Trixtah utworzono 2 stycznia 2019 utworzono 2 stycznia 2019 (edytowane) Witam od jakichś 2 dni posiadam prawdopodobnie wirusa , nie jest on groźny ponieważ nie powoduje spadku wydajności ani nic z tych rzeczy , ale irytuje to , że każdym razem przy starcie włącza sie przeglądarka i te strony na niej np http://gmaegames.pro/redirect-from-… może być niebezpieczna. lub coś takiego https://www.siteadvisor.com/restricted.html?domain=http%3a%2f%2fgmaegames.pro%2fredirect-from-banner.html&originalURL=443257967775&premium=false&client_type=I Próbowałem antywriusem oraz adwcleanerem nic nie pomogło :/
Twój_Anioł_Stróż komentarz 2 stycznia 2019 komentarz 2 stycznia 2019 Zrób logi z FRST > http://www.forumpc.pl/topic/277786-nieingerencyjne-narzędzia-do-tworzenia-logów-systemowych/?p=2010191 przed skanem zaznacz: Additional.txt Shortcut.txt, .
Trixtah komentarz 2 stycznia 2019 Autor komentarz 2 stycznia 2019 ok zrobione 3 pliki Addition.txt Shortcut.txt FRST.txt
Twój_Anioł_Stróż komentarz 2 stycznia 2019 komentarz 2 stycznia 2019 (edytowane) Uruchom FRST. Na klawiaturze naciśnij jednocześnie CTRL+Y.Otworzy się Notatnik - wklej do niego: Cytuj Task: {5B858499-785C-4CC4-B2F1-DB2FBE85A970} - System32\Tasks\dalei => cmd.exe /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v dalei /t REG_SZ /d "explorer.exe hxxp://dipladoks.org" <==== UWAGA HKU\S-1-5-21-4146911707-2399315006-1641547839-1001\...\Run: [dalei] => explorer.exe hxxp://dipladoks.org <==== UWAGA FirewallRules: [{82F45808-EBE5-475D-9CBB-92E6A82646B1}] => (Allow) C:\WINDOWS\SysWOW64\msiexec.exe (Microsoft Corporation) FirewallRules: [{5D0F69FA-7134-40D3-BFDC-FCEEE85A66A1}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{4C097629-9565-4C23-B656-69CCA8186849}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{ECAE9091-D366-4980-840A-05EBCBB370E5}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{C0F3DF5A-B6F6-4EC4-A168-12279A070ABE}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{5EF9FEBF-6A0D-411A-A61D-2BFEF14AE9C7}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{28483836-4C6B-4489-B71D-3E665509836D}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{D241945A-3EED-4969-9A4D-D93753BD7076}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{11745D8D-7E08-4C8F-A44E-B02342FFDF96}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{C2EAB674-B9B6-4C03-8623-53483AA7B6DD}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{E07607CF-A92E-4CF3-9E72-1A8D0D527DDD}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{CF76B0A3-EB60-44E3-80FF-066ADC9C1F89}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{2CE69063-A3D1-455C-8548-42451D167EE8}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{2EA96D8E-9BA3-463E-98A3-F95D05A77C8F}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{DC383395-9CB4-4A3A-805A-D494C123EAB7}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{DB8D89A2-161C-490E-9341-E26FE130F4EB}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{07E08611-F5C9-4612-9495-4E97EEAB5B35}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{679A5EB6-D2B2-474E-90F5-86DA6185F1B6}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{D823D135-FCBD-419F-8DD6-EBC7FEFDDF81}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{53CB7AB1-AE2A-4433-81FF-147444A529F6}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{65F97C7B-7759-4D73-9F2D-43827CC58E0B}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{4ED9916C-E8AF-4D0A-B2DE-436D06FCEDC7}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{5C36D982-17FE-406A-98C3-2F7260CF7372}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{041E3F23-0F46-419A-B7CA-8362F8F307AB}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{1E16C7D4-3921-4680-8F54-0267E066B110}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{3D25F986-1118-4FF4-B437-D9631AED7522}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{F6E10B11-A465-4B8D-A8EF-F0E7FB462F21}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{FF5ACBDF-49FC-439B-A1C8-A9A984993053}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{7511751B-437C-42C3-93FA-A888DF57EADB}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{1EBCAC84-DF1B-45E0-98C2-20B0853F22AB}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{95EC1E17-C313-4852-B50E-9C51D8AABC0F}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{49DAC10D-17CF-42E1-8B80-FA11B844B83D}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{2DA2096E-8530-4FE1-B51B-10625A942DA3}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{E79D3C71-6DAC-458D-BC7C-B5F984EF397D}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{5ABAC794-BA4B-4775-85ED-DDA651DBFB6B}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{E17430D1-7F53-45D1-876C-09E5085D06FD}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{6C1E38FF-E093-456B-95CC-8B6AA5490C8F}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{EEC97856-8869-49DE-9059-20F0BA6B306D}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{0DAC45F6-FFA0-4B38-B508-33E8602359C1}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{11434429-195B-4A66-9705-62D07DDDA75A}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{1CA558D8-E4B0-45B1-B81A-7ED651259837}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{7B559C72-E7A6-4010-A56F-8C38535B444C}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{EFA3707A-90D5-49B9-96D0-E3270918FD30}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{FADE5982-3287-4DBE-9E54-4809FDA7E8EC}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{F40A19F8-7CA1-483B-87E4-1013686462E0}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{D3A7F138-8409-4BBD-8752-F767ECB91061}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{367EF044-4E02-41F8-894E-E22C67B9EB54}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{A202D9CA-755A-42DD-AD0F-D232C9165AFC}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{08D27427-3979-41AC-8012-3A36519E6EA7}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) FirewallRules: [{BBE5BBFD-443A-4CD6-B9DE-5F7E59949320}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe (Microsoft Corporation) SearchScopes: HKU\S-1-5-21-4146911707-2399315006-1641547839-1001 -> DefaultScope {484D787B-7D71-4144-8743-1F602E5562B6} URL = SearchScopes: HKU\S-1-5-21-4146911707-2399315006-1641547839-1001 -> {484D787B-7D71-4144-8743-1F602E5562B6} URL = CHR DefaultSearchURL: Default -> hxxps://pl.search.yahoo.com/search?fr=mcafee_uninternational&type=E215PL1045G0&p={searchTerms} S3 NVHDA; \SystemRoot\system32\drivers\nvhda64v.sys [X] Powershell: wevtutil el | Foreach-Object {wevtutil cl "$_"} EmptyTemp: Na klawiaturze naciśnij jednocześnie CTRL+S. W FRST kliknij na Fix (NAPRAW). Napisz, czy problem znikł?
Trixtah komentarz 2 stycznia 2019 Autor komentarz 2 stycznia 2019 Problem zniknął , dzięki pozdrawiam :)
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.