Witam,ostatnio mój komputer zaczyna wolno chodzić (co prawda jest stary, ale myślę, że można coś jeszcze z niego wyciągnąć), postanowiłem pousuwać trochę niepotrzebnych rzeczy i zauważyłem,że pojawił się program Math Problem Solver. Co to jest? Nic konkretnego nie wyczytałem, także nie wiem o co chodzi. Jeżeli to wirus lub coś złośliwego to jak to usunąć? Nie znam się ani trochę na takich rzeczach więc proszę o wyjaśnienie.
Acorus
(Acorus)
24 Luty 2015 19:40
#3
Pobierz Farbar Recovery Scan Tool http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/ zgodny z wersją systemu 32-bit lub 64-bit.
Pobierz na pulpit Adwcleaner - https://toolslib.net…d/1-adwcleaner/
Po uruchomieniu wykonaj polecenia scan i cleaning.
Skaner FRST (wersja zgodna z zainstalowanym systemem ) pobierasz na pulpit z http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/
Po uruchomieniu i aktywowaniu polecenia scan, zostaną wygenerowane raporty FRST i Addition.
Raporty umieszczasz na http://wklej.org/
Wklej do systemowego notatnika i zapisz jako fixlist:
CloseProcesses: (Elex do Brasil Participações Ltda) C:\Program Files\Elex-tech\YAC\iSafeSvc.exe (Elex do Brasil Participações Ltda) C:\Program Files\Elex-tech\YAC\iSafeSvc2.exe (Elex do Brasil Participações Ltda) C:\Program Files\Elex-tech\YAC\iSafeTray.exe HKLM…\Run: [fst_pl_102] => [X] HKLM…\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated) HKLM…\Run: [] => [X] GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-1976575591-2902017637-3159835168-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sweet-page.com/?type=hp&ts=1390580873&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQ808908 SearchScopes: HKLM -> DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1422555924&from=zbd1&uid=samsungxhd502ij_s13tj9bq808908&q={searchTerms} SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.sweet-page.com/web/?type=ds&ts=1390580873&from=cor&uid=SAMSUNGXHD502IJ_S13TJ9BQ808908&q={searchTerms} SearchScopes: HKLM -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1422555924&from=zbd1&uid=samsungxhd502ij_s13tj9bq808908&q={searchTerms} SearchScopes: HKU.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1976575591-2902017637-3159835168-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKU\S-1-5-21-1976575591-2902017637-3159835168-1000 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1422555924&from=zbd1&uid=samsungxhd502ij_s13tj9bq808908&q={searchTerms} FF Plugin HKU\S-1-5-21-1976575591-2902017637-3159835168-1000: ubisoft.com/uplaypc -> C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\delta-homes.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\sweet-page.xml R2 iSafeService; C:\Program Files\Elex-tech\YAC\iSafeSvc.exe [120128 2015-01-09] (Elex do Brasil Participações Ltda) R1 iSafeKrnl; C:\Program Files\Elex-tech\YAC\iSafeKrnl.sys [215336 2015-01-09] (Elex do Brasil Participações Ltda) R1 iSafeKrnlKit; C:\Program Files\Elex-tech\YAC\iSafeKrnlKit.sys [83112 2015-01-09] (Elex do Brasil Participações Ltda) R1 iSafeKrnlMon; C:\Program Files\Elex-tech\YAC\iSafeKrnlMon.sys [34856 2015-01-09] (Elex do Brasil Participações Ltda) R1 iSafeKrnlR3; C:\Program Files\Elex-tech\YAC\iSafeKrnlR3.sys [63400 2015-01-09] (Elex do Brasil Participações Ltda) R1 iSafeNetFilter; C:\Windows\System32\DRIVERS\iSafeNetFilter.sys [44712 2015-01-03] (Elex do Brasil Participações Ltda) S3 iSafeKrnlBoot; system32\DRIVERS\iSafeKrnlBoot.sys [X] S3 OSFMount; ??\E:\Gry\CSGO\Counter-Strike Global Offensive\image\x86\OSFMount.sys [X] S2 SPDRIVER_1.37.0.202; ??\C:\Program Files\ShopperPro\JSDriver\1.37.0.202\jsdrv.sys [X] 2015-02-24 20:56 - 2015-01-03 09:56 - 00044712 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeNetFilter.sys 2015-02-24 20:55 - 2015-02-24 20:55 - 00000000 ____D () C:\Users\Adminek\AppData\Roaming\Elex-tech 2015-02-24 20:42 - 2015-02-24 20:53 - 00000000 ____D () C:\AdwCleaner Math Problem Solver (HKU\S-1-5-21-1976575591-2902017637-3159835168-1000…\Math Problem Solver) (Version: - ) <==== ATTENTION UpdateChecker (HKU\S-1-5-21-1976575591-2902017637-3159835168-1000…\Popajar, inc UpdateChecker) (Version: - Popajar, inc) <==== ATTENTION CustomCLSID: HKU\S-1-5-21-1976575591-2902017637-3159835168-1000_Classes\CLSID{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Adminek\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll No File Task: {47AC881E-42CC-4784-BD9F-B80C75265BA7} - {769901B7-9781-4455-97C8-495E9C8C3510} No Task File <==== ATTENTION Task: {489F6269-EE1C-4EFE-9376-3B00382E578F} - {EA22DF56-A164-4C5A-A5C8-2CBB7538B93C} No Task File <==== ATTENTION Task: {5D7FCB86-33C7-442D-8077-B80BC6B6E309} - {C05311B0-6AEE-43F0-92AC-DDB395C2E34E} No Task File <==== ATTENTION 2015-01-09 21:43 - 2015-01-09 11:04 - 00065696 ____N () C:\Program Files\Elex-tech\YAC\zlib1.dll 2015-01-09 21:43 - 2015-01-09 11:04 - 00400232 ____N () C:\Program Files\Elex-tech\YAC\curlpp.dll 2015-01-09 21:43 - 2015-01-09 11:04 - 00185656 ____N () C:\Program Files\Elex-tech\YAC\libpng.dll 2015-01-09 21:43 - 2015-01-09 11:13 - 00199464 ____N () C:\Program Files\Elex-tech\YAC\iTPMsgCenter.dll EmptyTemp: Plik fixlist.txt umieść obok skanera FRST. Uruchom skaner FRST i wykonaj polecenie FIX. Pokaż raport Fixlog i aktualny FRST.
Odinstaluj ( Dodaj / Usuń Programy ):- C:\Program Files\Elex-tech
Wklej do systemowego notatnika i zapisz jako fixlist:
Wklej do systemowego notatnika i zapisz jako fixlist:
Zrobiłem tak. To już wszystko?