Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

DNS Unlocker - Mozilla Firefox

blackart 27 Sie 2015 17:24 456 3
  • Pomocny post
    #2 27 Sie 2015 19:40
    Kolobos
    Spec od komputerów

    Odinstaluj:
    McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.149.2 - McAfee, Inc.)
    Winamp Full 5.666.3516 Packages (HKU\S-1-5-21-2479202366-1278303313-1365621897-1000\...\Winamp Full 5.666.3516 Packages) (Version: - ) <==== UWAGA

    Obok frst.exe utworz plik fixlist.txt z zawartoscia:
    Task: {061738C8-8DC4-4DF5-9AD4-6A6E0D1796DB} - System32\Tasks\{625910E1-EDDD-4502-B250-CC435A1E5531} => pcalua.exe -a C:\Users\adam\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=smt
    Task: {0B79348A-3347-4381-A634-C2C6D512E031} - System32\Tasks\MedBooster => c:\programdata\{5cb37cfd-ab5c-825a-5cb3-37cfdab5f3f6}\5379259783910700361b.exe <==== UWAGA
    Task: {2F1D3D80-D8FE-435D-9332-06CB52661537} - System32\Tasks\Bidaily Synchronize Task[8da6] => c:\programdata\{bfde4362-d6fe-1be0-bfde-e4362d6f0d8b}\hqghumeaylnlf.exe <==== UWAGA
    Task: {3188C20F-29E7-4F23-82E6-F5960C1257ED} - System32\Tasks\{92BEFC5A-0776-45E9-BF95-BEDE5C71C01E} => pcalua.exe -a C:\Users\adam\AppData\Roaming\sweet-page\UninstallManager.exe
    Task: {36FC43F8-541B-4526-A6DD-106D6DB463E0} - System32\Tasks\{E6B44075-155F-4CE9-AAAF-2537238F7376} => D:\GRY\yu-gi-oh\yugi_pc.exe
    Task: {7CDE05A1-8531-4809-8D9A-E66BECC2F747} - System32\Tasks\{BCB649F2-3BA8-4FF7-BCF0-6CD4197F1D57} => pcalua.exe -a C:\Users\adam\AppData\Local\PriceFountain\uninst.exe -c /uninstall
    Task: {A8A75984-EA8B-48A9-A59F-0B3D7498AFB6} - System32\Tasks\{D97B5C7B-6ADD-4105-9AEB-2F9F6DF71E43} => pcalua.exe -a C:\Windows\system32\pcwrun.exe -c "C:\Program Files (x86)\MiKTeX 2.9\miktex\bin\yap.exe"
    Task: {DF8AFE40-2594-4078-8162-83C3C6C99BE8} - System32\Tasks\{38F09132-CF31-4564-9C4F-8568BF58827F} => pcalua.exe -a C:\Windows\system32\pcwrun.exe -c "C:\Program Files (x86)\MiKTeX 2.9\miktex\bin\miktex-texworks.exe"
    Task: {E23B100F-8F03-4127-863F-CF7B5DC2EF83} - System32\Tasks\{1F419C77-19A4-4394-A799-1B3436844D67} => pcalua.exe -a C:\Users\adam\Downloads\setup-2.9.4503.exe -d C:\Users\adam\Downloads
    Task: C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job => c:\programdata\{bfde4362-d6fe-1be0-bfde-e4362d6f0d8b}\hqghumeaylnlf.exe <==== UWAGA
    Task: C:\Windows\Tasks\MedBooster.job => c:\programdata\{5cb37cfd-ab5c-825a-5cb3-37cfdab5f3f6}\5379259783910700361b.exe <==== UWAGA
    HKU\S-1-5-21-2479202366-1278303313-1365621897-1000\...\Run: [woaurud] => C:\Users\adam\woaurud.exe [49152 2015-01-16] ()
    IFEO\volaro: [Debugger] tasklist.exe
    IFEO\vonteera: [Debugger] tasklist.exe
    Startup: C:\Users\adam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Bayer Full - Niespodziewanie [Full hD].lnk [2015-05-03]
    ShortcutTarget: Bayer Full - Niespodziewanie [Full hD].lnk -> C:\ProgramData\{8097bfe1-c52b-e0c3-8097-7bfe1c52ff87}\Bayer Full - Niespodziewanie [Full hD].exe (Brak pliku)
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014-03-09]




    ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.149\SSScheduler.exe (McAfee, Inc.)
    GroupPolicy: Zasady grupy Chrome wykryto <======= UWAGA
    CHR HKLM\SOFTWARE\Policies\Google: Zasada ograniczeń <======= UWAGA
    CHR HKU\S-1-5-21-2479202366-1278303313-1365621897-1000\SOFTWARE\Policies\Google: Zasada ograniczeń <======= UWAGA
    Tcpip\..\Interfaces\{4A1EAB53-738F-4020-9473-DD4395288F08}: [NameServer] 199.203.131.145,82.163.143.167
    Tcpip\..\Interfaces\{9BC43C8D-DA2E-4A79-A26E-F2679BCCB8BB}: [NameServer] 199.203.131.145,82.163.143.167
    CHR HKLM-x32\...\Chrome\Extension: [bpegkgagfojjbcpkihigfmkojdmmimdf] - <Brak Path/update_url>
    CHR HKLM-x32\...\Chrome\Extension: [ehgldbbpchgpcfagfpfjgoomddhccfgh] - <Brak Path/update_url>
    S2 Enormous Heat; C:\Program Files (x86)\Enormous Heat\Enormous Heat.exe [8016454 2015-06-10] () [Brak podpisu cyfrowego] <==== UWAGA
    S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe [289256 2015-06-26] (McAfee, Inc.)
    R4 SmdmFService; C:\Program Files (x86)\Assets Manager\smdmf\SmdmFService.exe [3570704 2015-01-28] (Aztec Media Inc)
    S2 Uneven Particular; C:\Program Files (x86)\Uneven Particular\Uneven Particular.exe [8016044 2015-07-23] () [Brak podpisu cyfrowego] <==== UWAGA
    R4 F06DEFF2-5B9C-490D-910F-35D3A91196222; C:\Program Files (x86)\Assets Manager\smdmf\x64\smdmfmgrc3.cfg [45968 2015-01-28] (Aztec Media Inc)
    S3 NPF; system32\drivers\NPF.sys [X]
    R1 {5178f938-0bd5-47c1-8242-71f6e3e72925}w64; system32\drivers\{5178f938-0bd5-47c1-8242-71f6e3e72925}w64.sys [X]
    R1 {55dce8ba-9dec-4013-937e-adbf9317d990}w64; system32\drivers\{55dce8ba-9dec-4013-937e-adbf9317d990}w64.sys [X]
    R1 {a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64; system32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64.sys [X]
    R1 {b99c8534-7800-48fa-bd71-519a46cdc7e1}Gw64; system32\drivers\{b99c8534-7800-48fa-bd71-519a46cdc7e1}Gw64.sys [X]
    R1 {c5e48979-bd7f-4cf7-9b73-2482a67a4f37}w64; system32\drivers\{c5e48979-bd7f-4cf7-9b73-2482a67a4f37}w64.sys [X]
    2015-08-27 16:50 - 2015-08-27 17:09 - 00000000 ____D C:\AdwCleaner
    2015-08-27 15:40 - 2015-08-27 15:40 - 00000000 ____D C:\ProgramData\423d40e00006486
    2015-08-15 09:24 - 2015-08-27 15:24 - 00000338 _____ C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job
    2015-08-15 09:24 - 2015-08-15 09:24 - 00003248 _____ C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6]
    2015-08-06 15:58 - 2015-08-06 15:58 - 00000000 ____D C:\Program Files (x86)\Classic Scrollbar Buttons
    2015-08-02 10:06 - 2015-08-02 10:06 - 00001934 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
    2015-08-02 10:06 - 2015-08-02 10:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
    2015-08-02 10:06 - 2015-08-02 10:06 - 00000000 ____D C:\Program Files\McAfee Security Scan
    2015-08-27 16:27 - 2015-06-13 22:27 - 00000352 _____ C:\Windows\Tasks\MedBooster.job
    2015-08-27 16:08 - 2015-02-05 11:58 - 00000000 ____D C:\ProgramData\smdmf
    2015-08-06 15:58 - 2015-06-18 16:23 - 00000079 _____ C:\Program Files (x86)\prefs.js
    C:\Users\adam\woaurud.exe
    EmptyTemp:

    W FRST wybierz Fix.

    1
  • Pomocny post
    #3 27 Sie 2015 19:41
    Acorus 20
    Spec od komputerów

    Odinstaluj Winamp Full 5.666.3516 Packages. Otwórz notatnik systemowy i wklej:

    Cytat:
    Task: {061738C8-8DC4-4DF5-9AD4-6A6E0D1796DB} - System32\Tasks\{625910E1-EDDD-4502-B250-CC435A1E5531} => pcalua.exe -a C:\Users\adam\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=smt
    Task: {0B79348A-3347-4381-A634-C2C6D512E031} - System32\Tasks\MedBooster => c:\programdata\{5cb37cfd-ab5c-825a-5cb3-37cfdab5f3f6}\5379259783910700361b.exe <==== UWAGA
    Task: {2F1D3D80-D8FE-435D-9332-06CB52661537} - System32\Tasks\Bidaily Synchronize Task[8da6] => c:\programdata\{bfde4362-d6fe-1be0-bfde-e4362d6f0d8b}\hqghumeaylnlf.exe <==== UWAGA
    Task: {3188C20F-29E7-4F23-82E6-F5960C1257ED} - System32\Tasks\{92BEFC5A-0776-45E9-BF95-BEDE5C71C01E} => pcalua.exe -a C:\Users\adam\AppData\Roaming\sweet-page\UninstallManager.exe
    Task: {7CDE05A1-8531-4809-8D9A-E66BECC2F747} - System32\Tasks\{BCB649F2-3BA8-4FF7-BCF0-6CD4197F1D57} => pcalua.exe -a C:\Users\adam\AppData\Local\PriceFountain\uninst.exe -c /uninstall
    Task: C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job => c:\programdata\{bfde4362-d6fe-1be0-bfde-e4362d6f0d8b}\hqghumeaylnlf.exe <==== UWAGA
    Task: C:\Windows\Tasks\MedBooster.job => c:\programdata\{5cb37cfd-ab5c-825a-5cb3-37cfdab5f3f6}\5379259783910700361b.exe <==== UWAGA
    HKU\S-1-5-21-2479202366-1278303313-1365621897-1000\...\Run: [woaurud] => C:\Users\adam\woaurud.exe [49152 2015-01-16] ()
    IFEO\volaro: [Debugger] tasklist.exe
    IFEO\vonteera: [Debugger] tasklist.exe
    Startup: C:\Users\adam\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Bayer Full - Niespodziewanie [Full hD].lnk [2015-05-03]
    ShortcutTarget: Bayer Full - Niespodziewanie [Full hD].lnk -> C:\ProgramData\{8097bfe1-c52b-e0c3-8097-7bfe1c52ff87}\Bayer Full - Niespodziewanie [Full hD].exe (Brak pliku)
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014-03-09]
    ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.149\SSScheduler.exe (McAfee, Inc.)
    GroupPolicy: Zasady grupy Chrome wykryto <======= UWAGA
    CHR HKLM\SOFTWARE\Policies\Google: Zasada ograniczeń <======= UWAGA
    CHR HKU\S-1-5-21-2479202366-1278303313-1365621897-1000\SOFTWARE\Policies\Google: Zasada ograniczeń <======= UWAGA
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
    SearchScopes: HKU\S-1-5-21-2479202366-1278303313-1365621897-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    CHR HKLM-x32\...\Chrome\Extension: [bpegkgagfojjbcpkihigfmkojdmmimdf] - <Brak Path/update_url>
    CHR HKLM-x32\...\Chrome\Extension: [ehgldbbpchgpcfagfpfjgoomddhccfgh] - <Brak Path/update_url>
    S2 Enormous Heat; C:\Program Files (x86)\Enormous Heat\Enormous Heat.exe [8016454 2015-06-10] () [Brak podpisu cyfrowego] <==== UWAGA
    S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe [289256 2015-06-26] (McAfee, Inc.)
    S2 Uneven Particular; C:\Program Files (x86)\Uneven Particular\Uneven Particular.exe [8016044 2015-07-23] () [Brak podpisu cyfrowego] <==== UWAGA
    S3 NPF; system32\drivers\NPF.sys [X]
    R1 {5178f938-0bd5-47c1-8242-71f6e3e72925}w64; system32\drivers\{5178f938-0bd5-47c1-8242-71f6e3e72925}w64.sys [X]
    R1 {55dce8ba-9dec-4013-937e-adbf9317d990}w64; system32\drivers\{55dce8ba-9dec-4013-937e-adbf9317d990}w64.sys [X]
    R1 {a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64; system32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}Gw64.sys [X]
    R1 {b99c8534-7800-48fa-bd71-519a46cdc7e1}Gw64; system32\drivers\{b99c8534-7800-48fa-bd71-519a46cdc7e1}Gw64.sys [X]
    R1 {c5e48979-bd7f-4cf7-9b73-2482a67a4f37}w64; system32\drivers\{c5e48979-bd7f-4cf7-9b73-2482a67a4f37}w64.sys [X]
    2015-08-27 16:50 - 2015-08-27 17:09 - 00000000 ____D C:\AdwCleaner
    2015-08-02 10:06 - 2015-08-02 10:06 - 00001934 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
    2015-08-02 10:06 - 2015-08-02 10:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
    2015-08-02 10:06 - 2015-08-02 10:06 - 00000000 ____D C:\Program Files\McAfee Security Scan
    C:\Users\adam\woaurud.exe
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix. Przeskanuj programem Malwarebytes Anti-Malware https://www.malwarebytes.org/downloads/
    Podczas instalacji usuń zaznaczenie przy Uruchom okres testowy Malwarebytes Anti-Malware Premium.
    W pasek adresu wpisz: about:support Kliknij Odśwież program Firefox.

    1
  • #4 27 Sie 2015 19:53
    blackart
    Poziom 2  

    Bardzo dziękuję za pomoc!

    0