Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Usunięcie PriceFountain i przejrzenie logów

wojtek2002 12 Sty 2016 15:23 684 2
  • Pomocny post
    #2 12 Sty 2016 15:33
    Acorus 20
    Spec od komputerów

    Odinstaluj Spybot - Search & Destroy. Otwórz notatnik systemowy i wklej:

    Cytat:
    Task: {0DFC8521-1711-49AF-B92A-6A069483A152} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.)
    Task: {0F368EC3-C910-485D-ACDE-C22EBA23A873} - System32\Tasks\psv_Vivazumtrax => /c regedit.exe /s "C:\ProgramData\Lightzap\DentoFlex.reg" &amp; del "C:\ProgramData\Lightzap\DentoFlex.reg" &amp; SCHTASKS /Delete /TN "psv_Vivazumtrax" /F <==== UWAGA
    Task: {3BCC90B6-5458-4A27-9E75-144E64A281B7} - System32\Tasks\KamilVitalismHumiliatingV2 => Rundll32.exe PhotocopiesReadjournment.dll,main 7 1 <==== UWAGA
    Task: {40C568A2-BE45-4E26-AEB1-45A26B62884E} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
    Task: {77C3CA87-AF86-418C-A669-3E372E983D05} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.)
    Task: {AEBE15E6-23C4-4F61-A2EE-A80ACC0F4145} - System32\Tasks\psv_K-zap => /c regedit.exe /s "C:\ProgramData\Lightzap\Freshfinex.reg" &amp; del "C:\ProgramData\Lightzap\Freshfinex.reg" &amp; SCHTASKS /Delete /TN "psv_K-zap" /F <==== UWAGA
    Task: {D3924001-3492-4874-9B54-F2C11237E829} - System32\Tasks\GridinSoft Anti-Malware => C:\Program Files\GridinSoft Anti-Malware\gsam.exe [2016-01-04] (GridinSoft LLC)
    Task: {D561AC66-09BA-4225-BC07-A4D1B16F39D8} - System32\Tasks\psv_Medit => /c regedit.exe /s "C:\ProgramData\Lightzap\TresCore.reg" &amp; del "C:\ProgramData\Lightzap\TresCore.reg" &amp; SCHTASKS /Delete /TN "psv_Medit" /F <==== UWAGA
    HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
    Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
    HKU\S-1-5-21-3637722513-1674837631-393874452-1000\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
    BootExecute: autocheck autochk * sdnclean64.exe
    SearchScopes: HKLM-x32 -> DefaultScope {ielnksrch} URL =
    R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
    R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
    R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
    2016-01-12 14:08 - 2016-01-12 14:08 - 00003240 _____ C:\Windows\System32\Tasks\GridinSoft Anti-Malware




    2016-01-12 14:08 - 2016-01-12 14:08 - 00000893 _____ C:\Users\Public\Desktop\GridinSoft Anti-Malware.lnk
    2016-01-12 14:08 - 2016-01-12 14:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware
    2016-01-12 14:08 - 2016-01-12 14:08 - 00000000 ____D C:\ProgramData\GridinSoft
    2016-01-12 14:08 - 2016-01-12 14:08 - 00000000 ____D C:\Program Files\GridinSoft Anti-Malware
    2016-01-12 14:05 - 2016-01-12 14:07 - 50767160 _____ C:\Users\Kamil\Downloads\gsam-3.0.18-setup.exe
    2016-01-12 12:50 - 2015-07-28 17:52 - 00821920 _____ (Safer-Networking Ltd. ) C:\Users\Public\Desktop\Post Win10 Spybot-install.exe
    2016-01-12 12:46 - 2016-01-12 13:47 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
    2016-01-12 12:46 - 2016-01-12 12:52 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
    2016-01-12 12:46 - 2016-01-12 12:46 - 00001391 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
    2016-01-12 12:46 - 2016-01-12 12:46 - 00001379 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
    2016-01-12 12:46 - 2016-01-12 12:46 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
    2016-01-12 12:46 - 2016-01-12 12:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
    2016-01-12 12:46 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
    2016-01-12 12:39 - 2016-01-12 12:39 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Kamil\Downloads\spybot-2.4.exe
    2016-01-12 12:37 - 2016-01-12 12:37 - 00939984 _____ (Soft Web ) C:\Users\Kamil\Downloads\Spybot-Search-Destroy-12546-dp.exe
    2016-01-12 12:16 - 2016-01-12 12:16 - 00000000 _____ C:\autoexec.bat
    2016-01-12 12:13 - 2016-01-12 12:13 - 03237248 _____ (Enigma Software Group USA, LLC.) C:\Users\Kamil\Downloads\sh-remover.exe
    2016-01-10 23:41 - 2016-01-12 13:51 - 00000000 ____D C:\AdwCleaner
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix/Napraw.
    Reset Chrome: https://support.google.com/chrome/answer/3296214?hl=pl

    0
  • #3 07 Lip 2016 10:37
    wojtek2002
    Poziom 9  

    Dzięki za pomoc

    0