Zainfekowales system dlatego antywirusy nie chca dzialac.
Odinstaluj:
50CoUiPons (HKLM-x32\...\{CF987D06-1DCF-7B36-5B43-13BC8699C44C}) (Version: - "") <==== ATTENTION
Bing Bar (HKLM-x32\...\{3611CA6C-5FCA-4900-A329-6A118123CCFC}) (Version: 7.1.355.0 - Microsoft Corporation)
Browser Tab Search by Ask for Firefox (HKLM-x32\...\Browser Tab Search by Ask_FF) (Version: 3.0.0.0.242 - IAC Search and Media) <==== ATTENTION
CheappMee (HKLM-x32\...\{F6C44C71-2CFE-8176-3A4D-CBD0DCE5AEFA}) (Version: - "") <==== ATTENTION
Framed Display (HKLM\...\Framed Display) (Version: 2014.10.04.222109 - Framed Display) <==== ATTENTION
GoSavea (HKLM-x32\...\{C87834EB-A2A0-B9D4-AA9A-C263D1191051}) (Version: 3.2.0.1881 - ) <==== ATTENTION
GS_Booster (HKLM-x32\...\S-576482620) (Version: 4.2.0.1248 - PremiumSoft) <==== ATTENTION
GS_Sustainer 1.80 (HKLM-x32\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{4d349a54}) (Version: - Certified Publisher) <==== ATTENTION
Happye2SaVe (HKLM-x32\...\{E957849A-94AC-6F46-4623-C31474E3C170}) (Version: - "") <==== ATTENTION
HD+v2.1 (HKLM-x32\...\HD+v2.1) (Version: 1.34.7.29 - HD+v2.1)
Optimizer Pro v3.2 (HKLM-x32\...\Optimizer Pro_is1) (Version: - ) <==== ATTENTION
sweet-page uninstall (HKLM-x32\...\sweet-page uninstall) (Version: - sweet-page) <==== ATTENTION
WebStorage (HKLM-x32\...\WebStorage) (Version: 2.1.2.301 - ASUS Cloud Corporation)
WindowsMangerProtect20.0.0.722 (HKLM-x32\...\WindowsMangerProtect) (Version: 20.0.0.722 - WindowsProtect LIMITED) <==== ATTENTION
Yellow AdBlocker (HKLM-x32\...\{37476589-E48E-439E-A706-56189E2ED4C4}_is1) (Version: - Yellow AdBlocker) <==== ATTENTION
Uzyj AdwCleaner, opcja Scan i Clean/Szukaj i Usun:
http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/2-adwcleaner
Obok frst.exe utworz plik fixlist.txt z zawartoscia:
Task: {240E5300-2693-4B90-8FC1-4DF04E9E1101} - System32\Tasks\WOT WW1 => Firefox.exe
http://mmotraffic.com/catalog/goplay/1327/MTE3NjYvLy8xMzI3/
Task: {4AFECE91-A89F-4171-A05D-BE748240F2A9} - System32\Tasks\WOT WWED1 => Firefox.exe
http://mmotraffic.com/catalog/goplay/1327/MTE3NjYvLy8xMzI3/
Task: {8234DE31-F5CB-4D82-B2CA-3C83FE521040} - System32\Tasks\WOT WFRI1 => Firefox.exe
http://mmotraffic.com/catalog/goplay/1327/MTE3NjYvLy8xMzI3/
Task: {9D341EC4-F96D-4282-9955-EF9E98252C20} - System32\Tasks\WOT WTUE1 => Firefox.exe
http://mmotraffic.com/catalog/goplay/1327/MTE3NjYvLy8xMzI3/
Task: {E5D58653-9794-423B-A98E-3761B2C3B3C0} - System32\Tasks\WOT WTHUR1 => Firefox.exe
http://mmotraffic.com/catalog/goplay/1327/MTE3NjYvLy8xMzI3/
Task: {EFF6F545-8B2B-495D-A34E-B5C885ADD93E} - System32\Tasks\WOT WW2 => Firefox.exe
http://mmotraffic.com/catalog/goplay/1327/MTE3NjYvLy8xMzI3/
Task: {FD6210DB-618F-467C-931A-B49A89719473} - System32\Tasks\WOT WMON1 => Firefox.exe
http://mmotraffic.com/catalog/goplay/1327/MTE3NjYvLy8xMzI3/
Task: C:\Windows\Tasks\3cbe22f7-961e-437d-9efc-d36f6fc91279.job => C:\Program Files (x86)\HD+v2.1\671f96b9-d4df-4985-b3e8-cfc4c17dabea-4.exe
Task: C:\Windows\Tasks\671f96b9-d4df-4985-b3e8-cfc4c17dabea-1.job => C:\Program Files (x86)\HD+v2.1\HD+v2.1-codedownloader.exe
Task: C:\Windows\Tasks\671f96b9-d4df-4985-b3e8-cfc4c17dabea-11.job => C:\Program Files (x86)\HD+v2.1\671f96b9-d4df-4985-b3e8-cfc4c17dabea-11.exe
Task: C:\Windows\Tasks\671f96b9-d4df-4985-b3e8-cfc4c17dabea-3.job => C:\Program Files (x86)\HD+v2.1\671f96b9-d4df-4985-b3e8-cfc4c17dabea-3.exe
Task: C:\Windows\Tasks\671f96b9-d4df-4985-b3e8-cfc4c17dabea-4.job => C:\Program Files (x86)\HD+v2.1\671f96b9-d4df-4985-b3e8-cfc4c17dabea-4.exe
Task: C:\Windows\Tasks\671f96b9-d4df-4985-b3e8-cfc4c17dabea-5.job => C:\Program Files (x86)\HD+v2.1\671f96b9-d4df-4985-b3e8-cfc4c17dabea-5.exe
Task: C:\Windows\Tasks\671f96b9-d4df-4985-b3e8-cfc4c17dabea-5_user.job => C:\Program Files (x86)\HD+v2.1\671f96b9-d4df-4985-b3e8-cfc4c17dabea-5.exe
Task: C:\Windows\Tasks\671f96b9-d4df-4985-b3e8-cfc4c17dabea-6.job => C:\Program Files (x86)\HD+v2.1\671f96b9-d4df-4985-b3e8-cfc4c17dabea-6.exeŮ/JmpsI='HD+v2.1' /OqSkPg=62846 /QjYDI='001967' /pASHhU='0' /bkfGzhn='0' /luhuNz=18973582177C44B7BE7D8DCD1A24DFCFIE /wonrdLPm=654179c9e37095a3ae7bf494c2a3ae47 /pXMCw=1_34_07_29 /qjMZtD=1.34.7.29 /UgOLjUjM=1408880299 /TbHysNwkL=http://stats.infostatsserv.com /dKAMiS=http://errors.infostatsserv.com /HbpoW=http://js.infostatsserv.com /fJDkTWl=ie /RAuobiai /UmOMcNxVS=HD+v2.1 /VJDxZaa8af109-dbaa-496a-9aef-da505badc7a1.dll /kHvhqJwDH081ad58a-d44d-4e24-acdd-ceaf3415741e.dll /ssFJUuHEJ671f96b9-d4df-4985-b3e8-cfc4c17dabea-64.exe
Task: C:\Windows\Tasks\671f96b9-d4df-4985-b3e8-cfc4c17dabea-7.job => C:\Program Files (x86)\HD+v2.1\671f96b9-d4df-4985-b3e8-cfc4c17dabea-7.exeî/xLWKjq /JmpsI='HD+v2.1' /OqSkPg=62846 /QjYDI='001967' /pASHhU='0' /bkfGzhn='0' /luhuNz=18973582177C44B7BE7D8DCD1A24DFCFIE /wonrdLPm=654179c9e37095a3ae7bf494c2a3ae47 /pXMCw=1_34_07_29 /qjMZtD=1.34.7.29 /UgOLjUjM=1408880299 /TbHysNwkL=http://stats.infostatsserv.com /dKAMiS=http://errors.infostatsserv.com /HbpoW=http://js.infostatsserv.com /fJDkTWl=ie /RAuobiai /UmOMcNxVS=HD+v2.1 /VJDxZaa8af109-dbaa-496a-9aef-da505badc7a1.dll /kHvhqJwDH081ad58a-d44d-4e24-acdd-ceaf3415741e.dll /ssFJUuHEJ671f96b9-d4df-4985-b3e8-cfc4c17dabea-64.exe
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GS_Booster-S-576482620.job => c:\programdata\trusted publisher\gs_booster\GS_Booster.exe <==== ATTENTION
Task: C:\Windows\Tasks\RDReminder.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
Task: C:\Windows\Tasks\WOT N.job => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Task: C:\Windows\Tasks\WOT T.job => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Task: C:\Windows\Tasks\WOT W1.job => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Task: C:\Windows\Tasks\WOT W2.job => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Task: C:\Windows\Tasks\WOT WFRI1.job => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Task: C:\Windows\Tasks\WOT WMON1.job => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Task: C:\Windows\Tasks\WOT WTHUR1.job => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Task: C:\Windows\Tasks\WOT WTUE1.job => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Task: C:\Windows\Tasks\WOT WW1.job => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Task: C:\Windows\Tasks\WOT WW2.job => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
Task: C:\Windows\Tasks\WOT WWED1.job => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Cherished Technololgy LIMITED) C:\ProgramData\IePluginServices\PluginService.exe
(Fuyu LIMITED) C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
() C:\Program Files (x86)\SmarterPower\updateSmarterPower.exe
() C:\Program Files (x86)\SupTab\HpUI.exe
() C:\Program Files (x86)\SupTab\Loader64.exe
() C:\Program Files (x86)\SupTab\Loader32.exe
() C:\Users\batmanzks122\AppData\Roaming\WinRAR\svhost.exe
() C:\Program Files (x86)\Framed Display\updateFramedDisplay.exe
() C:\Program Files (x86)\Framed Display\bin\utilFramedDisplay.exe
() C:\Program Files (x86)\Framed Display\bin\FramedDisplay.BrowserAdapter64.exe
() C:\Program Files (x86)\Framed Display\bin\FramedDisplay.BrowserAdapter.exe
() C:\Program Files (x86)\Framed Display\bin\FramedDisplay.BOASHelper.exe
() C:\Program Files (x86)\Framed Display\bin\FramedDisplay.PurBrowse64.exe
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-1556888201-880532094-2002063271-1001\...\Run: [Service Host] => C:\Users\batmanzks122\AppData\Roaming\WinRAR\svhost.exe [5292544 2014-09-15] ()
HKU\S-1-5-21-1556888201-880532094-2002063271-1001\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [146888 2014-08-21] (PC Utilities Software Limited)
HKU\S-1-5-21-1556888201-880532094-2002063271-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [2373784 2014-03-04] (Microsoft Corporation) <==== ATTENTION
AppInit_DLLs: C:\PROGRA~2\GS_BOO~1\ASSIST~2.DLL => C:\Program Files (x86)\GS_Booster\Assistant_x64.dll [4210176 2014-09-20] ()
AppInit_DLLs-x32: c:\progra~2\gs_boo~1\assist~1.dll => c:\Program Files (x86)\GS_Booster\Assistant.dll [4296192 2014-09-20] ()
IFEO\AvastSvc.exe: [Debugger] nqij.exe
IFEO\AvastUI.exe: [Debugger] nqij.exe
IFEO\avcenter.exe: [Debugger] nqij.exe
IFEO\avconfig.exe: [Debugger] nqij.exe
IFEO\avgcsrvx.exe: [Debugger] nqij.exe
IFEO\avgidsagent.exe: [Debugger] nqij.exe
IFEO\avgnt.exe: [Debugger] nqij.exe
IFEO\avgrsx.exe: [Debugger] nqij.exe
IFEO\avguard.exe: [Debugger] nqij.exe
IFEO\avgui.exe: [Debugger] nqij.exe
IFEO\avgwdsvc.exe: [Debugger] nqij.exe
IFEO\avp.exe: [Debugger] nqij.exe
IFEO\avscan.exe: [Debugger] nqij.exe
IFEO\bdagent.exe: [Debugger] nqij.exe
IFEO\blindman.exe: [Debugger] nqij.exe
IFEO\ccuac.exe: [Debugger] nqij.exe
IFEO\ComboFix.exe: [Debugger] nqij.exe
IFEO\egui.exe: [Debugger] nqij.exe
IFEO\hijackthis.exe: [Debugger] nqij.exe
IFEO\instup.exe: [Debugger] nqij.exe
IFEO\keyscrambler.exe: [Debugger] nqij.exe
IFEO\mbam.exe: [Debugger] nqij.exe
IFEO\mbamgui.exe: [Debugger] nqij.exe
IFEO\mbampt.exe: [Debugger] nqij.exe
IFEO\mbamscheduler.exe: [Debugger] nqij.exe
IFEO\mbamservice.exe: [Debugger] nqij.exe
IFEO\MpCmdRun.exe: [Debugger] nqij.exe
IFEO\MSASCui.exe: [Debugger] nqij.exe
IFEO\MsMpEng.exe: [Debugger] nqij.exe
IFEO\msseces.exe: [Debugger] nqij.exe
IFEO\rstrui.exe: [Debugger] nqij.exe
IFEO\SDFiles.exe: [Debugger] nqij.exe
IFEO\SDMain.exe: [Debugger] nqij.exe
IFEO\SDWinSec.exe: [Debugger] nqij.exe
IFEO\spybotsd.exe: [Debugger] nqij.exe
IFEO\wireshark.exe: [Debugger] nqij.exe
IFEO\zlclient.exe: [Debugger] nqij.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.sweet-page.com/?type=hp&ts=141...&uid=ST750LM022XHN-M750MBB_S330J9GF403440
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.sweet-page.com/web/?type=ds&ts...d=ST750LM022XHN-M750MBB_S330J9GF403440&q= {searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.sweet-page.com/?type=hp&ts=141...&uid=ST750LM022XHN-M750MBB_S330J9GF403440
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.sweet-page.com/web/?type=ds&ts...d=ST750LM022XHN-M750MBB_S330J9GF403440&q= {searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.sweet-page.com/web/?type=ds&ts...d=ST750LM022XHN-M750MBB_S330J9GF403440&q= {searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.sweet-page.com/?type=hp&ts=141...&uid=ST750LM022XHN-M750MBB_S330J9GF403440
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
http://www.sweet-page.com/web/?type=ds&ts...d=ST750LM022XHN-M750MBB_S330J9GF403440&q= {searchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe
http://www.sweet-page.com/?type=sc&ts=141...&uid=ST750LM022XHN-M750MBB_S330J9GF403440
SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
http://www.sweet-page.com/web/?type=ds&ts...d=ST750LM022XHN-M750MBB_S330J9GF403440&q= {searchTerms}
BHO: CheappMee -> {07315dcd-b34a-417a-83d8-30def77fcd41} -> C:\ProgramData\CheappMee\E5SEhct5rzTnUN.x64.dll ()
BHO: Happye2SaVe -> {2372fe29-5804-48c6-91eb-8fcfde16ebfd} -> C:\ProgramData\Happye2SaVe\v7mY8L3AlZIJiG.x64.dll ()
BHO: 50CoUiPons -> {6613a1b2-34d6-4345-a930-d8fb2e0b875e} -> C:\ProgramData\50CoUiPons\4L3I0DnkLlQRPM.x64.dll ()
BHO: GoSavea -> {9cb5ef6b-f0d4-4475-8f6e-229165725d0c} -> C:\Program Files (x86)\GoSavea\QIF1IGb4567sqO.x64.dll ()
BHO-x32: Framed Display -> {05b5ef3f-4c6a-426e-b77e-48ebb3e721f1} -> C:\Program Files (x86)\Framed Display\FramedDisplaybho.dll (Framed Display)
BHO-x32: CheappMee -> {07315dcd-b34a-417a-83d8-30def77fcd41} -> C:\ProgramData\CheappMee\E5SEhct5rzTnUN.dll ()
BHO-x32: Happye2SaVe -> {2372fe29-5804-48c6-91eb-8fcfde16ebfd} -> C:\ProgramData\Happye2SaVe\v7mY8L3AlZIJiG.dll ()
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\SupTab\SupTab.dll (Thinknice Co. Limited)
BHO-x32: 50CoUiPons -> {6613a1b2-34d6-4345-a930-d8fb2e0b875e} -> C:\ProgramData\50CoUiPons\4L3I0DnkLlQRPM.dll ()
BHO-x32: GoSavea -> {9cb5ef6b-f0d4-4475-8f6e-229165725d0c} -> C:\Program Files (x86)\GoSavea\QIF1IGb4567sqO.dll ()
BHO-x32: SmarterPower -> {bd7c9b62-a7d9-4405-be51-7fd633f08791} -> C:\Program Files (x86)\SmarterPower\SmarterPowerbho.dll (SmarterPower)
FF NewTab: chrome://quick_start/content/index.html
FF SearchPlugin: C:\Users\batmanzks122\AppData\Roaming\Mozilla\Firefox\Profiles\5eqwnrqa.default\searchplugins\bingp.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\sweet-page.xml
FF Extension: 50CouponSS - C:\Users\batmanzks122\AppData\Roaming\Mozilla\Firefox\Profiles\5eqwnrqa.default\Extensions\U9Ym@frCS7D.com [2014-10-16]
FF HKLM-x32\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Users\batmanzks122\AppData\Roaming\Mozilla\Firefox\Profiles\5eqwnrqa.default\extensions\faststartff@gmail.com
CHR Extension: (Framed Display) - C:\Users\batmanzks122\AppData\Local\Google\Chrome\User Data\Default\Extensions\gagcbogmgkaogoadfcoicjdojbmkegao [2014-10-06]
CHR Extension: (GOSaVe) - C:\Users\batmanzks122\AppData\Local\Google\Chrome\User Data\Default\Extensions\gifgdbloeafbapjdenhmjhibdknhbedm [2014-09-20]
CHR StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
http://www.sweet-page.com/?type=sc&ts=141...&uid=ST750LM022XHN-M750MBB_S330J9GF403440
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
R2 4d349a54; c:\Program Files (x86)\GS_Booster\AssistantSvc.dll [174928 2014-09-20] () [File not signed]
R2 70e6ca8c; c:\Program Files (x86)\Optimizer Pro\OptProCrash.dll [3541448 2014-09-28] ()
R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [705416 2014-09-24] (Cherished Technololgy LIMITED)
R2 Update Framed Display; C:\Program Files (x86)\Framed Display\updateFramedDisplay.exe [522488 2014-10-16] ()
R2 Update SmarterPower; C:\Program Files (x86)\SmarterPower\updateSmarterPower.exe [323320 2014-08-22] ()
R2 Util Framed Display; C:\Program Files (x86)\Framed Display\bin\utilFramedDisplay.exe [522488 2014-10-16] ()
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [528896 2014-09-28] (Fuyu LIMITED) [File not signed]
R1 {7012eec1-4f37-42d4-a2cd-26727494d248}Gw64; C:\Windows\System32\drivers\{7012eec1-4f37-42d4-a2cd-26727494d248}Gw64.sys [48792 2014-10-11] (StdLib)
R1 {7012eec1-4f37-42d4-a2cd-26727494d248}w64; C:\Windows\System32\drivers\{7012eec1-4f37-42d4-a2cd-26727494d248}w64.sys [48792 2014-10-11] (StdLib)
R1 {e9bebce7-deb3-4ab9-896c-549739f208c5}Gw64; C:\Windows\System32\drivers\{e9bebce7-deb3-4ab9-896c-549739f208c5}Gw64.sys [48792 2014-10-04] (StdLib)
2014-10-16 09:33 - 2014-10-16 09:33 - 00000000 ____D () C:\ProgramData\50CoUiPons
2014-10-12 08:13 - 2014-10-11 21:44 - 00048792 _____ (StdLib) C:\Windows\system32\Drivers\{7012eec1-4f37-42d4-a2cd-26727494d248}w64.sys
2014-10-11 13:37 - 2014-10-11 03:15 - 00048792 _____ (StdLib) C:\Windows\system32\Drivers\{7012eec1-4f37-42d4-a2cd-26727494d248}Gw64.sys
2014-10-05 09:25 - 2014-10-16 13:58 - 00000000 ____D () C:\Program Files (x86)\Framed Display
2014-10-04 14:07 - 2014-10-04 14:07 - 00000000 ____D () C:\ProgramData\Yellow AdBlocker
2014-10-04 08:51 - 2014-10-04 08:51 - 00000000 ____D () C:\ProgramData\Happye2SaVe
2014-09-28 12:11 - 2014-09-28 12:11 - 00000422 _____ () C:\Windows\Tasks\ReclaimerResumeInstall_batmanzks122.job
2014-09-28 12:09 - 2014-09-28 12:09 - 00000000 ____D () C:\Users\batmanzks122\Documents\Optimizer Pro
2014-09-28 12:09 - 2014-09-28 12:09 - 00000000 ____D () C:\Users\batmanzks122\AppData\Roaming\Optimizer Pro
2014-09-28 12:04 - 2014-09-28 12:04 - 00001076 _____ () C:\Users\batmanzks122\Desktop\Optimizer Pro.lnk
2014-09-28 12:04 - 2014-09-28 12:04 - 00000410 _____ () C:\Windows\Tasks\WOT WWED1.job
2014-09-28 12:04 - 2014-09-28 12:04 - 00000410 _____ () C:\Windows\Tasks\WOT WW2.job
2014-09-28 12:04 - 2014-09-28 12:04 - 00000410 _____ () C:\Windows\Tasks\WOT WW1.job
2014-09-28 12:04 - 2014-09-28 12:04 - 00000410 _____ () C:\Windows\Tasks\WOT WTUE1.job
2014-09-28 12:04 - 2014-09-28 12:04 - 00000410 _____ () C:\Windows\Tasks\WOT WTHUR1.job
2014-09-28 12:04 - 2014-09-28 12:04 - 00000410 _____ () C:\Windows\Tasks\WOT WMON1.job
2014-09-28 12:04 - 2014-09-28 12:04 - 00000410 _____ () C:\Windows\Tasks\WOT WFRI1.job
2014-09-28 12:04 - 2014-09-28 12:04 - 00000410 _____ () C:\Windows\Tasks\WOT W2.job
2014-09-28 12:04 - 2014-09-28 12:04 - 00000410 _____ () C:\Windows\Tasks\WOT W1.job
2014-09-28 12:04 - 2014-09-28 12:04 - 00000410 _____ () C:\Windows\Tasks\WOT T.job
2014-09-28 12:04 - 2014-09-28 12:04 - 00000410 _____ () C:\Windows\Tasks\WOT N.job
2014-09-28 12:04 - 2014-09-28 12:04 - 00000000 ____D () C:\Users\batmanzks122\AppData\Roaming\sweet-page
2014-09-28 12:04 - 2014-09-28 12:04 - 00000000 ____D () C:\Users\batmanzks122\AppData\Roaming\SupTab
2014-09-28 12:04 - 2014-09-28 12:04 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2014-09-28 12:04 - 2014-09-28 12:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
2014-09-28 12:04 - 2014-09-28 12:04 - 00000000 ____D () C:\ProgramData\IePluginServices
2014-09-28 12:04 - 2014-09-28 12:04 - 00000000 ____D () C:\Program Files (x86)\SupTab
2014-09-28 12:04 - 2014-09-28 12:04 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro
2014-09-27 12:42 - 2014-09-27 12:42 - 00000000 ____D () C:\ProgramData\CheappMee
2014-09-20 10:01 - 2014-09-20 10:01 - 00000510 ____H () C:\Windows\Tasks\GS_Booster-S-576482620.job
2014-09-20 10:01 - 2014-09-20 10:01 - 00000000 ____D () C:\Program Files (x86)\GS_Booster
2014-09-20 10:00 - 2014-10-16 09:34 - 00000000 ____D () C:\ProgramData\cd51faf30adb01b1
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Torch
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\Gość\AppData\Local\Torch
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\Gość\AppData\Local\Google
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\Gość\AppData\Local\Comodo
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\Gość\AppData\Local\Chromatic Browser
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\batmanzks122\AppData\Local\Torch
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\batmanzks122\AppData\Local\Comodo
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\batmanzks122\AppData\Local\Chromatic Browser
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Chromatic Browser
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\ProgramData\GoSavea
2014-09-20 10:00 - 2014-09-20 10:00 - 00000000 ____D () C:\Program Files (x86)\GoSavea
2014-09-19 22:11 - 2014-09-19 22:11 - 00000000 ____D () C:\Users\batmanzks122\AppData\Roaming\OpenCandy
2014-09-17 12:47 - 2014-09-17 12:47 - 00367440 _____ () C:\Users\batmanzks122\Downloads\SoftonicDownloader_dla_windows-defender.exe
C:\Users\batmanzks122\AppData\Roaming\msconfig.ini
EmptyTemp:
W FRST wybierz Fix.
Zrob pelny skan przy pomocy Mbam:
http://www.bleepingcomputer.com/download/malwarebytes-anti-malware/
oraz
http://ftp.drweb.com/pub/drweb/cureit/launch.exe
Usun katalog C:\FRST i to wszystko.
Lepiej naucz sie korzystac z internetu w przeciwnym razie zaraz znowu zainfekujesz system.
Nie pobieraj programow, ktorych nie znasz, nie pobieraj programow ze stron, ktore oferuja wlasne menadzery pobierania, podczas instalacji NIE instaluj opcjonalnych szkodliwych dodatkow!outils-de-xplode/2-adwcleaner