
Dzięki!
MatS
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce\updater.exe
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\PluginContainer.exe
() C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugins\8\Plugin.exe
() C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugins\3\Plugin.exe
() C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugins\6\Plugin.exe
() C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugins\5\Plugin.exe
() C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugins\2\Plugin.exe
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugins\3\Plugin.exe
C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce
HKU\S-1-5-21-3309573664-4290239291-3484730792-1000\...\Run: [SoftonicAssistant] => "C:\Users\m\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe"
C:\Users\m\AppData\Local\SoftonicAssistant
AppInit_DLLs-x32: C:/PROGRA~3/{826D6~1/193~1.1/niti.dll => C:\ProgramData\{826D6AAE-D2EF-BB28-6369-CBAAB3EB1824}\1.9.3.1\niti.dll [1010688 2015-03-09] ()
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://q.search-simple.com/?affID=bl_ef8c3e04-680b-47c7-a055-5db6db5ceb85
HKU\S-1-5-21-3309573664-4290239291-3484730792-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://q.search-simple.com/?affID=bl_ef8c3e04-680b-47c7-a055-5db6db5ceb85
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://q.search-simple.com/?affID=bl_ef8c3e04-680b-47c7-a055-5db6db5ceb85&q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://q.search-simple.com/?affID=bl_ef8c3e04-680b-47c7-a055-5db6db5ceb85&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3309573664-4290239291-3484730792-1000 -> URL http://search.conduit.com/Results.aspx?ctid=CT3324416&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=5&UP=SP426D8DF7-FBE1-4EF3-8815-03995373E297&q={searchTerms}&SSPV=
SearchScopes: HKU\S-1-5-21-3309573664-4290239291-3484730792-1000 -> SuggestionsURL_JSON http://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}
SearchScopes: HKU\S-1-5-21-3309573664-4290239291-3484730792-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://q.search-simple.com/?affID=bl_ef8c3e04-680b-47c7-a055-5db6db5ceb85&q={searchTerms}
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
R2 Service Mgr StrongSignal; C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\PluginContainer.exe [556304 2015-05-20] ()
R2 Update Mgr StrongSignal; C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce\updater.exe [478992 2015-05-20] ()
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [X]
C:\Windows\Minidump\*.dmp
C:\Users\m\Downloads\WinRAR(12398)-dp (1).exe
C:\Users\m\Downloads\WinRAR(12398)-dp.exe
C:\Windows\System32\Tasks\Binkiland niti
C:\ProgramData\{826D6AAE-D2EF-BB28-6369-CBAAB3EB1824}
EmptyTemp:
DeleteQuarantine:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 2 gości