Otwórz notatnik systemowy i wklej:
Task: {01090826-9167-454B-BB1E-44BD6B5BEB13} - System32\Tasks\{46A8672C-B158-4104-8EBB-64A0092DFDAF} = pcalua.exe -a C:\Users\Kuba\AppData\Roaming\sweet-page\UninstallManager.exe -c -ptid=cor
Task: {CCCF52EA-54C6-4488-B3A7-7E8C017FF721} - System32\Tasks\{A9057BAE-4FBE-4DA0-9D6A-F38066615CC3} = Chrome.exe http://www.skype.com/go/downloading?source=lightinstalleramp;ver=6.16.0.105amp;LastError=12007
Task: {E05ECC76-F205-49BD-A93A-E53764DCAABC} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1280561678-1677291876-3431677069-1001UA = C:\Users\Kuba\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-07-10] (Facebook Inc.)
Task: {F010EFA9-30A5-41EA-8CC0-08BE5C28B4F6} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1280561678-1677291876-3431677069-1001Core = C:\Users\Kuba\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-07-10] (Facebook
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1280561678-1677291876-3431677069-1001Core.job = C:\Users\Kuba\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1280561678-1677291876-3431677069-1001UA.job = C:\Users\Kuba\AppData\Local\Facebook\Update\FacebookUpdate.exe
HKU\S-1-5-21-1280561678-1677291876-3431677069-1001\...\Policies\Explorer: []
GroupPolicy: Group Policy on Chrome detected ======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction ======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO-x32: Crazy Score - {f439aa7e-a2a0-4635-99a2-164180e848ca} - C:\Program Files (x86)\Crazy Score\Extensions\f439aa7e-a2a0-4635-99a2-164180e848ca.dll No File
CHR Extension: (Bookmark Manager) - C:\Users\Kuba\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-29]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]
CHR HKLM-x32\...\Chrome\Extension: [lpoimibckejjdjcfbdnajaicnklhfplh] - https://chrome.google.com/webstore/detail/lpoimibckejjdjcfbdnajaicnklhfplh
StartMenuInternet: Google Chrome.C4HN4LUZSG6ZMM5KU4O4DYHYNY - c:\users\kuba\appdata\local\google\chrome\application\chrome.exe
U3 a9kqczel; C:\Windows\System32\Drivers\a9kqczel.sys [0] (Microsoft Corporation) ==== ATTENTION (zero byte File/Folder)
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
2015-05-29 11:29 - 2015-05-29 11:42 - 00000000 ____ D () C:\AdwCleaner
EmptyTemp:
Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
Zrobione i co dalej ?