Skocz do zawartości

Problemy z upierdliwymi wirusami


Rekomendowane odpowiedzi

WItam, mam problem ze strasznie upierdliwymi wirusami a mianowicie po pobraniu i próbie instalacji pewnego programu pojawił mi się na pulpicie program youtubeaccelerator, i stopniowo z czasem kolejne programy takie jak Facebook, AnyProtect, WindeskWinsearch, Crossbrowse, i jeszcze jakieś jedno badziewie które niby skanuje rejest i go naprawia.. Z tego co wiem to jest to adware, jeżeli system jest zainfekowany innymi śmieciami to również prosiłbym o poradę jak się tego wyzbyć. Dziękuję z góry.

Addition.txt

FRST.txt

Shortcut.txt

GMER.txt

Odnośnik do komentarza
Pomoc jest darmowa, ale proszę rozważ przekazanie dotacji na utrzymanie serwisu: klik.

Nikt nie da rady mi pomoc ? :c

https://www.fixitpc.pl/topic/27096-nowy-moderator-w-dziale-malware/?do=findComment&comment=168862

to chyba wyjaśnia sprawę?

 

----------------------------------------------

 

1) Odinstaluj  te programy:

AnyProtect (HKLM\...\AnyProtect) (Version: 1.0.0.4 - CMI Limited) <==== ATTENTION

AnySend (HKLM\...\ASPackage) (Version: 1.0.0.0 - CMI Limited) <==== ATTENTION!

CinemaPlus-3.2cV08.06 (HKLM\...\CinemaPlus-3.2cV08.06) (Version: 1.36.01.22 - Cinema PlusV08.06) <==== ATTENTION

Crossbrowse (HKLM\...\Crossbrowse) (Version: 39.6.2171.95 - The Crossbrowse Authors) <==== ATTENTION!

GamesDesktop 008.130 (HKLM\...\gmsd_pl_130_is1) (Version:  - GAMESDESKTOP) <==== ATTENTION

IePluginService12.27.0.3326 (HKLM\...\IePlugins) (Version: 12.27.0.3326 - Cherished Technololgy LIMITED) <==== ATTENTION

Origin Packages (HKU\S-1-5-21-1266292625-858870729-1075496977-1001\...\Origin Packages) (Version:  - ) <==== ATTENTION

Punctuation Pop-up (HKLM\...\ConvertAd) (Version: 1.0.0.0 - Punctuation Pop-up) <==== ATTENTION

RegClean-Pro (HKLM\...\RegClean-Pro_is1) (Version: 6.21 - systweak.com) <==== ATTENTION

Shopper-Pro (HKLM\...\ShopperPro) (Version:  - ) <==== ATTENTION

WinZipper (HKLM\...\WinZipper) (Version: 1.5.95 - Taiwan Shui Mu Chih Ching Technology Limited.) <==== ATTENTION

YAC(Yet Another Cleaner!) (HKLM\...\iSafe) (Version:  - ELEX DO BRASIL PARTICIPAÇÕES LTDA) <==== ATTENTION

YouTube Accelerator (HKLM\...\YouTube Accelerator) (Version: 3396(build_133) - Goobzo Ltd.) <==== ATTENTION

 

2)  Otwórz Notatnik i wklej w nim:

 

 

 

Task: {00552E96-3195-4242-B61C-0986BBB58C0F} - System32\Tasks\PriceMeterLiveUpdateUpdateTaskMachineCore => C:\Program Files\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe [2014-03-23] (PriceMeter) <==== ATTENTION

Task: {012020E2-9AA1-4CD4-BC2D-67EE42F47255} - System32\Tasks\SPBIW_UpdateTask_Time_3838323035323333332d3423412a55452a4123576c32 => Wscript.exe //B "C:\ProgramData\ShopperPro\spbihe.js" spbiu.exe /invoke /f:check_services /l:0 <==== ATTENTION

Task: {025C31A6-B6FE-4A63-AA7B-8E1D93823CDF} - System32\Tasks\RegClean Pro => C:\Program Files\RCP\RegCleanPro.exe [2015-02-19] () <==== ATTENTION

Task: {180BD6A6-B14F-426C-9286-EC428FDF4924} - System32\Tasks\RegClean Pro_UPDATES => C:\Program Files\RCP\RegCleanPro.exe [2015-02-19] () <==== ATTENTION

Task: {1EF8F809-D91E-49E9-BAFD-44771DA086BE} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\Kasia\AppData\Local\SmartWeb\SmartWebHelper.exe [2015-02-17] (SoftBrain Technologies Ltd.) <==== ATTENTION

Task: {2A052E7C-C29C-4800-BE02-CDE6BB20DB9E} - System32\Tasks\ShopperProJSUpd => C:\Program Files\ShopperPro\updater.exe [2015-06-08] (Goobzo) <==== ATTENTION

Task: {31608755-B9CD-44EA-A2BE-F0BD2AFF81D7} - System32\Tasks\RegClean Pro_DEFAULT => C:\Program Files\RCP\RegCleanPro.exe [2015-02-19] () <==== ATTENTION

Task: {3D959BE3-D9EA-4852-80DA-FCDA3FA966F4} - System32\Tasks\45ea0ed5-a7e1-4cd0-a81d-e7c600c974ff-5_user => C:\Program Files\CinemaPlus-3.2cV08.06\45ea0ed5-a7e1-4cd0-a81d-e7c600c974ff-5.exe [2015-06-08] (Cinema PlusV08.06) <==== ATTENTION

Task: {3EC9B0E2-5A4A-4ECA-A401-1BF27D5E5D4C} - System32\Tasks\APSnotifierPP2 => C:\Program Files\AnyProtectEx\AnyProtect.exe [2015-06-08] (AnyProtect.com) <==== ATTENTION

Task: {451B5E43-5C9F-4884-978C-E7C08045BB01} - System32\Tasks\pricemeterdownloader => C:\Users\Kasia\AppData\Local\PriceMeter\pricemeterd.exe <==== ATTENTION

Task: {4D39A20D-78C9-4C16-ACD9-F659A0E61C86} - System32\Tasks\Crossbrowse => C:\Program Files\Crossbrowse\Crossbrowse\Application\utility.exe [2015-06-08] () <==== ATTENTION

Task: {8FC29BEA-B7F3-4502-9C42-24935D25B2FE} - System32\Tasks\SPDriver => C:\Program Files\ShopperPro\JSDriver\1.42.1.1957\jsdrv.exe [2015-06-08] () <==== ATTENTION

Task: {A35D0FEA-8161-4637-A554-7E6CE3EED5F5} - System32\Tasks\PriceMeterLiveUpdateUpdateTaskMachineUA => C:\Program Files\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe [2014-03-23] (PriceMeter) <==== ATTENTION

Task: {A8D907DC-B033-4237-A138-591ABC9FE197} - System32\Tasks\APSnotifierPP1 => C:\Program Files\AnyProtectEx\AnyProtect.exe [2015-06-08] (AnyProtect.com) <==== ATTENTION

Task: {BAFF4319-523C-4106-B7FE-4191400E44E6} - System32\Tasks\APSnotifierPP3 => C:\Program Files\AnyProtectEx\AnyProtect.exe [2015-06-08] (AnyProtect.com) <==== ATTENTION

Task: {BD77A3C9-6A8C-459C-BB60-F78AD47259CE} - System32\Tasks\45ea0ed5-a7e1-4cd0-a81d-e7c600c974ff-5 => C:\Program Files\CinemaPlus-3.2cV08.06\45ea0ed5-a7e1-4cd0-a81d-e7c600c974ff-5.exe [2015-06-08] (Cinema PlusV08.06) <==== ATTENTION

Task: {F3B12D9F-AA78-4146-BDA1-5851437F59C0} - System32\Tasks\ShopperPro => C:\Program Files\ShopperPro\ShopperPro.exe [2015-06-08] (Goobzo LTD) <==== ATTENTION

Task: C:\Windows\Tasks\45ea0ed5-a7e1-4cd0-a81d-e7c600c974ff-5.job => C:\Program Files\CinemaPlus-3.2cV08.06\45ea0ed5-a7e1-4cd0-a81d-e7c600c974ff-5.exe <==== ATTENTION

Task: C:\Windows\Tasks\45ea0ed5-a7e1-4cd0-a81d-e7c600c974ff-5_user.job => C:\Program Files\CinemaPlus-3.2cV08.06\45ea0ed5-a7e1-4cd0-a81d-e7c600c974ff-5.exe <==== ATTENTION

Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION

Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION

Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION

Task: C:\Windows\Tasks\Crossbrowse.job => C:\Program Files\Crossbrowse\Crossbrowse\Application\utility.exe <==== ATTENTION

Task: C:\Windows\Tasks\PriceMeterLiveUpdateUpdateTaskMachineCore.job => C:\Program Files\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe <==== ATTENTION

Task: C:\Windows\Tasks\PriceMeterLiveUpdateUpdateTaskMachineUA.job => C:\Program Files\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe <==== ATTENTION

Task: C:\Windows\Tasks\RegClean Pro_DEFAULT.job => C:\Program Files\RCP\RegCleanPro.exe <==== ATTENTION

Task: C:\Windows\Tasks\RegClean Pro_UPDATES.job => C:\Program Files\RCP\RegCleanPro.exe <==== ATTENTION

C:\Program Files\PriceMeterLiveUpdate

C:\ProgramData\ShopperPro

C:\Program Files\RCP

C:\Users\Kasia\AppData\Local\SmartWeb

C:\Program Files\ShopperPro

C:\Program Files\CinemaPlus-3.2cV08.06

C:\Program Files\AnyProtectEx

C:\Users\Kasia\AppData\Local\PriceMeter

C:\Program Files\Crossbrowse

C:\Program Files\Elex-tech

C:\Users\Kasia\AppData\Roaming\ASPackage

C:\Users\Kasia\AppData\Local\gmsd_pl_130

C:\Program Files\gmsd_pl_130

C:\Program Files\WinZipper

HKLM\...\Run: [mobilegeni daemon] => C:\Program Files\Mobogenie\DaemonProcess.exe

C:\Program Files\Mobogenie

HKLM\...\Run: [sPDriver] => C:\Program Files\ShopperPro\JSDriver\1.42.1.1957\jsdrv.exe [3225088 2015-06-08] ()

HKLM\...\Run: [smartWeb] => C:\Users\Kasia\AppData\Local\SmartWeb\SmartWebHelper.exe [270368 2015-02-17] (SoftBrain Technologies Ltd.)

HKLM\...\Run: [gmsd_pl_130] => C:\Program Files\gmsd_pl_130\gmsd_pl_130.exe [3984040 2015-06-08] ()

HKLM\...\Run: [Windesk Winsearch] => C:\Program Files\WindeskWinsearch\Windesk Winsearch.exe [1060744 2015-04-08] (Windesk Winsearch)

HKLM\...\RunOnce: [upgmsd_pl_130.exe] => C:\Users\Kasia\AppData\Local\gmsd_pl_130\upgmsd_pl_130.exe [3304904 2015-06-08] ()

HKU\S-1-5-21-1266292625-858870729-1075496977-1001\...\Run: [GoobzoYouTubeAccelerator] => "C:\Program Files\YouTube Accelerator\YouTubeAccelerator.exe"

HKU\S-1-5-21-1266292625-858870729-1075496977-1001\...\Run: [sPDriver] => C:\Program Files\ShopperPro\JSDriver\1.42.1.1957\jsdrv.exe [3225088 2015-06-08] ()

HKU\S-1-5-21-1266292625-858870729-1075496977-1001\...\Run: [GoogleChromeAutoLaunch_2AC7278C60DDE6B56FEC908AFCD7161A] => C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe

Startup: C:\Users\Kasia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk [2015-06-08]

ShortcutTarget: crossbrowse.lnk -> C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (Crossbrowse)

Startup: C:\Users\Kasia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk [2015-06-08]

ShortcutTarget: SmartWeb.lnk -> C:\Users\Kasia\AppData\Local\SmartWeb\SmartWebHelper.exe (SoftBrain Technologies Ltd.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com?type=hp&ts=1433602323&from=mych123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=4580f1040437e88351953e3gez5cacfq3efobc7g7e

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1389292992&from=cor&uid=ST9320325AS_5VE2AN4CXXXX5VE2AN4C&q={searchTerms}

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com?type=hp&ts=1433602323&from=mych123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=4580f1040437e88351953e3gez5cacfq3efobc7g7e

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1389292992&from=cor&uid=ST9320325AS_5VE2AN4CXXXX5VE2AN4C&q={searchTerms}

HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com?type=hp&ts=1433602323&from=mych123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=4580f1040437e88351953e3gez5cacfq3efobc7g7e

HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com?type=hp&ts=1433602323&from=mych123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=4580f1040437e88351953e3gez5cacfq3efobc7g7e

HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com?type=hp&ts=1433602323&from=mych123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=4580f1040437e88351953e3gez5cacfq3efobc7g7e

HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com?type=hp&ts=1433602323&from=mych123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=4580f1040437e88351953e3gez5cacfq3efobc7g7e

HKU\S-1-5-21-1266292625-858870729-1075496977-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/web/?utm_source=b&utm_medium=wpm0226&utm_campaign=installer&utm_content=ds&from=wpm0226&uid=ST9320325AS_5VE2AN4CXXXX5VE2AN4C&ts=1393414217&type=default&q={searchTerms}

HKU\S-1-5-21-1266292625-858870729-1075496977-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com?type=hp&ts=1433602323&from=mych123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=4580f1040437e88351953e3gez5cacfq3efobc7g7e

HKU\S-1-5-21-1266292625-858870729-1075496977-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com?type=hp&ts=1433602323&from=mych123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=4580f1040437e88351953e3gez5cacfq3efobc7g7e

HKU\S-1-5-21-1266292625-858870729-1075496977-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/web/?utm_source=b&utm_medium=wpm0226&utm_campaign=installer&utm_content=ds&from=wpm0226&uid=ST9320325AS_5VE2AN4CXXXX5VE2AN4C&ts=1393414217&type=default&q={searchTerms}

SearchScopes: HKLM -> DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1431421794&from=zzgbkk123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=92dcc741690e4eae49a8536g3zfccgdz6o6gbm4tdo&q={searchTerms}

SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.sweet-page.com/web/?type=ds&ts=1389292992&from=cor&uid=ST9320325AS_5VE2AN4CXXXX5VE2AN4C&q={searchTerms}

SearchScopes: HKLM -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1431421794&from=zzgbkk123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=92dcc741690e4eae49a8536g3zfccgdz6o6gbm4tdo&q={searchTerms}

SearchScopes: HKU\S-1-5-21-1266292625-858870729-1075496977-1001 -> DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1431421794&from=zzgbkk123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=92dcc741690e4eae49a8536g3zfccgdz6o6gbm4tdo&q={searchTerms}

SearchScopes: HKU\S-1-5-21-1266292625-858870729-1075496977-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.delta-homes.com/web/?utm_source=b&utm_medium=wpm0226&utm_campaign=installer&utm_content=ds&from=wpm0226&uid=ST9320325AS_5VE2AN4CXXXX5VE2AN4C&ts=1393414217&type=default&q={searchTerms}

SearchScopes: HKU\S-1-5-21-1266292625-858870729-1075496977-1001 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1431421794&from=zzgbkk123&uid=st9320325as_5ve2an4cxxxx5ve2an4c&z=92dcc741690e4eae49a8536g3zfccgdz6o6gbm4tdo&q={searchTerms}

BHO: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro.dll [2015-06-08] (Goobzo Ltd.)

FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\aartemis.xml [2013-11-25]

CHR HKLM\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\Kasia\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx [2014-01-09]

CHR HKLM\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - No Path Or update_url value

FF Plugin: @tools.updatepm.com/PriceMeterLiveUpdate Update;version=3 -> C:\Program Files\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll [2014-03-23] (PriceMeter)

FF Plugin: @tools.updatepm.com/PriceMeterLiveUpdate Update;version=9 -> C:\Program Files\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll [2014-03-23] (PriceMeter)

R2 iSafeService; C:\Program Files\Elex-tech\YAC\iSafeSvc.exe [118048 2015-05-04] (Elex do Brasil Participações Ltda)

S2 pricemeterliveUpdate; C:\Program Files\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe [150504 2014-03-23] (PriceMeter)

S3 pricemeterliveUpdatem; C:\Program Files\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe [150504 2014-03-23] (PriceMeter)

R2 serveras; C:\Users\Kasia\AppData\Roaming\ASPackage\ASSrv.exe [183808 2015-06-08] () [File not signed]

R2 SPBIUpd; C:\Program Files\Common Files\ShopperPro\spbiu.exe

R2 winzipersvc; C:\Program Files\WinZipper\winzipersvc.exe

R1 iSafeKrnl; C:\Program Files\Elex-tech\YAC\iSafeKrnl.sys [226024 2015-05-04] (Elex do Brasil Participações Ltda)

S3 iSafeKrnlBoot; C:\Windows\System32\DRIVERS\iSafeKrnlBoot.sys [48784 2015-05-04] (Elex do Brasil Participações Ltda)

R1 iSafeKrnlKit; C:\Program Files\Elex-tech\YAC\iSafeKrnlKit.sys [96424 2015-05-04] (Elex do Brasil Participações Ltda)

R1 iSafeKrnlMon; C:\Program Files\Elex-tech\YAC\iSafeKrnlMon.sys [43536 2015-05-04] (Elex do Brasil Participações Ltda)

R1 iSafeKrnlR3; C:\Program Files\Elex-tech\YAC\iSafeKrnlR3.sys [71744 2015-05-04] (Elex do Brasil Participações Ltda)

R1 iSafeNetFilter; C:\Windows\System32\DRIVERS\iSafeNetFilter.sys [44712 2015-04-17] (Elex do Brasil Participações Ltda)

C:\Windows\System32\DRIVERS\iSafeNetFilter.sys

C:\Program Files\Common Files\ShopperPro

R3 SPBIUpdd; C:\Program Files\Common Files\ShopperPro\spbiw.sys

S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X]

c:\Users\Public\Desktop\Crossbrowse.lnk

C:\Users\Kasia\AppData\Local\Crossbrowse

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse

C:\Users\Kasia\AppData\Local\nsh922B.tmp

C:\Users\Kasia\Desktop\AnyProtect.lnk

C:\Users\Kasia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup

C:\Users\Kasia\AppData\Local\nsvE3A5.tmp

C:\Program Files\WindeskWinsearch

C:\Users\Kasia\AppData\Local\Windesk_Winsearch

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WindeskWinsearch

C:\Users\Public\Desktop\WindeskWinsearch.lnk

C:\Users\Kasia\AppData\Local\nssEEF4.tmp

C:\Users\Kasia\AppData\Roaming\AnyProtectEx

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro

C:\Program Files\Infonaut_1.10.0.14

C:\ProgramData\ShopperPro

C:\Users\Public\Documents\ShopperPro

C:\Users\Public\Documents\GOOBZO

C:\Program Files\YouTube Accelerator

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Accelerator

C:\ProgramData\boost_interprocess

EmptyTemp:

 

 

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST.exe

Uruchom FRST i kliknij przycisk Fix.

Powstanie plik fixlog.txt.

Daj ten log.

 

3) Zrób log z Adw-Cleaner https://www.fixitpc.pl/topic/8-dezynfekcja-zbi%C3%B3r-narz%C4%99dzi-usuwaj%C4%85cych/?do=findComment&comment=118323

 

4) Zrób nowe logi FRST.

 

jessi

Odnośnik do komentarza

Proszę bardzo, o to logi, chciałbym w tym wszystkim być taki biegły jak wy, wtedy nie musiałbym nikogo prosić o pomoc. To trudne do ogarnięcia? i jak wiele czasu zajeło by ogarnięcie tego wszystkiego. To tak na marginesie :)

Adw-Cleaner: najpierw kliknij na SZUKAJ (SCAN), a dopiero po zakończeniu skanowania, gdy uaktywni się przycisk USUŃ (CLEANING), to kliknij na niego.

 

Potem zrób nowe logi FRST.

 

jessi

Odnośnik do komentarza

 To trudne do ogarnięcia? i jak wiele czasu zajeło by ogarnięcie tego wszystkiego.

Tutaj trochę informacji na ten temat:

https://www.fixitpc.pl/topic/20151-wiedza-tajemna/?p=131930

https://www.fixitpc.pl/topic/5501-diagnozowanie-komputera/

 

 

Większość ludzi nie czyta tego typu tematów, nie możesz przecież mieć o to pretensji / wymagać tego.

Odnośnik do komentarza

Otwórz Notatnik i wklej w nim:

 

HKLM\...\Run: [gmsd_pl_132] => [X]
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
C:\Users\Kasia\AppData\Local\nssB66B.tmp
C:\found.000
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST.exe
Uruchom FRST i kliknij przycisk Fix.
Powstanie plik fixlog.txt.
Daj ten log.

 

Zrób nowe logi FRST.

Przed skanem zaznacz "Additional"

 

jessi

Odnośnik do komentarza

Jeśli chcesz dodać odpowiedź, zaloguj się lub zarejestruj nowe konto

Jedynie zarejestrowani użytkownicy mogą komentować zawartość tej strony.

Zarejestruj nowe konto

Załóż nowe konto. To bardzo proste!

Zarejestruj się

Zaloguj się

Posiadasz już konto? Zaloguj się poniżej.

Zaloguj się
  • Ostatnio przeglądający   0 użytkowników

    • Brak zarejestrowanych użytkowników przeglądających tę stronę.
×
×
  • Dodaj nową pozycję...