Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Proszę o sprawdzenie logów

roland2570 01 Sty 2017 17:36 327 3
  • #2 01 Sty 2017 17:48
    Kolobos
    Spec od komputerów

    Odinstaluj: FLVPlayer4Free Free FLV Player 7.6.0.0

    Uzyj AdwCleaner, opcja Scan i Clean/Szukaj i Usun: http://www.bleepingcomputer.com/download/adwcleaner/

    AVG przeinstaluj po wykonaniu tego co podalem, teraz nie dziala tak jak powinien.

    Obok frst.exe utworz plik Fixlist.txt z zawartoscia:
    CustomCLSID: HKU\S-1-5-21-482224062-3415614074-1546368430-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Roland\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll => Brak pliku
    Task: {4B880A6A-39CC-49D0-8011-F6E63AB98EA2} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe
    Task: {BED25D65-5D4C-4168-9EB4-B637E2749738} - System32\Tasks\NC => C:\Program Files (x86)\Microleaves\Traffic Exchange\nc.exe [2016-12-27] ()
    Task: {D0CFADD7-201A-4810-A208-E566BA2386FC} - System32\Tasks\Sizayarigily Reports => C:\Program Files (x86)\Clabepykojupy\vzs.exe [2017-01-01] (Glarysoft Ltd)
    Task: C:\Windows\Tasks\NC.job => C:\Program Files (x86)\Microleaves\Traffic Exchange\nc.exe
    WMI_ActiveScriptEventConsumer_ASEC: <===== UWAGA
    2016-12-27 11:54 - 2016-12-27 11:54 - 00118552 _____ () C:\Program Files (x86)\Microleaves\Traffic Exchange\nc.exe
    2017-01-01 15:50 - 2017-01-01 15:50 - 00180736 _____ () c:\program files (x86)\qphchfepy\crkeng.dll
    Hosts:
    () C:\Program Files (x86)\Microleaves\Traffic Exchange\nc.exe
    HKU\S-1-5-21-482224062-3415614074-1546368430-1001\...\Run: [apphide] => C:\Program Files (x86)\baidu\ppt.exe
    HKU\S-1-5-21-482224062-3415614074-1546368430-1001\...\MountPoints2: E - E:\AutoRun.exe
    HKU\S-1-5-21-482224062-3415614074-1546368430-1001\...\MountPoints2: {0983c049-106b-11e1-9eda-806e6f6e6963} - D:\SETUP.EXE
    HKU\S-1-5-21-482224062-3415614074-1546368430-1001\...\MountPoints2: {1d5b972d-4eb4-11e6-acf7-9439e5627105} - E:\LaunchU3.exe -a
    HKU\S-1-5-21-482224062-3415614074-1546368430-1001\...\MountPoints2: {2773f205-a66b-11e6-bdb6-9439e5627105} - E:\HiSuiteDownLoader.exe
    HKU\S-1-5-21-482224062-3415614074-1546368430-1001\...\MountPoints2: {2773f234-a66b-11e6-bdb6-dc0ea114b2f4} - E:\HiSuiteDownLoader.exe
    HKU\S-1-5-21-482224062-3415614074-1546368430-1001\...\MountPoints2: {bd700c2d-6f05-11e3-a652-9439e5627105} - E:\AutoRun.exe
    HKU\S-1-5-18\...\Run: [] => 0
    ShellExecuteHooks: Brak nazwy - {AE965326-CC3B-11E6-A373-64006A5CFC23} - C:\Users\Roland\AppData\Roaming\Clerlisy\Ckoliwoph.dll -> Brak pliku
    ShellIconOverlayIdentifiers: [KzShlobj] -> {AAA0C5B8-933F-4200-93AD-B143D7FFF9F2} => -> Brak pliku
    2017-01-01 15:51 - 2017-01-01 15:51 - 00006004 _____ C:\Windows\System32\Tasks\Sizayarigily Reports
    2017-01-01 15:50 - 2017-01-01 17:12 - 00000000 ____D C:\Program Files (x86)\Qphchfepy
    2017-01-01 15:50 - 2017-01-01 16:31 - 00000000 ____D C:\Users\Roland\AppData\Roaming\Clerlisy




    2017-01-01 15:50 - 2017-01-01 15:51 - 00000000 ____D C:\Program Files (x86)\mpck
    2017-01-01 15:50 - 2017-01-01 15:50 - 00001347 _____ C:\Users\Public\Desktop\Download Adobe Photosho...lnk
    2017-01-01 15:50 - 2017-01-01 15:50 - 00000000 ____D C:\Users\Roland\AppData\Local\Vejerlykersother
    2017-01-01 15:50 - 2017-01-01 15:50 - 00000000 ____D C:\Users\Roland\AppData\Local\Cdryanerguther
    2017-01-01 15:50 - 2017-01-01 15:50 - 00000000 ____D C:\Program Files (x86)\Clabepykojupy
    2017-01-01 15:50 - 2017-01-01 15:50 - 00000000 ____D C:\Program Files (x86)\Anaseent Schedule
    2017-01-01 15:49 - 2017-01-01 15:49 - 00140288 _____ C:\Users\Roland\AppData\Roaming\Installer.dat
    2017-01-01 15:48 - 2017-01-01 17:11 - 00000000 ____D C:\ProgramData\Microleaves
    2017-01-01 15:48 - 2017-01-01 15:48 - 00000801 _____ C:\Users\Roland\AppData\Roaming\Microsoft\Windows\Start Menu\żěŃą.lnk
    2017-01-01 15:48 - 2017-01-01 15:48 - 00000777 _____ C:\Users\Roland\Desktop\żěŃą.lnk
    2017-01-01 15:48 - 2017-01-01 15:48 - 00000000 ___RD C:\MaoHaWiFi Files
    2017-01-01 15:48 - 2017-01-01 15:48 - 00000000 ____D C:\Users\Roland\AppData\Roaming\Softlink
    2017-01-01 15:48 - 2017-01-01 15:48 - 00000000 ____D C:\Users\Roland\AppData\Roaming\MaohaWifi
    2017-01-01 15:48 - 2017-01-01 15:48 - 00000000 ____D C:\Users\Roland\AppData\Roaming\KuaiZip
    2017-01-01 15:48 - 2017-01-01 15:48 - 00000000 ____D C:\ProgramData\MaohaWiFi
    2017-01-01 15:48 - 2017-01-01 15:48 - 00000000 _____ C:\TOSTACK
    2017-01-01 15:48 - 2016-11-26 06:52 - 00043872 _____ C:\Windows\system32\Drivers\MaohaWifiProNat64.sys
    2017-01-01 15:46 - 2017-01-01 16:05 - 00001101 _____ C:\Users\Roland\Desktop\AutoTime.lnk
    2017-01-01 15:46 - 2017-01-01 15:46 - 00000000 ____D C:\Program Files (x86)\Microleaves
    2017-01-01 15:45 - 2017-01-01 17:26 - 00000274 ____H C:\Windows\Tasks\NC.job
    2017-01-01 15:45 - 2017-01-01 15:46 - 00000000 ____D C:\Users\Roland\AppData\Roaming\Microleaves
    2017-01-01 15:45 - 2017-01-01 15:45 - 00003038 _____ C:\Windows\System32\Tasks\NC
    2017-01-01 15:45 - 2017-01-01 15:45 - 00000000 ____D C:\Users\Default\AppData\Local\AdvinstAnalytics
    2017-01-01 15:45 - 2017-01-01 15:45 - 00000000 ____D C:\Users\Default User\AppData\Local\AdvinstAnalytics
    2017-01-01 17:15 - 2015-02-07 00:14 - 00000000 ____D C:\Program Files (x86)\Smart File Advisor
    2017-01-01 17:12 - 2014-03-05 20:27 - 00000000 ____D C:\Program Files (x86)\Enigma Software Group
    2017-01-01 15:49 - 2017-01-01 15:49 - 0140288 _____ () C:\Users\Roland\AppData\Roaming\Installer.dat
    EmptyTemp:

    W FRST wybierz Napraw.

    Po wykonaniu zamiesc nowe logi z FRST, ze skanowania.

    0
  • #4 01 Sty 2017 18:47
    Kolobos
    Spec od komputerów

    Po co marnujesz moj czas skoro niczego nie wykonales?!

    Masz wykonac to co podalem, w szczegolnosci podany Fixlist i dopiero zamiescic nowe logi.

    0