Otwórz notatnik i wklej do niego:
Kod:
CloseProcesses:
ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => -> Brak pliku
ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => -> Brak pliku
ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => -> Brak pliku
ShellIconOverlayIdentifiers: [GGDriveOverlay1] -> {E68D0A50-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku
ShellIconOverlayIdentifiers: [GGDriveOverlay2] -> {E68D0A51-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku
ShellIconOverlayIdentifiers: [GGDriveOverlay3] -> {E68D0A52-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku
ShellIconOverlayIdentifiers: [GGDriveOverlay4] -> {E68D0A53-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKU\S-1-5-21-3535244391-3519364958-2513344911-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp: //www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp: //www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3535244391-3519364958-2513344911-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp: //www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3535244391-3519364958-2513344911-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp: //onet.pl/
SearchScopes: HKU\S-1-5-21-3535244391-3519364958-2513344911-1000 -> DefaultScope {E1CAA7C1-C417-4195-BF79-25664B5177E1} URL = hxxp: //www.google.com/search?hl=pl&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3535244391-3519364958-2513344911-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3535244391-3519364958-2513344911-1000 -> {6EF0D215-4CF9-4108-9290-268B5897C1CA} URL = hxxp: //www.bing.com/search?FORM=U453DF&PC=U453&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-3535244391-3519364958-2513344911-1000 -> {72181415-50AC-4098-82CD-3C3299320E5C} URL = hxxp: //www.google.com/search?hl=pl&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3535244391-3519364958-2513344911-1000 -> {E1CAA7C1-C417-4195-BF79-25664B5177E1} URL = hxxp: //www.google.com/search?hl=pl&q={searchTerms}
FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku]
S3 BCM42RLY; system32\drivers\BCM42RLY.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
C: \ProgramData\cis685.exe
Task: {115E3423-7C96-4A9A-8E10-09546449BDCF} - \Program aktualizacji online firmy Adobe. -> Brak pliku <==== UWAGA
Task: {6F7C3C04-F318-4894-B2F2-AC7A312F7B91} - \SidebarExecute -> Brak pliku <==== UWAGA
Task: {7B79F713-AE6A-43EC-8F7F-E6F047483B5D} - \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser -> Brak pliku <==== UWAGA
Task: {8E0B649A-D219-4276-99D7-8D7E353FA70A} - System32\Tasks\CIS_{15198508-521A-4D69-8E5B-B94A6CCFF805} => C: \ProgramData\cis1287.exe <==== UWAGA
AlternateDataStreams: C: \Windows\system32\aitstatic.exe: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\bcmihvsrv64.dll: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\bcmihvui64.dll: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\BCMLogon.dll: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\bcmttls.dll: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\bcmwlcoi.dll: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\BCMWLCPL.CPL: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\bcmwlu00.exe: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\centel.dll: $CmdTcID [130]
AlternateDataStreams: C: \Windows\system32\CompatTelRunner.exe: $CmdTcID [130]
AlternateDataStreams: C: \Windows\system32\LkmdfCoInst.dll: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\LMouFiltCoInst.dll: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\LogiLDA.DLL: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\powertracker.dll: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\Uninst_EAPModules.bat: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\vcredist_x64.bat: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\vcredist_x64.exe: $CmdTcID [130]
AlternateDataStreams: C: \Windows\system32\Drivers\BCMWL664.SYS: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\Drivers\btwaudio.sys: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\Drivers\btwavdt.sys: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\Drivers\LEqdUsb.sys: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\Drivers\LHidEqd.sys: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\Drivers\LHidFilt.Sys: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\Drivers\LMouFilt.Sys: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\Drivers\MijXfilt.sys: $CmdTcID [64]
AlternateDataStreams: C: \Windows\system32\Drivers\xusb21.sys: $CmdTcID [64]
AlternateDataStreams: C: \Users\TOMEK\Desktop\ImageToPDForXPS.exe: $CmdTcID [64]
AlternateDataStreams: C: \Users\TOMEK\Desktop\ImageToPDForXPS.exe: $CmdZnID [26]
AlternateDataStreams: C: \Users\TOMEK\Downloads\64241_Bluetooth-Broadcom(v6.5.1.3800)(1).zip: $CmdTcID [64]
AlternateDataStreams: C: \Users\TOMEK\Downloads\64241_Bluetooth-Broadcom(v6.5.1.3800)(1).zip: $CmdZnID [26]
AlternateDataStreams: C: \Users\TOMEK\Downloads\windows7boot-64bit.bif: $CmdTcID [64]
AlternateDataStreams: C: \Users\TOMEK\Downloads\windows7boot-64bit.bif: $CmdZnID [26]
CMD: dir /a "C: \Program Files"
CMD: dir /a "C: \Program Files (x86)"
CMD: dir /a "C: \Program Files\Common Files\System"
CMD: dir /a "C: \Program Files (x86)\Common Files\System"
CMD: dir /a C: \ProgramData
CMD: dir /a C: \Users\TOMEK\AppData\Local
CMD: dir /a C: \Users\TOMEK\AppData\LocalLow
CMD: dir /a C: \Users\TOMEK\AppData\Roaming
EmptyTemp:
Zapisz notatnik jako "fixlist',umieść obok "FRST",uruchom "FRST" a w nim opcje "Fix".Po czyszczeniu i restarcie kompa otrzymasz raport z czyszczenia "fixlog",pokaż go na forum. Następnie pobierz "
AdwCleaner" i "
JRT" użyj po kolei i pokaż raporty z czyszczenia.Na koniec przeskanuj system "
MBAM" i pokaż wyniki.
Dzieje się coś niepokojącego w systemie, komputerze ?
Dostarcz logi z
FRST (NOWE, nie zapomnij zahaczykować
Addition.txt i
Shourt.txt)