Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Proszę o sprawdzenie - logi FRST

piotrek303 30 Maj 2017 08:32 270 2
  • Pomocny post
    #2 30 Maj 2017 08:55
    Kolobos
    Spec od komputerów

    Wykonaj Fixlist.txt dla FRST:
    Task: {62E20D34-A476-4EA6-8286-780C6B6339BA} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-05-29] ()
    Task: {B3D6F317-25A8-4DF6-917D-130CE6AA13B9} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-05-29] ()
    Task: C:\WINDOWS\Tasks\suprize_notification_service.job => C:\Program Files (x86)\suprize\suprize_notification_service.exe ÇŁ/url='hxxp:/cdn.selectbestopt.com/notf_sys/index.html' /crregname='suprize' /appid='73143' /srcid='2913' /bic='af7e1649191e05dcdaecdc30e75aad1e' /verifier='a0c4d95e5de7e44cfa63105742e4a4cd' /installerversion='1.50.3.10' /statsdomain='hxxp:/stats.buildomserv.com/data.gif?' /errorsdomain='hxxp:/stats.buildomserv.com/data.gif?' /monetizationdomain='hxxp:/logs.buildomserv.com/monetization.gif <==== UWAGA
    Task: C:\WINDOWS\Tasks\suprize_updating_service.job => C:\Program Files (x86)\suprize\suprize_updating_service.exe ¨ /campid=2913 /verid=1 /url=hxxp:/cdn.buildomserv.com/txt/@CAMPID@/@VER@/file.txt /appid=73143 /taskname=suprize_updating_service /funurl=hxxp:/stats.buildomserv.com <==== UWAGA
    (© 2015 Microsoft Corporation) C:\Users\igorek\AppData\Local\Microsoft\BingSvc\BingSvc.exe
    HKLM-x32\...\Run: [fst_pl_14] => [X]
    HKU\S-1-5-21-4170592876-1168063058-1185344180-1001\...\Run: [BingSvc] => C:\Users\igorek\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-05] (© 2015 Microsoft Corporation)
    FF NewTab: Mozilla\Firefox\Profiles\t9jiskw0.default -> hxxps://www.amazon.com/gp/bit/amazonserp/ref=...nnel-17_b9014694_1201_1403_20170121_PL_ff_nt_
    FF DefaultSearchEngine: Mozilla\Firefox\Profiles\t9jiskw0.default -> Bing
    FF SearchEngineOrder.1: Mozilla\Firefox\Profiles\t9jiskw0.default -> Amazon
    FF SelectedSearchEngine: Mozilla\Firefox\Profiles\t9jiskw0.default -> Bing
    FF Keyword.URL: Mozilla\Firefox\Profiles\t9jiskw0.default -> hxxp://www.bing.com/search?FORM=SK216DF&PC=SK216&q=
    FF SearchPlugin: C:\Users\igorek\AppData\Roaming\Mozilla\Firefox\Profiles\t9jiskw0.default\searchplugins\bing-.xml [2016-07-27]
    FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\pandasecuritytb.xml [2016-01-19]
    CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
    2017-05-30 08:05 - 2017-05-30 08:09 - 00000000 ____D C:\AdwCleaner
    EmptyTemp:

    0
  • #3 30 Maj 2017 09:07
    piotrek303
    Poziom 13  

    Dziękuję bardzo za udzieloną pomoc.
    Pozdrawiam

    0