Stránka 2 z 2

Re: Poprosím o preventívnu kontrolu :)

Napsal: 02 dub 2020 18:10
od Conder
:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    CMD: type "C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js"
    CMD: type "C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg"
    HKU\S-1-5-21-3762195648-961049500-3212066536-1001\...\MountPoints2: {11795e88-3c7a-11ea-92c7-1c6f65486b6d} - "E:\Lenovo_Suite.exe" 
    FF NewTab: Mozilla\Firefox\Profiles\es12psez.default -> hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10420__200127
    AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [488]
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj

Re: Poprosím o preventívnu kontrolu :)

Napsal: 02 dub 2020 19:28
od Sudoku33
Fix result of Farbar Recovery Scan Tool (x64) Version: 29-03-2020
Ran by Mr.X (02-04-2020 20:25:00) Run:1
Running from C:\Users\Mr.X\Desktop
Loaded Profiles: Mr.X (Available Profiles: Mr.X)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
CMD: type "C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js"
CMD: type "C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg"
HKU\S-1-5-21-3762195648-961049500-3212066536-1001\...\MountPoints2: {11795e88-3c7a-11ea-92c7-1c6f65486b6d} - "E:\Lenovo_Suite.exe"
FF NewTab: Mozilla\Firefox\Profiles\es12psez.default -> hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10420__200127
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [488]

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 7
Average :
Sum : 2404627
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========


========= type "C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js" =========

// kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js
pref("general.config.obscure_value", 0);
pref("general.config.filename", "kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg");

========= End of CMD: =========


========= type "C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg" =========

// kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg
lockPref("security.enterprise_roots.enabled", true);

========= End of CMD: =========

HKU\S-1-5-21-3762195648-961049500-3212066536-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{11795e88-3c7a-11ea-92c7-1c6f65486b6d} => removed successfully
"Firefox newtab" => removed successfully
C:\Users\Public\Shared Files => ":VersionCache" ADS removed successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 7512840 B
Java, Flash, Steam htmlcache => 376264822 B
Windows/system/drivers => 0 B
Edge => 23552 B
Chrome => 0 B
Firefox => 686461421 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 0 B
Mr.X => 6973209 B

RecycleBin => 0 B
EmptyTemp: => 1 GB temporary data Removed.

================================


The system needed a reboot.

==== End 1 Fixlog 20:25:32 ====

Re: Poprosím o preventívnu kontrolu :)

Napsal: 02 dub 2020 19:29
od Sudoku33
+ ihneď po čístení s FRST som urobil aj s AdWareCleaner, posielam log :)
Taktiež som nainštaloval Adguard, ktorý mi zatiaľ nevyhodil jednu jedinú reklamu, + aj nastavenia má veľmi super, odporúčam, dbá na súkromie, keby niekto potreboval o ňom viac čo je v ňom, tak súkromná správa, alebo nech tu odpovie :) :D

# -------------------------------
# Malwarebytes AdwCleaner 8.0.3.0
# -------------------------------
# Build: 03-03-2020
# Database: 2020-03-23.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 04-02-2020
# Duration: 00:00:00
# OS: Windows 10 Home
# Cleaned: 0
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete IFEO
[+] Delete Prefetch
[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1406 octets] - [02/04/2020 15:11:42]
AdwCleaner[S01].txt - [1467 octets] - [02/04/2020 20:27:29]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########

Re: Poprosím o preventívnu kontrolu :)

Napsal: 03 dub 2020 17:53
od Conder
Tak logy vyzeraju OK. Ak nie su ziadne problemy, tak mozes opat upratat cez DelFix :)