Surfvox i mnie dopadło


(Szymon0791) #1

Witam,

 

Mam problem z wirusem surfvox. Widziałem już podobne tematy i wklejam skany.

 

http://textuploader.com/6scq

 

http://textuploader.com/6scc

 

Proszę o pomoc i serdecznie pozdrawiam,

 

Szymon


(Acorus) #2

Otwórz Notatnik i wklej:

Task: {D36D1524-31F7-4447-A997-1AF867D2E400} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-342716991-4147505590-449876887-1000Core = C:\Users\Szymon\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-08-06] (Facebook Inc.)
Task: {F673A98B-0CC7-4DD5-913A-6DF8D22ABD1D} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-342716991-4147505590-449876887-1000UA = C:\Users\Szymon\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-08-06] (Facebook Inc.)
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-342716991-4147505590-449876887-1000Core.job = C:\Users\Szymon\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-342716991-4147505590-449876887-1000UA.job = C:\Users\Szymon\AppData\Local\Facebook\Update\FacebookUpdate.exe
HKLM\...\Run: [RtHDVCpl] = C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12343400 2011-12-27] (Realtek Semiconductor)
HKLM-x32\...\Run: [USB3MON] = C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-27] (Intel Corporation)
HKLM-x32\...\Run: [Adobe ARM] = C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKU\S-1-5-21-342716991-4147505590-449876887-1000\...\Run: [Facebook Update] = C:\Users\Szymon\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-08-06] (Facebook Inc.)
HKU\S-1-5-21-342716991-4147505590-449876887-1000\...\Run: [nvxasync] = C:\Users\Szymon\AppData\Roaming\nvxasync\nvxasync.exe [142679040 2014-12-21] ()
HKU\S-1-5-21-342716991-4147505590-449876887-1000\...\RunOnce: [Adobe Speed Launcher] = 1419169722
HKU\S-1-5-21-342716991-4147505590-449876887-1000\...\Winlogon: [Shell] C:\ProgramData\nvxasync\cvxasync.exe [142679040 2014-12-21] () ==== ATTENTION
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [52000 2014-12-10] (AVG Technologies)
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
2014-12-21 14:31 - 2014-12-21 14:37 - 00000000 _RSHD () C:\Users\Szymon\AppData\Roaming\nvxasync
2014-12-21 14:31 - 2014-12-21 14:37 - 00000000 _RSHD () C:\ProgramData\nvxasync
2014-12-21 14:31 - 2014-12-21 14:31 - 40068694 _____ () C:\Users\Szymon\AppData\Roaming\fpacked.exe
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.