Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Counterflix oraz wygrana iphon - Złapałem wirusa...

pawelol111 16 Sty 2017 13:34 336 1
  • Pomocny post
    #2 16 Sty 2017 14:11
    Kolobos
    Spec od komputerów

    Obok frst.exe utworz plik Fixlist.txt z zawartoscia:
    CustomCLSID: HKU\S-1-5-21-2716727895-1352572236-1111467377-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\admin\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll => Brak pliku
    Task: {05C31BB5-8DFF-496F-B032-902F52110F66} - \Plus-HD-7.6-updater -> Brak pliku <==== UWAGA
    Task: {18101A3B-17FB-47C8-8211-B0E76B554A81} - System32\Tasks\Opera scheduled Autoupdate 1484561673 => C:\Program Files (x86)\Opera\launcher.exe [2016-12-19] (Opera Software)
    Task: {5C030050-DE0D-4C60-8D2B-487DF481E9E7} - \Plus-HD-7.6-enabler -> Brak pliku <==== UWAGA
    Task: {863E35E9-F506-430C-848D-93E474482713} - \Plus-HD-7.6-firefoxinstaller -> Brak pliku <==== UWAGA
    Task: {8B9B73D6-9676-41BB-9C4F-7EB40704F05B} - System32\Tasks\{8F37668D-389C-D126-07AA-6FE1682E6024} => C:\ProgramData\{3AEEB5E5-8D45-024E-76EA-91EDCDFA5D3E}\89E75D6F-3E4C-EAC4-81B1-24490B0E51CF.exe [2017-01-16] () <==== UWAGA
    Task: {8F77A274-217A-4390-9788-15EE1DA001B9} - System32\Tasks\{84B0DFCA-72C4-4870-919F-0E9A1B5C8256} => pcalua.exe -a "C:\Program Files (x86)\Plus-HD-7.6\Uninstall.exe" -c /fromcontrolpanel=1
    Task: {D214D041-864E-4437-B508-CAE3D34BF76D} - System32\Tasks\{239702DC-1A31-4F2F-9E75-34AC5381864C} => pcalua.exe -a "C:\Users\Administrator\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Z8DOABJT\0qah04ww.exe" -d C:\Users\Administrator\Desktop
    Task: {EF5F2EBB-112D-4DA4-857B-11DE29313694} - \Plus-HD-7.6-codedownloader -> Brak pliku <==== UWAGA
    HKLM\...\Run: [] => [X]
    HKU\S-1-5-21-2716727895-1352572236-1111467377-1000\...\MountPoints2: {67c2b0c0-9de9-11e3-b258-3c970eb18b35} - G:\SETUP.EXE /AUTORUN
    HKU\S-1-5-21-2716727895-1352572236-1111467377-1000\...\MountPoints2: {6dd59752-c4f4-11e6-8c6b-1c3e84e04770} - H:\AutoRun.exe
    GroupPolicy: Ograniczenia - Chrome <======= UWAGA
    CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
    Tcpip\Parameters: [NameServer] 82.163.143.176 82.163.142.178
    Tcpip\..\Interfaces\{13E660EB-E31D-47EA-A85B-0BDF5F4E536D}: [DhcpNameServer] 82.163.143.176
    Tcpip\..\Interfaces\{3FC86CEE-0FA0-41FC-BACB-C3056ADCCC5D}: [DhcpNameServer] 82.163.143.176
    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Brak pliku
    CHR Extension: (Avast Online Security) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-07-24] [UpdateUrl: hxxps://mynamedomain.koko//0service/update2/crx] <==== UWAGA
    CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <nie znaleziono>
    S2 Update FindRight; "C:\Program Files (x86)\FindRight\updateFindRight.exe" [X]
    S2 Util FindRight; "C:\Program Files (x86)\FindRight\bin\utilFindRight.exe" [X]
    S3 vm331avs; System32\Drivers\vm331avs.sys [X]
    2017-01-16 12:44 - 2017-01-16 12:48 - 00000000 ____D C:\AdwCleaner
    EmptyTemp:

    W FRST wybierz Napraw.

    Usun katalog C:\FRST.

    0