Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Price Fountain - jak usunąć ?

maliniok24 28 Cze 2016 12:17 474 1
  • #1 28 Cze 2016 12:17
    maliniok24
    Poziom 1  

    Witam problem moj polega z wyskakujacymi i nerwujacymi reklamami glownie na allegro... Prosilbym o pomoc jak to usunać.. Dodaje zalaczniki ze scanu FRST
    Pozdrawiam
    [/syntax]

    0 1
  • #2 28 Cze 2016 12:32
    krzychupar
    Poziom 41  

    Otwórz notatnik i wklej:
    Task: {4B250E62-3CF0-488A-898F-DDDE8D01496B} - System32\Tasks\MłodyBondholdersReputablyV2 => Rundll32.exe GuesstimatesShape.dll,main 7 1 <==== UWAGA
    Shortcut: C:\Users\Młody\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\Online Help.lnk -> hxxp://www.virtualdj.com/wiki/ (Brak pliku)
    Shortcut: C:\Users\Młody\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\www.virtualdj.com.lnk -> hxxp://www.virtualdj.com/ (Brak pliku)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\50 FREE MP3s from eMusic!.lnk -> hxxp://www.emusic.com/?fref=149126 (Brak pliku)
    Hosts:
    HKU\S-1-5-21-1084500801-3738343978-3607549601-1000\...\MountPoints2: {04421275-6142-11e1-b979-fdf61a3de1c0} - G:\cdstart.exe
    HKU\S-1-5-21-1084500801-3738343978-3607549601-1000\...\MountPoints2: {82104888-d39c-11e2-a979-a5c0d69c15da} - H:\Startme.exe
    HKU\S-1-5-21-1084500801-3738343978-3607549601-1000\...\MountPoints2: {843734b6-528a-11e1-8f67-dc8cc01699ce} - G:\Startme.exe
    GroupPolicy: Ograniczenia - Chrome <======= UWAGA
    CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
    HKU\S-1-5-21-1084500801-3738343978-3607549601-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.interia.pl/#utm_source=instalki1&a...n=instalki1&iwa_source=installer_instalki
    SearchScopes: HKLM -> Google URL = hxxp://www.google.ru/search?hl=ru&q={searchTerms}\
    SearchScopes: HKLM -> Wikipedia URL = hxxp://ru.wikipedia.org/wiki/{searchTerms}\
    SearchScopes: HKLM -> Yahoo URL = hxxp://ru.search.yahoo.com/search?p={searchTerms}\
    SearchScopes: HKLM -> Yandex URL = hxxp://www.yandex.ru/yandsearch?stype=&nl=0&text={searchTerms}\
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-1084500801-3738343978-3607549601-1000 -> Google URL =




    SearchScopes: HKU\S-1-5-21-1084500801-3738343978-3607549601-1000 -> Wikipedia URL =
    FF SelectedSearchEngine: sweet-page
    FF Homepage: hxxp://www.interia.pl/#utm_source=instalki1&a...n=instalki1&iwa_source=installer_instalki
    FF ExtraCheck: C:\Program Files\mozilla firefox\firefox.cfg [2013-06-03] <==== UWAGA
    CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\47.0.2526.106\PepperFlash\pepflashplayer.dll => Brak pliku
    CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\47.0.2526.106\ppGoogleNaClPluginChrome.dll => Brak pliku
    CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\47.0.2526.106\pdf.dll => Brak pliku
    CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\15.2.0\\npsitesafety.dll => Brak pliku
    CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll => Brak pliku
    CHR Plugin: (Java(TM) Platform SE 6 U37) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll => Brak pliku
    CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll => Brak pliku
    CHR Plugin: (Java Deployment Toolkit 6.0.370.6) - C:\Windows\system32\npdeployJava1.dll => Brak pliku
    CHR Extension: (Dokumenty Google) - C:\Users\Młody\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-20] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
    CHR Extension: (Dysk Google) - C:\Users\Młody\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-20] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
    CHR Extension: (Google Wallet) - C:\Users\Młody\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-06-06] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
    S3 TrustedInstaller; %SystemRoot%\servicing\TrustedInstaller.exe [X]
    U3 arsjk657; C:\Windows\system32\Drivers\arsjk657.sys [0 ] (Microsoft Corporation) <==== UWAGA (zerobajtowy plik/folder)
    S3 cpuz134; \??\C:\Users\MODY~1\AppData\Local\Temp\cpuz134\cpuz134_x32.sys [X]
    S1 {06f9190d-9600-47b8-987f-b57740ac4370}Gw; system32\drivers\{06f9190d-9600-47b8-987f-b57740ac4370}Gw.sys [X]
    2016-06-28 12:06 - 2015-07-14 08:43 - 00000000 ____D C:\AdwCleaner
    EmptyTemp:

    Plik zapisz pod nazwą fixlist.txt i umieść w folderze gdzie znajduje się FRST.exe
    Uruchom FRST i kliknij w Fix/Napraw.

    0