Problem z strong signal ads


(Martanowicka14) #1

Witam, tak jak w temacie... reklamy są wszędzie... :confused:

Proszę o pomoc

 

 

Addition

http://www.wklej.org/id/1713616/

 

FRST

http://www.wklej.org/id/1713617/

 

Pozdrawiam.


(Acorus) #2

Odinstaluj pdfforge Toolbar v7.6.Otwórz notatnik systemowy i wklej:

Task: {63D157BF-A4D2-46F3-B2B3-228CEDE0DF6B} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv = C:\Windows\TEMP\{B8F241C3-91D1-455D-959D-FE395440FA06}.exe
Task: {6DD7E43D-5C87-4950-AD55-852AB1955409} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv = C:\Windows\TEMP\{F28D8B9E-2D0D-4DB5-A24B-8C43844D17F2}.exe
Task: {DCC310FC-763D-45CB-AC52-7872FEA247A7} - System32\Tasks\Trojan Killer = C:\Program Files\GridinSoft Trojan Killer\trojankiller.exe
Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job = C:\Windows\TEMP\{B8F241C3-91D1-455D-959D-FE395440FA06}.exe ==== ATTENTION
Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job = C:\Windows\TEMP\{F28D8B9E-2D0D-4DB5-A24B-8C43844D17F2}.exe ==== ATTENTION
HKU\S-1-5-21-2121181864-2537845871-2087004555-1000\...\Run: [RMF FM Miasto Muzyki] = [X]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014-03-18]
ShortcutTarget: McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
ShellIconOverlayIdentifiers: [GGDriveOverlay1] - {E68D0A50-3C40-4712-B90D-DCFA93FF2534} = C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File
ShellIconOverlayIdentifiers: [GGDriveOverlay2] - {E68D0A51-3C40-4712-B90D-DCFA93FF2534} = C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File
ShellIconOverlayIdentifiers: [GGDriveOverlay3] - {E68D0A52-3C40-4712-B90D-DCFA93FF2534} = C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File
ShellIconOverlayIdentifiers: [GGDriveOverlay4] - {E68D0A53-3C40-4712-B90D-DCFA93FF2534} = C:\ProgramData\GG\ggdrive\ggdrive-overlay.dll No File
GroupPolicy: Group Policy on Chrome detected ======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction ======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.yac.mx/?utm_source=butm_medium=iSafefrom=iSafeuid=wdcxwd3200bevt-22zct0_wd-wxe408js0546s0546
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.yac.mx/?utm_source=butm_medium=iSafefrom=iSafeuid=wdcxwd3200bevt-22zct0_wd-wxe408js0546s0546
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.yac.mx/?utm_source=butm_medium=iSafefrom=iSafeuid=wdcxwd3200bevt-22zct0_wd-wxe408js0546s0546
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.yac.mx/?utm_source=butm_medium=iSafefrom=iSafeuid=wdcxwd3200bevt-22zct0_wd-wxe408js0546s0546
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT - {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms}type=dsfrom=yacuid=wdcxwd3200bevt-22zct0_wd-wxe408js0546s0546ts=1431849287
SearchScopes: HKU\S-1-5-19 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 - {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms}type=dsfrom=yacuid=wdcxwd3200bevt-22zct0_wd-wxe408js0546s0546ts=1431849287
SearchScopes: HKU\S-1-5-20 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 - {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms}type=dsfrom=yacuid=wdcxwd3200bevt-22zct0_wd-wxe408js0546s0546ts=1431849287
SearchScopes: HKU\S-1-5-21-2121181864-2537845871-2087004555-1000 - {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL =
SearchScopes: HKU\S-1-5-21-2121181864-2537845871-2087004555-1000 - {DD01C014-D08E-4666-AEE1-99B9E3B36DF7} URL = http://search.yahoo.com/search?fr=chr-greentree_ieei=utf-8ilc=12type=827316p={searchTerms}
SearchScopes: HKU\S-1-5-21-2121181864-2537845871-2087004555-1000 - {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL =
BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09]
BHO: Strong Signal - {c723a437-2eaf-466d-a95b-3fa0966bf88c} - C:\Program Files\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll No File
FF DefaultSearchEngine: YAC Safe Search
FF SearchEngineOrder.1: YAC Safe Search
FF SelectedSearchEngine: YAC Safe Search
FF Extension: Strong Signal - C:\Users\Madzia\AppData\Roaming\Mozilla\Firefox\Profiles\dz20omyx.default\Extensions\{505141e0-c232-40dc-a148-f7a39e4a7118}.xpi [2015-05-17]
FF HKU\S-1-5-21-2121181864-2537845871-2087004555-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: No Name - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
CHR Extension: (Bookmark Manager) - C:\Users\Madzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-22]
CHR Extension: (Strong Signal) - C:\Users\Madzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmflphdpkoolcmmpgmmlhdghcdjondmd [2015-05-17]
OPR Extension: (Strong Signal) - C:\Users\Madzia\AppData\Roaming\Opera Software\Opera Stable\Extensions\kmflphdpkoolcmmpgmmlhdghcdjondmd [2015-05-17]
R2 Update Mgr StrongSignal; C:\Program Files\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce\updater.exe [478992 2015-05-17] ()
U3 av9stivh; C:\Windows\system32\Drivers\av9stivh.sys [0] (Advanced Micro Devices) ==== ATTENTION (zero size file/folder)
S3 cpuz134; \\C:\Users\Madzia\AppData\Local\Temp\cpuz134\cpuz134_x32.sys [X]
S3 dgderdrv; System32\drivers\dgderdrv.sys [X]
S3 esgiguard; \\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
2015-05-17 10:34 - 2015-05-17 10:54 - 00000000 ____ D () C:\AdwCleaner
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.


(Martanowicka14) #3

Niestety przy próbie odinstalowania pdf… 

wyskakuje mi błąd:

Error 1316. Określone konto już istnieje. 

 

a sam krok drugi, zmienił niewiele… :confused:


(Atis) #4

Odinstaluj Chrome zaznaczając usunięcie danych przeglądania za pomocą Geek Uninstaller Free: KLIK

Najpierw możesz wyeksportować zakładki: KLIK

Później zainstaluj: KLIK

Odinstaluj McAfee Security Scan Plus.

Skasuj folder C:\FRST

Dysk przeskanuj Malwarebytes Anti-Malware

Podczas instalacji usuń zaznaczenie przy Uruchom okres testowy Malwarebytes Anti-Malware Premium.

http://wstaw.org/m/2014/03/25/2014-03-25_123039.png

Język PL > Settings > General Settings > Language > Polish

Przeczytaj w jaki sposób należy instalować programy: KLIK - KLIK - KLIK - KLIK