wlodi93
(Wlodi9333)
9 Luty 2015 14:20
#1
Witam od pewnego czasu mam z problem z ciaglymi reklamami ktore wyskakuja w przegladarkach, zawieszaniem sie przegladarek a takze z spowolnionym komputerem. Prosze o pomoc przesylam log z programu RSIT
info - http://wklej.to/PB8GD
log - http://wklej.to/OAIRI
Acorus
(Acorus)
9 Luty 2015 14:31
#2
Pobierz Farbar Recovery Scan Tool http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/ zgodny z wersją systemu 32-bit lub 64-bit.
wlodi93
(Wlodi9333)
9 Luty 2015 14:57
#3
Acorus
(Acorus)
9 Luty 2015 15:32
#4
Odinstaluj CheapCoupon,Search Protect,SmarTCompareE.Pobierz i uruchom AdwCleaner https://toolslib.net/downloads/finish/1/ Kliknij Szukaj i później Usuń.
Pokaż nowe logi z FRST.
wlodi93
(Wlodi9333)
9 Luty 2015 18:55
#5
Niestety nie moglem usunac cheapcoupon poniewaz wyskakuje zebym wylaczyl przegladarke a wszystkie przegladarki mialem wyłaczone. Przesylam skan z FRST
FRST: http://wklej.to/HAdsy
Addtion: http://wklej.to/HnD3J
Acorus
(Acorus)
9 Luty 2015 19:15
#6
Otwórz notatnik systemowy i wklej:
HKLM\...\Run: [RTHDVCPL] = C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13449288 2013-03-26] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] = C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-10-14] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [224128 2014-03-04] (Oracle Corporation)
HKU\S-1-5-21-1945783205-2665412946-3088660230-1000\...\Run: [ALLUpdate] = C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe [3000704 2014-01-29] (ALLPlayer Group Ltd.)
HKU\S-1-5-21-1945783205-2665412946-3088660230-1000\...\Run: [Akamai NetSession Interface] = "C:\Users\Tomek\AppData\Local\Akamai\netsession_win.exe"
Startup: C:\Users\Tomek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Torpedo.lnk
ShortcutTarget: Torpedo.lnk - C:\Users\Tomek\AppData\Local\Torpedo\Torpedo.exe (No File)
GroupPolicy: Group Policy on Chrome detected ======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1945783205-2665412946-3088660230-1000 - URL http://search.conduit.com/Results.aspx?ctid=CT3321459octid=EB_ORIGINAL_CTIDSearchSource=58CUI=UM=4UP=SP01F80386-2ABA-4E10-B64A-299318E14D24q={searchTerms}SSPV=
SearchScopes: HKU\S-1-5-21-1945783205-2665412946-3088660230-1000 - SuggestionsURL_JSON http://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}
FF SearchPlugin: C:\Users\Tomek\AppData\Roaming\Mozilla\Firefox\Profiles\g2x8pj0z.default\searchplugins\keepmysearch.xml
FF Extension: Ultimate Finder - C:\Users\Tomek\AppData\Roaming\Mozilla\Firefox\Profiles\g2x8pj0z.default\Extensions\{7c231677-e4fb-44ac-80a5-c87fcb7c2be9} [2014-10-03]
FF Extension: Mega Browse - C:\Users\Tomek\AppData\Roaming\Mozilla\Firefox\Profiles\g2x8pj0z.default\Extensions\{3cba27c3-475d-4169-acc8-58d65fafc812}.xpi [2014-10-11]
CHR Extension: (Mega Browse) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\kgkmmefaeflbkbbamehfkghmmlgnpojl [2014-09-30]
R2 MaintainerSvc3.22.1827446; C:\ProgramData\06154ba7-7ceb-4959-a6bd-bf38bdec8cc6\maintainer.exe [123624 2015-02-09] ()
S3 avchv; system32\DRIVERS\avchv.sys [X]
S3 EagleX64; \\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
2015-01-18 18:52 - 2015-01-18 18:52 - 00003276 _____ () C:\Windows\System32\Tasks\{2C871354-AD3E-44B6-A97E-E795AAC8F885}
2015-02-09 19:47 - 2014-10-19 10:32 - 00000000 ____ D () C:\AdwCleaner
EmptyTemp:
Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.