
Strong Signal (HKLM-x32\...\Strong Signal) (Version: 2.0.5527.13597 - Strong Signal) <==== ATTENTION!
EZDownloader (HKLM-x32\...\{0F44DC3A-6E62-4961-A14B-95323C512F9B}_is1) (Version: 1.0 - EZDownloader) <==== ATTENTION
Goodness (HKLM-x32\...\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}) (Version: - ) <==== ATTENTION
UniDDealsa (HKLM-x32\...\{11F6D5AB-263F-388E-74DE-E3DECD390E3F}) (Version: - ) <==== ATTENTION
WorldofTanks (HKU\S-1-5-21-1443287053-3582015339-2929910238-1000\...\WorldofTanks) (Version: - WorldofTanks) <==== ATTENTION!
youtubeadblocker (HKLM-x32\...\{4820778D-AB0D-6D18-C316-52A6A0E1D507}) (Version: - ) <==== ATTENTION
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugincontainer.exe
C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce
FF Extension: Strong Signal - C:\Users\Paweł\AppData\Roaming\Mozilla\Firefox\Profiles\tpklinvm.default\Extensions\{6dc74982-0c33-45a3-aaec-8285d2089296}.xpi [2015-02-18]
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\IHProtect Service" /f
Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\WindowsMangerProtect" /f
Task: {A81E92EF-5873-4795-8D55-DA8F73D18333} - System32\Tasks\Price Fountain => C:\Users\PAWE~1\AppData\Roaming\PRICEF~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
C:\Users\PAWE~1\AppData\Roaming\PRICEF~1
Task: C:\Windows\Tasks\Price Fountain.job => C:\Users\PAWE~1\AppData\Roaming\PRICEF~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type=ds&ts=1421880103&from=cor&uid=SAMSUNGXHD502HI_S1VZJ9BZ801589&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1421880103&from=cor&uid=SAMSUNGXHD502HI_S1VZJ9BZ801589&q={searchTerms}
SearchScopes: HKLM-x32 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.look-for-it.info/?l=1&q={searchTerms}&pid=22125&r=2015/02/15&hid=13102587966891416389&lg=EN&cc=PL&unqvl=82
SearchScopes: HKU\S-1-5-21-1443287053-3582015339-2929910238-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://isearch.omiga-plus.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=SAMSUNGXHD502HI_S1VZJ9BZ801589&ts=1421880186&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1443287053-3582015339-2929910238-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://isearch.omiga-plus.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=SAMSUNGXHD502HI_S1VZJ9BZ801589&ts=1421880186&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1443287053-3582015339-2929910238-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=dspp&ts=1421880152&from=cor&uid=SAMSUNGXHD502HI_S1VZJ9BZ801589&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1443287053-3582015339-2929910238-1000 -> {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.look-for-it.info/?l=1&q={searchTerms}&pid=22125&r=2015/02/15&hid=13102587966891416389&lg=EN&cc=PL&unqvl=82
SearchScopes: HKU\S-1-5-21-1443287053-3582015339-2929910238-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://isearch.omiga-plus.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=SAMSUNGXHD502HI_S1VZJ9BZ801589&ts=1421880186&type=default&q={searchTerms}
BHO-x32: No Name -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> No File
BHO-x32: No Name -> {b608cc98-54de-4775-96c9-097de398500c} -> No File
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc&ts=1421880103&from=cor&uid=SAMSUNGXHD502HI_S1VZJ9BZ801589
FF DefaultSearchEngine,S: WebSearch
FF DefaultSearchUrl: https://www.google.com/search/?trackid=sp-006
FF SearchEngineOrder.1,S: WebSearch
FF SelectedSearchEngine,S: WebSearch
FF Homepage: https://www.google.com/?trackid=sp-006
FF Keyword.URL: https://www.google.com/search/?trackid=sp-006
FF SearchPlugin: C:\Users\Paweł\AppData\Roaming\Mozilla\Firefox\Profiles\tpklinvm.default\searchplugins\WebSearch.xml [2015-02-15]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\omiga-plus.xml [2015-01-21]
S4 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158896 2015-01-16] (XTab system)
R2 Service Mgr StrongSignal; C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugincontainer.exe [581368 2015-03-09] ()
R2 Update Mgr StrongSignal; C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce\updater.exe [388856 2015-03-09] ()
S4 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [464384 2015-01-21] (SysTool PasSame LIMITED) [File not signed]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
C:\Program Files (x86)\Strong Signal
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce
C:\Program Files (x86)\EZDownloader
C:\Program Files (x86)\Goodness
C:\Program Files (x86)\youtubeadblocker
C:\Program Files (x86)\UniDDealsa
C:\ProgramData\7494283445060052531
C:\Program Files (x86)\UniDuealsi
C:\ProgramData\{4a16f15f-989d-3749-4a16-6f15f989c57e}
EmptyTemp:
DeleteQuarantine:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 3 gości