tomo85
(Tomekstrozynski)
8 Kwiecień 2011 13:47
#1
witam
mam problem w google gdyz po otworzeniu wynikow wyszukiwania otwiera sie inny link i zostaje przekierowany na strony z reklama
prosze o pomoc
log malvarebytes http://wklej.org/id/508589/
log extras: http://wklej.org/id/508593/
log otl: http://wklej.org/id/508595/
Acorus
(Acorus)
8 Kwiecień 2011 14:13
#2
Uruchom OTL i w okno (Własne opcje skanowania/Script)wklej:
:OTL IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.facemoods.com/?a=bfus&s={searchTerms}&f=4 IE - HKU\S-1-5-21-1659004503-1957994488-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.facemoods.com/?a=bfus IE - HKU\S-1-5-21-1659004503-1957994488-1417001333-1003…\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) [2011-04-08 14:01:41 | 000,000,000 | —D | M] (@@toolbarname @@) – C:\Documents and Settings\Tom\Dane aplikacji\Mozilla\Firefox\Profiles\9m5veo6w.default\extensions\toolbar@ask.com O2 - BHO: (Conduit Engine ) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\prxConduitEngine.dll (Conduit Ltd.) O2 - BHO: (CescrtHlpr Object) - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\facemoods.com \facemoods\1.4.17.5\bh\facemoods.dll (facemoods.com BHO) O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) O2 - BHO: (BS Player Toolbar) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll (Conduit Ltd.) O3 - HKLM…\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll () O3 - HKLM…\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) O3 - HKLM…\Toolbar: (facemoods Toolbar) - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\facemoods.com \facemoods\1.4.17.5\facemoodsTlbr.dll (facemoods.com ) O3 - HKLM…\Toolbar: (BS Player Toolbar) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\prxtbBS_0.dll (Conduit Ltd.) O3 - HKLM…\Toolbar: (no name) - Locked - No CLSID value found. O3 - HKU\S-1-5-21-1659004503-1957994488-1417001333-1003…\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll () O3 - HKU\S-1-5-21-1659004503-1957994488-1417001333-1003…\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com \GenericAskToolbar.dll (Ask) O3 - HKU\S-1-5-21-1659004503-1957994488-1417001333-1003…\Toolbar\WebBrowser: (BS Player Toolbar) - {FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} - C:\Program Files\BS_Player\prxtbBS_0.dll (Conduit Ltd.) O4 - HKLM…\Run: [facemoods] C:\Program Files\facemoods.com \facemoods\1.4.17.5\facemoodssrv.exe (facemoods.com ) [2011-04-08 14:01:39 | 000,000,230 | ---- | M] () – C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job [2011-04-08 13:53:38 | 000,000,308 | -HS- | M] () – C:\WINDOWS\tasks\Ydwyuoozcm.job [2011-03-01 11:50:50 | 000,000,000 | —D | M] – C:\Documents and Settings\Tom\Dane aplikacji\facemoods.com :Commands [emptytemp]
Kliknij Wykonaj skrypt…Zatwierdź restart komputera. Zapisz raport, który pokaże się po restarcie. Następnie uruchom OTL ponownie, tym razem kliknij (Skanuj).
Pokaż nowy log OTL.txt oraz raport z usuwania.
Odinstaluj BS_Player Toolbar,DAEMON Tools Toolbar,Facemoods Toolbar
tomo85
(Tomekstrozynski)
9 Kwiecień 2011 10:38
#3
Acorus
(Acorus)
9 Kwiecień 2011 10:49
#4
W porządku.W OTL użyj opcji Sprzątanie
Przeskanuj programem Dr.WEB CureIt http://ftp.drweb.com/pub/drweb/cureit/launch.exe