Sale charger, jak usunąć?


(Lukpio3) #1

Witam.

Czy mogę prosić o skrypt usuwający sale charger? Logi poniżej:

 

FRST: http://wklejto.pl/227387

Additional: http://wklejto.pl/227389

Shortcut: http://wklejto.pl/227390


(Acorus) #2

Odinstaluj McAfee Security Scan Plus.Otwórz notatnik systemowy i wklej:

Task: {0DA60B26-F3E2-4BE7-9CFE-FE6BBCF48548} - System32\Tasks\{80C622F7-E96E-462F-B2A7-DC30E6BFAAB4} = Firefox.exe http://www.skype.com/go/downloading?source=lightinstalleramp;ver=5.5.0.117amp;LastError=404
Task: {1B28C1E0-3B9C-4781-B276-297A361DC450} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-974877240-2002149225-802256152-1000Core = C:\Users\Carrom\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-11] (Facebook Inc.)
Task: {7988514C-3D2A-4737-9226-3DD37712C147} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-974877240-2002149225-802256152-1000UA = C:\Users\Carrom\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-11] (Facebook Inc.)
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-974877240-2002149225-802256152-1000Core.job = C:\Users\Carrom\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-974877240-2002149225-802256152-1000UA.job = C:\Users\Carrom\AppData\Local\Facebook\Update\FacebookUpdate.exe
AlternateDataStreams: C:\Program Files\Common Files\System:LIOYy6WKu6qcOMJb2sc
AlternateDataStreams: C:\ProgramData\Microsoft:nBPDNn7n7WwfiCA7UYQFHF3EG
AlternateDataStreams: C:\ProgramData\Microsoft:oiTAbnmDPoCzYsjxbBmNy0hVMJ
AlternateDataStreams: C:\ProgramData\TEMP:B2A32C68
HKU\S-1-5-21-974877240-2002149225-802256152-1000\...\Run: [Facebook Update] = C:\Users\Carrom\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-07-11] (Facebook Inc.)
HKU\S-1-5-21-974877240-2002149225-802256152-1000\...\Run: [AdobeBridge] = [X]
HKU\S-1-5-21-974877240-2002149225-802256152-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Facebook Update] = C:\Users\Carrom\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-07-11] (Facebook Inc.)
HKU\S-1-5-21-974877240-2002149225-802256152-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [ALLUpdate] = "C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe" "sleep"
HKU\S-1-5-21-974877240-2002149225-802256152-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [AdobeBridge] = [X]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2012-08-26]
ShortcutTarget: McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF Extension: Web Protector - C:\Users\Carrom\AppData\Roaming\Mozilla\Firefox\Profiles\48uab7yl.default\Extensions\{8a167a0d-2593-78be-dffa-baa301a8d989} [2015-05-17]
FF Extension: Sale Charger - C:\Users\Carrom\AppData\Roaming\Mozilla\Firefox\Profiles\48uab7yl.default\Extensions\{85788c43-d871-40cf-9365-686173d382bb}.xpi [2015-05-17]
FF HKLM-x32\...\Firefox\Extensions: [{C7AE725D-FA5C-4027-BB4C-787EF9F8248A}] - C:\Program Files (x86)\RelevantKnowledge\firefox
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF HKU\S-1-5-21-974877240-2002149225-802256152-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF HKU\S-1-5-21-974877240-2002149225-802256152-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
S3 dgderdrv; System32\drivers\dgderdrv.sys [X]
S3 ewusbmbb; system32\DRIVERS\ewusbwwan.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 JMCR; system32\DRIVERS\jmcr.sys [X]
S3 WinPhLdrNT; \\C:\Users\Carrom\AppData\Local\Temp\PhLdrX64.SYS [X]
2015-05-20 21:52 - 2015-05-21 18:14 - 00000000 ____ D () C:\AdwCleaner
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.

Odinstaluj Chrome zaznaczając usunięcie danych przeglądania.