Strong Signal ads usuwanie


(Yuya) #1

Cześć

 

Mam problem z Strong Signal ADS i masą wyskakujących reklam, jak to usunąć? Ściągnęłam AdwCleanera i FRST, raporty z FRST i Addition w załączniku, co mam robić dalej?

 

pozdrawiam

FRST.txt

Addition.txt


(Acorus) #2

Odinstaluj Ask Toolbar,McAfee Security Scan Plus,GeekBuddy.Otwórz notatnik systemowy i wklej:

Task: {25260CD4-ADBC-4287-A685-63FE57A9F2EE} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2029245600-2550034735-2900586308-1001Core = C:\Users\Julia\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-10-03] (Facebook Inc.)
Task: {9B2E7AB6-2F76-4EF7-95FA-4E32BBBDA2DD} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2029245600-2550034735-2900586308-1001UA = C:\Users\Julia\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-10-03] (Facebook Inc.)
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2029245600-2550034735-2900586308-1001Core.job = C:\Users\Julia\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2029245600-2550034735-2900586308-1001UA.job = C:\Users\Julia\AppData\Local\Facebook\Update\FacebookUpdate.exe
HKLM-x32\...\Run: [SwitchBoard] = C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] = C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [tvncontrol] = C:\Program Files (x86)\Common Files\COMODO\GeekBuddyRSP.exe [2327248 2015-01-30] (Comodo Security Solutions, Inc.)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-2029245600-2550034735-2900586308-1001\...\Run: [Facebook Update] = C:\Users\Julia\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-10-03] (Facebook Inc.)
HKU\S-1-5-21-2029245600-2550034735-2900586308-1001\...\Run: [AdobeBridge] = [X]
HKU\S-1-5-21-2029245600-2550034735-2900586308-1001\...\Run: [ALLUpdate] = "C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe" "sleep"
HKU\S-1-5-21-2029245600-2550034735-2900586308-1001\...\Run: [ALLPlayer WiFi Remote] = C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe [5182896 2014-07-23] (ALLPlayer Group Ltd.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk - C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
GroupPolicy: Group Policy on Chrome detected ======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction ======= ATTENTION
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-09-09] (Sun Microsystems, Inc.)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO-x32: No Name - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - No File
BHO-x32: Strong Signal - {c723a437-2eaf-466d-a95b-3fa0966bf88c} - C:\Program Files (x86)\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll No File
FF SearchEngineOrder.1: Ask Search
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\.xml [2015-04-18]
FF Extension: Ask Toolbar - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\sandut3m.default\Extensions\toolbar_ORJ-V7@apn.ask.com.xpi [2013-10-15]
FF Extension: Strong Signal - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\sandut3m.default\Extensions\{025dbedb-f452-4a39-a1c4-e89bcf3ebe8f}.xpi [2015-04-18]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKU\S-1-5-21-2029245600-2550034735-2900586308-1001\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: No Name - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\sandut3m.default\extensions\istart_ffnt@gmail.com [Not Found]
CHR RestoreOnStartup: Default - "hxxp://search.yahoo.com/?fr=hp-ddc-bdtype=bg_616_bl-is-16 __alt__ ddc_dsssyc_bd_com"
CHR DefaultSearchURL: Default - http://do-search.com/web/?type=dsppts=1426531260from=coruid=WDCXWD3200BPVT-55JJ5T0_WD-WXC1CB14040840408q={searchTerms}
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll No File
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.90\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.90\pdf.dll No File
CHR Plugin: (Java Deployment Toolkit 6.0.220.4) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U22) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Extension: (Bookmark Manager) - C:\Users\Julia\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-17]
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 Service Mgr StrongSignal; C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\PluginContainer.exe [532752 2015-04-18] ()
R2 Update Mgr StrongSignal; C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce\Updater.exe [455952 2015-04-18] ()
S3 massfilter; system32\drivers\massfilter.sys [X]
S3 massfilter_hs; system32\drivers\massfilter_hs.sys [X]
S3 USBZTECCID; system32\DRIVERS\ZTEusbccid.sys [X]
S3 ZTEusbMB; system32\DRIVERS\ZTEusbnmeaext2.sys [X]
S3 ZTEusbmdm6k; system32\DRIVERS\ZTEusbmdm6k.sys [X]
S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [X]
S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [X]
S3 ZTEusbwwan; system32\DRIVERS\ZTEusbwwan.sys [X]
S3 zte_massejct; System32\Drivers\zte_massejct.sys [X]
2015-04-18 15:17 - 2015-04-18 15:17 - 00000000 ____ D () C:\Program Files (x86)\Strong Signal
2015-04-18 15:10 - 2015-04-18 15:10 - 00000000 ____ D () C:\ProgramData\AskPartnerNetwork
2015-04-18 15:08 - 2015-04-18 15:12 - 00000000 ____ D () C:\AdwCleaner
2014-04-22 20:29 - 2014-06-02 23:28 - 0003754 _____ () C:\Program Files (x86)\Mozilla Firefoxsafeguard-secure-search.xml
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.