Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

spomaleny pocitac, poruchy v prehliadaci

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
magalanes
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 02 kvě 2009 21:47

spomaleny pocitac, poruchy v prehliadaci

#1 Příspěvek od magalanes »

zdravim, prosim o kontrolu FRST logu, vdaka.

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 11-03-2015
Ran by uzivatel1 (administrator) on PC1 on 06-04-2015 09:03:24
Running from C:\Users\uzivatel1\Desktop
Loaded Profiles: uzivatel1 (Available profiles: uzivatel1)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser not detected!)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(ArcSoft, Inc.) C:\Program Files\Hama\Hama Webcam Suite\Magic-i Visual Effects 2\uCamMonitor.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKU\S-1-5-21-1707592230-9377432-2897197462-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [4811032 2014-09-26] (Piriform Ltd)
HKU\S-1-5-21-1707592230-9377432-2897197462-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\ACTUAL~1.SCR [111616 2013-05-20] ()
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1707592230-9377432-2897197462-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... ar=msnhome
HKU\S-1-5-21-1707592230-9377432-2897197462-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-1707592230-9377432-2897197462-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId= ... google.com
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 213.151.222.34 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default
FF NewTab:
FF Homepage: google.sk
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-04-06] ()
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2012-07-31] (Foxit Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Extension: GreatSave4U - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\3v7@HsE6gkq.org [2014-11-22]
FF Extension: Blur (Formerly DoNotTrackMe) - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\donottrackplus@abine.com [2014-11-22]
FF Extension: HTTPS-Everywhere - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\https-everywhere@eff.org [2015-04-03]
FF Extension: GoSave - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\juj@PgibIX.com [2014-11-14]
FF Extension: DigiSaver - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\r9GS@X.com [2014-11-22]
FF Extension: YoutubeAdBlocke - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\xZPOz@D7nqB9.net [2014-11-14]
FF Extension: Block site - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\{dd3d7613-0246-469d-bc65-2a3cc1668adc} [2013-10-01]
FF Extension: Ghostery - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\firefox@ghostery.com.xpi [2013-08-17]
FF Extension: Self-Destructing Cookies - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\jid0-9XfBwUWnvPx4wWsfBWMCm4Jj69E@jetpack.xpi [2013-05-20]
FF Extension: Lightbeam - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\jid1-F9UJ2thwoAm5gQ@jetpack.xpi [2014-05-31]
FF Extension: YouTube™ Flash® Player - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\jid1-HAV2inXAnQPIeA@jetpack.xpi [2014-12-11]
FF Extension: Nepi Jano! - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\jid1-ujYo9WP31heSeQ@jetpack.xpi [2014-12-03]
FF Extension: NoScript - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-05-20]
FF Extension: Adblock Plus - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-05-20]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 uCamMonitor; C:\Program Files\Hama\Hama Webcam Suite\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S2 24c54e38; "C:\Windows\system32\rundll32.exe" "c:\Program Files\DeltaFix\DeltaFix.dll",serv <==== ATTENTION

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 ADIHdAudAddService; C:\Windows\System32\drivers\ADIHdAud.sys [298496 2006-09-19] (Analog Devices, Inc.) [File not signed]
R3 Afc; C:\Windows\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.)
S3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [17920 2008-04-24] (ArcSoft, Inc.)
R1 ElRawDisk; C:\Windows\system32\drivers\rsdrv.sys [22312 2009-02-12] (EldoS Corporation)
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-06 09:03 - 2015-04-06 09:05 - 00007999 _____ () C:\Users\uzivatel1\Desktop\FRST.txt
2015-04-06 09:02 - 2015-04-06 09:03 - 00000000 ____D () C:\FRST
2015-04-06 09:02 - 2015-04-06 09:02 - 01135104 _____ (Farbar) C:\Users\uzivatel1\Desktop\FRST.exe
2015-04-06 08:27 - 2015-04-06 08:27 - 00343664 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-04-06 08:27 - 2015-04-06 08:27 - 00000056 _____ () C:\Windows\setupact.log
2015-04-06 08:27 - 2015-04-06 08:27 - 00000000 _____ () C:\Windows\setuperr.log
2015-04-06 00:17 - 2015-04-06 00:17 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-04-05 22:09 - 2015-04-05 22:10 - 00000000 ___SD () C:\Windows\system32\GWX
2015-03-29 17:10 - 2015-03-29 17:10 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2015-03-27 20:04 - 2015-03-29 17:10 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2015-03-27 20:04 - 2015-03-27 20:04 - 00000000 ____D () C:\ProgramData\McAfee
2015-03-27 19:06 - 2015-02-07 21:45 - 00000962 _____ () C:\Users\uzivatel1\Desktop\Mp3tag.lnk
2015-03-10 22:13 - 2015-02-24 04:32 - 00342696 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-10 22:13 - 2015-02-21 02:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-10 22:13 - 2015-02-21 02:27 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-10 22:13 - 2015-02-21 02:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-10 22:13 - 2015-02-21 02:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-10 22:13 - 2015-02-21 01:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-10 22:13 - 2015-02-20 04:22 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-10 22:13 - 2015-02-20 04:22 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-03-10 22:13 - 2015-02-20 04:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-10 22:13 - 2015-02-20 04:08 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-10 22:13 - 2015-02-20 04:08 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-03-10 22:13 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-10 22:13 - 2015-02-20 04:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-10 22:13 - 2015-02-20 04:01 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-10 22:13 - 2015-02-20 04:00 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-10 22:13 - 2015-02-20 03:58 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-10 22:13 - 2015-02-20 03:56 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-10 22:13 - 2015-02-20 03:56 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-10 22:13 - 2015-02-20 03:56 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-03-10 22:13 - 2015-02-20 03:50 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-03-10 22:13 - 2015-02-20 03:41 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-10 22:13 - 2015-02-20 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-10 22:13 - 2015-02-20 03:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-10 22:13 - 2015-02-20 03:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-10 22:13 - 2015-02-20 03:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-10 22:13 - 2015-02-20 03:24 - 00684544 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-10 22:13 - 2015-02-20 03:23 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-03-10 22:13 - 2015-02-20 03:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-10 22:13 - 2015-02-20 02:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-10 22:13 - 2015-02-20 02:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-10 22:12 - 2015-02-26 05:10 - 02390528 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-10 22:12 - 2015-02-13 07:26 - 12875264 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-10 22:12 - 2015-02-03 05:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-10 22:12 - 2015-01-31 05:32 - 00919552 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-03-10 22:12 - 2015-01-31 04:52 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-03-10 22:12 - 2015-01-31 04:51 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-03-10 22:12 - 2015-01-17 04:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-10 22:07 - 2015-03-06 07:17 - 00137656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-10 22:07 - 2015-03-06 07:17 - 00067512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-03-10 22:07 - 2015-03-06 07:12 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-03-10 22:07 - 2015-03-06 07:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-03-10 22:07 - 2015-03-06 07:12 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-03-10 22:07 - 2015-03-06 07:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-03-10 22:07 - 2015-03-06 07:11 - 01062912 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-10 22:07 - 2015-03-06 07:11 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-10 22:07 - 2015-03-06 07:11 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-03-10 22:07 - 2015-03-06 07:11 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-10 22:07 - 2015-03-06 07:11 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-03-10 22:07 - 2015-03-06 07:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-03-10 22:07 - 2015-03-06 07:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-03-10 22:07 - 2015-03-06 07:11 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-03-10 22:07 - 2015-03-06 07:11 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-03-10 22:07 - 2015-03-06 07:09 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-03-10 22:07 - 2015-03-06 07:08 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-10 22:07 - 2015-03-06 07:07 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-10 22:07 - 2015-02-20 07:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-10 22:07 - 2015-02-20 07:17 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-10 22:07 - 2015-02-20 07:17 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-10 22:07 - 2015-02-20 07:17 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-10 22:07 - 2015-02-20 05:50 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-10 22:07 - 2015-02-03 05:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-10 22:06 - 2015-02-04 04:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-10 22:06 - 2015-02-03 05:38 - 03977664 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-03-10 22:06 - 2015-02-03 05:38 - 03921848 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-10 22:06 - 2015-02-03 05:38 - 00078784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-03-10 22:06 - 2015-02-03 05:32 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-10 22:06 - 2015-02-03 05:32 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-10 22:06 - 2015-02-03 05:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-03-10 22:06 - 2015-02-03 05:32 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-10 22:06 - 2015-02-03 05:31 - 03209728 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-10 22:06 - 2015-02-03 05:31 - 01175040 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-10 22:06 - 2015-02-03 05:31 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-10 22:06 - 2015-02-03 05:31 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-03-10 22:06 - 2015-02-03 05:31 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-03-10 22:06 - 2015-02-03 05:31 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-10 22:06 - 2015-02-03 05:31 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-10 22:06 - 2015-02-03 05:31 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-03-10 22:06 - 2015-02-03 05:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-03-10 22:06 - 2015-02-03 05:31 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-10 22:06 - 2015-02-03 05:31 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-03-10 22:06 - 2015-02-03 05:31 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-10 22:06 - 2015-02-03 05:31 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-03-10 22:06 - 2015-02-03 05:30 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-03-10 22:06 - 2015-02-03 05:30 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-03-10 22:06 - 2015-02-03 05:26 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-03-10 22:06 - 2015-02-03 05:25 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 11411968 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-03-10 22:06 - 2015-02-03 05:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-03-10 22:06 - 2015-02-03 05:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-03-10 22:06 - 2015-02-03 05:11 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-03-10 22:06 - 2015-02-03 05:11 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-10 22:06 - 2015-02-03 05:11 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-03-10 22:06 - 2015-02-03 05:11 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-03-10 22:06 - 2015-02-03 05:10 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-03-10 22:06 - 2015-02-03 05:00 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-03-10 22:06 - 2015-02-03 04:27 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-03-10 22:06 - 2015-01-31 01:58 - 00370488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-06 09:03 - 2014-05-17 19:54 - 00000000 ____D () C:\dokumenty
2015-04-06 08:50 - 2014-03-02 01:15 - 01346311 _____ () C:\Windows\WindowsUpdate.log
2015-04-06 08:35 - 2010-11-20 23:01 - 01583678 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-06 08:33 - 2014-03-02 01:29 - 00001497 _____ () C:\Windows\system32\sun_debug.txt
2015-04-06 08:33 - 2014-03-02 01:29 - 00000021 _____ () C:\Windows\system32\sun_debug1.txt
2015-04-06 08:28 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-06 08:27 - 2013-05-20 22:20 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-04-06 00:26 - 2015-01-02 15:31 - 00000000 ____D () C:\Users\uzivatel1\AppData\Local\Adobe
2015-04-06 00:26 - 2014-03-28 18:45 - 00778928 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-04-06 00:26 - 2014-03-28 18:45 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-04-04 21:10 - 2014-03-02 12:49 - 00004299 _____ () C:\Windows\WDICT32.INI
2015-04-03 21:52 - 2009-07-14 06:34 - 00022736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-03 21:52 - 2009-07-14 06:34 - 00022736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-27 20:43 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-03-27 19:16 - 2009-07-14 06:46 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-03-27 19:15 - 2015-02-07 21:46 - 00000000 ____D () C:\Users\uzivatel1\AppData\Roaming\Mp3tag
2015-03-12 08:24 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\sk-SK
2015-03-10 22:49 - 2013-07-25 00:59 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-10 22:43 - 2013-05-20 22:25 - 119837696 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

Files to move or delete:
====================
C:\Users\uzivatel1\VCdControlTool.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-27 20:38

==================== End Of Log ============================

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomaleny pocitac, poruchy v prehliadaci

#2 Příspěvek od Roli »

Zdravím, smaž nepotřebné soubory

pomocí CCleaneru

návod :

Čistič - tady vyčistíš PC od nepotřebných souborů a vysypeš Koš

Registry - tady vyčistíš registry (před použitím doporučuji udělat jejich zálohu kterou CCleaner nabízí)

čištění registru je třeba několikrát zopakovat !

Nástroje - tady lze odinstalovat programy, upravit co se spustí po Startu systému a obnovit systém


Stáhni a ulož na plochu AdwCleaner,

ukonči všechny programy včetně prohlížeče a dvojklikem jej spusť,

objeví se okno kde vlevo nahoře klikni na Scan.

Po dokončení skenu klikni na Clean,

proběhne restart PC kdy dojde ke smazání nepořádku.

Po té mi sem zkopíruj Report.


Nakonec použij Mbam z mého podpisu a dej mi sem z něj log, předem nic nemazat !
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

magalanes
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 02 kvě 2009 21:47

Re: spomaleny pocitac, poruchy v prehliadaci

#3 Příspěvek od magalanes »

adware:
# AdwCleaner v4.200 - Log vytvorený 06/04/2015 at 11:46:57
# Aktualizované 29/03/2015 by Xplode
# Databáza : 2015-03-29.1 [Server]
# Operaený systém : Windows 7 Ultimate Service Pack 1 (x86)
# Uživate3ské meno : uzivatel1 - PC1
# Spustené z : C:\Users\uzivatel1\Desktop\adwcleaner_4.200.exe
# Nastavenia : Eistenie

***** [ Služby ] *****

[#] Služba Zmazané : 24c54e38

***** [ Súbory / Prieeinky ] *****

Prieeinok Zmazané : C:\ProgramData\IePluginServices
Prieeinok Zmazané : C:\ProgramData\Isaver
Prieeinok Zmazané : C:\ProgramData\NextCoup
Prieeinok Zmazané : C:\ProgramData\safesoft
Prieeinok Zmazané : C:\ProgramData\TakeTheCoupon
Prieeinok Zmazané : C:\ProgramData\Wuebbing
Prieeinok Zmazané : C:\ProgramData\de3b06d2133bef33
Prieeinok Zmazané : C:\Program Files\NextCoup
Prieeinok Zmazané : C:\Program Files\GoSave
Prieeinok Zmazané : C:\Program Files\Check Point Software Technologies LTD
Prieeinok Zmazané : C:\Program Files\Jotzey
Prieeinok Zmazané : C:\Program Files\Wuebbing
Prieeinok Zmazané : C:\Program Files\YoutubeAdBlocke
Prieeinok Zmazané : C:\Users\uzivatel1\AppData\LocalLow\Check Point Software Technologies LTD
Prieeinok Zmazané : C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\3v7@HsE6gkq.org
Prieeinok Zmazané : C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\juj@PgibIX.com
Prieeinok Zmazané : C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\r9GS@X.com
Prieeinok Zmazané : C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\Extensions\xZPOz@D7nqB9.net

***** [ Naplánované úlohy ] *****


***** [ Zástupcovia ] *****


***** [ Registre ] *****

K3úe registra Zmazané : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices
K3úe registra Zmazané : HKCU\Software\Mozilla\Extends
K3úe registra Zmazané : HKLM\SOFTWARE\Classes\AppID\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
K3úe registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
K3úe registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59}
K3úe registra Zmazané : HKLM\SOFTWARE\Classes\CLSID\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
K3úe registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
K3úe registra Zmazané : HKLM\SOFTWARE\Classes\TypeLib\{E00DE9B9-B128-4C39-B732-B5D85013FA48}
K3úe registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
K3úe registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59}
K3úe registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
K3úe registra Zmazané : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59}
K3úe registra Zmazané : HKCU\Software\Softonic
K3úe registra Zmazané : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
K3úe registra Zmazané : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
K3úe registra Zmazané : HKLM\SOFTWARE\SupDp
K3úe registra Zmazané : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
K3úe registra Zmazané : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
K3úe registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
K3úe registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C87834EB-A2A0-B9D4-AA9A-C263D1191051}
K3úe registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3D0F43D9-C1D7-733C-01F8-4A3001BF8CC3}
K3úe registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F1422DAA-0829-09A1-7536-73936CAB8FFA}
K3úe registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}
K3úe registra Zmazané : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{53B21E29-3967-C332-57EB-C02631658584}

***** [ Webové prehliadaee ] *****

-\\ Internet Explorer v11.0.9600.17689

Nastavenie Obnovené : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]

-\\ Mozilla Firefox v37.0.1 (x86 en-US)

[1nwjnv6x.default\prefs.js] - Riadok Zmazané : user_pref("extensions.BlgCsr2nabxlsKnL.scode", "try{(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1url.indexOf(\"warnalert11.com\")>-1url.index[...]
[1nwjnv6x.default\prefs.js] - Riadok Zmazané : user_pref("extensions.E5Q0XedHuwquQEBR.scode", "try{(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1url.indexOf(\"warnalert11.com\")>-1url.index[...]
[1nwjnv6x.default\prefs.js] - Riadok Zmazané : user_pref("extensions.RED2KrRbOnP0ipIi.scode", "try{(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1url.indexOf(\"warnalert11.com\")>-1url.index[...]
[1nwjnv6x.default\prefs.js] - Riadok Zmazané : user_pref("extensions.quick_start.enable_search1", false);
[1nwjnv6x.default\prefs.js] - Riadok Zmazané : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);
[1nwjnv6x.default\prefs.js] - Riadok Zmazané : user_pref("extensions.wHTVIuEZBvZlEg0t.scode", "try{(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1url.indexOf(\"warnalert11.com\")>-1url.index[...]
[1nwjnv6x.default\prefs.js] - Riadok Zmazané : user_pref("extensions.zonealarm.hmpgUrl", "hxxp://search.zonealarm.com/?src=hp&tbid=goughDev3&Lan=en&gu=71e15a58c9f2405e8f21dd606953e736&tu=10G9z009w2B0Ca0&sku=&tstsId=&ver=&");
[1nwjnv6x.default\prefs.js] - Riadok Zmazané : user_pref("extensions.zonealarm.newTabUrl", "hxxp://search.zonealarm.com/?src=nt&tbid=goughDev3&Lan=en&gu=71e15a58c9f2405e8f21dd606953e736&tu=10G9z009w2B0Ca0&sku=&tstsId=&ver=&");
[1nwjnv6x.default\prefs.js] - Riadok Zmazané : user_pref("extensions.zonealarm.tlbrSrchUrl", "hxxp://search.zonealarm.com/search?src=tb&tbid=goughDev3&Lan={dfltLng}&gu=71e15a58c9f2405e8f21dd606953e736&tu=10G9z009w2B0Ca0&sku=&tstsId=&ver=&&q=");

-\\ Comodo Dragon v


-\\ Chrome Canary v


*************************

AdwCleaner[R0].txt - [12143 bajtov] - [17/05/2014 17:36:17]
AdwCleaner[R1].txt - [6916 bajtov] - [06/04/2015 11:41:56]
AdwCleaner[S0].txt - [10827 bajtov] - [17/05/2014 17:39:29]
AdwCleaner[S1].txt - [6514 bajtov] - [06/04/2015 11:46:57]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [6574 bajtov] ##########

mbam:
Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 6. 4. 2015
Scan Time: 11:52:05
Logfile: malware.log
Administrator: Yes

Version: 2.01.4.1018
Malware Database: v2015.04.06.03
Rootkit Database: v2015.03.31.01
License: Trial
Malware Protection: Enabled
Malicious Website Protection: Enabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x86
File System: NTFS
User: uzivatel1

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 348850
Time Elapsed: 19 min, 11 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 2
PUP.Optional.Multiplug, HKU\S-1-5-21-1707592230-9377432-2897197462-1000_Classes\TYPELIB\{157B1AA6-3E5C-404A-9118-C1D91F537040}, , [91ca0e5b563460d6a331b77b748f15eb],
PUP.Optional.Multiplug, HKU\S-1-5-21-1707592230-9377432-2897197462-1000_Classes\INTERFACE\{3B3F3AAD-FB97-49FF-BFEE-D22869AC4326}, , [91ca0e5b563460d6a331b77b748f15eb],

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 32
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1, , [73e830396f1b7db91a48843103009967],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj, , [73e830396f1b7db91a48843103009967],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1, , [46153336abdf0234f36f5b5aa55ee51b],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf, , [46153336abdf0234f36f5b5aa55ee51b],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215, , [f66575f4503a4fe73c265065fc078e72],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea, , [f66575f4503a4fe73c265065fc078e72],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1, , [5308066366242214253d5065ea19ca36],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld, , [5308066366242214253d5065ea19ca36],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1, , [4f0c6efbdfab9d99ce94c3f25ba85ba5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin, , [4f0c6efbdfab9d99ce94c3f25ba85ba5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1, , [431860094e3c1c1a1a48d3e242c149b7],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod, , [431860094e3c1c1a1a48d3e242c149b7],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0, , [c09bea7f13774de9ff63a213ba4911ef],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp, , [c09bea7f13774de9ff63a213ba4911ef],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1, , [e97217527d0d81b511516f46818248b8],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp, , [e97217527d0d81b511516f46818248b8],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1, , [c4972b3ec9c1ee4878ea872ef60dcc34],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj, , [c4972b3ec9c1ee4878ea872ef60dcc34],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1, , [500b6cfd820866d049199f167d867b85],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf, , [500b6cfd820866d049199f167d867b85],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215, , [fc5f7dec404a6bcbf9698c29a75cb848],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea, , [fc5f7dec404a6bcbf9698c29a75cb848],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1, , [f7648adf840670c6253d783d2fd4cd33],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld, , [f7648adf840670c6253d783d2fd4cd33],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1, , [47140465b3d790a6d78b298c43c004fc],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin, , [47140465b3d790a6d78b298c43c004fc],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1, , [56057dec3357290dcf93e9cc9e6542be],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod, , [56057dec3357290dcf93e9cc9e6542be],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0, , [77e48bdef991e45263ffcaebb64d0cf4],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp, , [77e48bdef991e45263ffcaebb64d0cf4],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1, , [f66555142f5b93a3dd851b9aae5546ba],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp, , [f66555142f5b93a3dd851b9aae5546ba],

Files: 90
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\lsdb.js, , [73e830396f1b7db91a48843103009967],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\background.html, , [73e830396f1b7db91a48843103009967],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\content.js, , [73e830396f1b7db91a48843103009967],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\manifest.json, , [73e830396f1b7db91a48843103009967],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\UslTb.js, , [73e830396f1b7db91a48843103009967],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\lsdb.js, , [46153336abdf0234f36f5b5aa55ee51b],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\background.html, , [46153336abdf0234f36f5b5aa55ee51b],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\content.js, , [46153336abdf0234f36f5b5aa55ee51b],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\IFEp00FlJ8A.js, , [46153336abdf0234f36f5b5aa55ee51b],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\manifest.json, , [46153336abdf0234f36f5b5aa55ee51b],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\newtab.html, , [46153336abdf0234f36f5b5aa55ee51b],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\lsdb.js, , [f66575f4503a4fe73c265065fc078e72],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\background.html, , [f66575f4503a4fe73c265065fc078e72],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\content.js, , [f66575f4503a4fe73c265065fc078e72],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\KSBKoN.js, , [f66575f4503a4fe73c265065fc078e72],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\manifest.json, , [f66575f4503a4fe73c265065fc078e72],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\lsdb.js, , [5308066366242214253d5065ea19ca36],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\background.html, , [5308066366242214253d5065ea19ca36],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\content.js, , [5308066366242214253d5065ea19ca36],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\IROgugIYDlk.js, , [5308066366242214253d5065ea19ca36],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\manifest.json, , [5308066366242214253d5065ea19ca36],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\newtab.html, , [5308066366242214253d5065ea19ca36],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\lsdb.js, , [4f0c6efbdfab9d99ce94c3f25ba85ba5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\background.html, , [4f0c6efbdfab9d99ce94c3f25ba85ba5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\content.js, , [4f0c6efbdfab9d99ce94c3f25ba85ba5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\F_pbHNQCxl.js, , [4f0c6efbdfab9d99ce94c3f25ba85ba5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\manifest.json, , [4f0c6efbdfab9d99ce94c3f25ba85ba5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\newtab.html, , [4f0c6efbdfab9d99ce94c3f25ba85ba5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\lsdb.js, , [431860094e3c1c1a1a48d3e242c149b7],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\background.html, , [431860094e3c1c1a1a48d3e242c149b7],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\content.js, , [431860094e3c1c1a1a48d3e242c149b7],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\manifest.json, , [431860094e3c1c1a1a48d3e242c149b7],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\mEorhmXu5pV.js, , [431860094e3c1c1a1a48d3e242c149b7],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\newtab.html, , [431860094e3c1c1a1a48d3e242c149b7],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\lsdb.js, , [c09bea7f13774de9ff63a213ba4911ef],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\background.html, , [c09bea7f13774de9ff63a213ba4911ef],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\content.js, , [c09bea7f13774de9ff63a213ba4911ef],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\manifest.json, , [c09bea7f13774de9ff63a213ba4911ef],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\xTThsZj4rMM.js, , [c09bea7f13774de9ff63a213ba4911ef],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\lsdb.js, , [e97217527d0d81b511516f46818248b8],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\background.html, , [e97217527d0d81b511516f46818248b8],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\content.js, , [e97217527d0d81b511516f46818248b8],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\Kv3Ffhe.js, , [e97217527d0d81b511516f46818248b8],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\manifest.json, , [e97217527d0d81b511516f46818248b8],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\newtab.html, , [e97217527d0d81b511516f46818248b8],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\lsdb.js, , [c4972b3ec9c1ee4878ea872ef60dcc34],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\background.html, , [c4972b3ec9c1ee4878ea872ef60dcc34],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\content.js, , [c4972b3ec9c1ee4878ea872ef60dcc34],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\manifest.json, , [c4972b3ec9c1ee4878ea872ef60dcc34],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\UslTb.js, , [c4972b3ec9c1ee4878ea872ef60dcc34],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\lsdb.js, , [500b6cfd820866d049199f167d867b85],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\background.html, , [500b6cfd820866d049199f167d867b85],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\content.js, , [500b6cfd820866d049199f167d867b85],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\IFEp00FlJ8A.js, , [500b6cfd820866d049199f167d867b85],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\manifest.json, , [500b6cfd820866d049199f167d867b85],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\newtab.html, , [500b6cfd820866d049199f167d867b85],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\lsdb.js, , [fc5f7dec404a6bcbf9698c29a75cb848],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\background.html, , [fc5f7dec404a6bcbf9698c29a75cb848],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\content.js, , [fc5f7dec404a6bcbf9698c29a75cb848],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\KSBKoN.js, , [fc5f7dec404a6bcbf9698c29a75cb848],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\manifest.json, , [fc5f7dec404a6bcbf9698c29a75cb848],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\lsdb.js, , [f7648adf840670c6253d783d2fd4cd33],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\background.html, , [f7648adf840670c6253d783d2fd4cd33],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\content.js, , [f7648adf840670c6253d783d2fd4cd33],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\IROgugIYDlk.js, , [f7648adf840670c6253d783d2fd4cd33],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\manifest.json, , [f7648adf840670c6253d783d2fd4cd33],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\newtab.html, , [f7648adf840670c6253d783d2fd4cd33],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\lsdb.js, , [47140465b3d790a6d78b298c43c004fc],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\background.html, , [47140465b3d790a6d78b298c43c004fc],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\content.js, , [47140465b3d790a6d78b298c43c004fc],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\F_pbHNQCxl.js, , [47140465b3d790a6d78b298c43c004fc],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\manifest.json, , [47140465b3d790a6d78b298c43c004fc],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\newtab.html, , [47140465b3d790a6d78b298c43c004fc],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\lsdb.js, , [56057dec3357290dcf93e9cc9e6542be],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\background.html, , [56057dec3357290dcf93e9cc9e6542be],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\content.js, , [56057dec3357290dcf93e9cc9e6542be],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\manifest.json, , [56057dec3357290dcf93e9cc9e6542be],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\mEorhmXu5pV.js, , [56057dec3357290dcf93e9cc9e6542be],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\newtab.html, , [56057dec3357290dcf93e9cc9e6542be],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\lsdb.js, , [77e48bdef991e45263ffcaebb64d0cf4],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\background.html, , [77e48bdef991e45263ffcaebb64d0cf4],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\content.js, , [77e48bdef991e45263ffcaebb64d0cf4],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\manifest.json, , [77e48bdef991e45263ffcaebb64d0cf4],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\xTThsZj4rMM.js, , [77e48bdef991e45263ffcaebb64d0cf4],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\lsdb.js, , [f66555142f5b93a3dd851b9aae5546ba],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\background.html, , [f66555142f5b93a3dd851b9aae5546ba],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\content.js, , [f66555142f5b93a3dd851b9aae5546ba],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\Kv3Ffhe.js, , [f66555142f5b93a3dd851b9aae5546ba],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\manifest.json, , [f66555142f5b93a3dd851b9aae5546ba],
PUP.Optional.MultiPlug.A, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\newtab.html, , [f66555142f5b93a3dd851b9aae5546ba],

Physical Sectors: 0
(No malicious items detected)


(end)

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomaleny pocitac, poruchy v prehliadaci

#4 Příspěvek od Roli »

To co Mbam našel nech vše smazat.


Stáhni a ulož na plochu ComboFix,

spusť aplikaci jako Administrátor a povol instalaci Konzole pro zotavení - Recovery Console.

Poté se zobrazí okno s licenčními podmínkami které potvrdíš kliknutím na ANO,

pak ještě jednou klik na ANO a už to jede.

Celá akce trvá okolo 10 minut ale může i déle, během skenu se nepokoušej spouštět nic jiného.

Při skenovaní může být PC i restartováno nelekat se.

Upozornění: po dobu skenu vypni rezidentní štít Antiviru a AntiSpy programu,

protože Combofix se pokouší napadené soubory smazat a tyto programy mu můžou bránit.

Po dokončení skenu nebo následném restartu aplikace vytvoří log, uložený na C:/Combofix.txt

(při opakovaném použití jsou logy číslovány Combofix2.txt atd.), jeho obsah zkopíruj sem.


V případě nejasností je ZDE obrázkový návod.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

magalanes
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 02 kvě 2009 21:47

Re: spomaleny pocitac, poruchy v prehliadaci

#5 Příspěvek od magalanes »

REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="c:\program files\CCleaner\CCleaner.exe" [2014-09-26 4811032]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-09-23 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-09-23 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-09-23 150552]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service]
2010-10-27 17:17 207424 ----a-w- c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NSU_agent]
2012-02-28 14:53 190768 ----a-w- c:\program files\Nokia\Nokia Software Updater\nsu3ui_agent.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
2012-06-26 11:10 1516632 ----a-w- c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SansaDispatch]
2014-09-28 07:39 1465616 ----a-w- c:\users\uzivatel1\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
.
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2014-12-11 315496]
R3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys [2008-04-24 17920]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2015-02-20 102912]
R3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2012-01-09 137600]
R3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2012-01-09 8576]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2015-01-31 15872]
R3 Synth3dVsc;Microsoft Virtual 3D Video Transport Driver;c:\windows\system32\drivers\Synth3dVsc.sys [2011-10-12 77184]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [2010-11-20 25600]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [2010-11-20 112640]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys [2013-11-28 104720]
R3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys [x]
R3 VBoxUSB;VirtualBox USB;c:\windows\system32\Drivers\VBoxUSB.sys [2013-11-28 84752]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2013-05-20 1343400]
S1 ElRawDisk;ElRawDisk;c:\windows\system32\drivers\rsdrv.sys [2009-02-12 22312]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes Anti-Malware\mbamservice.exe [2015-03-17 1080120]
S2 uCamMonitor;CamMonitor;c:\program files\Hama\Hama Webcam Suite\Magic-i Visual Effects 2\uCamMonitor.exe [2008-09-18 104960]
S3 ATSwpWDF;AuthenTec TruePrint WBF Driver;c:\windows\system32\DRIVERS\ATSwpWDF.sys [2012-10-18 971752]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2015-03-17 23256]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys [2015-04-08 119512]
S3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys [2015-03-17 51928]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - MBAMSWISSARMY
.
.
------- Supplementary Scan -------
.
mStart Page =
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 213.151.222.34 192.168.0.1
FF - ProfilePath - c:\users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\
FF - prefs.js: browser.startup.homepage - google.sk
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_16_0_0_296_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_16_0_0_296_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
Completion time: 2015-04-08 21:20:01
ComboFix-quarantined-files.txt 2015-04-08 19:20
.
Pre-Run: 30 604 562 432 bytes free
Post-Run: 30 516 940 800 bytes free
.
- - End Of File - - E51AA48AEB90C9B31CBA912AAB122139
A36C5E4F47E84449FF07ED3517B43A31

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomaleny pocitac, poruchy v prehliadaci

#6 Příspěvek od Roli »

Potřeboval bych ten log celý a ne jen jeho část.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

magalanes
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 02 kvě 2009 21:47

Re: spomaleny pocitac, poruchy v prehliadaci

#7 Příspěvek od magalanes »

ComboFix 15-04-09.01 - uzivatel1 . 04. 2015 21:02:47.3.1 - x86
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.421.1051.18.1526.822 [GMT 2:00]
Running from: c:\users\uzivatel1\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\16013400399381524275
c:\programdata\16013400399381524275\cd5b15e575e1c3d088198e07d6c1493f.ini
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\UslTb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\yz_hLd3pny.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\mcWlCEdSK.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\rHiH.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\IFEp00FlJ8A.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\newtab.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\KSBKoN.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\IROgugIYDlk.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\newtab.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\F_pbHNQCxl.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\newtab.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\mEorhmXu5pV.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\newtab.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\APj0.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\xTThsZj4rMM.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\Kv3Ffhe.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\newtab.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\cu7hV63UWH.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\background.html
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\content.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\lsdb.js
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\manifest.json
c:\users\Administrator\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\VkeEnLbvZ6ht.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\UslTb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\yz_hLd3pny.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\mcWlCEdSK.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\rHiH.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\IFEp00FlJ8A.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\newtab.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\KSBKoN.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\IROgugIYDlk.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\newtab.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\F_pbHNQCxl.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\newtab.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\mEorhmXu5pV.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\newtab.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\APj0.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\xTThsZj4rMM.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\Kv3Ffhe.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\newtab.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\cu7hV63UWH.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\background.html
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\content.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\lsdb.js
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\manifest.json
c:\users\Administrator\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\VkeEnLbvZ6ht.js
c:\users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj
c:\users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf
c:\users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba
c:\users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl
c:\users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi
c:\users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\UslTb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\yz_hLd3pny.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\mcWlCEdSK.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\rHiH.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\IFEp00FlJ8A.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\newtab.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\KSBKoN.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\IROgugIYDlk.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\newtab.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\F_pbHNQCxl.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\newtab.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\mEorhmXu5pV.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\newtab.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\APj0.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\xTThsZj4rMM.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\Kv3Ffhe.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\newtab.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\cu7hV63UWH.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\background.html
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\content.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\lsdb.js
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\manifest.json
c:\users\Guest\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\VkeEnLbvZ6ht.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\UslTb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\yz_hLd3pny.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\mcWlCEdSK.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\rHiH.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\IFEp00FlJ8A.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\newtab.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\KSBKoN.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\IROgugIYDlk.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\newtab.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\F_pbHNQCxl.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\newtab.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\mEorhmXu5pV.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\newtab.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\APj0.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\xTThsZj4rMM.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\Kv3Ffhe.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\newtab.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\cu7hV63UWH.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\background.html
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\content.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\lsdb.js
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\manifest.json
c:\users\Guest\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\VkeEnLbvZ6ht.js
c:\users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj
c:\users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf
c:\users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba
c:\users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl
c:\users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi
c:\users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\UslTb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\yz_hLd3pny.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\mcWlCEdSK.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\rHiH.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\IFEp00FlJ8A.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\newtab.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\KSBKoN.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\IROgugIYDlk.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\newtab.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\F_pbHNQCxl.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\newtab.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\mEorhmXu5pV.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\newtab.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\APj0.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\xTThsZj4rMM.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\Kv3Ffhe.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\newtab.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\cu7hV63UWH.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\background.html
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\content.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\lsdb.js
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\manifest.json
c:\users\uzivatel1\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\VkeEnLbvZ6ht.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\abnijfighbpenafnhmpdmpgaigjddfcj\1.1\UslTb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\bfkeidlmcbcknlchdmmcndjecimhfcaj\1.0\yz_hLd3pny.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\clmlfiedgiepcoblgbdjmgdnedpjebcf\3.7\mcWlCEdSK.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cmlpdhjmbekolmalgejfjpobegfoheba\3.7\rHiH.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\IFEp00FlJ8A.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\dgdiphaijgmhpjkmjolmncgdbppidfnf\2.1\newtab.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\KSBKoN.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\fgmhgfecnmeljhchgcjlfldjiepcfpea\215\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\IROgugIYDlk.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jccdalhkmdjglmcnjbnbddbbbbaeghld\2.1\newtab.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\F_pbHNQCxl.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\jhphfonimlabnknhefdmpimjogmejbin\2.1\newtab.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\mEorhmXu5pV.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\kbohdkmccppfopncoacefigellficaod\2.1\newtab.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\APj0.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\knnbhapcbkbnbfdgmmhlijlimikocnnl\3.7\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\loafcldapblmmmdbfjlcikjfheleicmp\1.0\xTThsZj4rMM.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\Kv3Ffhe.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\omnapgjellknfmafbnfjkhbpbjojfdjp\2.1\newtab.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\cu7hV63UWH.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\ondcekacmgogaigfelffdaiipdblocbi\3.7\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\background.html
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\content.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\lsdb.js
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\manifest.json
c:\users\uzivatel1\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\pfnhoafnnhglmnkgpfgflmcaefbbgjlj\3.7\VkeEnLbvZ6ht.js
.
.
((((((((((((((((((((((((( Files Created from 2015-03-08 to 2015-04-08 )))))))))))))))))))))))))))))))
.
.
2015-04-08 19:15 . 2015-04-08 19:15 -------- d-----w- c:\users\uzivatel1\AppData\Local\temp
2015-04-08 19:15 . 2015-04-08 19:15 -------- d-----w- c:\users\Public\AppData\Local\temp
2015-04-08 19:15 . 2015-04-08 19:15 -------- d-----w- c:\users\Guest\AppData\Local\temp
2015-04-08 19:15 . 2015-04-08 19:15 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-04-08 19:15 . 2015-04-08 19:15 -------- d-----w- c:\users\Administrator\AppData\Local\temp
2015-04-08 18:48 . 2015-03-14 10:06 9119072 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{F7F094D0-27C3-48E7-9636-47E21D319972}\mpengine.dll
2015-04-06 09:51 . 2015-04-08 18:27 119512 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-04-06 09:50 . 2015-04-06 09:50 -------- d-----w- c:\program files\Malwarebytes Anti-Malware
2015-04-06 09:50 . 2015-04-06 09:50 -------- d-----w- c:\programdata\Malwarebytes
2015-04-06 09:50 . 2015-03-17 04:15 51928 ----a-w- c:\windows\system32\drivers\mwac.sys
2015-04-06 09:50 . 2015-03-17 04:15 92888 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2015-04-06 09:50 . 2015-03-17 04:15 23256 ----a-w- c:\windows\system32\drivers\mbam.sys
2015-04-06 07:02 . 2015-04-06 07:07 -------- d-----w- C:\FRST
2015-04-05 20:09 . 2015-04-05 20:10 -------- d-s---w- c:\windows\system32\GWX
2015-03-29 15:10 . 2015-03-29 15:10 -------- d-----w- c:\programdata\McAfee Security Scan
2015-03-27 18:04 . 2015-03-27 18:04 -------- d-----w- c:\programdata\McAfee
2015-03-27 18:04 . 2015-03-29 15:10 -------- d-----w- c:\program files\McAfee Security Scan
2015-03-10 20:12 . 2015-02-03 03:12 1230848 ----a-w- c:\windows\system32\WindowsCodecs.dll
2015-03-10 20:12 . 2015-01-17 02:30 828928 ----a-w- c:\windows\system32\msctf.dll
2015-03-10 20:12 . 2015-01-31 03:32 919552 ----a-w- c:\windows\system32\rdpcorets.dll
2015-03-10 20:12 . 2015-01-31 02:52 134656 ----a-w- c:\windows\system32\rdpudd.dll
2015-03-10 20:12 . 2015-01-31 02:51 15872 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2015-03-10 20:12 . 2015-02-26 03:10 2390528 ----a-w- c:\windows\system32\win32k.sys
2015-03-10 20:06 . 2015-02-04 02:54 417792 ----a-w- c:\windows\system32\WMPhoto.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-04-08 18:57 . 2015-03-04 10:36 163504 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10145.bin
2015-04-05 22:26 . 2014-03-28 16:45 778928 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-04-05 22:26 . 2014-03-28 16:45 142512 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2015-03-06 05:11 . 2015-03-10 20:07 248832 ----a-w- c:\windows\system32\schannel.dll
2015-02-24 03:23 . 2013-05-20 20:18 246920 ------w- c:\windows\system32\MpSigStub.exe
2015-02-07 19:39 . 2015-02-07 19:39 625152 ----a-w- c:\windows\system32\mp3tsshx.dll
2015-02-04 02:54 . 2015-02-11 08:21 482304 ----a-w- c:\windows\system32\generaltel.dll
2015-02-04 02:53 . 2015-02-11 08:21 621056 ----a-w- c:\windows\system32\invagent.dll
2015-02-04 02:53 . 2015-02-11 08:21 325632 ----a-w- c:\windows\system32\devinv.dll
2015-02-04 02:53 . 2015-02-11 08:21 767488 ----a-w- c:\windows\system32\appraiser.dll
2015-02-04 02:53 . 2015-02-11 08:21 202752 ----a-w- c:\windows\system32\aepdu.dll
2015-02-04 02:53 . 2015-02-11 08:21 159744 ----a-w- c:\windows\system32\aepic.dll
2015-02-04 02:49 . 2015-02-11 08:21 886784 ----a-w- c:\windows\system32\aeinv.dll
2015-01-27 23:36 . 2015-02-11 08:21 1167520 ----a-w- c:\windows\system32\aitstatic.exe
2015-01-09 02:48 . 2015-03-03 20:33 76800 ----a-w- c:\windows\system32\wdi.dll
2015-01-09 02:48 . 2015-03-03 20:33 635904 ----a-w- c:\windows\system32\perftrack.dll
2015-01-09 02:48 . 2015-03-03 20:33 27136 ----a-w- c:\windows\system32\powertracker.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2013-06-03 . 7BD7F45FF37FA0669CD32CA0EF46E22C . 811520 . . [6.1.7601.17514] . . c:\windows\System32\user32.dll
[7] 2010-11-20 . F1DD3ACAEE5E6B4BBC69BC6DF75CEF66 . 811520 . . [6.1.7601.17514] . . c:\windows\winsxs\x86_microsoft-windows-user32_31bf3856ad364e35_6.1.7601.17514_none_cf3fd62ccb9e983d\user32.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"="c:\program files\CCleaner\CCleaner.exe" [2014-09-26 4811032]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2009-09-23 141848]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2009-09-23 173592]
"Persistence"="c:\windows\system32\igfxpers.exe" [2009-09-23 150552]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service]
2010-10-27 17:17 207424 ----a-w- c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NSU_agent]
2012-02-28 14:53 190768 ----a-w- c:\program files\Nokia\Nokia Software Updater\nsu3ui_agent.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
2012-06-26 11:10 1516632 ----a-w- c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SansaDispatch]
2014-09-28 07:39 1465616 ----a-w- c:\users\uzivatel1\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
.
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2014-12-11 315496]
R3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32\DRIVERS\ArcSoftKsUFilter.sys [2008-04-24 17920]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2015-02-20 102912]
R3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2012-01-09 137600]
R3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2012-01-09 8576]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2015-01-31 15872]
R3 Synth3dVsc;Microsoft Virtual 3D Video Transport Driver;c:\windows\system32\drivers\Synth3dVsc.sys [2011-10-12 77184]
R3 terminpt;Microsoft Remote Desktop Input Driver;c:\windows\system32\drivers\terminpt.sys [2010-11-20 25600]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [2010-11-20 112640]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys [2013-11-28 104720]
R3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys [x]
R3 VBoxUSB;VirtualBox USB;c:\windows\system32\Drivers\VBoxUSB.sys [2013-11-28 84752]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R3 WatAdminSvc;Služba Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2013-05-20 1343400]
S1 ElRawDisk;ElRawDisk;c:\windows\system32\drivers\rsdrv.sys [2009-02-12 22312]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes Anti-Malware\mbamservice.exe [2015-03-17 1080120]
S2 uCamMonitor;CamMonitor;c:\program files\Hama\Hama Webcam Suite\Magic-i Visual Effects 2\uCamMonitor.exe [2008-09-18 104960]
S3 ATSwpWDF;AuthenTec TruePrint WBF Driver;c:\windows\system32\DRIVERS\ATSwpWDF.sys [2012-10-18 971752]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2015-03-17 23256]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys [2015-04-08 119512]
S3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys [2015-03-17 51928]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - MBAMSWISSARMY
.
.
------- Supplementary Scan -------
.
mStart Page =
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 213.151.222.34 192.168.0.1
FF - ProfilePath - c:\users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\1nwjnv6x.default\
FF - prefs.js: browser.startup.homepage - google.sk
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_16_0_0_296_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil32_16_0_0_296_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
Completion time: 2015-04-08 21:20:01
ComboFix-quarantined-files.txt 2015-04-08 19:20
.
Pre-Run: 30 604 562 432 bytes free
Post-Run: 30 516 940 800 bytes free
.
- - End Of File - - E51AA48AEB90C9B31CBA912AAB122139
A36C5E4F47E84449FF07ED3517B43A31

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomaleny pocitac, poruchy v prehliadaci

#8 Příspěvek od Roli »

Odinstaluj vše od McAfee.


Přes Start >> Spustit zkopíruj do okna:

ComboFix /Uninstall

a stiskni Enter

To odinstaluje ComboFix a smaže s ním související soubory a složky.


Použij T-Cleaner, který smaže případné zbytky po aplikacích které jsme použili.

Jen před jeho stažením a při použití stopni antivir, protože ho muže detekovat jako vir ale není tomu tak.


Pak dej vědět jak se PC chová.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

magalanes
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 02 kvě 2009 21:47

Re: spomaleny pocitac, poruchy v prehliadaci

#9 Příspěvek od magalanes »

mc afee som nemohol odinstalovat, v cccleaneri ani ovladacom paneli nic take neponukalo na odinstalovanie. mohol som max. zmazat adresare v program files a programdata (do kosa).

pc je zial stale spomaleny,
ked sa prihlasim na pokec.sk, tak v mozille nefunguje okno na chatovanie (stale preblikava ako by sa nacitavalo), v ie funguje, rovnako aj na inom pc v mozille.

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomaleny pocitac, poruchy v prehliadaci

#10 Příspěvek od Roli »

magalanes píše:mc afee som nemohol odinstalovat, v cccleaneri ani ovladacom paneli nic take neponukalo na odinstalovanie. mohol som max. zmazat adresare v program files a programdata (do kosa).
Dej mi sem aktuální log z Rsit podívám se co tam zbylo.
magalanes píše:pc je zial stale spomaleny
Breberky tam už nejsou, ale uvidíme z logu Rsit co se dá ještě dělat.
magalanes píše:ked sa prihlasim na pokec.sk, tak v mozille nefunguje okno na chatovanie (stale preblikava ako by sa nacitavalo), v ie funguje, rovnako aj na inom pc v mozille.
Zkusil bych aktualizovat ovladače grafiky.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

magalanes
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 02 kvě 2009 21:47

Re: spomaleny pocitac, poruchy v prehliadaci

#11 Příspěvek od magalanes »

Logfile of random's system information tool 1.10 (written by random/random)
Run by uzivatel1 at 2015-04-14 20:59:05
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 29 GB (40%) free of 71 GB
Total RAM: 1526 MB (9% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:00:38, on 14. 4. 2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17689)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\uzivatel1\Desktop\RSIT.exe
C:\Program Files\trend micro\uzivatel1.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-21-1707592230-9377432-2897197462-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR (User '?')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: CamMonitor (uCamMonitor) - ArcSoft, Inc. - C:\Program Files\Hama\Hama Webcam Suite\Magic-i Visual Effects 2\uCamMonitor.exe

--
End of file - 2996 bytes

=========Mozilla firefox=========

ProfilePath - C:\Users\uzivatel1\AppData\Roaming\Mozilla\Firefox\Profiles\dfm6hqtq.default

prefs.js - "browser.startup.homepage" - "google.sk"

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.134 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled


======Registry dump======

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 141848]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 173592]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 150552]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2014-09-26 4811032]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ArcSoft Connection Service]
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NSU_agent]
C:\Program Files\Nokia\Nokia Software Updater\nsu3ui_agent.exe [2012-02-28 190768]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PC Suite Tray]
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe [2012-06-26 1516632]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SansaDispatch]
C:\Users\uzivatel1\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe [2014-09-28 1465616]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 218112]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"vidc.cvid"=iccvid.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"vidc.XVID"=xvidvfw.dll
"vidc.MPG4"=MPG4c32.dll
"vidc.MP42"=MPG4c32.dll
"vidc.MP43"=MPG4c32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1

======List of files/folders created in the last 1 month======

2015-04-14 20:59:05 ----D---- C:\rsit
2015-04-14 20:47:07 ----A---- C:\Windows\system32\FNTCACHE.DAT
2015-04-12 22:48:41 ----D---- C:\Users\uzivatel1\AppData\Roaming\Mozilla
2015-04-12 21:13:46 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2015-04-12 13:19:41 ----D---- C:\Program Files\Mozilla Firefox
2015-04-12 12:16:51 ----SHD---- C:\$RECYCLE.BIN
2015-04-08 21:20:05 ----D---- C:\Windows\temp
2015-04-06 11:51:39 ----A---- C:\Windows\system32\drivers\MBAMSwissArmy.sys
2015-04-06 11:50:36 ----D---- C:\ProgramData\Malwarebytes
2015-04-06 11:50:36 ----D---- C:\Program Files\Malwarebytes Anti-Malware
2015-04-06 11:50:36 ----A---- C:\Windows\system32\drivers\mwac.sys
2015-04-06 11:50:36 ----A---- C:\Windows\system32\drivers\mbamchameleon.sys
2015-04-06 11:50:36 ----A---- C:\Windows\system32\drivers\mbam.sys
2015-04-06 09:02:43 ----D---- C:\FRST
2015-04-05 22:09:49 ----SD---- C:\Windows\system32\GWX

======List of files/folders modified in the last 1 month======

2015-04-14 21:00:38 ----D---- C:\Program Files\trend micro
2015-04-14 20:59:22 ----D---- C:\Windows\Prefetch
2015-04-14 20:51:47 ----D---- C:\Windows\system32\config
2015-04-14 20:48:11 ----D---- C:\Windows\inf
2015-04-14 20:47:42 ----D---- C:\Windows
2015-04-14 20:47:07 ----D---- C:\Windows\System32
2015-04-12 22:43:21 ----SHD---- C:\System Volume Information
2015-04-12 21:12:50 ----D---- C:\dokumenty
2015-04-12 13:19:41 ----RD---- C:\Program Files
2015-04-12 13:03:55 ----A---- C:\Windows\system32\sun_debug.txt
2015-04-12 13:03:54 ----A---- C:\Windows\system32\sun_debug1.txt
2015-04-12 12:52:45 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-04-12 12:05:04 ----D---- C:\Windows\system32\drivers
2015-04-12 12:01:43 ----D---- C:\ProgramData
2015-04-12 11:51:24 ----D---- C:\Windows\system32\catroot2
2015-04-09 21:36:11 ----D---- C:\Users\uzivatel1\AppData\Roaming\Mp3tag
2015-04-08 21:15:58 ----A---- C:\Windows\system.ini
2015-04-08 21:15:47 ----D---- C:\Windows\system32\drivers\etc
2015-04-08 21:08:34 ----D---- C:\Windows\AppPatch
2015-04-08 21:08:32 ----D---- C:\Program Files\Common Files
2015-04-06 11:49:17 ----SD---- C:\ProgramData\Microsoft
2015-04-05 22:10:13 ----D---- C:\Windows\winsxs
2015-04-05 22:10:08 ----D---- C:\Windows\Logs
2015-04-04 21:10:10 ----A---- C:\Windows\WDICT32.INI
2015-03-27 20:43:51 ----D---- C:\Windows\rescache
2015-03-26 17:34:03 ----D---- C:\Windows\debug

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2011-10-12 173440]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2011-10-12 388096]
R1 ElRawDisk;ElRawDisk; \??\C:\Windows\system32\drivers\rsdrv.sys [2009-02-12 22312]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2011-10-12 48640]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2009-09-07 48128]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2009-06-25 44544]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2009-06-25 38400]
R3 ADIHdAudAddService;ADI UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\ADIHdAud.sys [2006-09-19 298496]
R3 Afc;PPdus ASPI Shell; C:\Windows\system32\drivers\Afc.sys [2006-11-10 18688]
R3 AgereSoftModem;Agere Systems Soft Modem; C:\Windows\system32\DRIVERS\AGRSM.sys [2009-07-14 1035776]
R3 ATSwpWDF;AuthenTec TruePrint WBF Driver; C:\Windows\system32\DRIVERS\ATSwpWDF.sys [2012-10-18 971752]
R3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2009-07-14 1131008]
R3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 34816]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 93696]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2011-10-12 60416]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2009-09-23 4808192]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2015-03-17 23256]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [2015-04-14 119512]
R3 MBAMWebAccessControl;MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [2015-03-17 51928]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 129536]
R3 RTL8023xp;Realtek 10/100 NIC Family NDIS x86 Driver; C:\Windows\system32\DRIVERS\Rtnicxp.sys [2009-07-14 43008]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2011-10-12 84992]
S2 Parvdm;Parvdm; C:\Windows\system32\drivers\parvdm.sys [2009-07-14 8704]
S3 aic78xx;aic78xx; C:\Windows\system32\drivers\djsvs.sys [2009-07-14 70720]
S3 amdagp;AMD AGP Bus Filter Driver; C:\Windows\system32\drivers\amdagp.sys [2009-07-14 53312]
S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect; C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys [2008-04-24 17920]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0; C:\Windows\system32\DRIVERS\b57nd60x.sys [2009-07-14 229888]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2011-10-12 78336]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 393728]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-20 62464]
S3 nmwcd;Nokia USB Phone Parent Driver; C:\Windows\system32\drivers\ccdcmb.sys [2012-01-09 18176]
S3 nmwcdc;Nokia USB Communication Driver; C:\Windows\system32\drivers\ccdcmbo.sys [2012-01-09 23168]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsu.sys [2012-01-09 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic; C:\Windows\system32\drivers\nmwcdnsuc.sys [2012-01-09 8576]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2012-06-11 19072]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12368]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2011-10-12 133632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2015-01-31 15872]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 5632]
S3 sisagp;SIS AGP Bus Filter; C:\Windows\system32\drivers\sisagp.sys [2009-07-14 52304]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 28032]
S3 Synth3dVsc;Microsoft Virtual 3D Video Transport Driver; C:\Windows\system32\drivers\Synth3dVsc.sys [2011-10-12 77184]
S3 terminpt;Microsoft Remote Desktop Input Driver; C:\Windows\system32\drivers\terminpt.sys [2010-11-20 25600]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys [2010-11-20 112640]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2012-01-09 8192]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2013-08-29 28160]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2012-01-09 8192]
S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter; C:\Windows\system32\DRIVERS\VBoxNetAdp.sys [2013-11-28 104720]
S3 VBoxNetFlt;VirtualBox Bridged Networking Service; C:\Windows\system32\DRIVERS\VBoxNetFlt.sys []
S3 VBoxUSB;VirtualBox USB; C:\Windows\System32\Drivers\VBoxUSB.sys [2013-11-28 84752]
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 viaagp;VIA AGP Bus Filter; C:\Windows\system32\drivers\viaagp.sys [2009-07-14 53328]
S3 ViaC7;VIA C7 Processor Driver; C:\Windows\system32\drivers\viac7.sys [2009-07-14 52736]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 175360]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 17920]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-20 35968]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2011-10-12 21504]
R2 MBAMService;MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [2015-03-17 1080120]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [2015-03-17 1871160]
R2 uCamMonitor;CamMonitor; C:\Program Files\Hama\Hama Webcam Suite\Magic-i Visual Effects 2\uCamMonitor.exe [2008-09-18 104960]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2011-10-12 21504]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-02-20 102912]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2011-10-12 21504]
S3 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2012-06-11 724376]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2011-10-12 21504]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-05-20 1343400]
S4 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2013-09-11 46688]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomaleny pocitac, poruchy v prehliadaci

#12 Příspěvek od Roli »

Odinstaluj Mbam a to že je PC pomalé se už nedivím - Total RAM: 1526 MB (9% free)

Zřejmě problém s RAMkou, můžem jí testnout abychom měli jistotu.


Stáhni MEMTEST

soubor rozbal a spusť exe soubor.

Připoj flashdisk pozor vše co na něm je bude smazáno !,

v okénku Select your USB Flash Drive vyber tento disk a dej Create.

Během chvilky se Memtest nainstaluje.

Flashdisk nech v USB, restartuj PC a nabootuj z něj.

Před tím samozřemě musíš v Bios Setup do kterého se dostaneš při restartu mačkáním klávesy :

* DEL
* F2
* F1
* F10

záleží na PC, ale vždy je to na monitoru napsáno,

otevři nabídku ADVANCED BIOS FEATURES a vyhledej Boot Devices 0 až 4 nebo Boot Sequence.

Na první místo nastav Flashdisk,

na druhé pevný disk HDD, u obou položek bývá napsán i výrobce.

Stisknutím Save většinou je to F10 a potvrzením Entrem uložíš nastavení,

pak ještě stisknutím Save and Exit se dostaneš z Biosu.

Test nech projet minimálně jednou, ideálně však několikrát třeba přes noc a s každým RAM modulem zvlášť.

Pak dej vědět jak to dopadlo.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

magalanes
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 02 kvě 2009 21:47

Re: spomaleny pocitac, poruchy v prehliadaci

#13 Příspěvek od magalanes »

dakujem za doterajsiu pomoc, odinstaloval som mbam, pustil som znovu rsit, 64% pamate volnej. 1,5 GB na 8 rocny notebook sa mi zda dost, ak chcem len surfovat po nete, ci?

uz funguje aj chatovacie okno v pokeci, neviem co sa stalo.
tu pamat otestujem trochu neskor, kazdopadne dakujem.

Uživatelský avatar
Roli
VIP
VIP
Příspěvky: 13400
Registrován: 26 lis 2006 13:37
Bydliště: ČR

Re: spomaleny pocitac, poruchy v prehliadaci

#14 Příspěvek od Roli »

No ta RAMka je kapacitně fakt na hraně.

Určitě jí otestu a dej vědět budu tady.
| Rsit | Mbam | AVPTool | Cure It |

O víkendu odpočívám :all_coholic:

magalanes
Návštěvník
Návštěvník
Příspěvky: 69
Registrován: 02 kvě 2009 21:47

Re: spomaleny pocitac, poruchy v prehliadaci

#15 Příspěvek od magalanes »

upravoval som svoj predosly prispevok, ale ako vidim, neulozili sa zmeny.
Zistil som, ze problem s chatovacim oknom vo firefoxe robi jeho doplnok "https everywhere", pricom pri instalacii je aj varovanie, ze to nie je oficialny mozilla produkt. Ked som ho odstranil, problem zmizol. Len nerozumiem, preco to zacal byt problem odrazu, mal som ho nainstalovany dlho.
Snad cez vikend sa mi podari otestovat pamat.

Odpovědět