Odinstaluj Lenovo Browser Guard,Superfish Inc. VisualDiscovery,Web Protector Plus (uninstall only).Otwórz notatnik systemowy i wklej: ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Brak pliku ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Brak pliku ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Brak pliku ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Brak pliku Task: {0F85B2FC-C2B5-4549-9CEE-8B51CBC0BF99} - \Microsoft\Windows\UNP\RunCampaignManager -> Brak pliku <==== UWAGA Task: {1D6F319F-E39C-4E50-8FE4-3D9E852B7330} - \WPD\SqmUpload_S-1-5-21-1353584166-2147090796-2253725871-1002 -> Brak pliku <==== UWAGA Task: {2DC5362B-78D2-4415-AE72-21207FC80703} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA Task: {2DEC0093-AD0A-4A4F-A7CB-E0A4D77A53FF} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA Task: {32D3DA12-E9FD-4639-ABEE-128DBC3BB986} - System32\Tasks\Web Protector Plus => C:\Program Files (x86)\WebProtectorPlus\WebProtectorPlus.exe <==== UWAGA Task: {3AEE6666-B14F-41CC-8E51-9562BD893E30} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA Task: {3EF257FA-EC93-4E29-AECE-04B202F663E5} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA Task: {6FA8E51C-9DA6-4780-A2C9-F8C7A979A1D5} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA Task: {8302F7B6-EC42-4005-9A07-1781C952927E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA Task: {88A8FEA4-705C-4119-9E82-FC7C5DE3F8D9} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA Task: {8A1A33B1-971D-4F5D-8A44-F9BEF82DBB92} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA Task: {963B050E-2E4B-43B8-BACF-7349342CF594} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA Task: {AEA71FDA-97D8-40D8-BB2D-7A6B6E3884B1} - System32\Tasks\Web Protector Plus Server => C:\Program Files (x86)\WebProtectorPlus\server64\WebProtectorPlusServer.exe <==== UWAGA Task: {B41A9BE3-C842-4B4E-B2D9-1C077D715BC4} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Brak pliku <==== UWAGA Task: {C4343764-65A0-465A-B725-518F81D6A043} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA Task: {EADC4000-389D-4FC7-A629-F3D38C9EEFDE} - System32\Tasks\{87048F55-40BC-4DA2-ABD2-A43A042078EB} => C:\WINDOWS\system32\pcalua.exe -a C:\Users\PC\Desktop\reluxSuite2016-1-1.exe -d C:\Users\PC\Desktop Task: {F4B0AC78-81FA-46F2-B128-997CC5E69C99} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA HKU\S-1-5-21-1353584166-2147090796-2253725871-1002\...\Policies\Explorer: [] HKU\S-1-5-21-1353584166-2147090796-2253725871-1002\...\MountPoints2: {d030435d-fa14-11e7-82fa-2c337a3c025a} - "E:\HiSuiteDownLoader.exe" AppInit_DLLs: C:\PROGRA~2\LENOVO~1\LENOVO~1\bin\SPVC64~1.DLL => Brak pliku GroupPolicy: Ograniczenia - Chrome <==== UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://do-search.com/web/?type=ds&ts=1431014913&z=1a01ff331fc2921456753a1g5zbc5g8e8gezbtbmdg&from=cor&uid=ST500LT012-1DG142_S3PMYZENXXXXS3PMYZEN&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://do-search.com/?type=hp&ts=1431014913&z=1a01ff331fc2921456753a1g5zbc5g8e8gezbtbmdg&from=cor&uid=ST500LT012-1DG142_S3PMYZENXXXXS3PMYZEN HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://do-search.com/web/?type=ds&ts=1431014913&z=1a01ff331fc2921456753a1g5zbc5g8e8gezbtbmdg&from=cor&uid=ST500LT012-1DG142_S3PMYZENXXXXS3PMYZEN&q={searchTerms} HKU\S-1-5-21-1353584166-2147090796-2253725871-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://pl.search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10414__170710__yaie HKU\S-1-5-21-1353584166-2147090796-2253725871-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://do-search.com/?type=hp&ts=1431014913&z=1a01ff331fc2921456753a1g5zbc5g8e8gezbtbmdg&from=cor&uid=ST500LT012-1DG142_S3PMYZENXXXXS3PMYZEN HKU\S-1-5-21-1353584166-2147090796-2253725871-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com SearchScopes: HKU\S-1-5-21-1353584166-2147090796-2253725871-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms} SearchScopes: HKU\S-1-5-21-1353584166-2147090796-2253725871-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms} SearchScopes: HKU\S-1-5-21-1353584166-2147090796-2253725871-1002 -> {A9521CF1-6BF2-4DCE-AA03-1C5D19581F3F} URL = SearchScopes: HKU\S-1-5-21-1353584166-2147090796-2253725871-1002 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://pl.search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10414__170710__yaie&p={searchTerms} BHO-x32: Sale Charger -> {7a38e53c-e000-41e4-9b5a-47447db81c2b} -> C:\Program Files (x86)\Sale Charger\Extensions\7a38e53c-e000-41e4-9b5a-47447db81c2b.dll => Brak pliku Toolbar: HKLM-x32 - WebProtector - {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} - Brak pliku CHR HKU\S-1-5-21-1353584166-2147090796-2253725871-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-1353584166-2147090796-2253725871-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kfecnpmgnlnbmipaogfhoacoioifjgko] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [kfecnpmgnlnbmipaogfhoacoioifjgko] - hxxp://clients2.google.com/service/update2/crx EmptyTemp: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze. Uruchom jako administrator FRST i kliknij w Fix/Napraw. Pobierz i uruchom jako administrator AdwCleaner https://toolslib.net/downloads/finish/1/ Kliknij Scan(Skanuj) i później Cleaning(Oczyść).