Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Windows7 (32bit)- Strongsignal

lwombat 07 Lip 2015 20:07 396 1
  • #2 07 Lip 2015 20:35
    Acorus 20
    Spec od komputerów

    Włącz przywracanie systemu. Odinstaluj OptimizerPro. Otwórz notatnik systemowy i wklej:

    Cytat:
    CustomCLSID: HKU\S-1-5-21-3066927965-3610304912-2332847512-1010_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\UpdatusUser\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx No File
    Task: {7D6292F3-7A26-4389-B1AD-AAF95D31FE5B} - \AdobeFlashPlayerUpdate 2 No Task File <==== ATTENTION
    Task: {88A70494-CBC5-4180-88F7-62B9C38D59DE} - System32\Tasks\OptimizerProUpdaterTask{91683BB5-86C7-4D49-9618-29E73A1DDC26} => C:\ProgramData\Premium\OptimizerPro\OptimizerPro.exe <==== ATTENTION
    Task: {9B0CD62B-DD28-4F60-A276-B74B08442352} - System32\Tasks\{BFE9E079-28B7-49F4-8064-A9034361515D} => Firefox.exe http://ui.skype.com/ui/0/6.14.0.104/en/abandoninstall?page=tsProgressBar
    Task: {B56A5AE9-FB93-45F4-941E-9F5EDF540DAC} - \AdobeFlashPlayerUpdate No Task File <==== ATTENTION
    Task: C:\Windows\Tasks\OptimizerProUpdaterTask{91683BB5-86C7-4D49-9618-29E73A1DDC26}.job => C:\ProgramData\Premium\OptimizerPro\OptimizerPro.exeI/schedule /profilepath C:\ProgramData\Premium\OptimizerPro\profile.ini <==== ATTENTION
    HKLM\...\Run: [TkBellExe] => c:\program files\real\realplayer\Update\realsched.exe [296520 2015-02-24] (RealNetworks, Inc.)
    HKLM\...\Run: [RealDownloader] => C:\Program Files\RealNetworks\RealDownloader\downloader2.exe [560192 2014-10-29] ()
    HKU\S-1-5-21-3066927965-3610304912-2332847512-1012\...\CurrentVersion\Windows: [Load] C:\ProgramData\mszfvjiaj.exe <===== ATTENTION
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
    GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
    CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.interia.pl/#utm_source=instalki1&a...n=instalki1&iwa_source=installer_instalki
    HKU\S-1-5-21-3066927965-3610304912-2332847512-1010\Software\Microsoft\Internet Explorer\Main,Start Page = http://q.search-simple.com/?affID=bl_bdda79ec-fe6a-4278-97f4-e5f92f93f340
    HKU\S-1-5-21-3066927965-3610304912-2332847512-1012\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.interia.pl/#utm_source=instalki1&a...n=instalki1&iwa_source=installer_instalki
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    BHO: No Name -> {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} -> No File
    BHO: Symantec NCO BHO -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll No File
    BHO: Symantec Intrusion Prevention -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL No File
    Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll No File
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
    DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
    FF Extension: No Name - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\IPSFFPlgn [2011-07-21]
    FF Extension: No Name - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\coFFPlgn_2011_7_13_2 [2013-05-21]
    CHR Extension: (Strong Signal) - C:\Users\dd\AppData\Local\Google\Chrome\User Data\Default\Extensions\clhmhifndffacglmndkhjjmaifjincgh [2015-07-07]
    OPR Extension: (Strong Signal) - C:\Users\dd\AppData\Roaming\Opera Software\Opera Stable\Extensions\clhmhifndffacglmndkhjjmaifjincgh [2015-07-07]
    R2 Service Mgr StrongSignal; C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\PluginContainer.exe [656144 2015-07-07] ()
    R2 Update Mgr StrongSignal; C:\Program Files\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce\updater.exe [575760 2015-07-07] ()
    R2 VSSS; C:\Users\dd\AppData\Roaming\Microsoft\SystemCertificates\VSSVC.exe [101536704 2015-06-23] (Microsoft Corporation) [File not signed] <==== ATTENTION
    S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe -service [X]
    S3 MozillaMaintenance; "C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe" [X]
    S2 SmartViewService; C:\Program Files\DeviceVM\SmartView\SmartViewService.exe [X]
    S3 Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe /RunAsService [X]
    S1 AsrAppCharger; system32\DRIVERS\AsrAppCharger.sys [X]
    S3 AsrCDDrv; \??\C:\Windows\system32\Drivers\AsrCDDrv.sys [X]
    R4 KProcessHacker2; \??\C:\Program Files\kprocesshacker.sys [X]
    S3 lgbusenum; system32\DRIVERS\lgbtbus.sys [X]
    S1 lwnfd_1_10_0_13; system32\drivers\lwnfd_1_10_0_13.sys [X]
    2015-07-07 16:57 - 2015-07-07 16:57 - 00000000 ____D C:\Program Files\Strong Signal
    2015-07-07 16:44 - 2015-02-24 17:12 - 00000000 ____D C:\AdwCleaner
    C:\ProgramData\mszfvjiaj.exe
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix. Pobierz i uruchom jako administrator AdwCleaner https://toolslib.net/downloads/finish/1/ Kliknij Scan i później Cleaning.

    0