

C:\ProgramData\fccb0821-00ee-466c-acb5-2a5cec258511
C:\Program Files (x86)\Common Files\fccb0821-00ee-466c-acb5-2a5cec258511
Task: {097F2DA4-47FE-4D59-92BB-CEF63ED04DC3} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {0D30D355-EDD7-4259-902A-080793E9F7AF} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {35080E79-A48F-427A-AAB0-BC1C3BAD8721} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {420E984A-B702-4877-89D5-2AB038D4C9EB} - System32\Tasks\Coinify => c:\programdata\{d8fb9cb9-0c16-e25c-d8fb-b9cb90c172e4}\pokemon silver blue.zip.exe <==== ATTENTION
Task: {453BAE67-97F8-46D9-8713-0A47A6522D68} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {5EA723DC-4EBB-4A9F-9F0B-D5E4DB6FEED3} - System32\Tasks\{0D55F988-DCEA-4602-BF1D-6985D4BD67D5} => pcalua.exe -a C:\ProgramData\EpicScale\1\EpicScale.exe -c EpicScale DoUninstall
Task: {698877AA-E300-49C3-B530-F5E0A9B2D2CA} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {85407343-0A81-4DDD-9A09-0DCB7CD76D19} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe [2015-01-30] (Enigma Software Group USA, LLC.)
Task: {A905E841-5D0B-4E97-9F27-EBDC37E05AAD} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {AD08E39C-0C7B-4967-BB35-46A3CFA32521} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-07-08] ()
Task: {BF8F3122-311B-4AA7-82DE-4A7A7A2C7F9A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {C4565BF9-B5DE-4098-844F-BB408FEEFB91} - System32\Tasks\{4D7C8C50-32AF-40BA-B23E-C716DFDCE9F5} => pcalua.exe -a "C:\Program Files (x86)\JoWood\Gothic II\System\GothicStarter.exe" -d "C:\Program Files (x86)\JoWood\Gothic II\System"
Task: {C91636E2-3F10-4667-9B87-07DFA34673EC} - System32\Tasks\{FEB13073-F3B4-4C7E-BBCB-11D698D9B3D4} => pcalua.exe -a "C:\Program Files (x86)\Dragonball Xenoverse\Texmod.exe" -d "C:\Program Files (x86)\Dragonball Xenoverse"
Task: {CC759A48-660A-48F1-BADC-4F5C4E131606} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {D0A70513-F0DC-4314-8774-79934CD6EC05} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {DE992D53-CAA8-4EDF-97D6-C16567C3D4AB} - System32\Tasks\{92607DFB-511F-4065-8BE8-7A17BF5E8B63} => pcalua.exe -a F:\SetUp.exe -d F:\
Task: {FC8A68BA-5AFF-4A9E-946A-5AF32B6AD6F5} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {FD15D226-F4FC-41E3-A23E-537F6C72699C} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\Coinify.job => c:\programdata\{d8fb9cb9-0c16-e25c-d8fb-b9cb90c172e4}\pokemon silver blue.zip.exe <==== ATTENTION
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SpyHunter" /f
Reg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SpyHunter4_is1" /f
C:\Program Files\Enigma Software Group
c:\programdata\{d8fb9cb9-0c16-e25c-d8fb-b9cb90c172e4}
BootExecute: autocheck autochk * sh4native Sh4Removal
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
OPR Extension: (Wander Burst) - C:\Users\mex\AppData\Roaming\Opera Software\Opera Stable\Extensions\pnpakkiaogjnlnpaadifilhmpannaodp [2015-08-16]
R2 iSafeService; C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe [118048 2015-04-16] (Elex do Brasil cenzura!ções Ltda)
R2 Service Mgr WanderBurst; C:\ProgramData\fccb0821-00ee-466c-acb5-2a5cec258511\PluginContainer.exe [1193696 2015-08-17] ()
R2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [770944 2015-01-30] (Enigma Software Group USA, LLC.)
R2 Update Mgr WanderBurst; C:\Program Files (x86)\Common Files\fccb0821-00ee-466c-acb5-2a5cec258511\updater.exe [704736 2015-08-17] ()
R1 iSafeKrnl; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnl.sys [260856 2015-05-14] (Elex do Brasil cenzura!ções Ltda)
S3 iSafeKrnlBoot; C:\Windows\System32\DRIVERS\iSafeKrnlBoot.sys [53568 2015-04-16] (Elex do Brasil cenzura!ções Ltda)
S1 iSafeKrnlKit; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlKit.sys [110112 2015-07-03] (Elex do Brasil cenzura!ções Ltda)
R1 iSafeKrnlMon; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [60808 2015-07-27] (Elex do Brasil cenzura!ções Ltda)
R1 iSafeKrnlR3; C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlR3.sys [103904 2015-07-23] (Elex do Brasil cenzura!ções Ltda)
R1 iSafeNetFilter; C:\Windows\System32\DRIVERS\iSafeNetFilter.sys [52392 2015-04-14] (Elex do Brasil cenzura!ções Ltda)
C:\Windows\System32\DRIVERS\iSafeNetFilter.sys
C:\Windows\System32\DRIVERS\iSafeKrnlBoot.sys
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
C:\ProgramData\Microsoft\Windows\Start Menu\YAC.lnk
C:\Users\Public\Desktop\YAC.lnk
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC
C:\Users\mex\AppData\Roaming\Elex-tech
C:\Users\mex\Downloads\yet_another_cleaner_sk_7993640.exe
C:\spyhunter.fix
C:\WINDOWS\SysWOW64\sh4native.exe
2015-08-17 11:41 - 2015-08-17 11:41 - 00001100 _____ C:\Users\mex\Desktop\SpyHunter4.lnk
2015-08-17 11:41 - 2015-08-17 11:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyHunter4
2015-08-17 11:40 - 2015-08-17 11:40 - 44053568 _____ C:\Users\mex\Downloads\SpyHunter 4.18.9.4384 Full Zarejestrowany 64 Bit.7z
2015-08-17 02:47 - 2015-08-17 02:47 - 44409924 _____ C:\Users\mex\Downloads\SpyHunter 4.17.6.4336 (FULL + Patch).zip
2015-08-17 02:37 - 2015-08-17 11:47 - 00003352 _____ C:\WINDOWS\System32\Tasks\SpyHunter4Startup
2015-08-17 02:37 - 2015-08-17 02:37 - 00001136 _____ C:\Users\mex\Desktop\SpyHunter.lnk
2015-08-17 02:37 - 2015-08-17 02:37 - 00000000 ____D C:\Users\mex\AppData\Roaming\Enigma Software Group
2015-08-17 02:37 - 2015-08-17 02:37 - 00000000 ____D C:\sh4ldr
2015-08-17 02:36 - 2015-08-17 02:36 - 03237248 _____ (Enigma Software Group USA, LLC.) C:\Users\mex\Downloads\SpyHunter-Installer.exe
2015-08-17 02:36 - 2015-01-30 17:12 - 00019984 _____ C:\WINDOWS\system32\Drivers\EsgScanner.sys
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyHunter4\Deinstalacja programu SpyHunter4.lnk
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyHunter4\SpyHunter4.lnk
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC\YAC.lnk
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC
C:\Users\Public\Desktop\YAC.lnk
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC\Pełne czyszczenie śmieci.lnk
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC\Pełne czyszczenie śmieci.lnk -> C:\Program Files (x86)\Elex-tech\YAC\iStart.exe (Elex do Brasil cenzura!ções Ltda) -> -divertop -param0=2 -param1=0 -param2=1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC\uninstall.lnk -> C:\Program Files (x86)\Elex-tech\YAC\uninstall.exe (Elex do Brasil cenzura!ções Ltda) -> -uninst
ShortcutWithArgument: C:\Users\mex\Start Menu\Programs\SpyHunter\SpyHunter Emergency Startup.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> "C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.com"
ShortcutWithArgument: C:\Users\mex\Start Menu\Programs\SpyHunter\Uninstall.lnk -> C:\Users\mex\AppData\Roaming\Enigma Software Group\sh_installer.exe (Enigma Software Group USA, LLC.) -> -r sh
EmptyTemp:
[color="#FF0000"]CHR dev: Chrome dev build detected! <======= ATTENTION[/color]
C:\Program Files (x86)\Wander Burst
C:\Users\mex\Downloads\yet_another_cleaner_sk_7993640.exe
C:\spyhunter.fix
C:\WINDOWS\SysWOW64\sh4native.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyHunter4
C:\Users\mex\Desktop\SpyHunter4.lnk
C:\Users\mex\Downloads\SpyHunter-Installer.exe
EmptyTemp:
DeleteQuarantine:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 5 gości