Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

prosze o sprawdzenie logow - zawirusowane przegladarki

DAROLX 31 Gru 2016 15:15 408 5
  • #2 31 Gru 2016 15:21
    Kolobos
    Spec od komputerów

    Obok frst.exe utworz plik Fixlist.txt z zawartoscia:
    CustomCLSID: HKU\S-1-5-21-734880427-3307778728-2297225584-1001_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\zuzanna\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => No File
    Task: {04A4BA6E-EA5A-48B1-980E-FE80F58AF0D6} - System32\Tasks\{222FB8B6-BF9A-4056-8A4D-F819B630D623} => Iexplore.exe hxxp://www.skype.com/go/downloading?source=li...p;amp;ver=4.2.0.155.259&LastError=404
    Task: {057042A2-39BD-4D26-B01E-86BA827A3750} - System32\Tasks\0615tbUpdateInfo => C:\ProgramData\Avg_Update_0615tb\0615tb_{8C17CEA2-9EEF-4119-B1B6-4485C4605FDA}.exe
    Task: {0A29CD8D-887E-412E-8659-95D68BE12DAB} - System32\Tasks\{975D0209-36F2-46A7-B43A-C57A62FB0910} => pcalua.exe -a "C:\Users\zuzanna\Downloads\Atomix VirtualDJ Pro 6.0.4 Full\Atomix VirtualDJ Pro 6.0.4 Full\install_virtualdj_pro_v6.0.4.exe" -d "C:\Users\zuzanna\Downloads\Atomix VirtualDJ Pro 6.0.4 Full\Atomix VirtualDJ Pro 6.0.4 Full"
    Task: {0DE6EEF5-5C4B-4536-BC94-07BA8421EA4F} - System32\Tasks\{B0B955E3-725A-41DD-8514-B3031CBABDEA} => pcalua.exe -a "C:\Users\zuzanna\Downloads\Gta Sa v2.00+ PATCH ZMIENIAJACY WERSJE\GTA SA MTP (MULTIPLAYER)\samp03.exe" -d "C:\Users\zuzanna\Downloads\Gta Sa v2.00+ PATCH ZMIENIAJACY WERSJE\GTA SA MTP (MULTIPLAYER)"
    Task: {156DC2F3-0946-407F-AE2D-4DD5C3C9F53B} - System32\Tasks\{A03F5B21-5519-4E22-9C75-E6316935AF48} => msiexec.exe /package "C:\Users\zuzanna\Desktop\AV Dj PRO 7.0.5 Build 370 incl crack-slicer\install_virtualdj_pro_v7.0.5.msi"
    Task: {1E217CCE-32FF-4FF6-9442-7E3F2159406D} - System32\Tasks\{BCE26BB8-26D0-4535-AC1C-60AA47FA8F0D} => pcalua.exe -a K:\install_virtualdj_trial_v6.1.2.exe -d K:\
    Task: {237598BF-3FBF-4169-ACB3-41D8599EB590} - \Auslogics\BoostSpeed\Start BoostSpeed оn zuzanna logon -> No File <==== ATTENTION
    Task: {24191D0C-D7B6-4575-B557-51DA1F364AC8} - System32\Tasks\{D7BDA7F0-2009-4FF7-8F23-D5483A15E0F0} => C:\Users\zuzanna\Desktop\l_DJHome 7.0.2.exe
    Task: {24402957-D117-4B24-8B2D-F637FD1C5FA0} - System32\Tasks\{2D123E34-EFBA-4225-8591-D4E7956695D9} => C:\Users\zuzanna\Desktop\l_DJHome 7.0.2.exe
    Task: {28BF936B-5F16-491F-A5F6-6C0CD9857BE3} - System32\Tasks\{B3DB21CA-B227-456A-A08C-C3569AECD662} => C:\Users\zuzanna\Desktop\install_virtualdj_home_v7.0.2(dobreprogramy.pl).exe <==== ATTENTION
    Task: {2FD5CD3D-DBDF-494B-A9A8-FB0B6414D9DC} - System32\Tasks\{432CBFF5-8738-48F7-9AC2-348AC9B8B59C} => pcalua.exe -a "C:\Program Files (x86)\WorkshopData\Uninstall_WorkshopData\Uninstall WorkshopData.exe"
    Task: {330BAB99-F50B-4D29-911B-64E878E9DF7F} - System32\Tasks\{1D9E2598-078B-4720-971E-2F706D69EA8B} => pcalua.exe -a "C:\Program Files (x86)\Nokia\Ovi\Application Installer\Application Installer\ApplicationInstaller.exe" -d K:\DAREK -c "K:\DAREK\maps_installer_3.03_10wk1_b05_s60_5.0.Nocs.sis"
    Task: {36C4E68C-30C5-4739-BDD6-B3B8703405CB} - System32\Tasks\{6B2A4B49-23FF-45B9-A64A-BB4BECBF903E} => pcalua.exe -a "C:\Users\zuzanna\Downloads\Virtual DJ v7.3 PRO + Crack [ChattChitto RG]\Virtual DJ v7.3 PRO + Crack [ChattChitto RG]\Virtual DJ v7.3 PRO + Crack [ChattChitto RG].exe" -d "C:\Users\zuzanna\Downloads\Virtual DJ v7.3 PRO + Crack [ChattChitto RG]\Virtual DJ v7.3 PRO + Crack [ChattChitto RG]"
    Task: {37DCE643-991E-4DFF-B0D5-2890797D83D3} - System32\Tasks\{4826ACA2-32D7-4F84-8220-D17DDEBE1609} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-08-07] (Skype Technologies S.A.)
    Task: {3BA96FFC-278F-45C9-B4C0-A8F40D482940} - System32\Tasks\{7ECBEEE2-DDEE-DED8-89D9-FA5E10DF4472} => Regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~3\123a2261\21411c07.dll" <==== ATTENTION
    Task: {3BD09A52-C259-4F7B-8466-90AB5F7CAA62} - System32\Tasks\{F4CAF185-2D10-4065-8994-FB975DED841F} => Firefox.exe
    Task: {3F884EED-0CC0-450F-A6D7-1640AC948FF9} - System32\Tasks\{9847710E-B79B-43C0-97C3-29CB899948DC} => C:\Users\zuzanna\Desktop\install_virtualdj_home_v7.0.2(dobreprogramy.pl).exe <==== ATTENTION
    Task: {42C64B54-5230-4743-916D-4B47685D3E2B} - System32\Tasks\{1598B26C-B0DA-4E4D-A2E7-3B450A481A2D} => pcalua.exe -a "C:\Users\zuzanna\Desktop\l_DJHome 7.0.2.exe" -d C:\Users\zuzanna\Desktop
    Task: {4467A69B-D526-4DCC-AE01-C5A2FF6AE8C0} - System32\Tasks\{92F885DE-E763-4C53-9424-7FE22DDD619E} => C:\Users\zuzanna\Desktop\install_virtualdj_home_v7.0.2(dobreprogramy.pl).exe <==== ATTENTION
    Task: {4789C194-5C52-4E6C-975E-71E09C2E2B75} - System32\Tasks\{F2F031FC-645D-4597-A231-CD00440F8EEA} => Firefox.exe
    Task: {48337B7A-28D5-4B16-A34D-A525533B7BBB} - System32\Tasks\{C8605BBB-2DD4-43A8-B129-53785EAE25E9} => pcalua.exe -a "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\ApplicationInstaller.exe" -d C:\Users\zuzanna\Desktop -c "C:\Users\zuzanna\Desktop\Nokia_Mobile_Dictionary_pl.SIS"
    Task: {48FAA6FF-D527-488C-873D-EA7250D17FD3} - System32\Tasks\{976BE7D0-EC68-4189-B678-219CA6324E17} => pcalua.exe -a "C:\Users\zuzanna\Desktop\Atomix Virtual DJ 6.1.2 Build 301\Atomix Virtual DJ 6.1.2 Build 301\install_virtualdj_trial_v6.1.2.exe" -d "C:\Users\zuzanna\Desktop\Atomix Virtual DJ 6.1.2 Build 301\Atomix Virtual DJ 6.1.2 Build 301"
    Task: {4F4EA20B-3FD6-4B99-BE3D-4A16384CE5D4} - System32\Tasks\{81391CF5-1749-465E-9D29-CA205A34D02C} => C:\Program Files (x86)\VirtualDJ\virtualdj.exe [2015-09-04] (Atomix Productions)
    Task: {55018A6A-D858-4C04-9F85-9B947673D3A8} - System32\Tasks\{61A15360-4F30-4155-8E6F-7BA5AC72D920} => Firefox.exe
    Task: {562C8A82-AF17-4302-B5AA-40C7F9A97C2A} - System32\Tasks\{74CD7D53-7FB4-497D-9596-FD46981D55A0} => pcalua.exe -a "C:\Users\zuzanna\Desktop\Tuning Car Studio\TuningCarStudio.exe" -d "C:\Users\zuzanna\Desktop\Tuning Car Studio"
    Task: {5AB015FE-5D38-4DC1-AA17-21F2BA4535AB} - System32\Tasks\{2586B881-6E26-4B1F-AEDD-FE1E699B254A} => C:\Users\zuzanna\Desktop\install_virtualdj_home_v7.0.2(dobreprogramy.pl).exe <==== ATTENTION
    Task: {5D5D16C5-D137-4976-8DEE-684A10DE8442} - System32\Tasks\{F3964450-43DC-4AFF-9F56-613C9BD07C52} => C:\Users\zuzanna\Downloads\Magix Ringtone Maker\Magix Ringtone Maker\setup_uk.exe
    Task: {5DD64103-43DF-405F-A57C-795F692D890A} - System32\Tasks\{7C223138-E8F3-49FF-A5E5-B788834575BB} => C:\Users\zuzanna\Desktop\l_DJHome 7.0.2.exe
    Task: {680665A9-F272-462D-BCCD-1B058D994F37} - System32\Tasks\{442D8EB7-4609-444F-8B3E-6F043D0010D5} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.8.0.158/pl/abandoninstall?page=tsBing
    Task: {69082CF8-32C9-4A2F-A858-8648D19C28B9} - System32\Tasks\{375B5397-15BC-4431-B132-5E348C091359} => pcalua.exe -a C:\Users\zuzanna\Desktop\ROMANTICA\AuxSetup.exe -d C:\Users\zuzanna\Desktop\ROMANTICA
    Task: {69E343DC-2926-4166-8CCA-BFC29874C3BE} - System32\Tasks\{2B3734C8-3CB9-4F79-AEBC-A83297021A2A} => pcalua.exe -a C:\PROGRA~2\VIRTUA~1\UNWISE.EXE -c C:\PROGRA~2\VIRTUA~1\INSTALL.LOG
    Task: {6A71A609-8838-4570-9599-009288276406} - System32\Tasks\{2F11A117-DA54-4F61-8626-E5F1BBC704EC} => pcalua.exe -a "K:\Remote Programs\Jewel Quest 3\GPlrLanc.exe" -c -LOpCode 2 /RemoveContent cid=642550;name=Jewel Quest 3;dir=K:\Remote Programs\Jewel Quest 3\;prvid=143;cmdid=1;prvdir=Default
    Task: {6C817560-5C99-493E-9618-7F59863CC888} - System32\Tasks\{732D04A2-06DB-4AFD-8AEA-178967D475D5} => C:\Users\zuzanna\Desktop\l_DJHome 7.0.2.exe
    Task: {7135B233-B8FF-4D71-859D-18C887CF21AF} - System32\Tasks\{2212627D-14E6-4BAF-9493-98C9F28B254B} => C:\Users\zuzanna\Desktop\l_DJHome 7.0.2.exe
    Task: {748D20F3-B5CC-49CB-A0B2-3BE7E50F3996} - System32\Tasks\Driver Booster SkipUAC (zuzanna) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
    Task: {7C4BA94C-1F44-4E42-B3D5-334157D0CA3E} - System32\Tasks\{69A99784-CFE5-4001-B186-EDE372F3B857} => pcalua.exe -a C:\Users\zuzanna\Desktop\silicon-power_Win98_driver-eng\silicon-power_Win98_driver\Setup.exe -d C:\Users\zuzanna\Desktop\silicon-power_Win98_driver-eng\silicon-power_Win98_driver
    Task: {8D52791F-CD10-40B4-8158-E7D375A133C0} - System32\Tasks\{03B5C72F-4542-4587-A4E4-DDAE81C906CE} => pcalua.exe -a "C:\Program Files (x86)\Digital Audio Editor\unins000.exe"
    Task: {9F90FDA4-E4EF-4A51-9971-F8702B050BF9} - System32\Tasks\{1CB8ADE3-46A6-4B06-808A-CC97FE4D4AC0} => pcalua.exe -a "C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriver.exe" -c /M{ACE86D58-5876-4CA5-95F4-D8A6802D5055}
    Task: {A1F46497-B67A-41BD-97E1-11967F2E864F} - System32\Tasks\{5E278DDC-9053-44CA-AAF9-FC5BAFD90C62} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.0.0.152.259/en/aba...gle-chrome:offered-installed;madedefault
    Task: {A3022E64-C1D8-4E4D-970A-70526A60458F} - System32\Tasks\{33E58BB9-C0E1-4AC2-AFA9-46A08FAA7BD9} => pcalua.exe -a "C:\Users\zuzanna\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5OBAKTGE\pictureviz[1].exe" -d C:\Users\zuzanna\Desktop
    Task: {A738C00F-0AD2-43EC-BF97-70A2861D6102} - System32\Tasks\{EE91C78E-3093-4704-AAFD-9CE7EA72E922} => pcalua.exe -a "C:\Users\zuzanna\Downloads\Atomix Virtual DJ 6.0.8 Full with crack\Atomix Virtual DJ 6.0.8 Full with crack\Atomix Virtual DJ 6.0.8 Full with crack\install_virtualdj_trial_v6.0.8.exe" -d "C:\Users\zuzanna\Downloads\Atomix Virtual DJ 6.0.8 Full with crack\Atomix Virtual DJ 6.0.8 Full with cra (the data entry has 44 more characters).
    Task: {AFA0BADC-C5BB-42A3-9EC7-FDC5895F0510} - System32\Tasks\{EF6F6A8B-DD8B-402E-B807-D4546DE6FD36} => pcalua.exe -a "C:\Program Files (x86)\Common Files\DVDVideoSoft\Uninstall.exe"
    Task: {B0692310-1814-4B11-A088-E1BBA7D839EE} - System32\Tasks\{18717093-FA39-4C0F-98E3-8059945C9B46} => C:\Users\zuzanna\Desktop\l_DJHome 7.0.2.exe
    Task: {B0F0DBD1-E519-4BF1-AA95-668FAA827362} - System32\Tasks\{22320264-8614-4ED7-A0AD-A49BDFEDC379} => pcalua.exe -a C:\Users\zuzanna\Desktop\nandub-binary-1.0rc1\AuxSetup.exe -d C:\Users\zuzanna\Desktop\nandub-binary-1.0rc1
    Task: {C327FB98-D644-4D59-B13F-EEE4B1E7A2E6} - System32\Tasks\{77AD808A-9D7A-4CAC-9708-0020AABF680C} => pcalua.exe -a "C:\Users\zuzanna\Downloads\[www.aletorrenty.pl] CrazyTalk PRO[6.21 Build 1921.1] [Crack]\CrazyTalk PRO 6.21 Build 1921.1 + Crack\CrazyTalk PRO 6.21 Build 1921.1 + Crack\~Get Your Software Here\Setup\setup.exe" -d "C:\Users\zuzanna\Downloads\[www.aletorrenty.pl] CrazyTalk PRO[6.21 Build 1921.1] [ (the data entry has 117 more characters).
    Task: {C4ED20B4-8E6E-4F96-968C-E1FD9CB8F4BA} - System32\Tasks\{9FEACAA1-D40E-4249-92DD-5A300E5EB72F} => pcalua.exe -a "C:\Program Files\DomaIQ Uninstaller\DomaIQUninstall.exe"
    Task: {CA53CD52-9A0A-4785-80E9-2FE30D5CA930} - System32\Tasks\{9F4F852D-1509-48CF-A609-BA6405CFFEC6} => C:\Users\zuzanna\Desktop\l_DJHome 7.0.2.exe
    Task: {CB714C7A-9719-4914-9EAB-6534A9E83077} - System32\Tasks\{B0CBE483-02F1-484C-80DB-CDA1CF4F5A47} => C:\Users\zuzanna\Downloads\Atomix Virtual DJ 6.0.8 Full with crack\Atomix Virtual DJ 6.0.8 Full with crack\Atomix Virtual DJ 6.0.8 Full with crack\install_virtualdj_trial_v6.0.8.exe
    Task: {CBB7EFAB-8621-4A8E-9F39-394EC417D90D} - System32\Tasks\{D79B43E3-89F5-4EF2-BCDF-15F14C636A8B} => pcalua.exe -a "C:\Users\zuzanna\Downloads\Harry Potter i Więz bień Azkabanu.exe" -d C:\Users\zuzanna\Downloads
    Task: {CF17942A-8172-4F2C-BA66-CE84A59AE71C} - System32\Tasks\{0D744685-9CCF-4751-A926-02208B4B6B67} => C:\Program Files (x86)\VirtualDJ\virtualdj.exe [2015-09-04] (Atomix Productions)
    Task: {D4E82B5E-A35E-4B91-892D-9943A2E52241} - System32\Tasks\{6AFD0DDE-DA44-449C-BDF4-5B6C5407DCB8} => pcalua.exe -a "C:\Users\zuzanna\Downloads\Gta Sa v2.00+ PATCH ZMIENIAJACY WERSJE\CD2(polonizacja)\Setup.exe" -d "C:\Users\zuzanna\Downloads\Gta Sa v2.00+ PATCH ZMIENIAJACY WERSJE\CD2(polonizacja)"
    Task: {D8975879-69E4-4EEF-8F1E-0FA25B0186FA} - System32\Tasks\{7770B9B6-4019-468C-B91E-7F69EE7EAD1B} => M:\Virtual_DJHome 7.0.2.exe
    Task: {EF3BE031-0E01-4772-89D3-555713C39245} - \Auslogics\BoostSpeed\Scan and Repair -> No File <==== ATTENTION
    Task: {F79598E8-48FF-4466-BE20-01D90627E126} - System32\Tasks\{D50EBE3F-2CAF-441B-8BC2-F4CAA7F0C6A0} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-08-07] (Skype Technologies S.A.)
    Task: {FF56D44C-574F-4BF7-94A2-2105F1EE8D01} - System32\Tasks\{112A85B7-AA28-49F6-B8EF-8EB250AA34A2} => pcalua.exe -a C:\Users\zuzanna\Desktop\virtualdjv5.1.exe -d C:\Users\zuzanna\Desktop
    Task: C:\Windows\Tasks\0615tbUpdateInfo.job => C:\ProgramData\Avg_Update_0615tb\0615tb_{8C17CEA2-9EEF-4119-B1B6-4485C4605FDA}.exe
    AlternateDataStreams: C:\Windows:865849F0BEAF42B2 [50]
    AlternateDataStreams: C:\ProgramData\TEMP:1D32EC29 [138]
    AlternateDataStreams: C:\ProgramData\TEMP:6495C51F [164]
    AlternateDataStreams: C:\ProgramData\TEMP:93DE1838 [120]
    AlternateDataStreams: C:\ProgramData\TEMP:AB689DEA [246]
    AlternateDataStreams: C:\ProgramData\TEMP:ABE89FFE [260]
    AlternateDataStreams: C:\ProgramData\TEMP:E1F04E8D [246]
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ntrexeservice => ""="Service"
    (© 2015 Microsoft Corporation) C:\Users\zuzanna\AppData\Local\Microsoft\BingSvc\BingSvc.exe
    HKLM-x32\...\Run: [] => [X]
    HKU\S-1-5-21-734880427-3307778728-2297225584-1001\...\Run: [BingSvc] => C:\Users\zuzanna\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2016-03-01] (© 2015 Microsoft Corporation)
    HKU\S-1-5-21-734880427-3307778728-2297225584-1001\...\MountPoints2: {9036de08-eb62-11e3-84fb-4487fc6255fd} - M:\Startme.exe
    HKU\S-1-5-21-734880427-3307778728-2297225584-1001\...\MountPoints2: {a2684dd1-27c5-11e0-882c-4487fc6255fd} - L:\NokiaPCIA_Autorun.exe
    HKU\S-1-5-21-734880427-3307778728-2297225584-1001\...\MountPoints2: {a985d564-ab5c-11e3-851e-4487fc6255fd} - M:\Startme.exe
    HKU\S-1-5-21-734880427-3307778728-2297225584-1001\...\MountPoints2: {b69c8d0d-c706-11e5-9863-4487fc6255fd} - L:\Startme.exe
    GroupPolicy\User: Restriction <======= ATTENTION
    CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
    Tcpip\Parameters: [NameServer] 82.163.143.157 82.163.142.159
    Tcpip\..\Interfaces\{E57EA16A-9D27-4393-B539-E5813554157E}: [DhcpNameServer] 82.163.143.157
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.safesearch.net/?p=h&m=ie&c=wi&s=wi
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.safesearch.net/?p=h&m=ie&c=na&s=na
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://www.safesearch.net/?p=h&m=ie&c=wi&s=wi
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.safesearch.net/?p=h&m=ie&c=wi&s=wi
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://www.safesearch.net/?p=h&m=ie&c=wi&s=wi
    HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.safesearch.net/?p=h&m=ie&c=wi&s=wi
    HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://www.safesearch.net/?p=h&m=ie&c=wi&s=wi
    HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.safesearch.net/?p=h&m=ie&c=wi&s=wi
    HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://www.safesearch.net/?p=h&m=ie&c=wi&s=wi
    HKU\S-1-5-21-734880427-3307778728-2297225584-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://www.safesearch.net/?p=h&m=ie&c=wi&s=wi
    SearchScopes: HKLM -> DefaultScope {BA1BE292-1D15-488B-934D-008742212380} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=s&m=ie&c=wi&s=wi
    SearchScopes: HKLM -> {0b4d26f6-61a8-4463-99dd-5f2fe0400fa6} URL =
    SearchScopes: HKLM -> {BA1BE292-1D15-488B-934D-008742212380} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=s&m=ie&c=wi&s=wi
    SearchScopes: HKLM -> {c9ab6446-7efc-47fe-966c-dc54324eff9f} URL =
    SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW
    SearchScopes: HKU\.DEFAULT -> DefaultScope {BA1BE292-1D15-488B-934D-008742212380} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=s&m=ie&c=wi&s=wi
    SearchScopes: HKU\.DEFAULT -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=sm=ie&c=wi&s=wi
    SearchScopes: HKU\.DEFAULT -> {BA1BE292-1D15-488B-934D-008742212380} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=s&m=ie&c=wi&s=wi
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {BA1BE292-1D15-488B-934D-008742212380} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=s&m=ie&c=wi&s=wi
    SearchScopes: HKU\S-1-5-19 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=sm=ie&c=wi&s=wi
    SearchScopes: HKU\S-1-5-19 -> {BA1BE292-1D15-488B-934D-008742212380} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=s&m=ie&c=wi&s=wi
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {BA1BE292-1D15-488B-934D-008742212380} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=s&m=ie&c=wi&s=wi
    SearchScopes: HKU\S-1-5-20 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=sm=ie&c=wi&s=wi
    SearchScopes: HKU\S-1-5-20 -> {BA1BE292-1D15-488B-934D-008742212380} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=s&m=ie&c=wi&s=wi
    SearchScopes: HKU\S-1-5-21-734880427-3307778728-2297225584-1001 -> DefaultScope {BA1BE292-1D15-488B-934D-008742212380} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=s&m=ie&c=wi&s=wi
    SearchScopes: HKU\S-1-5-21-734880427-3307778728-2297225584-1001 -> {1B1335F2-629E-CBCD-F17C-B9BD6C414776} URL = hxxp://vdh.wyzostart.com/s/?q={searchTerms}&iesrc={referrer:source?}&cfg=2-91-0-1b72b
    SearchScopes: HKU\S-1-5-21-734880427-3307778728-2297225584-1001 -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
    SearchScopes: HKU\S-1-5-21-734880427-3307778728-2297225584-1001 -> {4D520339-4ECE-4086-996E-BF2CC32EA729} URL = hxxp://www.bing.com/search?FORM=SL5MDF&PC=SL5M&q={searchTerms}&src=IE-SearchBox
    SearchScopes: HKU\S-1-5-21-734880427-3307778728-2297225584-1001 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW_enGB372
    SearchScopes: HKU\S-1-5-21-734880427-3307778728-2297225584-1001 -> {BA1BE292-1D15-488B-934D-008742212380} URL = hxxps://www.safesearch.net/search?q={searchTerms}&p=s&m=ie&c=wi&s=wi
    SearchScopes: HKU\S-1-5-21-734880427-3307778728-2297225584-1001 -> {FA5F2970-85AE-4161-8C17-7E0CAC98A81F} URL = hxxp://uk.search.yahoo.com/search?p={searchterms}&ei=UTF-8&fr=w3i&type=W3i_DS,136,0_0,Search,20101253,16938,0,8,0
    FF user.js: detected! => C:\Users\zuzanna\AppData\Roaming\Mozilla\Firefox\Profiles\zcpdcqpw.default-1422638791196\user.js [2016-01-30]
    FF NewTab: Mozilla\Firefox\Profiles\zcpdcqpw.default-1422638791196 -> hxxps://www.safesearch.net/?p=t&m=ff&c=wi&s=wi
    FF DefaultSearchUrl: Mozilla\Firefox\Profiles\zcpdcqpw.default-1422638791196 -> hxxps://www.safesearch.net/search?p=s&q={searchTerms}&m=ff&c=wi&s=wi
    FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\zcpdcqpw.default-1422638791196 -> Search
    FF SelectedSearchEngine: Mozilla\Firefox\Profiles\zcpdcqpw.default-1422638791196 -> Search
    FF Keyword.URL: Mozilla\Firefox\Profiles\zcpdcqpw.default-1422638791196 -> hxxps://www.safesearch.net/search?p=s&q=
    CHR HKLM\...\Chrome\Extension: [elggllhppljlljkgfeokjpehmdamkejk] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM\...\Chrome\Extension: [ihokndmjeombjojnfkmapfnjeghjohim] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM\...\Chrome\Extension: [lpeeaghdjmhlakojjcgfdhgcejdaefmi] - hxxps://chrome.google.com/webstore/detail/lpeeaghdjmhlakojjcgfdhgcejdaefmi
    CHR HKU\S-1-5-21-734880427-3307778728-2297225584-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [cflheckfmhopnialghigdlggahiomebp] - C:\Users\zuzanna\AppData\Local\CRE\cflheckfmhopnialghigdlggahiomebp.crx <not found>
    CHR HKU\S-1-5-21-734880427-3307778728-2297225584-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [elggllhppljlljkgfeokjpehmdamkejk] - hxxps://clients2.google.com/service/update2/crx
    CHR HKU\S-1-5-21-734880427-3307778728-2297225584-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
    CHR HKU\S-1-5-21-734880427-3307778728-2297225584-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ihokndmjeombjojnfkmapfnjeghjohim] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [elggllhppljlljkgfeokjpehmdamkejk] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [ihokndmjeombjojnfkmapfnjeghjohim] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [lpeeaghdjmhlakojjcgfdhgcejdaefmi] - hxxps://chrome.google.com/webstore/detail/lpeeaghdjmhlakojjcgfdhgcejdaefmi
    S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [X]
    S3 clwvd; system32\DRIVERS\clwvd.sys [X]
    S3 LVPr2M64; system32\DRIVERS\LVPr2M64.sys [X]
    S3 nmwcdcx64; system32\drivers\ccdcmbox64.sys [X]
    S3 nmwcdx64; system32\drivers\ccdcmbx64.sys [X]
    S3 upperdev; system32\DRIVERS\usbser_lowerfltx64.sys [X]
    S3 UsbserFilt; system32\DRIVERS\usbser_lowerfltx64j.sys [X]
    2016-12-31 13:50 - 2016-09-03 07:22 - 00000000 ____D C:\AdwCleaner
    2010-05-04 07:19 - 2016-03-01 00:25 - 0005486 _____ () C:\Users\zuzanna\AppData\Roaming\wklnhst.dat
    2015-02-19 03:07 - 2015-02-19 03:07 - 0234679 _____ () C:\Users\zuzanna\AppData\Local\dsi1.dat
    2015-02-19 03:07 - 2015-02-19 03:07 - 0161916 _____ () C:\Users\zuzanna\AppData\Local\dsi2.dat
    EmptyTemp:

    W FRST wybierz Napraw.

    0
  • #3 31 Gru 2016 15:27
    DAROLX
    Poziom 2  

    A JAK UTWORZYC TEN PLIK? Fixlist.txt

    0
  • Pomocny post
    #4 31 Gru 2016 16:51
    Kolobos
    Spec od komputerów

    Trzeba skorzystac z notatnika.

    0
  • #5 31 Gru 2016 17:36
    Acorus 20
    Spec od komputerów

    Otwórz notatnik systemowy i wklej podany skrypt. Zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.

    0
  • #6 18 Sty 2017 18:38
    DAROLX
    Poziom 2  

    WASZE
    Pogotowie komputerowe krok po kroku napisało mi co i jak
    Dzięki wielkie

    0