http://www.wklejto.pl/223300
http://www.wklejto.pl/223301
http://www.wklejto.pl/223302
Z góry dziekuje
BHO: Strong Signal -> {c723a437-2eaf-466d-a95b-3fa0966bf88c} -> C:\Program Files\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll No File
C:\Program Files\Strong Signal
FF Extension: Strong Signal - C:\Documents and Settings\Maciej\Dane aplikacji\Mozilla\Firefox\Profiles\z0btun3r.default\Extensions\{d53d402a-1b39-4020-8066-3e40f3b55121}.xpi [2015-02-25]
S3 AtiHDAudioService; system32\drivers\AtihdXP3.sys [X]
C:\Program Files\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce
C:\Documents and Settings\All Users\Dane aplikacji\0780f478-67ce-4ec3-98db-39a65f4618ce
S3 cpuz135; \??\C:\DOCUME~1\Maciej\USTAWI~1\Temp\cpuz135\cpuz135_x32.sys [X]
Task: C:\WINDOWS\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job => C:\WINDOWS\TEMP\{904A062A-BBC4-403C-84CD-B11F3F3C7FFE}.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => C:\WINDOWS\TEMP\{3221D55F-23F2-45F6-9BA7-8273331F2908}.exe <==== ATTENTION
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
CHR Plugin: (AVG Internet Security) - C:\Documents and Settings\Maciej\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jmfkcklnlgedgbglfkkgedjfmejoahla\12.0.0.2161_0\plugins/avgnpss.dll No File
CHR Plugin: (Google Update) - C:\Documents and Settings\Maciej\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\11.0.2\\npsitesafety.dll No File
S4 vToolbarUpdater13.2.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe [X]
C:\WINDOWS\Minidump\Mini020815-02.dmp
C:\WINDOWS\Minidump\Mini020815-01.dmp
C:\WINDOWS\Minidump\Mini020615-01.dmp
EmptyTemp:
DeleteQuarantine:
Task: {7C9ED162-5516-46A1-B809-BE32C58938C4} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv => C:\Windows\TEMP\{83C7056C-A8E3-4488-803A-F026878D79A9}.exe
Task: {8397A304-E62F-459D-968A-997836E636EB} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv => C:\Windows\TEMP\{DAAD00A1-2D60-4681-AD39-D2213A57FB9F}.exe
Task: {E5EE8CEE-3665-4791-870E-D05687EEDCC5} - System32\Tasks\AXWMMZ => C:\Users\Vobis\AppData\Roaming\AXWMMZ.exe <==== ATTENTION
Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job => C:\Windows\TEMP\{DAAD00A1-2D60-4681-AD39-D2213A57FB9F}.exe <==== ATTENTION
Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => C:\Windows\TEMP\{83C7056C-A8E3-4488-803A-F026878D79A9}.exe <==== ATTENTION
Task: C:\Windows\Tasks\AXWMMZ.job => C:\Users\Vobis\AppData\Roaming\AXWMMZ.exe <==== ATTENTION
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
BHO: No Name -> {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} -> No File
Toolbar: HKU\S-1-5-21-2100643598-692177768-394346759-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-2100643598-692177768-394346759-1000 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
S4 Com4QLBEx; "C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe" [X]
S4 HP Health Check Service; "c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe" [X]
S4 hpqwmiex; "C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe" [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
C:\Users\Vobis\Downloads\sh-remover.exe
C:\Windows\Tasks\AXWMMZ.job
C:\Users\Public\Documents\ShopperPro
C:\Users\Vobis\AppData\Roaming\AXWMMZ
C:\Users\Vobis\AppData\Roaming\AXWMMZ.exe
C:\Users\Vobis\AppData\Local\Temp*.html
EmptyTemp:
DeleteQuarantine:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 29 gości