Elektroda.pl
Elektroda.pl
X
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Usunięcie Yoursites123 z przeglądarki Opera.

Mimasan84 12 Gru 2015 09:42 1122 5
  • #2 12 Gru 2015 09:52
    Acorus 20
    Spec od komputerów

    Odinstaluj McAfee Security Scan Plus. Otwórz notatnik systemowy i wklej:

    Cytat:
    Task: {46CCF3AA-AEF7-4359-9225-53FD9FE9E786} - \{43A9944B-18DC-4F90-A44C-4F7E34F3F8F3} -> Brak pliku <==== UWAGA
    Task: {52D09228-155B-4A59-BB68-5E2E1AA114F8} - \{BA987FED-E34B-4449-8F87-DA78B2E51BD1} -> Brak pliku <==== UWAGA
    ShortcutWithArgument: C:\Users\kubapapryka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...HitachiXHTS547575A9E384_J2590020D1R2PGD1R2PGX <==== UWAGA
    ShortcutWithArgument: C:\Users\kubapapryka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...HitachiXHTS547575A9E384_J2590020D1R2PGD1R2PGX <==== UWAGA
    ShortcutWithArgument: C:\Users\kubapapryka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...HitachiXHTS547575A9E384_J2590020D1R2PGD1R2PGX <==== UWAGA
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...HitachiXHTS547575A9E384_J2590020D1R2PGD1R2PGX <==== UWAGA
    HKU\S-1-5-21-243343983-1306640228-2714440449-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1...t07021&uid=SAMSUNGXHD502HI_S1VZJX0C400475




    HKU\S-1-5-21-243343983-1306640228-2714440449-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1...t07021&uid=SAMSUNGXHD502HI_S1VZJX0C400475
    SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
    SearchScopes: HKU\S-1-5-21-243343983-1306640228-2714440449-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?FORM=SKY2DF&PC=SKY2&q={searchTerms}&src=IE-SearchBox
    SearchScopes: HKU\S-1-5-21-243343983-1306640228-2714440449-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-243343983-1306640228-2714440449-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?FORM=SKY2DF&PC=SKY2&q={searchTerms}&src=IE-SearchBox
    CHR HKU\S-1-5-21-243343983-1306640228-2714440449-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kfecnpmgnlnbmipaogfhoacoioifjgko] - hxxp://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [jdiejbegdjikmehflknhkbieocmnogcf] - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdiejbegdjikmehflknhkbieocmnogcf.crx [2015-11-07]
    CHR HKLM-x32\...\Chrome\Extension: [kfecnpmgnlnbmipaogfhoacoioifjgko] - hxxp://clients2.google.com/service/update2/crx
    StartMenuInternet: (HKLM) OperaStable - C:\Program Files (x86)\Opera\Launcher.exe hxxp://www.yoursites123.com/?type=sc&ts=1...t07021&uid=SAMSUNGXHD502HI_S1VZJX0C400475
    2015-12-10 06:11 - 2015-12-11 19:09 - 00000000 ____D C:\ProgramData\BWdMB
    2015-12-10 06:10 - 2015-12-11 20:25 - 00000000 ____D C:\ProgramData\eWdMe
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix/Napraw.

    0
  • #3 12 Gru 2015 12:01
    Mimasan84
    Poziom 2  

    niestety nie pomogło.
    wykonałem całość i nic.
    PS
    mcafee nie posiadam z tego co wiem.

    0
  • #4 12 Gru 2015 12:09
    Acorus 20
    Spec od komputerów

    Pokaż nowe logi z FRST.

    0
  • #6 12 Gru 2015 12:51
    Kolobos
    Spec od komputerów

    Sprawdz czy we wlasciwosciach skrotu opery nie ma dopisanego adresu yoursites123.

    Odinstaluj McAfee Security Scan Plus i nie pisz, ze nie masz bo masz. Na przyszlosc uwazaj co sie instaluje.
    Odinstaluj tez REACHit.

    Fixlist.txt:
    0.0.0.1 mssplus.mcafee.com
    Task: {46CCF3AA-AEF7-4359-9225-53FD9FE9E786} - \{43A9944B-18DC-4F90-A44C-4F7E34F3F8F3} -> Brak pliku <==== UWAGA
    Task: {47C6C22F-03F1-44B6-8E50-209738661064} - System32\Tasks\Lenovo\REACHit Agent Startup => C:\Program Files (x86)\Lenovo\REACHit\webAgent.exe [2015-11-11] (Lenovo)
    Task: {52D09228-155B-4A59-BB68-5E2E1AA114F8} - \{BA987FED-E34B-4449-8F87-DA78B2E51BD1} -> Brak pliku <==== UWAGA
    Task: {B721D3A2-20B8-4C25-A0FA-A8275645D9F1} - System32\Tasks\Lenovo\REACHit Agent Update => C:\Program Files (x86)\Lenovo\REACHit\webAgent.exe [2015-11-11] (Lenovo)
    Task: {C460EB30-E9AF-4A31-896C-E008567884F0} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo)
    ShortcutWithArgument: C:\Users\kubapapryka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...HitachiXHTS547575A9E384_J2590020D1R2PGD1R2PGX <==== UWAGA
    ShortcutWithArgument: C:\Users\kubapapryka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...HitachiXHTS547575A9E384_J2590020D1R2PGD1R2PGX <==== UWAGA
    ShortcutWithArgument: C:\Users\kubapapryka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...HitachiXHTS547575A9E384_J2590020D1R2PGD1R2PGX <==== UWAGA
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...HitachiXHTS547575A9E384_J2590020D1R2PGD1R2PGX <==== UWAGA
    HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-03-18] (Microsoft Corporation)
    2015-12-09 21:23 - 2015-03-17 15:28 - 00003898 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1426602492

    0