Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Reklamy DNS Unlocker - logi FRST

delsebastian 11 Kwi 2016 16:20 423 4
  • Pomocny post
    #2 11 Kwi 2016 16:38
    Acorus 20
    Spec od komputerów

    Odinstaluj DNS Unlocker version 1.4. Otwórz notatnik systemowy i wklej:

    Cytat:
    Task: {1238E413-B765-48AE-83DC-4F6C1B4F1B38} - \WinTaske -> Brak pliku <==== UWAGA
    Task: {12B83EE5-748F-4936-A581-870B1DB95047} - System32\Tasks\{84B88BB2-077F-1869-47CC-3E9394B01E17} => Regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~3\e28159d7\83376e9d.dll" <==== UWAGA
    Task: {2C283405-43A3-4C9D-AEC7-CECAAFB60016} - System32\Tasks\DNSWALTERS => dnswalters.exe <==== UWAGA
    Task: {885A0AEE-3492-42B0-A332-08CE64D088AC} - System32\Tasks\Browser Updater Task(Core) => C:\Program Files (x86)\QQBrowser\Update\Download\3A9FFC3F8D81B06A7907B7CC439A34E0\Update\BrowserUpdate.exe [2016-03-17] (Tencent) <==== UWAGA
    Task: {B749306C-E763-4DC6-9506-61A11E94B3DA} - System32\Tasks\Opera scheduled Autoupdate 1448705977 => C:\Program Files (x86)\Opera\launcher.exe [2016-03-24] (Opera Software)
    HKU\S-1-5-21-1967192563-4059847329-3126923144-1002\...\Run: [BingSvc] => C:\Users\bront\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-26] (© 2015 Microsoft Corporation)
    GroupPolicy: Ograniczenia - Chrome <======= UWAGA
    CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
    Tcpip\Parameters: [NameServer] 82.163.143.171 82.163.142.173
    Tcpip\..\Interfaces\{97cbdf6c-7c1d-4bbb-a987-845e581d896b}: [NameServer] 82.163.143.171 82.163.142.173
    Tcpip\..\Interfaces\{bf69e155-308d-4b4b-888a-5f0ac4d2e033}: [NameServer] 82.163.143.171 82.163.142.173
    Tcpip\..\Interfaces\{bf69e155-308d-4b4b-888a-5f0ac4d2e033}: [DhcpNameServer] 82.163.143.171
    Tcpip\..\Interfaces\{e480af8e-0458-43e8-a9a4-8506156d1a01}: [NameServer] 82.163.143.171 82.163.142.173
    Tcpip\..\Interfaces\{e480af8e-0458-43e8-a9a4-8506156d1a01}: [DhcpNameServer] 82.163.143.171
    HKU\S-1-5-21-1967192563-4059847329-3126923144-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
    SearchScopes: HKU\S-1-5-21-1967192563-4059847329-3126923144-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=SL5MDF&PC=SL5M&q={searchTerms}&src=IE-SearchBox
    BHO-x32: Middle Rush -> {d00ab4cc-662c-40b6-a85f-d53086f4bb16} -> C:\Program Files (x86)\Middle Rush\Extensions\d00ab4cc-662c-40b6-a85f-d53086f4bb16.dll => Brak pliku
    CHR HomePage: Default -> hxxp://www.yessearches.com/?mode=nnnb&pti...9A34E0&v=20160202&ts=AHEpB3MrAnUmAk....
    CHR StartupUrls: Default -> "hxxp://www.yessearches.com/?mode=nnnb&ptid=ior&uid=3A9FFC3F8D81B06A7907B7CC439A34E0&v=20160202&ts=AHEpB3MrAnUmAk.."
    CHR DefaultSearchURL: Default -> hxxp://www.yessearches.com/chrome.php?q={searchTerms}&ts=AHEpB3MrAnUmAk..&v=20160202&uid=3A9FFC3F8D81B06A7907B7CC439A34E0&ptid=ior&mode=nnnb




    CHR DefaultSearchKeyword: Default -> yessearches
    CHR Extension: (Middle Rush) - C:\Users\bront\AppData\Local\Google\Chrome\User Data\Default\Extensions\omfdlhbaainadejlknfpkklnkgfebbng [2015-12-29] [UpdateUrl: hxxp://cdn.middlerush.com/update] <==== UWAGA
    OPR Extension: (Middle Rush) - C:\Users\bront\AppData\Roaming\Opera Software\Opera Stable\Extensions\omfdlhbaainadejlknfpkklnkgfebbng [2015-12-29]
    2016-03-24 13:55 - 2016-03-24 13:55 - 00000000 ____D C:\Users\bront\AppData\Roaming\WinZiper
    2016-03-24 13:55 - 2016-03-24 13:55 - 00000000 ____D C:\Users\bront\AppData\Roaming\eCyber
    2016-03-24 13:48 - 2016-03-24 13:48 - 00015138 _____ C:\WINDOWS\System32\Tasks\Browser Updater Task(Core)
    2016-03-24 13:48 - 2016-03-24 13:48 - 00000000 ____D C:\Program Files (x86)\QQBrowser
    2016-03-20 11:02 - 2016-03-20 11:02 - 00022230 _____ C:\WINDOWS\System32\Tasks\DNSWALTERS
    2016-03-20 11:02 - 2016-03-20 11:02 - 00003882 _____ C:\WINDOWS\System32\Tasks\{84B88BB2-077F-1869-47CC-3E9394B01E17}
    2016-03-20 11:02 - 2016-03-20 11:02 - 00000000 ____D C:\ProgramData\933ecc47-5a43-0
    2016-03-20 11:02 - 2016-03-20 11:02 - 00000000 ____D C:\ProgramData\{22e8ff3a-512c-1}
    2016-03-20 11:02 - 2016-03-20 11:02 - 00000000 ____D C:\ProgramData\{08a86ad2-412c-0}
    2016-03-20 11:02 - 2016-03-20 11:02 - 00000000 ____D C:\Program Files (x86)\DNS Unlocker
    2016-04-11 15:39 - 2016-02-05 14:03 - 00000000 ____D C:\Program Files (x86)\SearchesToYesbnd
    C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix/Napraw.
    Pobierz i uruchom jako administrator AdwCleaner https://toolslib.net/downloads/finish/1/ Kliknij Scan i później Cleaning.

    1
  • #3 11 Kwi 2016 19:10
    delsebastian
    Poziom 9  

    dziekuje, temat do zamkniecia

    0
  • #5 11 Kwi 2016 20:27
    delsebastian
    Poziom 9  

    ok, dzieki za pomoc

    0