Podaje to co dostałam. + Po restarcie po wykonaniu Naprawy w FRST wyskoczyło coś takiego: https://obrazki.elektroda.pl/7644140300_1539118889_thumb.jpg
# -------------------------------
# Malwarebytes AdwCleaner 7.2.4.0
# -------------------------------
# Build: 09-25-2018
# Database: 2018-10-04.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 10-09-2018
# Duration: 00:00:04
# OS: Windows 7 Home Basic
# Cleaned: 41
# Failed: 0
***** [ Services ] *****
Deleted Update service
***** [ Folders ] *****
Deleted C:\ProgramData\Logic Cramble
Deleted C:\Windows\Installer\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}
***** [ Files ] *****
Deleted C:\Users\proxx\appdata\local\installationconfiguration.xml
Deleted C:\Users\proxx\AppData\Local\Main.dat
Deleted C:\Windows\Installer\SOURCEHASH{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}
Deleted C:\Windows\SysWOW64\findit.xml
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
Deleted C:\Users\proxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Deleted C:\Users\proxx\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\11598763487076930564
Deleted HKLM\Software\MICROSOFT\TechnologyDesktopnew
Deleted HKLM\SOFTWARE\MICROSOFT\Speedycar
Deleted HKCU\Software\mtQuoteex
Deleted HKLM\Software\Wow6432Node\mtQuoteex
Deleted HKLM\Software\Wow6432Node\MICROSOFT\WINDOWS NT\CURRENTVERSION\SILENTPROCESSEXIT\Quoteex.exe
Deleted HKLM\Software\Wow6432Node\Microleaves
Deleted HKLM\Software\RunBooster
Deleted HKLM\SOFTWARE\cb6be6702e8a509dd7cdf8460482de9d
Deleted HKLM\SOFTWARE\9dd4e461268c8034f5c8564e155c67a6
Deleted HKLM\SOFTWARE\014b7e8faa617cd73dd8fe7221b985fb
Deleted HKLM\Software\Wow6432Node\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
Deleted HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
Deleted HKCU\Software\FastDataX
Deleted HKCU\Software\csastats
Deleted HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I
Deleted HKCU\Software\dobreprogramy
Deleted HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{17C44D82-AA56-4529-B74E-3AA386955345}|NameServer - " 82.163.143.178,82.163.142.180 "
Deleted HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Quoteex.exe
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Quoteex.exe
Deleted HKU\S-1-5-18\Software\Caphyon\Advanced Updater\{F039D4A9-14D3-4425-A4FA-F2F9D5B0E014}
Deleted HKU\.DEFAULT\Software\Caphyon\Advanced Updater\{F039D4A9-14D3-4425-A4FA-F2F9D5B0E014}
Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\436F6625D7B77354DBCD89DDC6CFAB1A
Deleted HKLM\Software\Classes\Installer\Products\436F6625D7B77354DBCD89DDC6CFAB1A
Deleted HKLM\Software\Classes\Installer\Features\436F6625D7B77354DBCD89DDC6CFAB1A
Deleted HKCU\Environment|SNP
Deleted HKCU\Environment|SNF
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
Deleted https://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoGk3GzeHhcr-ccZ016lJlmTyAQ0ez4aqxf_QQM5EY4Qy9DoAtUaur_KByaFzfrmA27Quz_CTDN3Im9Gf_w2mRKZh2bJPTJt46nmgAbuYeX5dG5wm9F6v5XoOq3fZtoQyEefTYleDl41cwWmvvzrTu2XMWOmGf52ht6uTcAuEgg,,
Deleted https://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoGk3GzeHhcr-ccZ016lJlmTyAQ0ez4aqxf_QQM5EY4Qy9DoAtUaur_KByaFzfrmA27Quz_CTDN3Im9Gf_w2mRKZh2bJPTJt46nmgAbuYeX5dG5wm9F6v5XoOq3fZtoQyEefTYleDl41cwWmvvzrTu2XMWOmGf52ht6uTcAuEgg,,
Deleted WebSearch
Deleted Softonic PL
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [5272 octets] - [09/10/2018 22:58:20]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########