Mam zainfekowany komputer tym paskudztwem - bardzo proszę o pomoc w jego usunięciu.
Na podstawie odpowiedzi innym forumowiczom z tym samym problemem zrobiłem raport z Adw-Cleaner i logi z FRST - w załączeniu.
Z góry dziękuję za pomoc.
Pozdrawiam
BHO-x32: Strong Signal -> {c723a437-2eaf-466d-a95b-3fa0966bf88c} -> C:\Program Files (x86)\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll No File
C:\Program Files (x86)\Strong Signal
FF Extension: Strong Signal - C:\Users\Waclaw\AppData\Roaming\Mozilla\Firefox\Profiles\jhn07608.default\Extensions\{b0831b08-26e0-4e79-be2c-d45ab7387aaf}.xpi [2015-02-21]
CHR Extension: (Strong Signal) - C:\Users\Waclaw\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdidplnlbafiijjfbomlfokdppebnhpc [2015-02-21]
Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SweetIM" /f
Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Sweetpacks Communicator" /f
C:\Program Files (x86)\SweetIM
Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\vProt" /f
C:\Program Files (x86)\AVG SafeGuard toolbar
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
Winlogon\Notify\DeviceNP-x32: DeviceNP.dll [X]
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKU\S-1-5-21-1570795342-3358388435-3932394238-1001 -> {2D00D47B-E627-4193-8A34-B6BB34D8AB46} URL =
SearchScopes: HKU\S-1-5-21-1570795342-3358388435-3932394238-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKU\S-1-5-21-1570795342-3358388435-3932394238-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKU\S-1-5-21-1570795342-3358388435-3932394238-1001 -> No Name - {D43723AE-1AE1-4A25-A6A4-BF0929273CAB} - No File
S3 cpuz134; \??\C:\Users\Waclaw\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [X]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
C:\Program Files\Enigma Software Group
C:\Users\Waclaw\Downloads\yet_another_cleaner_dne.exe
C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce
EmptyTemp:
DeleteQuarantine:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 13 gości