Tehij utworzono 10 grudnia 2015 utworzono 10 grudnia 2015 Witam, widzę, że nie jestem sam z tym problemem. Moje logi są w załączniku. Proszę o pomoc. Czy jest jakiś sposób, żeby podobne programy się już same nie instalowały? Parę dni temu miałem podobny problem z WorldFly.
Twój_Anioł_Stróż komentarz 10 grudnia 2015 komentarz 10 grudnia 2015 (edytowane) Otwórz Notatnik i wklej w nim: Shortcut: C:\Users\tehij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft\Minecraft Debugger.lnk -> C:\Users\tehij_000\AppData\Roaming\.minecraft\minecraft launcher\Debug.bat () <==== UWAGA ShortcutWithArgument: C:\Users\tehij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Pocket (1).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C <==== UWAGA ShortcutWithArgument: C:\Users\tehij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Pocket.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C <==== UWAGA ShortcutWithArgument: C:\Users\tehij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Readium.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C <==== UWAGA ShortcutWithArgument: C:\Users\tehij_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C <==== UWAGA ShortcutWithArgument: C:\Users\tehij_000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C <==== UWAGA ShortcutWithArgument: C:\Users\tehij_000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C <==== UWAGA ShortcutWithArgument: C:\Users\tehij_000\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C <==== UWAGA C:\ProgramData\3WdM3 C:\Program Files (x86)\SFK HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://do-search.com/web/?type=ds&ts=1429085472&from=cor&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://do-search.com/web/?type=ds&ts=1429085472&from=cor&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C&q={searchTerms} HKU\S-1-5-21-88422951-2741218869-2129229788-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C&q={searchTerms} HKU\S-1-5-21-88422951-2741218869-2129229788-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C HKU\S-1-5-21-88422951-2741218869-2129229788-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C HKU\S-1-5-21-88422951-2741218869-2129229788-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C&q={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C&q={searchTerms} SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C&q={searchTerms} SearchScopes: HKU\S-1-5-21-88422951-2741218869-2129229788-1001 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C&q={searchTerms} SearchScopes: HKU\S-1-5-21-88422951-2741218869-2129229788-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C&q={searchTerms} SearchScopes: HKU\S-1-5-21-88422951-2741218869-2129229788-1001 -> {B9271C9D-3609-4FFC-90FD-29D49F2E3CF5} URL = StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1448397917&z=f28c37522a0c9f7f56f0c76g8z8z6b4c4t0m8w4t3m&from=cornl&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C Edge HomeButtonPage: HKU\S-1-5-21-88422951-2741218869-2129229788-1001 -> hxxp://www.yoursites123.com/?type=hp&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://space.com/","hxxp://faktopedia.pl/","hxxp://facebook.com/","hxxp://www.youtube.com/","hxxp://azl.eline5.serwery.pl/szybowce/html/index.php","hxxp://do-search.com/?type=hp&ts=1429085472&from=cor&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C","hxxp://www.istartsurf.com/?type=hp&ts=1448397917&z=f28c37522a0c9f7f56f0c76g8z8z6b4c4t0m8w4t3m&from=cornl&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C","hxxp://www.yoursites123.com/?type=hp&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C" CHR NewTab: Default -> "chrome-extension://boeojddkbfhdgnnicgkgogjnbkdljibb/blank.html" CHR Session Restore: Default -> [funkcja włączona] StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.yoursites123.com/?type=sc&ts=1449715952&z=63e8d6eddfc96264bd65383g2zaz7t9mfgfw3t8zcb&from=ient07021&uid=ST500LM000-SSHD-8GB_W372PD4CXXXXW372PD4C R2 IhPul; C:\Users\tehij_000\AppData\Roaming\TSv\TSvr.exe [580752 2015-12-08] (tsvr.com) R2 SSFK; C:\Program Files (x86)\SFK\SSFK.exe [170144 2015-11-27] (TODO: <公司名>) R2 WdMan; C:\ProgramData\3WdM3\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego] Task: {1AB224D0-4671-4676-81F8-7842CDC95986} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA Task: {1C288574-2A30-47C3-B83F-142B2793C129} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA Task: {30F1BD38-E336-4FA8-A78F-C3AFE5822790} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA Task: {4E1A2021-5471-44F8-AF42-2FF4F9F22928} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA Task: {60BEACC3-44E5-41FE-A96A-076F53AF0E68} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA Task: {6CD1884C-ED95-40CD-9253-03D81B4373F3} - System32\Tasks\{D309DD7A-882A-4460-8D60-6C2E34A54B7B} => pcalua.exe -a E:\setup\rsrc\Autorun.exe -d E:\ Task: {8D2A9B88-A29E-45B2-BA0E-16FBAEF7B4C3} - System32\Tasks\060184C3-9766-46a0-B258-F4518A0B2633 => Cscript.exe "C:\ProgramData\Baidu Security\Duplicaterecord.js" <==== UWAGA Task: {92B5E4FE-C905-41A2-86B0-8D109A0D39B7} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA Task: {CE591709-750C-49BE-AE1F-8CA1EFD19903} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA Task: {E96CD43E-CFCB-4848-8F59-A8294E0CDFB0} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA Task: {EAC2E2F6-496F-45F4-8B06-34AE827B642B} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA Task: {EF651095-F79E-4E61-9D38-27E3CDAA971D} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA Task: {F1D06034-9C98-4434-BF48-83B284AF9531} - System32\Tasks\{3041EEBA-2923-4D2F-9918-B2419D4E1A03} => pcalua.exe -a E:\setup\rsrc\Autorun.exe -d E:\ Task: {FDBFE10C-09F0-436F-A72E-173789005245} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] 2015-12-10 03:52 - 2015-12-10 12:03 - 00000000 ____D C:\Program Files (x86)\SFK 2015-12-10 03:52 - 2015-12-10 11:54 - 00000001 _____ C:\WINDOWS\SysWOW64\pl.html 2015-12-10 03:52 - 2015-12-10 03:53 - 00000000 ____D C:\ProgramData\3WdM3 2015-12-10 03:52 - 2015-12-10 03:52 - 00000384 _____ C:\WINDOWS\SysWOW64\data.bin 2015-12-10 03:52 - 2015-12-10 03:52 - 00000000 ____D C:\Users\tehij_000\AppData\Roaming\TSv 2015-12-10 03:52 - 2015-12-10 03:52 - 00000000 ____D C:\ProgramData\FWdMF 2015-11-24 21:45 - 2015-12-10 03:52 - 00000074 _____ C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat 2015-11-24 21:45 - 2015-12-10 03:52 - 00000000 ____D C:\ProgramData\DWMiniProD 2015-11-24 21:45 - 2015-11-24 22:46 - 00000000 ____D C:\Users\tehij_000\AppData\Roaming\istartsurf 2015-11-24 21:44 - 2015-11-24 21:44 - 00962128 _____ (Installer Soft Program ) C:\Users\tehij_000\Desktop\KLite-Codec-Pack-64bit-13349-dp.exe 2015-11-24 21:39 - 2015-11-24 21:39 - 00962128 _____ (Installer Soft Program ) C:\Users\tehij_000\Desktop\Windows-8-Codec-Pack-39542-dp.exe 2015-10-19 10:44 - 2015-10-19 10:44 - 0413432 _____ () C:\ProgramData\DQSEHYARAVRH.dat 2015-10-19 10:44 - 2015-10-19 10:44 - 0140952 _____ () C:\ProgramData\QQNYDJIJRNAO.dat 2015-10-19 10:44 - 2015-10-19 10:44 - 0228946 _____ () C:\ProgramData\XEYHJVQCONVT.dat EmptyTemp: Plik zapisz pod nazwą [b]fixlist.txt[/b] i umieść obok FRST.exe Uruchom [b]FRST[/b] i kliknij przycisk [b]Fix[/b] (NAPRAW). ---------------------- Jeśli będzie OK, to będziemy kończyć: Otwórz Notatnik i wklej w nim: DeleteQuarantine: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij w Fix (NAPRAW). przez SHIFT+DEL usuń pozostały folder C:\FRST. Jeśli natomiast problem nie zniknie, to przeinstalujesz przeglądarkę, na której to jeszcze będzie. .
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.