Damek88 utworzono 13 grudnia 2015 utworzono 13 grudnia 2015 Jak w temacie proszę o pomoc w linku dokumenty .
Twój_Anioł_Stróż komentarz 13 grudnia 2015 komentarz 13 grudnia 2015 (edytowane) Otwórz Notatnik i wklej w nim: Task: {149CF5BA-5C22-429F-96E1-91A9A3DD1134} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA Task: {21BC3628-8D8E-49C5-8BA3-FE7C2B9083F0} - System32\Tasks\{4C22EC9A-A665-4BF2-81E8-A9BCB4D6762E} => pcalua.exe -a "C:\Program Files (x86)\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe" -c /M{3E7940A4-495B-4DC5-B5C9-D2EE1DE9E5EF} /Z"UNINSTALL" Task: {41D8B2F5-35EC-4D0D-AEB6-0DEDBC4793D8} - System32\Tasks\{BF85F4E8-A305-432C-A25A-363FA7C55460} => pcalua.exe -a C:\ProgramData\BrowserDefender\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\uninstall.exe -c /Uninstall /{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693} /su=6d6635efdd806e25 /um Task: {49E98FE0-DE41-4089-9989-6DE104E906E3} - System32\Tasks\{8C52B748-367C-4F6D-9CDA-C89F771C71B2} => pcalua.exe -a C:\Users\Damian\Desktop\WSZYSTKO\win32_15313.exe -d C:\Users\Damian\Desktop\WSZYSTKO Task: {5DD3B900-E6C2-47B8-ACCA-12456FBE9091} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA Task: {68E21DDA-F1C7-4F3E-8857-9A6C9E9DF40B} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA Task: {70E4C046-182E-4AB3-BEBA-48559F69A35C} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA Task: {821E09CB-A88F-4230-859D-7D2C2BBD0CB9} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA Task: {B0C3AF8D-D0C7-4C7C-BF5D-D6E79B789F34} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA Task: {B6F372AA-3544-44BA-B347-2A9ABA5EE298} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA Task: {C57D3AAF-B6EB-4996-B0DD-2DE6B3A1E15B} - System32\Tasks\MediPincer => c:\programdata\{bd8c6b2d-7bab-4428-bd8c-c6b2d7baacb5}\1998262847753810794b.exe <==== UWAGA Task: {C6364A68-D28F-4D92-9D28-C933D5E5DF32} - System32\Tasks\{AA14CDAA-0540-4129-832E-348BA20911E1} => pcalua.exe -a C:\Users\Damian\Downloads\rkill64.exe -d C:\Users\Damian\Downloads Task: {C7DEA0F6-73D8-4118-8F76-CA80CFC042A9} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA Task: {D7A46797-5EF3-4BED-8D9B-188D01D5271F} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA Task: {F1391293-9CE6-4476-94CF-7BD5DF512605} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA Task: {F937C8CB-90F2-4A9F-9770-2F07C7A51E05} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA DeleteKey: HKLM\SOFTWARE\Wow6432Node\yoursites123Software HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX&q={searchTerms} HKU\S-1-5-21-1292469835-3904043757-2447316924-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX&q={searchTerms} HKU\S-1-5-21-1292469835-3904043757-2447316924-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX HKU\S-1-5-21-1292469835-3904043757-2447316924-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX HKU\S-1-5-21-1292469835-3904043757-2447316924-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX&q={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX&q={searchTerms} SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX&q={searchTerms} SearchScopes: HKU\S-1-5-21-1292469835-3904043757-2447316924-1001 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX&q={searchTerms} SearchScopes: HKU\S-1-5-21-1292469835-3904043757-2447316924-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX&q={searchTerms} SearchScopes: HKU\S-1-5-21-1292469835-3904043757-2447316924-1001 -> {F2E48B17-78B7-406A-BE47-7FB63603E514} URL = StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe hxxp://www.yoursites123.com/?type=sc&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX Edge HomeButtonPage: HKU\S-1-5-21-1292469835-3904043757-2447316924-1001 -> hxxp://www.delta-homes.com/?type=hp&ts=1445251312&z=452e3ff80407b36136338efgdzfzbwfodw3g6ccg0q&from=wpm07163&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.yoursites123.com/?type=sc&ts=1449824658&z=40e64e973fa931f20a7f417gaz1z3t3bdo1zcq8q8o&from=ient07021&uid=HitachiXHTS547575A9E384_J1140021D9EGJJD9EGJJX Task: C:\WINDOWS\Tasks\MediPincer.job => c:\programdata\{bd8c6b2d-7bab-4428-bd8c-c6b2d7baacb5}\1998262847753810794b.exe <==== UWAGA Task: {FC76EF36-240E-434C-BEEA-0AC7AC264BBC} - System32\Tasks\{7262CEED-DAA1-4EA4-8712-4AE9099FCBA6} => pcalua.exe -a "c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\Silverlight.Configuration.exe" -c -uninstallApp 2186464104.portal.qtrax.com c:\programdata\{bd8c6b2d-7bab-4428-bd8c-c6b2d7baacb5} C:\ProgramData\HWdMH HKLM-x32\...\Run: [] => [X] ShellIconOverlayIdentifiers: [GGDriveOverlay1] -> {E68D0A50-3C40-4712-B90D-DCFA93FF2534} => Brak pliku ShellIconOverlayIdentifiers: [GGDriveOverlay2] -> {E68D0A51-3C40-4712-B90D-DCFA93FF2534} => Brak pliku ShellIconOverlayIdentifiers: [GGDriveOverlay3] -> {E68D0A52-3C40-4712-B90D-DCFA93FF2534} => Brak pliku ShellIconOverlayIdentifiers: [GGDriveOverlay4] -> {E68D0A53-3C40-4712-B90D-DCFA93FF2534} => Brak pliku CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA R2 WdMan; C:\ProgramData\HWdMH\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego] S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] 2015-12-11 10:04 - 2015-12-11 10:04 - 00000001 _____ C:\WINDOWS\SysWOW64\pl.html EmptyTemp: Plik zapisz pod nazwą [b]fixlist.txt[/b] i umieść obok FRST.exe Uruchom [b]FRST[/b] i kliknij przycisk [b]Fix[/b] (NAPRAW). ---------------------- Jeśli będzie OK, to będziemy kończyć: Otwórz Notatnik i wklej w nim: DeleteQuarantine: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij w Fix (NAPRAW). przez SHIFT+DEL usuń pozostały folder C:\FRST. Jeśli natomiast problem nie zniknie, to przeinstalujesz przeglądarkę, na której to jeszcze będzie. .
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.