Elektroda.pl
Elektroda.pl
X
CControls
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

yoursites123 - prośba o usunięcie

kuyaviya 14 Gru 2015 12:33 525 3
  • CControls
  • Pomocny post
    #2 14 Gru 2015 12:57
    safbot1st
    Poziom 43  

    Odinstaluj McAffe SecurityScan.
    Wklej poniższe do notatnika i zapisz jako fixlist.txt w folderze obok frst.exe.

    Cytat:
    CloseProcesses:
    IFEO\browsemngr.exe: [Debugger] tasklist.exe
    IFEO\browsermngr.exe: [Debugger] tasklist.exe
    IFEO\bundlesweetimsetup.exe: [Debugger] tasklist.exe
    IFEO\cltmngsvc.exe: [Debugger] tasklist.exe
    IFEO\delta babylon.exe: [Debugger] tasklist.exe
    IFEO\delta tb.exe: [Debugger] tasklist.exe
    IFEO\delta2.exe: [Debugger] tasklist.exe
    IFEO\deltainstaller.exe: [Debugger] tasklist.exe
    IFEO\deltasetup.exe: [Debugger] tasklist.exe
    IFEO\deltatb.exe: [Debugger] tasklist.exe
    IFEO\deltatb_2501-c733154b.exe: [Debugger] tasklist.exe
    IFEO\iminentsetup.exe: [Debugger] tasklist.exe
    IFEO\rjatydimofu.exe: [Debugger] tasklist.exe
    IFEO\sweetimsetup.exe: [Debugger] tasklist.exe
    IFEO\tbdelta.exetoolbar783881609.exe: [Debugger] tasklist.exe
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576




    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    HKU\S-1-5-21-3989488719-908961946-3073201940-1006\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    HKU\S-1-5-21-3989488719-908961946-3073201940-1006\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2405} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=...ND405&o=APN10647&apn_ptnrs=AG8&q={searchTerms}
    SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    SearchScopes: HKLM-x32 -> {70DD31C1-7134-4F33-A5D5-1CEE8F5E546A} URL = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010000.10011&barid={AA5101E1-4472-11E2-97CF-E0CB4E1ABE00}
    SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2405} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=...ND405&o=APN10647&apn_ptnrs=AG8&q={searchTerms}
    BHO: Brak nazwy -> {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} -> Brak pliku
    FF SearchEngineOrder.1: Ask.com
    FF SelectedSearchEngine: Ask.com
    FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\Ask.xml [2014-02-17]
    FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\firefox.cfg [2013-06-03] <==== UWAGA
    CHR HKLM-x32\...\Chrome\Extension: [gkjoindjjcmbdpbfppabdgflnkgbbcli] - C:\Program Files (x86)\FTDownloader.com\FTDownloader10.crx <nie znaleziono>
    CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG Secure Search\ChromeExt\17.3.0.49\avg.crx <nie znaleziono>
    U3 advpwiln; C:\Windows\System32\Drivers\advpwiln.sys [0 ] (Microsoft Corporation) <==== UWAGA (zerobajtowy plik/folder)
    U3 ahhszg9c; C:\Windows\System32\Drivers\ahhszg9c.sys [0 ] (Microsoft Corporation) <==== UWAGA (zerobajtowy plik/folder)
    Task: {42BDA129-350C-482A-A4E1-EB0F77682BDD} - \DealPlyUpdate -> Brak pliku <==== UWAGA
    Task: {5592D282-BAC1-421B-9C9E-FB86DF1EF994} - System32\Tasks\Express Files Updater => C:\Program Files (x86)\ExpressFiles\EFupdater.exe <==== UWAGA
    Task: {FEBF74D6-6E5F-46C8-B370-2B612EE5CE5E} - \DealPly -> Brak pliku <==== UWAGA
    Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job => C:\Windows\TEMP\{8B363092-8F17-4091-A681-5839AD404F64}.exe <==== UWAGA
    Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => C:\Windows\TEMP\{8D38856B-1BF2-4B83-853B-34C3FE054F49}.exe <==== UWAGA
    Task: C:\Windows\Tasks\0915wtUpdateInfo.job => C:\ProgramData\Avg_Update_0915wt\0915wt_{AD11F36B-0A14-4193-8BCB-48590A144928}.exe
    Task: {AB4D4E1D-296F-4EA8-B3B6-9DD2FAF056AB} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv => C:\Windows\TEMP\{8D38856B-1BF2-4B83-853B-34C3FE054F49}.exe
    ShortcutWithArgument: C:\Users\Malgorzata\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576 <==== UWAGA
    ShortcutWithArgument: C:\Users\Malgorzata\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576 <==== UWAGA
    ShortcutWithArgument: C:\Users\Malgorzata\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera 33.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> hxxp://www.yoursites123.com/?type=sc&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576 <==== UWAGA
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera 34.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> hxxp://www.yoursites123.com/?type=sc&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576 <==== UWAGA
    Hosts:
    CMD:ipconfig /flushdns
    EmptyTemp:


    Uruchom frst.exe i wybierz napraw.
    Sprawdź codzienne użycie CPU, czy proces dllhost.exe nie obciąża procesora.

    0
  • CControls
  • Pomocny post
    #3 14 Gru 2015 13:07
    Acorus 20
    Spec od komputerów

    Odinstaluj AVG Security Toolbar, DealPly, LiveVDO, Update Manager for SweetPacks 1.1. Otwórz notatnik systemowy i wklej:

    Cytat:
    Task: {42BDA129-350C-482A-A4E1-EB0F77682BDD} - \DealPlyUpdate -> Brak pliku <==== UWAGA
    Task: {5592D282-BAC1-421B-9C9E-FB86DF1EF994} - System32\Tasks\Express Files Updater => C:\Program Files (x86)\ExpressFiles\EFupdater.exe <==== UWAGA
    Task: {6B0DD288-977A-4EBD-B03C-9AA448781529} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv => C:\Windows\TEMP\{8B363092-8F17-4091-A681-5839AD404F64}.exe
    Task: {AB4D4E1D-296F-4EA8-B3B6-9DD2FAF056AB} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv => C:\Windows\TEMP\{8D38856B-1BF2-4B83-853B-34C3FE054F49}.exe
    Task: {C193A203-8307-414E-A8AE-53AFEAEF23B6} - System32\Tasks\0915wtUpdateInfo => C:\ProgramData\Avg_Update_0915wt\0915wt_{AD11F36B-0A14-4193-8BCB-48590A144928}.exe
    Task: {FEBF74D6-6E5F-46C8-B370-2B612EE5CE5E} - \DealPly -> Brak pliku <==== UWAGA
    Task: C:\Windows\Tasks\0915wtUpdateInfo.job => C:\ProgramData\Avg_Update_0915wt\0915wt_{AD11F36B-0A14-4193-8BCB-48590A144928}.exe
    Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job => C:\Windows\TEMP\{8B363092-8F17-4091-A681-5839AD404F64}.exe <==== UWAGA
    Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => C:\Windows\TEMP\{8D38856B-1BF2-4B83-853B-34C3FE054F49}.exe <==== UWAGA
    Shortcut: C:\Users\Malgorzata\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gears of War\Opciones.lnk -> D:\Gry\Gears of War\options.bat () <==== UWAGA
    Shortcut: C:\Users\Malgorzata\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gears of War\Options.lnk -> D:\Gry\Gears of War\options.bat () <==== UWAGA
    ShortcutWithArgument: C:\Users\Malgorzata\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576 <==== UWAGA
    ShortcutWithArgument: C:\Users\Malgorzata\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576 <==== UWAGA
    ShortcutWithArgument: C:\Users\Malgorzata\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera 33.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> hxxp://www.yoursites123.com/?type=sc&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576 <==== UWAGA
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera 34.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> hxxp://www.yoursites123.com/?type=sc&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576 <==== UWAGA
    HKU\S-1-5-21-3989488719-908961946-3073201940-1004\...\Run: [AVG-Secure-Search-Update_JUNE2013_TB] => C:\Program Files (x86)\AVG Secure Search\AVG-Secure-Search-Update_JUNE2013_TB.exe [1266712 2013-06-03] (AVG Secure Search)
    HKU\S-1-5-21-3989488719-908961946-3073201940-1004\...\Run: [AVG-Secure-Search-Update_JUNE2013_HP] => C:\Program Files (x86)\AVG Secure Search\AVG-Secure-Search-Update_JUNE2013_HP.exe [1266712 2013-06-06] (AVG Secure Search)
    HKU\S-1-5-21-3989488719-908961946-3073201940-1005\...\Run: [AVG-Secure-Search-Update_JUNE2013_TB] => C:\Program Files (x86)\AVG Secure Search\AVG-Secure-Search-Update_JUNE2013_TB.exe [1266712 2013-06-03] (AVG Secure Search)
    HKU\S-1-5-21-3989488719-908961946-3073201940-1005\...\Run: [AVG-Secure-Search-Update_JUNE2013_HP] => C:\Program Files (x86)\AVG Secure Search\AVG-Secure-Search-Update_JUNE2013_HP.exe [1266712 2013-06-06] (AVG Secure Search)
    IFEO\browsemngr.exe: [Debugger] tasklist.exe
    IFEO\browsermngr.exe: [Debugger] tasklist.exe
    IFEO\bundlesweetimsetup.exe: [Debugger] tasklist.exe
    IFEO\cltmngsvc.exe: [Debugger] tasklist.exe
    IFEO\delta babylon.exe: [Debugger] tasklist.exe
    IFEO\delta tb.exe: [Debugger] tasklist.exe
    IFEO\delta2.exe: [Debugger] tasklist.exe
    IFEO\deltainstaller.exe: [Debugger] tasklist.exe
    IFEO\deltasetup.exe: [Debugger] tasklist.exe
    IFEO\deltatb.exe: [Debugger] tasklist.exe
    IFEO\deltatb_2501-c733154b.exe: [Debugger] tasklist.exe
    IFEO\iminentsetup.exe: [Debugger] tasklist.exe
    IFEO\rjatydimofu.exe: [Debugger] tasklist.exe
    IFEO\sweetimsetup.exe: [Debugger] tasklist.exe
    IFEO\tbdelta.exetoolbar783881609.exe: [Debugger] tasklist.exe
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2015-12-11]
    ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.266\SSScheduler.exe (McAfee, Inc.)
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    HKU\S-1-5-21-3989488719-908961946-3073201940-1006\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    HKU\S-1-5-21-3989488719-908961946-3073201940-1006\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2405} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=...ND405&o=APN10647&apn_ptnrs=AG8&q={searchTerms}
    SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&...WD5000AAKS-08V0A0_WD-WCAWF563657636576&q={searchTerms}
    SearchScopes: HKLM-x32 -> {70DD31C1-7134-4F33-A5D5-1CEE8F5E546A} URL = hxxp://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010000.10011&barid={AA5101E1-4472-11E2-97CF-E0CB4E1ABE00}
    SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2405} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=...ND405&o=APN10647&apn_ptnrs=AG8&q={searchTerms}
    BHO: Brak nazwy -> {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} -> Brak pliku
    BHO-x32: Brak nazwy -> {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} -> Brak pliku
    BHO-x32: AVG Security Toolbar -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Secure Search\19.1.0.285\AVG Secure Search_toolbar.dll [2015-12-12] (AVG Secure Search)
    Toolbar: HKLM - Brak nazwy - {32099AAC-C132-4136-9E9A-4E364A424E17} - Brak pliku
    Toolbar: HKLM-x32 - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\19.1.0.285\AVG Secure Search_toolbar.dll [2015-12-12] (AVG Secure Search)
    StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=144...id=WDCXWD5000AAKS-08V0A0_WD-WCAWF563657636576
    FF SearchEngineOrder.1: Ask.com
    FF SelectedSearchEngine: Ask.com
    FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\Ask.xml [2014-02-17]
    FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\avg-secure-search.xml [2015-10-05]
    FF Extension: AVG Security Toolbar - C:\ProgramData\AVG Secure Search\FireFoxExt\18.9.0.230 [2015-10-05] [Brak podpisu cyfrowego]
    FF Extension: Brak nazwy - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-10-08] [Brak podpisu cyfrowego]
    FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG Secure Search\FireFoxExt\18.9.0.230
    FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\firefox.cfg [2013-06-03] <==== UWAGA
    CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG Secure Search\ChromeExt\17.3.0.49\avg.crx <nie znaleziono>
    CHR HKLM-x32\...\Chrome\Extension: [pbiamblgmkgbcgbcgejjgebalncpmhnp] - C:\Program Files (x86)\LiveVDO plugin\livevdoplg.crx [2012-10-29]
    R2 IhPul; C:\Users\Malgorzata\AppData\Roaming\TSv\TSvr.exe [580752 2015-12-08] (tsvr.com)
    R2 vToolbarUpdater19.1.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\19.1.0\ToolbarUpdater.exe [1864592 2015-12-12] (AVG Secure Search)
    U3 advpwiln; C:\Windows\System32\Drivers\advpwiln.sys [0 ] (Microsoft Corporation) <==== UWAGA (zerobajtowy plik/folder)
    U3 ahhszg9c; C:\Windows\System32\Drivers\ahhszg9c.sys [0 ] (Microsoft Corporation) <==== UWAGA (zerobajtowy plik/folder)
    2015-12-10 05:30 - 2015-12-10 05:31 - 00000000 ____D C:\Users\Malgorzata\AppData\Roaming\TSv
    2015-12-12 10:19 - 2012-10-10 17:17 - 00000000 ____D C:\Program Files (x86)\AVG Secure Search
    2015-12-10 05:30 - 2015-11-01 11:01 - 00000000 ____D C:\ProgramData\FWMiniProF
    2013-06-26 15:27 - 2014-06-23 16:14 - 0003728 _____ () C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml
    2015-11-18 21:35 - 2015-11-18 21:35 - 0000000 ____H () C:\Users\Malgorzata\AppData\Local\BIT2847.tmp
    2015-11-16 09:44 - 2015-11-16 09:44 - 0000000 ____H () C:\Users\Malgorzata\AppData\Local\BIT5199.tmp
    2015-11-08 00:58 - 2015-11-08 00:58 - 0000000 ____H () C:\Users\Malgorzata\AppData\Local\BIT585D.tmp
    2015-11-08 00:51 - 2015-11-08 00:51 - 0000000 ____H () C:\Users\Malgorzata\AppData\Local\BIT7B85.tmp
    2015-11-16 09:44 - 2015-11-16 09:44 - 0000000 ____H () C:\Users\Malgorzata\AppData\Local\BIT9D2.tmp
    2015-11-08 00:52 - 2015-11-08 00:52 - 0000000 ____H () C:\Users\Malgorzata\AppData\Local\BITB126.tmp
    2015-11-16 09:47 - 2015-11-16 09:47 - 0000000 ____H () C:\Users\Malgorzata\AppData\Local\BITC715.tmp
    2015-11-18 21:36 - 2015-11-18 21:36 - 0000000 ____H () C:\Users\Malgorzata\AppData\Local\BITDF95.tmp
    2015-11-16 09:48 - 2015-11-16 09:48 - 0000000 ____H () C:\Users\Malgorzata\AppData\Local\BITFE6B.tmp
    C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
    EmptyTemp:

    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix/Napraw.
    Pobierz i uruchom jako administrator AdwCleaner https://toolslib.net/downloads/finish/1/ Kliknij Scan i później Cleaning.

    0
  • #4 14 Gru 2015 17:20
    kuyaviya
    Poziom 2  

    Wielkie dzięki za pomoc : )))

    0