Strong Signal - proszę o pomoc w usunięciu


(Hyper1910) #1

Witam,

 

Mam problem z zaśmiecaniem okien przeglądarki przez wyskakujące reklamy Strong Signal. Proszę o pomoc i jak najprostsze wyjaśnienie kolejnych kroków oraz jak będzie potrzeba odrobinę cierpliwości.

 

 

Addition.txt

FRST.txt


(Acorus) #2

Otwórz notatnik systemowy i wklej:

GroupPolicy: Group Policy on Chrome detected ======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction ======= ATTENTION
HKU\S-1-5-21-3404981430-1738274054-1215005997-1003\Software\Microsoft\Internet Explorer\Main,Start Page = http://vshare.toolbarhome.com/?hp=df
URLSearchHook: [S-1-5-21-3404981430-1738274054-1215005997-1000] ATTENTION == Default URLSearchHook is missing.
SearchScopes: HKU\.DEFAULT - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3404981430-1738274054-1215005997-1003 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3404981430-1738274054-1215005997-1003 - {043C5167-00BB-4324-AF7E-62013FAEDACF} URL = http://vshare.toolbarhome.com/search.aspx?q={searchTerms}srch=dsp
BHO: TinyBHO Class - {00e71626-0bef-11dc-8314-0864264c9a64} - C:\Users\Piotr\AppData\Roaming\DownloaderGold\ieplug.dll No File
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll No File
BHO-x32: Strong Signal - {c723a437-2eaf-466d-a95b-3fa0966bf88c} - C:\Program Files (x86)\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll No File
Toolbar: HKLM-x32 - No Name - {0D704FAD-66E9-4F0A-BFED-4F665770DDB3} - No File
Toolbar: HKU\S-1-5-21-3404981430-1738274054-1215005997-1003 - No Name - {043C5167-00BB-4324-AF7E-62013FAEDACF} - No File
Toolbar: HKU\S-1-5-21-3404981430-1738274054-1215005997-1003 - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
FF Extension: Strong Signal - C:\Users\Pawcio\AppData\Roaming\Mozilla\Firefox\Profiles\ktxo0667.default\Extensions\{f318d533-127c-4630-af87-2d2b706e5282}.xpi [2015-02-15]
S2 iSafeService; C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe [X]
U4 eabfiltr; No ImagePath
S3 hwusbfake; system32\DRIVERS\ewusbfake.sys [X]
S1 iSafeKrnlMon; \\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [X]
2015-02-28 20:05 - 2015-02-28 20:05 - 00000000 ____ D () C:\Users\Pawcio\AppData\Roaming\Elex-tech
2015-02-28 20:04 - 2015-03-01 09:39 - 00000000 ____ D () C:\Program Files (x86)\Elex-tech
2015-02-28 19:44 - 2015-03-03 18:50 - 00000000 ____ D () C:\AdwCleaner
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.


(Hyper1910) #3

dziadostwo zniknęło, dziękuje za pomoc! poniżej pliki po ponownym przeskanowaniu.

Fixlog.txt

FRST.txt


(Acorus) #4

Skasuj folder C:\FRST