Istartsurf i vosteran. Prosba w usunieciu:(


(Cwkszybi19) #1

Ponawiam prosbe o pomoc. Nie dosc , ze jest istartsurf to na dodatek jest vosteran. Prosil bym o pomoc, zainstalowalem juz mase programow i nic nie dziala;/ prosil bym o pomoc z gory dziekuje  :frowning:

 

 

 

http://wklej.org/id/1657680/

 

 

http://wklej.org/id/1657683/


(Atis) #2

W panelu sterowania odinstaluj:

ConvertAd

IGS

igsc

PriceFountain

WinCheck

Pobierz i uruchom AdwCleaner Kliknij Scan i później Cleaning.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.


(Cwkszybi19) #3

http://wklej.org/id/1657803/

 

 

Dziekuje za pomoc ogolnie :slight_smile:


(Atis) #4

Przeczytaj całą odpowiedź.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.


(Cwkszybi19) #5

http://wklej.org/id/1657855/


(Atis) #6

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\PROGRA~2\mcafee\siteadvisor\x64\mcieplg.dll No File
BHO-x32: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\siteadvisor\x64\mcieplg.dll No File
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\siteadvisor\mcieplg.dll No File
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF HKU\S-1-5-21-1650343114-2187699193-3781953235-1001\...\Firefox\Extensions: [{906D9ED4-EF6C-058B-4356-B876A2ECCB45}] - C:\Program Files (x86)\ver7BlockAndSurf\189.xpi
CHR StartupUrls: Default -> "hxxp://www.google.pl/", "hxxp://vosteran.com/?f=7&a=vst_ir_15_05&cd=2XzuyEtN2Y1L1Qzu0CyEyDyEyEyE0Bzy0ByEyD0AyE0DyEtCtN0D0Tzu0StCtCtByCtN1L2XzutAtFyBtFtBtFtCtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StBtCtCyCtBtDyEzztG0Azz0A0FtG0FyD0AyDtG0E0C0ByBtGtCyEyByCyCyDyE0EtBtBtDtD2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0Dzy0DyCyEyBzy0EtG0EtByD0FtGyE0AyByEtGzzyE0C0EtGyDtB0ByB0DzzyEyCzytCtDtD2Q&cr=563900346&ir=", "hxxp://www.istartsurf.com/?type=hp&ts=1425782435&from=smt&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1A644UHY64UHY6", "hxxp://www.istartsurf.com/?type=hp&ts=1425783292&from=face&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1A644UHY64UHY6", ""
CHR DefaultSearchURL: Default -> web/?type=dspp&q={searchTerms}
CHR Extension: (SiteAdvisor) - C:\Users\Lukasz\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-02-23]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [Not Found]
S2 0297761424878299mcinstcleanup; C:\Windows\TEMP\029776~1.EXE [851136 2014-08-08] (McAfee, Inc.)
S2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
2015-03-08 22:32 - 2015-03-08 22:40 - 00000000 ____ D () C:\AdwCleaner
2015-03-08 04:34 - 2015-03-08 04:34 - 00000004 _____ () C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-03-08 04:28 - 2015-03-08 04:28 - 00052320 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\67522740.sys
2015-03-08 04:23 - 2015-03-08 04:28 - 00000000 ____ D () C:\KVRT_Data
2015-03-08 04:05 - 2015-03-08 04:33 - 00000000 ____ D () C:\ProgramData\{da2e067a-0591-782b-da2e-e067a05919e8}
2015-03-07 17:06 - 2015-03-07 18:24 - 00000000 ___HD () C:\kleaner.tmp
2015-03-07 17:06 - 2014-07-14 18:58 - 00000000 ____ D () C:\ProgramData\McAfee
2015-01-25 17:12 - 2015-01-25 17:12 - 0001248 _____ () C:\Users\Lukasz\AppData\Roaming\TNMQBPI
2014-12-25 18:36 - 2015-03-08 22:41 - 0328371 _____ () C:\Users\Lukasz\AppData\Local\BTServer.log
2015-03-08 03:59 - 2015-03-08 03:58 - 0613255 _____ (CMI Limited) C:\Users\Lukasz\AppData\Local\nsz5CC0.tmp
Task: {18B99C24-D8DB-4DF1-A1F4-907791EBB0C5} - System32\Tasks\TNMQBPI => C:\Users\Lukasz\AppData\Roaming\TNMQBPI.exe <==== ATTENTION
Task: {434D8DEC-CD2F-491B-851F-41229A1E87A3} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: {9A946490-80EC-458F-A905-2BC52949E3A9} - \SmartWeb Upgrade Trigger Task No Task File <==== ATTENTION
Task: {C578C423-1E9A-455C-8F86-529810733624} - System32\Tasks\{074518FA-F486-4B1A-A4C2-FDEF04C6250C} => pcalua.exe -a "C:\Program Files (x86)\Roll Around\uninstaller.exe" -c /ut RMB
Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION
Task: C:\Windows\Tasks\TNMQBPI.job => C:\Users\Lukasz\AppData\Roaming\TNMQBPI.exe <==== ATTENTION
C:\Users\Lukasz\AppData\Roaming\*.exe
ob => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.jobHKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\19302680.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\19302680.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
EmptyTemp:

Uruchom FRST i kliknij Fix. Pokaż raport z usuwania Fixlog.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.


(Cwkszybi19) #7

http://wklej.org/id/1657953/

 

 

http://wklej.org/id/1657956/


(Atis) #8

Skasuj folder C:\FRST

Usuń stare punkty przywracania: Przywracanie systemu i kopie w tle

Przeczytaj w jaki sposób należy instalować programy: KLIK - KLIK - KLIK - KLIK

Odinstaluj Java 6 Update 22 i zainstaluj Java 8 Update 31