Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

DNS UNLOCKER - Jak usunąć

mystery_pa 06 Wrz 2016 21:31 771 3
  • Pomocny post
    #2 07 Wrz 2016 00:59
    krzychupar
    Poziom 40  

    Odinstaluj:
    Avast Antivirus

    Otwórz notatnik systemowy i wklej:
    CustomCLSID: HKU\S-1-5-21-1226004453-724448208-469810090-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Marcin\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll => Brak pliku
    Task: {0150630E-2400-4C43-B556-0961FF5DFE59} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
    Task: {01922299-2A48-49A4-8FE2-90BAC35B06F2} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
    Task: {3736E938-83DA-4066-A683-52DDAD1AF1E5} - System32\Tasks\{DF772938-7CD0-4245-A941-79E1F7032B77} => pcalua.exe -a "C:\Program Files (x86)\Picexa\uninstall.exe"
    Task: {446746C0-B14A-4160-853A-ABDFD1A2EF09} - System32\Tasks\{36162726-810E-913B-65EA-3FCB764F8254} => Regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~3\1ef17952\3a96bf3f.dll" <==== UWAGA
    Task: {46E4E1AF-E834-4CC8-A8F8-68C8B6E4FA85} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
    Task: {61578D86-3A62-4AFD-A356-6264F358CF38} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
    Task: {814DD686-8B62-413F-8CB6-30191F3F3FF8} - System32\Tasks\{6A7DC894-C91C-4304-B4F4-CF23CB7F5BC4} => pcalua.exe -a "D:\Gry\THQ\Dawn of War\W40k.exe" -d "D:\Gry\THQ\Dawn of War"
    Task: {82D8DF05-4E7C-434A-A472-A02239679261} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA
    Task: {9272584A-D956-4499-A361-C53D11B4BC5A} - System32\Tasks\{283339F3-8399-42B7-9A88-ACAA090027A7} => pcalua.exe -a E:\setup.exe -d E:\
    Task: {9FDA1561-4C0B-4A60-A20A-A0B4EF2154CC} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
    Task: {A77215DB-DEC9-4A6D-BCAF-C4BCD790AB04} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
    Task: {AFA34370-4B37-4FAC-AB29-4ED57D317B05} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
    Task: {BCF7CF80-2E25-4ED2-BB73-5746A635EEF7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
    Task: {CC4D06A9-7959-42F8-8BD7-A2E8A22C8B0B} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
    Task: {D00E276D-30E9-4F8E-9C10-5D6308CA13AB} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
    Task: {DBDBA6AF-7E80-4D63-8D0E-2D89F965BBDF} - System32\Tasks\{51E84D81-8009-4993-AC8C-026C6112CDEB} => pcalua.exe -a F:\AutoPlay.exe -d F:\
    (AVAST Software) D:\Programy\Avast\AvastUI.exe
    (AVAST Software) D:\Programy\Avast\AvastSvc.exe
    HKLM-x32\...\Run: [AvastUI.exe] => D:\Programy\Avast\AvastUI.exe [9103976 2016-09-05] (AVAST Software)
    HKU\S-1-5-21-1226004453-724448208-469810090-1000\...\MountPoints2: {2a94327d-2254-11e6-9bdc-ad676998556d} - "F:\AutoRun.exe"
    HKU\S-1-5-21-1226004453-724448208-469810090-1000\...\MountPoints2: {da8ee85a-b8b8-11e5-9b34-dffd5e2c88bd} - "F:\AutoRun.exe"




    AppInit_DLLs: C:\ProgramData\Quotenamron\Zummastattrax.dll => Brak pliku
    AppInit_DLLs-x32: C:\ProgramData\Quotenamron\Danphase.dll => C:\ProgramData\Quotenamron\Danphase.dll [257536 2016-05-16] ()
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => D:\Programy\Avast\ashShA64.dll [2016-09-05] (AVAST Software)
    ShellIconOverlayIdentifiers: [GGDriveOverlay1] -> {E68D0A50-3C40-4712-B90D-DCFA93FF2534} => C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll Brak pliku
    ShellIconOverlayIdentifiers: [GGDriveOverlay2] -> {E68D0A51-3C40-4712-B90D-DCFA93FF2534} => C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll Brak pliku
    ShellIconOverlayIdentifiers: [GGDriveOverlay3] -> {E68D0A52-3C40-4712-B90D-DCFA93FF2534} => C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll Brak pliku
    ShellIconOverlayIdentifiers: [GGDriveOverlay4] -> {E68D0A53-3C40-4712-B90D-DCFA93FF2534} => C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll Brak pliku
    Tcpip\Parameters: [NameServer] 82.163.142.7 95.211.158.134
    Tcpip\..\Interfaces\{d991d2ef-e022-4986-9068-6b1dbbc3d666}: [NameServer] 82.163.142.7 95.211.158.134
    Tcpip\..\Interfaces\{f6be948c-3131-4482-9ef8-b05d980d9ee9}: [NameServer] 82.163.142.7 95.211.158.134
    Tcpip\..\Interfaces\{f6be948c-3131-4482-9ef8-b05d980d9ee9}: [DhcpNameServer] 82.163.142.7
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.delta-homes.com/?type=hp&ts=14...&uid=SAMSUNGXHM641JI_S266JDRZB29525B29525
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.delta-homes.com/?type=hp&ts=14...&uid=SAMSUNGXHM641JI_S266JDRZB29525B29525
    HKU\S-1-5-21-1226004453-724448208-469810090-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}
    HKU\S-1-5-21-1226004453-724448208-469810090-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://services.eshield.com/general/newhometab.php?hometab=home&partner=11467&guid={6D393AF9-595E-400D-B784-5213530BA4B9}&i=
    HKU\S-1-5-21-1226004453-724448208-469810090-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.bing.com/search?q={searchTerms}
    HKU\S-1-5-21-1226004453-724448208-469810090-1000\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://www.bing.com/search?q={searchTerms}
    SearchScopes: HKLM -> {2F1E335A-858A-4BE9-8F6B-D0AF1D018B53} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
    SearchScopes: HKLM-x32 -> DefaultScope {ielnksrch} URL =
    SearchScopes: HKLM-x32 -> ielnksrch URL = hxxp://www.bing.com/search?q={searchTerms}
    SearchScopes: HKLM-x32 -> {2F1E335A-858A-4BE9-8F6B-D0AF1D018B53} URL = hxxp://www.bing.com/search?q={searchTerms}&form=DLCDF8&pc=MDDC&src=IE-SearchBox
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-1226004453-724448208-469810090-1000 -> {164A884D-90A0-4B38-B76F-90B96B9E6EFB} URL = hxxp://search.eshield.com/serp?guid={6D393AF9-595E-400D-B784-5213530BA4B9}&action=default_search&k={searchTerms}
    SearchScopes: HKU\S-1-5-21-1226004453-724448208-469810090-1000 -> {2F1E335A-858A-4BE9-8F6B-D0AF1D018B53} URL =
    SearchScopes: HKU\S-1-5-21-1226004453-724448208-469810090-1000 -> {F746257C-2367-434D-8078-92A0257D2C05} URL = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=11467
    SearchScopes: HKU\S-1-5-21-1226004453-724448208-469810090-1000 -> {ielnksrch} URL = hxxp://www.bing.com/search?q={searchTerms}
    BHO: Brak nazwy -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> Brak pliku
    BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll => Brak pliku
    FF Extension: (Avast Online Security) - D:\Programy\Avast\WebRep\FF [2016-09-05]
    FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - D:\Programy\Nowy folder\Mozilla Thunderbird => nie znaleziono
    FF HKLM-x32\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru => nie znaleziono
    FF HKLM-x32\...\Firefox\Extensions: [{fc4350fc-3e37-4f1e-8341-5af31e09f020}] - D:\Programy\Mozilla Firefox\extensions\{fc4350fc-3e37-4f1e-8341-5af31e09f020} => nie znaleziono
    FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - D:\Programy\Avast\WebRep\FF
    FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - D:\Programy\Nowy folder\Mozilla Thunderbird => nie znaleziono
    CHR DefaultSearchURL: Default -> hxxp://feed.safefinder.biz/?fext=true&pub...publisher=extensiondefaultap&st=ed&q={searchTerms}
    CHR DefaultSearchKeyword: Default -> SafeFinder
    CHR HKLM-x32\...\Chrome\Extension: [dkmjljdbbgogihjcapfhgkonfmccbffp] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [fdjkhamgopgokjmllcmpkiijndjeidcl] - C:\Users\Marcin\AppData\Local\Temp\twsfiles\trustedshopper.crx <nie znaleziono>
    CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [jidkebcigjgheaahopdnlfaohgnocfai] - hxxps://clients2.google.com/service/update2/crx
    R2 avast! Antivirus; D:\Programy\Avast\AvastSvc.exe [197128 2016-09-05] (AVAST Software)
    S2 AGSService; "C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe" [X]
    S2 backlh; C:\ProgramData\Logic Handler\set.exe [X]
    R3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-09-05] (AVAST Software)
    R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2016-09-05] (AVAST Software)
    S3 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-09-05] (AVAST Software)
    S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-09-05] (AVAST Software)
    S3 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969560 2016-09-05] (AVAST Software)
    R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513496 2016-09-05] (AVAST Software)
    S3 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2016-09-05] (AVAST Software)
    S3 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [292704 2016-09-05] (AVAST Software)
    R4 cmdccav; system32\drivers\CmdCCAV.sys [X]
    U3 idsvc; Brak ImagePath
    2016-09-05 21:37 - 2016-09-05 21:37 - 00000000 ____D C:\Users\Marcin\AppData\Roaming\AVAST Software
    2016-09-05 21:36 - 2016-09-05 21:36 - 00513496 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
    2016-09-05 21:36 - 2016-09-05 21:36 - 00391496 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
    2016-09-05 21:36 - 2016-09-05 21:36 - 00292704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
    2016-09-05 21:36 - 2016-09-05 21:36 - 00163416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
    2016-09-05 21:36 - 2016-09-05 21:36 - 00108816 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
    2016-09-05 21:36 - 2016-09-05 21:36 - 00103064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
    2016-09-05 21:36 - 2016-09-05 21:36 - 00074544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
    2016-09-05 21:36 - 2016-09-05 21:36 - 00037656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
    2016-09-05 21:36 - 2016-09-05 21:36 - 00003964 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
    2016-09-05 21:36 - 2016-09-05 21:36 - 00000819 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
    2016-09-05 21:36 - 2016-09-05 21:36 - 00000819 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
    2016-09-05 21:36 - 2016-09-05 21:35 - 00969560 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
    2016-09-05 21:35 - 2016-09-05 21:35 - 00053208 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
    2016-09-05 21:31 - 2016-09-05 21:31 - 00000000 ____D C:\ProgramData\AVAST Software
    2016-08-09 07:56 - 2016-06-25 11:39 - 00000000 ____D C:\ProgramData\{27ab910f-212c-1}
    2016-08-09 07:56 - 2016-06-25 11:39 - 00000000 ____D C:\ProgramData\{0a3dd4f5-212c-0}
    2016-08-09 07:56 - 2016-06-25 11:39 - 00000000 ____D C:\ProgramData\{043f3bc0-712c-1}
    2016-08-09 07:56 - 2016-06-25 11:39 - 00000000 ____D C:\ProgramData\{0316baf8-712c-0}
    2016-05-16 14:36 - 2016-05-16 14:36 - 6814720 _____ () C:\Users\Marcin\AppData\Roaming\agent.dat
    2016-05-16 14:36 - 2016-05-16 14:36 - 0065232 _____ () C:\Users\Marcin\AppData\Roaming\Config.xml
    2016-05-16 14:35 - 2016-05-16 14:36 - 0014448 _____ () C:\Users\Marcin\AppData\Roaming\InstallationConfiguration.xml
    2016-05-16 14:35 - 2016-05-16 14:35 - 0127488 _____ () C:\Users\Marcin\AppData\Roaming\Installer.dat
    2016-05-16 14:36 - 2016-05-16 14:36 - 0018432 _____ () C:\Users\Marcin\AppData\Roaming\Main.dat
    2016-05-16 14:36 - 2016-05-16 14:36 - 0005568 _____ () C:\Users\Marcin\AppData\Roaming\md.xml
    2016-05-16 14:36 - 2016-05-16 14:36 - 0126464 _____ () C:\Users\Marcin\AppData\Roaming\noah.dat
    2016-05-16 14:36 - 2016-05-16 14:35 - 0943104 _____ () C:\Users\Marcin\AppData\Roaming\Physhotcof.exe
    2016-05-16 14:36 - 2016-05-16 14:36 - 1745482 _____ () C:\Users\Marcin\AppData\Roaming\Physhotcof.tst
    2014-10-05 11:57 - 2014-10-05 11:57 - 0000872 _____ () C:\Users\Marcin\AppData\Local\recently-used.xbel
    2013-08-13 09:06 - 2013-10-02 12:34 - 0007597 _____ () C:\Users\Marcin\AppData\Local\Resmon.ResmonCfg
    2012-08-12 12:50 - 2012-08-12 12:50 - 0017408 _____ () C:\Users\Marcin\AppData\Local\WebpageIcons.db
    2012-12-13 16:24 - 2012-12-13 16:32 - 0000317 _____ () C:\ProgramData\hpzinstall.log
    EmptyTemp:

    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom FRST i kliknij w Fix/Napraw.

    0
  • #4 08 Wrz 2016 00:00
    RADU23
    Moderator - Komputery Serwis

    Usuń folder C:\FRST i to wszystko.
    DNS UNLOCKER - Jak usunąć

    0