Mnóstwo reklam, muli


(Tasma16) #1

Userzy ratujcie. Coś mi sie wbiło....

FRST - http://www.wklej.org/id/1680624/

Addition- http://www.wklej.org/id/1680627/


(Atis) #2

W panelu sterowania odinstaluj McAfee Security Scan Plus.

Pobierz i uruchom AdwCleaner Kliknij Scan i później Cleaning.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.


(Tasma16) #3

FRST http://www.wklej.org/id/1680662/


(Atis) #4

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

CloseProcesses:
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-1267125283-2262350302-2139159404-1002\...\Policies\Explorer: [] 
ShellIconOverlayIdentifiers: [SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: [SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: [SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: [SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: [SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
FF Extension: Digital More - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\nvereggi.default-1428241612138\Extensions\{661c0ed7-888c-4961-a069-bf80da31e955}.xpi [2015-04-05]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
CHR Extension: (ace race) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\eiknpkdjaijoilnmlcmkgcelkafbnpbl [2015-01-28]
R2 Service Mgr DigitalMore; C:\ProgramData\8708eaaa-1c2b-4faa-8923-a6c9f88eeb0e\plugincontainer.exe [639216 2015-04-05] ()
R2 Update Mgr DigitalMore; C:\Program Files (x86)\Common Files\8708eaaa-1c2b-4faa-8923-a6c9f88eeb0e\updater.exe [559856 2015-04-05] ()
S2 Update ace race; "C:\Program Files (x86)\ace race\updateacerace.exe" [X]
S2 Util ace race; "C:\Program Files (x86)\ace race\bin\utilacerace.exe" [X]
S1 lwnfd_1_10_0_12; system32\drivers\lwnfd_1_10_0_12.sys [X]
S3 MBAMSwissArmy; \??\C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [X]
S3 Ser2pl; \SystemRoot\system32\DRIVERS\ser2pl64.sys [X]
C:\ProgramData\8708eaaa-1c2b-4faa-8923-a6c9f88eeb0e
C:\Program Files (x86)\Common Files\8708eaaa-1c2b-4faa-8923-a6c9f88eeb0e
2015-04-05 21:19 - 2015-04-05 21:52 - 00000000 ____ D () C:\AdwCleaner
2015-04-05 15:10 - 2015-04-05 15:10 - 00000000 ____ D () C:\Program Files (x86)\Digital More
CustomCLSID: HKU\S-1-5-21-1267125283-2262350302-2139159404-1002_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2013\acad.exe No File
CustomCLSID: HKU\S-1-5-21-1267125283-2262350302-2139159404-1002_Classes\CLSID\{BD0DEB94-63DB-4392-9420-6EEE05094B1F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2013\acad.exe /Automation No File
CustomCLSID: HKU\S-1-5-21-1267125283-2262350302-2139159404-1002_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2013\pl-PL\acadficn.dll No File
Task: {3A312C88-7125-4BC3-9AEE-27573A065B7F} - System32\Tasks\{275EF356-9BEC-45FB-9842-10B84C989B96} => pcalua.exe -a "C:\Users\Marcin\Downloads\nfs carbon\setup.exe" -d "C:\Users\Marcin\Downloads\nfs carbon"
Task: {3C83690A-60C0-423B-8AD8-798126F1CEA7} - System32\Tasks\{DDD0A07D-37D4-4BA9-BBDA-A05ABFE1C228} => pcalua.exe -a C:\Users\Marcin\Desktop\sd4hide.exe -d C:\Users\Marcin\Desktop
Task: {E9CFBD6E-6464-4AA8-AA7A-3E0E272551E0} - System32\Tasks\SoftwareInformerService => C:\Program Files\Software Informer\softinfo.exe [2014-10-07] (Informer Technologies, Inc.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver"
EmptyTemp:

Uruchom FRST i kliknij Fix. Pokaż raport z usuwania Fixlog.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.


(Tasma16) #5

gdzie wkleić ten plik tekstowy? Fix nie może znależć pliku


(Atis) #6

Czy nie pamiętasz gdzie zapisałeś program FRST?

Running from C:\Users\Marcin\Downloads


(Tasma16) #7

A ja wklejałem w folder FRST…

http://wklej.org/id/1680722/


(Atis) #8

Odinstaluj LinkWiz_1.10.0.12.

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

(Link Wiz) C:\Program Files (x86)\LinkWiz_1.10.0.12\Service\lwsvc.exe
R2 lwsvc_1.10.0.12; C:\Program Files (x86)\LinkWiz_1.10.0.12\Service\lwsvc.exe [278592 2015-03-26] (Link Wiz)
S1 lwnfd_1_10_0_12; system32\drivers\lwnfd_1_10_0_12.sys [X]
2015-04-05 22:55 - 2015-04-05 22:38 - 00004039 _____ () C:\fixlt.txt.txt
2015-04-05 22:50 - 2015-04-05 22:38 - 00004039 _____ () C:\fixlist.txt.txt
2015-04-05 15:08 - 2015-04-05 15:08 - 00738232 _____ (Generic internet ) C:\Users\Marcin\Downloads\Subtitle-Workshop(16737)-dp.exe
2015-04-05 15:01 - 2015-04-05 15:02 - 00000000 ____ D () C:\Program Files (x86)\LinkWiz_1.10.0.12
DeleteQuarantine:

Uruchom FRST i kliknij Fix. Pokaż raport z usuwania Fixlog.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.


(Tasma16) #9

Fixlog http://wklej.org/id/1680764/

FRST http://wklej.org/id/1680766/


(Atis) #10

Skasuj folder C:\FRST

Usuń stare punkty przywracania: Przywracanie systemu i kopie w tle

Przeczytaj w jaki sposób należy instalować programy: KLIK - KLIK - KLIK - KLIK

Odinstaluj Java 7 Update 67 i Java 8 Update 25.

Zainstaluj Java 8 Update 40


(Tasma16) #11

Tak to teraz wygląda- http://wklej.org/id/1680870/

Zawsze zwracałem uwagę przy instalacji programów żeby żadnych toolbarow nie wrzucało.a jednak się smieci…


(Atis) #12

Nie potrzeba nowych logów.


(Tasma16) #13

Dzięki! Jesteś Wielki!