Uciążliwe reklamy Windows 7 (strong signal)

Witam,

Mam problem z pojawiąjącymi się reklamami. Proszę o pomoc.

FRST: http://wklej.to/fVDWk 

Addition: http://wklej.to/QxI3F

Shortcut: http://wklej.to/erbHZ

 

 

W panelu sterowania odinstaluj:

Search App by Ask

SpyHunter 4

Update for Web Browser

Pobierz i uruchom AdwCleaner Kliknij Scan i później Cleaning.

Kliknij Scan i pokaż nowy raport z FRST bez Addition i Shortcut.

Przeniesiono do działu Bezpieczeństwo.

Witam, odinstalowałem programy. To plik FRST: http://wklej.to/J9OFr

Nie cytuj moich odpowiedzi.

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

HKLM-x32\...\Run: [] => [X]
HKLM\...\RunOnce: [NCInstallQueue] => rundll32 netman.dll,ProcessQueue
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
Startup: C:\Users\Zuzia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Torpedo.lnk [2015-01-03]
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
C:\Users\Zuzia\AppData\Local\Torpedo
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=pl&pid=NIS&pvid=19.7.0.9
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=pl&pid=NIS&pvid=19.7.0.9
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=pl&pid=NIS&pvid=19.7.0.9
SearchScopes: HKLM -> {678DC3CE-F228-423C-A84C-F36FE9838037} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {678DC3CE-F228-423C-A84C-F36FE9838037} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = http://pl.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2975209874-3255812290-3998014621-1000 -> {678DC3CE-F228-423C-A84C-F36FE9838037} URL = http://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKU\S-1-5-21-2975209874-3255812290-3998014621-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
ShellExecuteHooks-x32: - UPB:{B5A7F190-DDA6-4420-B3BA-52453494E6CD} - No File []
FF Extension: Strong Signal - C:\Users\Zuzia\AppData\Roaming\Mozilla\Firefox\Profiles\z96pf3r9.default\Extensions\{2f4b819b-022f-43bd-bc1a-b2299f3ca3c3}.xpi [2015-06-02]
CHR Extension: (Bookmark Manager) - C:\Users\Zuzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-22]
CHR Extension: (No Name) - C:\Users\Zuzia\AppData\Local\Google\Chrome\User Data\Default\Extensions\hefdopkjddeacfpjlhnnikdibknmdepg [2015-06-02]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
2015-06-05 16:39 - 2015-06-05 16:53 - 00000000 ____ D C:\AdwCleaner
2015-06-05 16:55 - 2015-01-10 20:45 - 00000000 ____ D C:\Temp
2014-08-02 20:12 - 2014-08-02 20:12 - 0000000 ____ H () C:\Users\Zuzia\AppData\Local\BITD73B.tmp
2014-08-02 20:12 - 2014-08-02 20:12 - 0000000 _____ () C:\Users\Zuzia\AppData\Local\{AFABE84F-4502-4F4B-8687-0C4BA8321E2A}
2015-03-16 20:05 - 2015-03-16 20:05 - 0000000 _____ () C:\Users\Zuzia\AppData\Local\{C9BAA765-7DB9-4036-A726-B9344431678C}
CustomCLSID: HKU\S-1-5-21-2975209874-3255812290-3998014621-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Zuzia\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll No File
CustomCLSID: HKU\S-1-5-21-2975209874-3255812290-3998014621-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Zuzia\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll No File
Task: {07499B55-8D66-445D-9EAA-2A63B410B6F8} - System32\Tasks\{8DCFDCFA-2653-40F5-9332-E819017D8EF1} => Firefox.exe http://ui.skype.com/ui/0/6.6.0.106/pl/go/help.faq.installer?LastError=1618
Task: {0DD57B17-F3F6-4DC5-AA8F-B823300B177D} - System32\Tasks\{ED399E06-2BCC-4F48-BEE6-2F5104E3C731} => Firefox.exe http://ui.skype.com/ui/0/6.6.0.106/pl/abandoninstall?page=tsBing
Task: {21345143-1E8B-442F-8DFB-C0877E12B2A6} - System32\Tasks\{02C90454-F175-477A-B755-D53C914AA1BF} => pcalua.exe -a C:\Users\Zuzia\Downloads\DCP-J315W-inst-A2-pl.EXE -d "C:\Program Files (x86)\Mozilla Firefox"
Task: {31F6EC62-BB4C-4C11-BAF7-E8DDF749368E} - System32\Tasks\{C7A5EF28-C6F0-4D91-8109-2B248A00F8B8} => Firefox.exe http://ui.skype.com/ui/0/6.14.0.104/pl/abandoninstall?page=tsProgressBar
Task: {6A5D3B75-0596-40D6-9A89-217B6C791A7C} - System32\Tasks\{2B2F3EE4-3B9E-4634-A2E2-9BA6FB5A5458} => Firefox.exe http://ui.skype.com/ui/0/6.6.0.106/pl/go/help.faq.installer?LastError=1618
Task: {6C7F62A1-9B45-41F6-804B-549936F6A48B} - System32\Tasks\{4EDD469C-00E1-470E-944D-7510AA57F160} => pcalua.exe -a C:\Users\Zuzia\Downloads\wlsetup-web.exe -d C:\Users\Zuzia\Downloads
Task: {975A0902-D68E-42F9-B91A-238637F62AE8} - System32\Tasks\{9B785470-8AD2-4FC4-A587-41DF8E80E922} => Firefox.exe http://www.skype.com/go/downloading?source=lightinstaller&amp;ver=6.14.0.104&amp;LastError=404
Task: {A9AFC8A1-42DC-411F-8D5F-5F42D0ED6845} - System32\Tasks\{73FDBD11-5634-4ACF-9D67-04913C236D99} => Chrome.exe http://ui.skype.com/ui/0/6.20.0.104/pl/go/help.faq.installer?LastError=1603
Task: {B1D3A319-FEEE-4CAE-A869-D9823A763304} - System32\Tasks\{219F2864-4046-4AFC-BF74-24918C27EDB7} => Firefox.exe http://ui.skype.com/ui/0/7.2.0.103/pl/abandoninstall?page=tsMain
Task: {CD2D0BEA-DBE0-4939-892A-D0224DC14C3E} - System32\Tasks\{7595379E-9CC6-4023-8D8D-4B4B3979B326} => Firefox.exe http://ui.skype.com/ui/0/6.6.0.106/pl/abandoninstall?page=tsProgressBar
EmptyTemp:

Uruchom FRST i kliknij Fix. Pokaż raport z usuwania Fixlog.

Kliknij Scan i pokaż nowy raport z FRST bez Addition i Shortcut.

FIxlog: http://wklej.to/9HJ1W

FRST: http://wklej.to/KB393

Skasuj folder C:\FRST

Usuń stare punkty przywracania: Aby usunąć wszystkie punkty przywracania

Dysk przeskanuj ESET Online Scanner

Przeczytaj w jaki sposób należy instalować programy: KLIK - KLIK - KLIK - KLIK

Odinstaluj:

Adobe Flash Player 10 ActiveX

Adobe Flash Player 16 NPAPI

Adobe Shockwave Player 11.5

Microsoft Silverlight

Zainstaluj:

Flash Player 17.0.0.188 NPAPI

Flash Player 17.0.0.188 ActiveX

Silverlight 5.1.40416.0