2015-03-20 21:31 - 2015-03-20 21:32 - 00719424 _____ (Internet Application ) C:\Users\user\Downloads\Celestia(12949)-dp.exe
2015-03-20 20:45 - 2015-03-20 20:46 - 00719424 _____ (Internet Application ) C:\Users\user\Downloads\Stellarium(12626)-dp.exe
Daję też do usunięcia te dwie instalki, bo do nich na Dobrych Programach, doczepili szkodliwe śmieci, które teraz musieliśmy usuwać.
Otwórz Notatnik i wklej w nim:
HKU\S-1-5-21-2864835783-246813697-470874068-1000\Software\Classes\.exe: exefile => <===== ATTENTION!
HKU\S-1-5-21-2864835783-246813697-470874068-1000\Software\Classes\exefile: <===== ATTENTION!
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2864835783-246813697-470874068-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
SearchScopes: HKU\.DEFAULT -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1422573231&from=zbd1&uid=st3250410as_6ry6mzenxxxx6ry6mzen&q={searchTerms}
SearchScopes: HKU\S-1-5-19 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1422573231&from=zbd1&uid=st3250410as_6ry6mzenxxxx6ry6mzen&q={searchTerms}
SearchScopes: HKU\S-1-5-20 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1422573231&from=zbd1&uid=st3250410as_6ry6mzenxxxx6ry6mzen&q={searchTerms}
S2 Update Special Box; "C:\Program Files\Special Box\updateSpecialBox.exe" [X]
S2 Util Special Box; "C:\Program Files\Special Box\bin\utilSpecialBox.exe" [X]
R1 iSafeKrnl; C:\Program Files\Elex-tech\YAC\iSafeKrnl.sys
C:\Program Files\Elex-tech
C:\Program Files\Special Box
S2 sbapifs; system32\DRIVERS\sbapifs.sys [X]
C:\Users\user\Downloads\Celestia(12949)-dp.exe
C:\Users\user\Downloads\Stellarium(12626)-dp.exe
EmptyTemp:
Plik zapisz pod nazwą
fixlist.txt i umieść obok FRST.
Uruchom
FRST i kliknij przycisk
Fix.
----------------------
Jeśli będzie OK, to będziemy kończyć:
Otwórz Notatnik i wklej w nim:
DeleteQuarantine:
Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij w Fix.
przez SHIFT+DEL usuń pozostały folder C:\FRST.
W Adw-Cleaner kliknij na przycisk
Odinstaluj (
UNINSTALL).
.