Błąd ( c:\progra~1\common~1\system\sysmenu.dll )


(Martin Gk) #1

Witam. Po uruchomieniu systemu wyskakują 3 okienka z błędem ( c:\progra~1\common~1\system\sysmenu.dll ) . Proszę o pomoc w usunięciu tego błędu. Z góry dziekuje za pomoc.


(Spandau) #2

Wymagane są raporty FRST zaprezentowane zgodnie z instrukcją http://forum.dobreprogramy.pl/farbar-recovery-scan-tool-raport-obowi%C4%85zkowy-t478727/


(Martin Gk) #3

przesyłam linki :http://www.wklej.org/id/1784831/

                        http://www.wklej.org/id/1784829/

                        http://www.wklej.org/id/1784828/


(Acorus) #4

Odinstaluj adblocker.Otwórz notatnik systemowy i wklej:

Task: {044325B5-1FF0-4DF9-B414-42A16978C390} - System32\Tasks\globalUpdateUpdateTaskMachineUA = C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-08-23] (globalUpdate) ==== UWAGA
Task: {0FABF76D-2F79-415A-8AC1-F5CCB62DBD1E} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 = Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update2 ==== UWAGA
Task: {1ED9E669-B0B5-4875-A33D-C2B31BA0D255} - System32\Tasks\{F095D45C-76B0-45D4-B34E-72A4A8CB6C93} = pcalua.exe -a C:\Users\Marcin\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=vtt
Task: {3AC5B34F-E5FC-4035-B98F-3F7A6495ADFD} - System32\Tasks\SMupdate1 = Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update1 ==== UWAGA
Task: {460EEB9A-1CA3-4493-A610-3F59A29FBB52} - System32\Tasks\4E575685-3258-461E-BD9E-F68586ECB9E = C:\Users\Marcin\AppData\Local\4E575685-3258-461E-BD9E-F68586ECB9E\4E575685-3258-461E-BD9E-F68586ECB9E.exe ==== UWAGA
Task: {631D125C-EF03-4988-8FF4-BB48778249F0} - System32\Tasks\CCleanerSkipUAC = D:\PROGRAM FILES\CCleaner\CCleaner.exe [2015-07-17] (Piriform Ltd)
Task: {773BA927-460E-405F-AD75-3EE49DF942CD} - System32\Tasks\ShopperProJSUpd = C:\Program Files (x86)\ShopperPro\updater.exe ==== UWAGA
Task: {77436FC8-9499-4557-BFD1-FA07ACE71E33} - System32\Tasks\ShopperPro = C:\Program Files (x86)\ShopperPro\ShopperPro.exe ==== UWAGA
Task: {8C59618B-AE03-4BEA-B9D9-3CF2766E8BA6} - System32\Tasks\SmartWeb Upgrade Trigger Task = C:\Users\Marcin\AppData\Local\SmartWeb\SmartWebHelper.exe ==== UWAGA
Task: {A7D2746B-9473-4CC8-8D60-F8339FDF7640} - System32\Tasks\YTDownloaderUpd = C:\Program Files (x86)\YTDownloader\updater.exe ==== UWAGA
Task: {AA7FB8B6-8F33-4C4F-A5F3-383B3BF4FC50} - System32\Tasks\PhraseProfessor Auto Updater 1.10.0.22 Pending Update = C:\Program Files (x86)\PhraseProfessor_1.10.0.22\Update\PhraseProfessorAutoUpdateClient.exe ==== UWAGA
Task: {B7A34699-A16B-4FF8-9C25-B05B80C0E18C} - System32\Tasks\YTDownloader = C:\Program Files (x86)\YTDownloader\YTDownloader.exe ==== UWAGA
Task: {C864F4D3-961E-47A7-806D-02E3604E4E81} - System32\Tasks\Origin = C:\Users\Marcin\AppData\Roaming\Origin\update.vbe ==== UWAGA
Task: {D021FF17-8C0E-4234-B8EA-D2758AFC117C} - System32\Tasks\globalUpdateUpdateTaskMachineCore = C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-08-23] (globalUpdate) ==== UWAGA
Task: {DCEE4628-7B56-40DD-A09F-6247EDAC247D} - System32\Tasks\SPBIW_UpdateTask_Time_333739363138323434332d4155346c375a455778415a34 = Wscript.exe //B "C:\ProgramData\ShopperPro\spbihe.js" spbiu.exe /invoke /f:check_services /l:0 ==== UWAGA
Task: {E4AA487E-7C20-48D1-A12F-485EA4AB7448} - System32\Tasks\PhraseProfessor Auto Updater 1.10.0.22 Core = C:\Program Files (x86)\PhraseProfessor_1.10.0.22\Update\PhraseProfessorAutoUpdateClient.exe ==== UWAGA
Task: {E5DC62D3-9BF7-4FB4-A987-D1D771EFA9DA} - System32\Tasks\SPDriver = C:\Program Files (x86)\ShopperPro\JSDriver\1.42.1.2351\jsdrv.exe ==== UWAGA
Task: {F3D3CB46-FE8F-4037-A17D-0C1CAD123676} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 = Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3 ==== UWAGA
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job = C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe ==== UWAGA
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job = C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe ==== UWAGA
HKU\S-1-5-21-3129323295-3159847143-249486886-1000\...\Run: [] = [X]
IFEO\se.exe: [Debugger] "D:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
ShellIconOverlayIdentifiers: [###MegaShellExtPending] - {056D528D-CE28-4194-9BA3-BA2E9197FF8C} = Brak pliku
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] - {05B38830-F4E9-4329-978B-1DD28605D202} = Brak pliku
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] - {0596C850-7BDD-4C9D-AFDF-873BE6890637} = Brak pliku
ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] - {056D528D-CE28-4194-9BA3-BA2E9197FF8C} = Brak pliku
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] - {05B38830-F4E9-4329-978B-1DD28605D202} = Brak pliku
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] - {0596C850-7BDD-4C9D-AFDF-873BE6890637} = Brak pliku
CHR HKLM\SOFTWARE\Policies\Google: Zasada ograniczeń ======= UWAGA
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.luckysearches.com/?type=hpts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.luckysearches.com/?type=hpts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.luckysearches.com/web/?type=dsts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.luckysearches.com/web/?type=dsts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.luckysearches.com/?type=hpts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.luckysearches.com/?type=hpts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.luckysearches.com/web/?type=dsts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.luckysearches.com/web/?type=dsts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160q={searchTerms}
HKU\S-1-5-21-3129323295-3159847143-249486886-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3vZOxc6r0vkIwYPpac4NjJWAKDdex67u9AhrjZQ9CpYXrlycM4gRSkxo9oLCaZfSSjTSVh91kyjBWwrZpcu1kfiLZxGN7d-gvOt8FnP5wv2NYYoboPXjv0K7Qu8to3T6S3HfKXlP--PWUcXJuyiOMaNap4z-q={searchTerms}
HKU\S-1-5-21-3129323295-3159847143-249486886-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3vZOxc6r0vkIwYPpac4NjJWAKDdex67u9AhrjZQ9CpYXrlycM4gRSkxo9oLCaZfSSjTSVh91kyjBWwZLY96MbAPPpGvkhoM5Z6z15M5GgFk3UBm2CgFFnvHxdBNQEp4cOCnT1n3Uw8fi9yuEEDwro7mN-RVT
HKU\S-1-5-21-3129323295-3159847143-249486886-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.luckysearches.com/?type=hpts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160
HKU\S-1-5-21-3129323295-3159847143-249486886-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3vZOxc6r0vkIwYPpac4NjJWAKDdex67u9AhrjZQ9CpYXrlycM4gRSkxo9oLCaZfSSjTSVh91kyjBWwrZpcu1kfiLZxGN7d-gvOt8FnP5wv2NYYoboPXjv0K7Qu8to3T6S3HfKXlP--PWUcXJuyiOMaNap4z-q={searchTerms}
HKU\S-1-5-21-3129323295-3159847143-249486886-1000\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3vZOxc6r0vkIwYPpac4NjJWAKDdex67u9AhrjZQ9CpYXrlycM4gRSkxo9oLCaZfSSjTSVh91kyjBWwrZpcu1kfiLZxGN7d-gvOt8FnP5wv2NYYoboPXjv0K7Qu8to3T6S3HfKXlP--PWUcXJuyiOMaNap4z-q={searchTerms}
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.luckysearches.com/web/?type=dsts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160q={searchTerms}
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.luckysearches.com/web/?type=dsts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {ielnksrch} URL =
SearchScopes: HKLM-x32 - ielnksrch URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3vZOxc6r0vkIwYPpac4NjJWAKDdex67u9AhrjZQ9CpYXrlycM4gRSkxo9oLCaZfSSjTSVh91kyjBWwrZpcu1kfiLZxGN7d-gvOt8FnP5wv2NYYoboPXjv0K7Qu8to3T6S3HfKXlP--PWUcXJuyiOMaNap4z-q={searchTerms}
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.luckysearches.com/web/?type=dsts=1429702146from=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160q={searchTerms}
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3129323295-3159847143-249486886-1000 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.luckysearches.com/web/?utm_source=butm_medium=cmiutm_campaign=install_ieutm_content=dsfrom=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160ts=1429702192type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-3129323295-3159847143-249486886-1000 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.luckysearches.com/web/?utm_source=butm_medium=cmiutm_campaign=install_ieutm_content=dsfrom=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160ts=1429702192type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-3129323295-3159847143-249486886-1000 - {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.luckysearches.com/web/?utm_source=butm_medium=cmiutm_campaign=install_ieutm_content=dsfrom=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160ts=1429702192type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-3129323295-3159847143-249486886-1000 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.luckysearches.com/web/?utm_source=butm_medium=cmiutm_campaign=install_ieutm_content=dsfrom=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160ts=1429702192type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-3129323295-3159847143-249486886-1000 - {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = hxxp://www.luckysearches.com/web/?utm_source=butm_medium=cmiutm_campaign=install_ieutm_content=dsfrom=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160ts=1429702192type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-3129323295-3159847143-249486886-1000 - {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_B3vZOxc6r0vkIwYPpac4NjJWAKDdex67u9AhrjZQ9CpYXrlycM4gRSkxo9oLCaZfSSjTSVh91kyjBWwrZpcu1kfiLZxGN7d-gvOt8FnP5wv2NYYoboPXjv0K7Qu8to3T6S3HfKXlP--PWUcXJuyiOMaNap4z-q={searchTerms}
SearchScopes: HKU\S-1-5-21-3129323295-3159847143-249486886-1000 - {szukaj.gazeta.pl} URL = hxxp://www.luckysearches.com/web/?utm_source=butm_medium=cmiutm_campaign=install_ieutm_content=dsfrom=cmiuid=SAMSUNGXHD502IJ_S13TJ90Q884160ts=1429702192type=defaultq={searchTerms}
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FF Extension: Password Exporter - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\mzj4tx2g.default-1440430347868\Extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}.xpi [2015-08-24]
FF HKLM-x32\...\Firefox\Extensions: [searchengine@gmail.com] - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\yq8ye0ws.default-1425579960921\extensions\searchengine@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [quick_searchff@gmail.com] - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\yq8ye0ws.default-1425579960921\extensions\quick_searchff@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [sweetsearch@gmail.com] - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\yq8ye0ws.default-1425579960921\extensions\sweetsearch@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [defsearchp@gmail.com] - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\inq619dr.default-1429898602767\extensions\defsearchp@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [deskCutv2@gmail.com] - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\inq619dr.default-1429898602767\extensions\deskCutv2@gmail.com
CHR HKLM-x32\...\Chrome\Extension: [dnligehkhogpcngalffdoomehjcbecna] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gehmndecgbcffhmfjkenpamdgechcgpe] - https://clients2.google.com/service/update2/crx
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-08-23] (globalUpdate) [Brak podpisu cyfrowego] ==== UWAGA
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608 2015-08-23] (globalUpdate) [Brak podpisu cyfrowego] ==== UWAGA
S1 pfnfd_1_10_0_9; system32\drivers\pfnfd_1_10_0_9.sys [X]
2015-08-23 09:59 - 2015-08-23 09:59 - 00003128 _____ C:\Windows\System32\Tasks\{C6563625-1912-4247-800E-DB6E00B11304}
2015-08-23 09:53 - 2015-08-23 09:53 - 00004226 _____ C:\Windows\System32\Tasks\4E575685-3258-461E-BD9E-F68586ECB9E
2015-08-23 09:51 - 2015-08-23 09:51 - 00003738 _____ C:\Windows\System32\Tasks\SMupdate1
2015-08-23 09:51 - 2015-08-23 09:51 - 00000000 ____ D C:\Users\Marcin\AppData\Local\BrowserHelper
2015-08-23 09:50 - 2015-08-24 20:04 - 00000000 ____ D C:\Program Files\Common Files\ShopperPro
2015-08-23 09:50 - 2015-08-23 09:51 - 00003598 _____ C:\Windows\System32\Tasks\YTDownloader
2015-08-23 09:50 - 2015-08-23 09:50 - 00004528 _____ C:\Windows\System32\Tasks\ShopperPro
2015-08-23 09:50 - 2015-08-23 09:50 - 00004252 _____ C:\Windows\System32\Tasks\SPBIW_UpdateTask_Time_333739363138323434332d4155346c375a455778415a34
2015-08-23 09:50 - 2015-08-23 09:50 - 00003920 _____ C:\Windows\System32\Tasks\YTDownloaderUpd
2015-08-23 09:50 - 2015-08-23 09:50 - 00003510 _____ C:\Windows\System32\Tasks\SPDriver
2015-08-23 09:49 - 2015-08-24 20:03 - 00000000 ____ D C:\ProgramData\ShopperPro
2015-08-23 09:49 - 2015-08-23 09:49 - 00003584 _____ C:\Windows\System32\Tasks\ShopperProJSUpd
2015-08-23 09:49 - 2015-08-23 09:49 - 00000000 ____ D C:\Users\Public\Documents\ShopperPro
2015-08-23 09:47 - 2015-08-23 09:47 - 00004210 _____ C:\Windows\System32\Tasks\PhraseProfessor Auto Updater 1.10.0.22 Pending Update
2015-08-23 09:47 - 2015-08-23 09:47 - 00004200 _____ C:\Windows\System32\Tasks\PhraseProfessor Auto Updater 1.10.0.22 Core
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\Marcin\AppData\Roaming\aScKoeo8nV9nQIslz33xyS2OX5
2015-04-14 18:28 - 2015-04-14 18:28 - 0004387 _____ () C:\Users\Marcin\AppData\Roaming\GYYgKqKSbzm2E6gp
2015-04-19 14:20 - 2015-04-19 14:20 - 0005872 _____ () C:\Users\Marcin\AppData\Roaming\NXdtsqWTZegxfpAjLMwmWjMq
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.


(Martin Gk) #5

Dziękuje za pomoc. Problem rozwiązany.


(Acorus) #6

Skasuj folder C:\FRST


(Martin Gk) #7

Ok. Dziękuje.