Usunięcie Strong Signal Ads


(Magda Wys) #1

Witam!

 

Proszę o pomoc w usunięciu tego upierdliwego programu. Poniżej przesyłam logi z FRST, AdwCleaner mam zainstalowane i już przeskanowałam i usunęłam co program zrobił.

 

Dzięki za pomoc z góry!

 

FRST: http://wklej.to/4obWV

Addition: http://wklej.to/nXQfp


(Atis) #2

Wklej do systemowego notatnika i zapisz jako plik tekstowy o nazwie fixlist :

CloseProcesses:
HKLM-x32\...\Run: [mbot_pl_183] => [X]
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
FF Extension: Strong Signal - C:\Users\RADEK\AppData\Roaming\Mozilla\Firefox\Profiles\qmomokvy.default\Extensions\{9d204d90-67ed-4674-ad22-ac0bd52d6ba6}.xpi [2015-02-09]
FF Extension: Browser Good 1.0.1 - C:\Users\RADEK\AppData\Roaming\Mozilla\Firefox\Profiles\qmomokvy.default\Extensions\{c44114b8-1134-4aeb-950a-2e0ff4eceaae}.xpi [2015-03-12]
FF Extension: No Name - C:\Users\RADEK\AppData\Roaming\Mozilla\Firefox\Profiles\k9i69jlx.default-1419504825145\Extensions\elemhidehelper@adblockplus.org.xpi [2015-02-26]
FF Extension: Strong Signal - C:\Users\RADEK\AppData\Roaming\Mozilla\Firefox\Profiles\k9i69jlx.default-1419504825145\Extensions\{3682f2b0-2134-4c74-848d-d22620c76007}.xpi [2015-04-05]
CHR Extension: (Strong Signal) - C:\Users\RADEK\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfgeieodmhondkfilcloendlgphpilji [2015-04-05]
S3 McComponentHostServiceSony; C:\Program Files (x86)\Sony\MSS\3.8.130\McCHSvc.exe [235216 2013-10-16] (McAfee, Inc.)
C:\Program Files (x86)\Sony\MSS
R2 Service Mgr StrongSignal; C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\PluginContainer.exe [639224 2015-04-05] ()
S3 IDriverT; "C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe" [X]
S2 Update Browser Good; "C:\Program Files (x86)\Browser Good\updateBrowserGood.exe" [X]
2015-04-05 23:49 - 2015-04-05 23:49 - 00000000 ____ D () C:\Program Files (x86)\Strong Signal
2015-04-05 23:45 - 2015-04-05 23:48 - 00000000 ____ D () C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce
2015-04-05 23:42 - 2015-04-05 23:44 - 00000000 ____ D () C:\AdwCleaner
2015-04-05 23:42 - 2015-04-05 23:42 - 00000000 ____ D () C:\Users\RADEK\Downloads\AVG PC TuneUp 2015 v15.0.1001.105 Crack + SERIAL
2015-04-05 23:31 - 2015-04-05 23:31 - 80097035 _____ () C:\Users\RADEK\Downloads\AVG PC TuneUp 2015 v15.0.1001.105 Crack + SERIAL.rar
2015-03-12 13:09 - 2015-03-12 13:09 - 00000000 ____ D () C:\Users\RADEK\AppData\Local\{377AEBA2-AF7F-4B2D-BD3B-6EC528250A10}
2015-03-11 23:17 - 2015-03-21 14:48 - 00000000 ____ D () C:\ProgramData\{b5280aca-c0c3-3e44-b528-80acac0c2b2b}
2015-04-05 11:57 - 2011-03-23 08:57 - 00000000 ____ D () C:\ProgramData\TEMP
2015-01-25 18:12 - 2015-01-25 18:12 - 0002086 _____ () C:\Users\RADEK\AppData\Roaming\IEMQCE
2015-03-09 23:30 - 2015-03-09 23:30 - 0005487 _____ () C:\Users\RADEK\AppData\Roaming\YIKA
Task: {3FEA2222-D553-4AF2-964A-0826C1851DB8} - System32\Tasks\{6865573C-7C2F-4179-94DE-E596113A9707} => pcalua.exe -a "C:\Program Files (x86)\Steam\steam.exe" -c steam://uninstall/240
Task: {44E9204D-A114-42D7-85B3-CCF4DE407169} - System32\Tasks\{A9D94F1D-D33B-4BB7-84F3-5C9737EA7CFE} => Firefox.exe 
Task: {52C1D297-F428-4265-99C9-E93EFD36A3D5} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance => C:\Program Files (x86)\TuneUp Utilities 2010\OneClick.exe
Task: {557B53BD-DE25-442E-82ED-FF0393F8EA7E} - System32\Tasks\{9D0113AB-89F1-4449-8664-725078AA7CA5} => Firefox.exe 
Task: {C922EB88-27AE-4DF1-8D1B-355E92358FD8} - System32\Tasks\{976F7B8F-2F9D-483F-8E6F-FCD302292D17} => Firefox.exe 
Task: {D222E969-8B74-4F68-A5C8-37B1F8131D1C} - System32\Tasks\{1D8F8EB0-4577-480B-9302-034484647B96} => pcalua.exe -a C:\Users\RADEK\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=ima
Task: {D8AD8680-4161-43E6-8116-00D42EADBFB7} - System32\Tasks\RMSchedule => C:\Program Files (x86)\Registry Mechanic\RegMech.exe
Task: {FED7C35F-D83B-4983-9B15-839CFD4B0618} - System32\Tasks\RMSmartUpdate => C:\Program Files (x86)\Registry Mechanic\update.exe
Task: C:\Windows\Tasks\RMSchedule.job => C:\Program Files (x86)\Registry Mechanic\RegMech.exe
EmptyTemp:

Uruchom FRST i kliknij Fix. Pokaż raport z usuwania Fixlog.

Kliknij Scan i pokaż nowy raport z FRST bez Addition.