Strong Signal ADS

Jak to usunac? Troche poczytalem i zrobilem skan przez program FRST.

Co dalej?

FRST http://wklej.org/id/1679131/

Addition http://wklej.org/id/1679132/

W panelu sterowania odinstaluj McAfee Security Scan Plus i Strong Signal.

Usuń szkodliwe rozszerzenia General Crawler i Strong Signal w przeglądarce Firefox i Chrome

Pobierz i uruchom AdwCleaner Kliknij Scan i później Cleaning.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.

Jak usunac rozszerzenie general crawler? Jakis sprawdzony sposob?

Normalnie w ustawieniach przeglądarki.

Nie da sie. Brak przycisku usuniecia

W takim razie użyj AdwCleaner i pokaż nowe logi.

AdwCleaner (wyskoczylo po zresetowaniu pc) http://wklej.org/id/1679351/

FRST http://wklej.org/id/1679355/

 

Dodam ze po usunieciu rozszerzenia problem juz nie wystepuje :slight_smile: Moze sa jeszcze jakies pozostalosci to na wszelki wypadek wstawiam FRST.

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

HKLM\...\Run: [WinampAgent] => "C:\Program Files\Winamp1\winampa.exe"
HKLM\...\Run: [avast5] => "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
HKU\S-1-5-21-3540758701-825581066-1724588366-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-3540758701-825581066-1724588366-1000\...\Run: [Clownfish] => [X]
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.wp.pl/?src01=dp120150207
HKU\S-1-5-21-3540758701-825581066-1724588366-1000\Software\Microsoft\Internet Explorer\Main,Start Page = www.wp.pl/?src01=dp120150207
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Strong Signal -> {c723a437-2eaf-466d-a95b-3fa0966bf88c} -> C:\Program Files\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\Alwil Software\Avast5\WebRep\FF
S3 EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys [X]
S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X]
S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\1.3\temp\FairplayKD.sys [X]
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
S3 iatmunin; \??\C:\Users\Komputer\AppData\Local\Temp\iatmunin.sys [X]
S3 injectDLL; \??\C:\Users\Komputer\Desktop\metin 2 hack\FishBot\M2Fish 3.0.7\M2Fish 3.0.7\Injector 32 bit\injectDLL.sys [X]
2015-04-03 23:00 - 2015-04-03 23:01 - 00000000 ____ D () C:\AdwCleaner
2015-03-04 17:18 - 2015-02-07 20:22 - 00000000 ____ D () C:\Program Files\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce
2015-03-04 14:18 - 2015-02-07 20:22 - 00000000 ____ D () C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce
2012-07-19 12:10 - 2012-07-19 12:10 - 0027520 _____ () C:\Users\Komputer\AppData\Local\dt.dat
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{035FBE31-3755-450A-A775-5E6BBD43D344}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.135\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{095A2EEC-F7FE-42E8-96FB-C20E53081908}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.99\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.25.5\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{320F0FDB-BE0A-4648-9D18-4A2C3448C007}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.79\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.23.9\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{62A0D750-DED9-448C-B693-406B34BB0892}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.145\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{634059C0-D264-4B2C-AE80-F73E48D33E5B}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.123\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{6D7374DE-63AA-473C-8C02-60D9CDCD84C5}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.153\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.24.15\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{91EFB276-CEFE-48EC-BB3A-57795A7B4008}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.149\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{A45426FB-E444-42B2-AA56-419F8FBEEC61}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.22.3\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{A54D478D-4F70-4F72-9A74-17C9986E35AB}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.165\psuser.dll No FileCustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{62A0D750-DED9-448C-B693-406B34BB0892}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.145\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{634059C0-D264-4B2C-AE80-F73E48D33E5B}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.123\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{6D7374DE-63AA-473C-8C02-60D9CDCD84C5}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.153\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.24.15\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{91EFB276-CEFE-48EC-BB3A-57795A7B4008}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.149\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{A45426FB-E444-42B2-AA56-419F8FBEEC61}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.22.3\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{A54D478D-4F70-4F72-9A74-17C9986E35AB}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.165\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{C5A2122B-A05B-4FD8-AE49-91990AE10998}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.115\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.25.11\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{EB06378B-ABB6-4B3C-9B40-D488DD8A6E93}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.22.5\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{FB994D36-B312-46CE-A40B-CF63980641F9}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.21.111\psuser.dll No File
CustomCLSID: HKU\S-1-5-21-3540758701-825581066-1724588366-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Komputer\AppData\Local\Google\Update\1.3.24.7\psuser.dll No File
Task: {12802FB8-AE2D-4739-8B47-8D1F075D2333} - System32\Tasks\{D6D54F63-25F6-40F5-B2C3-3700C6567E0B} => Chrome.exe http://ui.skype.com/ui/0/6.16.0.105/pl/abandoninstall?source=lightinstaller&page=tsPlugin
Task: {17FC1AB5-D14F-4500-9781-EBC58735EFAF} - System32\Tasks\{D3E98A5D-8ED9-4A6E-B67F-DD86374B747F} => pcalua.exe -a F:\autorun.exe -d F:\
Task: {198F1291-2F31-4FC4-8457-D55DB2FC4956} - System32\Tasks\{31E64767-51FB-42FF-A351-5DDA318E1515} => pcalua.exe -a "D:\gry\counter strike\logo\Portable.Adobe.Photoshop.CS4-PL\PhotoshopPortable.exe" -d "D:\gry\counter strike\logo\Portable.Adobe.Photoshop.CS4-PL"
Task: {292CDF34-C944-4B96-A1D8-1948DD0D21C9} - System32\Tasks\{F4A245DE-CF5F-43A6-973B-ABAC0E29424E} => Chrome.exe 
Task: {2B9255FE-BD3B-4AE4-8A56-D7CD1A45BBDE} - System32\Tasks\{93B860A6-F948-4AA9-805C-E4D17B592A92} => Chrome.exe 
Task: {2DEA0E4D-ECAB-45A6-AE28-5001029E3F07} - System32\Tasks\{9D5F9422-14AD-48EF-AC46-069B58C96074} => c:\program files\opera\opera.exe [2012-07-26] (Opera Software)
Task: {2EA9811B-D623-4087-B276-429F03B46DC5} - System32\Tasks\{12D010D9-8325-4C66-8EED-A5C6255614A5} => Firefox.exe http://ui.skype.com/ui/0/6.3.0.105/pl/abandoninstall?page=tsMain
Task: {2F524AB5-596A-4620-A5F2-DAA887769E24} - System32\Tasks\{1D1A4800-A309-4959-916F-E1E7C8833CC7} => pcalua.exe -a C:\Windows\IsUn0415.exe -c -f"d:\gry\heroes 4\Heroes of Might and Magic IV.isu"
Task: {44652ECF-5C1F-4182-B786-86D89DD7867B} - System32\Tasks\{7711FD9A-C7DB-475F-83F3-39DD643150FE} => D:\gry\World Of Thanks\World_of_Tanks\WOTLauncher.exe [2014-04-09] (Wargaming.net)
Task: {4A8E4F41-7A13-4E24-837C-4D1ECE9CAF60} - System32\Tasks\{D7268D1E-E923-46EA-BBD6-19A53A6CC23D} => Chrome.exe 
Task: {58E692C4-E289-4A60-A82D-6EC9D75C0862} - System32\Tasks\{8C23DD26-E622-47B6-A76E-518F25C1FCA3} => C:\Program Files\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe [2015-02-13] ()
Task: {5C73ADC8-D3CD-4A2C-9D02-F1AC365356B4} - System32\Tasks\{688F89BB-C656-4AB4-A03E-BFB13719DAF6} => pcalua.exe -a C:\photoshop\\ftpdf_inst.exe -c remove
Task: {67047AEF-94F3-4A9D-A550-9CC617FEEA6F} - System32\Tasks\{D0EBB263-12EE-4B6C-B201-2DA0413B2EB3} => pcalua.exe -a "D:\gry\counter strike\program\HLC_1_setup.exe" -d "C:\Program Files\Skype\Phone"
Task: {687BFC6C-F13A-46F0-86E5-D6F0D04B6295} - System32\Tasks\{F9369CB9-5C48-40D9-8D8F-EA8AA516822F} => Chrome.exe 
Task: {7489036F-EC39-4703-9967-6050B5C11214} - System32\Tasks\{95BB1FD7-9636-45DC-9B61-C94CF1930DE8} => c:\program files\opera\opera.exe [2012-07-26] (Opera Software)
Task: {75A2D980-CF33-460C-B639-61D039C30F3D} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv => C:\Windows\TEMP\{8E35DA9E-FEC7-4012-9176-37E212EB2831}.exe
Task: {9F423134-2221-41EB-9177-33C2EB41CE0E} - System32\Tasks\{7C19A1B6-A7A1-43C9-BFCC-581368D55C32} => Chrome.exe 
Task: {A6654DCD-0A23-4021-9CAA-6C1A5E3FE53A} - System32\Tasks\{25E6F1F2-41DE-4A76-BFA5-AD8F051C8675} => pcalua.exe -a "C:\Program Files\Steam\steam.exe" -c steam://uninstall/10
Task: {A69671A8-AEA0-4684-BD35-2A2A66E3C5BF} - System32\Tasks\{D6C1A807-B424-4F97-B95C-81180C1434E0} => Chrome.exe http://ui.skype.com/ui/0/6.16.0.105/pl/abandoninstall?source=lightinstaller&page=tsMain
Task: {C55546AB-1891-4BC4-9613-85AA88578B87} - System32\Tasks\{CC0CABFC-5605-446C-80FD-9BBCE0BFBA8C} => pcalua.exe -a F:\Setup.exe -d F:\
Task: {D223EB44-3395-4922-9784-E81723ED9FA5} - System32\Tasks\{62F413DE-A7D4-4590-AB89-25B2B46C1F2C} => Chrome.exe 
Task: {D4FFFBE2-C6DD-4938-8DFD-601380EDC816} - System32\Tasks\{3024F86E-6E02-45C8-9F4D-D5C064DAFEEE} => pcalua.exe -a D:\ts3\package_inst.exe -d "C:\Users\Komputer\Desktop\Nowy folder" -c "C:\Users\Komputer\Desktop\Nowy folder\IVONA.ts3_soundpack"
Task: {DE67F18D-C896-452A-B7F9-B6C0285C3281} - System32\Tasks\{ABAD65C7-BFDD-4D99-8B5D-2BCA64FDC6B1} => Firefox.exe http://ui.skype.com/ui/0/6.3.0.105/pl/abandoninstall?page=tsMain
Task: {E1428B69-D851-410B-992C-63C2F32E447C} - System32\Tasks\{623D0766-8999-425F-9D63-FE6A54AE576B} => Firefox.exe 
Task: {E4B90248-BA51-40E3-ADA4-CD48356DED76} - System32\Tasks\{10F7E96C-5B39-4942-A736-B6846B88AECE} => Chrome.exe 
Task: {E9C8FA79-CA3B-4C3D-9721-5A2DD7C20EA4} - System32\Tasks\{41E73926-E005-4FE3-A4B9-5E9161A69F10} => Chrome.exe 
Task: {F2079044-A3B9-43AE-BFA7-6E2DA6606F8B} - System32\Tasks\{F2DDA8E2-6596-47B8-8B3B-02B158CF819A} => Chrome.exe 
Task: {FA4AC078-2BD8-44B2-990D-5BAEB9FFABEE} - System32\Tasks\{F603B2ED-413A-4CEB-AD5F-AFE0B43A79BD} => pcalua.exe -a "D:\valve editor\Valve Hammer Editor 3.5\Valve Hammer Editor 3.5.exe" -d "D:\valve editor\Valve Hammer Editor 3.5"
Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => C:\Windows\TEMP\{8E35DA9E-FEC7-4012-9176-37E212EB2831}.exe <==== ATTENTION
EmptyTemp:

Uruchom FRST i kliknij Fix. Pokaż raport z usuwania Fixlog.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.

Fixlog http://wklej.org/id/1679639/

FRST http://wklej.org/id/1679643/

Skasuj folder C:\FRST

Usuń stare punkty przywracania: Aby usunąć wszystkie punkty przywracania

Dysk przeskanuj Malwarebytes Anti-Malware

Podczas instalacji usuń zaznaczenie przy Uruchom okres testowy Malwarebytes Anti-Malware Premium.

http://wstaw.org/m/2014/03/25/2014-03-25_123039.png

Język PL > Settings > General Settings > Language > Polish

Przeczytaj w jaki sposób należy instalować programy: KLIK - KLIK - KLIK - KLIK

Odinstaluj:

Adobe Flash Player 16 ActiveX

Adobe Flash Player 16 NPAPI

Java 6 Update 24

Zainstaluj:

Flash Player 17.0.0.134 Plugin

Flash Player 17.0.0.134 ActiveX

Java 8 Update 40

Service Pack 1 (537.8 MB)

Internet Explorer 11