logo elektroda
logo elektroda
X
logo elektroda
REKLAMA
REKLAMA
Adblock/uBlockOrigin/AdGuard mogą powodować znikanie niektórych postów z powodu nowej reguły.

[Rozwiązano] Analiza logów FRST - czy ktoś może rzucić okiem?

sovix234 20 Lut 2020 20:39 297 2
REKLAMA
  • #1 18483324
    sovix234
    Poziom 7  
    Posty: 13
    Ocena: 2
    Witam,

    zwracam się do was z prośbą o przeanalizowanie logów z FRST
    Załączniki:
    • FRST.txt (192.26 KB) Musisz być zalogowany, aby pobrać ten załącznik.
    • Addition.txt (29.43 KB) Musisz być zalogowany, aby pobrać ten załącznik.
  • REKLAMA
  • Pomocny post
    #2 18483374
    krzychupar
    Poziom 43  
    Posty: 6807
    Pomógł: 1490
    Ocena: 633
    Odinstaluj:
    McAfee True Key (HKLM\...\TrueKey) (Version: 5.1.230.7 - McAfee, LLC)

    Otwórz notatnik i wklej:
    CloseProcesses:

    HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== UWAGA
    HKLM\Software\...\Authentication\Credential Providers: [{B7724AE5-1135-4889-8A5F-CA98BE6CA1ED}] -> C:\Program Files\McAfee\TrueKey\McAfee.TrueKey.CredentialProvider.dll [2018-10-10] (McAfee, Inc. -> McAfee, LLC.)
    Lsa: [Notification Packages] scecli "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter" "C:\Program Files\McAfee\TrueKey\McAfeeTrueKeyPasswordFilter"
    FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
    Task: {178B68AF-3629-4811-839F-E1E9E68D723B} - System32\Tasks\Opera scheduled Autoupdate 1502480768 => c:\program files (x86)\opera\launcher.exe [1532952 2020-02-05] (Opera Software AS -> Opera Software)
    Task: {64195600-BF5A-41DD-87E0-1644DEDE10E6} - \Microsoft\Windows\UNP\RunCampaignManager -> Brak pliku <==== UWAGA
    HKU\S-1-5-21-970859951-1229284106-3949893989-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus15.msn.com/?pc=ASTE
    HKU\S-1-5-21-970859951-1229284106-3949893989-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus15.msn.com/?pc=ASTE
    SearchScopes: HKU\S-1-5-21-970859951-1229284106-3949893989-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-970859951-1229284106-3949893989-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    BHO: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie64.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
    BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
    Toolbar: HKLM - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie64.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
    Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\McAfee\TrueKey\MSIE\truekey_ie.dll [2018-04-23] (McAfee, Inc. -> Intel Security)
    FF Extension: (Советник Яндекс.Маркета) - C:\Users\ASUS\AppData\Roaming\Mozilla\Firefox\Profiles\hdgact4g.default\Extensions\sovetnik-yandex@yandex.ru.xpi [2017-08-15] [UpdateUrl:hxxps://static.sovetnik.yandex.net/sovetnik/extension/firefox-webextension-yandex-update.json]
    FF Extension: (Visual Bookmarks) - C:\Users\ASUS\AppData\Roaming\Mozilla\Firefox\Profiles\hdgact4g.default\Extensions\vb@yandex.ru.xpi [2017-08-15] [Przestarzałe]
    FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [Brak pliku]
    R2 TrueKey; C:\Program Files\mcafee\TrueKey\McAfee.TrueKey.Service.exe [355280 2018-10-10] (McAfee, Inc. -> McAfee, LLC.)
    R2 TrueKeyScheduler; C:\Program Files\mcafee\TrueKey\McTkSchedulerService.exe [355280 2018-10-10] (McAfee, Inc. -> McAfee, LLC.)
    R2 TrueKeyServiceHelper; C:\Program Files\McAfee\TrueKey\McAfee.TrueKey.ServiceHelper.exe [193656 2018-10-10] (McAfee, Inc. -> McAfee, LLC.)
    S2 Asus WebStorage Windows Service; "C:\Program Files (x86)\ASUS\WebStorage\2.2.6.547\AsusWSWinService.exe" [X]
    S2 GamesAppIntegrationService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe" [X]
    S3 GamesAppService; "C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe" [X]
    2020-02-11 19:22 - 2020-02-20 19:14 - 000000000 ____D C:\AdwCleaner
    EmptyTemp:

    Plik zapisz pod nazwą fixlist.txt i umieść w folderze gdzie masz FRST.exe.
    Uruchom FRST i kliknij w Fix/Napraw.
  • #3 18483417
    sovix234
    Poziom 7  
    Posty: 13
    Ocena: 2
    Dziękuje za szybką odpowiedź ;)
REKLAMA