Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

AVAST - org.publicvm.com/is-ready

02 Lip 2016 18:03 435 2
  • Pomocny post
    #2 02 Lip 2016 18:14
    Acorus 20
    Spec od komputerów

    Otwórz notatnik systemowy i wklej:

    Cytat:
    CloseProcesses:
    HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-10-14] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
    Winlogon\Notify\igfxcui: igfxdev.dll [X]
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\Run: [home] => wscript.exe //B "C:\Users\DELL\AppData\Roaming\home.vbe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {1a59ee38-9b7c-11e5-bed9-b8ca3addac30} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {203a1a5b-4fb1-11e3-be87-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {27be170f-f987-11e3-be99-b8ca3addac30} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {28db79bb-d932-11e4-bebf-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {2cd8c4c9-4e48-11e4-bea2-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {5342552b-3752-11e3-be80-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {5342571b-3752-11e3-be80-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {564047d2-37ef-11e3-be81-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {5640491c-37ef-11e3-be81-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {6b26db2a-9265-11e4-beac-f4b7e20e687a} - "F:\HTC_Sync_Manager_PC.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {6b26dd1f-9265-11e4-beac-f4b7e20e687a} - "E:\HTC_Sync_Manager_PC.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {6b26ec63-9265-11e4-beac-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {6d1c69c9-ef8c-11e5-bedf-b8ca3addac30} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {7ee156e7-beb5-11e4-beb9-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {94b269b2-6a9f-11e4-bea5-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {94b269d1-6a9f-11e4-bea5-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {95994cd3-57bb-11e5-bed5-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {959955eb-57bb-11e5-bed5-f4b7e20e687a} - "F:\AutoRun.exe"




    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {9c94e592-66eb-11e5-bed7-b8ca3addac30} - "E:\HTC_Sync_Manager_PC.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {9c94e8a1-66eb-11e5-bed7-b8ca3addac30} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {a166564d-30ac-11e5-becb-f4b7e20e687a} - "F:\HTC_Sync_Manager_PC.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {b773e635-0af8-11e5-bec1-b8ca3addac30} - "E:\HTC_Sync_Manager_PC.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {bad98709-3f2b-11e3-be85-f4b7e20e687a} - "E:\AutoRun.exe"
    HKU\S-1-5-21-2193689921-986285057-3472364136-1001\...\MountPoints2: {e8177b6e-4f40-11e5-bed2-f4b7e20e687a} - "E:\AutoRun.exe"
    Startup: C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\home.vbe [2015-09-08] ()
    GroupPolicy: Ograniczenia - Chrome <======= UWAGA
    CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
    SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    Toolbar: HKLM - Brak nazwy - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - Brak pliku
    FF Extension: Bronze Aid - C:\Users\DELL\AppData\Roaming\Mozilla\Firefox\Profiles\r4pgkfjw.default\Extensions\{5e94b337-ca09-4d30-8d5e-3d9701461b9a}.xpi [2015-12-04] [Brak podpisu cyfrowego]
    S3 SmbDrv; \SystemRoot\System32\drivers\Smb_driver_AMDASF.sys [X]
    2016-02-10 22:18 - 2015-09-08 22:04 - 0092629 ___SH () C:\Users\DELL\AppData\Roaming\home.vbe
    EmptyTemp:

    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix/Napraw.

    0
  • #3 02 Lip 2016 19:31
    2779635
    Użytkownik usunął konto