Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Wirus DNSunlocker jak usunąć?

lukasazs 16 Wrz 2015 12:19 477 1
  • #2 16 Wrz 2015 12:38
    Domino_2
    Pomocny dla użytkowników

    Odinstaluj globalupdate Helper.

    Cytat:

    CustomCLSID: HKU\S-1-5-21-2275561033-1815536724-3729885320-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Kamil\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll Brak pliku
    CustomCLSID: HKU\S-1-5-21-2275561033-1815536724-3729885320-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Kamil\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll Brak pliku
    CustomCLSID: HKU\S-1-5-21-2275561033-1815536724-3729885320-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Kamil\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll Brak pliku
    Task: {082367C9-46B3-4BC6-95A1-C8325751C722} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
    Task: {1ACAE790-5A55-4160-9FB5-0CD42D61A158} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
    Task: {33CD211E-D2E1-4DE1-BE9A-A49B82D5A9A6} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
    Task: {3F386336-EEE4-41E0-9F88-F44C53AA0EBD} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
    Task: {59B4EF75-9C85-4C33-A04D-2025155F13DB} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
    Task: {821DBE93-6C16-4134-8851-42C644A01426} - System32\Tasks\Bidaily Synchronize Task[973b] => c:\programdata\{e3df8e50-3fef-3a41-e3df-f8e503fe3940}\the witcher 3_ wild hunt (only) 8 dlc & v1.04 v1.05 patches.exe <==== UWAGA
    Task: {9454009C-DE67-45E8-95E2-E2DEB53A0EA9} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA
    Task: {A3D9FBE0-2734-448B-989B-A4C19360F906} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
    Task: {B231F888-C098-4F33-AD6F-6AB928BE82C1} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
    Task: {F1B76478-711A-44EC-B0B6-50FD7790DB53} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
    Task: {F9D21D9E-2FC2-4B3E-A603-B44F8C748E7D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
    Task: {FF7F38F1-021A-4E7A-8B85-D766C7959452} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
    Task: C:\WINDOWS\Tasks\Bidaily Synchronize Task[973b].job => c:\programdata\{e3df8e50-3fef-3a41-e3df-f8e503fe3940}\the witcher 3_ wild hunt (only) 8 dlc & v1.04 v1.05 patches.exe <==== UWAGA
    HKLM\...\Policies\Explorer: [NoControlPanel] 0
    CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
    Tcpip\..\Interfaces\{5918ed7a-edee-4b09-a3a9-3cdc93caee08}: [NameServer] 82.163.143.172,82.163.142.174
    Tcpip\..\Interfaces\{62877f8d-f420-4d32-a81e-87746156cc3b}: [NameServer] 82.163.143.172,82.163.142.174




    Tcpip\..\Interfaces\{6e4f904e-a488-4622-b555-4e6ddbfa0870}: [NameServer] 212.2.96.51 212.2.96.52
    SearchScopes: HKLM-x32 -> DefaultScope {ielnksrch} URL =
    SearchScopes: HKU\S-1-5-21-2275561033-1815536724-3729885320-1001 -> DefaultScope {ielnksrch} URL = hxxp://www.bing.com/search?q={searchTerms}
    SearchScopes: HKU\S-1-5-21-2275561033-1815536724-3729885320-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-2275561033-1815536724-3729885320-1001 -> {ielnksrch} URL = hxxp://www.bing.com/search?q={searchTerms}
    BHO: CoupScanNueir -> {53DEA534-CE38-4643-B38C-19BCA023C3E7} -> C:\Program Files (x86)\CoupScanNueir\M3ommWs0ECPj7W.x64.dll Brak pliku
    BHO-x32: CoupScanNueir -> {53DEA534-CE38-4643-B38C-19BCA023C3E7} -> C:\Program Files (x86)\CoupScanNueir\M3ommWs0ECPj7W.dll Brak pliku
    CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho
    CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho
    S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
    2015-09-15 00:16 - 2015-09-16 10:54 - 00000000 ____D C:\AdwCleaner
    C:\ProgramData\SetStretch.VBS
    EmptyTemp:


    Wklej to do notatnika i zapisz pod nazwą fixlist.txt i umieść w folderze gdzie znajduje się plik FRST.exe, odpal go i kliknij Fix/Napraw.

    0