04-30 03:17 - 00119256 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\system32\Drivers\sysmon.sys
    2015-08-08 18:11 - 2015-04-09 07:00 - 00071760 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\system32\Drivers\rsutils.sys
    2015-08-08 18:11 - 2014-07-30 04:44 - 00091928 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\SysWOW64\vpatch.dll
    2015-08-08 18:11 - 2014-01-02 09:37 - 00325400 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\system32\ravext64.dll
    2015-08-08 18:11 - 2013-12-30 09:33 - 00256280 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\SysWOW64\ravext.dll
    2015-08-08 18:11 - 2012-09-06 02:30 - 00240472 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\SysWOW64\bsmain.exe
    2015-08-08 18:11 - 2012-02-29 09:49 - 00011888 ____N (Beijing Rising Information Technology Co., Ltd.) C:\Windows\system32\Drivers\rsndisp.sys
    2015-07-27 18:35 - 2015-07-27 18:35 - 00003246 _____ C:\Windows\System32\Tasks\{B8B4C24F-CA23-49D0-A377-8E5BFE082E11}
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix.

    2
  • #4 22 Sie 2015 15:57
    Acorus 20
    Spec od komputerów

    Skasuj folder C:\FRST.

    0
  • #5 22 Sie 2015 16:06
    Miltanix
    Poziom 3  

    Dziękuje, temat do zamknięcia.
    Rising Antivirus, nie mogę usunąć folderu

    0