mr.miller utworzono 11 grudnia 2015 utworzono 11 grudnia 2015 Na operze od dzis mam yoursites123 . Jak to usunąc
Twój_Anioł_Stróż komentarz 11 grudnia 2015 komentarz 11 grudnia 2015 (edytowane) 1) Odinstaluj ten program: Foxtab (HKLM-x32\...\foxtab) (Version: - FoxTab) <==== UWAGA 2) Otwórz Notatnik i wklej w nim: Task: {0DE6408E-7C25-47F3-95B8-18A8D70E0159} - System32\Tasks\{23EDAFED-51ED-496B-A989-A8131B51F915} => pcalua.exe -a "C:\Program Files (x86)\Commandos II\COMMANDOS 2 Men of Courage - spolszczenie.exe" -d "C:\Program Files (x86)\Commandos II" -c "C:\Program Files (x86)\Commandos II\comm2.exe" Task: {2026DDE4-6E97-44F8-8BC3-E82BC487F28C} - System32\Tasks\{0A33B626-7183-4F80-8187-A867F584A255} => pcalua.exe -a "C:\Program Files\unins000.exe" -d "C:\Program Files" Task: {944C1D0C-B2C2-45A3-82BE-78F472A7DA17} - System32\Tasks\{5B37467F-7097-4F4F-94F8-F4906DFA3C4D} => pcalua.exe -a E:\Setup.exe -d E:\ Task: {BDAA0CDF-1A1A-418A-BB1C-89CDDEE48A8A} - System32\Tasks\{BD1A020D-6F23-42B8-B91E-2D741EB281D4} => pcalua.exe -a "C:\Users\abc\Desktop\COMMANDOS 2 Men of Courage - spolszczenie.exe" -d C:\Users\abc\Desktop Task: {D0B0976A-14A4-4DC6-B17D-1525F16CDD16} - System32\Tasks\{BDAE03B9-AA5A-45FF-9B72-A347F9D4B50C} => pcalua.exe -a "C:\Program Files\Commandos II\unins000.exe" -d "C:\Program Files\Commandos II" Task: {D9A43396-76E8-4F55-96B2-E95003979D12} - System32\Tasks\{8FEAEA52-279D-4747-9213-E018A4953FB3} => pcalua.exe -a "C:\Program Files (x86)\RAR Password Cracker\uninstall.exe" Task: {DA306109-AEB5-4B33-A3F1-4E62AC26286D} - System32\Tasks\{218D70D8-507E-44FB-888C-76267535EE31} => pcalua.exe -a C:\Users\abc\AppData\Roaming\oursurfing\UninstallManager.exe -c -ptid=amt Task: {F2A6823C-B653-455B-BF04-A0B33DF42DFB} - System32\Tasks\{678636D2-C83A-4360-85AE-E73CB2867455} => pcalua.exe -a C:\Users\abc\AppData\Roaming\istartsurf\UninstallManager.exe -c -ptid=face ShortcutWithArgument: C:\Users\abc\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\abc\Desktop\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\abc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\abc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\abc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\abc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\abc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\abc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\abc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\abc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\abc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\abc\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) -> hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 <==== UWAGA C:\Users\abc\AppData\Roaming\TSv C:\ProgramData\5WdM5 C:\Program Files (x86)\SFK HKLM\...\Run: [Windesk Winsearch] => C:\Program Files (x86)\WindeskWinsearch\Windesk Winsearch.exe C:\Program Files (x86)\WindeskWinsearch HKLM-x32\...\Run: [gmsd_pl_125] => [X] HKLM-x32\...\Run: [gmsd_pl_128] => [X] HKU\S-1-5-21-1917722141-460484120-4047015525-1000\...\Run: [CoupSeek] => C:\Users\abc\AppData\Roaming\CoupSeek\scpsk.exe C:\Users\abc\AppData\Roaming\CoupSeek HKU\S-1-5-21-1917722141-460484120-4047015525-1000\...\Run: [GoogleChromeAutoLaunch_DBEAE3D1B8A49E529172E88FBE5B8643] => "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" --no-startup-window HKU\S-1-5-21-1917722141-460484120-4047015525-1000\...\Run: [BingSvc] => C:\Users\abc\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-12] (© 2015 Microsoft Corporation) GroupPolicy: Ograniczenia - Chrome <======= UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA HKU\S-1-5-21-1917722141-460484120-4047015525-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 HKU\S-1-5-21-1917722141-460484120-4047015525-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108&q={searchTerms} SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108&q={searchTerms} SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = SearchScopes: HKU\.DEFAULT -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = hxxp://www.v9.com/web?type=ds&ts=1422513404&from=zbd1&uid=wdcxwd10ezex-00rkka0_wd-wmc1s049110891108&q={searchTerms} SearchScopes: HKU\.DEFAULT -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1917722141-460484120-4047015525-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108&q={searchTerms} SearchScopes: HKU\S-1-5-21-1917722141-460484120-4047015525-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108&q={searchTerms} Toolbar: HKLM - Brak nazwy - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Brak pliku Toolbar: HKU\S-1-5-21-1917722141-460484120-4047015525-1000 -> Brak nazwy - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Brak pliku StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 FF NewTab: hxxp://www.yoursites123.com/newtab/?type=nt&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 FF Homepage: hxxp://www.yoursites123.com/?type=hp&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 FF Extension: Default NewTab - C:\Users\abc\AppData\Roaming\Mozilla\Firefox\Profiles\pmdzp0my.default-1444761533026\extensions\default_newtabff@gmail.com [2015-12-11] [Brak podpisu cyfrowego] FF Extension: YahooToolsProtected - C:\Users\abc\AppData\Roaming\Mozilla\Firefox\Profiles\pmdzp0my.default-1444761533026\extensions\yahooprotected@gmail.com [2015-12-11] [Brak podpisu cyfrowego] FF Extension: Click Caption - C:\Program Files (x86)\Mozilla Firefox\extensions\{190bc294-c8e5-471c-9466-3eb945b09542} [2015-10-06] [Brak podpisu cyfrowego] FF HKLM-x32\...\Firefox\Extensions: [defsearchp@gmail.com] - C:\Users\abc\AppData\Roaming\Mozilla\Firefox\Profiles\d5bfpaz7.default\extensions\defsearchp@gmail.com => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [deskCutv2@gmail.com] - C:\Users\abc\AppData\Roaming\Mozilla\Firefox\Profiles\d5bfpaz7.default\extensions\deskCutv2@gmail.com => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [default_newtabff@gmail.com] - C:\Users\abc\AppData\Roaming\Mozilla\Firefox\Profiles\pmdzp0my.default-1444761533026\extensions\default_newtabff@gmail.com FF HKLM-x32\...\Firefox\Extensions: [yahooprotected@gmail.com] - C:\Users\abc\AppData\Roaming\Mozilla\Firefox\Profiles\pmdzp0my.default-1444761533026\extensions\yahooprotected@gmail.com StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 CHR dev: Chrome dev build wykryto! <======= UWAGA CHR HomePage: Default -> hxxp://www.yoursites123.com/?type=hp&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 CHR StartupUrls: Default -> "hxxp://www.yoursites123.com/?type=hp&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108" CHR DefaultSearchURL: Default -> hxxp://www.yoursites123.com/web/?type=ds&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108&q={searchTerms} CHR DefaultSearchKeyword: Default -> yoursites123 CHR HKLM-x32\...\Chrome\Extension: [kidmhllhjmmmnpbiaihafgchacpmokof] - C:\Program Files (x86)\Lyrmix\133.crx <nie znaleziono> StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 StartMenuInternet: (HKLM) OperaStable - C:\Program Files (x86)\Opera\Launcher.exe hxxp://www.yoursites123.com/?type=sc&ts=1449851839&z=fc8cc811ec9804b290eff6cg3z3z2t3bew6g3bcz3z&from=ient07021&uid=WDCXWD10EZEX-00RKKA0_WD-WMC1S049110891108 R2 IhPul; C:\Users\abc\AppData\Roaming\TSv\TSvr.exe [580752 2015-12-08] (tsvr.com) R2 SSFK; C:\Program Files (x86)\SFK\SSFK.exe [170144 2015-11-27] (TODO: <公司名>) R2 WdMan; C:\ProgramData\5WdM5\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego] S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X] S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X] S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [X] S3 MSICDSetup; \??\E:\CDriver64.sys [X] S3 MSI_MSIBIOS_010507; \??\C:\Program Files (x86)\MSI\Live Update 5\msibios64_100507.sys [X] S3 NTIOLib_1_0_4; \??\C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [X] S2 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X] S1 wafd_vt_1_10_0_20; system32\drivers\wafd_vt_1_10_0_20.sys [X] C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat 2015-06-06 12:41 - 2015-06-06 12:41 - 0613255 _____ (CMI Limited) C:\Users\abc\AppData\Local\nsd2D78.tmp 2015-06-07 06:03 - 2015-06-07 06:03 - 0613255 _____ (CMI Limited) C:\Users\abc\AppData\Local\nsh54F1.tmp 2015-06-05 06:59 - 2015-06-05 06:59 - 0613255 _____ (CMI Limited) C:\Users\abc\AppData\Local\nsnAE67.tmp 2015-06-08 15:20 - 2015-06-08 15:20 - 0613255 _____ (CMI Limited) C:\Users\abc\AppData\Local\nsoE699.tmp 2015-06-04 17:27 - 2015-06-04 17:27 - 0613255 _____ (CMI Limited) C:\Users\abc\AppData\Local\nsz2F3F.tmp 2013-08-28 14:54 - 2013-08-28 14:54 - 0292656 _____ (VuuPC Limited) C:\Users\abc\AppData\Local\VuuPCBaseSetup.exe EmptyTemp: Plik zapisz pod nazwą [b]fixlist.txt[/b] i umieść obok FRST.exe Uruchom [b]FRST[/b] i kliknij przycisk [b]Fix[/b] (NAPRAW). ---------------------- Jeśli będzie OK, to będziemy kończyć: Otwórz Notatnik i wklej w nim: DeleteQuarantine: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij w Fix (NAPRAW). przez SHIFT+DEL usuń pozostały folder C:\FRST. Jeśli natomiast problem nie zniknie, to przeinstalujesz przeglądarkę, na której to jeszcze będzie. .
mr.miller komentarz 12 grudnia 2015 Autor komentarz 12 grudnia 2015 Wielkie dzięki. Już nie ma tego gówna
kavalier komentarz 22 grudnia 2015 komentarz 22 grudnia 2015 Mam ten sam problem :( na operze jako strona startowa wyskakuje yoursites123. Proszę o pomoc
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.