grzybol100 utworzono 14 grudnia 2015 utworzono 14 grudnia 2015 (edytowane) Jak w temacie. Dołączam niezbędne pliczki.
Twój_Anioł_Stróż komentarz 14 grudnia 2015 komentarz 14 grudnia 2015 1) Odinstaluj program WinZipper 2) Zrób logi z [b]FRST[/b] > http://www.forumpc.pl/topic/277786-nieingerencyjne-narz%C4%99dzia-do-tworzenia-log%C3%B3w-systemowych/?p=2010191 przed skanem zaznacz: Additional.txt .
Twój_Anioł_Stróż komentarz 14 grudnia 2015 komentarz 14 grudnia 2015 (edytowane) Tu jest więcej śmieci. 1) Odinstaluj te programy: WindowsMangerProtect20.0.0.502 (HKLM-x32\...\WindowsMangerProtect) (Version: 20.0.0.502 - WindowsProtect LIMITED) <==== UWAGA trolatunt (HKLM\...\trolatunt) (Version: 2014.07.12.013218 - trolatunt) <==== UWAGA 2) Użyj >[url=http://general-changelog-team.fr/fr/downloads/viewdownload/20-outils-de-xplode/2-adwcleaner]Adw-cleaner[/url] najpierw kliknij na SZUKAJ (SCAN), a dopiero po zakończeniu skanowania, gdy uaktywni się przycisk USUŃ (CLEANING), to kliknij na niego. 3) Otwórz Notatnik i wklej w nim: DeleteKey: HKLM\SOFTWARE\Wow6432Node\yoursites123Software DeleteKey: HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes DeleteKey: HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes DeleteKey: HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes CustomCLSID: HKU\S-1-5-21-2921542611-3421097398-309872328-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Grzybol100\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2921542611-3421097398-309872328-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Grzybol100\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2921542611-3421097398-309872328-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Grzybol100\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2921542611-3421097398-309872328-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Grzybol100\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2921542611-3421097398-309872328-1000_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Grzybol100\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2921542611-3421097398-309872328-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Grzybol100\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2921542611-3421097398-309872328-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Grzybol100\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2921542611-3421097398-309872328-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Grzybol100\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2921542611-3421097398-309872328-1000_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Grzybol100\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2921542611-3421097398-309872328-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Grzybol100\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2921542611-3421097398-309872328-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Grzybol100\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => Brak pliku Task: {1C8F57B9-E0A8-4CA6-AA33-B169915DCA24} - System32\Tasks\{5BDEC844-6087-4B57-B518-D4EF8D165B39} => pcalua.exe -a C:\Users\Grzybol100\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=smt <==== UWAGA C:\Users\Grzybol100\AppData\Roaming\omiga-plus Task: {AA0EB094-D9CA-424C-9665-ED6B1D2A3C15} - System32\Tasks\{AF6022A8-E912-4152-890D-52FD1B9C7613} => pcalua.exe -a "C:\Users\Grzybol100\Downloads\UndeadPixel 2.2.exe" -d C:\Users\Grzybol100\Downloads ShortcutWithArgument: C:\Users\Grzybol100\Desktop\魔法门冠军对决.lnk -> D:\china doc\MMDoC-Bihan\Launcher.exe (Ubisoft) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\Users\Grzybol100\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\Users\Grzybol100\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\魔法门冠军对决\魔法门冠军对决.lnk -> D:\china doc\MMDoC-Bihan\Launcher.exe (Ubisoft) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\Users\Grzybol100\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\Users\Grzybol100\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\Users\Grzybol100\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\Users\Grzybol100\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\Users\Grzybol100\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Duel of Champions Launcher.lnk -> C:\Users\Grzybol100\AppData\Roaming\Ubisoft\MMDoC-PDCLive\Launcher.exe (Ubisoft) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\Users\Grzybol100\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\MMDoC-MDCBal.lnk -> C:\Users\Grzybol100\AppData\Roaming\Ubisoft\MMDoC-MDCBal\Launcher.exe (Ubisoft) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Duel of Champions Launcher.lnk -> C:\Users\Grzybol100\AppData\Roaming\Ubisoft\MMDoC-PDCLive\Launcher.exe (Ubisoft) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\MMDoC-MDCBal.lnk -> C:\Users\Grzybol100\AppData\Roaming\Ubisoft\MMDoC-MDCBal\Launcher.exe (Ubisoft) -> hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R <==== UWAGA HKU\S-1-5-21-2921542611-3421097398-309872328-1000\...\Run: [Akamai NetSession Interface] => "C:\Users\Grzybol100\AppData\Local\Akamai\netsession_win.exe" HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R&q={searchTerms} HKU\S-1-5-21-2921542611-3421097398-309872328-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R HKU\S-1-5-21-2921542611-3421097398-309872328-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R&q={searchTerms} SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R&q={searchTerms} SearchScopes: HKU\S-1-5-21-2921542611-3421097398-309872328-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R&q={searchTerms} SearchScopes: HKU\S-1-5-21-2921542611-3421097398-309872328-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R&q={searchTerms} BHO-x32: trolatunt -> {db39fa04-97db-4500-8306-6bfeeff1929b} -> C:\Program Files (x86)\trolatunt\trolatuntbho.dll => Brak pliku Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Brak pliku Toolbar: HKLM - Brak nazwy - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - Brak pliku Toolbar: HKU\S-1-5-21-2921542611-3421097398-309872328-1000 -> Brak nazwy - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Brak pliku StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1446140830&z=f5a3df9a5df0bda9870768eg0z1z8q1g0z0efw6q0t&from=cor&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.yoursites123.com/?type=sc&ts=1450083270&z=d14dfb1434722e147e6470eg3zdw5e4efbccbo9q9e&from=wpm07173&uid=ST1000DM003-1CH162_Z1D6D92RXXXXZ1D6D92R S2 winzipersvc; C:\Program Files (x86)\WinZipper\winzipersvc.exe [X] <==== UWAGA S2 hjlkfdajklfed3dfa; \??\C:\Program Files (x86)\SupTab\cfgdrv64.cfg [X] 2015-12-14 09:57 - 2015-12-14 12:23 - 00000000 ____D C:\Program Files (x86)\WinZipper 2015-12-14 09:56 - 2015-12-14 11:44 - 00000000 ____D C:\ProgramData\8WdM8 2015-12-14 09:56 - 2015-12-14 11:44 - 00000000 ____D C:\Program Files (x86)\SFK 2015-12-14 09:56 - 2015-12-14 09:56 - 00000001 _____ C:\Windows\SysWOW64\pl.html 2015-12-14 09:55 - 2015-12-14 10:13 - 00000000 ____D C:\Users\Grzybol100\AppData\Roaming\TSv 2015-12-14 09:54 - 2015-12-14 09:55 - 00000000 ____D C:\ProgramData\2WdM2 C:\Windows\Minidump\*.dmp 2015-12-14 09:56 - 2015-10-29 18:47 - 00000074 _____ C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat EmptyTemp: >>Menu Notatnika >> Plik >> >>Zapisz jako >> Nazwa pliku: [b]fixlist[/b] Zapisz jako typ: [b]Dokumenty tekstowe[/b] Kodowanie: [b]UTF -8[/b] >>Zapisz Plik umieść w folderze C:\Users\Grzybol100\Desktop\Nowy folder Uruchom FRST i kliknij przycisk Fix (NAPRAW). ---------------------- Jeśli będzie OK, to będziemy kończyć: Otwórz Notatnik i wklej w nim: DeleteQuarantine: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij w Fix (NAPRAW). przez SHIFT+DEL usuń pozostały folder C:\FRST. W Adw-Cleaner kliknij na przycisk [b]Odinstaluj[/b] ([b]UNINSTALL[/b]). Jeśli natomiast problem nie zniknie, to przeinstalujesz przeglądarkę, na której to jeszcze będzie. .
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.