Komunikat Avasta - URL:MAL


(Trybusjakub97) #1

W przeglądarce firefox na każdej możliwej stronie wyskakuje błąd : Prosiłbym o pomoc w tej sprawie :confused:


(XMan) #2

Raczej temat powinien być w dziale:

http://forum.dobreprogramy.pl/bezpiecze%C5%84stwo-f15/

i wrzucone podstawowe/wymagane logi:

http://forum.dobreprogramy.pl/farbar-recovery-scan-tool-raport-obowi%C4%85zkowy-t478727/


(Trybusjakub97) #3

FRST:


(Acorus) #4

Odinstaluj 50Cuoupons,AAdsY,Adobe Download Assistant,ALLCheapPricce,ALlDeAlAopp,AlLLSaver,BitSSaveer,Craigslist,DeaalExPresS,DigiCoupoonn,DownSSaave,Grooveshark Enhancement Suite,IsavEr,JoNiCouPon,McAfee Security Scan Plus,NeToCCoupon,NeWWSaver,NoaNoIzeBrowse,Online music radio,RanDomPeriicE,ReadyCoupon,RoBoSaver,Similar Sites,Snow,SoAvveNewaoApppez,TheAdBlock,WhiitaeCouPOn.Pobierz i uruchom jako administrator AdwCleaner https://toolslib.net/downloads/finish/1/ Kliknij Scan i później Cleaning.

Pokaż nowe logi z FRST.


(Trybusjakub97) #5

Dzięki za pomoc ! Naprawione :slight_smile: !


(Acorus) #6

To jeszcze nie wszystko.


(Trybusjakub97) #7
FRST:
http://www.wklej.org/id/1764567/

addition :
http://www.wklej.org/id/1764565/

Shortcuts
http://www.wklej.org/id/1764564/

(Acorus) #8

Odinstaluj AAdsY,Adobe Download Assistant,Craigslist,Grooveshark Enhancement Suite,McAfee Security Scan Plus,Online music radio,Similar Sites.Otwórz notatnik systemowy i wklej:

Task: {138C7383-C7C8-44FA-89D3-BF1892455785} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2334731779-1900262990-2388618779-1000Core = C:\Users\Win7\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-05-10] (Facebook Inc.)
Task: {34F577B8-AFD5-496E-9621-8EE5A1C11D7C} - System32\Tasks\{BFFE94FE-DC51-4160-A5F0-9CDCCC71F907} = Firefox.exe http://ui.skype.com/ui/0/7.6.0.103/pl/abandoninstall?source=lightinstalleramp;page=tsInstall
Task: {779688A4-51CF-492A-867C-D4E32049DA59} - System32\Tasks\{1A875BBA-1AD4-4EC8-B608-2964B49B74B0} = pcalua.exe -a C:\Users\Win7\AppData\Roaming\omiga-plus\UninstallManager.exe -c -ptid=cor ==== ATTENTION
Task: {D0F9DBE8-5631-43A2-8DF3-9DEF9C510291} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2334731779-1900262990-2388618779-1000UA = C:\Users\Win7\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-05-10] (Facebook Inc.)
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2334731779-1900262990-2388618779-1000Core.job = C:\Users\Win7\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2334731779-1900262990-2388618779-1000UA.job = C:\Users\Win7\AppData\Local\Facebook\Update\FacebookUpdate.exe
HKU\S-1-5-21-2334731779-1900262990-2388618779-1000\...\Run: [AdobeBridge] = [X]
HKU\S-1-5-21-2334731779-1900262990-2388618779-1000\...\Run: [Facebook Update] = C:\Users\Win7\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-05-10] (Facebook Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014-12-13]
ShortcutTarget: McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
ShellIconOverlayIdentifiers: [GGDriveOverlay1] - {E68D0A50-3C40-4712-B90D-DCFA93FF2534} = C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File
ShellIconOverlayIdentifiers: [GGDriveOverlay2] - {E68D0A51-3C40-4712-B90D-DCFA93FF2534} = C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File
ShellIconOverlayIdentifiers: [GGDriveOverlay3] - {E68D0A52-3C40-4712-B90D-DCFA93FF2534} = C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File
ShellIconOverlayIdentifiers: [GGDriveOverlay4] - {E68D0A53-3C40-4712-B90D-DCFA93FF2534} = C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
CHR HKU\S-1-5-21-2334731779-1900262990-2388618779-1000\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
FF HKU\S-1-5-21-2334731779-1900262990-2388618779-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
R2 Glamorous Estate; C:\Program Files\Glamorous Estate\Glamorous Estate.exe [8016050 2015-07-07] () [File not signed] ==== ATTENTION
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.)
S2 Update Dynamo Combo; "C:\Program Files\Dynamo Combo\updateDynamoCombo.exe" [X]
S2 Util Dynamo Combo; "C:\Program Files\Dynamo Combo\bin\utilDynamoCombo.exe" [X]
S3 dgderdrv; System32\drivers\dgderdrv.sys [X]
S3 EagleXNt; \\C:\Windows\system32\drivers\EagleXNt.sys [X]
S3 gdrv; \\C:\Windows\gdrv.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 WinRing0_1_2_0; \\E:\Gry\GB\Driver\WinRing0.sys [X]
2015-07-07 09:07 - 2015-07-07 09:07 - 00000000 ____ D C:\Program Files\Glamorous Estate
2015-07-28 11:38 - 2014-06-20 08:55 - 00000000 ____ D C:\AdwCleaner
2015-07-27 11:39 - 2015-05-18 16:57 - 00000000 ____ D C:\Program Files\AAdsY
2015-07-27 11:39 - 2015-05-11 16:15 - 00000000 ____ D C:\Program Files\Similar Sites
2015-07-27 11:39 - 2015-05-08 14:44 - 00000000 ____ D C:\Program Files\Grooveshark Enhancement Suite
2015-07-27 11:39 - 2015-04-18 09:29 - 00000000 ____ D C:\Program Files\Online music radio
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.

Odinstaluj Chrome zaznaczając usunięcie danych przeglądania.