Mateo10
(Mat 261198)
13 Listopad 2013 15:11
#1
Witam.
Mam od pewnego czasu spory problem z wyświetlającymi się nowymi oknami, na których są reklamy. Nie mogę sobie z tym poradzić, więc liczę na Waszą fachową pomoc.
Link do OTL: http://wklej.org/id/1176238/
Link do Extras: http://wklej.org/id/1176239/
Czekam na Wasze rozkazy
Acorus
(Acorus)
13 Listopad 2013 16:07
#2
Odinstaluj BitGuard,Web Assistant 2.0.0.573, Yontoo 1.10.03,AVG Security Toolbar,
FilesFrog Update Checker,Giant Savings,Movies Toolbar for Firefox (Dist. by Bandoo Media, Inc.),Movies Toolbar for Internet Explorer (Dist. by Bandoo Media, Inc.),
tuto4pc_pl_17,tuto4pc_pl_31,IB Updater Service,Update_DealPly.Użyj AdwCleaner http://general-changelog-team.fr/fr/dow … adwcleaner z funkcji Skan(Szukaj) a następnie Clean(usuń)
Pokaż nowy OTL.txt
Mateo10
(Mat 261198)
13 Listopad 2013 19:53
#3
Acorus
(Acorus)
14 Listopad 2013 08:54
#4
Uruchom OTL i w okno (Własne opcje skanowania/Script)wklej:
:OTL DRV - File not found [Kernel | On_Demand | Stopped] – system32\DRIVERS\taphss.sys – (taphss) IE - HKLM…\SearchScopes{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: “URL” = http://dts.search.ask.com/sr?src=ieb&gc … nrs=AG6&q={searchTerms} IE - HKU\S-1-5-21-789336058-261903793-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www.searchgol.com/?babsrc=HP_ss& … 4&tsp=5035 IE - HKU\S-1-5-21-789336058-261903793-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.searchgol.com/?babsrc=HP_ss& … 4&tsp=5035 IE - HKU\S-1-5-21-789336058-261903793-839522115-1003…\URLSearchHook: {539F76FD-084E-4858-86D5-62F02F54AE86} - C:\Program Files\Minibar\Minibar.dll (KangoExtensions) IE - HKU\S-1-5-21-789336058-261903793-839522115-1003…\SearchScopes{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: “URL” = http://www.delta-search.com/?q={searchTerms}&affID=119370&tt=0313_8&babsrc=SP_ss&mntrId=14a196cb000000000000001a4d273e41 IE - HKU\S-1-5-21-789336058-261903793-839522115-1003…\SearchScopes{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: “URL” = http://websearch.ask.com/redirect?clien … src=crm&q={searchTerms}&locale=en_US&apn_ptnrs=JP&apn_dtid=YYYYYYYYPL&apn_uid=2CB601D4-0EB0-4286-AB4E-FE57E56E4325&apn_sauid=BC30AF00-7B46-4C7F-8C11-0E1053556945 IE - HKU\S-1-5-21-789336058-261903793-839522115-1003…\SearchScopes{95B7759C-8C7F-4BF1-B163-73684A933233}: “URL” = http://isearch.avg.com/search?cid={ADFC284A-14B1-477D-B01C-1B4AEAB97685}&mid=c7ceef51ae0a47d099aed1530bc3d7b2-99a18eb30b2f4f85c8bb444001c3c67a2e4e7220〈=pl&ds=AVG&pr=fr&d=2012-12-14 19:15:03&v=14.0.2.14&pid=avg&sg=&sap=dsp&q={searchTerms} IE - HKU\S-1-5-21-789336058-261903793-839522115-1003…\SearchScopes{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}: “URL” = http://dts.search.ask.com/sr?src=ieb&gc … nrs=AG6&q={searchTerms} IE - HKU\S-1-5-21-789336058-261903793-839522115-1003…\SearchScopes{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}: “URL” = http://mystart.incredibar.com/?a=6PQFJO … kw&search={searchTerms} FF - prefs.js…browser.startup.homepage: “http://mystart.incredibar.com/?a=6PQFJO9MCi&loc=skw ” FF - prefs.js…keyword.URL: “http://mystart.incredibar.com/?a=6PQFJO9MCi&loc=skw&search= ” [2013-09-25 07:32:08 | 000,002,662 | ---- | M] () – C:\Documents and Settings\Root\Dane aplikacji\Mozilla\Firefox\Profiles\nk7red5y.default\searchplugins\Ask.xml [2010-05-26 14:18:50 | 000,002,333 | ---- | M] () – C:\Documents and Settings\Root\Dane aplikacji\Mozilla\Firefox\Profiles\nk7red5y.default\searchplugins\askcom.xml [2013-01-15 15:35:31 | 000,002,432 | ---- | M] () – C:\Documents and Settings\Root\Dane aplikacji\Mozilla\Firefox\Profiles\nk7red5y.default\searchplugins\babylon1.xml [2013-02-12 16:19:39 | 000,001,294 | ---- | M] () – C:\Documents and Settings\Root\Dane aplikacji\Mozilla\Firefox\Profiles\nk7red5y.default\searchplugins\delta.xml [2013-10-21 11:06:18 | 000,002,115 | ---- | M] () – C:\Documents and Settings\Root\Dane aplikacji\Mozilla\Firefox\Profiles\nk7red5y.default\searchplugins\MyStart Search.xml [2013-10-14 10:55:53 | 000,001,302 | ---- | M] () – C:\Documents and Settings\Root\Dane aplikacji\Mozilla\Firefox\Profiles\nk7red5y.default\searchplugins\searchgol.xml [2013-09-25 07:32:08 | 000,002,662 | ---- | M] () – C:\Program Files\mozilla firefox\searchplugins\Ask.xml [2013-05-05 13:15:29 | 000,003,714 | ---- | M] () – C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml [2013-02-12 16:18:08 | 000,006,520 | ---- | M] () – C:\Program Files\mozilla firefox\searchplugins\babylon.xml O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found. O3 - HKLM…\Toolbar: (no name) - 10 - No CLSID value found. O3 - HKU\S-1-5-21-789336058-261903793-839522115-1003…\Toolbar\WebBrowser: (no name) - {3806B089-6759-411D-B2C3-B7995A9F34D7} - No CLSID value found. O3 - HKU\S-1-5-21-789336058-261903793-839522115-1003…\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O3 - HKU\S-1-5-21-789336058-261903793-839522115-1003…\Toolbar\WebBrowser: (no name) - {EEE6C35B-6118-11DC-9C72-001320C79847} - No CLSID value found. O4 - HKLM…\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found O4 - HKLM…\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe () O4 - HKLM…\Run: [tuto4pc_pl_17] File not found O4 - HKLM…\Run: [tuto4pc_pl_31] File not found O4 - HKLM…\Run: [upt4pc_pl_17.exe] C:\Documents and Settings\Root\Ustawienia lokalne\Dane aplikacji\tuto4pc_pl_17\upt4pc_pl_17.exe -runhelper File not found O4 - HKLM…\Run: [WOOTASKBARICON] C:\PROGRA~1\neostrada tp\GestMaj.exe TaskBarIcon.exe File not found O4 - HKU\S-1-5-21-789336058-261903793-839522115-1003…\Run: [speedUpMyComputer] C:\Program Files\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe /ot /as File not found O4 - HKLM…\RunOnce: [removeiLividdatamngr] cmd.exe /c RD /S /Q “C:\Program Files\Movies Toolbar” File not found O20 - AppInit_DLLs: (c:\progra~1\movies c:\progra~1\movies c:\progra~1\movies c:\progra~1\movies c:\docume~1\alluse~1\daneap~1\bitguard\2.6.1694.246{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\bitguard.dll) - File not found O20 - AppInit_DLLs: (c:\progra~1\movies) - File not found O27 - HKLM IFEO\bitguard.exe: Debugger - C:\WINDOWS\System32\tasklist.exe (Microsoft Corporation) O27 - HKLM IFEO\bprotect.exe: Debugger - C:\WINDOWS\System32\tasklist.exe (Microsoft Corporation) O27 - HKLM IFEO\browserdefender.exe: Debugger - C:\WINDOWS\System32\tasklist.exe (Microsoft Corporation) O27 - HKLM IFEO\browserprotect.exe: Debugger - C:\WINDOWS\System32\tasklist.exe (Microsoft Corporation) [2013-11-13 15:31:41 | 000,000,000 | —D | C] – C:\AdwCleaner [2013-10-24 07:46:20 | 000,000,000 | —D | C] – C:\Documents and Settings\Root\Ustawienia lokalne\Dane aplikacji\Mobogenie [2013-10-24 07:46:20 | 000,000,000 | —D | C] – C:\Documents and Settings\Root\Moje dokumenty\Mobogenie [2013-10-24 07:45:38 | 000,000,000 | —D | C] – C:\Program Files\Mobogenie [2013-11-13 19:20:31 | 000,000,270 | ---- | M] () – C:\WINDOWS\tasks\RMAutoUpdate.job [2013-11-13 19:20:27 | 000,000,350 | ---- | M] () – C:\WINDOWS\tasks\SmartPCFix Task.job [2013-11-13 19:07:20 | 000,000,270 | ---- | M] () – C:\WINDOWS\tasks\RMSchedule.job [2012-07-03 09:20:45 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\Babylon [2013-10-14 10:55:36 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\BitGuard [2013-01-15 12:33:45 | 000,000,000 | —D | M] – C:\Documents and Settings\All Users\Dane aplikacji\IBUpdaterService :Commands [emptytemp]
Kliknij Wykonaj skrypt.
W OTL użyj opcji Sprzątanie.
Przeskanuj progr.Malwarebytes Anti-Malware http://www.malwarebytes.org/products/malwarebytes_free/
Przed skanowaniem wykonaj RĘCZNĄ AKTUALIZACJĘ BAZY SYGNATUR WIRUSÓW Malwarebytesa “Uruchom Malwarebytes, przejdź do zakładki Aktualizacja, Sprawdź aktualizacje.”
Zainstaluj aktualizacje do programow wskazanych przez Security Check
analiza-dezynfekcja-zestaw-narzedzi-nieingerencyjnych-t485632.html jako out of date.