Problem z wirusem i proszę o pomoc w jego usunięciu.
Czy wolisz polską wersję strony elektroda?
Nie, dziękuję Przekieruj mnie tamCytat:CustomCLSID: HKU\S-1-5-21-3835159084-1933550233-79305402-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-469477DCC869}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => Brak pliku
Task: {179E2B7E-965F-487F-87BD-7C945F15E360} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA
Task: {27092A88-5FC2-4996-8680-58D91F48B778} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
Task: {2DBDF756-E95D-4A4C-8591-09EA1059E13E} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
Task: {42512625-9704-4662-B791-2D5746124054} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
Task: {56D53C01-A9B3-4BFF-9E60-13AA92C1DBE0} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
Task: {58291B7B-2B2C-4D4D-9A27-02F12CDE3255} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
Task: {7579539D-4548-4BD0-8B40-FB00E66D2387} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
Task: {833B4969-F1D9-4E3E-BAAF-67576E3E4BAD} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
Task: {B9CFE055-2932-4F7B-9EC2-AFCD5AC5D607} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
Task: {CE39AADC-B74F-4362-8BC6-455517E429BD} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
Task: {EB4A1A3C-E41A-4A62-9BA2-1059C824059E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
ShortcutWithArgument: C:\Users\pelu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP <==== UWAGA
ShortcutWithArgument: C:\Users\pelu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP <==== UWAGA
ShortcutWithArgument: C:\Users\pelu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP <==== UWAGA
ShortcutWithArgument: C:\Users\pelu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP <==== UWAGA
ShortcutWithArgument: C:\Users\pelu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Martyna - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP <==== UWAGA
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP <==== UWAGA
ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP <==== UWAGA
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP&q={searchTerms}
HKU\S-1-5-21-3835159084-1933550233-79305402-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP&q={searchTerms}
HKU\S-1-5-21-3835159084-1933550233-79305402-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP
HKU\S-1-5-21-3835159084-1933550233-79305402-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP
HKU\S-1-5-21-3835159084-1933550233-79305402-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP&q={searchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3835159084-1933550233-79305402-1001 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3835159084-1933550233-79305402-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe hxxp://www.yoursites123.com/?type=sc&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP
Edge HomeButtonPage: HKU\S-1-5-21-3835159084-1933550233-79305402-1001 -> hxxp://www.delta-homes.com/?type=hp&ts=1444315510&z=90c67323614e21a78f8a4bcgczezfz9c7g2w2wageg&from=ient07031&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP
StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.yoursites123.com/?type=sc&ts=1449859696&z=7ce6a45f689471d572f3c3eg7z4z8tab5w4t0q7tdo&from=ient07021&uid=ST500LT012-1DG142_W3P8P5PPXXXXW3P8P5PP
R2 WdMan; C:\ProgramData\HWdMH\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego]
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
2015-12-11 19:49 - 2015-12-11 19:50 - 00000000 ____D C:\ProgramData\HWdMH
2015-12-11 20:29 - 2014-12-21 21:07 - 00000000 ____D C:\AdwCleaner
C:\Windows\SysWOW64\pl2.exe
EmptyTemp: