Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

CMD zamyka się po uruchomieniu

sznycell 18 Kwi 2018 02:53 282 1
  • #1 18 Kwi 2018 02:53
    sznycell
    Poziom 1  

    Witam.
    Przy starcie systemu za każdym razem wyskakuje okno cmd które maleje i zamyka się w sekundę, potem gdy chce uruchomić wiersz poleceń dzieje się to samo.
    Powershell normalnie działa. Skan antywirusem nic nie wykazuje.
    Proszę o pomoc!



    Dodaje skany programem FRST64

    0 1
  • #2 18 Kwi 2018 11:32
    krzychupar
    Poziom 40  

    Otwórz notatnik systemowy i wklej:

    ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Brak pliku
    ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Brak pliku
    ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Brak pliku
    ContextMenuHandlers1: [###MegaContextMenuExt] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Brak pliku
    ContextMenuHandlers1: [FencesShellExt] -> {1984DD45-52CF-49cd-AB77-18F378FEA264} => D:\Fences\FencesMenu64.dll -> Brak pliku
    ContextMenuHandlers4: [###MegaContextMenuExt] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Brak pliku
    ContextMenuHandlers4: [EncryptionMenu] -> {A470F8CF-A1E8-4f65-8335-227475AA5C46} => -> Brak pliku
    ContextMenuHandlers4: [FencesShellExt] -> {1984DD45-52CF-49cd-AB77-18F378FEA264} => D:\Fences\FencesMenu64.dll -> Brak pliku
    ContextMenuHandlers5: [FencesShellExt] -> {1984DD45-52CF-49cd-AB77-18F378FEA264} => D:\Fences\FencesMenu64.dll -> Brak pliku
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku
    ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => -> Brak pliku
    ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => -> Brak pliku
    ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku
    ContextMenuHandlers6: [FencesShellExt] -> {1984DD45-52CF-49cd-AB77-18F378FEA264} => D:\Fences\FencesMenu64.dll -> Brak pliku
    Task: {13FA6E03-A623-4B89-9A85-F38F0EB55E58} - \Microsoft\Windows\UNP\RunCampaignManager -> Brak pliku <==== UWAGA
    Task: {580648E2-0FEA-44AD-B693-A93022571604} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
    Task: {813F4052-624A-490C-A745-53032BA52950} - \WPD\SqmUpload_S-1-5-21-2298224221-3415070621-601456894-1001 -> Brak pliku <==== UWAGA
    Task: {960AE6D6-30BF-4019-9AF5-7CB10EAE609A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
    Task: {C47EA7F4-BF0C-4C9B-8690-0D3699911C1B} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
    Task: {CA8D53C7-FA2E-49F1-99FD-89693895E323} - \Microsoft\Windows\Setup\gwx\runappraiser -> Brak pliku <==== UWAGA
    Hosts:HKU\S-1-5-21-2298224221-3415070621-601456894-1001\...\Command Processor: @mode 20,5 & tasklist /FI "IMAGENAME eq SoundMixer.exe" 2>NUL | find /I /N "SoundMixer.exe">NUL && exit & if exist "C:\Users\Jacek\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe" ( start /MIN "" "C:\Users\Jacek\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe" & tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) else ( tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) <==== UWAGA




    SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKLM -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKLM-x32 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKLM-x32 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKU\S-1-5-21-2298224221-3415070621-601456894-1001 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKU\S-1-5-21-2298224221-3415070621-601456894-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    CHR StartupUrls: Default -> "hxxp://www.google.com","hxxp://websearch.searchoholic.info/?pid=20320&r=2014/12/30&hid=9254599692314227939&lg=EN&cc=PL&unqvl=72"
    S2 amdacpksd; \??\C:\WINDOWS\system32\drivers\amdacpksd.sys [X]
    2016-08-21 04:33 - 2016-08-21 04:33 - 007118336 _____ () C:\Users\Jacek\AppData\Roaming\agent.dat
    2016-08-21 04:33 - 2016-08-21 04:33 - 000054272 _____ () C:\Users\Jacek\AppData\Roaming\ApplicationHosting.dat
    2016-08-21 04:33 - 2016-08-21 04:33 - 000070704 _____ () C:\Users\Jacek\AppData\Roaming\Config.xml
    2016-08-21 04:33 - 2016-08-21 04:33 - 002279413 _____ () C:\Users\Jacek\AppData\Roaming\Dandax.bin
    2016-08-21 04:33 - 2016-08-21 04:33 - 000018432 _____ () C:\Users\Jacek\AppData\Roaming\InstallationConfiguration.xml
    2016-08-21 04:33 - 2016-08-21 04:33 - 000138240 _____ () C:\Users\Jacek\AppData\Roaming\Installer.dat
    2016-08-21 04:33 - 2016-08-21 04:33 - 000072832 _____ () C:\Users\Jacek\AppData\Roaming\Itlamflex.tst
    2016-08-21 04:33 - 2016-08-21 04:33 - 001901510 _____ () C:\Users\Jacek\AppData\Roaming\Joblab.tst
    2016-06-19 16:18 - 2016-06-19 16:18 - 000000098 _____ () C:\Users\Jacek\AppData\Roaming\LauncherSettings_live.cfg
    2018-04-17 16:50 - 2018-04-18 00:29 - 000009728 _____ () C:\Users\Jacek\AppData\Roaming\Launcher_01.exe
    2016-08-21 04:33 - 2016-08-21 04:33 - 000126464 _____ () C:\Users\Jacek\AppData\Roaming\lobby.dat
    2016-08-21 04:33 - 2016-08-21 04:33 - 000018432 _____ () C:\Users\Jacek\AppData\Roaming\Main.dat
    2016-08-21 04:33 - 2016-08-21 04:33 - 000005568 _____ () C:\Users\Jacek\AppData\Roaming\md.xml
    2016-08-21 04:33 - 2016-08-21 04:33 - 000126464 _____ () C:\Users\Jacek\AppData\Roaming\noah.dat
    2018-04-05 14:42 - 2018-04-05 14:42 - 000001284 _____ () C:\Users\Jacek\AppData\Roaming\PureRef.ini
    2016-06-19 15:31 - 2016-06-19 15:31 - 000010308 _____ () C:\Users\Jacek\AppData\Roaming\TheHunterSettings_live.bin
    2016-06-19 15:39 - 2016-06-19 15:39 - 000000041 _____ () C:\Users\Jacek\AppData\Roaming\TheHunterSettings_steam_live.cfg
    2016-08-01 00:26 - 2016-08-01 00:26 - 000012096 _____ () C:\Users\Jacek\AppData\Local\recently-used.xbel
    2018-02-07 13:02 - 2018-02-07 13:02 - 000007596 _____ () C:\Users\Jacek\AppData\Local\Resmon.ResmonCfg

    EmptyTemp:

    Plik zapisz pod nazwą fixlist.txt i umieść w folderze, gdzie masz FRST.exe.
    Uruchom FRST i kliknij w Fix/Napraw.

    0