Witam mam ten sam problem:( proszę o pomoc
logi:
http://wklej.to/RRrCH
Frog
(Frog)
18 Wrzesień 2011 09:30
#2
bartek3424 , na przyszłość nie podpinaj się pod cudzy temat.
Jeśli masz problem załóż własny wątek.
Wydzielono.
Acorus
(Acorus)
18 Wrzesień 2011 09:43
#3
Uruchom OTL i w okno (Własne opcje skanowania/Script)wklej:
:OTL SRV - File not found [On_Demand | Stopped] – -- (McComponentHostService) IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?l=dis&o=102866&gct=hp IE - HKCU…\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) FF - prefs.js…browser.search.defaultengine: “Ask.com ” FF - prefs.js…browser.search.defaultenginename: “Ask.com ” FF - prefs.js…browser.search.order.1: “Ask.com ” FF - prefs.js…keyword.URL: “http://websearch.ask.com/redirect?client=ff&src=kw&tb=STT&o=102866&locale=en_US&apn_uid=df75bb64-4844-4e69-9c08-8ed765bc9be9&apn_ptnrs=5N&apn_sauid=50F126C2-0768-4A6E-9822-13C8825AD0FA&apn_dtid=YYYYYYYYPL&q= ” [2011-08-02 17:25:44 | 000,000,000 | —D | M] (“Ask Toolbar”) – C:\Documents and Settings\Bart-Azot\Dane aplikacji\Mozilla\Firefox\Profiles\bs00v0rq.default\extensions\toolbar@ask.com [2011-08-06 12:27:35 | 000,002,569 | ---- | M] () – C:\Documents and Settings\Bart-Azot\Dane aplikacji\Mozilla\Firefox\Profiles\bs00v0rq.default\searchplugins\askcom.xml O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) O3 - HKLM…\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) O3 - HKCU…\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) O4 - HKLM…\Run: [] File not found O4 - HKLM…\Run: [ApnUpdater] C:\Program Files\Ask.com \Updater\Updater.exe (Ask) O4 - HKLM…\Run: [nwiz] nwiz.exe /install File not found O4 - HKLM…\Run: [WINDVDPatch] CTHELPER.EXE File not found [2011-08-25 17:30:57 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.8.1 [2011-08-23 17:17:22 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.tray-9-0-lnk [2011-08-23 17:17:22 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.tray-9-0 [2011-08-23 17:04:19 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.tray-3-0-lnk [2011-08-23 17:04:19 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.tray-3-0 [2011-09-17 14:15:22 | 000,000,734 | ---- | M] () – C:\Documents and Settings\Bart-Azot\Pulpit\hîsts [2011-08-23 17:25:09 | 000,182,617 | ---- | M] () – C:\WINDOWS\ufa.rar :Reg [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2] :Commands [emptytemp] [resethosts]
Kliknij Wykonaj skrypt .Zatwierdź restart komputera. Zapisz raport, który pokaże się po restarcie. Następnie uruchom OTL ponownie, tym razem kliknij (Skanuj).
Pokaż nowy log OTL.txt oraz raport z usuwania.
Pokaż też log extras.
Leon1
(Leon$)
18 Wrzesień 2011 09:44
#4
OTL w oknie Custom Scans-Fixes (własne opcje skanowania/skrypt)wklej następujący skrypt:
:OTL IE - HKCU…\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) FF - prefs.js…browser.search.defaultengine: “Ask.com ” FF - prefs.js…browser.search.defaultenginename: “Ask.com ” FF - prefs.js…browser.search.order.1: “Ask.com ” FF - prefs.js…keyword.URL: “http://websearch.ask.com/redirect?client=ff&src=kw&tb=STT&o=102866&locale=en_US&apn_uid=df75bb64-4844-4e69-9c08-8ed765bc9be9&apn_ptnrs=5N&apn_sauid=50F126C2-0768-4A6E-9822-13C8825AD0FA&apn_dtid=YYYYYYYYPL&q= ” [2011-08-02 17:25:44 | 000,000,000 | —D | M] (“Ask Toolbar”) – C:\Documents and Settings\Bart-Azot\Dane aplikacji\Mozilla\Firefox\Profiles\bs00v0rq.default\extensions\toolbar@ask.com [2011-08-06 12:27:35 | 000,002,569 | ---- | M] () – C:\Documents and Settings\Bart-Azot\Dane aplikacji\Mozilla\Firefox\Profiles\bs00v0rq.default\searchplugins\askcom.xml O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) O3 - HKLM…\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) O3 - HKCU…\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) O4 - HKLM…\Run: [] File not found O4 - HKLM…\Run: [ApnUpdater] C:\Program Files\Ask.com \Updater\Updater.exe (Ask) O4 - HKLM…\Run: [bluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,BluetoothAuthenticationAgent File not found O4 - HKLM…\Run: [nwiz] nwiz.exe /install File not found O4 - HKLM…\Run: [WINDVDPatch] CTHELPER.EXE File not found O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll File not found O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll File not found O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll File not found O20 - HKLM Winlogon: Shell - (Explorer.exe) - File not found O20 - HKLM Winlogon: UIHost - (logonui.exe) - File not found O20 - HKLM Winlogon: VMApplet - (Control_RunDLL “sysdm.cpl”) - File not found O20 - Winlogon\Notify\crypt32chain: DllName - (crypt32.dll) - File not found O20 - Winlogon\Notify\cryptnet: DllName - (cryptnet.dll) - File not found O20 - Winlogon\Notify\cscdll: DllName - (cscdll.dll) - File not found O20 - Winlogon\Notify\ScCertProp: DllName - (wlnotify.dll) - File not found O20 - Winlogon\Notify\Schedule: DllName - (wlnotify.dll) - File not found O20 - Winlogon\Notify\sclgntfy: DllName - (sclgntfy.dll) - File not found O20 - Winlogon\Notify\SensLogn: DllName - (WlNotify.dll) - File not found O20 - Winlogon\Notify\termsrv: DllName - (wlnotify.dll) - File not found O20 - Winlogon\Notify\wlballoon: DllName - (wlnotify.dll) - File not found O29 - HKLM SecurityProviders - (msapsspc.dll) - File not found O29 - HKLM SecurityProviders - (schannel.dll) - File not found O29 - HKLM SecurityProviders - (digest.dll) - File not found O29 - HKLM SecurityProviders - (msnsspc.dll) - File not found [2011-08-25 17:30:57 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.8.1 [2011-08-23 17:17:22 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.tray-9-0-lnk [2011-08-23 17:17:22 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.tray-9-0 [2011-08-23 17:04:19 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.tray-3-0-lnk [2011-08-23 17:04:19 | 000,000,000 | -H-D | C] – C:\WINDOWS\update.tray-3-0 [2011-09-17 14:15:22 | 000,000,734 | ---- | M] () – C:\Documents and Settings\Bart-Azot\Pulpit\hîsts [2011-08-23 17:25:09 | 000,182,617 | ---- | M] () – C:\WINDOWS\ufa.rar :Reg [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot] “AlternateShell”=“cmd.exe” :Commands [CLEARALLRESTOREPOINTS] [RESETHOSTS] [emptytemp]
Kliknij w Run Fix (Wykonaj scrypt). Zatwierdź restart komputera.
Pokaż log z usuwania.
potem nowy log OTL robiony opcją Run Scan (Skanuj)