patraw utworzono 11 grudnia 2015 utworzono 11 grudnia 2015 Jako, że jest to mój pierwszy post na tym forum chciałbym powitać wszystkich użytkowników. Proszę o pomoc w usunięciu yoursites123 - to jakaś plaga.
Twój_Anioł_Stróż komentarz 11 grudnia 2015 komentarz 11 grudnia 2015 (edytowane) Otwórz Notatnik i wklej w nim: Task: {00E4215B-64A5-4753-8560-37C19AC5897B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA Task: {13022649-DC30-47D3-B17A-D40618DA3300} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA Task: {2A8CE026-BCDB-46A4-BA19-CF15EA673E6E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA Task: {3E8B7E20-9375-4543-A051-EFB18CE06B24} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA Task: {55764CBD-0E52-4284-B962-B03C901BEA62} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA Task: {8694E4A3-4C80-4357-B155-C52FC7683D0F} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA Task: {9B3EE831-AD19-4FA5-8789-6B53C7A78C3D} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA Task: {B01D472F-4F03-4E4A-9DD8-6B9FC0A0E052} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA Task: {DC547570-417C-42A7-B23F-60F9DABB770F} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA Task: {F996455F-0E12-4AED-AE6F-AE6C8CD4E8DE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA Task: {FF8B50B2-A279-4F78-9014-0CFD5A5BF1A9} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA ShortcutWithArgument: C:\Users\Patryk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 <==== UWAGA ShortcutWithArgument: C:\Users\Patryk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 <==== UWAGA ShortcutWithArgument: C:\Users\Patryk\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 <==== UWAGA ShortcutWithArgument: C:\Users\Patryk\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 <==== UWAGA ShortcutWithArgument: C:\Users\Patryk\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 <==== UWAGA ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 <==== UWAGA C:\ProgramData\8WdM8 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592&q={searchTerms} HKU\S-1-5-21-2939411965-1363320882-1151901624-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 HKU\S-1-5-21-2939411965-1363320882-1151901624-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592&q={searchTerms} SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592&q={searchTerms} SearchScopes: HKU\S-1-5-21-2939411965-1363320882-1151901624-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592&q={searchTerms} SearchScopes: HKU\S-1-5-21-2939411965-1363320882-1151901624-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592&q={searchTerms} FF DefaultSearchEngine: yoursites123 FF SelectedSearchEngine: yoursites123 StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://www.yoursites123.com/?type=sc&ts=1449740457&z=f8be1161197e3568a784842gdz8z4t6m7z3eez7g9e&from=ient07021&uid=WDCXWD3200BEVT-26ZCT0_WD-WX10E691759217592 R2 WdMan; C:\ProgramData\8WdM8\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego] S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] C:\WINDOWS\system32\Drivers\EsgScanner.sys 2015-12-10 12:42 - 2015-12-11 11:26 - 00000001 _____ C:\WINDOWS\SysWOW64\pl.html 2015-12-10 10:41 - 2015-12-10 10:43 - 00000000 ____D C:\ProgramData\8WdM8 2015-12-10 10:40 - 2015-12-10 10:41 - 00000000 ____D C:\ProgramData\9WdM9 2015-12-10 10:40 - 2015-12-10 10:40 - 00000388 _____ C:\WINDOWS\SysWOW64\data.bin EmptyTemp: Plik zapisz pod nazwą [b]fixlist.txt[/b] i umieść obok FRST.exe Uruchom [b]FRST[/b] i kliknij przycisk [b]Fix[/b] (NAPRAW). ---------------------- Jeśli będzie OK, to będziemy kończyć: Otwórz Notatnik i wklej w nim: DeleteQuarantine: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST. Uruchom FRST i kliknij w Fix (NAPRAW). przez SHIFT+DEL usuń pozostały folder C:\FRST. Jeśli natomiast problem nie zniknie, to przeinstalujesz przeglądarkę, na której to jeszcze będzie. .
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.