x-kom hosting

Yoursites123

aga328
utworzono
utworzono

Hej, mógłby ktoś pomóc w usunięciu yoursites?

Twój_Anioł_Stróż
komentarz
komentarz (edytowane)

1) Odinstaluj niepotrzebny do niczego Akamai NetSession Interface

 

2) Otwórz Notatnik i wklej w nim:

Task: {7B639D28-848C-49F0-AA5E-38CEBC969C95} - System32\Tasks\{F414A3F2-755A-424C-A707-5918697E8738} => pcalua.exe -a C:\Users\Marcin\AppData\Roaming\yoursearching\UninstallManager.exe -c  -ptid=cor
Task: {B1CAC33C-8CA0-4503-AD31-EE7CD5DA5428} - System32\Tasks\{BE52E3EC-F145-4D3A-8407-02E3D46824D3} => pcalua.exe -a D:\Pobieranie\sp44789.exe -d D:\Pobieranie
Task: {B32C5436-B17D-4CE0-934A-C8CB2A8EE1F4} - System32\Tasks\{D0AEB246-4239-45D1-AB95-94878879685D} => pcalua.exe -a D:\Pobieranie\sp46817.exe -d D:\Pobieranie
Task: {C0E8DBB9-92EF-41D9-8684-E4E09C380614} - System32\Tasks\{2840D61D-45A3-4D74-B92B-B3C0FCADD27E} => pcalua.exe -a D:\Pobieranie\sp46035.exe -d D:\Pobieranie
ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA
ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA
ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA
ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA
ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA
ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA
ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA
ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA
FirewallRules: [TCP Query User{097E5FC7-921B-4C3C-8E83-68295667EA2E}C:\users\marcin\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marcin\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{A1C49F61-8391-41C1-9D9D-59452AD41652}C:\users\marcin\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marcin\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{45896AB0-6D9F-407F-91CC-C89D820DD27B}C:\users\marcin\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marcin\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{489D88F3-4A72-4DF4-BF02-2C080FD77E20}C:\users\marcin\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marcin\appdata\local\akamai\netsession_win.exe
C:\users\marcin\appdata\local\akamai\netsession_win.exe
C:\ProgramData\pWdMp
ShortcutTarget: $McRebootA5E6DEAA56$.lnk ->  (Brak pliku)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms}
HKU\S-1-5-21-1735776866-2779234592-3012535956-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N
HKU\S-1-5-21-1735776866-2779234592-3012535956-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1735776866-2779234592-3012535956-1001 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1735776866-2779234592-3012535956-1001 -> {06E3126A-E4DA-4F8F-9CD0-2348B320EB22} URL =
SearchScopes: HKU\S-1-5-21-1735776866-2779234592-3012535956-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe hxxp://www.yoursites123.com/?type=sc&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N
StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.yoursites123.com/?type=sc&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N
R2 WdMan; C:\ProgramData\pWdMp\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego]
S2 0313541446733620mcinstcleanup; C:\Windows\TEMP\031354~1.EXE -cleanup -nolog [X]
2015-12-11 11:29 - 2015-12-11 11:29 - 00000001 _____ C:\Windows\SysWOW64\pl.html
EmptyTemp:

Plik zapisz pod nazwą [b]fixlist.txt[/b] i umieść obok FRST.exe
Uruchom [b]FRST[/b] i kliknij przycisk [b]Fix[/b] (NAPRAW).


----------------------
Jeśli będzie OK, to będziemy kończyć:
Otwórz Notatnik i wklej w nim:

DeleteQuarantine:

Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij w Fix (NAPRAW).
przez SHIFT+DEL usuń pozostały folder C:\FRST.

W Adw-Cleaner kliknij na przycisk [b]Odinstaluj[/b] ([b]UNINSTALL[/b]).


Jeśli natomiast problem nie zniknie, to przeinstalujesz przeglądarkę, na której to jeszcze będzie.
.

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.