Witam, z jakiejś tam strony pobrałem program do zrootowania telefonu. Zainstalowałem ten program i wraz z nim nagle się zainstalowało 5 innych programów. Odinstalowałem je i teraz został (chyba) tylko program oursurfing. Co uruchomię przeglądarkę to włącza się strona http://www.oursurfing.com/ i jakieś reklamy wyskakują w google. Proszę o pomoc . Z góry dziękuje.
frst; http://www.wklej.org/id/1717243/
addition; http://www.wklej.org/id/1717245/
Shortcut czy jakos tak raport nie wyskoczył.
Atis
(Atis)
20 Maj 2015 21:32
#2
Wszystkie programy > Akcesoria > Wiersz polecenia > Kliknij prawym i wybierz Uruchom jako administrator
Wpisz i zatwierdź enterem: netsh winsock reset
W panelu sterowania odinstaluj SpyHunter 4.
Pobierz i uruchom AdwCleaner Kliknij Scan i później Cleaning.
Kliknij Scan i pokaż nowy raport z FRST bez Addition i Shortcut.
Nie mogę zeskoanować adwcleaner`em,bo wyskakuje taki błąd
;
Atis
(Atis)
21 Maj 2015 09:41
#4
To wyłącz Comodo lub uruchom system w trybie awaryjnym.
Po uruchomieniu komputera naciskaj klawisz F8 i wybierz tryb awaryjny.
http://support.kaspersky.com/pl/general/various/493#q1
W awaryjnym trybie poszło ok. W przeglądarce śmieci zniknęły. Log z czyszczenia adw cleaner; http://www.wklej.org/id/1717589/
http://www.wklej.org/id/1717590/
Atis
(Atis)
21 Maj 2015 13:18
#6
Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
S3 andnetadb; System32\Drivers\lgandnetadb.sys [X]
2015-05-20 21:08 - 2015-05-20 21:08 - 00000000 ____ D () C:\Program Files (x86)\820fe70f-0ab4-45aa-8ce2-91e71ae7bf75
2015-05-20 21:08 - 2015-05-20 21:08 - 00000000 ____ D () C:\Program Files (x86)\124ea36d-1dce-479a-a7f5-3309a6d109c4
2015-05-20 21:07 - 2015-05-20 21:07 - 00000000 ____ D () C:\Users\Public\Documents\ShopperPro
2015-05-20 21:06 - 2015-05-20 21:07 - 00000000 ____ D () C:\ProgramData\TEMP
2015-05-20 20:58 - 2015-05-20 20:58 - 00333506 _____ (AnySend.com) C:\Users\bastian\AppData\Local\nsx23EC.tmp
2015-05-20 20:57 - 2015-05-20 20:57 - 00333506 _____ (AnySend.com) C:\Users\bastian\AppData\Local\nsi5153.tmp
2015-05-20 20:56 - 2015-05-20 20:56 - 00000000 ____ D () C:\Program Files (x86)\e187681e-2db7-448f-92a7-1faa2a109484
2015-05-21 14:56 - 2014-10-03 15:07 - 00000000 ____ D () C:\AdwCleaner
2012-05-03 13:12 - 2012-05-03 13:12 - 0000532 _____ () C:\Users\bastian\AppData\Local\datos.txt
2014-08-22 16:47 - 2015-02-06 16:26 - 0023556 _____ () C:\ProgramData\.windows.sys
Task: {0855EAAC-917E-4D55-AABF-292D2507884D} - System32\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-7 => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-7.exe <==== ATTENTION
Task: {11F20E80-635C-4E5D-9E4B-B1A789885E7C} - System32\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-5 => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-5.exe [2015-05-20] (Webby) <==== ATTENTION
Task: {17D63E83-2CAA-40D3-8258-17118EEE14DE} - System32\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-7 => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-7.exe <==== ATTENTION
Task: {186265C8-7855-4463-9D8E-F74AAF12AD20} - System32\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-10_user => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-10.exe [2015-05-20] (Lid) <==== ATTENTION
Task: {210DFEB3-E9B2-418E-9342-9D0805628DD0} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-05-20] (globalUpdate) <==== ATTENTION
Task: {3858863B-347C-43AC-A953-A215B409897A} - System32\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-7 => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-7.exe <==== ATTENTION
Task: {3BAF2FCB-371F-409A-82E6-9DA48945AE9D} - System32\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-5_user => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-5.exe [2015-05-20] (Sense+) <==== ATTENTION
Task: {3CD31EA0-7C5D-4E78-A3C7-6338596E48A2} - System32\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-6 => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-6.exe [2015-05-20] (Sense+) <==== ATTENTION
Task: {4353E445-019B-4CA3-9126-56C3A0B0AE15} - System32\Tasks\YTAUpdate_logon => C:\PROGRA~2\YOUTUB~1\Updater.exe <==== ATTENTION
Task: {44FD8F3F-8B06-4EBD-A3E8-918278C037AA} - System32\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-11 => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-11.exe <==== ATTENTION
Task: {45CB0621-3928-4136-874E-9312F960098C} - System32\Tasks\YTAUpdate => C:\PROGRA~2\YOUTUB~1\Updater.exe <==== ATTENTION
Task: {478184B7-FAB2-4535-B3D9-F84AA544D808} - System32\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-1-6 => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-1-6.exe [2015-05-20] (Sense+) <==== ATTENTION
Task: {5E5DDC04-6376-4F32-9F92-8EE2EDCD20D1} - System32\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-5 => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-5.exe [2015-05-20] (Sense+) <==== ATTENTION
Task: {6694824A-F32C-4811-A541-104F24CB1EDC} - System32\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-5 => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-5.exe [2015-05-20] (Lid) <==== ATTENTION
Task: {7F6B5B49-C29A-4854-B634-CBD4A9785E82} - System32\Tasks\ShopperPro => C:\Program Files (x86)\ShopperPro\ShopperPro.exe <==== ATTENTION
Task: {90862C12-E0E8-4904-8D84-1D3FA09E8E9A} - System32\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-1-7 => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-1-7.exe <==== ATTENTION
Task: {97A47545-698C-4215-91C3-42FFC395110C} - System32\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-1-7 => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-1-7.exe <==== ATTENTION
Task: {9DFD99E5-3EA4-4792-99D0-653176412BA4} - System32\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-1-7 => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-1-7.exe <==== ATTENTION
Task: {9F952C4D-4FB2-4C56-9331-9E13F074985C} - System32\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-11 => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-11.exe <==== ATTENTION
Task: {A0AB0369-567D-4C54-967A-CC5B90636F1F} - System32\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-11 => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-11.exe <==== ATTENTION
Task: {A3184591-6D08-4B98-94AC-91A48357C5DD} - System32\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-1-6 => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-1-6.exe [2015-05-20] (Lid) <==== ATTENTION
Task: {C1741D82-4D5C-4049-B1F8-C3E02D6C8087} - System32\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-6 => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-6.exe [2015-05-20] (Webby) <==== ATTENTION
Task: {C4F58607-8FF9-4489-AEF1-161B15D78DA8} - System32\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-6 => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-6.exe [2015-05-20] (Lid) <==== ATTENTION
Task: {C8175494-C915-469A-B03F-D90A8B57A35A} - System32\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-1-6 => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-1-6.exe [2015-05-20] (Webby) <==== ATTENTION
Task: {D8C7F243-EF82-4671-ADF1-CA7075149E4C} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-05-20] (globalUpdate) <==== ATTENTION
Task: {E350B52A-E903-4769-9661-90B073377D3B} - System32\Tasks\{8D2B98D5-B8F5-44AA-B348-FE60460CC28F} => pcalua.exe -a C:\Users\bastian\Desktop\GameRangerSetup.exe -d C:\Users\bastian\Desktop
Task: {EE61AB85-F501-4A10-88C2-343F2D78C541} - System32\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-5_user => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-5.exe [2015-05-20] (Webby) <==== ATTENTION
Task: {F4CAAD33-19C5-4F1B-A653-0352C35239A1} - System32\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-5_user => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-5.exe [2015-05-20] (Lid) <==== ATTENTION
Task: {FCE074F7-08AB-4CEE-8287-3112371E1EA5} - System32\Tasks\SYSTEM => C:\ProgramData\wmc.exe <==== ATTENTION
C:\ProgramData\wmc.exe
Task: C:\Windows\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-1-6.job => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-1-7.job => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-10_user.job => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-10.exe <==== ATTENTION
Task: C:\Windows\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-11.job => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-5.job => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-5_user.job => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-6.job => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\43c66902-4e0f-4392-b0c2-37149784e10c-7.job => C:\Program Files (x86)\App Lid\43c66902-4e0f-4392-b0c2-37149784e10c-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-1-6.job => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-1-7.job => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-11.job => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-5.job => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-5_user.job => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-6.job => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\45986771-c96d-4231-a3ff-123d15f9eb62-7.job => C:\Program Files (x86)\iWebar\45986771-c96d-4231-a3ff-123d15f9eb62-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-1-6.job => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-1-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-1-7.job => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-1-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-11.job => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-5.job => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-5_user.job => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-5.exe <==== ATTENTION
Task: C:\Windows\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-6.job => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-6.exe <==== ATTENTION
Task: C:\Windows\Tasks\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-7.job => C:\Program Files (x86)\SensePlus\a8d2bd9a-a5d1-435b-9f95-d5d12723ac18-7.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION
Hosts:
EmptyTemp:
Uruchom FRST i kliknij Fix. Pokaż raport z usuwania Fixlog.
Kliknij Scan i pokaż nowy raport z FRST bez Addition i Shortcut.
Atis
(Atis)
22 Maj 2015 08:54
#8
Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :
CHR Extension: (Bookmark Manager) - C:\Users\bastian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-21]
2015-05-20 21:06 - 2015-05-20 21:06 - 00000000 ____ D () C:\Users\Public\Documents\GOOBZO
DeleteQuarantine:
Uruchom FRST i kliknij Fix. Skasuj folder C:\FRST
Usuń stare punkty przywracania: Aby usunąć wszystkie punkty przywracania
Dysk przeskanuj Malwarebytes Anti-Malware
Podczas instalacji usuń zaznaczenie przy Uruchom okres testowy Malwarebytes Anti-Malware Premium.
http://wstaw.org/m/2014/03/25/2014-03-25_123039.png
Język PL > Settings > General Settings > Language > Polish
Przeczytaj w jaki sposób należy instalować programy: KLIK - KLIK - KLIK - KLIK
Odinstaluj:
Adobe Flash Player 15 Plugin
Java 7 Update 25
Zainstaluj:
Flash Player 17.0.0.188 Plugin
Java 8 Update 45
Service Pack 1 x64 (903.2 MB)
Internet Explorer 11