Nie sciagaj torrentow jak nie umiesz i pobierasz zainfekowane, teraz to tylko strona, a pozniej bedzie koparka albo infekcja, ktora ukradnie Ci profil z przegladarki z zapisanymi haslami.
Odinstaluj: WebAdvisor firmy McAfee
Wykonaj Fixlist.txt:
CloseProcesses:
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
HKU\S-1-5-21-1294856732-311627482-139261443-1001\...\Run: [Sylwia] => cmd.exe /c start www.tongtonger.click (Brak pliku) <==== UWAGA
HKU\S-1-5-21-1294856732-311627482-139261443-1001\...\MountPoints2: D - "D:\setup.exe"
HKU\S-1-5-21-1294856732-311627482-139261443-1001\...\MountPoints2: E - "E:\setup.exe"
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
Task: {53043D8F-7D5E-4903-96C0-1678DF5CDCF4} - \Lenovo\ImController\Lenovo iM Controller Monitor -> Brak pliku <==== UWAGA
Task: {5C0710B0-A6C0-4B5B-B40F-F769BC69D090} - \Lenovo\ImController\TimeBasedEvents\0cf73585-4a2c-415d-ab7c-3d3f54cd8e90 -> Brak pliku <==== UWAGA
Task: {92E9B69B-85C0-4946-81EA-D5E2E1492D08} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> Brak pliku <==== UWAGA
Task: {98B90F30-5DB2-4BA2-B141-45E69B2D3E0A} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> Brak pliku <==== UWAGA
Task: {D1E68014-146B-4D82-B5C2-D14F5EAC3092} - \Lenovo\ImController\TimeBasedEvents\a9f67c01-80e0-43f7-b809-3342ebe1c586 -> Brak pliku <==== UWAGA
Task: {F9D19B36-DB4E-4F3C-BF4E-40D7754BC980} - \Lenovo\ImController\TimeBasedEvents\93cb4e67-bd49-4c22-a696-46605092e4ae -> Brak pliku <==== UWAGA
Task: {D22DB98C-3C77-4D05-9ED5-435C5E5E7E24} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (Brak pliku)
Task: {42EEAE45-5764-4220-B7A8-ED93BFEFCE7B} - System32\Tasks\Sylwia => C:\Windows\System32\cmd.exe [364544 2025-05-14] (Microsoft Windows -> Microsoft Corporation) -> /c reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v Sylwia /t REG_SZ /d "cmd.exe /c start www.tongtonger.click" /f <==== UWAGA
Edge HKU\S-1-5-21-1294856732-311627482-139261443-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [kagpabjoboikccfdghpdlaaopmgpgfdc]
CHR HomePage: Default -> hxxp://www.funnysearching.com/
C:\Users\mnako\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho
CHR Extension: (McAfee® WebAdvisor) - C:\Users\mnako\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2024-11-13]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-1294856732-311627482-139261443-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ljglajjnnkapghbckkcmodicjhacbfhk]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [945264 2025-05-29] (McAfee, LLC -> McAfee, LLC)