Mam Vistę i średnio znam się na komputerze, jeśli to możliwe to proszę o pomoc
![Wink :wink:](https://forum.instalki.pl/images/smilies/icon_wink.gif)
![Confused :?](https://forum.instalki.pl/images/smilies/icon_confused.gif)
UA: Mozilla/5.0 (Windows NT 6.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/47.0.2526.111 Safari/537.36 OPR/34.0.2036.50
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:44.0) Gecko/20100101 Firefox/44.0
UA: Mozilla/5.0 (Windows NT 6.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/48.0.2564.97 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:44.0) Gecko/20100101 Firefox/44.0
Task: {0F6F42B7-BB2C-4817-8D4F-A3F97D743ED6} - System32\Tasks\PercolatorsScherzoV2 => Rundll32.exe FaunaeOvertire.dll,main 7 1 <==== UWAGA
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated)
HKLM\...\Run: [WinampAgent] => C:\Program Files\Winamp\winampa.exe [37888 2009-07-01] ()
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast]{472083B0-C522-11CF-8763-00608CC02F24} => Brak pliku
ShellIconOverlayIdentifiers: [BaiduAntivirusIconLock]{0A93904A-BB1E-4a0c-9753-B57B9AE272CC} => Brak pliku
GroupPolicy: Ograniczenia - Chrome <======= UWAGA
CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartpageing.com/?type=hp&ts=1448805940&z=f47e489ea0c16822e1b9d18g8zbzcb4bae7w8tbz1e&from=cornl&uid=st9500325as_5ve4tcjfxxxx5ve4tcjf
HKU\S-1-5-21-3394466526-415501628-3318039528-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://search.delta-homes.com/web/?type=ds&ts=1432149294&z=3102522b0630b82256e928bgfz9c9ocg7zbteodtew&from=wpm05203&uid=ST9500325AS_5VE4TCJFXXXX5VE4TCJF&q={searchTerms}
HKU\S-1-5-21-3394466526-415501628-3318039528-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://search.delta-homes.com/web/?type=ds&ts=1432149294&z=3102522b0630b82256e928bgfz9c9ocg7zbteodtew&from=wpm05203&uid=ST9500325AS_5VE4TCJFXXXX5VE4TCJF&q={searchTerms}
HKU\S-1-5-21-3394466526-415501628-3318039528-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartpageing.com/?type=hp&ts=1448805940&z=f47e489ea0c16822e1b9d18g8zbzcb4bae7w8tbz1e&from=cornl&uid=st9500325as_5ve4tcjfxxxx5ve4tcjf
SearchScopes: HKU\S-1-5-21-3394466526-415501628-3318039528-1000{33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartpageing.com/web/?type=ds&ts=1448805940&z=f47e489ea0c16822e1b9d18g8zbzcb4bae7w8tbz1e&from=cornl&uid=st9500325as_5ve4tcjfxxxx5ve4tcjf&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3394466526-415501628-3318039528-1000{67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://do-search.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=ST9500325AS_5VE4TCJFXXXX5VE4TCJF&ts=1431892949&type=default&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.yoursearching.com/?type=sc&ts=1450299610&z=663af9292c91f81de01f4c7gezfwde2odt7tbq7e8w&from=cornl&uid=ST9500325AS_5VE4TCJFXXXX5VE4TCJF
FF Homepage: hxxp://searchinterneat-a.akamaihd.net/h?eq=U0EeCFZVBB8SRghFcwkBAg9CQBgbJF0OTA0SE1EOIgFdVhQQFgITJgANA1pJEAwFIk0FA18DB0VXfWFoKB8fHHFKM1pXF1wDWHRTMA==
FF Extension: Discovery App - C:\Users\ttw\AppData\Roaming\Mozilla\Firefox\Profiles\0okn847f.default\Extensions\{6b685626-86b6-4571-9c6a-ca69e6446965}.xpi [2016-01-09] [Brak podpisu cyfrowego]
CHR StartupUrls: Default"hxxp://www.yoursearching.com/?type=hp&ts=1450299610&z=663af9292c91f81de01f4c7gezfwde2odt7tbq7e8w&from=cornl&uid=ST9500325AS_5VE4TCJFXXXX5VE4TCJF"
CHR Extension: (Discovery App) - C:\Users\ttw\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahckhjibgfpddoogbomdemiekkalmema [2016-01-10] [UpdateUrl: hxxp://cdn.ratediscoverymarket.com/update] <==== UWAGA
CHR Extension: (Glass Bottle) - C:\Users\ttw\AppData\Local\Google\Chrome\User Data\Default\Extensions\gnigdaopdjegonneaholnnndkjfienno [2015-05-18] [UpdateUrl: hxxp://cdn.glassbottleapp.com/update] <==== UWAGA
OPR Extension: (Discovery App) - C:\Users\ttw\AppData\Roaming\Opera Software\Opera Stable\Extensions\ahckhjibgfpddoogbomdemiekkalmema [2016-01-10]
StartMenuInternet: (HKLM) OperaNext - C:\Program Files\Opera Next\Opera.exe hxxp://www.yoursearching.com/?type=sc&ts=1450299610&z=663af9292c91f81de01f4c7gezfwde2odt7tbq7e8w&from=cornl&uid=ST9500325AS_5VE4TCJFXXXX5VE4TCJF
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
S0 Vax347b; system32\DRIVERS\Vax347b.sys [X]
S0 Vax347s; System32\Drivers\Vax347s.sys [X]
2016-01-28 21:48 - 2016-01-29 06:09 - 00000000 ____D C:\Program Files\SearchesToYesbnd
2016-01-10 11:27 - 2016-01-27 20:29 - 00000000 ____D C:\Program Files\Common Files\653ac11b-b606-42c5-b357-bca0fd28d1cd
2016-01-10 11:27 - 2016-01-27 20:28 - 00000000 ____D C:\ProgramData\653ac11b-b606-42c5-b357-bca0fd28d1cd
2016-01-10 11:27 - 2016-01-10 11:27 - 00000000 ____D C:\ProgramData\a16512e4-7dd3-0
2016-01-10 11:27 - 2016-01-10 11:27 - 00000000 ____D C:\ProgramData\a16512e4-3a61-1
2016-01-10 11:27 - 2016-01-10 11:27 - 00000000 ____D C:\Program Files\Discovery App
EmptyTemp:
UA: Mozilla/5.0 (Windows NT 6.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/48.0.2564.97 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:44.0) Gecko/20100101 Firefox/44.0
UA: Mozilla/5.0 (Windows NT 6.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/48.0.2564.97 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:44.0) Gecko/20100101 Firefox/44.0
DeleteQuarantine:
UA: Mozilla/5.0 (Windows NT 6.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/48.0.2564.97 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.0) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/48.0.2564.97 Safari/537.36
Zarejestrowani użytkownicy: Bing [Bot]