Mój server DNS zmienia sie co jakis czas, podejrzewam virusa, help!

Któregos dnia wlaczylem komputer i nie mialem internetu wiec sprawdzalem wszystkie opcje i zauwarzylem ze server DNS z ipv4 sie zmienil na 127.0.01. Prówowalem go zmienic lecz po okolo minucie zmienil sie spowrotem. Troche szperalem na iternecie lecz niczego nie znalazlem co by mi pomoglo. Najwazniesze pytanie to czy bedemusial formatowac dysk? Z góry dzieki za pomoc.

http://forum.dobreprogramy.pl/farbar-recovery-scan-tool-raport-obowiązkowy-t478727/

FRST,txt - http://www.wklej.org/id/1698979/

Addition.txt - http://www.wklej.org/id/1698985/

Shortcut.txt - http://www.wklej.org/id/1698989/

Odinstaluj Akamai NetSession Interface,AVG 2013,bestadblocker,GeekBuddy,Optimizer Pro v3.0,PenWes [9146],QuickShare,SalePlus,SweetIM for Messenger 3.7,Update for Video Converter,Update Manager for SweetPacks 1.1,Video Converter Packages.Pobierz i uruchom jako administrator AdwCleaner https://toolslib.net/downloads/finish/1/ Kliknij Scan i później Cleaning.

Pokaż nowe logi z FRST.

Dzieki za pomoc wszysko juz dziala, masz tu jeszcze logi jak chciales

addition

shortcut

frst

Otwórz notatnik systemowy i wklej:

Task: {173C3416-6BBC-45A3-A840-12F8CC8E4656} - System32\Tasks\DP1815-enabler = C:\Program Files (x86)\DP1815\DP1815-enabler.exe ==== ATTENTION
Task: {3EC5763B-EE5A-45AB-B1EB-EFF28ACC1154} - System32\Tasks\DP1815-firefoxinstaller = C:\Program Files (x86)\DP1815\DP1815-firefoxinstaller.exe ==== ATTENTION
Task: {40F587E1-EEBF-4524-8B27-A01D3FE36AD5} - \Binkiland tota No Task File ==== ATTENTION
Task: {5A594F9B-A95A-4DBF-A040-6074CEBF8E1F} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-329232522-1630903671-3855414198-1001UA = C:\Users\2204\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-12-30] (Facebook Inc.)
Task: {7FF702CB-5505-4BFF-AA4A-7D641ECFA4B7} - System32\Tasks\DP1815-chromeinstaller = C:\Program Files (x86)\DP1815\DP1815-chromeinstaller.exe ==== ATTENTION
Task: {A6788FE9-F256-462B-BDBE-6664738E2DA9} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-329232522-1630903671-3855414198-1001Core = C:\Users\2204\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-12-30] (Facebook Inc.)
Task: {AD49FEC2-378A-48E6-814E-4DAE6BC76470} - System32\Tasks\{232F2A82-E1F6-4FBF-963C-2E99BC188079} = pcalua.exe -a "C:\Program Files (x86)\SalePlus\BmpWe95hgEujnk.exe" -c /s /n /i:"ExecuteCommands;UninstallCommands" ""
Task: {EBEB9C3C-E64A-4CD9-A09F-BCD9E38DA3A1} - System32\Tasks\DP1815-codedownloader = C:\Program Files (x86)\DP1815\DP1815-codedownloader.exe ==== ATTENTION
Task: {EC541EC9-6E51-4B20-BD82-15FBCD9B8202} - System32\Tasks\DP1815-updater = C:\Program Files (x86)\DP1815\DP1815-updater.exe ==== ATTENTION
Task: C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-329232522-1630903671-3855414198-1001Core.job = C:\Users\2204\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-329232522-1630903671-3855414198-1001UA.job = C:\Users\2204\AppData\Local\Facebook\Update\FacebookUpdate.exe
HKU\S-1-5-21-329232522-1630903671-3855414198-1001\...\Run: [AdobeBridge] = [X]
HKU\S-1-5-21-329232522-1630903671-3855414198-1001\...\Run: [Akamai NetSession Interface] = "C:\Users\2204\AppData\Local\Akamai\netsession_win.exe"
HKU\S-1-5-21-329232522-1630903671-3855414198-1001\...\MountPoints2: E - E:\MAXON-Start.exe
HKU\S-1-5-21-329232522-1630903671-3855414198-1001\...\MountPoints2: F - F:\setup.exe
HKU\S-1-5-21-329232522-1630903671-3855414198-1001\...\MountPoints2: {76b467c7-5f4a-11e3-aa0d-806e6f6e6963} - D:\Autoplay.exe
Startup: C:\Users\2204\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mortal Kombat 9 Komplete Edition Pc Game Free Download Full Version _ Link Download Pc Game.lnk [2015-04-23]
ShortcutTarget: Mortal Kombat 9 Komplete Edition Pc Game Free Download Full Version _ Link Download Pc Game.lnk - C:\ProgramData\{83f6be0e-8509-e492-83f6-6be0e850f83a}\Mortal Kombat 9 Komplete Edition Pc Game Free Download Full Version _ Link Download Pc Game.exe (No File)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] - {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} = C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File
ShellIconOverlayIdentifiers: [SugarSyncPending] - {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} = C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File
ShellIconOverlayIdentifiers: [SugarSyncRoot] - {A759AFF6-5851-457D-A540-F4ECED148351} = C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File
ShellIconOverlayIdentifiers: [SugarSyncShared] - {1574C9EF-7D58-488F-B358-8B78C1538F51} = C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll No File
GroupPolicy: Group Policy on Chrome detected ======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-329232522-1630903671-3855414198-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM - {0b4d26f6-61a8-4463-99dd-5f2fe0400fa6} URL = http://www.bing.com/search?q={searchTerms}form=LENDF8pc=MALNsrc=IE-SearchBox
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
SearchScopes: HKU\S-1-5-19 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-329232522-1630903671-3855414198-1001 - {620679DA-1103-430C-8FFA-3DEC87BF5C56} URL = http://search.gophoto.it/?pl=1q={searchTerms}ch=v1admin_1402
SearchScopes: HKU\S-1-5-21-329232522-1630903671-3855414198-1001 - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKU\S-1-5-21-329232522-1630903671-3855414198-1001 - {B74ECEA9-C43E-40DD-896D-48FFF9F8FC7D} URL = http://uk.search.yahoo.com/search?fr=chr-greentree_ieei=utf-8ilc=12type=714647p={searchTerms}
BHO-x32: No Name - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - No File
Toolbar: HKU\S-1-5-21-329232522-1630903671-3855414198-1001 - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
S3 EagleX64; \\C:\windows\system32\drivers\EagleX64.sys [X]
2015-04-29 17:19 - 2015-04-29 17:19 - 00000000 ____ D () C:\Users\2204\Downloads\FRST-OlderVersion
2015-04-29 16:30 - 2015-04-29 17:12 - 00000000 ____ D () C:\AdwCleaner
2015-04-29 16:26 - 2015-04-29 16:26 - 00003196 _____ () C:\windows\System32\Tasks\{232F2A82-E1F6-4FBF-963C-2E99BC188079}
2015-04-29 16:21 - 2015-04-29 16:21 - 00003206 _____ () C:\windows\System32\Tasks\{4733E081-6DFB-4EA6-AAF9-184C81C46336}
C:\Users\2204\jagex_cl_runescape_LIVE.dat
C:\Users\2204\random.dat
C:\ProgramData\flashax10.exe
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.

Odinstaluj Chrome zaznaczając usunięcie danych przeglądania.

Robi sie, dzieki za pomoc zamykam temat. ;3