...
Запустите FRST и нажмите один раз на кнопку Fix и подождите.
| Код |
|---|
FirewallRules: [{1400C7D4-92BA-431E-9872-F3E9009E77BE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe => No File
FirewallRules: [{D131A757-A60B-4E3D-931A-F436F11B1679}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe => No File
FirewallRules: [{22ECDC23-644F-4BC6-9D62-555593E42C6A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe => No File
FirewallRules: [{1BFE1DB1-CEE8-4A05-856B-877F9BF9FDE9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe => No File
FirewallRules: [{4F1E302F-0F37-4D6A-AC2A-793B5D10DF4C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe => No File
FirewallRules: [{8E01D7A7-9D05-498F-83DE-DA03E31CAF7A}] => (Allow) C:\Users\House\AppData\Local\MediaGet2\mediaget.exe => No File
FirewallRules: [{40D2A167-C15B-4A3A-B3A2-9C08FD5076F9}] => (Allow) C:\Users\House\AppData\Local\MediaGet2\mediaget.exe => No File
FirewallRules: [{5A48E2EB-6BD4-489C-8874-AFDF17B2FE70}] => (Allow) C:\Users\1111\AppData\Roaming\uTorrent\uTorrent.exe => No File
FirewallRules: [{82AC24CD-2766-4B40-93F5-7DA7F260A715}] => (Allow) C:\Users\1111\AppData\Roaming\uTorrent\uTorrent.exe => No File
FirewallRules: [{1BBD62DB-BEF8-4199-BF01-F7EA71B8DE04}] => (Allow) C:\Program Files (x86)\Download Studio\dstudio.exe => No File
FirewallRules: [{F295F593-EB36-43CF-9940-8F81BF01E88E}] => (Allow) C:\Program Files (x86)\Download Studio\dstudio-gui.exe => No File
FirewallRules: [{21F6A4B6-F6EB-41B0-8F8E-E45F160A0CFB}] => (Allow) C:\Program Files (x86)\Download Studio\dstudio.exe => No File
FirewallRules: [{553DE81C-E0AB-445D-89B9-A8EB01B1AF7F}] => (Allow) C:\Program Files (x86)\Download Studio\dstudio-gui.exe => No File
FirewallRules: [{F374C14B-00D7-4781-8884-ADB6834FDB8F}] => (Allow) C:\Program Files (x86)\Malwarebytes\mbam.exe => No File
FirewallRules: [{17D23310-5B46-4491-A543-D099067C550C}] => (Allow) C:\Program Files (x86)\Malwarebytes\mbam.exe => No File
FirewallRules: [{44C72D71-0257-4A72-A18E-ADB3E0361811}] => (Allow) C:\Program Files (x86)\OpenDNS\cli.exe (Cisco Systems, Inc.) [File not signed]
FirewallRules: [{1617FACA-1A6A-4640-B76A-26FF60EE7FDD}] => (Allow) C:\Program Files (x86)\OpenDNS\cli.exe (Cisco Systems, Inc.) [File not signed]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
GroupPolicy: Restriction - Windows Defender <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {67783F40-0A26-45A3-BD43-36B6A368C246} - \OpenDNS Standalone Update Task -> No File <==== ATTENTION
Task: {7AE85B6F-0904-4380-843F-ACFE6A0C068B} - \Microsoft\Windows\Media Center\SqlLiteRecoveryTask -> No File <==== ATTENTION
Task: {97EC2DD0-CF8B-4896-B963-80B4234332FF} - \{FB89AB2F-A816-46D6-8C45-AC1E249A8340} -> No File <==== ATTENTION
Task: {993A2C04-6459-4EC8-94DC-7396BE6FB9DA} - \Microsoft\Windows\Media Center\ObjectStoreRecoveryTask -> No File <==== ATTENTION
Task: {DAB8F1C6-A3AC-49E1-9637-4097BB64EDDC} - \Microsoft\Windows\Media Center\MediaCenterRecoveryTask -> No File <==== ATTENTION
Task: {DAEBCC54-148E-4188-AA99-3459328B2AFF} - \Microsoft\Windows\Media Center\PvrScheduleTask -> No File <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [X]
S4 nvvhci; system32\DRIVERS\nvvhci.sys [X]
2020-09-26 10:17 - 2020-09-26 10:17 - 000000000 ____D C:\Program Files (x86)\OpenDNS
2020-10-17 15:59 - 2020-02-02 08:50 - 000000000 ____D C:\Users\Все пользователи\Doctor Web
2020-10-17 15:59 - 2020-02-02 08:50 - 000000000 ____D C:\ProgramData\Doctor Web
2020-10-17 06:21 - 2020-01-29 19:30 - 000000000 ____D C:\KVRT_Data
2020-10-17 06:15 - 2020-08-07 18:54 - 000000000 ____D C:\Program Files (x86)\Malwarebytes
2020-10-16 17:49 - 2018-05-20 20:43 - 000000000 ____D C:\Users\Все пользователи\AVAST Software
2020-10-16 17:49 - 2018-05-20 20:43 - 000000000 ____D C:\ProgramData\AVAST Software
2020-10-16 17:42 - 2020-03-16 13:21 - 000000000 ____D C:\Users\House\Doctor Web
2020-09-21 19:25 - 2020-03-25 08:53 - 000001206 _____ C:\Users\Все пользователи\AV.js
2020-09-21 19:25 - 2020-03-25 08:53 - 000001206 _____ C:\ProgramData\AV.js
2020-03-25 08:53 - 2020-09-21 19:25 - 000001206 _____ () C:\ProgramData\AV.js
2020-03-25 08:53 - 2020-09-21 19:25 - 000001206 _____ () C:\Users\Все пользователи\AV.js
EmptyTemp:
Reboot:
|
Программа FRST создаст лог-файл (Fixlog.txt). Пожалуйста, прикрепите его в следующем сообщении!
2) Выполните лог в AdwCleaner
после завершения сканирования:
Записи относящиеся к Mail.Ru и Yandex можете не удалять ( если пользуетесь программой )
На вкладке:
Папки (Folders) для Mail.Ru и Yandex снимите [V]
Удалите найденное в AdwCleaner по кнопке Очистить (Clean), подтвердите действие
с автоперезагрузкой
3) Проверяем, как работает система...
и
Пишем по _общему результату лечения.