
FRST.txt
https://www.dropbox.com/s/i45h37cj9h3o8z2/FRST.txt?dl=0
Addition.txt
https://www.dropbox.com/s/ic2vz4aiux42apg/Addition.txt?dl=0
Proszę o pomoc
Task: {64912C83-5A8D-40FE-B5B2-D13A1A4B1844} - \AdobeFlashPlayerUpdate -> Brak pliku <==== UWAGA
Task: {809477AE-7D6C-4D6F-B35A-F22D0E21D983} - \AdobeFlashPlayerUpdate 2 -> Brak pliku <==== UWAGA
Task: {9201A8B0-F1BB-4020-885E-083F282BEAF1} - \Program aktualizacji online firmy Adobe. -> Brak pliku <==== UWAGA
R1 {23965273-0465-4e7f-993a-3e299efbd905}Gw64; C:\Windows\System32\drivers\{23965273-0465-4e7f-993a-3e299efbd905}Gw64.sys [48784 2015-01-18] (StdLib)
R1 {665e51a3-da93-4d76-a3a4-e4194c384ce8}Gw64; C:\Windows\System32\drivers\{665e51a3-da93-4d76-a3a4-e4194c384ce8}Gw64.sys [48784 2015-01-24] (StdLib)
R1 {8590482e-6fbf-4e86-9e78-2d81034791b1}Gw64; C:\Windows\System32\drivers\{8590482e-6fbf-4e86-9e78-2d81034791b1}Gw64.sys [48784 2015-01-21] (StdLib)
R1 {8d3b604a-9bd5-4112-8d4a-58ce2f912071}Gw64; C:\Windows\System32\drivers\{8d3b604a-9bd5-4112-8d4a-58ce2f912071}Gw64.sys [48784 2015-01-15] (StdLib)
R1 {c9dd49c1-5974-41ee-8826-de0b55e8da26}Gw64; C:\Windows\System32\drivers\{c9dd49c1-5974-41ee-8826-de0b55e8da26}Gw64.sys [48784 2015-01-14] (StdLib)
U3 a2dcl2ek; C:\Windows\System32\Drivers\a2dcl2ek.sys [0 ] (Advanced Micro Devices) <==== UWAGA (zerobajtowy plik/folder)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S1 ccnfd_1_10_0_2; system32\drivers\ccnfd_1_10_0_2.sys [X]
CHR HomePage: Default -> hxxp://www.claro-search.com/?affID=114506&tt=4812_8&babsrc=HP_clro&mntrId=860bbe7000000000000000266cb338ee
CHR Plugin: (Shockwave Flash) - C:\Users\Polska\AppData\Local\Google\Chrome\Application\21.0.1180.75\PepperFlash\pepflashplayer.dll => Brak pliku
CHR Plugin: (Shockwave Flash) - C:\Users\Polska\AppData\Local\Google\Chrome\Application\47.0.2526.111\gcswf32.dll => Brak pliku
CHR Plugin: (Shockwave Flash) - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_270.dll => Brak pliku
CHR Plugin: (Native Client) - C:\Users\Polska\AppData\Local\Google\Chrome\Application\47.0.2526.111\ppGoogleNaClPluginChrome.dll => Brak pliku
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Polska\AppData\Local\Google\Chrome\Application\47.0.2526.111\pdf.dll => Brak pliku
CHR Plugin: (McAfee SiteAdvisor) - C:\Users\Polska\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.50.146.1_0\McChPlg.dll => Brak pliku
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll => Brak pliku
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll => Brak pliku
CHR Plugin: (Google Update) - C:\Users\Polska\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll => Brak pliku
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll => Brak pliku
FF Extension: z - C:\Program Files (x86)\Mozilla Firefox\extensions\{a566a5cb-54f1-4ca0-4f76-dc2608565c16} [2016-01-07] [Brak podpisu cyfrowego]
Toolbar: HKLM - Brak nazwy - {ae07101b-46d4-4a98-af68-0333ea26e113} - Brak pliku
Toolbar: HKLM-x32 - Brak nazwy - {ae07101b-46d4-4a98-af68-0333ea26e113} - Brak pliku
Toolbar: HKU\S-1-5-21-1245130832-3198572086-2083652730-1000 -> Brak nazwy - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Brak pliku
Toolbar: HKU\S-1-5-21-1245130832-3198572086-2083652730-1000 -> Brak nazwy - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Brak pliku
SearchScopes: HKU\S-1-5-21-1245130832-3198572086-2083652730-1000 -> {BB45B30B-D636-4592-8892-23C8FCC97E71} URL =
SearchScopes: HKU\S-1-5-21-1245130832-3198572086-2083652730-1000 -> {FB41E0DD-0180-4A37-9967-883F1D3970BA} URL =
SearchScopes: HKLM-x32 -> {BB45B30B-D636-4592-8892-23C8FCC97E71} URL = hxxp://startsear.ch/?aff=1&src=sp&cf=112deded-72b1-11e1-a971-00266cb338ee&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1245130832-3198572086-2083652730-1000 -> DefaultScope {FB41E0DD-0180-4A37-9967-883F1D3970BA} URL =
SearchScopes: HKU\S-1-5-21-1245130832-3198572086-2083652730-1000 -> bProtectorDefaultScope {8D50E600-3714-4E6E-BCCE-58E1003EE4C5}
SearchScopes: HKU\S-1-5-21-1245130832-3198572086-2083652730-1000 -> {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL =
SearchScopes: HKU\S-1-5-21-1245130832-3198572086-2083652730-1000 -> {0B39AA6E-EA6A-42FA-8792-57B773AEE253} URL =
SearchScopes: HKU\S-1-5-21-1245130832-3198572086-2083652730-1000 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL =
SearchScopes: HKLM-x32 -> DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=PL&userid=c568ea1f-ffe0-4cf7-8885-3224072c7812&affid=110774&searchtype=ds&babsrc=lnkry&q={searchTerms}
SearchScopes: HKLM-x32 -> {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OPENCANDY&dpid=OPENCANDYAPRIL&co=PL&userid=c568ea1f-ffe0-4cf7-8885-3224072c7812&affid=110774&searchtype=ds&babsrc=lnkry&q={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKU\S-1-5-21-1245130832-3198572086-2083652730-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
GroupPolicy: Ograniczenia - Chrome <======= UWAGA
CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
HKLM-x32\...\Run: [] => [X]
EmptyTemp:
DeleteQuarantine:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 25 gości