Удаление вирусов и троянов. Защита компьютера. › Помощь в удалении вирусов, троянов, рекламы и других зловредов › Замучил youtube.com/grredir
- This topic has 5 ответов, 2 участника, and was last updated 7 years, 8 months назад by Admin.
-
АвторСообщения
-
18 февраля, 2017 в 7:57 дп #58564
Здравствуйте, не могу никак избавиться от перенаправления на youtube.com/grredir , испробовал уже всё, все программы не видят ничего плохого, расширения отсутствуют. Но от этой гадости всё равно не смог избавиться!
Вложения:
You must be logged in to view attached files.19 февраля, 2017 в 10:24 пп #58580Здравствуйте, добро пожаловать на Spyware-ru форум.
Пара вопросов:
1. В списке программ есть 美图秀秀 4.0.1 — сами устанавливали ?
2. GameCenter от Mail.ru установлен вами ?Запустите программу Блокнот и вставьте в открытое окно следующий текст
CreateRestorePoint: HKU\S-1-5-21-3998566914-3200661194-1109628920-1000\...\Run: [PBot] => C:\Users\slotey\AppData\Roaming\PBot\python\pythonw.exe [27648 2015-12-21] () Startup: C:\Users\slotey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PBot.lnk [2016-12-07] ShortcutTarget: PBot.lnk -> C:\Users\slotey\AppData\Roaming\PBot\python\pythonw.exe () GroupPolicy: Restriction ? <======= ATTENTION GroupPolicy\User: Restriction ? <======= ATTENTION GroupPolicyScripts: Restriction <======= ATTENTION CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\56.0.2924.87\PepperFlash\pepflashplayer.dll => No File U3 idsvc; no ImagePath Task: {01451011-CFF3-486A-A512-6087BA046B56} - \SafeZone scheduled Autoupdate 1451839208 -> No File <==== ATTENTION Task: {031312EA-ED8C-440A-9D5A-E5C6673B4FAD} - \Adobe Flash Player Updater -> No File <==== ATTENTION Task: {04CF0735-7DEE-4154-935F-8A07CDF1A823} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {18260BE6-9D16-4FAE-AC6C-EB654F268424} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {36037D8F-A2C0-4A28-A007-2C1522D199EC} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {3AA013A9-BBB8-4BA8-9D8F-97BE978DCCD9} - \GoogleUpdateTaskMachineCore -> No File <==== ATTENTION Task: {632109B4-B109-47E4-9357-09C4E8600F7E} - \GoogleUpdateTaskMachineUA -> No File <==== ATTENTION Task: {761D66BD-E466-43C2-B982-D062A537EDC6} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {77414BCD-6534-4486-9C73-7DF6824DF192} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION Task: {7BA698DC-5D6D-4CD5-8A60-2CF9CE822F81} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION Task: {9591758F-29C0-4225-8B65-D7952BE8FD13} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION Task: {99C7960F-0934-4C71-AD22-FB5A0AC9BC4F} - \avast! Emergency Update -> No File <==== ATTENTION Task: {9AB9F491-EC97-46C2-B3D3-269F86D2D737} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {9FEE17ED-9E0C-43F5-9DED-2A79EF620D44} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {A7DC1E8A-2120-41BA-AC78-8A6F7CC6F860} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION Task: {D6240393-9A9C-4A7F-8909-2391CE512D08} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {E17E9C41-696D-4BB6-8533-01CDE0B131B8} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {E490CEE6-38CB-47E0-B2AD-EAB77BD54A4A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION Task: {FD89901C-576F-4580-9CC7-A711ADA5E85A} - \{426D5D56-7FCA-48EF-9BD5-34C928A396C5} -> No File <==== ATTENTION Task: {FF63E71D-7571-4453-A755-5E9690FFF844} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION C:\Users\slotey\AppData\Roaming\PBot EmptyTemp: Reboot:
Сохраните полученный файл в папку где находится программа FRST/FRST64 под именем fixlist
Запустите программу FRST и нажмите кнопку Fix.
Когда программа закончит работу появиться сообщение "Fix completed". Нажмите OK.
Откроется блокнот с содержимым файла fixlog.txt. Вставьте содержимое этого файла в ваш ответ.После этого выполните новую проверку программой FRST (перед нажатием клавиши Scan поставьте галочку в пункте Addition.txt) и оба её лога прикрепите к вашему ответу.
20 февраля, 2017 в 9:18 дп #58620Программы установлены мной самостоятельно и не причиняли никакого вреда долгое время!
Fix result of Farbar Recovery Scan Tool (x86) Version: 19-02-2017
Ran by slotey (20-02-2017 18:02:51) Run:1
Running from C:\Users\slotey\Desktop
Loaded Profiles: slotey (Available Profiles: slotey & DefaultAppPool)
Boot Mode: Normal==============================================
fixlist content:
*****************
CreateRestorePoint:
HKU\S-1-5-21-3998566914-3200661194-1109628920-1000\…\Run: [PBot] => C:\Users\slotey\AppData\Roaming\PBot\python\pythonw.exe [27648 2015-12-21] ()
Startup: C:\Users\slotey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PBot.lnk [2016-12-07]
ShortcutTarget: PBot.lnk -> C:\Users\slotey\AppData\Roaming\PBot\python\pythonw.exe ()
GroupPolicy: Restriction ? < ======= ATTENTION
GroupPolicy\User: Restriction ? <======= ATTENTION
GroupPolicyScripts: Restriction <======= ATTENTION
CHR Plugin: (Shockwave Flash) — C:\Program Files\Google\Chrome\Application\56.0.2924.87\PepperFlash\pepflashplayer.dll => No File
U3 idsvc; no ImagePath
Task: {01451011-CFF3-486A-A512-6087BA046B56} — \SafeZone scheduled Autoupdate 1451839208 -> No File < ==== ATTENTION
Task: {031312EA-ED8C-440A-9D5A-E5C6673B4FAD} — \Adobe Flash Player Updater -> No File < ==== ATTENTION
Task: {04CF0735-7DEE-4154-935F-8A07CDF1A823} — \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File < ==== ATTENTION
Task: {18260BE6-9D16-4FAE-AC6C-EB654F268424} — \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File < ==== ATTENTION
Task: {36037D8F-A2C0-4A28-A007-2C1522D199EC} — \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File < ==== ATTENTION
Task: {3AA013A9-BBB8-4BA8-9D8F-97BE978DCCD9} — \GoogleUpdateTaskMachineCore -> No File < ==== ATTENTION
Task: {632109B4-B109-47E4-9357-09C4E8600F7E} — \GoogleUpdateTaskMachineUA -> No File < ==== ATTENTION
Task: {761D66BD-E466-43C2-B982-D062A537EDC6} — \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File < ==== ATTENTION
Task: {77414BCD-6534-4486-9C73-7DF6824DF192} — \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File < ==== ATTENTION
Task: {7BA698DC-5D6D-4CD5-8A60-2CF9CE822F81} — \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File < ==== ATTENTION
Task: {9591758F-29C0-4225-8B65-D7952BE8FD13} — \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File < ==== ATTENTION
Task: {99C7960F-0934-4C71-AD22-FB5A0AC9BC4F} — \avast! Emergency Update -> No File < ==== ATTENTION
Task: {9AB9F491-EC97-46C2-B3D3-269F86D2D737} — \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File < ==== ATTENTION
Task: {9FEE17ED-9E0C-43F5-9DED-2A79EF620D44} — \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File < ==== ATTENTION
Task: {A7DC1E8A-2120-41BA-AC78-8A6F7CC6F860} — \Microsoft\Windows\Setup\gwx\rundetector -> No File < ==== ATTENTION
Task: {D6240393-9A9C-4A7F-8909-2391CE512D08} — \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File < ==== ATTENTION
Task: {E17E9C41-696D-4BB6-8533-01CDE0B131B8} — \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File < ==== ATTENTION
Task: {E490CEE6-38CB-47E0-B2AD-EAB77BD54A4A} — \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File < ==== ATTENTION
Task: {FD89901C-576F-4580-9CC7-A711ADA5E85A} — \{426D5D56-7FCA-48EF-9BD5-34C928A396C5} -> No File < ==== ATTENTION
Task: {FF63E71D-7571-4453-A755-5E9690FFF844} — \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File < ==== ATTENTION
C:\Users\slotey\AppData\Roaming\PBot
EmptyTemp:
Reboot:
*****************Error: (0) Failed to create a restore point.
HKU\S-1-5-21-3998566914-3200661194-1109628920-1000\Software\Microsoft\Windows\CurrentVersion\Run\\PBot => value removed successfully.
C:\Users\slotey\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PBot.lnk => moved successfully
C:\Users\slotey\AppData\Roaming\PBot\python\pythonw.exe => moved successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\system32\GroupPolicy\User => moved successfully
«C:\WINDOWS\system32\GroupPolicy\Machine» => not found.
C:\Program Files\Google\Chrome\Application\56.0.2924.87\PepperFlash\pepflashplayer.dll => not found.
HKLM\System\CurrentControlSet\Services\idsvc => key removed successfully.
idsvc => service removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{01451011-CFF3-486A-A512-6087BA046B56} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{01451011-CFF3-486A-A512-6087BA046B56} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SafeZone scheduled Autoupdate 1451839208 => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{031312EA-ED8C-440A-9D5A-E5C6673B4FAD} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{031312EA-ED8C-440A-9D5A-E5C6673B4FAD} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Flash Player Updater => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{04CF0735-7DEE-4154-935F-8A07CDF1A823} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{04CF0735-7DEE-4154-935F-8A07CDF1A823} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{18260BE6-9D16-4FAE-AC6C-EB654F268424} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{18260BE6-9D16-4FAE-AC6C-EB654F268424} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{36037D8F-A2C0-4A28-A007-2C1522D199EC} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{36037D8F-A2C0-4A28-A007-2C1522D199EC} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3AA013A9-BBB8-4BA8-9D8F-97BE978DCCD9} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3AA013A9-BBB8-4BA8-9D8F-97BE978DCCD9} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{632109B4-B109-47E4-9357-09C4E8600F7E} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{632109B4-B109-47E4-9357-09C4E8600F7E} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{761D66BD-E466-43C2-B982-D062A537EDC6} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{761D66BD-E466-43C2-B982-D062A537EDC6} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{77414BCD-6534-4486-9C73-7DF6824DF192} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77414BCD-6534-4486-9C73-7DF6824DF192} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7BA698DC-5D6D-4CD5-8A60-2CF9CE822F81} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7BA698DC-5D6D-4CD5-8A60-2CF9CE822F81} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9591758F-29C0-4225-8B65-D7952BE8FD13} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9591758F-29C0-4225-8B65-D7952BE8FD13} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{99C7960F-0934-4C71-AD22-FB5A0AC9BC4F} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{99C7960F-0934-4C71-AD22-FB5A0AC9BC4F} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\avast! Emergency Update => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9AB9F491-EC97-46C2-B3D3-269F86D2D737} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9AB9F491-EC97-46C2-B3D3-269F86D2D737} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9FEE17ED-9E0C-43F5-9DED-2A79EF620D44} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9FEE17ED-9E0C-43F5-9DED-2A79EF620D44} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A7DC1E8A-2120-41BA-AC78-8A6F7CC6F860} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A7DC1E8A-2120-41BA-AC78-8A6F7CC6F860} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\rundetector => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D6240393-9A9C-4A7F-8909-2391CE512D08} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D6240393-9A9C-4A7F-8909-2391CE512D08} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E17E9C41-696D-4BB6-8533-01CDE0B131B8} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E17E9C41-696D-4BB6-8533-01CDE0B131B8} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E490CEE6-38CB-47E0-B2AD-EAB77BD54A4A} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E490CEE6-38CB-47E0-B2AD-EAB77BD54A4A} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FD89901C-576F-4580-9CC7-A711ADA5E85A} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FD89901C-576F-4580-9CC7-A711ADA5E85A} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{426D5D56-7FCA-48EF-9BD5-34C928A396C5} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FF63E71D-7571-4453-A755-5E9690FFF844} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FF63E71D-7571-4453-A755-5E9690FFF844} => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => key removed successfully.«C:\Users\slotey\AppData\Roaming\PBot» folder move:
Could not move «C:\Users\slotey\AppData\Roaming\PBot» => Scheduled to move on reboot.
=========== EmptyTemp: ==========
Вложения:
You must be logged in to view attached files.23 февраля, 2017 в 10:07 пп #58712Программы установлены мной самостоятельно и не причиняли никакого вреда долгое время!
Хмм, а я и не предлагаю вам их срочно удалять 🙂 Просто решил уточнить. Что касается софта от маилру, то частенько он попадает на компьютер пользователей без их разрешения.
Как сейчас работает компьютер ? Есть ли редирект на YouTube ?
И ещё, смотрю вы установили программу Hola.
HKLM\...\Run: [hola] => C:\Program Files\Hola\app\hola.exe [1705056 2017-01-31] (Hola Networks Ltd.) <===== ATTENTION R2 hola_svc; C:\Program Files\Hola\app\hola_svc.exe [4746848 2017-01-31] (Hola Networks Ltd.) <==== ATTENTION R2 hola_updater; C:\Program Files\Hola\app\hola_updater.exe [4746848 2017-01-31] (Hola Networks Ltd.) <==== ATTENTION
Об этой программе есть информация, что она вставляет рекламу в открываемые пользователем страницы.
24 февраля, 2017 в 3:29 дп #58727Здравствуйте!!! В последнее время перенаправления перестали мучить, уж не знаю на какое время!
Ничего не удалял и не устанавливал больше нового.1 марта, 2017 в 7:15 пп #58794Удалите папку C:\FRST.
Не забывайте обновлять Windows, ваши программы и особенно ваш антивирус.
Не посещайте незнакомые сайты, очень внимательно относитесь к файлам скаченным с Интернета.
Расскажите как вы защищаете свой компьютер, ответив на эти вопросы Как вы защищаете свой компьютер ?
Всего доброго!
-
АвторСообщения
- Для ответа в этой теме необходимо авторизоваться.