Gość: patrycja IP: 93.179.234.* 12.03.15, 19:16 proszę o sprawdzenie loga wklej.org/id/1660927/ wklej.org/id/1660928/ Odpowiedz Link Zgłoś Obserwuj wątek Podgląd Opublikuj
kolobos Re: problem z kompem 13.03.15, 10:32 Nie sciagaj programow ze stron oferujacych wlasne menadzery pobierania, to prosta droga do infekcji! Obok frst.exe utworz plik fixlist.txt z zawartoscia: Startup: C:\Users\Patrycja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Jack and Jack The Movie.mp4.lnk ShortcutTarget: Jack and Jack The Movie.mp4.lnk -> C:\ProgramData\{3d8ce3f9-e890-a8dc-3d8c-ce3f9e898fe7}\Jack and Jack The Movie.mp4.exe () CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION SearchScopes: HKLM -> {6329750D-92F4-435A-86E5-4624C8965054} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {6329750D-92F4-435A-86E5-4624C8965054} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = http://pl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Toolbar: HKU\S-1-5-21-2915266603-2642670509-2528920663-1018 -> No Name - {5347542D-5350-006A-76A7-7A786E7484D7} - No File S3 ew_hwusbdev; \SystemRoot\system32\DRIVERS\ew_hwusbdev.sys [X] S3 ew_usbenumfilter; \SystemRoot\System32\drivers\ew_usbenumfilter.sys [X] S3 huawei_cdcacm; \SystemRoot\system32\DRIVERS\ew_jucdcacm.sys [X] S3 huawei_enumerator; \SystemRoot\System32\drivers\ew_jubusenum.sys [X] S3 huawei_ext_ctrl; \SystemRoot\System32\drivers\ew_juextctrl.sys [X] S3 huawei_wwanecm; \SystemRoot\system32\DRIVERS\ew_juwwanecm.sys [X] 2015-03-12 18:59 - 2015-03-12 19:04 - 00000000 ____D () C:\AdwCleaner 2015-03-11 16:49 - 2015-03-11 16:49 - 00687608 _____ (Prog Installer ) C:\Users\Patrycja\Downloads\Zuma Deluxe 1.0 (1).exe 2015-03-11 16:46 - 2015-03-11 16:46 - 00687608 _____ (Prog Installer ) C:\Users\Patrycja\Downloads\Zuma Deluxe 1.0.exe 2015-02-13 20:42 - 2015-02-13 20:42 - 00700904 _____ (komputerswiat.pl) C:\Users\Patrycja\Downloads\Kurka Wodna.exe 2015-02-13 20:30 - 2015-02-13 20:30 - 00700904 _____ (komputerswiat.pl) C:\Users\Patrycja\Downloads\Slender The Eight Pages 0.9.7.exe 2015-02-14 08:20 - 2015-02-01 22:57 - 00000000 ____D () C:\ProgramData\{3d8ce3f9-e890-a8dc-3d8c-ce3f9e898fe7} EmptyTemp: W FRST wybierz Fix. Usun katalog C:\FRST i to wszystko. Odpowiedz Link Zgłoś