Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

dns unlocker - Denerwujące reklamy we wszystkich przeglądarkach

zizuu92 10 Mar 2016 19:33 444 3
  • Pomocny post
    #2 10 Mar 2016 19:38
    Kolobos
    Spec od komputerów

    Starszej wersji FRST nie bylo?

    Fixlist.txt dla FRST:
    Task: {172D4043-0954-4396-ADF5-44D0F17CCF03} - System32\Tasks\{01F75AF2-B674-4B29-9838-8168C5553131} => pcalua.exe -a H:\Autorun.exe -d H:\
    Task: {3678485E-A661-4FE6-BCC2-7CDA871E35A3} - System32\Tasks\{84B399D5-1F29-47D7-B008-FC8A3DA8300A} => pcalua.exe -a H:\DirectX\dxsetup.exe -d H:\DirectX
    Task: {37D42123-97F4-4CA3-9F95-3478C78FAB42} - System32\Tasks\{2BB0A35E-8BDF-4E0B-A13F-073256F955A1} => Firefox.exe http://ui.skype.com/ui/0/6.22.81.104/pl/abandoninstall?source=lightinstaller&page=tsMain
    Task: {5FA7CC27-FA19-4AF1-A7C1-0BB72F56063F} - System32\Tasks\{96274AAC-D4D6-44A1-8B19-F3A75C643E60} => pcalua.exe -a C:\Windows\System32\Macromed\SHOCKW~2\UNWISE.EXE -c C:\Windows\System32\Macromed\SHOCKW~2\Install.log
    Task: {6AC61450-B3B2-4FE6-A475-473DCA4E42F0} - System32\Tasks\{FB99FDFC-DA46-4377-8152-9AE000D4D527} => pcalua.exe -a C:\Windows\unins000.exe
    Task: {7EA6EC8A-1FD4-4F02-866C-5470055392F4} - System32\Tasks\{285886AE-2925-4FA8-9191-F5F19477427F} => pcalua.exe -a "C:\Users\LOLA\Desktop\Tzar 1.13b\Setup.exe" -d "C:\Users\LOLA\Desktop\Tzar 1.13b"
    Task: {A6446F10-391B-481E-A20C-BBCF5BDD29F1} - System32\Tasks\{9144569C-F221-4D50-8C3D-0C34219AB4F7} => pcalua.exe -a "C:\Games\Red Alert 2\SetupReg.exe" -d "C:\Games\Red Alert 2"
    Task: {B95592CB-CE8B-4D11-89CC-89217547577A} - System32\Tasks\{0A79D3BA-F140-473A-ABE0-C3F1EED39554} => pcalua.exe -a "C:\Program Files\McAfee Security Scan\uninstall.exe"
    Task: {C7556421-F5AD-4930-B947-B5F2BE95BB33} - System32\Tasks\{4FA23B0E-F612-4BF7-A7A1-C9463DAB7C94} => pcalua.exe -a G:\x64\setup.exe -d G:\x64
    Task: {EE955C0F-5649-46CF-A61B-327596EB9848} - System32\Tasks\{24DAB7AB-CEEF-4F85-8567-F6245ECC895E} => pcalua.exe -a C:\red\CnC.exe -d C:\red
    HKLM-x32\...\Run: [] => [X]
    HKLM-x32\...\Run: [MFARestart] => "C:\ProgramData\MFAData\pack\avgrunasx.exe" /usereg
    HKU\S-1-5-21-3040845168-1163311959-1070881201-1001\...\MountPoints2: {25fdbc09-7644-11e4-826b-142d27d838e8} - "G:\HTC_Sync_Manager_PC.exe"
    HKU\S-1-5-21-3040845168-1163311959-1070881201-1001\...\MountPoints2: {756fc8f7-96a9-11e4-8274-142d27d838e8} - "G:\startme.exe"
    HKU\S-1-5-21-3040845168-1163311959-1070881201-1001\...\MountPoints2: {a40da529-770a-11e4-826c-806e6f6e6963} - "G:\HTC_Sync_Manager_PC.exe"
    HKU\S-1-5-21-3040845168-1163311959-1070881201-1001\...\MountPoints2: {b601c99a-152a-11e5-828f-6cc21763785b} - "G:\LGAutoRun.exe"
    HKU\S-1-5-21-3040845168-1163311959-1070881201-1001\...\MountPoints2: {bd8e71b2-61b0-11e4-8261-142d27d838e8} - "H:\Autorun.exe"
    SearchScopes: HKLM -> {A0F7EB15-FD41-487E-917F-14121CA22D2F} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?i...b-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
    SearchScopes: HKLM-x32 -> {A0F7EB15-FD41-487E-917F-14121CA22D2F} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?i...b-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
    BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll No File
    Tcpip\Parameters: [NameServer] 82.163.142.7 95.211.158.134
    FF SelectedSearchEngine: Yahoo!
    FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]
    CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
    S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-03-09] ()
    S3 DrvAgent64; \??\C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [X]
    S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
    2016-03-09 22:39 - 2016-03-09 22:39 - 00022704 _____ () C:\Windows\system32\Drivers\EsgScanner.sys
    2015-11-07 17:14 - 2015-11-07 17:14 - 0004912 _____ () C:\ProgramData\lbogtyso.zat
    EmptyTemp:

    0
  • Pomocny post
    #3 10 Mar 2016 19:48
    Acorus 20
    Spec od komputerów

    Otwórz notatnik systemowy i wklej:

    Cytat:
    Task: {37D42123-97F4-4CA3-9F95-3478C78FAB42} - System32\Tasks\{2BB0A35E-8BDF-4E0B-A13F-073256F955A1} => Firefox.exe http://ui.skype.com/ui/0/6.22.81.104/pl/abandoninstall?source=lightinstaller&page=tsMain
    HKLM-x32\...\Run: [] => [X]
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
    SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKLM -> {A0F7EB15-FD41-487E-917F-14121CA22D2F} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?i...b-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
    SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKLM-x32 -> {A0F7EB15-FD41-487E-917F-14121CA22D2F} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?i...b-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
    Tcpip\Parameters: [NameServer] 82.163.142.7 95.211.158.134
    StartMenuInternet: IEXPLORE.EXE - iexplore.exe
    FF SelectedSearchEngine: Yahoo!
    S3 DrvAgent64; \??\C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS [X]
    S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
    2016-03-09 22:39 - 2016-03-09 22:39 - 00022704 _____ () C:\Windows\system32\Drivers\EsgScanner.sys
    2016-03-04 20:57 - 2016-03-04 20:57 - 00003090 _____ () C:\Windows\System32\Tasks\{0A79D3BA-F140-473A-ABE0-C3F1EED39554}
    2016-03-04 17:10 - 2016-03-04 17:10 - 00003186 _____ () C:\Windows\System32\Tasks\{96274AAC-D4D6-44A1-8B19-F3A75C643E60}
    2016-02-19 19:53 - 2016-02-19 19:53 - 00003056 _____ () C:\Windows\System32\Tasks\{84B399D5-1F29-47D7-B008-FC8A3DA8300A}
    2016-02-15 18:24 - 2016-02-15 18:24 - 00003026 _____ () C:\Windows\System32\Tasks\{01F75AF2-B674-4B29-9838-8168C5553131}
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix/Napraw.

    0
  • #4 10 Mar 2016 19:50
    zizuu92
    Poziom 2  

    Pomogło.
    dns unlocker - Denerwujące reklamy we wszystkich przeglądarkach

    0