Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek dla www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Wirus otwierający stronę gmaegames

11 Gru 2018 13:10 297 1
  • Pomocny post
    Moderator - Komputery Serwis
    Fixlist dla Ciebie:
    Code:
    HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8783616 2018-07-19] (Realtek Semiconductor)
    
    HKU\S-1-5-21-2836482692-1391281443-3959179392-1001\...\Run: [ALLUpdate] => C:\Program Files\ALLPlayer\ALLUpdate.exe [3884720 2017-10-04] (ALLPlayer.org)
    HKU\S-1-5-21-2836482692-1391281443-3959179392-1001\...\Run: [Napisy24Update] => C:\Program Files (x86)\Napisy24\Napisy24Update.exe [3990528 2018-02-02] (Napisy24.pl)
    HKU\S-1-5-21-2836482692-1391281443-3959179392-1001\...\Run: [Olaf] => cmd.exe /c start www.dipladoks.org
    GroupPolicy: Ograniczenia ? <==== UWAGA
    FF Extension: (Session Manager) - C:\Users\Olaf\AppData\Roaming\Mozilla\Firefox\Profiles\xo99qihl.default\Extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi [2018-07-19] [Przestarzałe]
    CustomCLSID: HKU\S-1-5-21-2836482692-1391281443-3959179392-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Olaf\AppData\Local\Microsoft\OneDrive\18.151.0729.0005\amd64\FileSyncShell64.dll => Brak pliku
    CustomCLSID: HKU\S-1-5-21-2836482692-1391281443-3959179392-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Olaf\AppData\Local\Microsoft\OneDrive\18.151.0729.0005\amd64\FileSyncShell64.dll => Brak pliku
    CustomCLSID: HKU\S-1-5-21-2836482692-1391281443-3959179392-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Olaf\AppData\Local\Microsoft\OneDrive\18.151.0729.0005\amd64\FileSyncShell64.dll => Brak pliku
    ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Olaf\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Olaf\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Olaf\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Olaf\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Olaf\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Olaf\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Olaf\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Olaf\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Olaf\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Olaf\AppData\Local\MEGAsync\ShellExtX64.dll -> Brak pliku
    Task: {9F6B1E08-E117-4B48-B9F2-0F1C4C43971C} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => C:\WINDOWS\system32\EOSNotify.exe
    Task: {9F9E6322-A228-4D32-A34F-95E69B2CD122} - System32\Tasks\Olaf => cmd.exe /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v Olaf /t REG_SZ /d "cmd.exe /c start www.dipladoks.org"
    Task: {F78C01E8-4B65-4182-B3B7-8AB3F8C789B0} - System32\Tasks\SanDisk_SSD_TRIM_164454456906 => C:\WINDOWS/System32/Defrag.exe [2018-04-12] (Microsoft Corp.)
    EmptyTemp: