Скопируйте код ниже в буфер обмена.
Закройте все браузеры.
Запустите UVS под текущим пользователем.
В меню: Скрипты----Выполнить из буфера обмена
Код:
;uVS v4.0.10 [http://dsrt.dyndns.org]
;Target OS: NTv10.0
v400c
setdns Ethernet\4\{70212291-70C9-4275-9D03-DFEF2A9E60B0}\82.209.213.56
delref %SystemDrive%\USERS\POKERYURA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\FLLIILNDJEOHCHALPBBCDEKJKLBDGFKK\2.0.0_0\AVIRA BROWSER SAFETY
delref %SystemDrive%\USERS\POKERYURA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\IPMKFPCNMCCEJIDIDIAAGPGCHGJFAJGP\1.5.1_0\AVIRA SAFESEARCH PLUS
delref %SystemDrive%\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\51.0.2704.103\RESOURCES\CHROME_APP\CHROME
delref %SystemDrive%\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\51.0.2704.103\RESOURCES\NETWORK_SPEECH_SYNTHESIS\GOOGLE NETWORK SPEECH
delref HTTPS://CHROME.GOOGLE.COM/WEBSTORE/DETAIL/LPEEAGHDJMHLAKOJJCGFDHGCEJDAEFMI
delref HTTPS://CLIENTS2.GOOGLE.COM/SERVICE/UPDATE2/CRX?RESPONSE=REDIRECT&PRODVERSION=38.0&X=ID%3DFLLIILNDJEOHCHALPBBCDEKJKLBDGFKK%26INSTALLSOURCE%3DONDEMAND%26UC
delref HTTPS://CLIENTS2.GOOGLE.COM/SERVICE/UPDATE2/CRX?RESPONSE=REDIRECT&PRODVERSION=38.0&X=ID%3DIIKFLKCANBLCCFAHDHDONEHDALIBJNIF%26INSTALLSOURCE%3DONDEMAND%26UC
delref HTTPS://CLIENTS2.GOOGLE.COM/SERVICE/UPDATE2/CRX?RESPONSE=REDIRECT&PRODVERSION=38.0&X=ID%3DIPMKFPCNMCCEJIDIDIAAGPGCHGJFAJGP%26INSTALLSOURCE%3DONDEMAND%26UC
delref %SystemDrive%\USERS\POKERYURA\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\EXTENSIONS\IIKFLKCANBLCCFAHDHDONEHDALIBJNIF\1.0.5_0\NORTON IDENTITY SAFE
delall %SystemDrive%\PROGRAM FILES (X86)\NORTON INTERNET SECURITY\ENGINE\22.6.0.142\SYMERR.EXE
delall %SystemDrive%\PROGRAM FILES (X86)\NORTON INTERNET SECURITY\ENGINE\22.6.0.142\WSCSTUB.EXE
regt 27
deltmp
delnfr
restart
После перезагрузки выполните
сканирование в Malwarebytes