Zamulający system, bluescreen przy skanowaniu MBAM


(Sluuz) #1

Witam


(Atis) #2

Pobierz i uruchom AdwCleaner Kliknij Szukaj i później Usuń.

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

HKU\S-1-5-21-2935620397-2620865366-1557845658-1000\...\Run: [ChomikBox] => C:\Program Files\ChomikBox\chomikbox.exe 
HKU\S-1-5-21-2935620397-2620865366-1557845658-1000\...\Run: [Tiny download manager] => "C:\Users\Madzia\AppData\Local\DM\TinyDM.exe" /M 
AppInit_DLLs: c:\progra~2\bitguard\271832~1.68\{c16c1~1\bitguard.dll => c:\progra~2\bitguard\271832~1.68\{c16c1~1\bitguard.dll File Not Found
HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = 
URLSearchHook: HKCU - (No Name) - {87d5d709-40f2-48a7-8f47-7bb821af70ab} - No File
FF Extension: Conduit Engine - C:\Users\Madzia\AppData\Roaming\Mozilla\Firefox\Profiles\dt2itx2w.default\Extensions\engine@conduit.com [2011-04-02]
FF Extension: Babylon - C:\Users\Madzia\AppData\Roaming\Mozilla\Firefox\Profiles\dt2itx2w.default\Extensions\ffxtlbr@babylon.com [2011-12-19]
FF Extension: Smiley Bar for Facebook - C:\Users\Madzia\AppData\Roaming\Mozilla\Firefox\Profiles\dt2itx2w.default\Extensions\pluswinks@PlusWinks [2013-06-05]
FF Extension: Speed Analysis 2 - C:\Users\Madzia\AppData\Roaming\Mozilla\Firefox\Profiles\dt2itx2w.default\Extensions\speedanalysis02@SpeedAnalysis.com [2013-06-05]
FF Extension: Softonic-Polska2 Community Toolbar - C:\Users\Madzia\AppData\Roaming\Mozilla\Firefox\Profiles\dt2itx2w.default\Extensions\{87d5d709-40f2-48a7-8f47-7bb821af70ab} [2011-04-02]
FF Extension: FoxTab - C:\Users\Madzia\AppData\Roaming\Mozilla\Firefox\Profiles\dt2itx2w.default\Extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a} [2011-04-15]
CHR Extension: (PlusWinks) - C:\Users\Madzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\mocblcnaofikinigmceddfghppkkjbog [2013-06-05]
CHR HKLM\...\Chrome\Extension: [mocblcnaofikinigmceddfghppkkjbog] - C:\Users\Madzia\AppData\Roaming\PlusWinks\PlusWinks.crx [2013-03-20]
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
S2 Update BrowseSmart; "C:\Program Files\BrowseSmart\updateBrowseSmart.exe" [X]
S2 Util BrowseSmart; "C:\Program Files\BrowseSmart\bin\utilBrowseSmart.exe" [X]
R1 {7f2b4ad0-671a-477b-bcd4-79d041f50d27}Gw; C:\Windows\System32\drivers\{7f2b4ad0-671a-477b-bcd4-79d041f50d27}Gw.sys [52928 2014-04-24] (StdLib)
R1 {7f2b4ad0-671a-477b-bcd4-79d041f50d27}w; C:\Windows\System32\drivers\{7f2b4ad0-671a-477b-bcd4-79d041f50d27}w.sys [52928 2014-06-12] (StdLib)
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
U4 WMCoreService; 
C:\Windows\System32\drivers\{7f2b4ad0-671a-477b-bcd4-79d041f50d27}Gw.sys
C:\Windows\System32\drivers\{7f2b4ad0-671a-477b-bcd4-79d041f50d27}w.sys
C:\Users\Madzia\AppData\Local\DM
Task: {B17DF6B5-10FF-4F53-8F7E-3F3585794D7D} - System32\Tasks\{B1739D4D-A10D-4611-B1DA-2B79F5E4B4E4} => Chrome.exe http://ui.skype.com/ui/0/6.14.0.104/pl/abandoninstall?page=tsProgressBar
CMD: del /f /s /q %TEMP%\*.*

Uruchom FRST i kliknij Fix. Pokaż raport z usuwania Fixlog.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.


(Sluuz) #3

Fixlog: http://wklej.org/id/1427333/

FRST: http://wklej.org/id/1427334/


(Atis) #4

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

SearchScopes: HKLM - {1E4CF405-F7D7-4E13-96DD-0DAFF961ECEE} URL = http://search.foxtab.com/?s=0&chnl=irn
SearchScopes: HKCU - {12A6FF1C-448C-446F-B6E5-0AB25BC40C88} URL = http://rts.dsrlte.com/?q={searchTerms}&r=604
SearchScopes: HKCU - {1E4CF405-F7D7-4E13-96DD-0DAFF961ECEE} URL = http://search.foxtab.com/?s=0&chnl=irn
SearchScopes: HKCU - {F48D6616-9FFD-41D3-952A-EC8F42DC5A0D} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=crm&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYPL&apn_uid=463EB4FC-DC3E-4CAE-821D-FE01D341C4D9&apn_sauid=E1EDD774-F89D-4C5F-A4D4-CC27A516E44B
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
C:\AdwCleaner

Uruchom FRST i kliknij Fix. Później skasuj folder C:\FRST

Pobierz TFC - Temp File Cleaner Uruchom TFC i kliknij Start.

Dysk przeskanuj Dr.Web CureIt

Odinstaluj Java 7 Update 21 i Java 6 Update 29.

Zainstaluj Java 7 Update 65