To sa logi, a nie loginy. Nie podczepiaj sie pod inne watki.
Odinstaluj:
Adobe Reader 9.5.0 - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-A95000000001}) (Version: 9.5.0 - Adobe Systems Incorporated)
Java(TM) 6 Update 37 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216035FF}) (Version: 6.0.370 - Oracle)
Media Player Classic - Home Cinema 1.6.1.4235 x64 (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.6.1.4235 - MPC-HC Team) <==== ATTENTION
WindowsMangerProtect20.0.0.722 (HKLM-x32\...\WindowsMangerProtect) (Version: 20.0.0.722 - WindowsProtect LIMITED) <==== ATTENTION
Spybot - Search and Destroy
Uzyj AdwCleaner, opcja Scan i Clean/Szukaj i Usun:
http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/2-adwcleaner
Zainstaluj
http://ninite.com/java-foxit/
Obok frst.exe utworz plik fixlist.txt z zawartoscia:
(Cherished Technololgy LIMITED) C:\ProgramData\IePluginServices\PluginService.exe
(Fuyu LIMITED) C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
() C:\Program Files (x86)\C78087A8-C960-4464-A618-3D351DF6C0D7\eexvlcbkbu64.exe
() C:\Program Files\004\rqpbhevlkc64.exe
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.sweet-page.com/web/?type=ds&ts...d=OCZXVERTEX-PLUS_97X75ZR38707493I1HJM&q= {searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.sweet-page.com/web/?type=ds&ts...d=OCZXVERTEX-PLUS_97X75ZR38707493I1HJM&q= {searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.sweet-page.com/web/?type=ds&ts...d=OCZXVERTEX-PLUS_97X75ZR38707493I1HJM&q= {searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
http://www.sweet-page.com/web/?type=ds&ts...d=OCZXVERTEX-PLUS_97X75ZR38707493I1HJM&q= {searchTerms}
BHO-x32: CouponDownloader -> {c817d3d8-b9da-521d-971d-2c0a747ea697} -> C:\Program Files\C78087A8-C960-4464-A618-3D351DF6C0D7\gohymlmtrh.dll ()
R2 CouponDownloaderService64; C:\Program Files (x86)\C78087A8-C960-4464-A618-3D351DF6C0D7\eexvlcbkbu64.exe [172544 2014-07-25] () [File not signed]
R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [694784 2014-08-21] (Cherished Technololgy LIMITED) [File not signed]
R2 rqpbhevlkc64; C:\Program Files\004\rqpbhevlkc64.exe [709120 2014-08-21] () [File not signed]
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [528896 2014-08-21] (Fuyu LIMITED) [File not signed]
S3 cpuz136; \??\c:\TMP\cpuz136\cpuz136_x64.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [X]
2014-08-21 20:18 - 2014-08-21 20:18 - 00000000 ____D () C:\Program Files\C78087A8-C960-4464-A618-3D351DF6C0D7
2014-08-21 20:18 - 2014-08-21 20:18 - 00000000 ____D () C:\Program Files (x86)\C78087A8-C960-4464-A618-3D351DF6C0D7
2014-08-21 20:17 - 2014-08-21 20:17 - 00000000 ____D () C:\Users\Wodzu\AppData\Roaming\Stereoscopic Player
2014-08-21 20:16 - 2014-09-07 19:22 - 00000000 ____D () C:\Users\Wodzu\AppData\Roaming\sweet-page
2014-08-21 20:16 - 2014-08-21 20:17 - 00000000 ____D () C:\Program Files\004
2014-08-21 20:16 - 2014-08-21 20:16 - 07824896 _____ () C:\Users\Wodzu\Downloads\Stereoscopic Player 1.7.3.msi
2014-08-21 20:16 - 2014-08-21 20:16 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2014-08-21 20:16 - 2014-08-21 20:16 - 00000000 ____D () C:\ProgramData\IePluginServices
2014-08-21 20:15 - 2014-08-21 20:15 - 00700360 _____ ( ) C:\Users\Wodzu\Desktop\Stereoscopic Player 1.7.3.exe
W FRST wybierz Fix.
Zrob pelny skan przy pomocy Mbam:
http://www.bleepingcomputer.com/download/malwarebytes-anti-malware/
Daj screen z CrystalDiskInfo:
http://portableapps.com/apps/utilities/crystaldiskinfo_portable