aga328 utworzono 11 grudnia 2015 utworzono 11 grudnia 2015 Hej, mógłby ktoś pomóc w usunięciu yoursites?
Twój_Anioł_Stróż komentarz 11 grudnia 2015 komentarz 11 grudnia 2015 (edytowane) 1) Odinstaluj niepotrzebny do niczego Akamai NetSession Interface 2) Otwórz Notatnik i wklej w nim: Task: {7B639D28-848C-49F0-AA5E-38CEBC969C95} - System32\Tasks\{F414A3F2-755A-424C-A707-5918697E8738} => pcalua.exe -a C:\Users\Marcin\AppData\Roaming\yoursearching\UninstallManager.exe -c -ptid=cor Task: {B1CAC33C-8CA0-4503-AD31-EE7CD5DA5428} - System32\Tasks\{BE52E3EC-F145-4D3A-8407-02E3D46824D3} => pcalua.exe -a D:\Pobieranie\sp44789.exe -d D:\Pobieranie Task: {B32C5436-B17D-4CE0-934A-C8CB2A8EE1F4} - System32\Tasks\{D0AEB246-4239-45D1-AB95-94878879685D} => pcalua.exe -a D:\Pobieranie\sp46817.exe -d D:\Pobieranie Task: {C0E8DBB9-92EF-41D9-8684-E4E09C380614} - System32\Tasks\{2840D61D-45A3-4D74-B92B-B3C0FCADD27E} => pcalua.exe -a D:\Pobieranie\sp46035.exe -d D:\Pobieranie ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449665000&z=c011609383edbd95ce3d1efg1z0zdteq1qcw4e1ede&from=ient07021&uid=WDCXWD800BEVS-22RST0_WD-WXCX0735049250492 <==== UWAGA FirewallRules: [TCP Query User{097E5FC7-921B-4C3C-8E83-68295667EA2E}C:\users\marcin\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marcin\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{A1C49F61-8391-41C1-9D9D-59452AD41652}C:\users\marcin\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marcin\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{45896AB0-6D9F-407F-91CC-C89D820DD27B}C:\users\marcin\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marcin\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{489D88F3-4A72-4DF4-BF02-2C080FD77E20}C:\users\marcin\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marcin\appdata\local\akamai\netsession_win.exe C:\users\marcin\appdata\local\akamai\netsession_win.exe C:\ProgramData\pWdMp ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (Brak pliku) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms} HKU\S-1-5-21-1735776866-2779234592-3012535956-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N HKU\S-1-5-21-1735776866-2779234592-3012535956-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms} SearchScopes: HKU\S-1-5-21-1735776866-2779234592-3012535956-1001 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms} SearchScopes: HKU\S-1-5-21-1735776866-2779234592-3012535956-1001 -> {06E3126A-E4DA-4F8F-9CD0-2348B320EB22} URL = SearchScopes: HKU\S-1-5-21-1735776866-2779234592-3012535956-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N&q={searchTerms} StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe hxxp://www.yoursites123.com/?type=sc&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.yoursites123.com/?type=sc&ts=1449829683&z=5f5e9d0ab364d07ac89377eg1z8z5tbbco6tfqamab&from=ient07021&uid=WDCXWD5000LPVX-75V0TT0_WX31AC43479NAC43479N R2 WdMan; C:\ProgramData\pWdMp\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego] S2 0313541446733620mcinstcleanup; C:\Windows\TEMP\031354~1.EXE -cleanup -nolog [X] 2015-12-11 11:29 - 2015-12-11 11:29 - 00000001 _____ C:\Windows\SysWOW64\pl.html EmptyTemp: Plik zapisz pod nazwą [b]fixlist.txt[/b] i umieść obok FRST.exe Uruchom [b]FRST[/b] i kliknij przycisk [b]Fix[/b] (NAPRAW). ---------------------- Jeśli będzie OK, to będziemy kończyć: Otwórz Notatnik i wklej w nim: DeleteQuarantine: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij w Fix (NAPRAW). przez SHIFT+DEL usuń pozostały folder C:\FRST. W Adw-Cleaner kliknij na przycisk [b]Odinstaluj[/b] ([b]UNINSTALL[/b]). Jeśli natomiast problem nie zniknie, to przeinstalujesz przeglądarkę, na której to jeszcze będzie. .
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.