1) Użyj
Adw-Cleaner http://www.programosy.pl/program,adwcleaner.html
najpierw kliknij na SZUKAJ (SCAN), a dopiero po zakończeniu skanowania, gdy uaktywni się przycisk USUŃ (CLEANING), to kliknij na niego.
Pokaż raport z niego "C"
2) Otwórz Notatnik i wklej w nim:
DeleteKey: HKLM\SOFTWARE\Wow6432Node\yoursites123Software
DeleteKey: HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes
DeleteKey: HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes
DeleteKey: HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes
DeleteKey: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5350432D-5350-006A-76A7-A758B70C2300}
ShortcutWithArgument: C:\Documents and Settings\A\Menu Start\Programy\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
ShortcutWithArgument: C:\Documents and Settings\A\Menu Start\Programy\StormFall\StormFall.lnk -> C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
ShortcutWithArgument: C:\Documents and Settings\A\Menu Start\Programy\Sparta\Sparta.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
ShortcutWithArgument: C:\Documents and Settings\A\Menu Start\Programy\Akcesoria\Narzędzia systemowe\Internet Explorer (bez dodatków).lnk -> C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
ShortcutWithArgument: C:\Documents and Settings\A\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Uruchom przeglądarkę Internet Explorer.lnk -> C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
ShortcutWithArgument: C:\Documents and Settings\All Users\Menu Start\Programy\Google Chrome\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
ShortcutWithArgument: C:\Documents and Settings\All Users\Menu Start\Programy\Google Chrome\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
ShortcutWithArgument: C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{1a3e09be-1e45-494b-9174-d7385b45bbf5} => ""=""
HKLM\...\Run: [ApnTBMon] => "C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k
HKLM\...\runonceex: [Flag] => 2
Winlogon\Notify\Antiwpa: antiwpa.dll [X]
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB&q={searchTerms}
HKU\S-1-5-21-1614895754-152049171-1606980848-1004\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
HKU\S-1-5-21-1614895754-152049171-1606980848-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB&q={searchTerms}
SearchScopes: HKLM -> {a37187ba-df01-4b27-a7c9-a645524b0517} URL = hxxp://int.search.tb.ask.com/search/GGmain.jhtml?p2=^BYM^xdm002^YYA^pl&ptb=5B078535-9847-4B64-95FF-AD5C8386C09B&ind=2015112316&n=781c2c7c&psa=&st=sb&searchfor={searchTerms}
SearchScopes: HKU\S-1-5-21-1614895754-152049171-1606980848-1004 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1614895754-152049171-1606980848-1004 -> {a37187ba-df01-4b27-a7c9-a645524b0517} URL = hxxp://int.search.tb.ask.com/search/GGmain.jhtml?p2=^BYM^xdm002^YYA^pl&ptb=5B078535-9847-4B64-95FF-AD5C8386C09B&ind=2015112316&n=781c2c7c&psa=&st=sb&searchfor={searchTerms}
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1448353929&z=2e031af3a31ae9432662393g9z2zebec8wcc4qbe3t&from=cor&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
CHR HomePage: Default -> hxxp://www.yoursites123.com/?type=hp&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
CHR StartupUrls: Default -> "hxxp://www.yoursites123.com/?type=hp&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB"
StartMenuInternet: chrome.exe - C:\Program Files\Google\Chrome\Application\chrome.exe hxxp://www.yoursites123.com/?type=sc&ts=1449663562&z=6a61f37f129616202156892g1zfz4tfq8qecfweq5c&from=ient07021&uid=ST3250312CS_6VT01NEBXXXX6VT01NEB
R2 WdMan; C:\Documents and Settings\All Users\Dane aplikacji\5WdM5\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego]
S2 ProductivityBoss_e5Service; C:\PROGRA~1\PRODUC~1\bar\1.bin\e5barsvc.exe [X]
C:\Documents and Settings\All Users\Dane aplikacji\5WdM5
C:\WINDOWS\Minidump\Mini*.dmp
C:\Documents and Settings\All Users\Dane aplikacji\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
EmptyTemp:
Plik zapisz pod nazwą
fixlist.txt i umieść obok FRST.exe
Uruchom
FRST i kliknij przycisk
Fix (NAPRAW).
Powstanie plik fixlog.txt.
Daj ten log.
3) Napisz, czy problem reklam znikł?
.