Elektroda.pl
Elektroda.pl
X
CControls
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Wyskakujące reklamy top arama.

Stefan1121 04 Lut 2016 13:36 654 2
  • CControls
  • Pomocny post
    #2 04 Lut 2016 14:01
    Acorus 20
    Spec od komputerów

    Odinstaluj Movies Search App for Chrome, Movies Search App for Internet Explorer, Movies Toolbar for Chrome, Movies Toolbar for Internet Explorer, Qtrax Player. Otwórz notatnik systemowy i wklej:

    Cytat:
    Task: {13E1719B-8CE0-4E15-AF4A-126BB21F8C17} - System32\Tasks\Image Food2 => Rundll32.exe "C:\Users\Gość\AppData\Local\Image Food\{CE08C7AD-4328-1DDA-E2B1-0B65AD596750}\zgv.dll",#1 <==== UWAGA
    Task: {5199D5DF-AB01-4E6A-8D3B-6074F7408EB5} - \Yahoo! Search Updater -> Brak pliku <==== UWAGA
    Task: {965D8ED8-4BCF-4E62-BEF6-17FF3D94C7C5} - \Yahoo! Search -> Brak pliku <==== UWAGA
    Task: {9E43236F-D9BB-496B-BE4D-F4169CA216E2} - System32\Tasks\Sk-Enhancer-S-5902107913 => c:\programdata\quickset\sk-enhancer\Sk-Enhancer.exe <==== UWAGA
    Task: {EE752B6E-81F3-423E-B9CE-6CA790DB41C1} - System32\Tasks\SK.Enhancer-S-161304646 => c:\programdata\quickset\sk.enhancer\SK.Enhancer.exe <==== UWAGA
    Task: C:\Windows\Tasks\Sk-Enhancer-S-5902107913.job => c:\programdata\quickset\sk-enhancer\Sk-Enhancer.exeH/schedule /profile c:\programdata\quickset\sk-enhancer\5902107913.ini <==== UWAGA
    Task: C:\Windows\Tasks\SK.Enhancer-S-161304646.job => c:\programdata\quickset\sk.enhancer\SK.Enhancer.exeG/schedule /profile c:\programdata\quickset\sk.enhancer\161304646.iniadminSK.Enh <==== UWAGA
    AlternateDataStreams: C:\ProgramData\Temp:05EE1EEF
    AlternateDataStreams: C:\Users\Kamil\Dane aplikacji:NT
    AlternateDataStreams: C:\Users\Kamil\AppData\Roaming:NT
    HKLM\...\Run: [ISUSScheduler] => C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [86960 2006-05-16] (Macrovision Corporation)
    HKLM\...\Run: [] => [X]
    HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems Incorporated)
    CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
    URLSearchHook: HKU\S-1-5-21-3837836086-374962552-590434128-1000 - Спутник@Mail.Ru - {09900DE8-1DCA-443F-9243-26FF581438AF} - C:\Program Files\Mail.Ru\Sputnik\MailRuSputnik.dll Brak pliku
    SearchScopes: HKLM -> OldSearch URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
    SearchScopes: HKU\S-1-5-21-3837836086-374962552-590434128-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-3837836086-374962552-590434128-1000 -> OldSearch URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox
    BHO: MailRuBHO Class -> {8984B388-A5BB-4DF7-B274-77B879E179DB} -> C:\Program Files\Mail.Ru\Sputnik\MailRuSputnik.dll => Brak pliku




    Toolbar: HKLM - Спутник@Mail.Ru - {09900DE8-1DCA-443F-9243-26FF581438AF} - C:\Program Files\Mail.Ru\Sputnik\MailRuSputnik.dll Brak pliku
    Toolbar: HKU\S-1-5-21-3837836086-374962552-590434128-1000 -> Спутник@Mail.Ru - {09900DE8-1DCA-443F-9243-26FF581438AF} - C:\Program Files\Mail.Ru\Sputnik\MailRuSputnik.dll Brak pliku
    FF SearchEngineOrder.3: Bing
    FF Homepage: hxxps://www.malwarebytes.org/restorebrowser//...=cornl&uid=SAMSUNGXHD502HJ_S20BJ90ZC36893
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [p.3hc@gqascoieyo.org] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [rqeaue8u6n@ouoi-rdmp.edu] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [jpmjvhffi@wlyoyicxc.net] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [ot09qq6@auae-sf.edu] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [7jsfkvrkk32d@oc-pd.co.uk] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [a_3uuyy@eufvgrkt.org] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [dttlgby@xglbai.com] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [oyaaioeu@wlaoe-.org] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [todn.ee@yoosemtho.net] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [eyylscd@lfeu.org] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [78axi6ao@ei-ykeg.net] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [dncubzlg@zsghd.net] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [uaeupt@fojds.net] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [q-ks5lkmy@vyaiveu-io.com] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [eoiiaaaau@yaoouyeo.edu] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [lv7x9@xwcgorwak.com] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [u3ouai@unhjj.edu] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [r_oou@flobfzuayu.net] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [ue-4n2@eeqt-otne.net] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [nnmt6@glzqhc.edu] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [fjkh32s9@wjcgjmm.org] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [iuyi7j@xhshuyxdhb.co.uk] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [t4bda@oia-.org] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [lwx8_ooi@vutfhkaju.net] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [va_azp30n37@ei-scir.com] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [3lhql2.bcl@oqpnnjiohxabyyyi.com] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [yaaea1-oo@aloaawqga.com] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [wweaoue@yeeoayeaii.net] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF HKU\S-1-5-21-3837836086-374962552-590434128-1000\...\Firefox\Extensions: [9-mpmk@hxtqfnckxs.edu] - C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\6geu13oe.default\extensions
    FF ExtraCheck: C:\Program Files\mozilla firefox\browser\defaults\preferences\prefs.js [2015-10-08] <==== UWAGA (Linkuje do pliku *.cfg)
    FF ExtraCheck: C:\Program Files\mozilla firefox\firefox.cfg [2013-04-08] <==== UWAGA
    S1 boeqikfv; \??\C:\Windows\system32\drivers\boeqikfv.sys [X]
    S3 cpuz134; \??\C:\Users\admin\AppData\Local\Temp\cpuz134\cpuz134_x32.sys [X]
    S3 gdrv; \??\C:\Windows\gdrv.sys [X]
    S1 ioqgyize; \??\C:\Windows\system32\drivers\ioqgyize.sys [X]
    S3 WinRing0_1_2_0; \??\E:\2f192e12825eb566c4fd5d79e9ba27bf\Aplikacja\KarmimyPL\PCAnalyzer.sys [X]
    2016-02-04 13:16 - 2014-05-05 13:30 - 00000000 ____D C:\AdwCleaner
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix/Napraw.
    Reset Chrome: https://support.google.com/chrome/answer/3296214?hl=pl

    0
  • CControls
  • #3 04 Lut 2016 15:39
    Stefan1121
    Poziom 20  

    Po wykonaniu skryptu znowu pokazała się stronka ale wywaliłem chrome przeskanowałem MBAM (znalazło 1200 problemów za pierwszym skanowaniem było ponad 12k) potem ccleaner i od nowa chrome, jest już ok.

    Dziękuje za pomoc. :)
    Zamykam

    0