
Bardzo prosze o pomoc
Task: {2B495F3F-A588-43D0-B98D-44F5A2FC5B83} - System32\Tasks\{3031CADC-D840-4114-AA09-35E7C126AEF6} => pcalua.exe -a C:\Users\Karol\AppData\Roaming\omniboxes\UninstallManager.exe -c -ptid=obw
C:\Users\Karol\AppData\Roaming\omniboxes
Task: {5A222067-05E1-432B-BA96-3AE18A54F531} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2015-03-20] (Enigma Software Group USA, LLC.)
C:\Program Files\Enigma Software Group
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\PluginContainer.exe
C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce\updater.exe
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugins\3\plugin.exe
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugins\2\plugin.exe
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugins\8\plugin.exe
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugins\5\plugin.exe
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugins\6\plugin.exe
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce
C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
URLSearchHook: [AvInstup_S-1-5-21-926093717-1424587163-2357735524-500.bak] ATTENTION ==> Default URLSearchHook is missing.
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
BHO-x32: Strong Signal -> {c723a437-2eaf-466d-a95b-3fa0966bf88c} -> C:\Program Files (x86)\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll No File
C:\Program Files (x86)\Strong Signal
FF Homepage: hxxp://search.yahoo.com/?fr=hp-ddc-bd&type=bg_616_bl-is-20__alt__ddc_dsssyc_bd_com
FF NewTab: hxxp://search.yahoo.com/?fr=hp-ddc-bd-tab&type=bg_616_bl-is-20__alt__ddc_dsssyctab_bd_com
FF Keyword.URL: hxxp://search.yahoo.com/yhs/search?hspart=ddc&hsimp=yhs-ddc_bd&type=bg_616_bl-is-20__alt__ddc_dss_bd_com&p={searchTerms}
FF SelectedSearchEngine: Yahoo Search!
FF DefaultSearchEngine: Yahoo Search!
FF Extension: Strong Signal - C:\Users\Karol\AppData\Roaming\Mozilla\Firefox\Profiles\h1imlct0.default\Extensions\{505141e0-c232-40dc-a148-f7a39e4a7118}.xpi [2015-05-17]
CHR HomePage: Default -> hxxp://www.omniboxes.com/?type=hppp&ts=1424371920&from=obw&uid=WDCXWD5000LPVX-80V0TT0_WD-WX21EA436D6136D61
CHR RestoreOnStartup: Default -> "hxxp://search.yahoo.com/?fr=hp-ddc-bd&type=bg_616_bl-is-15__alt__ddc_dsssyc_bd_com"
CHR StartupUrls: Default -> "hxxp://www.omniboxes.com/?type=hppp&ts=1424371920&from=obw&uid=WDCXWD5000LPVX-80V0TT0_WD-WX21EA436D6136D61",
"hxxp://search.yahoo.com/?fr=hp-ddc-bd&type=bg_616_bl-is-15__alt__ddc_dsssyc_bd_com"
CHR DefaultSearchKeyword: Default -> yahoo.com
CHR DefaultNewTabURL: Default -> http://search.yahoo.com/?fr=hp-ddc-bd-tab&type=bg_616_bl-is-20__alt__ddc_dsssyctab_bd_com
CHR Extension: (kdliiojahgmpdhebagjlmompdkkfckee) - C:\Users\Karol\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdliiojahgmpdhebagjlmompdkkfckee [2015-02-23]
CHR Extension: (Strong Signal) - C:\Users\Karol\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmflphdpkoolcmmpgmmlhdghcdjondmd [2015-05-17]
OPR StartupUrls: "hxxp://search.yahoo.com/?fr=hp-ddc-bd&type=bg_616_bl-is-20__alt__ddc_dsssyc_bd_com"
OPR Extension: (Strong Signal) - C:\Users\Karol\AppData\Roaming\Opera Software\Opera Stable\Extensions\kmflphdpkoolcmmpgmmlhdghcdjondmd [2015-05-17]
R2 Service Mgr StrongSignal; C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\PluginContainer.exe [556304 2015-05-17] ()
R2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1026432 2015-03-20] (Enigma Software Group USA, LLC.)
R2 Update Mgr StrongSignal; C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce\updater.exe [478992 2015-05-17] ()
R3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [15920 2015-03-20] (Enigma Software Group USA, LLC.)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2015-03-20] ()
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
C:\Users\Karol\Start Menu\Programs\SpyHunter\SpyHunter.lnk
C:\Users\Karol\Desktop\SpyHunter.lnk
ShortcutWithArgument: C:\Users\Karol\Start Menu\Programs\SpyHunter\SpyHunter Emergency Startup.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> "C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.com"
ShortcutWithArgument: C:\Users\Karol\Start Menu\Programs\SpyHunter\Uninstall.lnk -> C:\Users\Karol\AppData\Roaming\Enigma Software Group\sh_installer.exe (Enigma Software Group USA, LLC.) -> -r sh
C:\Users\Karol\Start Menu\Programs\SpyHunter\SpyHunter Emergency Startup.lnk
C:\Users\Karol\Start Menu\Programs\SpyHunter
EmptyTemp:
DeleteQuarantine:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 1 gość