Elektroda.pl
Elektroda.pl
X
CControls
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Jak usunąć Yoursites 123?

kazunia 10 Gru 2015 22:36 744 1
  • #1 10 Gru 2015 22:36
    kazunia
    Poziom 2  

    Witam, mam to samo, w załączeniu pliki, proszę o pomoc.

    Moderowany przez dt1:

    Wydzieliłem do osobnego wątku - w dziale Pogotowie Antywirusowe obowiązuje zakaz dopisywania się ze swoim problemem do cudzych wątków. Proszę doczytać w podwieszonych tematach regulamin działu.

    0 1
  • CControls
  • #2 10 Gru 2015 23:32
    Kolobos
    Spec od komputerów

    Fixlist.txt dla FRST:
    Task: {06645475-6C4C-452C-A6C3-9D957E404A18} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
    Task: {2B6087F3-42F5-4E77-992A-9BA3196B77B1} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
    Task: {3929F656-8418-4739-8A43-BA96606A0F95} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
    Task: {3A6384E3-67C6-4B3B-BD6A-ACA6A189A136} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
    Task: {3FFE3101-C8B1-46F4-B87B-EAB64D5C6F6E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
    Task: {64C7F48D-E484-4FC6-A8CB-B6E9AA49C924} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
    Task: {7BD24A77-B2FF-4FBB-ABB0-17DA69A04A00} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA
    Task: {8285F1DF-6E5D-481E-8B38-BC7645F318E5} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
    Task: {AD8D3EA5-0C7C-4D3A-8DD9-0C8628FC3FBC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
    Task: {C82E95F0-8BA9-4727-B812-697722DA43B3} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
    Task: {D0A82E2A-79F5-4A3A-9524-250AD9B23830} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
    ShortcutWithArgument: C:\Users\asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...021&uid=SanDiskXSDSSDHII120G_151241401833 <==== UWAGA
    ShortcutWithArgument: C:\Users\asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...021&uid=SanDiskXSDSSDHII120G_151241401833 <==== UWAGA
    ShortcutWithArgument: C:\Users\asus\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...021&uid=SanDiskXSDSSDHII120G_151241401833 <==== UWAGA




    ShortcutWithArgument: C:\Users\asus\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...021&uid=SanDiskXSDSSDHII120G_151241401833 <==== UWAGA
    ShortcutWithArgument: C:\Users\asus\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...021&uid=SanDiskXSDSSDHII120G_151241401833 <==== UWAGA
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...021&uid=SanDiskXSDSSDHII120G_151241401833 <==== UWAGA
    ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...021&uid=SanDiskXSDSSDHII120G_151241401833 <==== UWAGA
    IE trusted site: HKU\S-1-5-21-4257487830-1624251484-4203781235-1001\...\localhost -> localhost
    IE trusted site: HKU\S-1-5-21-4257487830-1624251484-4203781235-1001\...\webcompanion.com -> hxxp://webcompanion.com
    (Lavasoft Limited) C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe
    (TFuns LIMITED) C:\ProgramData\FWdMF\WdMan.exe
    () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1...021&uid=SanDiskXSDSSDHII120G_151241401833
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&...;uid=SanDiskXSDSSDHII120G_151241401833&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1...021&uid=SanDiskXSDSSDHII120G_151241401833
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&...;uid=SanDiskXSDSSDHII120G_151241401833&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
    SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&...;uid=SanDiskXSDSSDHII120G_151241401833&q={searchTerms}
    SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&...;uid=SanDiskXSDSSDHII120G_151241401833&q={searchTerms}
    SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
    SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
    SearchScopes: HKU\S-1-5-21-4257487830-1624251484-4203781235-1001 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
    SearchScopes: HKU\S-1-5-21-4257487830-1624251484-4203781235-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
    StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe hxxp://www.yoursites123.com/?type=sc&ts=1...021&uid=SanDiskXSDSSDHII120G_151241401833
    Edge HomeButtonPage: HKU\S-1-5-21-4257487830-1624251484-4203781235-1001 -> hxxp://www.delta-homes.com/?type=hp&ts=14...163&uid=SanDiskXSDSSDHII120G_151241401833
    FF SelectedSearchEngine: yoursites123
    StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://www.yoursites123.com/?type=sc&ts=1...021&uid=SanDiskXSDSSDHII120G_151241401833
    R2 LavasoftTcpService; C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2751760 2015-09-30] (Lavasoft Limited)
    R2 SearchProtectionService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [16656 2015-09-30] ()
    R2 WdMan; C:\ProgramData\FWdMF\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego]
    S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2015-12-09] ()
    S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
    2015-12-09 11:34 - 2015-12-09 11:34 - 00022704 _____ C:\WINDOWS\system32\Drivers\EsgScanner.sys
    2015-12-09 10:52 - 2015-12-09 10:54 - 00000000 ____D C:\ProgramData\FWdMF
    2015-12-09 10:52 - 2015-12-09 10:52 - 00000000 ____D C:\ProgramData\JWdMJ
    2015-12-10 11:59 - 2015-07-08 11:43 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
    2015-12-10 11:59 - 2015-07-08 11:43 - 00000093 _____ C:\Users\asus\AppData\Roaming\sp_data.sys
    2015-12-09 11:30 - 2015-10-12 10:37 - 00000000 ____D C:\AdwCleaner
    EmptyTemp:

    0