
prosiłbym o sprawdzenie logów.
Task: {02F032E3-5AA7-4812-B9E5-631F6229B302} - System32\Tasks\{E6AA043B-7D41-4FE9-9820-4A20A2B12FF1} => pcalua.exe -a C:\Users\edek\AppData\Roaming\istartpageing\UninstallManager.exe -c -ptid=cornl
Task: {4E991AEB-BE44-4B39-9E55-EE725503087D} - System32\Tasks\{797D24BE-52ED-4E96-8A82-D42C2C0B93F4} => pcalua.exe -a E:\SETUP.EXE -d E:\
Task: {7E1CFFDF-39D2-4744-ADEC-4763532A07F3} - System32\Tasks\{CF2E6FD9-E8BE-48E8-9274-7A5A7FC2BB5E} => pcalua.exe -a C:\Users\edek\Desktop\mp3DC220_www.INSTALKI.pl.exe -d C:\Users\edek\Desktop
Task: {BFF21C5B-0DE9-45DE-9DF3-D89F9C130FC4} - System32\Tasks\{8043743B-0952-41E8-B6D6-EDB9EFC8DB22} => pcalua.exe -a C:\Users\edek\Desktop\Setup.exe -d C:\Users\edek\Desktop
Task: {CBBEF478-DC66-4DCD-AE89-6B57F137EDAC} - System32\Tasks\0915tbUpdateInfo => C:\ProgramData\Avg_Update_0915tb\0915tb_{8FBA5316-0FA5-45CA-B54E-E5355FE4FA0D}.exe
HKU\S-1-5-21-3663425727-934782231-2009342302-1000\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent
HKU\S-1-5-21-3663425727-934782231-2009342302-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={AAC8407B-8243-478E-9DF5-C45F901DEA5F}&mid=a9a2f09682f747d2a2a14597c6e2b3d8-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=pl&ds=AVG&coid=avgtbavg&cmpid=0715tb&pr=fr&d=2014-11-12 18:08:48&v=4.2.1.951&pid=wtu&sg=&sap=hp
DeleteKey: HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes
DeleteKey: HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes
DeleteKey: HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes
SearchScopes: HKU\S-1-5-21-3663425727-934782231-2009342302-1000 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={AAC8407B-8243-478E-9DF5-C45F901DEA5F}&mid=a9a2f09682f747d2a2a14597c6e2b3d8-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=pl&ds=AVG&coid=avgtbavg&cmpid=0915tb&pr=fr&d=2014-11-12 18:08:48&v=4.2.1.951&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3663425727-934782231-2009342302-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={AAC8407B-8243-478E-9DF5-C45F901DEA5F}&mid=a9a2f09682f747d2a2a14597c6e2b3d8-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=pl&ds=AVG&coid=avgtbavg&cmpid=0915tb&pr=fr&d=2014-11-12 18:08:48&v=4.2.1.951&pid=wtu&sg=&sap=dsp&q={searchTerms}
CHR Extension: (AVG Secure Search) - C:\Users\edek\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn [2015-12-04]
S4 vToolbarUpdater40.2.4; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.2.4\ToolbarUpdater.exe [1923984 2015-12-16] (AVG Secure Search)
S3 WsDrvInst; "C:\Program Files (x86)\Wondershare\Dr.Fone for Android\DriverInstall.exe" [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X]
EmptyTemp:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 5 gości