Elektroda.pl
Elektroda.pl
X
CControls
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

DNS UNLOCKER jak usunąć - logi z FRST

merry71 24 Lip 2016 14:53 609 1
  • CControls
  • #2 24 Lip 2016 15:11
    krzychupar
    Poziom 40  

    Odinstaluj:
    McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.334.1 - McAfee, Inc.)

    Otwórz notatnik i wklej:
    CustomCLSID: HKU\S-1-5-21-1229153242-3201741155-1693493588-1001_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\pc1\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => Brak pliku
    CustomCLSID: HKU\S-1-5-21-1229153242-3201741155-1693493588-1001_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\pc1\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => Brak pliku
    CustomCLSID: HKU\S-1-5-21-1229153242-3201741155-1693493588-1001_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\pc1\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => Brak pliku
    CustomCLSID: HKU\S-1-5-21-1229153242-3201741155-1693493588-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\pc1\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => Brak pliku
    CustomCLSID: HKU\S-1-5-21-1229153242-3201741155-1693493588-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\pc1\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => Brak pliku
    CustomCLSID: HKU\S-1-5-21-1229153242-3201741155-1693493588-1001_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\pc1\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => Brak pliku
    CustomCLSID: HKU\S-1-5-21-1229153242-3201741155-1693493588-1001_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\pc1\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Brak pliku
    Task: {0EC80AF3-1B77-4BCB-8524-4000956D1452} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
    Task: {15443087-7CDC-4775-9A55-1A558B6E3428} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
    Task: {316BD03E-159B-4DAD-AD19-B12F5C40FD08} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
    Task: {3335045D-7F5B-45BF-9EC1-1366D1C0F385} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
    Task: {424F8509-62B8-45B1-B7E7-5C86BDC756AC} - System32\Tasks\pc1CouscousesOrganicsV2 => Rundll32.exe GorseUtahans.dll,main 7 1 <==== UWAGA
    Task: {773F7E57-9026-4AFE-92D8-016A52DC72D5} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
    Task: {8CE8650C-F81A-40C6-BFC2-A8D9155E25C4} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
    Task: {A69CC369-D78D-4438-8028-5894AAB3467B} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
    Task: {B4DE834B-C901-4406-BE85-3770A22AD3C4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
    Task: {BC03ECC9-AEE2-4A10-AEE4-B6408349B145} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Brak pliku <==== UWAGA




    Task: {E958F881-F38B-46EE-825F-32B03D64F604} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Brak pliku <==== UWAGA
    Task: {F2519511-F468-48B6-A11A-8B1F431B8675} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
    Task: {F4C70AA5-5BC2-4539-ABDC-E0BEEFFA886D} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
    (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.334\SSScheduler.exe
    HKU\S-1-5-21-1229153242-3201741155-1693493588-1001\...\MountPoints2: {13a57e8f-2047-11e6-bf9d-50b7c3b6150e} - "F:\LGAutoRun.exe"
    HKU\S-1-5-21-1229153242-3201741155-1693493588-1001\...\MountPoints2: {c0ef0398-7b9d-11e4-be85-50b7c3b6150e} - "F:\LGAutoRun.exe"
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2016-06-27]
    ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.334\SSScheduler.exe (McAfee, Inc.)
    ShortcutTarget: Torpedo.lnk -> C:\Users\pc1\AppData\Local\Torpedo\Torpedo.exe (Brak pliku)
    Hosts: 0.0.0.1 mssplus.mcafee.com
    Tcpip\Parameters: [NameServer] 82.163.142.7 95.211.158.134
    Tcpip\..\Interfaces\{78698467-73e3-4ef6-9b88-829d7dc8eae7}: [DhcpNameServer] 82.163.142.7
    Tcpip\..\Interfaces\{7e7b6966-30a4-44e8-b972-36d340e89214}: [DhcpNameServer] 82.163.142.7
    Tcpip\..\Interfaces\{afa98abb-b63a-49c8-8a8b-4c7fd2a50a43}: [DhcpNameServer] 82.163.142.7
    Tcpip\..\Interfaces\{fa7b6b87-5ee4-4d8d-bd53-a393d88304a4}: [DhcpNameServer] 82.163.142.7
    SearchScopes: HKLM-x32 -> DefaultScope {7F4EFF06-7032-458e-AE16-1C1D8255C28A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKLM-x32 -> {7F4EFF06-7032-458e-AE16-1C1D8255C28A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKU\S-1-5-21-1229153242-3201741155-1693493588-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-1229153242-3201741155-1693493588-1001 -> {7F4EFF06-7032-458e-AE16-1C1D8255C28A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    CHR HomePage: Default -> hxxp://www.istartpageing.com/?type=hp&ts=...&uid=st750lm022xhn-m750mbb_s32lj9gf700482
    CHR StartupUrls: Default -> "hxxp://www.istartpageing.com/?type=hp&ts=1451157916&z=aa5c89d2b2e0e6adc9826cfgbz3wag7g5w0mct3g9q&from=cor&uid=st750lm022xhn-m750mbb_s32lj9gf700482"
    CHR DefaultSearchURL: Default -> hxxp://istartpageing.com/web/?type=ds&ts=...d=st750lm022xhn-m750mbb_s32lj9gf700482&q={searchTerms}
    CHR DefaultSearchKeyword: Default -> istartpageing
    CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
    S3 SBUpdd; \??\C:\Program Files\Common Files\SpeedBit\SBUpdate\sbw.sys [X]
    2016-07-24 13:32 - 2016-07-24 13:37 - 00000000 ____D C:\AdwCleaner
    2016-06-27 15:52 - 2016-06-27 15:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
    2016-06-27 15:52 - 2016-02-22 16:55 - 00002009 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
    2016-06-27 15:52 - 2015-11-16 16:14 - 00000000 ____D C:\Program Files\McAfee Security Scan
    EmptyTemp:

    Plik zapisz pod nazwą fixlist.txt i umieść w folderze gdzie znajduje się FRST.exe
    Uruchom FRST i kliknij w Fix/Napraw.

    0