Strong signal ads


(Kinga2715) #1

Mam problem z usunięciem powered  by strong signal.Proszę o pomoc.

FRST.txt

Addition.txt


(Acorus) #2

Odinstaluj Asus WebStorage.Otwórz notatnik systemowy i wklej:

Task: {3A20764E-7EA1-4102-87A7-6E7C180B101A} - System32\Tasks\{0C451017-167C-4117-941A-398107C4E075} = pcalua.exe -a D:\Kamil\ComboFix.exe -d D:\Kamil
GroupPolicy: Group Policy on Chrome detected ======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1447088023-1283503780-1991551921-1001 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKU\S-1-5-21-1447088023-1283503780-1991551921-1001 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://do-search.com/web/?utm_source=butm_medium=corutm_campaign=install_ieutm_content=dsfrom=coruid=3219913727_67194_00C2ABE8ts=1427730534type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-1447088023-1283503780-1991551921-1001 - {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://do-search.com/web/?utm_source=butm_medium=corutm_campaign=install_ieutm_content=dsfrom=coruid=3219913727_67194_00C2ABE8ts=1427730534type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-1447088023-1283503780-1991551921-1001 - {D254B999-ECE8-47B5-8483-B0A21271A6F6} URL = http://do-search.com/web/?utm_source=butm_medium=corutm_campaign=install_ieutm_content=dsfrom=coruid=3219913727_67194_00C2ABE8ts=1427730534type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-1447088023-1283503780-1991551921-1001 - {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://do-search.com/web/?utm_source=butm_medium=corutm_campaign=install_ieutm_content=dsfrom=coruid=3219913727_67194_00C2ABE8ts=1427730534type=defaultq={searchTerms}
FF DefaultSearchEngine: do-search
FF SelectedSearchEngine: do-search
FF Homepage: ?type=hppp
FF Extension: Strong Signal - C:\Users\Kinga\AppData\Roaming\Mozilla\Firefox\Profiles\fr9vgrj7.default\Extensions\{78321fcc-38de-4e31-9756-9afb7ad2672e}.xpi [2015-03-05]
FF Extension: browse pulse - C:\Users\Kinga\AppData\Roaming\Mozilla\Firefox\Profiles\fr9vgrj7.default\Extensions\{8816f3fa-c3a1-470e-a82f-ac6cd0e46816}.xpi [2015-03-30]
CHR HomePage: Default - ?type=hppp
CHR StartupUrls: Default - "?type=hppp"
CHR DefaultSearchURL: Default - web/?type=dsppq={searchTerms}
CHR Extension: (Strong Signal) - C:\Users\Kinga\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhcklkloafcpghahpjomodagghgpdmgb [2015-03-06]
R2 Service Mgr browsepulse; C:\ProgramData\5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15\plugincontainer.exe [584432 2015-03-30] ()
R2 Update Mgr browsepulse; C:\Program Files (x86)\Common Files\5b4b2b13-bc3c-4690-a9ac-2f28c7e74c15\updater.exe [514288 2015-03-30] ()
U3 tmlwf; No ImagePath
U3 tmwfp; No ImagePath
2015-03-30 17:48 - 2015-03-30 17:48 - 00000000 ____ D () C:\Users\Kinga\AppData\Roaming\do-search
2015-03-29 20:43 - 2015-03-29 20:46 - 00000000 ____ D () C:\AdwCleaner
2015-03-29 20:37 - 2015-03-29 20:37 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Kinga\Desktop\SpyHunter-installer.exe
2015-03-29 20:12 - 2015-03-29 20:12 - 00003072 _____ () C:\Windows\System32\Tasks\{0C451017-167C-4117-941A-398107C4E075}
2015-03-25 22:49 - 2015-03-25 22:56 - 00705176 _____ () C:\Users\Kinga\Downloads\SpyHunter-installer.exe.part
2015-03-12 20:05 - 2015-03-12 20:05 - 00003100 _____ () C:\Windows\System32\Tasks\{54B3FCF7-4AAE-4C65-9F9D-C12B54A2E01D}
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.


(Kinga2715) #3

http://wklejto.pl/224731

http://wklejto.pl/224734


(Acorus) #4

Pokazałeś stare logi .Pokaż log z usuwania.


(Kinga2715) #5

http://wklejto.pl/224739


(Acorus) #6

Skasuj folder C:\FRST