cunio utworzono 11 grudnia 2015 utworzono 11 grudnia 2015 Pomóżcie Kochani, jak to cholerstwo usunąć. Nie mam pojęcia skąd się wzięło.
Twój_Anioł_Stróż komentarz 11 grudnia 2015 komentarz 11 grudnia 2015 (edytowane) Otwórz Notatnik i wklej w nim: Task: {29415107-0C6D-4D5F-821B-01098BBE172A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA Task: {3D3EBC7F-1286-4380-9CD3-09BE6EA10BBF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA Task: {5C04D6F3-08AD-4A07-BCDC-F93FE0A990EE} - System32\Tasks\WordFly Auto Updater 1.10.0.28 Core => C:\Program Files (x86)\WordFly_1.10.0.28\Update\WordflyAutoUpdateClient.exe <==== UWAGA Task: {76FA1B3A-0E27-4F04-A62F-B37D195DC8A4} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA Task: {8C062C04-88D3-4B2D-A3E2-5F4CF39E5F11} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA Task: {AE68C083-DAB0-4C4E-920B-A66D5321519A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA Task: {C1DE551E-FAB5-47A6-A1AB-DE43688B9866} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA Task: {C345DA2D-A1CB-4895-AD7D-E745F1FBE0BC} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA Task: {C8F6CFE7-1D96-4F16-953D-E23375A53B01} - \PennyBee -> Brak pliku <==== UWAGA Task: {DED9D085-6EA1-45CC-A25B-B8B0751538ED} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA Task: {DFA3CED8-BD5F-4C53-82FD-A0AC265B45BB} - System32\Tasks\Chrome Cleanup Tool post reboot run => C:\Users\Marzena\AppData\Local\Temp\5173.exe [2015-12-11] (Google) <==== UWAGA Task: {DFDFCD9C-1714-4462-BB29-3E71CED1351C} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA Task: {E63AAA9A-1ACC-49DA-B2EC-7C1AE06FDA03} - System32\Tasks\{63E28ADB-49B0-44F9-A3F8-F000A3431B16} => pcalua.exe -a E:\Setup.EXE -d E:\ Task: {EE89CD79-7055-40CD-93FB-0DD885B7848E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA Task: {F0AAD68C-34C0-4B97-8EF2-5B55D6FC198F} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA C:\Program Files (x86)\WordFly_1.10.0.28 Task: C:\WINDOWS\Tasks\PennyBee.job => C:\Users\Marzena\AppData\Roaming\PennyBee\UPDATE~1\UPDATE~1.EXE <==== UWAGA ShortcutWithArgument: C:\Users\Marzena\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866 <==== UWAGA ShortcutWithArgument: C:\Users\Marzena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866 <==== UWAGA ShortcutWithArgument: C:\Users\Marzena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866 <==== UWAGA ShortcutWithArgument: C:\Users\Marzena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866 <==== UWAGA ShortcutWithArgument: C:\Users\Marzena\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866 <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866 <==== UWAGA HKU\S-1-5-21-568516054-2630526357-2812463013-1001\...\Run: [KALG] => C:\Users\Marzena\AppData\Roaming\oficynamm\start.exe /exe minical.exe HKU\S-1-5-21-568516054-2630526357-2812463013-1001\...\RunOnce: [Chrome Cleanup Tool] => C:\Users\Marzena\AppData\Local\Temp\5173.exe [4476744 2015-12-11] (Google) <===== UWAGA ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Brak pliku GroupPolicyScripts: Ograniczenia <======= UWAGA HKU\S-1-5-21-568516054-2630526357-2812463013-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866&q={searchTerms} HKU\S-1-5-21-568516054-2630526357-2812463013-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866 HKU\S-1-5-21-568516054-2630526357-2812463013-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866 HKU\S-1-5-21-568516054-2630526357-2812463013-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866&q={searchTerms} SearchScopes: HKU\S-1-5-21-568516054-2630526357-2812463013-1001 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKU\S-1-5-21-568516054-2630526357-2812463013-1001 -> {DEDA0F9C-5B00-4421-A0DC-822AA9B43446} URL = hxxp://isearch.omiga-plus.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866&ts=1421440178&type=default&q={searchTerms} Edge HomeButtonPage: HKU\S-1-5-21-568516054-2630526357-2812463013-1001 -> hxxp://www.yoursites123.com/?type=hp&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866 CHR HomePage: Default -> hxxp://www.yoursites123.com/?type=hp&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866 CHR StartupUrls: Default -> "hxxp://www.yoursites123.com/?type=hp&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866" CHR DefaultSearchURL: Default -> hxxp://www.yoursites123.com/web/?type=ds&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866&q={searchTerms} CHR DefaultSearchKeyword: Default -> yoursites123 StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.yoursites123.com/?type=sc&ts=1449645785&z=d6fdedeafd5eccd233e1314gaz3zdtdq5z6w6m2b8o&from=ient07021&uid=ST1000LM024XHN-M101MBB_S30YJ9BF118866 R1 {97a224e4-fe41-4078-b1ef-069fe8cd6d9f}Gw64; C:\Windows\System32\drivers\{97a224e4-fe41-4078-b1ef-069fe8cd6d9f}Gw64.sys [48784 2015-03-01] () [Brak podpisu cyfrowego] R1 {e99acdf0-fa83-4c75-b15b-f0d544a8fd2a}Gw64; C:\Windows\System32\drivers\{e99acdf0-fa83-4c75-b15b-f0d544a8fd2a}Gw64.sys [48784 2015-01-16] () [Brak podpisu cyfrowego] S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] C:\Windows\System32\drivers\{97a224e4-fe41-4078-b1ef-069fe8cd6d9f}Gw64.sys C:\Windows\System32\drivers\{e99acdf0-fa83-4c75-b15b-f0d544a8fd2a}Gw64.sys C:\Users\Marzena\Downloads\SpyHunter-installer.exe 2015-12-09 08:24 - 2015-12-09 08:24 - 00000000 ____D C:\Users\Marzena\AppData\Roaming\Picexa Viewer 2015-12-09 08:23 - 2015-12-11 17:18 - 00000000 ____D C:\ProgramData\5WdM5 2015-12-09 08:23 - 2015-12-09 08:23 - 00000378 _____ C:\WINDOWS\SysWOW64\data.bin 2015-12-09 08:22 - 2015-12-11 17:20 - 00000000 ____D C:\ProgramData\WWdMW EmptyTemp: Plik zapisz pod nazwą [b]fixlist.txt[/b] i umieść obok FRST.exe Uruchom [b]FRST[/b] i kliknij przycisk [b]Fix[/b] (NAPRAW). ---------------------- Jeśli będzie OK, to będziemy kończyć: Otwórz Notatnik i wklej w nim: DeleteQuarantine: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij w Fix (NAPRAW). przez SHIFT+DEL usuń pozostały folder C:\FRST. Jeśli natomiast problem nie zniknie, to przeinstalujesz przeglądarkę, na której to jeszcze będzie. .
cunio komentarz 12 grudnia 2015 Autor komentarz 12 grudnia 2015 Wielkie dzięki Aniołku Kochany. Wszystko śmiga. Ale masz łeb. Jesteś wielki. Pozdrawiam serdecznie.
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.