Otwórz notatnik systemowy i wklej: ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File Task: {2682B7B7-7A30-421B-88B7-668B8D655720} - System32\Tasks\{2A46A1B8-723D-C3EF-46FC-DCD5EBCE2344} => C:\Program Files (x86)\eaIouxWE.exe [2009-07-14] (Microsoft Corporation) <==== ATTENTION Task: {3496EC5E-E8E5-43F4-9C4C-F4DD19627ECB} - System32\Tasks\{25ED5849-EE23-3547-8CD6-DCB260856F0C} => C:\Users\Konrad\yaiMWA.exe [2009-07-14] (Microsoft Corporation) Task: {CAA93C3F-11F4-446E-9D27-E6D92A7FC2B9} - System32\Tasks\{FEE43EEB-D3F5-5AA0-545B-84AC8FA940BF} => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" worldmediarek.ru/cl/?guid=ayibkwlqyt80yqjoskcdl8rno7cd3wa4&prid=1&pid=4_1324_0 FirewallRules: [{FAEB96C1-C5D3-4444-A15B-408EE965DA63}] => (Allow) C:\Program Files (x86)\eaIouxWE.exe FirewallRules: [{5764F304-53A3-4988-9251-501AFFA71B3D}] => (Allow) C:\Users\Konrad\yaiMWA.exe HKU\S-1-5-21-1918193676-3051652380-1895253946-1000\...\MountPoints2: {1c0967cb-e822-11e7-a83e-806e6f6e6963} - D:\cda_menu.exe HKU\S-1-5-21-1918193676-3051652380-1895253946-1000\...\MountPoints2: {5c0b14e8-e766-11e7-bad8-c46dfc8ef347} - F:\HTC_Sync_Manager_PC.exe HKU\S-1-5-21-1918193676-3051652380-1895253946-1000\...\MountPoints2: {a25dd302-9e20-11e8-b7c3-408d5c7e09f7} - E:\iLinker.exe SearchScopes: HKU\S-1-5-21-1918193676-3051652380-1895253946-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = S3 gdrv; \??\C:\Windows\gdrv.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] 2018-09-02 21:47 - 2018-09-02 21:47 - 000003746 _____ C:\Windows\System32\Tasks\{FEE43EEB-D3F5-5AA0-545B-84AC8FA940BF} 2018-09-02 21:47 - 2018-09-02 21:47 - 000003626 _____ C:\Windows\System32\Tasks\{2A46A1B8-723D-C3EF-46FC-DCD5EBCE2344} 2018-09-02 21:47 - 2018-09-02 21:47 - 000003408 _____ C:\Windows\System32\Tasks\{25ED5849-EE23-3547-8CD6-DCB260856F0C} 2018-09-02 21:47 - 2018-09-02 21:47 - 000000002 _____ C:\Users\Konrad\AppData\Local\imw.ini 2018-09-02 22:28 - 2017-12-21 01:41 - 000000000 ____D C:\AdwCleaner 2009-07-14 03:14 - 2009-07-14 03:14 - 000073216 ____N (Microsoft Corporation) C:\Users\Konrad\yaiMWA.exe 2009-07-14 03:14 - 2009-07-14 03:14 - 000073216 ____N (Microsoft Corporation) C:\Program Files (x86)\eaIouxWE.exe 2009-07-14 03:14 - 2009-07-14 03:14 - 000186368 ____N (Microsoft Corporation) C:\Users\Konrad\AppData\Local\yYJtE.exe EmptyTemp: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze. Uruchom jako administrator FRST i kliknij w Fix/Napraw.