Mulący laptop, reklamy w przeglądarkach


(arczi1000) #1

Bardzo proszę o pomoc, od jakiegoś czasu laptop chodzi bardzo wolno, mimowolnie wyświetlają się reklamy (kontekstowe i inne).

Z góry dzięki za pomoc.

Oto pliki:

FRST:

http://wklej.org/id/1676841/

Add:

http://wklej.org/id/1676842/

Short:

http://wklej.org/id/1676843/

 


(Acorus) #2

Otwórz notatnik systemowy i wklej:

Task: {2918B287-4018-4E1A-985D-7355A97821FC} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3803486667-4241831882-4071807125-1001Core = C:\Users\Justyna\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-10-09] (Facebook Inc.)
Task: {7377BF9A-BA51-4338-AA63-EAFDB622F3AA} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3803486667-4241831882-4071807125-1001UA = C:\Users\Justyna\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-10-09] (Facebook Inc.)
Task: {79B711EB-8D70-48CE-96DF-D4FF66DA7188} - System32\Tasks\{59C19E35-665C-499B-A328-F01C77B6892F} = Firefox.exe http://www.skype.com/go/downloading?source=lightinstalleramp;ver=6.20.0.104amp;LastError=12029
Task: {803BD45F-2FD5-4BF1-830D-AC2C2AD11CED} - System32\Tasks\{E09033FC-CB36-4319-8DBF-CAB253CAD9FA} = Firefox.exe http://www.skype.com/go/downloading?source=lightinstalleramp;ver=6.20.0.104amp;LastError=12029
Task: {97B8B7E7-B375-45CA-9E20-2D62533943AC} - System32\Tasks\{CD87B99A-CF2E-4F85-8361-20B0D13C85EB} = Firefox.exe http://www.skype.com/go/downloading?source=lightinstalleramp;ver=6.21.0.104amp;LastError=12029
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3803486667-4241831882-4071807125-1001Core.job = C:\Users\Justyna\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3803486667-4241831882-4071807125-1001UA.job = C:\Users\Justyna\AppData\Local\Facebook\Update\FacebookUpdate.exe
HKLM-x32\...\Run: [EfficientReminderFree] = [X]
HKLM-x32\...\Run: [Adobe ARM] = C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-3803486667-4241831882-4071807125-1001\...\Run: [Facebook Update] = C:\Users\Justyna\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-10-09] (Facebook Inc.)
GroupPolicy: Group Policy on Chrome detected ======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {6DFCC6A1-CF03-491D-B398-A05CF3F0C4CD} URL =
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL =
SearchScopes: HKLM - {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = http://search.v9.com/web/?type=dsts=1414963768from=coruid=WDCXWD3200BPVT-22JJ5T0_WD-WX31AA3M8024M8024i=psdt=34b625639q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL =
SearchScopes: HKLM-x32 - {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://uk.search.yahoo.com/yhs/search?type=avastbclhspart=avasthsimp=yhs-001p={searchTerms}
SearchScopes: HKU\S-1-5-21-3803486667-4241831882-4071807125-1001 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3803486667-4241831882-4071807125-1001 - {21DC32A2-1096-40C3-808D-0DAB0E18F8CE} URL = http://rts.dsrlte.com/?q={searchTerms}r=212
SearchScopes: HKU\S-1-5-21-3803486667-4241831882-4071807125-1001 - {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} URL =
SearchScopes: HKU\S-1-5-21-3803486667-4241831882-4071807125-1001 - {6DFCC6A1-CF03-491D-B398-A05CF3F0C4CD} URL =
SearchScopes: HKU\S-1-5-21-3803486667-4241831882-4071807125-1001 - {9B87DBF8-921E-4248-ACC3-C9E7515FBECE} URL = http://rts.dsrlte.com/?affID=naq={searchTerms}r=688
SearchScopes: HKU\S-1-5-21-3803486667-4241831882-4071807125-1001 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL =
SearchScopes: HKU\S-1-5-21-3803486667-4241831882-4071807125-1001 - {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://uk.search.yahoo.com/yhs/search?type=avastbclhspart=avasthsimp=yhs-001p={searchTerms}
SearchScopes: HKU\S-1-5-21-3803486667-4241831882-4071807125-1001 - {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = http://search.v9.com/web/?type=dsts=1414963768from=coruid=WDCXWD3200BPVT-22JJ5T0_WD-WX31AA3M8024M8024i=psdt=34b625639q={searchTerms}
BHO-x32: No Name - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - No File
Toolbar: HKLM-x32 - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FF SearchPlugin: C:\Users\Justyna\AppData\Roaming\Mozilla\Firefox\Profiles\ko7j799s.default\searchplugins\search-simple.xml [2015-03-26]
S3 OATool; \\C:\Users\Administrator\AppData\Local\Temp\OAToolx64.sys [X]
S3 TDKLIB; \\C:\Users\Administrator\AppData\Local\Temp\TdkLib64.sys [X]
2021-10-21 14:36 - 2014-03-05 01:10 - 00000852 _____ () C:\Windows\system32\Drivers\RTKHDRC.dat
2021-10-04 08:34 - 2014-03-05 01:10 - 00000712 _____ () C:\Windows\system32\Drivers\RTMICEQ0.dat
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.