Użyłem adwcleanera i niestety nie usunął tego dziadostwa.
skany:
frst: http://www.wklej.org/id/1858105/
addition: http://www.wklej.org/id/1858107/
shortcut: http://www.wklej.org/id/1858112/
Bardzo proszę o pomoc.
Użyłem adwcleanera i niestety nie usunął tego dziadostwa.
skany:
frst: http://www.wklej.org/id/1858105/
addition: http://www.wklej.org/id/1858107/
shortcut: http://www.wklej.org/id/1858112/
Bardzo proszę o pomoc.
Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :
HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore: [DisableSR/DisableConfig] ===== UWAGA
HKU\S-1-5-19\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4532304 2015-09-09] (Microsoft Corporation) ==== UWAGA
HKU\S-1-5-20\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4532304 2015-09-09] (Microsoft Corporation) ==== UWAGA
HKU\S-1-5-21-2869420533-3500233007-3519040014-1001\...\Run: [FastPhrases] = C:\Program Files (x86)\Fast Phrases\FastPhrasesTray.exe
HKU\S-1-5-21-2869420533-3500233007-3519040014-1001\...\Policies\system: [NoDispAppearancePage] 0
HKU\S-1-5-21-2869420533-3500233007-3519040014-1001\...\Policies\Explorer: [HideClock] 0
HKU\S-1-5-21-2869420533-3500233007-3519040014-1001\...\Policies\Explorer: [HideSCANetwork] 0
HKU\S-1-5-21-2869420533-3500233007-3519040014-1001\...\Policies\Explorer: [HideSCAVolume] 0
HKU\S-1-5-21-2869420533-3500233007-3519040014-1001\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4532304 2015-09-09] (Microsoft Corporation) ==== UWAGA
HKU\S-1-5-18\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4532304 2015-09-09] (Microsoft Corporation) ==== UWAGA
HKU\S-1-5-21-2869420533-3500233007-3519040014-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia ======= UWAGA
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.oursurfing.com/web/?type=dsts=1447707265z=7ee83e7be0e44fad45da33fg3z6zdmdmfe1mdo9q3wfrom=amtuid=goodramxc40_466f0754159400328040q={searchTerms}
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.oursurfing.com/web/?type=dsts=1447707265z=7ee83e7be0e44fad45da33fg3z6zdmdmfe1mdo9q3wfrom=amtuid=goodramxc40_466f0754159400328040q={searchTerms}
Edge HomeButtonPage: HKU\S-1-5-21-2869420533-3500233007-3519040014-1001 - hxxp://www.oursurfing.com/?type=hpts=1447707265z=7ee83e7be0e44fad45da33fg3z6zdmdmfe1mdo9q3wfrom=amtuid=goodramxc40_466f0754159400328040
2015-11-25 21:48 - 2015-11-25 21:49 - 00000000 ____ D C:\AdwCleaner
2015-11-16 22:16 - 2015-11-22 19:15 - 00000000 ____ D C:\Users\JAKUB\AppData\Local\3853
2015-11-16 21:56 - 2015-11-16 22:24 - 00000000 ____ D C:\Program Files (x86)\a7e4d8b5-ab14-440e-a923-0dfc64d4ece9
2015-11-16 21:56 - 2015-11-16 21:56 - 00000004 _____ C:\WINDOWS\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-11-22 19:04 - 2015-11-22 19:04 - 0000779 _____ () C:\Users\JAKUB\AppData\Roaming\gdscan.log
2015-09-10 18:04 - 2015-09-10 21:16 - 0019535 _____ () C:\ProgramData\empty.ico
Task: {BD9E8F9F-81E4-4F9F-BD53-5F7F5C9FEBA8} - System32\Tasks\{D7062AFE-E0E1-4287-91EE-7A8A162B628A} = pcalua.exe -a F:\CDSETUP.EXE -d F:\
EmptyTemp:
Uruchom FRST i kliknij Napraw (Fix). Pokaż raport z usuwania Fixlog.
Dzięki za pomoc, już wszystko chyba OK
FRST: http://www.wklej.org/id/1858856/
Fixlog: http://www.wklej.org/id/1858869/ - musiałem drugi raz uruchomić bo przypadkiem usunąłem za pierwszym razem.
Pozdrawiam serdecznie
Skasuj folder C:\FRST