
Od kilku dni mam u siebie w systemie "STRONG Signal".
Poproszę o pomoc w jego zlikwidowaniu
Z góry dziękuję
P. S. Jak zabezpieczać się przed takimi niechcianymi rzeczami?
2015-02-18 20:21 - 2015-02-18 20:21 - 00717216 _____ (Web Generic ) C:\Users\FOKA\Downloads\H2testw(28828)-dp.exe
BHO-x32: Strong Signal -> {c723a437-2eaf-466d-a95b-3fa0966bf88c} -> C:\Program Files (x86)\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll No File
C:\Program Files (x86)\Strong Signal
FF Extension: Strong Signal - C:\Users\FOKA\AppData\Roaming\Mozilla\Firefox\Profiles\oxc3dsfi.default-1398591222517\Extensions\{6dc74982-0c33-45a3-aaec-8285d2089296}.xpi [2015-02-18]
CHR Extension: (Strong Signal) - C:\Users\FOKA\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndgafedgphnfegpdleilandjadhkecpl [2015-02-19]
Task: {48BF8C23-B4EC-4D09-BD84-F6C9CF5C305E} - System32\Tasks\EPUpdater => C:\Users\FOKA\AppData\Roaming\BabSolution\Shared\BabMaint.exe [2013-06-06] () <==== ATTENTION
Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\avgua32.exe" /f
Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\ROC_JAN2013_TB" /f
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
Task: {20AAB49E-1062-4557-8962-709AAFD44C06} - System32\Tasks\ROC_JAN2013_TB_rmv => C:\Program Files (x86)\AVG Secure Search\PostInstall\ROC.exe
C:\Users\FOKA\AppData\Roaming\BabSolution
Task: {727BC7F7-8820-45DB-BEFC-53DA0E9AF2FB} - System32\Tasks\ROC_JAN2013_TB_FOKA => C:\Program Files (x86)\AVG Secure Search\ROC_JAN2013_TB.exe
C:\Program Files (x86)\AVG Secure Search
Task: C:\Windows\Tasks\ROC_JAN2013_TB_FOKA.job => C:\Program Files (x86)\AVG Secure Search\ROC_JAN2013_TB.exe
Task: C:\Windows\Tasks\ROC_JAN2013_TB_rmv.job => C:\Program Files (x86)\AVG Secure Search\PostInstall\ROC.exe
C:\Program Files (x86)\BrowseMark
C:\Program Files (x86)\Common Files\AVG Secure Search
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2640408 2014-08-28] ()
HKLM-x32\...\Run: [NPSStartup] => [X]
HKU\S-1-5-21-2906113745-3772951941-3218555781-1000\...\Run: [] => [X]
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2906113745-3772951941-3218555781-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = pl.v9.com/ins/ins_1330504268_839978
URLSearchHook: HKLM-x32 - Ashampoo DE Toolbar - {5786d022-540e-4699-b350-b4be0ae94b79} - C:\Program Files (x86)\Ashampoo_DE\prxtbAsha.dll (Conduit Ltd.)
URLSearchHook: HKU\S-1-5-21-2906113745-3772951941-3218555781-1000 - Ashampoo DE Toolbar - {5786d022-540e-4699-b350-b4be0ae94b79} - C:\Program Files (x86)\Ashampoo_DE\prxtbAsha.dll (Conduit Ltd.)
Reg: reg delete "HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2" /f
SearchScopes: HKLM-x32 -> DefaultScope {6BD63EF5-F376-4104-B390-F6E1E3BEDAAC} URL = http://startsear.ch/?q={searchTerms}
SearchScopes: HKLM-x32 -> {6BD63EF5-F376-4104-B390-F6E1E3BEDAAC} URL = http://startsear.ch/?q={searchTerms}
SearchScopes: HKU\.DEFAULT -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL =
SearchScopes: HKU\S-1-5-21-2906113745-3772951941-3218555781-1000 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=B43164D4DA149B24&affID=119357&tt=210713_ctrl&tsp=4950
SearchScopes: HKU\S-1-5-21-2906113745-3772951941-3218555781-1000 -> {5F970FDE-702B-4ef9-920C-5F2848A5AF26} URL = http://www.astroburn-search.com/search/web?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2906113745-3772951941-3218555781-1000 -> {6BD63EF5-F376-4104-B390-F6E1E3BEDAAC} URL = http://startsear.ch/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2906113745-3772951941-3218555781-1000 -> {790D557D-9ECB-4D66-85F0-14A576122AE3} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2481020
SearchScopes: HKU\S-1-5-21-2906113745-3772951941-3218555781-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://isearch.avg.com/search?cid={4CFBC6A0-4028-43CF-97E0-C1D1F1B1348E}&mid=cb915a10389147d09290252442de0546-8ecfd463d193f8e94973ea1612fddf543d46720b&lang=us/browser=all&ds=is015&pr=sa&d=2013-07-21 20:18:30&v=17.0.0.9&pid=avg&sg=0&sap=dsp&q={searchTerms}
BHO-x32: Ashampoo DE Toolbar -> {5786d022-540e-4699-b350-b4be0ae94b79} -> C:\Program Files (x86)\Ashampoo_DE\prxtbAsha.dll (Conduit Ltd.)
BHO-x32: AVG Security Toolbar -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Secure Search\18.1.9.799\AVG Secure Search_toolbar.dll (AVG Secure Search)
Toolbar: HKLM - Astroburn Toolbar - {EFEED92A-A33D-4873-BA8F-32BAA631E54D} - C:\Program Files (x86)\Astroburn Toolbar\ABToolbar64.dll No File
C:\Program Files (x86)\Astroburn Toolbar
Toolbar: HKLM-x32 - StartSearchToolBar - {7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} - C:\Program Files (x86)\vShare.tv plugin\ssBarLcher.dll (StartSearch Inc.)
Toolbar: HKLM-x32 - Ashampoo DE Toolbar - {5786d022-540e-4699-b350-b4be0ae94b79} - C:\Program Files (x86)\Ashampoo_DE\prxtbAsha.dll (Conduit Ltd.)
Toolbar: HKLM-x32 - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.1.9.799\AVG Secure Search_toolbar.dll (AVG Secure Search)
Toolbar: HKU\S-1-5-21-2906113745-3772951941-3218555781-1000 -> Astroburn Toolbar - {EFEED92A-A33D-4873-BA8F-32BAA631E54D} - C:\Program Files (x86)\Astroburn Toolbar\ABToolbar64.dll No File
Toolbar: HKU\S-1-5-21-2906113745-3772951941-3218555781-1000 -> No Name - {5786D022-540E-4699-B350-B4BE0AE94B79} - No File
Toolbar: HKU\S-1-5-21-2906113745-3772951941-3218555781-1000 -> No Name - {7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} - No File
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.9\\npsitesafety.dll No File
R2 Util BrowseMark; C:\Program Files (x86)\BrowseMark\bin\utilBrowseMark.exe [316704 2014-05-01] ()
R2 vToolbarUpdater18.1.9; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\ToolbarUpdater.exe [1820184 2014-08-11] (AVG Secure Search)
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
S3 massfilter_lte; system32\DRIVERS\massfilter_LTE.sys [X]
S3 zgdcat; system32\DRIVERS\zgdcat.sys [X]
S3 zgdcdiag; system32\DRIVERS\zgdcdiag.sys [X]
S3 zgdcmdm; system32\DRIVERS\zgdcmdm.sys [X]
S3 zgdcnet; system32\DRIVERS\zgdcnet.sys [X]
S3 zgdcnmea; system32\DRIVERS\zgdcnmea.sys [X]
EmptyTemp:
DeleteQuarantine:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 4 gości