
-- 09 maja 2013, 14:16 --
I dlaczego uważacie że mam "syf" w Programy I Funkcje ??

I dlaczego uważacie że mam "syf" w Programy I Funkcje ??
To jest również związane z tym tematem:
post135680.html#p135680
Wrzuć logi:
OTL (OTL.txt + Extras.txt) --> http://www.hotfix.pl/obsluga-programu-otl-a143.htm
TDSSKiller --> http://www.hotfix.pl/instrukcja-obslugi ... r-a341.htm
Logi wklej na: Dostępne tylko dla zarejestrowanych użytkowników
Może tak prościej, wytłumacz a nie tak fachowo
"{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}" = BrowserProtect
"{889DF117-14D1-44EE-9F31-C5FB5D47F68B}" = Yontoo 2.051
"{C1C6816E-CBB3-A748-85F9-A8B47B68985B}" = ccontiNuetooSave
"{C670DCAE-E392-AA32-6F42-143C7FC4BDFD}" = SearchNewTab
"bi_uninstaller" = Bundled software uninstaller
"DealPly" = DealPly (remove only)
"DefaultTab Chrome" = DefaultTab Chrome
"HitmanPro37" = HitmanPro 3.7
"McAfee Security Scan" = McAfee Security Scan Plus
"NSS" = Norton Security Scan
"Optimizer Pro_is1" = Optimizer Pro v3.0
"OptimizerPro" = OptimizerPro
"SP_09b71135" = ContinueToSave 1.74
"SP_b0285714" = Search Assistant WebSearch 1.74
"StartNow Toolbar" = StartNow Toolbar
"DealPly" = DealPly
"lollipop" = Lollipop
"Mipony Download Manager Packages" = Mipony Download Manager Packages
Logi.
:OTL
SRV - File not found [Auto | Running] -- C:\Program Files\Yontoo\Y2Desktop.Updater.exe C:\Users\Piotrek\AppData\Roaming\Yontoo\YontooDesktop.exe -- (Yontoo Desktop Updater)
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&pid=512&r=2013/05/10&hid=1544433481&lg=EN&cc=PL&unqvl=14
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = Dostępne tylko dla zarejestrowanych użytkowników
IE - HKCU\..\SearchScopes,bProtectorDefaultScope = {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
IE - HKCU\..\SearchScopes,DefaultScope = {BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
IE - HKCU\..\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&affID=119370&tt=190313_wo1&babsrc=SP_ss&mntrId=8C99582C80139263
IE - HKCU\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&utm_source=b&utm_medium=bnl&ref=bnl&uid=ExcelStorXTechnologyXJ8160S_PVB300Q408XN1A08XN1AX®=1364583560
IE - HKCU\..\SearchScopes\{B224AA02-F7C8-3A2B-859F-560B80767E4A}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&src=defsearch&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=876&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.5.0&install_country=PL&install_date=20130507&user_guid=CED81C99B2734F87AB5C4EB329059E7A&machine_id=92fa6cea0a5e3a15191b5b3bf28cb4a9&browser=IE&os=win&os_version=6.1-x86-SP0&iesrc={referrer:source}
IE - HKCU\..\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}: "URL" = Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&pid=512&r=2013/05/10&hid=1544433481&lg=EN&cc=PL&unqvl=14
FF - prefs.js..browser.search.defaulturl: "http://websearch.lookforithere.info/?pid=512&r=2013/05/10&hid=1544433481&lg=EN&cc=PL&unqvl=14&l=1&q="
FF - prefs.js..browser.search.selectedEngine: "WebSearch"
FF - prefs.js..browser.search.selectedEngine,S: S", "WebSearch"
FF - prefs.js..browser.startup.homepage: "http://websearch.lookforithere.info/?pid=512&r=2013/05/10&hid=1544433481&lg=EN&cc=PL&unqvl=14"
FF - prefs.js..extensions.enabledAddons: superstart@enjoyfreeware.org:3.6.3
FF - prefs.js..extensions.enabledAddons: amo@dealplyshopping.com:2.0
FF - HKLM\Software\MozillaPlugins\@mcafee.com/McAfeeMssPlugin: C:\Program Files\McAfee Security Scan\3.0.318\npMcAfeeMss.dll (McAfee, Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{0F827075-B026-42F3-885D-98981EE7B1AE}: C:\ProgramData\BrowserProtect\2.6.1125.80\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\FirefoxExtension [2013-03-27 12:46:49 | 000,000,000 | ---D | M]
[2013-05-07 11:40:28 | 000,000,000 | ---D | M] (StartNow Toolbar) -- C:\Users\Piotrek\AppData\Roaming\mozilla\Firefox\Profiles\kjkyrhe4.default\extensions\{5911488E-9D1E-40ec-8CBB-06B231CC153F}
[2013-05-11 17:28:57 | 000,000,000 | ---D | M] (DealPly Shopping) -- C:\Users\Piotrek\AppData\Roaming\mozilla\Firefox\Profiles\kjkyrhe4.default\extensions\amo@dealplyshopping.com
[2013-05-10 22:32:57 | 000,000,000 | ---D | M] (ccontiNuetooSave) -- C:\Users\Piotrek\AppData\Roaming\mozilla\Firefox\Profiles\kjkyrhe4.default\extensions\o.enh@bhuvccsiyi.org
[2013-04-26 19:29:22 | 000,000,000 | ---D | M] (Super Start) -- C:\Users\Piotrek\AppData\Roaming\mozilla\Firefox\Profiles\kjkyrhe4.default\extensions\superstart@enjoyfreeware.org
[2013-05-10 22:32:57 | 000,000,000 | ---D | M] (SearchNewTab) -- C:\Users\Piotrek\AppData\Roaming\mozilla\Firefox\Profiles\kjkyrhe4.default\extensions\zkrcqmqj@uoe-.org
[2013-04-26 14:22:30 | 000,292,823 | ---- | M] () (No name found) -- C:\Users\Piotrek\AppData\Roaming\mozilla\firefox\profiles\kjkyrhe4.default\extensions\feca4b87-3be4-43da-a1b1-137c24220968@jetpack.xpi
[2013-04-26 19:29:23 | 000,032,665 | ---- | M] () (No name found) -- C:\Users\Piotrek\AppData\Roaming\mozilla\firefox\profiles\kjkyrhe4.default\extensions\YoutubeDownloader@PeterOlayev.com.xpi
[2013-04-12 00:36:11 | 000,009,057 | ---- | M] () (No name found) -- C:\Users\Piotrek\AppData\Roaming\mozilla\firefox\profiles\kjkyrhe4.default\extensions\{a3a5c777-f583-4fef-9380-ab4add1bc2a5}.xpi
[2013-04-26 19:29:25 | 000,014,248 | ---- | M] () (No name found) -- C:\Users\Piotrek\AppData\Roaming\mozilla\firefox\profiles\kjkyrhe4.default\extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi
[2013-03-27 12:42:49 | 000,001,294 | ---- | M] () -- C:\Users\Piotrek\AppData\Roaming\mozilla\firefox\profiles\kjkyrhe4.default\searchplugins\delta.xml
[2013-05-10 22:33:13 | 000,007,849 | ---- | M] () -- C:\Users\Piotrek\AppData\Roaming\mozilla\firefox\profiles\kjkyrhe4.default\searchplugins\WebSearch.xml
[2013-05-07 11:40:23 | 000,001,388 | ---- | M] () -- C:\Users\Piotrek\AppData\Roaming\mozilla\firefox\profiles\kjkyrhe4.default\searchplugins\yahoo-zugo.xml
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\agiifdoegghiodkolkpmglodciimddla\1\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\bphkilcpnjgeegfnmifeifcmkgjngknk\1.0_0\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cackjpjkhmdgabifjkpnkkkklalpdadl\1.0.2_0\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\fmfnfnpmhcllokmkepffndflpnadjmma\3.5.0.0_0\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\fogoognfboalffaenfonbjkkfdomcnmb\1\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbdabnfmdemcjjadpkpjibhhacggangd\2.2.3_0\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\jedihocednpliifpnhkgdjcfdocaaldl\1.0.0_0\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfnpfgjdhpopghfmomjmedpgecgjifcc\1_0\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.3_0\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgafcinpmmpklohkojmllohdhomoefph\1.0_0\
CHR - Extension: No name found = C:\Users\Piotrek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
O8 - Extra context menu item: Ściągaj z Mipony - file://C:\Program Files\MiPony\Browser\IEContext.htm File not found
[2013-05-10 22:33:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Symantec
[2013-05-10 22:33:15 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan
[2013-05-10 22:33:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\NSS
[2013-05-10 22:33:15 | 000,000,000 | ---D | C] -- C:\Program Files\Norton Security Scan
[2013-05-10 22:33:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\NSS\0307020.00A
[2013-05-10 22:33:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Norton
[2013-05-10 22:33:09 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
[2013-05-10 22:33:09 | 000,000,000 | ---D | C] -- C:\Program Files\NortonInstaller
[2013-05-10 14:10:26 | 000,000,000 | ---D | C] -- C:\ProgramData\StarApp
[2013-05-10 14:03:47 | 000,000,000 | ---D | C] -- C:\ProgramData\SearchNewTab
[2013-05-10 14:03:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SearchNewTab
[2013-05-10 14:03:39 | 000,000,000 | ---D | C] -- C:\Program Files\WebSearch
[2013-05-10 14:02:57 | 000,000,000 | ---D | C] -- C:\ProgramData\BetterSoft
[2013-05-10 14:02:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro
[2013-05-10 14:01:14 | 000,000,000 | ---D | C] -- C:\Program Files\ContinueToSave
[2013-05-10 14:00:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ccontiNuetooSave
[2013-05-10 14:00:39 | 000,000,000 | ---D | C] -- C:\ProgramData\ccontiNuetooSave
[2013-05-10 13:57:17 | 000,000,000 | ---D | C] -- C:\ProgramData\InstallMate
[2013-05-10 11:05:21 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Optimizer Pro
[2013-05-10 11:05:20 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2013-05-10 11:05:13 | 000,000,000 | ---D | C] -- C:\Program Files\Optimizer Pro
[2013-05-10 11:05:08 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Lollipop
[2013-05-10 11:02:50 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\DealPly
[2013-05-10 11:02:46 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DealPly
[2013-05-10 11:02:46 | 000,000,000 | ---D | C] -- C:\Program Files\DealPly
[2013-05-07 11:40:25 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\StartNow Toolbar
[2013-05-07 11:40:24 | 000,000,000 | ---D | C] -- C:\Program Files\StartNow Toolbar
[2013-04-12 00:25:02 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2013-04-12 00:25:00 | 000,000,000 | ---D | C] -- C:\Program Files\McAfee Security Scan
[2013-04-12 00:25:07 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee Security Scan
:Services
gupdate
gupdatem
:Files
C:\Program Files\Google\Update
C:\found.*
C:\Windows\tasks\*.*
:Reg
[-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
:Commands
[clearallrestorepoints]
[emptytemp]
To są logi z AdwCleaner:
Użytkownicy przeglądający to forum: Obecnie na forum nie ma żadnego zarejestrowanego użytkownika i 4 gości