
YAC(Yet Another Cleaner!) (HKLM\...\iSafe) (Version: - ELEX DO BRASIL cenzura!ÇÕES LTDA) <==== ATTENTION
BHO: Strong Signal -> {c723a437-2eaf-466d-a95b-3fa0966bf88c} -> C:\Program Files\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll No File
OPR Extension: (Strong Signal) - C:\Users\Slawek\AppData\Roaming\Opera Software\Opera Stable\Extensions\aamaaompokdjbebnfbcfobpkklfkmddp [2015-05-01]
OPR Extension: (Strong Signal) - C:\Users\Slawek\AppData\Roaming\Opera Software\Opera Stable\Extensions\odckdhimhjidiihnkmocngdngkngjjka [2015-05-20]
S2 Update Mgr StrongSignal; "C:\Program Files\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce\updater.exe" [X]
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
C:\Program Files\Strong Signal
Task: {6782D766-CE57-43DB-8C44-AFB1FAD0DAB1} - System32\Tasks\Software Removal Tool post reboot run => C:\Users\Slawek\AppData\Local\Temp\67F2.exe <==== ATTENTION
C:\Program Files\Elex-tech
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com?type=hp&ts=1433602155&from=mych123&uid=st9250315as_5vcaqazvxxxx5vcaqazv&z=a523e1b8688253db1a04750gcz3ccc6qee0o1gcw4b
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com?type=hp&ts=1433602155&from=mych123&uid=st9250315as_5vcaqazvxxxx5vcaqazv&z=a523e1b8688253db1a04750gcz3ccc6qee0o1gcw4b
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com?type=hp&ts=1433602155&from=mych123&uid=st9250315as_5vcaqazvxxxx5vcaqazv&z=a523e1b8688253db1a04750gcz3ccc6qee0o1gcw4b
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com?type=hp&ts=1433602155&from=mych123&uid=st9250315as_5vcaqazvxxxx5vcaqazv&z=a523e1b8688253db1a04750gcz3ccc6qee0o1gcw4b
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com?type=hp&ts=1433602155&from=mych123&uid=st9250315as_5vcaqazvxxxx5vcaqazv&z=a523e1b8688253db1a04750gcz3ccc6qee0o1gcw4b
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com?type=hp&ts=1433602155&from=mych123&uid=st9250315as_5vcaqazvxxxx5vcaqazv&z=a523e1b8688253db1a04750gcz3ccc6qee0o1gcw4b
HKU\S-1-5-21-1205272132-2967772875-2806619080-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com?type=hp&ts=1433602155&from=mych123&uid=st9250315as_5vcaqazvxxxx5vcaqazv&z=a523e1b8688253db1a04750gcz3ccc6qee0o1gcw4b
HKU\S-1-5-21-1205272132-2967772875-2806619080-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com?type=hp&ts=1433602155&from=mych123&uid=st9250315as_5vcaqazvxxxx5vcaqazv&z=a523e1b8688253db1a04750gcz3ccc6qee0o1gcw4b
SearchScopes: HKLM -> DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1433602155&from=zzgbkk123&uid=st9250315as_5vcaqazvxxxx5vcaqazv&z=a523e1b8688253db1a04750gcz3ccc6qee0o1gcw4b&q={searchTerms}
SearchScopes: HKLM -> OldSearch URL = http://do-search.com/web/?type=ds&ts=1426429045&from=cor&uid=ST9250315AS_5VCAQAZVXXXX5VCAQAZV&q={searchTerms}
SearchScopes: HKLM -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1433602155&from=zzgbkk123&uid=st9250315as_5vcaqazvxxxx5vcaqazv&z=a523e1b8688253db1a04750gcz3ccc6qee0o1gcw4b&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1205272132-2967772875-2806619080-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1205272132-2967772875-2806619080-1000 -> OldSearch URL = http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1205272132-2967772875-2806619080-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1205272132-2967772875-2806619080-1000 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1433602155&from=zzgbkk123&uid=st9250315as_5vcaqazvxxxx5vcaqazv&z=a523e1b8688253db1a04750gcz3ccc6qee0o1gcw4b&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1205272132-2967772875-2806619080-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://q.search-simple.com/?affID=bl_1d42774d-819f-484d-a94c-fd0238fe9352&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1205272132-2967772875-2806619080-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}
S2 iSafeService; C:\Program Files\Elex-tech\YAC\iSafeSvc.exe [118048 2015-05-27] (Elex do Brasil cenzura!ções Ltda)
R1 iSafeKrnl; C:\Program Files\Elex-tech\YAC\iSafeKrnl.sys [226024 2015-05-27] (Elex do Brasil cenzura!ções Ltda)
R1 iSafeKrnlKit; C:\Program Files\Elex-tech\YAC\iSafeKrnlKit.sys [96424 2015-05-27] (Elex do Brasil cenzura!ções Ltda)
R1 iSafeKrnlMon; C:\Program Files\Elex-tech\YAC\iSafeKrnlMon.sys [43536 2015-05-27] (Elex do Brasil cenzura!ções Ltda)
R1 iSafeKrnlR3; C:\Program Files\Elex-tech\YAC\iSafeKrnlR3.sys [71744 2015-05-27] (Elex do Brasil cenzura!ções Ltda)
R1 iSafeNetFilter; C:\windows\System32\DRIVERS\iSafeNetFilter.sys [44712 2015-04-17] (Elex do Brasil cenzura!ções Ltda)
C:\windows\System32\DRIVERS\iSafeNetFilter.sys
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [X]
S3 iSafeKrnlBoot; system32\DRIVERS\iSafeKrnlBoot.sys [X]
EmptyTemp:
DeleteQuarantine:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 4 gości