S.coldsearch

Prosiłbym o pomoc w usunięciu.

FRST: http://www.wklej.org/id/1874050/

W panelu sterowania odinstaluj:

Już poprawiłem. Przepraszam :slight_smile:

FRST: http://wklej.org/id/1874254/

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

CloseProcesses:
ShellIconOverlayIdentifiers: [00avast] - {472083B0-C522-11CF-8763-00608CC02F24} =  Brak pliku
GroupPolicy: Ograniczenia - Chrome ======= UWAGA
CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia ======= UWAGA
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
SearchScopes: HKLM - DefaultScope - brak wartości
SearchScopes: HKLM-x32 - DefaultScope - brak wartości
FF Extension: sidebar - C:\Users\Meru\AppData\Roaming\Mozilla\Firefox\Profiles\81ntop9z.default\Extensions\sidebarff@gmail.com [2015-12-10] [Brak podpisu cyfrowego]
FF HKLM-x32\...\Firefox\Extensions: [sidebarff@gmail.com] - C:\Users\Meru\AppData\Roaming\Mozilla\Firefox\Profiles\81ntop9z.default\extensions\sidebarff@gmail.com
CHR HKU\S-1-5-21-358934009-1482696-4107045854-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-358934009-1482696-4107045854-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dhdgffkkebhmkfjojejmpbldmpobfkfo] - hxxp://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-358934009-1482696-4107045854-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
S2 MustangService_2015_10_10; C:\ProgramData\TempMoudleSet\MustangSer1016.exe [236816 2015-10-09] (MustangService)
S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [X]
2015-12-10 14:16 - 2015-12-10 14:16 - 00000000 ____ D C:\ProgramData\TempMoudleSet
2015-12-11 18:31 - 2015-10-22 23:12 - 00000000 ____ D C:\AdwCleaner
2015-04-14 17:28 - 2015-04-14 17:28 - 0004387 _____ () C:\Users\Meru\AppData\Roaming\6OTPxZsYWv8U0yl2
2015-04-19 13:20 - 2015-04-19 13:20 - 0005872 _____ () C:\Users\Meru\AppData\Roaming\FxpjXZxQxxzcCZ1wClKxiV
2015-10-01 13:41 - 2015-10-01 13:41 - 0000028 _____ () C:\Users\Meru\AppData\Roaming\splitter.ini
2015-01-31 02:31 - 2015-02-02 13:46 - 0035848 _____ () C:\ProgramData\.windows.sys
Task: {138F7354-0B65-418D-88DC-3A79A099C27D} - System32\Tasks\klcp_update = C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-07-21] ()
Task: {1FEE81B1-F4D7-412F-A792-52E39D0A3AB8} - System32\Tasks\{7277838E-3E3C-4CFD-A8AB-6DF95945C88F} = pcalua.exe -a "C:\Users\Meru\AppData\Local\Temp\Rar$EX89.536\Avast_Internet_Security_2014_v9.0.2013_Incl_Key_valid_till-2016_TorDigger\Avast Internet Security 2014 v9.0.2013 Incl Key valid till-2016 [TorDigger]\avast_internet_security_setup.exe" -d "C:\Users\Meru\AppData\Local\Temp\Rar$EX89.536\Avast_Internet_Security_2014_v9.0.2013_Incl_Key_valid_till-2016_TorDigger\Avast Internet Security 2014 v9.0.2013 Incl Key valid till-2016 [TorDigger]" -c runasadmin
Task: {4137D309-44B3-47FC-9131-C4218BC7F6B0} - System32\Tasks\{D2DA2F74-250A-4441-8A66-0447B9628D61} = pcalua.exe -a E:\driver\X-750F\Setup.exe -d E:\driver\X-750F
Task: {85DF5F87-7086-49B9-AC16-2CE48A0D5182} - System32\Tasks\FxpjXZxQxxzcCZ1wClKxiV = C:\Users\Meru\AppData\Roaming\FxpjXZxQxxzcCZ1wClKxiV.exe ==== UWAGA
Task: {94D51C8A-321B-4455-BFC4-B65F56AEC6AE} - System32\Tasks\6OTPxZsYWv8U0yl2 = C:\Users\Meru\AppData\Roaming\6OTPxZsYWv8U0yl2.exe ==== UWAGA
Task: {EA4A14A0-9749-49FB-A4FA-0C7A26DC8E90} - System32\Tasks\{C3C52A5B-6D4F-4451-9E7E-4C3C2912129F} = pcalua.exe -a "D:\Programy\blaze.media.pro.6.0.0.12.crack\blaze media pro 6.0.0.12.exe" -d D:\Programy\blaze.media.pro.6.0.0.12.crack
Task: {EA4A14A0-9749-49FB-A4FA-0C7A26DC8E90} - System32\Tasks\{C3C52A5B-6D4F-4451-9E7E-4C3C2912129F} = pcalua.exe -a "D:\Programy\blaze.media.pro.6.0.0.12.crack\blaze media pro 6.0.0.12.exe" -d D:\Programy\blaze.media.pro.6.0.0.12.crack
Task: {EF75F8F7-D66E-4315-8F04-592BAE43EE82} - System32\Tasks\AVAST Software\Avast settings backup = C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2015-07-30] (AVAST Software)
Task: C:\Windows\Tasks\6OTPxZsYWv8U0yl2.job = C:\Users\Meru\AppData\Roaming\6OTPxZsYWv8U0yl2.exe ==== UWAGA
Task: C:\Windows\Tasks\FxpjXZxQxxzcCZ1wClKxiV.job = C:\Users\Meru\AppData\Roaming\FxpjXZxQxxzcCZ1wClKxiV.exe ==== UWAGA
C:\Users\Meru\AppData\Roaming\*.exe
EmptyTemp:

Uruchom FRST i kliknij Napraw (Fix). Pokaż raport z usuwania Fixlog.

 

Fixlog: http://wklej.org/id/1874309/

Skasuj folder C:\FRST

Dzięki wielkie! Wszystko zgodnie z instrukcjami zrobione :slight_smile: