Niechciane reklamy pomóżcie

Adwcleaner już został pobrany, pliki wyszukane i usunięte.

FRST.txt - http://wklej.to/td7RE

Addition.txt - http://wklej.to/4RIGm

 

CZekam na pomoc

Odinstaluj Foxtab,McAfee Security Scan Plus.Otwórz Notatnik i wklej:

Task: {0F8CA1C7-35F4-4CB4-8602-729D41F61E8E} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 = Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3 ==== ATTENTION
Task: {24B68CBC-E365-464A-ABA3-FD3DC8497DD4} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 = Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update2 ==== ATTENTION
Task: {2D014285-5896-4238-BEFB-B4F9F063C86A} - System32\Tasks\PVTKDRX = C:\Users\monolit\AppData\Roaming\PVTKDRX.exe [2014-12-04] (HQ-VideoV04.12) ==== ATTENTION
Task: {3B0AB11C-234A-410D-B586-2A28535D047A} - System32\Tasks\YTDownloaderUpd = C:\Program Files (x86)\YTDownloader\updater.exe ==== ATTENTION
Task: {578A74DD-9D9A-4674-96B7-62A6A6011EC5} - System32\Tasks\KO = C:\Users\monolit\AppData\Roaming\KO.exe [2014-12-04] (Object Browser) ==== ATTENTION
Task: {812CABC7-559F-4BE5-A177-C0A55196A494} - \ITECIR Filter Application for RCMM No Task File ==== ATTENTION
Task: C:\Windows\Tasks\KO.job = C:\Users\monolit\AppData\Roaming\KO.exe ==== ATTENTION
Task: C:\Windows\Tasks\PVTKDRX.job = C:\Users\monolit\AppData\Roaming\PVTKDRX.exe ==== ATTENTION
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
GroupPolicy: Group Policy on Chrome detected ======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FF Homepage: https://mysearch.avg.com?pid=wtusg=cid=%7B23a97370-cfa7-46a9-95f0-3d123bb1e170%7Dmid=06050216adbc47cdbce19d3bff0cd639-f4b7bff778376596b9f320905a52af86c39bb71acmpid=ds=AVGv=4.0.0.19lang=plpr=frd=2014-12-05%2011%3A00%3A36sap=hp
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\wtu-secure-search.xml
FF Extension: Fun Media Bar V10 - C:\Users\monolit\AppData\Roaming\Mozilla\Firefox\Profiles\7zd0osln.default\Extensions\{130a876e-28f8-41f2-911d-084e557b057a} [2014-11-12]
FF HKU\S-1-5-21-3154680177-1660734300-3117242930-1001\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - {4ED1F68A-5463-4931-9384-8FFF5ED91D92} [Not Found]
CHR StartupUrls: Default - "hxxp://www.sweet-page.com/?type=hpts=1417602300from=coruid=ST500DM002-1BD142_S2A9QPV5XXXXS2A9QPV5"
CHR DefaultSuggestURL: Default - http://toolbar.avg.com/acp?q={searchTerms}o=1
CHR Extension: (AVG Secure Search) - C:\Users\monolit\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn [2014-12-05]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - No Path
CHR StartMenuInternet: Google Chrome - chrome.exe
S2 51cdb72; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Optimizer Pro 3.11\OptProCrash.dll",ENT
S2 vToolbarUpdater18.1.10; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.10\ToolbarUpdater.exe [X]
2014-12-05 12:13 - 2014-12-05 12:24 - 00000000 ____ D () C:\AdwCleaner
2014-12-05 11:00 - 2014-12-05 10:59 - 00050976 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys
2014-12-04 09:32 - 2014-12-04 09:32 - 00000000 ____ D () C:\Program Files (x86)\ddc9840f-5719-498e-8eb7-83ed85e5da28
2014-12-04 09:24 - 2014-12-05 12:28 - 00001338 _____ () C:\Windows\Tasks\KO.job
2014-12-04 09:24 - 2014-12-04 09:24 - 01367520 _____ (Object Browser) C:\Users\monolit\AppData\Roaming\KO.exe
2014-12-04 09:24 - 2014-12-04 09:24 - 00613057 _____ (CMI Limited) C:\Users\monolit\AppData\Local\nsu2BE2.tmp
2014-12-04 09:24 - 2014-12-04 09:24 - 00004382 _____ () C:\Windows\System32\Tasks\KO
2014-12-04 09:24 - 2014-12-04 09:24 - 00000000 ____ D () C:\Program Files (x86)\8ca33abc-e326-4c42-853f-611fe23c07cf
2014-12-04 09:24 - 2014-12-04 09:24 - 00000000 ____ D () C:\Program Files (x86)\4b8b51ea-c233-4ac4-b24c-1a5cd64bd0cb
2014-12-04 09:22 - 2014-12-04 09:22 - 00003590 _____ () C:\Windows\System32\Tasks\YTDownloaderUpd
2014-12-04 09:22 - 2014-12-04 09:22 - 00000000 ____ D () C:\Program Files (x86)\f3af8154-34e5-4ea8-b899-a5811b3c76cf
2014-12-04 09:19 - 2014-12-05 12:28 - 00001692 _____ () C:\Windows\Tasks\PVTKDRX.job
2014-12-04 09:19 - 2014-12-04 09:32 - 00000000 ____ D () C:\Program Files (x86)\80e51c64-7fd9-4b22-a6e4-9c3c08961f1f
2014-12-04 09:19 - 2014-12-04 09:19 - 01849824 _____ (HQ-VideoV04.12) C:\Users\monolit\AppData\Roaming\PVTKDRX.exe
2014-12-04 09:19 - 2014-12-04 09:19 - 00004736 _____ () C:\Windows\System32\Tasks\PVTKDRX
2014-12-03 12:42 - 2014-12-03 12:42 - 00613057 _____ (CMI Limited) C:\Users\monolit\AppData\Local\nsaA7C.tmp
2014-12-03 12:42 - 2014-12-03 12:42 - 00106456 _____ (Corsica) C:\Windows\system32\Drivers\webinstrNewH.sys
2014-12-03 12:42 - 2014-12-03 12:42 - 00000000 ____ H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNewH_01009.Wdf
2014-12-03 12:41 - 2014-12-03 12:41 - 00628496 _____ (CMI Limited) C:\Users\monolit\AppData\Local\nsa1887.tmp
2014-12-03 11:33 - 2014-12-03 11:33 - 00000000 ____ D () C:\Program Files (x86)\f042313b-688d-4c2b-b58c-58e1f4e6f6fc
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.

Dziękuje, problem roziwązany, już wszystko jest ok. 

wyniki ze skanowania z Malwarebytes Anti-Malware

 

mbamlog - http://wklej.to/ctlnW

protectionlog - http://wklej.to/j9klV