Elektroda.pl
Elektroda.pl
X
CControls
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

YourSites123 prośba o usunięcie

mic_grab 11 Sty 2016 12:35 753 8
  • CControls
  • CControls
  • Pomocny post
    #4 11 Sty 2016 13:02
    Acorus 20
    Spec od komputerów

    Otwórz notatnik systemowy i wklej:

    Cytat:
    Task: {10D5BE38-57F3-4401-B7DF-314B8CFD89B3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
    Task: {14150363-316D-40C6-9713-3185A02C4BE2} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
    Task: {1F6ED50A-BD99-497B-B6F5-611499AA2009} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
    Task: {2EABCE77-F51C-4D94-AE15-C8F63C577779} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
    Task: {32F86330-0067-4D96-9D26-05890F96E802} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
    Task: {33F73670-421B-4092-863F-1007BCA805F1} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
    Task: {6EFF451A-1B6F-4E34-BA54-A117087FB03E} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
    Task: {99D54829-2655-4AC0-B868-824ED7A5B3C4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
    Task: {BF234B65-806C-4833-82DE-CCC093846C94} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
    Task: {C280F452-58EA-41E2-A14A-2D7FAC4BF7D4} - System32\Tasks\GridinSoft Anti-Malware => C:\Program Files\GridinSoft Anti-Malware\gsam.exe
    Task: {FFBA1E43-180E-49C2-8D5E-669A8626ECFF} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
    ShortcutWithArgument: C:\Users\michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...uid=WDCXWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F
    ShortcutWithArgument: C:\Users\michal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1...uid=WDCXWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F
    ShortcutWithArgument: C:\Users\michal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...uid=WDCXWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F




    ShortcutWithArgument: C:\Users\michal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1...uid=WDCXWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F
    ShortcutWithArgument: C:\Users\michal\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...uid=WDCXWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...uid=WDCXWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1...uid=WDCXWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F
    ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1...uid=WDCXWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F
    ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...uid=WDCXWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F
    HKLM-x32\...\Run: [] => [X]
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
    HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    SearchScopes: HKLM-x32 -> DefaultScope - brak wartości
    SearchScopes: HKU\S-1-5-21-757354998-162296796-2744582494-1001 -> {37F8B77A-92A5-483F-82AE-269E9E16CE8D} URL =
    CHR HomePage: Default -> hxxp://www.yoursites123.com/?type=hp&ts=1...uid=WDCXWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F
    CHR StartupUrls: Default -> "hxxp://www.yoursites123.com/?type=hp&ts=1452240410&z=5347973b4250e6b236dcc49g4z7weobobz8e7z6g9w&from=wpm01073&uid=WDCXWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F"
    CHR DefaultSearchURL: Default -> hxxp://yoursites123.com/web?type=ds&ts=14...XWD10JPCX-24UE4T0_WD-WX71EA4AHV5FAHV5F&q={searchTerms}
    CHR DefaultSearchKeyword: Default -> yoursites123
    CHR HKU\S-1-5-21-757354998-162296796-2744582494-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
    U4 IhPul; Brak ImagePath
    U4 PicexaService; Brak ImagePath
    U4 SSFK; Brak ImagePath
    S4 WdMan; Brak ImagePath
    U4 WsDrvInst; Brak ImagePath
    2016-01-08 09:06 - 2016-01-08 09:07 - 00000000 ____D C:\ProgramData\FWdMF
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix/Napraw.

    0
  • #5 11 Sty 2016 14:06
    mic_grab
    Poziom 4  

    Pomogło, wszystko wróciło do normy. Wielkie dzięki

    0
  • #8 18 Sty 2016 11:59
    Acorus 20
    Spec od komputerów

    Odinstaluj McAfee Security Scan Plus, WinZipper. Otwórz notatnik systemowy i wklej:

    Cytat:
    Task: {3CB31D54-2165-416B-87B9-E8C0DBC2919A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
    Task: {3F5C3EEC-8945-4AF7-A085-2132D844B03B} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
    Task: {5E07B083-E3A3-4081-964B-626EF5C6FF19} - \PCDoctorBackgroundMonitorTask -> Brak pliku <==== UWAGA
    Task: {6176FDC0-7C7A-457C-9E4B-305CDBF8F4C5} - \PCDEventLauncherTask -> Brak pliku <==== UWAGA
    Task: {683132DA-8172-4CD2-9EDB-63E620CCD82D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
    Task: {7684C4AF-BB63-4C7C-88A5-8AC7FE05DC3B} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
    Task: {839A2A34-7CDB-4BEF-A87E-4E0AE242F31F} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
    Task: {881A6479-A779-4E5E-A432-899874ED77DC} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Brak pliku <==== UWAGA
    Task: {8D14DB0E-D14F-4976-A317-0E6EA1193375} - \CCleanerSkipUAC -> Brak pliku <==== UWAGA
    Task: {971FFE1B-B49D-4980-BCC5-0C07C6D412EB} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Brak pliku <==== UWAGA
    Task: {BC33E505-32D8-4A57-B46B-0F939EF49A01} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
    Task: {C575680F-10CC-4625-8A01-8F27B7402602} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
    Task: {C6FBAB3A-97F8-409C-9CB0-E40F854E7B93} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
    Task: {C727ABA5-C3ED-4C15-9E45-350A1417CAD5} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
    Task: {EA0D9EBE-1815-4DDD-9206-9C453EA46D5A} - \SystemToolsDailyTest -> Brak pliku <==== UWAGA
    Task: {F6AF825B-AF3C-446A-8B08-C225452F1DEF} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
    ShortcutWithArgument: C:\Users\BARTBO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...mp;uid=ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY
    ShortcutWithArgument: C:\Users\BARTBO\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...mp;uid=ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY
    ShortcutWithArgument: C:\Users\BARTBO\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...mp;uid=ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1...mp;uid=ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY
    Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014-06-10]
    ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://yoursites123.com/web?type=ds&ts=14...ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://yoursites123.com/web?type=ds&ts=14...ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY&q={searchTerms}
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1...mp;uid=ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1...mp;uid=ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://yoursites123.com/web?type=ds&ts=14...ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY&q={searchTerms}
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://yoursites123.com/web?type=ds&ts=14...ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY&q={searchTerms}
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.v9.com/?type=hp&ts=1449471882&...;z=9a9eeb363d839a7adc6a66bg8z0z7t3z3m2g0b0bbz
    HKU\S-1-5-21-73505765-594130572-3249692410-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://yoursites123.com/web?type=ds&ts=14...ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY&q={searchTerms}
    HKU\S-1-5-21-73505765-594130572-3249692410-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1...mp;uid=ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY
    HKU\S-1-5-21-73505765-594130572-3249692410-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://yoursites123.com/web?type=ds&ts=14...ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY&q={searchTerms}
    SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-73505765-594130572-3249692410-1001 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKU\S-1-5-21-73505765-594130572-3249692410-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
    SearchScopes: HKU\S-1-5-21-73505765-594130572-3249692410-1001 -> {44EDA0E0-AF5D-441D-8F4A-9B481D030004} URL =
    BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
    StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.yoursites123.com/?type=sc&ts=1...mp;uid=ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY
    Edge HomeButtonPage: HKU\S-1-5-21-73505765-594130572-3249692410-1001 -> hxxp://www.yoursites123.com/?type=hp&ts=1...mp;uid=ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY
    FF NewTab: hxxp://www.yoursites123.com/newtab/?type=nt&a...mp;uid=ST500LT012-1DG142_S3P06EFYXXXXS3P06EFY
    FF SelectedSearchEngine: V9
    FF Extension: xRocket Toolbar - C:\Users\BARTBO\AppData\Roaming\Mozilla\Firefox\Profiles\xtjtaryo.default\Extensions\arthurj8283@gmail.com [2015-12-14] [Brak podpisu cyfrowego]
    FF Extension: Default NewTab - C:\Users\BARTBO\AppData\Roaming\Mozilla\Firefox\Profiles\xtjtaryo.default\Extensions\default_newtabff@gmail.com [2016-01-08] [Brak podpisu cyfrowego]
    FF HKLM-x32\...\Firefox\Extensions: [arthurj8283@gmail.com] - C:\Users\BARTBO\AppData\Roaming\Mozilla\Firefox\Profiles\xtjtaryo.default\extensions\arthurj8283@gmail.com
    FF HKLM-x32\...\Firefox\Extensions: [default_newtabff@gmail.com] - C:\Users\BARTBO\AppData\Roaming\Mozilla\Firefox\Profiles\xtjtaryo.default\extensions\default_newtabff@gmail.com
    FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => nie znaleziono
    FF HKU\S-1-5-21-73505765-594130572-3249692410-1001\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
    FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04] [Brak podpisu cyfrowego]
    CHR HKLM-x32\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - hxxp://clients2.google.com/service/update2/crx
    R2 IhPul; C:\Users\BARTBO\AppData\Roaming\TSv\TSvr.exe [580752 2015-12-08] (tsvr.com)
    S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
    R2 WdMan; C:\ProgramData\1WdM1\WdMan.exe [326656 2016-01-08] (TU-Funs LIMITED) [Brak podpisu cyfrowego]
    R2 winzipersvc; C:\Program Files (x86)\WinZipper\winzipersvc.exe [711344 2016-01-12] (Taiwan Shui Mu Chih Ching Technology Limited) <==== UWAGA
    2016-01-08 08:13 - 2016-01-15 08:07 - 00000000 ____D C:\Program Files (x86)\WinZipper
    2016-01-08 08:13 - 2016-01-12 08:13 - 00000000 ____D C:\Users\BARTBO\AppData\Roaming\WinZipper
    2016-01-08 08:13 - 2016-01-08 08:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZipper
    2016-01-08 08:12 - 2016-01-08 08:12 - 00000000 ____D C:\Users\BARTBO\AppData\Roaming\TSv
    2016-01-08 08:10 - 2016-01-08 08:12 - 00000000 ____D C:\ProgramData\1WdM1
    C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
    EmptyTemp:


    Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze.
    Uruchom jako administrator FRST i kliknij w Fix/Napraw.
    Pobierz i uruchom jako administrator AdwCleaner https://toolslib.net/downloads/finish/1/ Kliknij Scan i później Cleaning.

    0
  • #9 18 Sty 2016 12:36
    mic_grab
    Poziom 4  

    Dziękuję, wszystko ok.

    0