Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Uruchamianie się dziwnych stron

bonusbgc 28 Wrz 2018 13:42 135 1
  • #2 28 Wrz 2018 20:39
    Kolobos
    Spec od komputerów

    @bonusbgc
    Wykonaj Fixlist.txt dla FRST:
    ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
    ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
    ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
    ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
    ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
    ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
    ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
    Task: {41FFB2CB-5D38-4861-8466-B687C72BAAA3} - System32\Tasks\YoutubeDownloader => C:\Users\micha\AppData\Roaming\YoutubeDownloader\python\pythonw.exe [2018-08-01] (Python Software Foundation) <==== ATTENTION
    Task: {7B1D9BAD-FB3B-4163-BD32-3945D1F120C7} - System32\Tasks\Opera scheduled Autoupdate 1504811305 => C:\Program Files\Opera\launcher.exe [2018-09-13] (Opera Software)
    Task: {8F07B951-C07C-45B7-99B0-88DF3BE82BA4} - System32\Tasks\YoutubeDownloader_upd => C:\Users\micha\AppData\Roaming\YoutubeDownloader_upd\python\pythonw.exe [2018-08-01] (Python Software Foundation) <==== ATTENTION
    (Python Software Foundation) C:\Users\micha\AppData\Roaming\YoutubeDownloader\python\python.exe
    HKU\S-1-5-21-457688651-4183050080-3175452911-1001\...\Run: [YoutubeDownloader_upd] => C:\Users\micha\AppData\Roaming\YoutubeDownloader_upd\python\pythonw.exe [95904 2018-08-01] (Python Software Foundation) <==== ATTENTION
    HKU\S-1-5-21-457688651-4183050080-3175452911-1001\...\Run: [YoutubeDownloader] => C:\Users\micha\AppData\Roaming\YoutubeDownloader\python\pythonw.exe [95904 2018-08-01] (Python Software Foundation) <==== ATTENTION
    HKU\S-1-5-21-457688651-4183050080-3175452911-1001\...\Run: [Blogger] => C:\ProgramData\Blogger\Blogger.exe [1448960 2018-09-28] ()
    HKU\S-1-5-21-457688651-4183050080-3175452911-1001\...\Run: [RegistryCleanMaster] => "C:\Program Files (x86)\Registry Clean Master\RegistryCleanMaster.exe" -M
    S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [X]
    S3 WinDivert1.1; \??\C:\Users\micha\Downloads\KMSpico 10.1.8 FINAL + Portable (Office and Windows 10 Activator) [TechTools]\KMSpico 10.1.8 FINAL + Portable (Office and Windows 10 Activator) [TechTools.net]\Portable\WinDivert.sys [X]
    2018-09-28 01:49 - 2018-09-28 13:13 - 000001390 _____ C:\ProgramData\pepeerr.exe
    2018-09-28 01:37 - 2018-09-28 01:37 - 000000000 ____D C:\Users\micha\AppData\Roaming\RegistryCleanMaster
    2018-09-28 01:15 - 2018-09-28 01:15 - 001390080 _____ (Indigo Rose Corporation) C:\Program Files (x86)\uninstall.exe
    2018-09-28 01:15 - 2018-09-28 01:15 - 000334840 _____ (Lua.org) C:\Program Files (x86)\lua5.1.dll
    2018-09-28 01:15 - 2018-09-28 01:15 - 000000000 ____D C:\Program Files (x86)\Uninstall
    2018-09-28 01:12 - 2018-09-28 01:12 - 000000000 ____D C:\ProgramData\Blogger
    2018-09-28 01:11 - 2018-09-28 01:48 - 000000000 ____D C:\Users\micha\AppData\Roaming\YoutubeDownloader_upd
    2018-09-28 01:11 - 2018-09-28 01:48 - 000000000 ____D C:\Users\micha\AppData\Roaming\YoutubeDownloader
    2018-09-28 01:11 - 2018-09-28 01:11 - 000003970 _____ C:\WINDOWS\System32\Tasks\YoutubeDownloader_upd
    2018-09-28 01:11 - 2018-09-28 01:11 - 000003500 _____ C:\WINDOWS\System32\Tasks\YoutubeDownloader
    2018-09-28 01:49 - 2018-09-28 13:13 - 000001390 _____ () C:\ProgramData\pepeerr.exe
    2018-09-28 01:15 - 2018-09-28 01:15 - 000334840 _____ (Lua.org) C:\Program Files (x86)\lua5.1.dll
    2018-09-28 01:15 - 2018-09-28 01:15 - 001390080 _____ (Indigo Rose Corporation) C:\Program Files (x86)\uninstall.exe

    Po wykonaniu usun katalog C;\FRST i sprawdz czy juz wszystko jest ok.

    0