Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Chiński program i inne

Maki21 11 Kwi 2016 17:40 603 3
  • Pomocny post
    #2 11 Kwi 2016 18:00
    Acorus 20
    Spec od komputerów

    Otwórz notatnik systemowy i wklej:

    Cytat:
    CloseProcesses:
    Task: {338A6C53-EFFF-4BAD-9C5A-6984574AB5A1} - System32\Tasks\WinTsks => C:\Program Files (x86)\WinTsks\WinTsks\WinTsks.exe [2016-04-09] () <==== UWAGA
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP => ""="service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP => ""="service"
    Hosts:
    HKLM-x32\...\Run: [ QQPCTray] => C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCTRAY.EXE [356464 2016-04-11] (Tencent)
    HKLM-x32\...\Run: [apphide] => C:\Program Files (x86)\badu\uc.exe [245829 2016-04-03] ()
    HKLM-x32\...\Run: [pcmgr] => C:\Program Files (x86)\badu\Uninst.exe
    ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] -> {B7667919-3765-4815-A66D-98A09BE662D6} => C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QMGCShellExt64.dll [2016-04-11] (Tencent)
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.602.com?uid=gjss&suid=1
    HKU\S-1-5-21-3578022877-1349271164-4188290417-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.602.com/?uid=gjss&suid=1
    BHO: 电脑管家网页防火墙 -> {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} -> C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\TSWebMon64.dat [2016-04-11] (Tencent)
    FF NewTab: hxxp://www.hohosearch.com/?ts=AHEqA3AsBnQlA0....3D663A2130521AD0&ptid=amz&mode=ffseng
    FF DefaultSearchEngine: hohosearch
    FF DefaultSearchEngine.US: data:text/plain,browser.search.defaultenginename.US=hohosearch
    FF SelectedSearchEngine: hohosearch
    FF Homepage: hxxp://www.hohosearch.com/?ts=AHEqA3AsBnQlA0....3D663A2130521AD0&ptid=amz&mode=ffseng
    FF Keyword.URL: hxxp://www.hohosearch.com/chrome.php?uid=490A....&v=20160409&mode=ffexttoolbar&q=
    FF Extension: sidebar - C:\Users\Maki\AppData\Roaming\Mozilla\Firefox\Profiles\cr11wt8i.default\Extensions\sidebarff@gmail.com [2016-03-22] [Brak podpisu cyfrowego]
    FF Extension: GsearchFinder - C:\Users\Maki\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi [2016-04-09]




    S2 BugreportW; C:\Program Files (x86)\SpeedSearchesbnd\Bugreportauclt.exe [1622648 2016-04-09] ()
    R2 QQPCRTP; C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCRtp.exe [301656 2016-04-11] (Tencent)
    U2 QQRepaira2a; C:\Program Files (x86)\Tencent\QQPCMGR\Plugins\QQRepaira2a [136512 2016-04-11] ()
    S2 QQRepairFixSVC; C:\Program Files (x86)\Tencent\QQPCMGR\Plugins\QQRepairFixSVC [136512 2016-04-11] ()
    R2 rowugoqo; C:\Users\Maki\AppData\Local\00000000-1460394890-0000-0000-D43D7E37087E\snswC7CA.tmp [225792 2016-04-11] () [Brak podpisu cyfrowego]
    S2 WinSvces; C:\Program Files (x86)\WinSvces\WinSvces\WinSvces.exe [319432 2016-04-09] ()
    R2 pikyxuxezbt; C:\Program Files (x86)\00000000-1460387613-0000-0000-D43D7E37087E\knslB117.tmpfs [X]
    R2 rijufoze; C:\Program Files (x86)\00000000-1460387613-0000-0000-D43D7E37087E\hnswF550.tmp [X]
    R2 rocufyky; C:\Program Files (x86)\00000000-1460387613-0000-0000-D43D7E37087E\jnsbD87B.tmp [X]
    R1 QMUdisk; C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QMUdisk64.sys [184536 2016-03-02] (Tencent)
    R2 QQSysMonX64; C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQSysMonX64.sys [138488 2016-04-11] (电脑管家)
    R1 softaal; C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\softaal64.sys [35064 2016-04-11] (Tencent)
    R1 SRepairDrv; \??\C:\Program Files (x86)\Tencent\QQPCMGR\Plugins\SRepairDrv [168568 2016-04-11] ()
    R3 TAOAccelerator; C:\Windows\system32\Drivers\TAOAccelerator64.sys [89880 2016-04-11] (Tencent)
    R1 TAOKernelDriver; C:\Windows\system32\Drivers\TAOKernel64.sys [137976 2016-04-11] (Tencent Technology(Shenzhen) Company Limited)
    R3 TFsFlt; C:\Windows\System32\Drivers\TFsFltX64.sys [87800 2016-04-11] (电脑管家)
    R1 TSDefenseBt; C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\TsDefenseBT64.sys [28984 2016-04-11] (Tencent)
    R2 tsnethlpx64; C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\TsNetHlpX64.sys [48376 2016-04-11] ()
    R3 TSSKX64; C:\Windows\System32\drivers\tsskx64.sys [45304 2016-04-11] (电脑管家)
    R1 TSSysKit; C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\TSSysKit64.sys [87288 2016-04-11] (电脑管家)
    2016-04-11 17:25 - 2016-04-11 17:25 - 00333506 _____ (AnySend.com) C:\Users\Maki\AppData\Local\nsv9FEE.tmp
    2016-04-11 17:25 - 2016-04-11 17:25 - 00000821 _____ C:\Users\Maki\Desktop\Continue AnySend Installation.lnk
    2016-04-11 17:24 - 2016-04-11 17:28 - 00000000 ____D C:\Program Files (x86)\CleanBrowser
    2016-04-11 17:22 - 2016-04-11 17:29 - 00000000 ____D C:\ProgramData\TXQMPC
    2016-04-11 17:22 - 2016-04-11 17:22 - 00005120 _____ C:\Users\Maki\AppData\Roaming\GiftBag.db
    2016-04-11 17:22 - 2016-04-11 17:22 - 00000000 ____D C:\Program Files\Common Files\Tencent
    2016-04-11 17:22 - 2016-04-11 17:21 - 00137976 _____ (Tencent Technology(Shenzhen) Company Limited) C:\Windows\system32\Drivers\TAOKernel64.sys
    2016-04-11 17:22 - 2016-04-11 17:21 - 00089880 _____ (Tencent) C:\Windows\system32\Drivers\TAOAccelerator64.sys
    2016-04-11 17:22 - 2016-04-11 17:21 - 00045304 _____ (电脑管家) C:\Windows\system32\Drivers\TSSKX64.sys
    2016-04-11 17:21 - 2016-04-11 17:29 - 00000000 ____D C:\Users\Maki\AppData\Roaming\Tencent
    2016-04-11 17:21 - 2016-04-11 17:27 - 00000000 ____D C:\ProgramData\Tencent
    2016-04-11 17:21 - 2016-04-11 17:21 - 00087800 _____ (电脑管家) C:\Windows\system32\Drivers\TFsFltX64.sys
    2016-04-11 17:21 - 2016-04-11 17:21 - 00000000 ____D C:\Users\Maki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
    2016-04-11 17:21 - 2016-04-11 17:21 - 00000000 ____D C:\Program Files (x86)\Tencent
    2016-04-11 17:21 - 2016-04-11 17:21 - 00000000 ____D C:\Program Files (x86)\badu
    2016-04-11 17:20 - 2016-04-11 17:22 - 14504060 _____ C:\Users\Maki\Downloads\KMS.Activator.Ultimate.2014.v1.9.rar
    2016-04-11 17:15 - 2016-04-11 17:26 - 00000000 ____D C:\Program Files (x86)\SpeedSearchesbnd
    2016-04-11 17:15 - 2016-04-11 17:15 - 00015224 _____ C:\Windows\System32\Tasks\WinTsks
    2016-04-11 17:15 - 2016-04-11 17:15 - 00000000 ____D C:\Users\Public\Documents\dmp
    2016-04-11 17:15 - 2016-04-11 17:15 - 00000000 ____D C:\Users\Maki\AppData\Roaming\vnlgp
    2016-04-11 17:15 - 2016-04-11 17:15 - 00000000 ____D C:\Program Files (x86)\WinTsks
    2016-04-11 17:15 - 2016-04-11 17:15 - 00000000 ____D C:\Program Files (x86)\WinSvces
    2016-04-11 17:13 - 2016-04-11 17:29 - 00000000 ____D C:\Program Files (x86)\00000000-1460387613-0000-0000-D43D7E37087E
    2016-03-22 17:23 - 2016-03-22 17:23 - 00003114 _____ C:\Windows\System32\Tasks\{9269C644-7828-4B56-8253-151BD36039EB}
    2016-03-22 17:23 - 2016-03-22 17:23 - 00003114 _____ C:\Windows\System32\Tasks\{369554CC-FD15-4739-A3C7-511D8C29F5A6}
    2016-03-22 17:22 - 2016-03-22 17:22 - 00003114 _____ C:\Windows\System32\Tasks\{7A1B5320-790D-4848-954C-C590285D8B3A}
    2016-04-11 17:22 - 2016-04-11 17:22 - 0005120 _____ () C:\Users\Maki\AppData\Roaming\GiftBag.db
    2016-04-11 17:25 - 2016-04-11 17:25 - 0333506 _____ (AnySend.com) C:\Users\Maki\AppData\Local\nsv9FEE.tmp
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix/Napraw.

    0
  • #3 11 Kwi 2016 19:04
    Maki21
    Poziom 4  

    Dzięki, pomogło :)

    0