Key Find


(siedemosiem) #1

Mam nieproszonego gościa

Proszę o pomoc

frst.txt http://www.wklej.org/id/1630369/

addition.txt http://www.wklej.org/id/1630377/


(Atis) #2

W panelu sterowania odinstaluj McAfee Security Scan Plus, Yet Another Cleaner, Strong Signal

Pobierz i uruchom AdwCleaner Kliknij Scan i później Cleaning.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.


(siedemosiem) #3

raport z frst http://wklej.org/id/1631517/


(Atis) #4

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

Winlogon\Notify\igfxcui: igfxdev.dll [X]
HKLM\...\Policies\Explorer: [NoControlPanel] 0
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
URLSearchHook: [S-1-5-21-2847446407-1974053891-1431907498-1001] ATTENTION ==> Default URLSearchHook is missing.
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2847446407-1974053891-1431907498-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO-x32: Strong Signal -> {c723a437-2eaf-466d-a95b-3fa0966bf88c} -> C:\Program Files (x86)\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll No File
FF DefaultSearchEngine: key-find
FF Extension: Strong Signal - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\6kgfa4i3.default-1394132530266\Extensions\{9d204d90-67ed-4674-ad22-ac0bd52d6ba6}.xpi [2015-02-09]
CHR HomePage: Default -> hxxp://www.key-find.com/?type=hppp&ts=1423512689&from=cor&uid=ST1000LM024XHN-M101MBB_S2SMJ9FD102965
CHR StartupUrls: Default -> "hxxp://www.key-find.com/?type=hppp&ts=1423512689&from=cor&uid=ST1000LM024XHN-M101MBB_S2SMJ9FD102965"
CHR DefaultSearchKeyword: Default -> key-find
CHR Extension: (Strong Signal) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Extensions\fepampipjplnigjhkaijlbeppicakggl [2015-02-10]
2015-02-09 21:09 - 2015-02-09 21:09 - 00728784 _____ (Web ) C:\Users\Robert\Desktop\GIMP(13219)-dp.exe
2015-02-10 22:00 - 2013-09-23 19:50 - 00000000 ____ D () C:\AdwCleaner
CustomCLSID: HKU\S-1-5-21-2847446407-1974053891-1431907498-1002_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Robert\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll No File
Task: {5E4201D1-FCC2-4E72-A1D8-E729B8C12803} - \dsmonitor No Task File <==== ATTENTION
Task: {74D4FCA5-9B35-40AF-9BA5-F8BC21AF79B3} - \QtraxPlayer No Task File <==== ATTENTION
Task: {9FCEAB8E-B0A0-4C93-9FB6-E5A169CE36A8} - \DSite No Task File <==== ATTENTION
Task: {D7CB2B29-FF01-465C-A7D4-423EA80F3588} - System32\Tasks\Ad-Aware Antivirus Scheduled Scan => C:\PROGRA~2\AD-AWA~1\AdAwareLauncher.exe
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce
EmptyTemp:

Uruchom FRST i kliknij Fix. Pokaż raport z usuwania Fixlog.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.


(siedemosiem) #5

raport z usuwania fixlog http://wklej.org/id/1631825/

nowy raport z frst http://wklej.org/id/1631827/


(Atis) #6

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

Toolbar: HKU\S-1-5-21-2847446407-1974053891-1431907498-1002 -> No Name - {25E2E5C9-C43C-4EE8-B23E-4383915F2BCE} - No File
URLSearchHook: [S-1-5-21-2847446407-1974053891-1431907498-1001] ATTENTION ==> Default URLSearchHook is missing.
FF SearchPlugin: C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\6kgfa4i3.default-1394132530266\searchplugins\key-find.xml
DeleteQuarantine:

Uruchom FRST i kliknij Fix. Skasuj folder C:\FRST

Usuń stare punkty przywracania: Przywracanie systemu i kopie w tle

Przeczytaj w jaki sposób należy instalować programy: KLIK - KLIK - KLIK - KLIK

Odinstaluj Microsoft Silverlight i zainstaluj Silverlight 5.1.30514.0