Elektroda.pl
Elektroda.pl
X
CControls
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Bład systemowy po starcie Windowsa - RunDll

ArekBosPl 22 Sty 2017 21:18 399 6
  • #1 22 Sty 2017 21:18
    ArekBosPl
    Poziom 2  

    Witam, od pewnego czasu borykam się z pewnym problemem który jest już żenujący, oto błąd który wyskakuje po 5 min jak włączę kompa:
    Wystąpił problem podczas uruchamiania pliku C:\PROGRA~1\COMMON~1\SySPLA~2.DLL

    Pozdrawiam :cry:

    0 6
  • CControls
  • #2 22 Sty 2017 21:25
    Kolobos
    Spec od komputerów

    Czy to az taki duzy problem zeby przeczytac podwieszone watki lub w ogole inne watki w tym dziale i zamiescic samodzielnie wymagane logi?

    0
  • CControls
  • Pomocny post
    #4 22 Sty 2017 23:15
    Kolobos
    Spec od komputerów

    Nie uzywaj IE, zainstaluj najnowsza wersje Firefox: https://www.mozilla.org/pl/firefox/new/

    Odinstaluj:
    Copy All Urls
    ToolPro

    Uzyj AdwCleaner, opcja Scan i Clean/Szukaj i Usun: http://www.bleepingcomputer.com/download/adwcleaner/

    Obok frst.exe utworz plik Fixlist.txt z zawartoscia:
    Task: {008AD48B-FE3D-4D93-94A6-89ED64BE7846} - System32\Tasks\{8EBBB86E-4F31-443B-93D8-A22062BF5F0B} => C:\Program Files (x86)\Grupa IMAGE\Testy B 2015\App\x86\Testy.UI.exe
    Task: {08A091BA-EA01-4719-B8E0-56C2D898A81F} - System32\Tasks\{412D8CD2-102C-417E-8D10-AF11E40C832A} => pcalua.exe -a "C:\Users\Arek\Downloads\StarStableSetup (3).exe" -d C:\Users\Arek\Downloads
    Task: {0ABEED6F-7454-4DA2-998D-A9873F0AFD80} - System32\Tasks\{5C03B90C-B91D-4DBB-A76D-BEB9060FD1DA} => pcalua.exe -a "D:\Far Cry 3\bin\GDFInstall.exe" -d "D:\Far Cry 3\bin"
    Task: {3223B72B-92E9-4B0E-AE81-F9499E626120} - System32\Tasks\{3067A514-3370-4789-823E-0ACA1502F3FA} => C:\Program Files (x86)\Grupa IMAGE\Testy B 2015\App\x86\Testy.UI.exe
    Task: {32314EDA-1DE5-4FE5-9FE5-DBAE2083FF42} - System32\Tasks\{C2B80025-EEA8-4B05-8F32-624442852524} => C:\Program Files (x86)\Grupa IMAGE\Testy B 2015\App\x86\Testy.UI.exe
    Task: {3709F556-8332-449C-AA82-106D08614A4D} - System32\Tasks\Origin => C:\Users\Arek\AppData\Roaming\Origin\update.vbe <==== UWAGA
    Task: {47D08B5F-1295-4582-AE24-9FC38B446CB0} - System32\Tasks\{5DC0262D-2F1C-476D-9BD0-DCEA89E8473B} => Chrome.exe hxxp://ui.skype.com/ui/0/6.18.0.106/pl/abandoninstall?page=tsProgressBar
    Task: {5D14C69C-E3D5-41A8-97F8-2105C9AA577D} - System32\Tasks\{8BB8BAF1-98C8-4FFF-A40F-1EC824FB0189} => Chrome.exe hxxp://ui.skype.com/ui/0/7.0.0.102/pl/abandoninstall?page=tsMain
    Task: {746574D2-DA32-4834-B9A7-4C42DD419FE8} - System32\Tasks\{ECFA6074-33C6-4B99-81AA-BC2FC106B802} => C:\Program Files (x86)\Grupa IMAGE\Testy B 2015\App\x86\Testy.UI.exe
    Task: {A2B2B4A5-AF46-4F6F-92E5-3F6BD702DF64} - System32\Tasks\{B96F10F3-FB29-4424-B3C2-D01DF650905B} => C:\Program Files (x86)\Grupa IMAGE\Testy B 2015\App\x86\Testy.UI.exe
    Task: {BD2C7727-6CB6-482E-96BD-C891038CA1A2} - System32\Tasks\{1980322C-5CF9-4B18-909A-88FAF0A06117} => C:\Program Files (x86)\Grupa IMAGE\Testy B 2015\App\x86\Testy.UI.exe
    Task: {BF2B376E-B197-4D37-ADBA-51C3F7C71C0A} - System32\Tasks\{9BC0E906-EFE6-46FF-A34F-82E7CC57A7EF} => C:\Program Files (x86)\Grupa IMAGE\Testy B 2015\App\x86\Testy.UI.exe
    Task: {C6DE1AC8-3C0C-4DF9-B3A1-EEA1814B3143} - System32\Tasks\{B237D7AC-C7A2-423D-98DC-F9B400FD2B5D} => C:\Program Files (x86)\Grupa IMAGE\Testy B 2015\App\x86\Testy.UI.exe




    Task: {CB50C86A-40EF-4B83-AADC-AC07507764BA} - System32\Tasks\{8BB1368A-C907-4763-B9C0-923C9AA22AD1} => C:\Program Files (x86)\Grupa IMAGE\Testy B 2015\App\x86\Testy.UI.exe
    Task: {D1F6FA2A-6726-4A82-944E-491F9D681503} - System32\Tasks\{48128672-7225-49CA-AEAD-73B1C5FCCF6E} => C:\Program Files (x86)\Grupa IMAGE\Testy B 2015\App\x86\Testy.UI.exe
    Task: {DF0BB68C-EEE6-4C9A-9A79-3BF1A19B5466} - System32\Tasks\{53D02E37-A462-4D27-9A41-17F49CED544A} => C:\Program Files (x86)\Grupa IMAGE\Testy B 2015\App\x86\Testy.UI.exe
    Task: {E5ACCE23-690D-429D-A4EA-4F9E1F4CEEE7} - System32\Tasks\{F7BB2EF4-1700-4667-9159-D1B109B31474} => pcalua.exe -a "C:\Users\Arek\Downloads\StarStableSetup (1).exe" -d C:\Users\Arek\Downloads
    Task: {E6C8906C-4CF9-4947-8C17-A7B908AC9A12} - System32\Tasks\Opera scheduled Autoupdate 1406188552 => C:\Program Files (x86)\Opera\launcher.exe [2016-02-04] ()
    Task: {EA1E4AC4-CE55-442E-A44B-F9FF995CDB0C} - System32\Tasks\Mechanic => C:\ProgramData\629824\repair.exe
    C:\ProgramData\629824\
    Hosts:
    HKLM-x32\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,userinit.exe [X]
    HKLM\...\Policies\Explorer\Run: [52035] => C:\ProgramData\Local Settings\Temp\msqxxquz.com [360448 2009-07-14] (Microsoft Corporation)
    HKU\S-1-5-21-734842658-251922866-3414286565-1000\...\MountPoints2: {7cdfc616-69af-11e3-aafb-94de80d38b45} - G:\setup.exe
    HKU\S-1-5-21-734842658-251922866-3414286565-1000\...\MountPoints2: {aa941f6e-bf8f-11e4-b860-94de80d38b45} - H:\Startme.exe
    ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Arek\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Arek\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Arek\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Arek\AppData\Local\MEGAsync\ShellExtX32.dll -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Arek\AppData\Local\MEGAsync\ShellExtX32.dll -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Arek\AppData\Local\MEGAsync\ShellExtX32.dll -> Brak pliku
    BootExecute: autocheck autochk /p \??\H:autocheck autochk *
    GroupPolicy: Ograniczenia - Chrome <======= UWAGA
    CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
    CHR HKU\S-1-5-21-734842658-251922866-3414286565-1000\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.istartsurf.com/?type=hp&ts=143...p;uid=ST1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.istartsurf.com/?type=hp&ts=143...p;uid=ST1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.istartsurf.com/web/?type=ds&ts...T1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.istartsurf.com/web/?type=ds&ts...T1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT&q={searchTerms}
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartsurf.com/?type=hp&ts=143...p;uid=ST1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartsurf.com/?type=hp&ts=143...p;uid=ST1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.istartsurf.com/web/?type=ds&ts...T1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.istartsurf.com/web/?type=ds&ts...T1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT&q={searchTerms}
    HKU\S-1-5-21-734842658-251922866-3414286565-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.gazeta.pl/0,0.html?p=182&d=20160308
    HKU\S-1-5-21-734842658-251922866-3414286565-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartsurf.com/?type=hp&ts=143...p;uid=ST1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT
    SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts...T1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT&q={searchTerms}
    SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts...T1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT&q={searchTerms}
    SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts...T1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT&q={searchTerms}
    SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts...T1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT&q={searchTerms}
    SearchScopes: HKLM-x32 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = websearch.coolfindings.info/?l=1&q={searchTerms}&pid=24379&r=2015/06/06&hid=13837854326977218795&lg=EN&cc=PL
    SearchScopes: HKU\S-1-5-21-734842658-251922866-3414286565-1000 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.istartsurf.com/web/?utm_source=b&a...GXT&ts=1434895458&type=default&q={searchTerms}
    SearchScopes: HKU\S-1-5-21-734842658-251922866-3414286565-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.istartsurf.com/web/?utm_source=b&a...GXT&ts=1434895458&type=default&q={searchTerms}
    SearchScopes: HKU\S-1-5-21-734842658-251922866-3414286565-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.istartsurf.com/web/?utm_source=b&a...GXT&ts=1434895458&type=default&q={searchTerms}
    SearchScopes: HKU\S-1-5-21-734842658-251922866-3414286565-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?utm_source=b&a...GXT&ts=1434895458&type=default&q={searchTerms}
    SearchScopes: HKU\S-1-5-21-734842658-251922866-3414286565-1000 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://www.istartsurf.com/web/?utm_source=b&a...GXT&ts=1434895458&type=default&q={searchTerms}
    SearchScopes: HKU\S-1-5-21-734842658-251922866-3414286565-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = hxxp://www.istartsurf.com/web/?utm_source=b&a...GXT&ts=1434895458&type=default&q={searchTerms}
    Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll Brak pliku
    Toolbar: HKU\S-1-5-21-734842658-251922866-3414286565-1000 -> Brak nazwy - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Brak pliku
    Toolbar: HKU\S-1-5-21-734842658-251922866-3414286565-1000 -> Brak nazwy - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - Brak pliku
    FF user.js: detected! => C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\user.js [2016-02-24]
    FF NewTab: Mozilla\Firefox\Profiles\2z6jng7t.default -> chrome://quick_start/content/index.html
    FF DefaultSearchEngine: Mozilla\Firefox\Profiles\2z6jng7t.default -> istartsurf
    FF DefaultSearchEngine,S: Mozilla\Firefox\Profiles\2z6jng7t.default -> WebSearch
    FF DefaultSearchUrl: Mozilla\Firefox\Profiles\2z6jng7t.default -> websearch.coolfindings.info/?pid=24379&r=2015/06/06&hid=13837854326977218795&lg=EN&cc=PL&l=1&q=
    FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\2z6jng7t.default -> WebSearch
    FF SearchEngineOrder.1,S: Mozilla\Firefox\Profiles\2z6jng7t.default -> WebSearch
    FF SelectedSearchEngine: Mozilla\Firefox\Profiles\2z6jng7t.default -> istartsurf
    FF SelectedSearchEngine,S: Mozilla\Firefox\Profiles\2z6jng7t.default -> WebSearch
    FF Keyword.URL: Mozilla\Firefox\Profiles\2z6jng7t.default -> websearch.coolfindings.info/?pid=24379&r=2015/06/06&hid=13837854326977218795&lg=EN&cc=PL&l=1&q=
    FF Extension: (RRoboSaaaver) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\3Qg@H.net [2015-07-28] [Brak podpisu cyfrowego]
    FF Extension: (DiascountEixtensi) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\GJ@664.org [2015-08-07] [Brak podpisu cyfrowego]
    FF Extension: (RandomApp) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\kugyetozzhkwjlx@zcngfzescuzbqat.com [2015-07-28] [Brak podpisu cyfrowego]
    FF Extension: (Star Stable Online) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\plugin@starstable.com [2015-01-18] [Brak podpisu cyfrowego]
    FF Extension: (AwsomeExt) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\ubltoylcvajsc_@ozllqsiybblxmzxw.org [2015-08-07] [Brak podpisu cyfrowego]
    FF Extension: (PriicceMinus) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\Wnm@3.net [2015-06-06] [Brak podpisu cyfrowego]
    FF Extension: (PrriceeMoInuus) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\XwdR2EmS@6o.com [2015-06-06] [Brak podpisu cyfrowego]
    FF Extension: (DiGIICoupon) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\y@4ZKerj5W3m.net [2015-06-18] [Brak podpisu cyfrowego]
    FF Extension: (bestadblocker) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\y@7.co.uk [2015-06-06] [Brak podpisu cyfrowego]
    FF Extension: (YahooToolsProtected ) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\yahooprotected@gmail.com.xpi [2016-02-24] [Brak podpisu cyfrowego]
    FF Extension: (DownSaave) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\ybqsA4nt@wA.com [2015-07-06] [Brak podpisu cyfrowego]
    FF Extension: (BTControlTest3 ) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\Extensions\{549567db-d2a9-448a-8982-9d856f6b47d5} [2015-12-10] [Brak podpisu cyfrowego]
    FF Extension: (Brak nazwy) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\extensions\faststartff@gmail.com [nie znaleziono]
    FF Extension: (Brak nazwy) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.0\FFExt\content_blocker@kaspersky.com [nie znaleziono]
    FF Extension: (Brak nazwy) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\extensions\deskCutv2@gmail.com [nie znaleziono]
    FF Extension: (Brak nazwy) - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\extensions\143f44cf-d99c-4e45-8cd9-ef929de77aa8@bdbf6038-0097-480c-8d8e-fc48e28131a8.com [nie znaleziono]
    FF SearchPlugin: C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\searchplugins\istartsurf.xml [2016-08-07]
    FF SearchPlugin: C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\searchplugins\WebSearch.xml [2015-06-06]
    FF HKLM-x32\...\Firefox\Extensions: [quick_start@gmail.com] - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\extensions\quick_start@gmail.com => nie znaleziono
    FF HKLM-x32\...\Firefox\Extensions: [searchffv2@gmail.com] - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\extensions\searchffv2@gmail.com => nie znaleziono
    FF HKLM-x32\...\Firefox\Extensions: [sweetsearch@gmail.com] - C:\Users\Arek\AppData\Roaming\Mozilla\Firefox\Profiles\2z6jng7t.default\extensions\sweetsearch@gmail.com => nie znaleziono
    FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\aartemis.xml [2013-12-29]
    FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\delta-homes.xml [2014-02-26]
    CHR Extension: (scroblr) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mflbcmpjneookibbaeopkfcnegknkgog [2015-07-28] [UpdateUrl: hxxps://mynamedomain.koko/00] <==== UWAGA
    CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08]
    OPR StartupUrls: "hxxp://www.istartsurf.com/?type=hp&ts=1434895382&z=e4f0574a7d695c16193278ag0z2c1z0b7t2wbcbb8o&from=cor&uid=ST1000DM003-1CH162_Z1D7KGXTXXXXZ1D7KGXT"
    OPR Extension: (Adblock Plus) - C:\Users\Arek\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2016-02-03]
    U3 ae92vd1g; C:\Windows\System32\Drivers\ae92vd1g.sys [0 ] (Microsoft Corporation) <==== UWAGA (zerobajtowy plik/folder)
    S3 ALSysIO; \??\C:\Users\Arek\AppData\Local\Temp\ALSysIO64.sys [X]
    2017-01-22 22:25 - 2017-01-22 22:30 - 00000000 ____D C:\AdwCleaner
    2013-12-20 20:44 - 2013-12-20 20:44 - 49940480 _____ () C:\Program Files (x86)\GUT73D9.tmp
    2015-01-23 17:15 - 2015-01-23 20:58 - 0000005 _____ () C:\Program Files (x86)\is.dat
    2015-01-23 17:16 - 2015-01-23 17:57 - 0016384 _____ () C:\Program Files (x86)\uik.dat
    2015-12-10 22:40 - 2015-12-10 22:40 - 0045594 _____ () C:\Users\Arek\AppData\Roaming\HELP_YOUR_FILES.PNG
    2015-12-10 22:35 - 2015-12-10 22:35 - 0045594 _____ () C:\Users\Arek\AppData\Local\HELP_YOUR_FILES.PNG
    2016-03-17 14:15 - 2016-03-17 14:15 - 0000006 ____S () C:\ProgramData\c20be4b830f5a1130178a8e9050c3e8fdf334631
    2015-12-10 22:30 - 2015-12-10 22:30 - 0045594 _____ () C:\ProgramData\HELP_YOUR_FILES.PNG
    C:\Windows\svchost.exe
    EmptyTemp:

    W FRST wybierz Napraw.

    Zrob pelny skan przy pomocy Mbam i usun to co wykryje:
    http://www.bleepingcomputer.com/download/malwarebytes-anti-malware/
    oraz http://ftp.drweb.com/pub/drweb/cureit/launch.exe

    Po wykonaniu zamiesc nowe logi z FRST, ze skanowania.

    0
  • Pomocny post
    #6 23 Sty 2017 09:34
    Kolobos
    Spec od komputerów

    Usun katalog C:\FRST i to wszystko.

    0
  • #7 23 Sty 2017 09:54
    ArekBosPl
    Poziom 2  

    Problem rozwiązany zamykam temat Pozdrawiam Arek

    0