Wyskakujące reklamy - laptop lenovo y510, windows 8

Witam,

 

Mam problem z reklamami w moim laptopie. Używam przeglądarki Google Chrome oraz systemu Windows 8. Laptop to Lenovo Y510P. Załączam logi oraz screen z reklamami:

 

reklamy -> http://zapodaj.net/658ad855208dd.jpg.html

 

logi: 

 

frst: http://www.wklej.org/id/1659733/

addition: http://wklej.to/ILKjz

shortcut: http://wklej.to/2QIm8

Odinstaluj Follow Rules.Otwórz notatnik systemowy i wklej:

Task: {2D26A621-12F5-4535-B052-E6A459FA9079} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1149828914-621255720-735115933-1002UA = C:\Users\LENOVO\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-07-16] (Facebook Inc.)
Task: {C267F736-B053-49D8-BEEE-576ADB0483F6} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1149828914-621255720-735115933-1002Core = C:\Users\LENOVO\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-07-16] (Facebook Inc.)
Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1149828914-621255720-735115933-1002Core.job = C:\Users\LENOVO\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1149828914-621255720-735115933-1002UA.job = C:\Users\LENOVO\AppData\Local\Facebook\Update\FacebookUpdate.exe
HKU\S-1-5-21-1149828914-621255720-735115933-1002\...\Run: [Facebook Update] = C:\Users\LENOVO\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-07-16] (Facebook Inc.)
GroupPolicy: Group Policy on Chrome detected ======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction ======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction ======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.key-find.com/?type=hpts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.key-find.com/?type=hpts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.key-find.com/web/?type=dsts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.key-find.com/web/?type=dsts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.key-find.com/?type=hpts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.key-find.com/?type=hpts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.key-find.com/web/?type=dsts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.key-find.com/web/?type=dsts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96q={searchTerms}
HKU\S-1-5-21-1149828914-621255720-735115933-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.key-find.com/?type=hpts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96
HKU\S-1-5-21-1149828914-621255720-735115933-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.key-find.com/?type=hpts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.key-find.com/web/?type=dsts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96q={searchTerms}
SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.key-find.com/web/?type=dsts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.key-find.com/web/?type=dsts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96q={searchTerms}
SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.key-find.com/web/?type=dsts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96q={searchTerms}
SearchScopes: HKU\S-1-5-21-1149828914-621255720-735115933-1002 - DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.key-find.com/web/?utm_source=butm_medium=corutm_campaign=install_ieutm_content=dsfrom=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96ts=1424374866type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-1149828914-621255720-735115933-1002 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.key-find.com/web/?utm_source=butm_medium=corutm_campaign=install_ieutm_content=dsfrom=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96ts=1424374866type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-1149828914-621255720-735115933-1002 - {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.key-find.com/web/?utm_source=butm_medium=corutm_campaign=install_ieutm_content=dsfrom=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96ts=1424374866type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-1149828914-621255720-735115933-1002 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.key-find.com/web/?utm_source=butm_medium=corutm_campaign=install_ieutm_content=dsfrom=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96ts=1424374866type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-1149828914-621255720-735115933-1002 - {463958B8-2EED-4178-9FA8-2AC4CD48CCB8} URL = http://www.key-find.com/web/?utm_source=butm_medium=corutm_campaign=install_ieutm_content=dsfrom=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96ts=1424374866type=defaultq={searchTerms}
SearchScopes: HKU\S-1-5-21-1149828914-621255720-735115933-1002 - {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.key-find.com/web/?utm_source=butm_medium=corutm_campaign=install_ieutm_content=dsfrom=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96ts=1424374866type=defaultq={searchTerms}
BHO-x32: IETabPage Class - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\XTab\SupTab.dll [2015-01-16] (Thinknice Co. Limited)
CHR StartupUrls: Default - "www.wp.pl/?src01=dp220140826", "hxxp://www.key-find.com/?
type=hpts=1424374753from=coruid=ST1000LM014-1EJ164_W380LV96XXXXW380LV96"
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158896 2015-01-16] (XTab system)
CHR Extension: (Follow Rules) - C:\Users\LENOVO\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnkeepjgbmfikgkljkcdionfpdeehmgc [2015-02-21]
S2 Update Follow Rules; C:\Program Files (x86)\Follow Rules\updateFollowRules.exe [400112 2015-02-24] ()
S2 Util Follow Rules; C:\Program Files (x86)\Follow Rules\bin\utilFollowRules.exe [400112 2015-02-24] ()
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [487056 2015-02-19] (SysTool PasSame LIMITED)
R1 {9ca97048-43b1-43e4-b2ce-0f8419984bcc}Gw64; C:\Windows\System32\drivers\{9ca97048-43b1-43e4-b2ce-0f8419984bcc}Gw64.sys [48784 2015-02-19] (StdLib)
R1 {f40cc14b-0f67-44b4-a17e-03e43df8e712}Gw64; C:\Windows\System32\drivers\{f40cc14b-0f67-44b4-a17e-03e43df8e712}Gw64.sys [48784 2015-02-22] (StdLib)
2015-02-19 20:41 - 2015-02-19 20:41 - 00000000 ____ D () C:\ProgramData\IHProtectUpDate
2015-02-19 20:41 - 2015-02-19 20:41 - 00000000 ____ D () C:\Program Files (x86)\XTab
2015-02-19 20:39 - 2015-02-19 20:39 - 00000000 ____ D () C:\Users\LENOVO\AppData\Roaming\key-find
2015-02-19 20:39 - 2015-02-19 20:39 - 00000000 ____ D () C:\ProgramData\WindowsMangerProtect
2015-02-19 20:38 - 2015-02-24 11:03 - 00000000 ____ D () C:\Program Files (x86)\Follow Rules
EmptyTemp:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.

Log z AdwCleaner: http://wklej.to/bDN3z

 

Dodać nowy z FRST?

 

Btw. mam jeszcze jeden problem, jak piszę nie zawsze działają mi klawisze “k” oraz “i” wie ktoś coś na temat tego problemu w tym laptopie? a może to jakieś wirusy?

To nie sprawa wirusowa.

Skasuj folder C:\FRST