Elektroda.com
Elektroda.com
X

virus problem - I can't install adwcleaner, malwarebytes doesn't work,

michalwt 3099 2
This content has been translated flag-pl » flag-en View the original version here.
  • #1
    michalwt
    Level 2  
    Hello,
    As in the title - I have a problem installing adwcleaner - a virus crept in me that blocks the installation of this program and most anti-viruses. In addition, VIDSquare advertisements appear in chrome.
    I scanned using ESET - it removed something like that, but I still can't install adwcleaner etc.
    Norton did not improve the situation either.

    in the FRST attachment and addition - I saw that you need something like that, so I did it, completely without idea what for what and how, so if someone is tempted to help me, then I am asking for a simple language answer :)

    thank you in advance

    Regards,
    Michael
  • Helpful post
    #2
    Kolobos
    IT specialist
    Wykonaj Fixlist.txt dla FRST:
    CustomCLSID: HKU\S-1-5-21-360650341-3038511571-2719332306-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Michał\AppData\Local\Microsoft\OneDrive\17.3.7131.1115_1\amd64\FileSyncShell64.dll => Brak pliku
    CustomCLSID: HKU\S-1-5-21-360650341-3038511571-2719332306-1001_Classes\CLSID\{3E3AD4BD-346A-460A-80E8-90699B75C00B}\InprocServer32 -> C:\Users\Michał\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.194\GatewayActiveX-x64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-360650341-3038511571-2719332306-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Michał\AppData\Local\Microsoft\OneDrive\17.3.7131.1115_1\amd64\FileSyncShell64.dll => Brak pliku
    CustomCLSID: HKU\S-1-5-21-360650341-3038511571-2719332306-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Michał\AppData\Local\Microsoft\OneDrive\17.3.7131.1115_1\amd64\FileSyncShell64.dll => Brak pliku
    CustomCLSID: HKU\S-1-5-21-360650341-3038511571-2719332306-1001_Classes\CLSID\{cece6816-6107-4dc7-bdbc-20cd5ae1ffed}\localserver32 -> C:\ProgramData\Lenovo\ImController\Plugins\LenovoAppPromotionPlugin\x64\DesktopToastsHelper.exe => Brak pliku
    ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku
    ShellIconOverlayIdentifiers-x32-x32: [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] -> {99FD978C-D287-4F50-827F-B2C658EDA8E7} => C:\Program Files (x86)\MICROS~1\Office14\GROOVEEX.DLL -> Brak pliku
    ShellIconOverlayIdentifiers-x32-x32-x32: [Groove Explorer Icon Overlay 2 (GFS Stub)] -> {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC} => C:\Program Files (x86)\MICROS~1\Office14\GROOVEEX.DLL -> Brak pliku
    ShellIconOverlayIdentifiers-x32-x32-x32-x32: [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] -> {920E6DB1-9907-4370-B3A0-BAFC03D81399} => C:\Program Files (x86)\MICROS~1\Office14\GROOVEEX.DLL -> Brak pliku
    ShellIconOverlayIdentifiers-x32-x32-x32-x32-x32: [Groove Explorer Icon Overlay 3 (GFS Folder)] -> {16F3DD56-1AF5-4347-846D-7C10C4192619} => C:\Program Files (x86)\MICROS~1\Office14\GROOVEEX.DLL -> Brak pliku
    ShellIconOverlayIdentifiers-x32-x32-x32-x32-x32-x32: [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] -> {2916C86E-86A6-43FE-8112-43ABE6BF8DCC} => C:\Program Files (x86)\MICROS~1\Office14\GROOVEEX.DLL -> Brak pliku
    Task: {1808913B-AA38-4E90-83CD-F366ED5ABECF} - \ZUO Chat Robot Editor -> Brak pliku C:\Program Files\rempl\remsh.exe
    Task: {3D203520-D397-45E5-8C7F-5756665FF787} - \KMSAutoNet -> Brak pliku zcdxqs4vufqt.exe
    Task: {7803FFF7-16AC-4D8C-9E29-EC80A3E160EA} - System32\Tasks\Microsoft\Windows\rempl\shell => C:\Program Files\rempl\remsh.exe
    HKLM\...\Run: [SERVICE] => [X]
    HKLM-x32\...\Run: [Tv-Plug-In] => "C:\Program Files (x86)\Tv-Plug-In\Tv-Plug-In.exe" nogui
    HKLM\ DisallowedCertificates: 03D22C9C66915D58C88912B64C1F984B8344EF09 (Comodo Security Solutions)
  • #3
    michalwt
    Level 2  
    Thank you kindly, it helped, I recommend this gentleman
    :)