Odinstaluj Reimage Repair,SpyHunter 4.Otwórz notatnik systemowy i wklej: CustomCLSID: HKU\S-1-5-21-1745738486-1942195983-1392694550-1002_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-50F2B5A10A61}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => Brak pliku ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Brak pliku ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Brak pliku ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Brak pliku ContextMenuHandlers01: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Brak pliku ContextMenuHandlers01: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Brak pliku ContextMenuHandlers03: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Brak pliku Task: {78AE93F6-E8DB-41E9-B16D-CDFC5BE1B9C9} - System32\Tasks\Reimage Reminder => C:\Program Files\Reimage\Reimage Repair\ReimageReminder.exe [2017-07-03] (Reimage ltd.) <==== UWAGA Task: {DF01BFEA-050B-4F25-B6F1-47589B2891AF} - System32\Tasks\ReimageUpdater => C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [2017-05-14] (Reimage®) <==== UWAGA Task: {F9395159-5035-4927-B338-BA6A792446CC} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2017-07-12] (Enigma Software Group USA, LLC.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-19\...\Run: [] => [X] HKU\S-1-5-20\...\Run: [] => [X] HKU\S-1-5-21-1745738486-1942195983-1392694550-1002\...\Run: [] => [X] HKU\S-1-5-21-1745738486-1942195983-1392694550-1002\...\MountPoints2: {58892fc7-21d9-11e7-94d6-18a6f7099a99} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-1745738486-1942195983-1392694550-1002\...\MountPoints2: {588930fd-21d9-11e7-94d6-18a6f7099a99} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-1745738486-1942195983-1392694550-1002\...\MountPoints2: {6c07264e-34ed-11e7-94e1-4ccc6a4e7f1e} - "E:\start.exe" HKU\S-1-5-21-1745738486-1942195983-1392694550-1002\...\MountPoints2: {887b4185-7100-11e6-9437-806e6f6e6963} - "D:\Autorun.exe" HKU\S-1-5-21-1745738486-1942195983-1392694550-1002\...\MountPoints2: {bd4ab04a-8efb-11e6-944f-4ccc6a4e7f1e} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-18\...\Run: [] => [X] GroupPolicy: Ograniczenia <==== UWAGA GroupPolicy\User: Ograniczenia <==== UWAGA HKU\S-1-5-21-1745738486-1942195983-1392694550-1002\Software\Microsoft\Internet Explorer\Main,Start Page = CHR DefaultSearchURL: Default -> hxxp://go.mail.ru/distib/ep/?q={searchTerms}&product_id=%7B9D85C8D8-2ED3-4B0D-ADA1-CC0B8BA10F43%7D&gp=811041 CHR DefaultSearchKeyword: Default -> mail.ru CHR DefaultSuggestURL: Default -> hxxp://suggests.go.mail.ru/ff3?q={searchTerms} CHR Extension: (Norton Security Toolbar) - C:\Users\Aleksander Podlewski\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe [2017-04-05] S2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [8515952 2017-05-14] (Reimage®) S2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\Sh4Service.exe [883896 2017-07-12] (Enigma Software Group USA, LLC.) S2 HuaweiHiSuiteService64.exe; "C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe" -/service [X] 2017-07-12 22:11 - 2017-07-12 22:11 - 00003502 _____ C:\Windows\System32\Tasks\SpyHunter4Startup 2017-07-12 22:11 - 2017-07-12 22:11 - 00001132 _____ C:\Users\Aleksander Podlewski\Desktop\SpyHunter.lnk 2017-07-12 22:09 - 2017-07-12 22:10 - 00000000 ____D C:\sh4ldr 2017-07-12 21:47 - 2017-07-12 21:47 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys 2017-07-12 21:40 - 2017-07-12 21:40 - 00000000 ____D C:\Program Files\Enigma Software Group 2017-07-12 21:35 - 2017-07-12 21:40 - 05103792 _____ (Enigma Software Group USA, LLC.) C:\Users\Aleksander Podlewski\Downloads\SpyHunter-Installer (2).exe 2017-07-12 21:23 - 2017-07-12 21:23 - 01052260 _____ C:\Users\Aleksander Podlewski\Downloads\SpyHunter-Installer (1).exe.369otw9.partial 2017-07-12 17:23 - 2017-07-12 17:23 - 00003608 _____ C:\Windows\System32\Tasks\Reimage Reminder 2017-07-12 17:16 - 2017-07-12 17:16 - 00004382 _____ C:\Windows\System32\Tasks\ReimageUpdater 2017-07-12 17:09 - 2017-07-12 17:23 - 00000000 ____D C:\rei 2017-07-12 17:09 - 2017-07-12 17:19 - 00000000 ____D C:\ProgramData\Reimage Protector 2017-07-12 17:09 - 2017-07-12 17:16 - 00000000 ____D C:\Program Files\Reimage 2017-07-12 17:09 - 2017-07-12 17:09 - 00001984 _____ C:\Users\Public\Desktop\PC Scan & Repair by Reimage.lnk 2017-07-12 17:09 - 2017-07-12 17:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair 2017-07-12 16:38 - 2017-07-12 21:22 - 00000140 _____ C:\Windows\Reimage.ini 2017-07-12 16:36 - 2017-07-12 16:38 - 00604928 _____ (Reimage) C:\Users\Aleksander Podlewski\Downloads\ReimageRepair.exe 2017-07-09 20:23 - 2017-07-09 20:23 - 00000000 _____ C:\autoexec.bat 2017-07-09 20:22 - 2017-07-12 22:11 - 00000000 ____D C:\Users\Aleksander Podlewski\AppData\Roaming\Enigma Software Group 2017-07-09 20:10 - 2017-07-09 20:12 - 05103792 _____ (Enigma Software Group USA, LLC.) C:\Users\Aleksander Podlewski\Downloads\SpyHunter-Installer.exe 2017-06-22 07:43 - 2017-07-12 21:37 - 00000000 ____D C:\AdwCleaner EmptyTemp: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze. Uruchom jako administrator FRST i kliknij w Fix/Napraw.