Elektroda.pl
Elektroda.pl
X
CControls
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

spam - uciążliwe reklamy w przeglądarkach

zizuu92 27 Mar 2016 23:29 471 1
  • #1 27 Mar 2016 23:29
    zizuu92
    Poziom 2  

    Witam
    Jak w temacie, uciążliwe reklamy nie pozwalają mi na prace na komputerze. Nie mogę oglądać filmów ani używać przeglądarek, bo reklamy blokują mi dostęp do wszystkich stron.

    0 1
  • CControls
  • Pomocny post
    #2 27 Mar 2016 23:57
    krzychupar
    Poziom 40  

    Odinstaluj:
    AVG (HKLM\...\AvgZen) (Version: 1.41.1.56922 - AVG Technologies)
    AVG Zen (Version: 1.41.29 - AVG Technologies) Hidden
    The Desktop Weather 2.0 (HKLM\...\WeatherTool) (Version: 2.0.0.10998 - ShenZhen Enode Techology co,.Ltd) <==== UWAGA

    Otwórz notatnik systemowy i wklej:
    Task: {24160160-DFCC-4868-93F6-0F731C2A790A} - \{04780A47-097A-040E-0F11-797F7805110D} -> Brak pliku <==== UWAGA
    Task: {AA47B01A-F4B0-4BBA-9DD0-FCFF874F8676} - System32\Tasks\DNSLOCKINGTON => dnslockington.exe <==== UWAGA
    Task: {EED98B14-9458-4C90-8615-F59720799903} - System32\Tasks\LaunchPreSignup => C:\Program Files (x86)\OLBPre\OLBPre.exe <==== UWAGA
    Task: {FFCB39CF-2CD7-4E87-BE10-7FABE58BCFB4} - System32\Tasks\UpdateTask => C:\Users\Łukasz\AppData\Local\{2043161F-04EB-7AA7-6973-5F4F4D1BA3D7}\uninstall.exe
    Task: C:\Windows\Tasks\UpdateTask.job => C:\Users\Aukasz\AppData\Local\{2043161F-04EB-7AA7-6973-5F4F4D1BA3D7}\uninstall.exe
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Brak pliku
    CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
    Tcpip\Parameters: [NameServer] 82.163.142.7 95.211.158.134
    Tcpip\..\Interfaces\{01DE457B-8782-48D3-A060-4EBBFE017A30}: [NameServer] 82.163.142.7 95.211.158.134
    Tcpip\..\Interfaces\{1213CBFE-F498-40A0-AEB9-6CDB643592F7}: [NameServer] 82.163.142.7 95.211.158.134
    Tcpip\..\Interfaces\{1213CBFE-F498-40A0-AEB9-6CDB643592F7}: [DhcpNameServer] 82.163.142.7
    Tcpip\..\Interfaces\{43A6579D-5C92-4E3F-AE48-9795C80F7FA1}: [NameServer] 82.163.142.7 95.211.158.134
    Tcpip\..\Interfaces\{43A6579D-5C92-4E3F-AE48-9795C80F7FA1}: [DhcpNameServer] 82.163.142.7
    Tcpip\..\Interfaces\{5EF8E1E3-4014-4C8F-8DAB-18755F6107AE}: [NameServer] 82.163.142.7 95.211.158.134
    Tcpip\..\Interfaces\{5EF8E1E3-4014-4C8F-8DAB-18755F6107AE}: [DhcpNameServer] 82.163.142.7
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://uk.search.yahoo.com/yhs/web?hspart=ir..._05%26os_ver%3D6.3%26os%3DWindows%2B8.1%2BPro
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://uk.search.yahoo.com/yhs/web?hspart=ir..._05%26os_ver%3D6.3%26os%3DWindows%2B8.1%2BPro




    HKU\S-1-5-21-2703064093-146909271-3715688435-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={9EC0DBB4-EE37-4E91-B316-E887D07409FD}&mid=b11018c1241a47cca1db4101dcf4e17d-52af35ca195749213de8dc273507b4468ae788f8&lang=en&ds=AVG&coid=avgtbavg&cmpid=0216piz&pr=fr&d=2016-03-24 21:41:21&v=4.2.8.608&pid=wtu&sg=&sap=hp
    SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://uk.search.yahoo.com/yhs/search?hspart...s_ver%3D6.3%26os%3DWindows%2B8.1%2BPro&p={searchTerms}
    SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://uk.search.yahoo.com/yhs/search?hspart...s_ver%3D6.3%26os%3DWindows%2B8.1%2BPro&p={searchTerms}
    SearchScopes: HKU\S-1-5-21-2703064093-146909271-3715688435-1001 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={9EC0DBB4-EE37-4E91-B316-E887D07409FD}&mid=b11018c1241a47cca1db4101dcf4e17d-52af35ca195749213de8dc273507b4468ae788f8&lang=en&ds=AVG&coid=avgtbavg&cmpid=0216piz&pr=fr&d=2016-03-24 21:41:21&v=4.2.8.608&pid=wtu&sg=&sap=dsp&q={searchTerms}
    SearchScopes: HKU\S-1-5-21-2703064093-146909271-3715688435-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://uk.search.yahoo.com/yhs/search?hspart...s_ver%3D6.3%26os%3DWindows%2B8.1%2BPro&p={searchTerms}
    SearchScopes: HKU\S-1-5-21-2703064093-146909271-3715688435-1001 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={9EC0DBB4-EE37-4E91-B316-E887D07409FD}&mid=b11018c1241a47cca1db4101dcf4e17d-52af35ca195749213de8dc273507b4468ae788f8&lang=en&ds=AVG&coid=avgtbavg&cmpid=0216piz&pr=fr&d=2016-03-24 21:41:21&v=4.2.8.608&pid=wtu&sg=&sap=dsp&q={searchTerms}
    BHO: Brak nazwy -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> Brak pliku
    U4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X]
    2016-03-24 22:41 - 2016-03-25 18:57 - 00000000 ____D C:\ProgramData\AVG Security Toolbar
    2016-03-24 22:34 - 2016-03-24 22:34 - 00000000 ____D C:\Users\Łukasz\AppData\Roaming\AVG
    2016-03-24 22:33 - 2016-03-25 18:58 - 00000000 ___HD C:\$AVG
    2016-03-24 22:33 - 2016-03-24 22:33 - 00000000 ____D C:\Users\Łukasz\AppData\Roaming\TuneUp Software
    2016-03-24 22:30 - 2016-03-24 22:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
    2016-03-24 22:28 - 2016-03-25 18:59 - 00000000 ____D C:\Program Files (x86)\AVG
    2016-03-24 22:21 - 2016-03-24 22:33 - 00000000 ____D C:\ProgramData\Avg
    2016-03-24 22:20 - 2016-03-25 18:59 - 00000000 ____D C:\Users\Łukasz\AppData\Local\Avg
    2016-03-24 22:20 - 2016-03-24 22:33 - 00000000 ____D C:\Users\Łukasz\AppData\Local\AvgSetupLog
    2016-03-24 22:14 - 2016-03-24 22:14 - 00000000 ____D C:\Users\Łukasz\AppData\Roaming\AVAST Software
    2016-03-24 22:13 - 2016-03-24 22:34 - 00000000 ____D C:\Program Files\Common Files\AV
    2016-03-24 22:13 - 2016-03-24 22:13 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
    2016-03-24 22:09 - 2016-03-24 22:09 - 00000000 ____D C:\ProgramData\AVAST Software
    2016-03-21 12:36 - 2016-03-27 21:19 - 00000000 ____D C:\ProgramData\8c0b2b0c-6f05-0
    2016-03-21 12:36 - 2016-03-27 21:19 - 00000000 ____D C:\ProgramData\8c0b2b0c-1cc7-1
    2016-03-10 12:36 - 2016-03-10 12:36 - 00000000 ____D C:\ProgramData\8c0b2b0c-2f51-1
    2016-03-10 12:36 - 2016-03-10 12:36 - 00000000 ____D C:\ProgramData\8c0b2b0c-2e43-0
    2016-03-03 18:31 - 2016-03-03 18:31 - 00000000 ____D C:\ProgramData\{2bac51fe-612c-1}
    2016-03-03 18:31 - 2016-03-03 18:31 - 00000000 ____D C:\ProgramData\{28c6c6aa-412c-1}
    2016-03-03 18:31 - 2016-03-03 18:31 - 00000000 ____D C:\ProgramData\{1aaef60d-412c-0}
    2016-03-03 18:31 - 2016-03-03 18:31 - 00000000 ____D C:\ProgramData\{13816113-312c-0}
    2016-03-03 18:33 - 2016-02-01 20:55 - 00000000 ____D C:\ProgramData\f6363a62-2ce7-0
    2016-03-03 18:33 - 2016-02-01 20:55 - 00000000 ____D C:\ProgramData\f6363a62-0be1-1
    EmptyTemp:

    Plik zapisz pod nazwą fixlist.txt i umieść w folderze C:\Users\Łukasz\Downloads\
    Uruchom FRST i kliknij w Fix/Napraw.

    0