Spyhunter nie chce odinstalować się +


(Szymanski199) #1

Witam,

zainstalowałem SpyHunter i teraz jak chcę odinstalować z panelu sterowania to niestety chce instalować coś innego.

A drugi problem który baaardzo przeszkadza jest to, że jak przeglądam w google chrome to co jakiś czas włącza się strona http://offers.bycontext.com/ z super ofertami :slight_smile:

Dodam, że mam oryginalnego Nortona i nic…

Jak się tego pozbyć? 

 

Będę wdzięczny za pomoc.


(falcon89) #2

Nowy log obowiązkowy - Farbar Recovery Scan Tool


(Szymanski199) #3

http://www.wklej.org/id/1640643/

 

http://www.wklej.org/id/1640644/

 

Proszę bardzo :slight_smile:


(Acorus) #4

Odinstaluj Akamai NetSession Interface.Otwórz notatnik systemowy i wklej:

Task: {2CDF5796-1947-42FB-9DF8-9E8536AFA174} - System32\Tasks\SpyHunter4Startup = C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2015-02-09] (Enigma Software Group USA, LLC.)
HKLM-x32\...\Run: [AcronisTimounterMonitor] = C:\Program Files (x86)\Common Files\Acronis\Timounter\TimounterMonitor.exe [961488 2011-06-20] (Acronis)
HKLM-x32\...\Run: [] = [X]
HKU\S-1-5-21-1482923172-3822590048-4117061280-1000\...\Run: [Akamai NetSession Interface] = C:\Users\user\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-1482923172-3822590048-4117061280-1000\...\Policies\Explorer: [NofolderOptions] 0
IFEO\bitguard.exe: [Debugger] tasklist.exe
IFEO\bprotect.exe: [Debugger] tasklist.exe
IFEO\bpsvc.exe: [Debugger] tasklist.exe
IFEO\browserdefender.exe: [Debugger] tasklist.exe
IFEO\browserprotect.exe: [Debugger] tasklist.exe
IFEO\browsersafeguard.exe: [Debugger] tasklist.exe
IFEO\dprotectsvc.exe: [Debugger] tasklist.exe
IFEO\jumpflip: [Debugger] tasklist.exe
IFEO\protectedsearch.exe: [Debugger] tasklist.exe
IFEO\searchinstaller.exe: [Debugger] tasklist.exe
IFEO\searchprotection.exe: [Debugger] tasklist.exe
IFEO\searchprotector.exe: [Debugger] tasklist.exe
IFEO\searchsettings.exe: [Debugger] tasklist.exe
IFEO\searchsettings64.exe: [Debugger] tasklist.exe
IFEO\snapdo.exe: [Debugger] tasklist.exe
IFEO\stinst32.exe: [Debugger] tasklist.exe
IFEO\stinst64.exe: [Debugger] tasklist.exe
IFEO\umbrella.exe: [Debugger] tasklist.exe
IFEO\utiljumpflip.exe: [Debugger] tasklist.exe
IFEO\volaro: [Debugger] tasklist.exe
IFEO\vonteera: [Debugger] tasklist.exe
IFEO\websteroids.exe: [Debugger] tasklist.exe
IFEO\websteroidsservice.exe: [Debugger] tasklist.exe
ShellIconOverlayIdentifiers: [00avast] - {472083B0-C522-11CF-8763-00608CC02F24} = No File
GroupPolicy: Group Policy on Chrome detected ======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=dsts=1392298484from=tt4uuid=WDCXWD2500HHTZ-04N21V0_WD-WX31E135527855278q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.awesomehp.com/web/?type=dsts=1392298484from=tt4uuid=WDCXWD2500HHTZ-04N21V0_WD-WX31E135527855278q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=dsts=1392298484from=tt4uuid=WDCXWD2500HHTZ-04N21V0_WD-WX31E135527855278q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.awesomehp.com/web/?type=dsts=1392298484from=tt4uuid=WDCXWD2500HHTZ-04N21V0_WD-WX31E135527855278q={searchTerms}
HKU\S-1-5-21-1482923172-3822590048-4117061280-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=dsts=1392298484from=tt4uuid=WDCXWD2500HHTZ-04N21V0_WD-WX31E135527855278q={searchTerms}
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=dsts=1392298484from=tt4uuid=WDCXWD2500HHTZ-04N21V0_WD-WX31E135527855278q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=dsts=1392298484from=tt4uuid=WDCXWD2500HHTZ-04N21V0_WD-WX31E135527855278q={searchTerms}
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.awesomehp.com/web/?type=dsts=1392298484from=tt4uuid=WDCXWD2500HHTZ-04N21V0_WD-WX31E135527855278q={searchTerms}
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
CHR Extension: (McAfee Security Scan+) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh [2014-04-01]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - No Path
CHR HKU\S-1-5-21-1482923172-3822590048-4117061280-1000\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - No Path
CHR HKLM-x32\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - No Path
OPR Extension: (快车下载扩展) - C:\Users\user\AppData\Roaming\Opera Software\Opera Stable\Extensions\lejhcochpnoeknhidkojgdoekkahhbhj [2015-02-19]
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1025920 2015-02-09] (Enigma Software Group USA, LLC.)
R3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [15920 2015-02-09] (Enigma Software Group USA, LLC.)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2015-02-09] ()
U3 am9508zy; C:\Windows\System32\Drivers\am9508zy.sys [0] (Microsoft Corporation) ==== ATTENTION (zero size file/folder)
U3 aof867ry; C:\Windows\System32\Drivers\aof867ry.sys [0] (Microsoft Corporation) ==== ATTENTION (zero size file/folder)
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S1 SMR430; \SystemRoot\System32\drivers\SMR430.SYS [X]
S2 VirtualSerial; SYSTEM32\DRIVERS\VirtualSerial.sys [X]
2015-02-19 16:13 - 2015-02-19 16:13 - 00003252 _____ () C:\Windows\System32\Tasks\{21FCB672-41D9-400E-A4BB-2E81A4E2D2D9}
2015-02-19 16:10 - 2015-02-19 16:10 - 00003228 _____ () C:\Windows\System32\Tasks\{277038B0-3591-48D0-8EC2-0C6BD0DB63C2}
2015-02-19 16:09 - 2015-02-19 16:24 - 00000204 _____ () C:\Windows\SysWOW64\secustat.dat
2015-02-09 00:41 - 2015-02-09 00:41 - 00003332 _____ () C:\Windows\System32\Tasks\SpyHunter4Startup
2015-02-09 00:41 - 2015-02-09 00:41 - 00000000 ____ D () C:\Users\user\AppData\Roaming\Enigma Software Group
2015-02-09 00:41 - 2015-02-09 00:41 - 00000000 ____ D () C:\sh4ldr
2015-02-09 00:41 - 2015-02-09 00:41 - 00000000 _____ () C:\autoexec.bat
2015-02-09 00:38 - 2015-02-09 00:38 - 00022704 _____ () C:\Windows\system32\Drivers\EsgScanner.sys
2015-02-09 00:37 - 2015-02-09 00:37 - 00000000 ____ D () C:\Program Files\Enigma Software Group
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.


(Szymanski199) #5

Wielkie dzięki! Na pierwsze 5 min wygląda, że jest NORMALNIE! Mój komputer został uratowany! :slight_smile:

 

I jeszcze jedno pytanie: jak sprawdzić jakie programy w komputerze wykorzystują najwięcej łącza? 

Boje się, że jakiś program mocno zabiera mi transfer. 


(Acorus) #6

Skasuj folder C:\FRST

W AdwCleaner użyj opcji Odinstaluj.


(Szymanski199) #7

Działa wszystko jak powinno.

Wielkie dzięki

Pomogło