Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

reimage repair problem + logi -

SlawekChomcz 26 Sty 2017 20:26 375 3
  • #2 26 Sty 2017 20:28
    Kolobos
    Spec od komputerów

    Brakuje addition.txt.

    0
  • #3 26 Sty 2017 20:30
    SlawekChomcz
    Poziom 2  

    dolączone i zedytowane

    0
  • #4 26 Sty 2017 20:41
    Kolobos
    Spec od komputerów

    Nie pobieraj programow z dobrychprogramow przy pomocy ich menadzera pobierania, ktory instaluje szkodliwe dodatki.
    Pobieraj tylko z bezposrednich linkow.

    Obok frst.exe utworz plik Fixlist.txt z zawartoscia:
    Task: {045ABC4B-CC34-4A9E-B3D4-068E5381E83A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
    Task: {15E43BEA-3278-4654-A8F8-5E6106E8D48F} - System32\Tasks\WarThunder2 => Chrome.exe --app=hxxp://go.playmmogames.com/aff_c?offer_id=698&amp;aff_id=1034&amp;source=3&amp;click_id=444ab47b0918c437322819c53323c6ed328cd106 --app-window-size=1920,1080 <==== UWAGA
    Task: {1BED0B92-910C-4AC9-A30B-0DFB65AE20B2} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe
    Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
    Task: {367BBDAD-138B-43A1-AE43-7FC9565265A9} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
    Task: {39ECA6AC-1396-44D7-9199-CA45909AACB4} - System32\Tasks\PC Cleaner Updater => C:\ProgramData\PC Cleaner Pro\PCCleaners.exe
    Task: {3A31E565-E872-4600-A9A2-6C6B546765F7} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
    Task: {3BE8F564-6945-4FC3-B953-B3A5C9D4804F} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
    Task: {41D84DED-8A0E-4771-BC99-B43D855F93CE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
    Task: {46F49181-5603-42C6-BD92-133E29CCCFEE} - \WPD\SqmUpload_S-1-5-21-434548618-2447607523-4159241409-1001 -> Brak pliku <==== UWAGA
    Task: {61013A82-0355-47ED-8487-8D3CBE5031FB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
    Task: {889F825C-CACF-4DFF-9BA2-D03CD4C995D6} - System32\Tasks\WarThunder3 => Chrome.exe --app=hxxp://go.playmmogames.com/aff_c?offer_id=698&amp;aff_id=1034&amp;source=3&amp;click_id=444ab47b0918c437322819c53323c6ed328cd106 --app-window-size=1920,1080 <==== UWAGA
    Task: {A050E4D0-206E-4C13-A56F-0FA5FA847A82} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
    Task: {A5B4D147-651E-4F1F-A42B-E70C0840F7DE} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
    Task: {BB5882AD-B001-45DE-BE4F-4A0BD85BEF8B} - System32\Tasks\WarThunder1 => Chrome.exe --app=hxxp://go.playmmogames.com/aff_c?offer_id=698&amp;aff_id=1034&amp;source=3&amp;click_id=444ab47b0918c437322819c53323c6ed328cd106 --app-window-size=1920,1080 <==== UWAGA
    Task: {DADF1B00-A99A-4FC6-87E6-C00FA929E0C3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
    Task: {DFC96107-38C3-4A0F-A0D7-43273035F180} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA




    Task: {E5158029-FCA4-4F09-8F51-FC2C992A0C7A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
    ShortcutWithArgument: C:\Users\lenovo z70\Desktop\WarThunder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://go.playmmogames.com/aff_c?offer_id=698&aff_id=1034&source=3&click_id=444ab47b0918c437322819c53323c6ed328cd106 --app-window-size=1920,1080
    ShortcutWithArgument: C:\Users\lenovo z70\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder\WarThunder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://go.playmmogames.com/aff_c?offer_id=698&aff_id=1034&source=3&click_id=444ab47b0918c437322819c53323c6ed328cd106 --app-window-size=1920,1080
    ShortcutWithArgument: C:\Users\lenovo z70\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://go.playmmogames.com/aff_c?offer_id=698&aff_id=1034&source=3&click_id=444ab47b0918c437322819c53323c6ed328cd106 --app-window-size=1920,1080
    HKLM-x32\...\Run: [] => [X]
    HKU\S-1-5-21-434548618-2447607523-4159241409-1001\...\MountPoints2: {e88a6f49-9d3e-11e6-8281-68f72888a1fd} - "E:\HiSuiteDownLoader.exe"
    CHR Extension: (StarExt ) - C:\Users\lenovo z70\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbnfngcgagfknmledidmdannhmhcjfbm [2016-12-11]
    C:\Users\lenovo z70\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbnfngcgagfknmledidmdannhmhcjfbm
    CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
    R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]
    2017-01-26 20:01 - 2017-01-26 20:02 - 00000000 ____D C:\Program Files\Trojan Killer
    2017-01-26 20:01 - 2017-01-26 20:01 - 01811408 _____ (GridinSoft LLC) C:\Users\lenovo z70\Downloads\TrojanKiller-Setup.exe
    2017-01-26 20:01 - 2017-01-26 20:01 - 00000907 _____ C:\Users\lenovo z70\Desktop\Trojan Killer.lnk
    2017-01-26 19:44 - 2017-01-26 19:58 - 00000000 ____D C:\AdwCleaner
    2017-01-26 19:33 - 2017-01-26 19:33 - 01280960 _____ (Rusahebac ) C:\Users\lenovo z70\Downloads\CCleaner-13061-dp.exe
    2017-01-26 19:33 - 2017-01-26 19:33 - 00003902 _____ C:\WINDOWS\System32\Tasks\WarThunder3
    2017-01-26 19:33 - 2017-01-26 19:33 - 00003902 _____ C:\WINDOWS\System32\Tasks\WarThunder2
    2017-01-26 19:33 - 2017-01-26 19:33 - 00003902 _____ C:\WINDOWS\System32\Tasks\WarThunder1
    2017-01-26 19:33 - 2017-01-26 19:33 - 00002532 _____ C:\Users\lenovo z70\Desktop\WarThunder.lnk
    2017-01-26 19:33 - 2017-01-26 19:33 - 00001099 _____ C:\Users\lenovo z70\Desktop\ByteFence Anti-Malware.lnk
    2017-01-26 19:33 - 2017-01-26 19:33 - 00000000 ____D C:\Users\lenovo z70\AppData\Roaming\WarThunder
    2017-01-26 19:33 - 2017-01-26 19:33 - 00000000 ____D C:\Users\lenovo z70\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
    2017-01-26 19:31 - 2016-03-04 11:26 - 00032400 _____ (ThreatTrack Security) C:\WINDOWS\system32\Drivers\gfiutil.sys
    2017-01-26 19:29 - 2017-01-26 19:30 - 00000000 ____D C:\ProgramData\LocalStoragePC1
    2017-01-26 19:29 - 2017-01-26 19:29 - 00003468 _____ C:\WINDOWS\System32\Tasks\PC Cleaner Updater
    2017-01-26 19:29 - 2017-01-26 19:28 - 07558040 _____ C:\ProgramData\appclunst.exe
    2017-01-26 19:28 - 2017-01-26 19:28 - 07558040 _____ C:\Users\lenovo z70\Downloads\app2_eng.exe
    S3 gfiutil; C:\WINDOWS\System32\drivers\gfiutil.sys [32400 2016-03-04] (ThreatTrack Security)
    C:\ProgramData\appclunst.exe
    EmptyTemp:

    W FRST wybierz Napraw.

    Usun katalog C:\FRST.

    0