Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu, děkuji

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o kontrolu, děkuji

#16 Příspěvek od Diallix »

Ok, ako je na tom pocitac?
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

magia.n
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 09 dub 2021 17:19

Re: Prosím o kontrolu, děkuji

#17 Příspěvek od magia.n »

Řekla bych, že dobrý, jen mě překvapuje, že se mi v prohlížeči Mozila Firefox při vyhledávání čehokoli pžes vyhledavač Google už asi třetím dnem objevuje toto (ale možná je to po nějakém update normální), prohlížeč Google Chrome to nedělá:
Naše systémy zjistily, že vaše počítačová síť je zdrojem neobvyklého provozu. Účelem této stránky je zkontrolovat, zda požadavky odesíláte skutečně vy, a ne robot. Důvod:


Adresa IP: xx.x.xxx.xxx
Čas: 2021-04-11T12:42:10Z
Adresa URL: https://www.google.cz/search?q=robot&so ... CAY&uact=5

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o kontrolu, děkuji

#18 Příspěvek od Diallix »

Tato sprava sa zvykne objavovat ked je v prehliadaci aktivny traffic, teda, ked je otvorenych viacero okien smerujuci konkretne na google napr. Nie je to nic strasne. Mne sprava naskakuje stale.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

magia.n
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 09 dub 2021 17:19

Re: Prosím o kontrolu, děkuji

#19 Příspěvek od magia.n »

OK, uklidnil jste mě, sice se mi to ukazuje i při jednom jediném okně, ale pokud je to normální, pak se s tím smířím. Děkuji Vám.

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o kontrolu, děkuji

#20 Příspěvek od Diallix »

Skuste zmazat traffic prehliadaca, cookies, cache. Logy su ciste.

Nemate zaco :]]
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

magia.n
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 09 dub 2021 17:19

Re: Prosím o kontrolu, děkuji

#21 Příspěvek od magia.n »

Cookies a casche by se měly mazat po zavření prohlížeče, nastavila jsem mazání při zavření. Poradíte prosím, jak smazat ten traffic? :oops:

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o kontrolu, děkuji

#22 Příspěvek od Diallix »

Vymazte cookies - cache + historiu v prehliadaci.

Spusťte postupně tyto utility:

1. Stahnete Zoek.exe www.diallix.net/other/zoek.rar a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;





Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Junkware removal tool: https://www.stahuj.cz/utility_a_ostatni ... oval-tool/
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

magia.n
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 09 dub 2021 17:19

Re: Prosím o kontrolu, děkuji

#23 Příspěvek od magia.n »

Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by hp on ne 11. 04. 2021 at 16:56:44,46.
Microsoft Windows 8.1 6.3.9600 x64
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\hp\AppData\Local\Temp\Rar$EXa0.235\zoek\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

11. 4. 2021 17:01:30 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\CompCare Internet Security deleted successfully
C:\PROGRA~2\Virtual CloneDrive deleted successfully
C:\Users\hp\AppData\Roaming\Canon deleted successfully
C:\Users\hp\AppData\Roaming\Disc-Soft deleted successfully
C:\Users\Honza\AppData\Local\VirtualStore deleted successfully
C:\Users\hp\AppData\Local\EmieSiteList deleted successfully
C:\Users\hp\AppData\Local\EmieUserList deleted successfully
C:\Users\hp\AppData\Local\FSDART deleted successfully
C:\Users\hp\AppData\Local\PackageStaging deleted successfully
C:\Users\Martin\AppData\Local\VirtualStore deleted successfully
C:\Users\DDA~1\AppData\Local\VirtualStore deleted successfully
C:\Users\KRISTN~1\AppData\Local\EmieSiteList deleted successfully
C:\Users\KRISTN~1\AppData\Local\EmieUserList deleted successfully
C:\Users\KRISTN~1\AppData\Local\VirtualStore deleted successfully
C:\Users\TNA~1\AppData\Local\VirtualStore deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3921397407-2631415318-3197205120-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} deleted successfully
HKEY_USERS\S-1-5-21-3921397407-2631415318-3197205120-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} deleted successfully
HKEY_USERS\S-1-5-21-3921397407-2631415318-3197205120-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully
HKEY_USERS\S-1-5-21-3921397407-2631415318-3197205120-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\DDA~1\AppData\Roaming\Mozilla\Firefox\Profiles\sutuqjxe.default\prefs.js:
user_pref("browser.startup.homepage", "http://decko.ceskatelevize.cz/");
user_pref("browser.search.suggest.enabled", false);

Added to C:\Users\DDA~1\AppData\Roaming\Mozilla\Firefox\Profiles\sutuqjxe.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\fag465m9.default\prefs.js:
user_pref("browser.startup.homepage", "http://seznam.cz/");

Added to C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\fag465m9.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\KRISTN~1\AppData\Roaming\Mozilla\Firefox\Profiles\b2hc19h3.default\prefs.js:
user_pref("browser.startup.homepage", "facebook.com");

Added to C:\Users\KRISTN~1\AppData\Roaming\Mozilla\Firefox\Profiles\b2hc19h3.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\f0be0j1i.default\prefs.js:
user_pref("browser.startup.homepage", "www.decko.cz");


Added to C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\f0be0j1i.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\TNA~1\AppData\Roaming\Mozilla\Firefox\Profiles\pzrkmfd1.default-release\prefs.js:

Added to C:\Users\TNA~1\AppData\Roaming\Mozilla\Firefox\Profiles\pzrkmfd1.default-release\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\DDA~1\AppData\Roaming\Mozilla\Firefox\Profiles\sutuqjxe.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_202111.04._1723_.backup

ProfilePath: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\fag465m9.default

user.js not found
---- Lines searches removed from prefs.js ----
user_pref("browser.urlbar.suggest.searches", false);
---- FireFox user.js and prefs.js backups ----

prefs_202111.04._1723_.backup

ProfilePath: C:\Users\KRISTN~1\AppData\Roaming\Mozilla\Firefox\Profiles\b2hc19h3.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_202111.04._1723_.backup

ProfilePath: C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\f0be0j1i.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_202111.04._1723_.backup

ProfilePath: C:\Users\TNA~1\AppData\Roaming\Mozilla\Firefox\Profiles\pzrkmfd1.default-release

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_202111.04._1723_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\CompCare Internet Security not found
C:\PROGRA~2\Virtual CloneDrive not found
C:\Users\hp\AppData\Roaming\FlvtoConverter deleted
C:\Users\hp\AppData\Roaming\UpjersPlayground deleted
C:\Users\Honza\.android deleted
C:\Users\hp\.android deleted
C:\Users\Martin\.android deleted
C:\Users\DDA~1\.android deleted
C:\Users\KRISTN~1\.android deleted
C:\Users\TNA~1\.android deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\hp\AppData\Local\AVAST Software deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Windows\WININIT.INI deleted
C:\Windows\Syswow64\SETC076.tmp deleted
C:\Windows\Syswow64\SETC6A4.tmp deleted
C:\Windows\Syswow64\SETD2F8.tmp deleted
"C:\Users\hp\AppData\Roaming\OCCT\run.pid" deleted
"C:\Users\hp\AppData\Roaming\OCCT" deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\DDA~1\AppData\Roaming\Mozilla\Firefox\Profiles\sutuqjxe.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\fag465m9.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\KRISTN~1\AppData\Roaming\Mozilla\Firefox\Profiles\b2hc19h3.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\f0be0j1i.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\TNA~1\AppData\Roaming\Mozilla\Firefox\Profiles\pzrkmfd1.default-release
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions ======================

ProfilePath: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\fag465m9.default
- Undetermined - %ProfilePath%\extensions\jid1-HAV2inXAnQPIeA@jetpack.xpi
- Undetermined - %ProfilePath%\extensions\ols@f-secure.com.xpi
- Undetermined - %ProfilePath%\extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi

ProfilePath: C:\Users\KRISTN~1\AppData\Roaming\Mozilla\Firefox\Profiles\b2hc19h3.default
- Undetermined - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi

==== Firefox Plugins ======================

Profilepath: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\fag465m9.default
7B10555D5E53954DC8D7A1591EB8A869 - C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL - Microsoft Office
D16896ABE7C64F3E8805266F1A76A591 - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin
3C7E6FE47B9E8AF20B479C7DD5809929 - C:\Users\hp\AppData\Roaming\Mozilla\plugins\npPxPlay.dll - Photodex Presenter Plugin


==== Fake Chromium Profiles Check ======================

Fake profile C:\Users\Honza\AppData\Local\Google\Chrome deleted

==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
jmjjnhpacphpjmnnlnccpfmhkcloaade - No path found[]

Browsing Protection by F-Secure - hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmjjnhpacphpjmnnlnccpfmhkcloaade
Chrome Media Router - hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
Browsing Protection by F-Secure - hp\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjjnhpacphpjmnnlnccpfmhkcloaade
Assassin's Creed 4 Black Flag [FVD] - Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpadpijpfghpinpafnpjlipafpahkahk
Closed Tabs - Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckdmacmopjaoijgapmfhbggpijooeadm
Browsing Protection by F-Secure - Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmjjnhpacphpjmnnlnccpfmhkcloaade
New Tab Page - Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa
Chrome Media Router - Martin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
Browsing Protection by F-Secure - DDA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmjjnhpacphpjmnnlnccpfmhkcloaade
Chrome Media Router - DDA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
Video Downloader PLUS - KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhplmmllnpjjlncfjpbbpjadoeijkogc
Chrome Media Router - KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
Browsing Protection by F-Secure - TNA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmjjnhpacphpjmnnlnccpfmhkcloaade
Chrome Media Router - TNA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
Browsing Protection by F-Secure - TNA~1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjjnhpacphpjmnnlnccpfmhkcloaade

==== Chromium Startpages ======================

C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Preferences
okmark":false,"from_webstore":true,"granted_permissions":{"api":["alarms","cast","desktopCapture","gcm","identity","identity.email","management","mediaRouterPrivate","metricsPrivate","mdns","networkingPrivate","settingsPrivate","storage","tabs","tabCapture","webview","system.cpu"],"explicit_host":["http://*/*","https://*.google.com/*","https://hangouts.google.com/*"],"manifest_permissions":[]},"incognito_content_settings":[],"incognito_preferences":{},"initial_keybindings_set":true,"install_time":"13260565043597545","last_activated_ime_engine":false,"lastpingday":"13220092797204332","location":10,"manifest":{"background":{"persistent":false,"scripts":["common.js","mirroring_common.js","background_script.js"]},"content_security_policy":"default-src 'self'; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; script-src 'self' https://apis.google.com https://feedback.googleusercontent.com https://www.google.com https://www.gstatic.com; child-src https://accounts.google.com https://content.googleapis.com https://www.google.com; connect-src 'self' http://*:* https://*:*; font-src https://fonts.gstatic.com; object-src 'self';","current_locale":"cs","default_locale":"en","description":"Provider for discovery and services for mirroring of Chrome Media Router","differential_fingerprint":"1.f388e99f7df063dcbad923c85976b36d7e9c267750653c95ac7c13b2b122371c","externally_connectable":{"ids":["idmofbkcelhplfjnmmdolenpigiiiecc","ggedfkijiiammpnbdadhllnehapomdge","njjegkblellcjnakomndbaloifhcoccg"]},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDNTWJoPZ9bT32yKxuuVa9LSEYobjPoXCLX3dgsZ9djDrWKNikTECjdRe3/AFXb+v8jkmmtYQPnOgSYn06J/QodDlCIG6l470+gkOoobUM7fOs1AVOse23qYUV4jbuRW3+YZlCvaWCFeczCNbGIUgKEi5B2fyQazy60AL1sLW3utQIDAQAB","manifest_version":2,"minimum_chrome_version":"37","name":"Chrome Media Router","oauth2":{"client_id":"919648714761-55j965o0km033psv3i9qls5mo3qtdrb0.apps.googleusercontent.com","scopes":["https://www.googleapis.com/auth/calenda ... info.email"]},"permissions":["alarms","cast","declarativeWebRequest","desktopCapture","gcm","http://*/*","identity","identity.email","management","mdns","mediaRouterPrivate","metricsPrivate","networkingPrivate","processes","storage","system.cpu","settingsPrivate","tabCapture","tabs","webview","https://hangouts.google.com/*","https://*.google.com/cast/chromecast/home/gsse"],"update_url":"https://clients2.google.com/service/upd ... _resources":["cast_sender.js"]},"never_activated_since_loaded":true,"path":"pkedcjkdefgpdelpbcmbmeomcjbeemfm\\8921.104.0.3_0","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":true,"was_installed_by_oem":false}}},"google":{"services":{"account_id":"110613279701738118611"}},"pinned_tabs":[],"protection":{"macs":{"browser":{"show_home_button":"A8E796C5687D677F084E547717394E68F44C368F3323BFDF441E645F334E46DA"},"default_search_provider_data":{"template_url_data":"D7BBAF810F1249691427C70A7F8CFB4BD791E2A3AE46E05C038E6F0B46640D29"},"extensions":{"settings":{"aapocclcgogkmnckokdopfmhonfmgoek":"225D762EB2FFC2E11FCC4EE15157001B57908B61913710B879877D9DB93D138C","ahfgeienlihckogmohjhadlkjgocpleb":"0CF46BE3282D2EE288EEDA540E0F1B4C23062E63DCD28DAA5C6D8BC23900A50F","aohghmighlieiainnegkcijnfilokake":"8E948739457F96E02104FBD2241A6E3D850768EE45AA16E3C76E85957BC6880F","apdfllckaahabafndbhieahigkjlhalf":"39E8D80A544D9AFC742C09E94F53344CF3F7829F844BE98DB7B8DCF193DA5A89","bepbmhgboaologfdajaanbcjmnhjmhfn":"B8B2CECB0FF9663D9EC37361354D1FD4C5E5F4A93281D1A4523C3C15190F5902","blpcfgokakmgnkcojhhkbfbldkacnbeo":"8A76D4680C2D13FDB342AF2284E265E4F6BBF80FFBCACDD681217544D49DC21C","eemcgdkfndhakfknompkggombfjjjeno":"17855BFC9BB6C5DF05F8EC63CF039456A992507687EC2BB866CFD39DF1EB5E55","eofcbnmajmjmplflapaojjnihcjkigck":"615E87905BADEA6BF7496BA359E2B8DAC519756C9749C825FC2B3E83AD972EC8","felcaaldnbdncclmgdcncolpebgiejap":"CD5CDE0349F5EE0CB5B33248A920F570D2DC80F88A8382666CBDC8BAEE0FC4B8","gfdkimpbcpahaombhbimeihdjnejgicl":"D2BCF773E7501C200FEE3EFCA24819C077674D233A8917536DCDEA1D3438A6F7","ghbmnnjooekpmoecnnnilnnbdlolhkhi":"782125F5C8D74DD7E24C02A662DBFC93F9EA21ED576168C58B2ADD6E277D41ED","gomekmidlodglbbmalcneegieacbdmki":"E19B1DE8D3AF70C6EDB41CAE2B12A71B4BA722BF8D64900ED48CB680C488BF6E","jmjjnhpacphpjmnnlnccpfmhkcloaade":"E11881956E131EC16B17696D7B411D1172BFFB1D941B271455C15CD93A1BE521","kmendfapggjehodndflmmgagdbamhnfd":"59FB9D2D917826EE7D588581EDCCD0E3F678731687F9A102E0425FB42A6965F0","mfehgcgbbipciphmccgaenjidiccnmng":"440E99C868BEB75946417587B99863C063E0E46C940791D3C9312F58A51F6E7C","mfffpogegjflfpflabcdkioaeobkgjik":"2585A74CB2118A5EDF2E73DA6D174DA5FD26C5D3E932B4AE4DA4BF08457CD5FA","mhjfbmdgcfjbbpaeojofohoefgiehjai":"03D2CA44BFCCF8E4D83E20D16F1B845239A6D7539E0D624A3E5B12443FF25301","neajdppkdcdipfabeoofebfddakdcjhd":"B54677668BF05019903624894936726A799989A5504344CE87BB4B76DFB619E2","nkeimhogjdpnpccoofpliimaahmaaome":"26DB5CE833121DBD4BD1D3356ECF89B7BBB3293B4A3E6BD25F2F24C4338D35D6","nmmhkkegccagdldgiimedpiccmgmieda":"9A10BE57A91D99ED3499B391EFBC56B0B796C72FC0E68612BB882A117FFC7DCC","pjkljhegncpnkpknbcohdijeoejaedia":"138827A9FDCC8E7EC8542C573EA458AD23FFD4EBBF61734E6782E120ADDDEA50","pkedcjkdefgpdelpbcmbmeomcjbeemfm":"45DE1047B7385DE4F4ECA08B484AA6DA1F0881303371BC0B0C8DCF6F110011FD"}},"google":{"services":{"account_id":"D54B86C60D73691208DECC7AD08684410B4D5A5DD0267D707DFBAC798403506C","last_account_id":"3B2E6170BA7B1F3FE7FA2EB59847D4B850D6D5DF54AA797F3C938AEF433BFA81","last_username":"D6674E3E1A7D1CDF30D04FA90287F73CCD90E1DDD9D01FC1EFB0ED1DC8E3CA5E","username":"7FD700A2E7E1405B4FB54DB6BE3A4AFFA9A21750469280DE5267BD6E824037D0"}},"homepage":"02BF5D5B85522592C18ACCC6ABC1252E6FDEEC2BED294FBD13FEDF8EC68FE2BA","homepage_is_newtabpage":"7613A712E873D1A85BD09CA145363ECC182231753448E880CE66F47CE0344316","media":{"storage_id_salt":"5FF9F2833DE0AAE01108480AD13F4F862F6B1ACB1D6855D53DF29B4D2F46E472"},"module_blocklist_cache_md5_digest":"74F48BFB602DFB027C24DE9F5D876A078917D8A56BCCF7A0CD984C011DECFEBA","pinned_tabs":"F16E8DBE1B9C1848DE393859130467E9780B849940E86ED25F05D5C41C273F2E","prefs":{"preference_reset_time":"817D6E391B92AAC12F148E8F35FC5B851DB0E1E7F65AD69C931057A0BE8842EC"},"safebrowsing":{"incidents_sent":"5291C9C27568CD7AA95C1AF99CDF6457FB4142780CF49B759656D3D6EF2E6C24"},"search_provider_overrides":"A4764E53C1E1B1B06BFCC1639062162BD02C2065E75D7261BC03191E36944D9C","session":{"restore_on_startup":"7D52DC0C7400308A35BD04516982E72AEA96D1B014C25B9AE25DBC26A8F65AB7","startup_urls":"B31CB0D622E80A854058981DEFD91FD72314CA4E75BCDE8C37BE6C3934DD3151"},"settings_reset_prompt":{"last_triggered_for_default_search":"BE1C12707786CC46136427C9B0E6BA5658DDAD149D6E6C572BB80C39B9396166","last_triggered_for_homepage":"FDC5530EA2875F475BF926562F6A1262E22E65B871B71BA110FADED33C431DF5","last_triggered_for_startup_urls":"41186267E1DD4C912DE229042ED454A7019D9117E6B364C203E3D5563A529521","prompt_wave":"523677D23C48ED8BA1CB88C83DCCF5F9DCE38F21EAF075D4806E03E54EBCE336"},"software_reporter":{"prompt_seed":"76D9428F23766116708C06906A1F0386A55CCED4630E2B306BC496626CC38584","prompt_version":"D01A79E5059FEF54F2D5384FBC17351F9141F221BDD0CE778F563486F393428A","reporting":"130D8B9F8B0E0DD4DA0EF4B3FF2CDE3FE45830F5546F8AEA0C7F54F7D16CE903"}},"super_mac":"A17B0BE73F28A75AAF8FB73E408AD635FDF001C5409E6E27D6F81614CAAEBD88"},"settings_reset_prompt":{"prompt_wave":20190606}}

C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Preferences
01E7E10A8947D12B5FF5587A31784B87C2840323A3E0E784D","ioekoebejdcmnlefjiknokhhafglcjdl":"D6B13995FE3A847EF3FB8A1823E98BBC02BEBF57D4DC60EAF72B3F1F9D1B649D","jmjjnhpacphpjmnnlnccpfmhkcloaade":"E60A3B592ECBD6FF76FB503CA3DAC042D99324B16BFDD676BFE44B124225EA0C","kfmpgofbpmkihnamkhcoohnmipjkfjph":"8C10137D0BD9EC88AA6A8FB8C88C9C675F7DFD1F4DA6950A3A4986FEDC86BBAB","klhfgnobmdkblmbdahcnpajbjnfmknpn":"E0D86483461D1D3C25D7E1EF93F86616AFA80EEBBA6268169AA97B70C0DEEDC8","kmendfapggjehodndflmmgagdbamhnfd":"1EE2537667975A6803B6A972808AE8EC063DE46C170F7A349AD3B95444D52DD6","lgloifppaepihckkhiocnodicehjdoof":"DE17254F3855C2EBF091050B0CE21BB9B421BAF410718D541D15D3002C1BCC9F","llaficoajjainaijghjlofdfmbjpebpa":"195FD349C03050BABFE0080C2C0E4EB4CFD9443EBB506D13C47BEB58D05CCE28","mfehgcgbbipciphmccgaenjidiccnmng":"9316EBFF5DCCAC79EC308D4C71D1F1ED582CB0A0BA54658AFB6932C302616E12","mfffpogegjflfpflabcdkioaeobkgjik":"4221A1C81C1E4E2937513D234B929D8CCDCD515965F2D05F3FE4DD1A7DB5C2CF","mgndgikekgjfcpckkfioiadnlibdjbkf":"3338A46EC29E82E329493D5897E6AB78DD57CD5F7A4D91E3D960D831679EB092","mhjfbmdgcfjbbpaeojofohoefgiehjai":"94C262C1AC92CC90BA016BA74090E7E6347116BD68E946C72215C55E73757880","neajdppkdcdipfabeoofebfddakdcjhd":"5B1156A55C928BDC581180C2088D892FA61E4DFDEDB3AA2B7BA0401F95C2A778","nkeimhogjdpnpccoofpliimaahmaaome":"E7CD178D4738A5B3CCF2240B975A627DDC2BF7A3DD78EDA146941834D63CA68A","nmmhkkegccagdldgiimedpiccmgmieda":"00C87F471083E0B4165F7D72D9C6C8F5C0BECD6486D5055E544BAB52BD292144","pheefoolfafhhpdkpdkjpganobgachop":"424B9FBB9B679D76032496DF3D9AD1B983C8A3171A28B94E3B52B51319804441","pjkljhegncpnkpknbcohdijeoejaedia":"184614083517C8ED013B57992979AAA99C51DFC1DF1E8A6FE36D7C08D7179D61","pkedcjkdefgpdelpbcmbmeomcjbeemfm":"1D25E36F5DC7829A8E2828B7B8DA54CE619764925BC44E0D20C71E31AE3DAD4D"}},"google":{"services":{"account_id":"8D0169E9D57C4AB69D6CDE5F4B6C9EBE78E7E9BBD2C7D6C6A664BE7E04DD21A2","last_account_id":"CCAFDE1939719760540C3A2C90A967BB87D01F15D0A785C6D25DC2070CDFD58B","last_username":"F72EF3C53055D499E0E2AA35B11FE808068F89183251A9CCBEFDE320C552C56E","username":"7FD700A2E7E1405B4FB54DB6BE3A4AFFA9A21750469280DE5267BD6E824037D0"}},"homepage":"57790D5DAACAFEC6DEDE1D539B3D3CAF9BFF3CA0857A8A2540B34949706621A0","homepage_is_newtabpage":"08E2C7D222278862BC4E36EED56AF1577D6780CA29D56A6A14392C04876DEDDD","media":{"storage_id_salt":"5FF9F2833DE0AAE01108480AD13F4F862F6B1ACB1D6855D53DF29B4D2F46E472"},"module_blacklist_cache_md5_digest":"B73DE93166995513C4D73E73B9E6DE922CE3F1B227E8BA56A4D24AE8D8257848","pinned_tabs":"F16E8DBE1B9C1848DE393859130467E9780B849940E86ED25F05D5C41C273F2E","prefs":{"preference_reset_time":"817D6E391B92AAC12F148E8F35FC5B851DB0E1E7F65AD69C931057A0BE8842EC"},"safebrowsing":{"incidents_sent":"5291C9C27568CD7AA95C1AF99CDF6457FB4142780CF49B759656D3D6EF2E6C24"},"search_provider_overrides":"A4764E53C1E1B1B06BFCC1639062162BD02C2065E75D7261BC03191E36944D9C","session":{"restore_on_startup":"17D57536914D8DBD7494B1B39454FAB9FC6C5779DE81F4AEC0B82BADCAE4CEF3","startup_urls":"A2490E2D09EA5A59ACC869D49CAA6EAAF5C2E6D2CA053BF4D3D5F1D4996F62BE"},"settings_reset_prompt":{"last_triggered_for_default_search":"BE1C12707786CC46136427C9B0E6BA5658DDAD149D6E6C572BB80C39B9396166","last_triggered_for_homepage":"FDC5530EA2875F475BF926562F6A1262E22E65B871B71BA110FADED33C431DF5","last_triggered_for_startup_urls":"41186267E1DD4C912DE229042ED454A7019D9117E6B364C203E3D5563A529521","prompt_wave":"E31EB986CE25E0CC68464FA39D86A2EEB166B7B371DB64AC4FCBAD803BF89137"},"software_reporter":{"prompt_seed":"76D9428F23766116708C06906A1F0386A55CCED4630E2B306BC496626CC38584","prompt_version":"D01A79E5059FEF54F2D5384FBC17351F9141F221BDD0CE778F563486F393428A","reporting":"130D8B9F8B0E0DD4DA0EF4B3FF2CDE3FE45830F5546F8AEA0C7F54F7D16CE903"}},"super_mac":"C878D6EB3B0964A9C2A4FACEE59608851D4BB05335A7DE6039AACB8A3343D698"},"session":{"restore_on_startup":4,"startup_urls":["http://www.google.com/","http://youtube ... //plug.dj/"]}}


==== Chromium Fix ======================

C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhplmmllnpjjlncfjpbbpjadoeijkogc deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://seznam.cz/"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://seznam.cz/"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IESR02"

==== Reset Google Chrome ======================

C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\hp\AppData\Local\Microsoft\Edge\User Data\Default\Preferences was reset successfully
C:\Users\hp\AppData\Local\Microsoft\Edge\User Data\Default\Secure Preferences was reset successfully
C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\DDA~1\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\DDA~1\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\TNA~1\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\TNA~1\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\TNA~1\AppData\Local\Microsoft\Edge\User Data\Default\Preferences was reset successfully
C:\Users\TNA~1\AppData\Local\Microsoft\Edge\User Data\Default\Secure Preferences was reset successfully
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\hp\AppData\Local\Microsoft\Edge\User Data\Default\Web Data was reset successfully
C:\Users\hp\AppData\Local\Microsoft\Edge\User Data\Default\Web Data-journal was reset successfully
C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\DDA~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\DDA~1\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\TNA~1\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\TNA~1\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\TNA~1\AppData\Local\Microsoft\Edge\User Data\Default\Web Data was reset successfully
C:\Users\TNA~1\AppData\Local\Microsoft\Edge\User Data\Default\Web Data-journal was reset successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Honza\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\hp\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Martin\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\DDA~1\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\KRISTN~1\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\TNA~1\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\hp\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

C:\Users\hp\AppData\Local\Mozilla\Firefox\Profiles\fag465m9.default\cache2 emptied successfully
C:\Users\Martin\AppData\Local\Mozilla\Firefox\Profiles\f0be0j1i.default\cache2 emptied successfully
C:\Users\DDA~1\AppData\Local\Mozilla\Firefox\Profiles\sutuqjxe.default\cache2 emptied successfully
C:\Users\KRISTN~1\AppData\Local\Mozilla\Firefox\Profiles\b2hc19h3.default\cache2 emptied successfully
C:\Users\TNA~1\AppData\Local\Mozilla\Firefox\Profiles\pzrkmfd1.default-release\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\hp\AppData\Local\Microsoft\Edge\User Data\Default\Cache emptied successfully
C:\Users\Martin\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\DDA~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\KRISTN~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\TNA~1\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\TNA~1\AppData\Local\Microsoft\Edge\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=509 folders=76 207662488 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Honza\AppData\Local\Temp emptied successfully
C:\Users\hp\AppData\Local\Temp will be emptied at reboot
C:\Users\Martin\AppData\Local\Temp emptied successfully
C:\Users\DDA~1\AppData\Local\Temp emptied successfully
C:\Users\KRISTN~1\AppData\Local\Temp emptied successfully
C:\Users\TNA~1\AppData\Local\Temp emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\hp\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on ne 11. 04. 2021 at 17:39:59,52 ======================

magia.n
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 09 dub 2021 17:19

Re: Prosím o kontrolu, děkuji

#24 Příspěvek od magia.n »

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 8.1 x64
Ran by hp (Administrator) on ne 11. 04. 2021 at 18:17:39,32
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 2

Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 11. 04. 2021 at 18:20:00,54
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o kontrolu, děkuji

#25 Příspěvek od Diallix »

Ako je na tom pocitac?
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

magia.n
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 09 dub 2021 17:19

Re: Prosím o kontrolu, děkuji

#26 Příspěvek od magia.n »

Počítač dobrý, jen ten google vyhledávač přes mozilu nemůžu používat, jen pořád ověřuje a hází nový ověřovací okýnka. Vyhledávám přes jinej prolížeč, když potřebuju radu strejdy gůgla :?:

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o kontrolu, děkuji

#27 Příspěvek od Diallix »

skuste ho preinstalovat.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o kontrolu, děkuji

#28 Příspěvek od Diallix »

Temu zamykam.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Zamčeno