Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Chromesearch.win i Chrome

psychol11 25 Lis 2017 23:03 273 3
  • Pomocny post
    #3 25 Lis 2017 23:11
    Kolobos
    Spec od komputerów

    @RADU23 przeciez to nic nie da. Zmiana jest zablokowana w zasadach grupy.

    @psychol11
    Wykonaj Fixlist.txt dla FRST:
    Task: {479FBBE3-370D-4386-99C7-3BAAA4E87989} - System32\Tasks\{B1CB13E4-CB57-4A8A-AE60-25FF9BAD09DB} => "c:\program files (x86)\google\chrome\application\chrome.exe" hxxps://ui.skype.com/ui/0/7.32.0.104/pl/abandoninstall?page=tsProgressBar
    Task: {E81CCC0F-9A7B-401D-9CFA-6F6F60AEE59A} - System32\Tasks\{06F29EC1-6C90-42EB-924D-145F18C01150} => "c:\program files (x86)\google\chrome\application\chrome.exe" hxxps://ui.skype.com/ui/0/7.38.0.101/pl/abandoninstall?page=tsProgressBar
    (© 2015 Microsoft Corporation) C:\Users\Tracer\AppData\Local\Microsoft\BingSvc\BingSvc.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\Run: [BingSvc] => C:\Users\Tracer\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-05] (© 2015 Microsoft Corporation)
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\Run: [Flvto YouTube Downloader] => "C:\Users\Tracer\AppData\Local\Flvto YouTube Downloader\FlvtoYoutubeDownloader.Redesign.exe" /minimize
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: F - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: G - G:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: H - H:\setup.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {080768a6-26b6-11e7-bc27-74d435ecd257} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {080768ac-26b6-11e7-bc27-74d435ecd257} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {235d7f3d-3af2-11e7-bec1-74d435ecd257} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {23dbe6f7-af11-11e7-9ce8-001e101f9843} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {23dbe70a-af11-11e7-9ce8-001e101f9843} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {23dbe70e-af11-11e7-9ce8-001e101f9843} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {23dbe71a-af11-11e7-9ce8-001e101f9843} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {24ba491a-81c2-11e7-b3be-001e101f7f74} - G:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {2faa7217-274a-11e7-aa12-74d435ecd257} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {38b4904a-4ab9-11e7-84a7-001e101f8924} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {3bd757b9-0495-11e7-9c91-001e101f2500} - I:\setup.exe




    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {43f4a230-b0a4-11e7-bced-001e101f4da1} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {43f4a233-b0a4-11e7-bced-001e101f4da1} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {4891b3ed-2834-11e7-ac88-001e101f859f} - H:\Lenovo_Suite.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {4cb6a313-271a-11e7-89b3-001e101f2500} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {4d6c0255-d587-11e6-a137-001e101fe5e1} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {4e701f35-a45a-11e7-8b53-001e101f82a0} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {5d12f68f-03d3-11e7-bd2b-001e101f82a7} - H:\stp-fifa18multi.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {6018b22b-6702-11e7-b70c-74d435ecd257} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {609132ba-26c3-11e7-a05a-001e101f8ed0} - F:\startme.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {764648bd-5129-11e7-bc58-74d435ecd257} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {9fcee1ec-2b10-11e7-8409-001e101f8ed0} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {9fcee1f0-2b10-11e7-8409-001e101f8ed0} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {af6f9a5a-c5fc-11e6-a889-74d435ecd257} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {af6f9a60-c5fc-11e6-a889-74d435ecd257} - F:\AutoRun.exe
    HKU\S-1-5-21-3860231722-729078445-3016235955-1000\...\MountPoints2: {d21815e8-26b4-11e7-bdf7-806e6f6e6963} - F:\AutoRun.exe
    HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2016-12-19] (Microsoft Corporation)
    GroupPolicy: Ograniczenia - Chrome <==== UWAGA
    CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA
    Tcpip\..\Interfaces\{52683F2B-B433-4761-9517-D0692B6C8602}: [NameServer] 0.0.0.0 0.0.0.0
    FF Homepage: Mozilla\Firefox\Profiles\uoj03t5q.default -> hxxp://www.msn.com/?pc=SK216&ocid=SK216DHP&osmkt=pl-pl
    FF Extension: (Bing Search) - C:\Users\Tracer\AppData\Roaming\Mozilla\Firefox\Profiles\uoj03t5q.default\Extensions\bingsearch.full@microsoft.com.xpi [2017-06-02] [Przestarzałe]
    FF SearchPlugin: C:\Users\Tracer\AppData\Roaming\Mozilla\Firefox\Profiles\uoj03t5q.default\searchplugins\bing-.xml [2017-06-
    CHR HomePage: Default -> msn.com
    CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC=__PARAM__&q={searchTerms}
    CHR DefaultSearchKeyword: Default -> bing.com
    CHR DefaultSuggestURL: Default -> hxxp://www.bing.com/osjson.aspx?FORM=__PARAM__DF&PC=__PARAM__&query={searchTerms}
    CHR HKU\S-1-5-21-3860231722-729078445-3016235955-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [kadalpbldokjhijcgndnldpheokmaeje] - hxxps://clients2.google.com/service/update2/crx
    S2 S2Gvc32; "C:\Program Files (x86)\Speech2Go Voice Package\IvonaVoiceService_x86.exe" [X]
    S3 MSICDSetup; \??\E:\CDriver64.sys [X]
    2017-11-25 21:16 - 2017-11-25 21:18 - 000000000 ____D C:\AdwCleaner
    2017-05-30 11:03 - 2017-04-22 22:28 - 000365248 _____ (COMODO) C:\ProgramData\cmdres.dll

    Po wykonaniu usun katalog C:\FRST i to wszystko.

    0
  • #4 25 Lis 2017 23:21
    psychol11
    Poziom 4  

    a gdzie to mam zapisac?

    0