Usunięcie pricefuntain


(Adrianklimek) #1

Witam, mam problem z usunięciem pricefuntain.

https://www.dropbox.com/s/9qj4347xcvbfbte/Addition.txt?dl=0


(Atis) #2

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

CloseProcesses:
CustomCLSID: HKU\S-1-5-21-1174533544-2538348482-1012876273-1000_Classes\CLSID\{492042A2-4432-44A1-9A39-85B2D3C0119E}\InprocServer32 - C:\Poker\William Hill Poker\widgetbar\PtContainerUI.dll = Brak pliku
CustomCLSID: HKU\S-1-5-21-1174533544-2538348482-1012876273-1000_Classes\CLSID\{492042A2-4432-44A1-9A39-85B2D3C0119E}\InprocServer32 - C:\Poker\William Hill Poker\widgetbar\PtContainerUI.dll = Brak pliku
CustomCLSID: HKU\S-1-5-21-1174533544-2538348482-1012876273-1000_Classes\CLSID\{876FA801-2B5E-4201-9E6B-2EF2C05A5C6B}\InprocServer32 - C:\Poker\William Hill Poker\widgetbar\WidgetbarAPI.dll = Brak pliku
CustomCLSID: HKU\S-1-5-21-1174533544-2538348482-1012876273-1000_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 - C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.29\psuser.dll = Brak pliku
CustomCLSID: HKU\S-1-5-21-1174533544-2538348482-1012876273-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 - C:\Users\Admin\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll = Brak pliku
CustomCLSID: HKU\S-1-5-21-1174533544-2538348482-1012876273-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 - C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll = Brak pliku
CustomCLSID: HKU\S-1-5-21-1174533544-2538348482-1012876273-1000_Classes\CLSID\{F6F8856F-374D-4397-BB1C-80AB57E60529}\InprocServer32 - C:\Poker\William Hill Poker\widgetbar\WidgetbarAPI.dll = Brak pliku
Task: {1F6493B8-8129-460E-AC90-9ECDEBA81B6C} - System32\Tasks\{1FBC2AE0-AF58-4C29-942C-AFE2E35CB61E} = pcalua.exe -a "C:\Users\Admin\Downloads\Adobe.Photoshop.CS4.Extended.PL\Adobe.Photoshop.CS4.Extended.PL\Spolszczenie Adobe Photoshop CS4.exe" -d C:\Users\Admin\Downloads\Adobe.Photoshop.CS4.Extended.PL\Adobe.Photoshop.CS4.Extended.PL
Task: {1F6493B8-8129-460E-AC90-9ECDEBA81B6C} - System32\Tasks\{1FBC2AE0-AF58-4C29-942C-AFE2E35CB61E} = pcalua.exe -a "C:\Users\Admin\Downloads\Adobe.Photoshop.CS4.Extended.PL\Adobe.Photoshop.CS4.Extended.PL\Spolszczenie Adobe Photoshop CS4.exe" -d C:\Users\Admin\Downloads\Adobe.Photoshop.CS4.Extended.PL\Adobe.Photoshop.CS4.Extended.PL
Task: {31A6E696-EB1F-4A2E-9D70-2A8F70D8B6D4} - System32\Tasks\{1A44E10B-1A9B-4E25-8E3D-7D3826AB17EB} = pcalua.exe -a C:\Users\Admin\Desktop\GAP.2.6_win\GAP-installer\Gimp-GAP-2.6.0-Setup2.exe -d C:\Users\Admin\Desktop\GAP.2.6_win\GAP-installer
Task: {F3280535-9C9A-487E-82E4-D785B9FA32D9} - System32\Tasks\InadmissabilityFellatioV2 = Rundll32.exe LucilleNationalism.dll,main 7 1 ==== UWAGA
HKLM\...\Run: [] = [X]
HKU\S-1-5-21-1174533544-2538348482-1012876273-1000\...\Run: [Wisdom-soft AutoScreenRecorder 3.1 Free] = 0
HKU\S-1-5-21-1174533544-2538348482-1012876273-1000\...\Run: [AdobeBridge] = [X]
CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia ======= UWAGA
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2015-09-14]
StartMenuInternet: (HKLM) Opera - C:\Program Files\Opera\Opera.exe hxxp://www.yoursearching.com/?type=scts=1450459350z=21e223b3f0c97db3c281da1g7zccaefozzjcktmlmafrom=coruid=395049983_1052514_78A5E6BD
S2 adfs; Brak ImagePath
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 BTCOM; system32\DRIVERS\btcomport.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S3 IvtComBusSrv; System32\Drivers\btcombus.sys [X]
R4 klkbdflt2; system32\DRIVERS\klkbdflt2.sys [X]
S3 NTIOLib_1_0_4; \??\C:\Program Files\MSI\Live Update 5\NTIOLib.sys [X]
C:\AdwCleaner
C:\yoursearching.xml
C:\Users\Admin\AppData\Local\InadmissabilityFellatio
EmptyTemp:

Uruchom FRST i kliknij Napraw (Fix). Pokaż raport z usuwania Fixlog.

 

 


(Adrianklimek) #3

https://www.dropbox.com/s/s5qp05duo4yvbwq/Addition2.txt?dl=0

https://www.dropbox.com/s/akbrueq8a1qmqnv/FRST2.txt?dl=0

https://www.dropbox.com/s/iv9sn28afaa5alw/Fixlog.txt?dl=0


(Atis) #4

Odinstaluj McAfee Security Scan Plus.