
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
prosim o kontroly vyskakuji mi cinske webove adresy
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 58
- Registrován: 24 bře 2014 13:34
prosim o kontroly vyskakuji mi cinske webove adresy
Logfile of random's system information tool 1.10 (written by random/random)
Run by lenovo at 2016-03-19 14:43:33
Microsoft Windows 10 Home
System drive C: has 242 GB (27%) free of 905 GB
Total RAM: 8056 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:43:43, on 19.03.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\plugins\QMNetMon\QQPCNetFlow.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRealTimeSpeedup.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\lenovo\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\lenovo.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://top81.com.cn
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://top81.com.cn
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: QPMIEHelper - {50F4150A-48B2-417A-BE4C-C83F580FB904} - C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3192\npQQPhoneManagerExt.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll
O4 - HKLM\..\Run: [331BigDog] "C:\Program Files (x86)\USB Camera\VM331STI.EXE"
O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Aeria Ignite] "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent
O4 - HKLM\..\Run: [Bonus.SSR.FR12] "C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe" /autorun
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [un] C:\Users\lenovo\AppData\Local\Temp\un.exe /start
O4 - HKLM\..\Run: [ QQPCTray] "C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe" /regrun
O4 - HKCU\..\Run: [Epson Stylus SX230] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHKE.EXE /FU "C:\Users\lenovo\AppData\Local\Temp\E_S6FE.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [EPSON SX230 Series] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHKE.EXE /FU "C:\Users\lenovo\AppData\Local\Temp\E_S61D8.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [uTorrent] "C:\Users\lenovo\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Curse.lnk = lenovo\AppData\Roaming\Curse Client\Bin\Curse.exe
O4 - Startup: Dropbox.lnk = lenovo\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.aeriagames.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: ABBYY FineReader 12 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.12.0) - ABBYY Production LLC - C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @oem80.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\WINDOWS\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: ggbugreport - Unknown owner - C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: LSCWinService - Lenovo - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: QQPCMgr RTP Service (QQPCRTP) - Tencent - C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRTP.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: ScsiAccess - Unknown owner - C:\Program Files (x86)\Photodex\ProShow Gold\ScsiAccess.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Spy Emergency Health Check (SpyEmrgHealth) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyHealth.exe
O23 - Service: Spy Emergency Engine Service (SpyEmrgSrv) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Winsere - Unknown owner - C:\Program Files (x86)\Winsere\Winsere\Winsere.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 17543 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-38e6e432-7004-4b8b-8958-38ca5e5ff5d4 -SystemEventPortName:HostProcess-b8f0efda-215a-421b-a16c-8bce055b4ed5 -IoCancelEventPortName:HostProcess-949f7321-3188-4ff4-9e7c-9cee92731ef3 -NonStateChangingEventPortName:HostProcess-8313fdb5-294a-4c39-961c-8806b955d961 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:e79587e2-3503-4f4c-8a7a-54c2e001fb6c -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
dashost.exe {a1f80910-e7ba-4935-94713e8ef0b08df8}
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\BtwRSupportService.exe
"C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe" -service
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Elantech\ETDService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\WINDOWS\system32\CxAudMsg64.exe"
"C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe"
"C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe"
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyHealth.exe"
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\Photodex\ProShow Gold\ScsiAccess.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 17da29be-f83f-4c83-9a28-d232cbd03145 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe" /showasync
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
taskhostw.exe
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRtp.exe" -r
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe" /elevated /regrun
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\plugins\QMNetMon\QQPCNetFlow.exe" /regrun /elevated
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRealTimeSpeedup.exe"
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe" /slient /PLUGIN_管家蓝屏修复 /pcmgr
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\WINDOWS\System32\Taskmgr.exe" /3
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" "http://www.hohosearch.com/?ts=AHEpC38tC ... &mode=scrp"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1c8
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=5648 --on-initialized-event-handle=776 --parent-handle=780 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7400.0.1168941475\125757136" --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.4229 --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.2.103993363\2082447772" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.3.1620095450\671260825" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.4.1388300808\792575966" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.11.2009834108\1547594659" /prefetch:1
explorer.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.15.965426967\350700473" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.28.1456142746\199760380" /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe272_ Global\UsGthrCtrlFltPipeMssGthrPipe272 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.103.277289221\860729003" /prefetch:1
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Users\lenovo\AppData\Roaming\uTorrent\uTorrent.exe" "magnet:?xt=urn:btih:d6620285f6d59a36fef6f74c97c2af9db9621567&dn=Titan+Souls+%28GOG%29&tr=udp%3A%2F%2Ftracker.openbittorrent.com%3A80&tr=udp%3A%2F%2Fopen.demonii.com%3A1337&tr=udp%3A%2F%2Ftracker.coppersurfer.tk%3A6969&tr=udp%3A%2F%2Fexodus.desync.com%3A6969"
taskeng.exe {391DFA95-6508-46A8-A886-795B7EDB34CB}
taskeng.exe {2E739F5C-C557-4533-A88B-A318EE44049B}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.104.1290476034\296708203" /prefetch:1
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 608 612 620 8192 616
"C:\Users\lenovo\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Run by lenovo at 2016-03-19 14:43:33
Microsoft Windows 10 Home
System drive C: has 242 GB (27%) free of 905 GB
Total RAM: 8056 MB (46% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:43:43, on 19.03.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal
Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\plugins\QMNetMon\QQPCNetFlow.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRealTimeSpeedup.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\lenovo\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\lenovo.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://top81.com.cn
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://top81.com.cn
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: QPMIEHelper - {50F4150A-48B2-417A-BE4C-C83F580FB904} - C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3192\npQQPhoneManagerExt.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll
O4 - HKLM\..\Run: [331BigDog] "C:\Program Files (x86)\USB Camera\VM331STI.EXE"
O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Aeria Ignite] "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent
O4 - HKLM\..\Run: [Bonus.SSR.FR12] "C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe" /autorun
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [un] C:\Users\lenovo\AppData\Local\Temp\un.exe /start
O4 - HKLM\..\Run: [ QQPCTray] "C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe" /regrun
O4 - HKCU\..\Run: [Epson Stylus SX230] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHKE.EXE /FU "C:\Users\lenovo\AppData\Local\Temp\E_S6FE.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [EPSON SX230 Series] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHKE.EXE /FU "C:\Users\lenovo\AppData\Local\Temp\E_S61D8.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [uTorrent] "C:\Users\lenovo\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Curse.lnk = lenovo\AppData\Roaming\Curse Client\Bin\Curse.exe
O4 - Startup: Dropbox.lnk = lenovo\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.aeriagames.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: ABBYY FineReader 12 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.12.0) - ABBYY Production LLC - C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @oem80.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\WINDOWS\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: ggbugreport - Unknown owner - C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: LSCWinService - Lenovo - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: QQPCMgr RTP Service (QQPCRTP) - Tencent - C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRTP.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: ScsiAccess - Unknown owner - C:\Program Files (x86)\Photodex\ProShow Gold\ScsiAccess.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Spy Emergency Health Check (SpyEmrgHealth) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyHealth.exe
O23 - Service: Spy Emergency Engine Service (SpyEmrgSrv) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Winsere - Unknown owner - C:\Program Files (x86)\Winsere\Winsere\Winsere.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 17543 bytes
======Listing Processes======
winlogon.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-38e6e432-7004-4b8b-8958-38ca5e5ff5d4 -SystemEventPortName:HostProcess-b8f0efda-215a-421b-a16c-8bce055b4ed5 -IoCancelEventPortName:HostProcess-949f7321-3188-4ff4-9e7c-9cee92731ef3 -NonStateChangingEventPortName:HostProcess-8313fdb5-294a-4c39-961c-8806b955d961 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:e79587e2-3503-4f4c-8a7a-54c2e001fb6c -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
dashost.exe {a1f80910-e7ba-4935-94713e8ef0b08df8}
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\BtwRSupportService.exe
"C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe" -service
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Elantech\ETDService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\WINDOWS\system32\CxAudMsg64.exe"
"C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe"
"C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe"
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyHealth.exe"
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\Photodex\ProShow Gold\ScsiAccess.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 17da29be-f83f-4c83-9a28-d232cbd03145 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe" /showasync
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
taskhostw.exe
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRtp.exe" -r
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe" /elevated /regrun
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\plugins\QMNetMon\QQPCNetFlow.exe" /regrun /elevated
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRealTimeSpeedup.exe"
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe" /slient /PLUGIN_管家蓝屏修复 /pcmgr
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
"C:\WINDOWS\System32\Taskmgr.exe" /3
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" "http://www.hohosearch.com/?ts=AHEpC38tC ... &mode=scrp"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1c8
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=5648 --on-initialized-event-handle=776 --parent-handle=780 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7400.0.1168941475\125757136" --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.4229 --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.2.103993363\2082447772" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.3.1620095450\671260825" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.4.1388300808\792575966" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.11.2009834108\1547594659" /prefetch:1
explorer.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.15.965426967\350700473" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.28.1456142746\199760380" /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe272_ Global\UsGthrCtrlFltPipeMssGthrPipe272 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.103.277289221\860729003" /prefetch:1
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Users\lenovo\AppData\Roaming\uTorrent\uTorrent.exe" "magnet:?xt=urn:btih:d6620285f6d59a36fef6f74c97c2af9db9621567&dn=Titan+Souls+%28GOG%29&tr=udp%3A%2F%2Ftracker.openbittorrent.com%3A80&tr=udp%3A%2F%2Fopen.demonii.com%3A1337&tr=udp%3A%2F%2Ftracker.coppersurfer.tk%3A6969&tr=udp%3A%2F%2Fexodus.desync.com%3A6969"
taskeng.exe {391DFA95-6508-46A8-A886-795B7EDB34CB}
taskeng.exe {2E739F5C-C557-4533-A88B-A318EE44049B}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.104.1290476034\296708203" /prefetch:1
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 608 612 620 8192 616
"C:\Users\lenovo\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Re: prosim o kontroly vyskakuji mi cinske webove adresy
Zdravím
Stáhněte AdwCleaner http://www.bleepingcomputer.com/download/adwcleaner/
-Uložte program na plochu a ukončete všechny spuštěné programy .
-spusťte AdwCleaner, klikněte na Scan a po dokončení skenu na Clean
- provede se oprava, restartuje se pc - (případně restartujte) a objeví se log C:\AdwCleaner\AdwCleaner.txt , obsah logu zkopírujte zde.


-Uložte program na plochu a ukončete všechny spuštěné programy .
-spusťte AdwCleaner, klikněte na Scan a po dokončení skenu na Clean
- provede se oprava, restartuje se pc - (případně restartujte) a objeví se log C:\AdwCleaner\AdwCleaner.txt , obsah logu zkopírujte zde.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
- Návštěvník
- Příspěvky: 58
- Registrován: 24 bře 2014 13:34
Re: prosim o kontroly vyskakuji mi cinske webove adresy
# AdwCleaner v5.103 - Logfile created 21/03/2016 at 11:54:40
# Updated 20/03/2016 by Xplode
# Database : 2016-03-21.1 [Server]
# Operating system : Windows 10 Home (x64)
# Username : lenovo - SKIMI
# Running from : C:\Users\lenovo\Desktop\AdwCleaner.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
[-] Service Deleted : TSDefenseBt
[-] Service Deleted : TSSysKit
[-] Service Deleted : QMUdisk
[-] Service Deleted : TS888x64
[-] Service Deleted : QQSysMonX64
[-] Service Deleted : TFsFlt
[!] Service Not Deleted : TAOKernelDriver
[-] Service Deleted : softaal
[-] Service Deleted : SRepairDrv
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\tencent
[-] Folder Deleted : C:\Program Files (x86)\SearchesToYesbnd
[-] Folder Deleted : C:\Program Files (x86)\Winsere
[-] Folder Deleted : C:\Program Files (x86)\WinTaske
[-] Folder Deleted : C:\Program Files (x86)\Common Files\tencent
[#] Folder Deleted : C:\Program Files\Common Files\tencent
[-] Folder Deleted : C:\ProgramData\tencent
[-] Folder Deleted : C:\ProgramData\TXQMPC
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\腾讯软件
[-] Folder Deleted : C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ooebklgpfnbcnpokahmdidgbmlcdepkm
[-] Folder Deleted : C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl
[-] Folder Deleted : C:\Users\lenovo\AppData\Local\Temp\tencent
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\tencent
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\SpringFiles
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\YourGSearchFinder_br
[#] Folder Deleted : C:\WINDOWS\SysNative\Tasks\WinTaske
[-] Folder Deleted : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\tencent
***** [ Files ] *****
[-] File Deleted : C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage
[-] File Deleted : C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage
[-] File Deleted : C:\WINDOWS\SysNative\drivers\TFsFltX64.sys
[-] File Deleted : C:\WINDOWS\SysWOW64\drivers\TS888x64.sys
***** [ DLLs ] *****
***** [ Shortcuts ] *****
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Borderlands The Pre-Sequel.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games\Borderlands 2\Borderlands 2.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\Desktop\Programs\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\Desktop\Programs\Tor Browser\Start Tor Browser.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\Desktop\Games\The Vanishing of Ethan Carter.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
***** [ Scheduled tasks ] *****
[-] Task Deleted : WinTaske
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
[-] Key Deleted : HKLM\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\MsMpEng.exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\metnsd
[-] Key Deleted : HKLM\SOFTWARE\Classes\NTService.Control.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{50F4150A-48B2-417A-BE4C-C83F580FB904}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{754DF2CE-51E8-4895-B53C-6381418B84AE}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7BC34A3-BA86-11CF-84B1-CBC2DA68BF6C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7BC34A1-BA86-11CF-84B1-CBC2DA68BF6C}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50F4150A-48B2-417A-BE4C-C83F580FB904}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{50F4150A-48B2-417A-BE4C-C83F580FB904}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{29B6CFD5-0064-411A-8C42-9890C83F9921}
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved [{754DF2CE-51E8-4895-B53C-6381418B84AE}]
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7BC34A1-BA86-11CF-84B1-CBC2DA68BF6C}
[-] Key Deleted : HKCU\Software\VNT
[-] Key Deleted : HKLM\SOFTWARE\hohosearchSoftware
[-] Key Deleted : HKU\S-1-5-21-3506386250-3181969935-685841320-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\App Lid
[-] Key Deleted : HKU\S-1-5-21-3506386250-3181969935-685841320-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Crossrider
[-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tab]
[-] Data Restored : HKU\S-1-5-21-3506386250-3181969935-685841320-1002\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{E07FEB5D-9B81-483F-8F46-A9FF09BEE32F}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{FE76D7ED-F4C9-4482-A3E5-CE45132622DD}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{F729ECB3-3A82-4B74-B2D3-BD425EC763F3}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{25012AE5-8B8F-4181-8AB3-827F00C85C9E}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{702919C6-D267-4B04-9FD7-F4AA63598688}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{F0965A2C-51F5-4C93-9390-588275363B96}]
[-] Key Deleted : HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.com/download_winamp/
***** [ Web browsers ] *****
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.newtab.url", "hxxp://www.hohosearch.com/?ts=AHEpC38tC38pA0.. ... ode=ffseng");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.hp", "hxxp://www.hohosearch.com/?ts=AHEpC38tC38pA0.. ... =ffsengext");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.sp", "hxxp://www.hohosearch.com/chrome.php?mode=ffse ... v=20160317");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.url", "hxxp://www.hohosearch.com/chrome.php?mode=ffse ... v=20160317");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.startup.homepage", "hxxp://www.hohosearch.com/?ts=AHEpC38tC38pA0.. ... ode=ffseng");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.mywebsearch.prevKwdEnabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.BUTTON_STRUCTURE", "[{\"b\":224520315,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224520316,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.browser.version.last", "45.0");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.firstKnownVersion", "7.38.8.45986");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.homepage", "/index.jhtml?n=782a34aa");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.hp.enabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.hp.guardType", "HPR");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.initialized", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.installation.installDate", "2016031914");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.installation.success", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lastActivePing", "1458553849412");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lastKnownVersion", "7.38.8.45986");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lssState", "{\"previousLocales\":[\"cs\",\"en-US\",\"en\"],\"supportedLocales\":[\"de\",\"es\",\"pt\",\"ja\",\"en\"],\"defaultLocale\":\"en\",\"supp[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.defaultSearch", false);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.homePageEnabled", false);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.keywordEnabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.tabEnabled", false);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.language", "en");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.type", "Toolbar");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.successUrl", "hxxp://www.hohosearch.com/chrome.php?uid=3EA72 ... toolbar&q=[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.toolbarCollapsed", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._brMembers_.\"],\"filesToDelete\":[\"C:\\\\Users\\\\lenovo\\\\AppData\\\[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "yourGSearchfinder@GSearch.com");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark.lastInstalled", "yourGSearchfinder@GSearch.com");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("keyword.URL", "hxxp://www.hohosearch.com/chrome.php?uid=3EA72 ... toolbar&q=");
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : lacnetonery.sk
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : dungeon-defenders.en.softonic.com
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : baldurs-gate-2.en.softonic.com
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.default-search.net?sid=476&aid=113& ... 77&src=hmp
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.mystartsearch.com/?type=hp&ts=14152 ... J9ECA38641
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.istartsurf.com/?type=hp&ts=14449986 ... J9ECA38641
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.mystartsearch.com/?type=hp&ts=14449 ... J9ECA38641
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : nonjdcjchghhkdoolnlbekcfllmednbl
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : ooebklgpfnbcnpokahmdidgbmlcdepkm
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [787 bytes] - [21/03/2016 11:00:24]
C:\AdwCleaner\AdwCleaner[C2].txt - [16065 bytes] - [21/03/2016 11:54:40]
C:\AdwCleaner\AdwCleaner[S1].txt - [21167 bytes] - [21/03/2016 10:55:42]
C:\AdwCleaner\AdwCleaner[S2].txt - [16048 bytes] - [21/03/2016 11:49:34]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [16287 bytes] ##########
# Updated 20/03/2016 by Xplode
# Database : 2016-03-21.1 [Server]
# Operating system : Windows 10 Home (x64)
# Username : lenovo - SKIMI
# Running from : C:\Users\lenovo\Desktop\AdwCleaner.exe
# Option : Clean
# Support : http://toolslib.net/forum
***** [ Services ] *****
[-] Service Deleted : TSDefenseBt
[-] Service Deleted : TSSysKit
[-] Service Deleted : QMUdisk
[-] Service Deleted : TS888x64
[-] Service Deleted : QQSysMonX64
[-] Service Deleted : TFsFlt
[!] Service Not Deleted : TAOKernelDriver
[-] Service Deleted : softaal
[-] Service Deleted : SRepairDrv
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\tencent
[-] Folder Deleted : C:\Program Files (x86)\SearchesToYesbnd
[-] Folder Deleted : C:\Program Files (x86)\Winsere
[-] Folder Deleted : C:\Program Files (x86)\WinTaske
[-] Folder Deleted : C:\Program Files (x86)\Common Files\tencent
[#] Folder Deleted : C:\Program Files\Common Files\tencent
[-] Folder Deleted : C:\ProgramData\tencent
[-] Folder Deleted : C:\ProgramData\TXQMPC
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\腾讯软件
[-] Folder Deleted : C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ooebklgpfnbcnpokahmdidgbmlcdepkm
[-] Folder Deleted : C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl
[-] Folder Deleted : C:\Users\lenovo\AppData\Local\Temp\tencent
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\tencent
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\SpringFiles
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\YourGSearchFinder_br
[#] Folder Deleted : C:\WINDOWS\SysNative\Tasks\WinTaske
[-] Folder Deleted : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\tencent
***** [ Files ] *****
[-] File Deleted : C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage
[-] File Deleted : C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage
[-] File Deleted : C:\WINDOWS\SysNative\drivers\TFsFltX64.sys
[-] File Deleted : C:\WINDOWS\SysWOW64\drivers\TS888x64.sys
***** [ DLLs ] *****
***** [ Shortcuts ] *****
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Borderlands The Pre-Sequel.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games\Borderlands 2\Borderlands 2.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\Desktop\Programs\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\Desktop\Programs\Tor Browser\Start Tor Browser.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\Desktop\Games\The Vanishing of Ethan Carter.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
***** [ Scheduled tasks ] *****
[-] Task Deleted : WinTaske
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
[-] Key Deleted : HKLM\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\MsMpEng.exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\metnsd
[-] Key Deleted : HKLM\SOFTWARE\Classes\NTService.Control.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{50F4150A-48B2-417A-BE4C-C83F580FB904}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{754DF2CE-51E8-4895-B53C-6381418B84AE}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7BC34A3-BA86-11CF-84B1-CBC2DA68BF6C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7BC34A1-BA86-11CF-84B1-CBC2DA68BF6C}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50F4150A-48B2-417A-BE4C-C83F580FB904}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{50F4150A-48B2-417A-BE4C-C83F580FB904}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{29B6CFD5-0064-411A-8C42-9890C83F9921}
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved [{754DF2CE-51E8-4895-B53C-6381418B84AE}]
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7BC34A1-BA86-11CF-84B1-CBC2DA68BF6C}
[-] Key Deleted : HKCU\Software\VNT
[-] Key Deleted : HKLM\SOFTWARE\hohosearchSoftware
[-] Key Deleted : HKU\S-1-5-21-3506386250-3181969935-685841320-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\App Lid
[-] Key Deleted : HKU\S-1-5-21-3506386250-3181969935-685841320-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Crossrider
[-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tab]
[-] Data Restored : HKU\S-1-5-21-3506386250-3181969935-685841320-1002\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{E07FEB5D-9B81-483F-8F46-A9FF09BEE32F}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{FE76D7ED-F4C9-4482-A3E5-CE45132622DD}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{F729ECB3-3A82-4B74-B2D3-BD425EC763F3}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{25012AE5-8B8F-4181-8AB3-827F00C85C9E}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{702919C6-D267-4B04-9FD7-F4AA63598688}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{F0965A2C-51F5-4C93-9390-588275363B96}]
[-] Key Deleted : HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.com/download_winamp/
***** [ Web browsers ] *****
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.newtab.url", "hxxp://www.hohosearch.com/?ts=AHEpC38tC38pA0.. ... ode=ffseng");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.hp", "hxxp://www.hohosearch.com/?ts=AHEpC38tC38pA0.. ... =ffsengext");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.sp", "hxxp://www.hohosearch.com/chrome.php?mode=ffse ... v=20160317");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.url", "hxxp://www.hohosearch.com/chrome.php?mode=ffse ... v=20160317");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.startup.homepage", "hxxp://www.hohosearch.com/?ts=AHEpC38tC38pA0.. ... ode=ffseng");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.mywebsearch.prevKwdEnabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.BUTTON_STRUCTURE", "[{\"b\":224520315,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224520316,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.browser.version.last", "45.0");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.firstKnownVersion", "7.38.8.45986");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.homepage", "/index.jhtml?n=782a34aa");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.hp.enabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.hp.guardType", "HPR");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.initialized", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.installation.installDate", "2016031914");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.installation.success", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lastActivePing", "1458553849412");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lastKnownVersion", "7.38.8.45986");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lssState", "{\"previousLocales\":[\"cs\",\"en-US\",\"en\"],\"supportedLocales\":[\"de\",\"es\",\"pt\",\"ja\",\"en\"],\"defaultLocale\":\"en\",\"supp[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.defaultSearch", false);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.homePageEnabled", false);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.keywordEnabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.tabEnabled", false);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.language", "en");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.type", "Toolbar");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.successUrl", "hxxp://www.hohosearch.com/chrome.php?uid=3EA72 ... toolbar&q=[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.toolbarCollapsed", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._brMembers_.\"],\"filesToDelete\":[\"C:\\\\Users\\\\lenovo\\\\AppData\\\[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "yourGSearchfinder@GSearch.com");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark.lastInstalled", "yourGSearchfinder@GSearch.com");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("keyword.URL", "hxxp://www.hohosearch.com/chrome.php?uid=3EA72 ... toolbar&q=");
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : lacnetonery.sk
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : dungeon-defenders.en.softonic.com
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : baldurs-gate-2.en.softonic.com
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.default-search.net?sid=476&aid=113& ... 77&src=hmp
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.mystartsearch.com/?type=hp&ts=14152 ... J9ECA38641
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.istartsurf.com/?type=hp&ts=14449986 ... J9ECA38641
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.mystartsearch.com/?type=hp&ts=14449 ... J9ECA38641
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : nonjdcjchghhkdoolnlbekcfllmednbl
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : ooebklgpfnbcnpokahmdidgbmlcdepkm
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [787 bytes] - [21/03/2016 11:00:24]
C:\AdwCleaner\AdwCleaner[C2].txt - [16065 bytes] - [21/03/2016 11:54:40]
C:\AdwCleaner\AdwCleaner[S1].txt - [21167 bytes] - [21/03/2016 10:55:42]
C:\AdwCleaner\AdwCleaner[S2].txt - [16048 bytes] - [21/03/2016 11:49:34]
########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [16287 bytes] ##########
Re: prosim o kontroly vyskakuji mi cinske webove adresy
Pěkné:D
Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken
NIC NEMAZAT
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
vyosek píše:Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
autoclean; resethosts; emptyclsid; IEdefaults; FFdefaults; CHRdefaults; emptyIEcache; emptyFFcache; emptyCHRcache; emptyalltemp; emptyflash; emptyjava; emptyrecycle.bin;
- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem

-Nainstalujte,dejte úplný sken
NIC NEMAZAT

-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Re: prosim o kontroly vyskakuji mi cinske webove adresy
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
- Návštěvník
- Příspěvky: 58
- Registrován: 24 bře 2014 13:34
Re: prosim o kontroly vyskakuji mi cinske webove adresy
Ok
všechno udělám akorát ještě teda se mi dneska povedlo odinstalovat nějakej ten čínskej program kterej se choval jako nejakej cleaner a zrychlovac pc něco jak jsou ty ruzny aplikace na telefon a stím se mi vymazal i google chrome kterej sem uz znova nainstaloval jinak ten reset jsem teda jeste taky udelal toho prohlizece. jdu na ten zoek
akorat teda mam problem ty veci jsem tam zkopiroval ale to run scan nebo co tam nemam vubec takovou moznost
P.S. ok zkusil jsem znova zapnout a je to tam 




Re: prosim o kontroly vyskakuji mi cinske webove adresy

Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
- Návštěvník
- Příspěvky: 58
- Registrován: 24 bře 2014 13:34
Re: prosim o kontroly vyskakuji mi cinske webove adresy
Zoek.exe v5.0.0.1 Updated 31-December-2015
Tool run by lenovo on 21.03.2016 at 16:40:16,08.
Microsoft Windows 10 Home 10.0.10586 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\lenovo\Desktop\zoek.exe [Scan all users] [Script inserted]
==== Older Logs ======================
C:\zoek-results2015-10-19-193724.log 15408 bytes
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\Sierra On-Line deleted successfully
C:\PROGRA~3\Comms deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\Users\lenovo\AppData\Local\ActiveSync deleted successfully
C:\Users\lenovo\AppData\Local\NetworkTiles deleted successfully
C:\Users\lenovo\AppData\Local\StardewValley deleted successfully
C:\Users\nikyp_000\AppData\Local\ActiveSync deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3506386250-3181969935-685841320-1002\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1B5D5DBD-C857-4377-A755-06E50B4AC2B0} deleted successfully
HKEY_USERS\S-1-5-21-3506386250-3181969935-685841320-1002\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{639B74F1-0594-432C-97C8-68C8C17A1E1D} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js:
user_pref("browser.search.defaultenginename", "hohosearch");
user_pref("browser.search.defaultenginename.US", "data:text/plain,browser.search.defaultenginename.US=hohosearch");
user_pref("browser.search.selectedEngine", "hohosearch");
user_pref("keyword.URL", "http://www.hohosearch.com/chrome.php?ui ... toolbar&q=");
Added to C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Deleted from C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F\prefs.js:
user_pref("browser.startup.homepage", "http://www.hohosearch.com/?ts=AHEpC38tC ... ode=ffseng");
user_pref("browser.newtab.url", "http://www.hohosearch.com/?ts=AHEpC38tC ... ode=ffseng");
user_pref("browser.search.defaultenginename", "hohosearch");
user_pref("browser.search.selectedEngine", "hohosearch");
Added to C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Deleted from C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Added to C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
user.js not found
---- Lines WebSearch removed from prefs.js ----
user_pref("extensions.mywebsearch.prevKwdEnabled", true);
---- Lines mindspark removed from prefs.js ----
user_pref("extensions.toolbar.mindspark._brMembers_.browser.version.last", "45.0");
user_pref("extensions.toolbar.mindspark._brMembers_.BUTTON_STRUCTURE", "[{\"b\":224520315,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224520316,
user_pref("extensions.toolbar.mindspark._brMembers_.firstKnownVersion", "7.38.8.45986");
user_pref("extensions.toolbar.mindspark._brMembers_.homepage", "/index.jhtml?n=782a3570");
user_pref("extensions.toolbar.mindspark._brMembers_.hp.enabled", true);
user_pref("extensions.toolbar.mindspark._brMembers_.hp.guardType", "HPR");
user_pref("extensions.toolbar.mindspark._brMembers_.initialized", true);
user_pref("extensions.toolbar.mindspark._brMembers_.installation.installDate", "2016032112");
user_pref("extensions.toolbar.mindspark._brMembers_.installation.success", true);
user_pref("extensions.toolbar.mindspark._brMembers_.lastActivePing", "1458558648118");
user_pref("extensions.toolbar.mindspark._brMembers_.lastKnownVersion", "7.38.8.45986");
user_pref("extensions.toolbar.mindspark._brMembers_.lssState", "{\"previousLocales\":[\"cs\",\"en-US\",\"en\"],\"supportedLocales\":[\"de\",\"es\",\"p
user_pref("extensions.toolbar.mindspark._brMembers_.options.defaultSearch", false);
user_pref("extensions.toolbar.mindspark._brMembers_.options.homePageEnabled", false);
user_pref("extensions.toolbar.mindspark._brMembers_.options.keywordEnabled", true);
user_pref("extensions.toolbar.mindspark._brMembers_.options.tabEnabled", false);
user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.language", "en");
user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.type", "Toolbar");
user_pref("extensions.toolbar.mindspark._brMembers_.successUrl", "http://www.hohosearch.com/chrome.php?ui ... ptid=amz&t
user_pref("extensions.toolbar.mindspark._brMembers_.toolbarCollapsed", true);
user_pref("extensions.toolbar.mindspark._brMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._brMembers_.\"],\"file
user_pref("extensions.toolbar.mindspark.hp.enabled", true);
user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "yourGSearchfinder@GSearch.com");
user_pref("extensions.toolbar.mindspark.lastInstalled", "yourGSearchfinder@GSearch.com");
---- Lines searches removed from prefs.js ----
user_pref("browser.urlbar.suggest.searches", true);
---- FireFox user.js and prefs.js backups ----
prefs_19.10.2015_2034_.backup
prefs__0023_.backup
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F
user.js not found
---- Lines search.com removed from prefs.js ----
user_pref("browser.search.searchengine.hp", "http://www.hohosearch.com/?ts=AHEpC38tC ... ptid=amz&m
user_pref("browser.search.searchengine.sp", "http://www.hohosearch.com/chrome.php?mo ... .&uid=3EA7
user_pref("browser.search.searchengine.url", "http://www.hohosearch.com/chrome.php?mo ... ..&uid=3EA
---- Lines searches removed from prefs.js ----
user_pref("browser.urlbar.suggest.searches", true);
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 1);
---- FireFox user.js and prefs.js backups ----
prefs_19.10.2015_2034_.backup
prefs__0023_.backup
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs_19.10.2015_2034_.backup
prefs__0023_.backup
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Borderlands The Pre-Sequel not found
C:\PROGRA~2\Sierra On-Line not found
C:\PROGRA~3\Špidla Data Processing, s.r.o not found
C:\Users\lenovo\AppData\Roaming\Factorio deleted
C:\PROGRA~2\Click on browse to specify the directory for extraction deleted
C:\PROGRA~2\Paradox Interactive deleted
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Users\Public\Documents\dmp deleted
C:\windows\SysNative\drivers\TAOKernelEx64.sys deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\GPT.INI deleted
C:\WINDOWS\Syswow64\GroupPolicy\gpt.ini deleted
C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\YourGSearchFinder_br deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"sp@avast.com"="C:\Program Files\AVAST Software\Avast\SafePrice\FF" [09.01.2016 12:14]
==== Firefox Extensions ======================
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
- GsearchFinder - %ProfilePath%\extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F
- Undetermined - C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\extensions\faststartff@gmail.com
- Undetermined - C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\extensions\d9676068985d4d81bb390a@7be93ab3c8e144f694a0509d5.com
- GsearchFinder - %ProfilePath%\extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
==== Firefox Plugins ======================
Profilepath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
F627791AB91E01A9829A8D9B6E024D52 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll - Shockwave Flash
0E24E57BC24262D1662046779186434A - C:\Users\lenovo\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
774DD80B2D3C05C265C0C119F85E208F - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll - PDF-XChange Viewer
==== Chromium Look ======================
Google Chrome Version: 46.0.2490.86
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
eofcbnmajmjmplflapaojjnihcjkigck - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx[09.01.2016 12:13]
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[09.01.2016 12:13]
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[]
Comodo Drag&Drop Service - lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aneodkojaglhnkkdbbdnmmmgimlcaogo
Comodo Web Inspector - lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bdngekjahnmlkinegnhdmmbcfnmbclnn
Comodo Media Downloader - lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dihmnpngfonlhjmgkflpnibiaaliendo
Facebook Customizer (by Adblock Plus) - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm
Avast SafePrice - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Avast Online Security - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
CoolROM for Chrome - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihdefolnlhckckfalccmkakmkgpficdd
Road Blocks - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldcpoimjjikjcphnnlphcajepbfbdmeo
Google Drive App Launcher - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh
Hover Zoom - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl
Avast SafePrice - nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Avast Online Security - nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
==== Chromium Fix ======================
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aneodkojaglhnkkdbbdnmmmgimlcaogo deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bdngekjahnmlkinegnhdmmbcfnmbclnn deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dihmnpngfonlhjmgkflpnibiaaliendo deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\mcmdgbiocnkpnaccjkailibfgepaccgf deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eadjehomimgheecmioghioappchbhedf deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihdefolnlhckckfalccmkakmkgpficdd deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldcpoimjjikjcphnnlphcajepbfbdmeo deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-devtools_devtools_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eofcbnmajmjmplflapaojjnihcjkigck_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eofcbnmajmjmplflapaojjnihcjkigck_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_player.twitch.tv_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_player.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.twitch.tv_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_orteil.dashnet.org_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_orteil.dashnet.org_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_reklama2.viry.cz_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_reklama2.viry.cz_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tokyoplastic.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tokyoplastic.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mjocghlclkpgheifflemilcnblodjohg_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mjocghlclkpgheifflemilcnblodjohg_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_88d6796030686edeb759dc1bbba1c36e.inpref.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_88d6796030686edeb759dc1bbba1c36e.inpref.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_alipay.alibaba.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_alipay.alibaba.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.eu2.amadeus.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.eu2.amadeus.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.flypgs.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.flypgs.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_checkout.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_checkout.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_creative.adobe.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_creative.adobe.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_getadblock.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_getadblock.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ib.slsp.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ib.slsp.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_login.alibaba.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_login.alibaba.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ls.hit.gemius.pl_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ls.hit.gemius.pl_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_mail.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_mail.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_online.turkishairlines.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_online.turkishairlines.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_people.directory.live.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_people.directory.live.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.skype.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.skype.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.twitch.tv_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_signin.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_signin.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_talkgadget.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_talkgadget.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.adobe.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.adobe.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.box.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.box.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.dropbox.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.dropbox.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.nike.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.nike.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.pelikan.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.pelikan.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube-nocookie.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube-nocookie.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_activities.aliexpress.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_activities.aliexpress.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_aukro.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_aukro.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cp.atlas.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cp.atlas.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cs.wikipedia.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cs.wikipedia.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_datacomp.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_datacomp.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_disqus.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_disqus.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_dobruchut.azet.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_dobruchut.azet.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_echa.europa.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_echa.europa.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.wikipedia.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.wikipedia.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_feedback.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_feedback.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_femmefashion.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_femmefashion.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fitmarkbags.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fitmarkbags.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_heidipowell.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_heidipowell.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_imhd.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_imhd.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_living.iprima.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_living.iprima.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ls.hit.gemius.pl_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ls.hit.gemius.pl_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_m.commotion.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_m.commotion.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mediweb.hnonline.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mediweb.hnonline.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mp.pianomedia.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mp.pianomedia.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_my.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_my.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_onlinelibrary.wiley.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_onlinelibrary.wiley.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pisanieprac.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pisanieprac.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.ooyala.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.ooyala.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.vimeo.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.vimeo.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_plnielanu.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_plnielanu.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pmj.bmj.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pmj.bmj.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pretaktovanie.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pretaktovanie.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_s7.addthis.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_s7.addthis.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_scholar.google.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_scholar.google.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-au.imrworldwide.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-au.imrworldwide.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-us.imrworldwide.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-us.imrworldwide.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_shop.lenovo.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_shop.lenovo.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikipedia.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikipedia.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikiquote.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikiquote.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sourceforge.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sourceforge.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_starscelebrity.blog.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_starscelebrity.blog.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stat.cncenter.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stat.cncenter.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stores.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stores.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_style.iprima.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_style.iprima.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vas.cas.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vas.cas.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_webslovnik.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_webslovnik.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adobe.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adobe.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.aliexpress.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.aliexpress.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bscom.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bscom.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.cas.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.cas.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convert-jpg-to-pdf.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convert-jpg-to-pdf.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convertpdftoword.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convertpdftoword.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.engadget.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.engadget.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitmark.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitmark.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitnessguru.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitnessguru.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.flypgs.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.flypgs.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.gotogate.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.gotogate.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hlavnespravy.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hlavnespravy.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.imdb.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.imdb.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.koffee.com.au_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.koffee.com.au_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lenovoshop.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lenovoshop.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.nadosah.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.nadosah.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.noviny.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.noviny.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.pandora.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.pandora.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.photoshop.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.photoshop.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.redtube.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.redtube.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sledujuserialy.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sledujuserialy.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.striebro.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.striebro.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.stuba.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.stuba.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.svetit.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.svetit.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sysnet.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sysnet.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tatrabanka.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tatrabanka.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.teraz.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.teraz.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.the-vampire-diaries.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.the-vampire-diaries.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.topky.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.topky.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.turkishairlines.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.turkishairlines.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.twitch.tv_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.union.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.union.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.utorrent.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.utorrent.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.verypdf.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.verypdf.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.who.int_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.who.int_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikidata.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikidata.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikiskripta.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikiskripta.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.zive.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.zive.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_wwwnc.cdc.gov_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_wwwnc.cdc.gov_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zoom.iprima.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zoom.iprima.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zpravy.idnes.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zpravy.idnes.cz_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Local Extension Settings\dihmnpngfonlhjmgkflpnibiaaliendo deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cfhdojbkjhnklbpkdaibdccddilifddb deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ihdefolnlhckckfalccmkakmkgpficdd deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\https_alipay.alibaba.com_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\https_signin.ebay.com_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\https_www.nike.sk_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\http_mp.pianomedia.eu_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\http_zpravy.idnes.cz_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
==== All HKLM and HKCU SearchScopes ======================
HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... ORM=IESR02
==== Reset Google Chrome ======================
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
==== Empty IE Cache ======================
C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Users\nikyp_000\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Default User\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Users\nikyp_000\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
==== Empty FireFox Cache ======================
C:\Users\lenovo\AppData\Local\Mozilla\Firefox\Profiles\41A66E7E5EE1\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Cache emptied successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=9459 folders=1475 1206448989 bytes)
==== Empty Temp Folders ======================
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\Users\lenovo\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on 22.03.2016 at 9:25:25,54 ======================
Tool run by lenovo on 21.03.2016 at 16:40:16,08.
Microsoft Windows 10 Home 10.0.10586 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\lenovo\Desktop\zoek.exe [Scan all users] [Script inserted]
==== Older Logs ======================
C:\zoek-results2015-10-19-193724.log 15408 bytes
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\Sierra On-Line deleted successfully
C:\PROGRA~3\Comms deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\Users\lenovo\AppData\Local\ActiveSync deleted successfully
C:\Users\lenovo\AppData\Local\NetworkTiles deleted successfully
C:\Users\lenovo\AppData\Local\StardewValley deleted successfully
C:\Users\nikyp_000\AppData\Local\ActiveSync deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3506386250-3181969935-685841320-1002\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1B5D5DBD-C857-4377-A755-06E50B4AC2B0} deleted successfully
HKEY_USERS\S-1-5-21-3506386250-3181969935-685841320-1002\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{639B74F1-0594-432C-97C8-68C8C17A1E1D} deleted successfully
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js:
user_pref("browser.search.defaultenginename", "hohosearch");
user_pref("browser.search.defaultenginename.US", "data:text/plain,browser.search.defaultenginename.US=hohosearch");
user_pref("browser.search.selectedEngine", "hohosearch");
user_pref("keyword.URL", "http://www.hohosearch.com/chrome.php?ui ... toolbar&q=");
Added to C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Deleted from C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F\prefs.js:
user_pref("browser.startup.homepage", "http://www.hohosearch.com/?ts=AHEpC38tC ... ode=ffseng");
user_pref("browser.newtab.url", "http://www.hohosearch.com/?ts=AHEpC38tC ... ode=ffseng");
user_pref("browser.search.defaultenginename", "hohosearch");
user_pref("browser.search.selectedEngine", "hohosearch");
Added to C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Deleted from C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
Added to C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
user.js not found
---- Lines WebSearch removed from prefs.js ----
user_pref("extensions.mywebsearch.prevKwdEnabled", true);
---- Lines mindspark removed from prefs.js ----
user_pref("extensions.toolbar.mindspark._brMembers_.browser.version.last", "45.0");
user_pref("extensions.toolbar.mindspark._brMembers_.BUTTON_STRUCTURE", "[{\"b\":224520315,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224520316,
user_pref("extensions.toolbar.mindspark._brMembers_.firstKnownVersion", "7.38.8.45986");
user_pref("extensions.toolbar.mindspark._brMembers_.homepage", "/index.jhtml?n=782a3570");
user_pref("extensions.toolbar.mindspark._brMembers_.hp.enabled", true);
user_pref("extensions.toolbar.mindspark._brMembers_.hp.guardType", "HPR");
user_pref("extensions.toolbar.mindspark._brMembers_.initialized", true);
user_pref("extensions.toolbar.mindspark._brMembers_.installation.installDate", "2016032112");
user_pref("extensions.toolbar.mindspark._brMembers_.installation.success", true);
user_pref("extensions.toolbar.mindspark._brMembers_.lastActivePing", "1458558648118");
user_pref("extensions.toolbar.mindspark._brMembers_.lastKnownVersion", "7.38.8.45986");
user_pref("extensions.toolbar.mindspark._brMembers_.lssState", "{\"previousLocales\":[\"cs\",\"en-US\",\"en\"],\"supportedLocales\":[\"de\",\"es\",\"p
user_pref("extensions.toolbar.mindspark._brMembers_.options.defaultSearch", false);
user_pref("extensions.toolbar.mindspark._brMembers_.options.homePageEnabled", false);
user_pref("extensions.toolbar.mindspark._brMembers_.options.keywordEnabled", true);
user_pref("extensions.toolbar.mindspark._brMembers_.options.tabEnabled", false);
user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.language", "en");
user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.type", "Toolbar");
user_pref("extensions.toolbar.mindspark._brMembers_.successUrl", "http://www.hohosearch.com/chrome.php?ui ... ptid=amz&t
user_pref("extensions.toolbar.mindspark._brMembers_.toolbarCollapsed", true);
user_pref("extensions.toolbar.mindspark._brMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._brMembers_.\"],\"file
user_pref("extensions.toolbar.mindspark.hp.enabled", true);
user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "yourGSearchfinder@GSearch.com");
user_pref("extensions.toolbar.mindspark.lastInstalled", "yourGSearchfinder@GSearch.com");
---- Lines searches removed from prefs.js ----
user_pref("browser.urlbar.suggest.searches", true);
---- FireFox user.js and prefs.js backups ----
prefs_19.10.2015_2034_.backup
prefs__0023_.backup
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F
user.js not found
---- Lines search.com removed from prefs.js ----
user_pref("browser.search.searchengine.hp", "http://www.hohosearch.com/?ts=AHEpC38tC ... ptid=amz&m
user_pref("browser.search.searchengine.sp", "http://www.hohosearch.com/chrome.php?mo ... .&uid=3EA7
user_pref("browser.search.searchengine.url", "http://www.hohosearch.com/chrome.php?mo ... ..&uid=3EA
---- Lines searches removed from prefs.js ----
user_pref("browser.urlbar.suggest.searches", true);
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 1);
---- FireFox user.js and prefs.js backups ----
prefs_19.10.2015_2034_.backup
prefs__0023_.backup
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default
user.js not found
---- FireFox user.js and prefs.js backups ----
prefs_19.10.2015_2034_.backup
prefs__0023_.backup
==== Deleting Files \ Folders ======================
C:\PROGRA~2\Borderlands The Pre-Sequel not found
C:\PROGRA~2\Sierra On-Line not found
C:\PROGRA~3\Špidla Data Processing, s.r.o not found
C:\Users\lenovo\AppData\Roaming\Factorio deleted
C:\PROGRA~2\Click on browse to specify the directory for extraction deleted
C:\PROGRA~2\Paradox Interactive deleted
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Users\Public\Documents\dmp deleted
C:\windows\SysNative\drivers\TAOKernelEx64.sys deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\GPT.INI deleted
C:\WINDOWS\Syswow64\GroupPolicy\gpt.ini deleted
C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\YourGSearchFinder_br deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"sp@avast.com"="C:\Program Files\AVAST Software\Avast\SafePrice\FF" [09.01.2016 12:14]
==== Firefox Extensions ======================
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
- GsearchFinder - %ProfilePath%\extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi
ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F
- Undetermined - C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\extensions\faststartff@gmail.com
- Undetermined - C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\extensions\d9676068985d4d81bb390a@7be93ab3c8e144f694a0509d5.com
- GsearchFinder - %ProfilePath%\extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
==== Firefox Plugins ======================
Profilepath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
F627791AB91E01A9829A8D9B6E024D52 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll - Shockwave Flash
0E24E57BC24262D1662046779186434A - C:\Users\lenovo\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
774DD80B2D3C05C265C0C119F85E208F - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll - PDF-XChange Viewer
==== Chromium Look ======================
Google Chrome Version: 46.0.2490.86
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
eofcbnmajmjmplflapaojjnihcjkigck - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx[09.01.2016 12:13]
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[09.01.2016 12:13]
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[]
Comodo Drag&Drop Service - lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aneodkojaglhnkkdbbdnmmmgimlcaogo
Comodo Web Inspector - lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bdngekjahnmlkinegnhdmmbcfnmbclnn
Comodo Media Downloader - lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dihmnpngfonlhjmgkflpnibiaaliendo
Facebook Customizer (by Adblock Plus) - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm
Avast SafePrice - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Avast Online Security - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
CoolROM for Chrome - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihdefolnlhckckfalccmkakmkgpficdd
Road Blocks - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldcpoimjjikjcphnnlphcajepbfbdmeo
Google Drive App Launcher - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh
Hover Zoom - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl
Avast SafePrice - nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Avast Online Security - nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
==== Chromium Fix ======================
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aneodkojaglhnkkdbbdnmmmgimlcaogo deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bdngekjahnmlkinegnhdmmbcfnmbclnn deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dihmnpngfonlhjmgkflpnibiaaliendo deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\mcmdgbiocnkpnaccjkailibfgepaccgf deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eadjehomimgheecmioghioappchbhedf deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihdefolnlhckckfalccmkakmkgpficdd deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldcpoimjjikjcphnnlphcajepbfbdmeo deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-devtools_devtools_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eofcbnmajmjmplflapaojjnihcjkigck_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eofcbnmajmjmplflapaojjnihcjkigck_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_player.twitch.tv_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_player.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.twitch.tv_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_orteil.dashnet.org_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_orteil.dashnet.org_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_reklama2.viry.cz_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_reklama2.viry.cz_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tokyoplastic.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tokyoplastic.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mjocghlclkpgheifflemilcnblodjohg_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mjocghlclkpgheifflemilcnblodjohg_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_88d6796030686edeb759dc1bbba1c36e.inpref.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_88d6796030686edeb759dc1bbba1c36e.inpref.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_alipay.alibaba.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_alipay.alibaba.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.eu2.amadeus.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.eu2.amadeus.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.flypgs.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.flypgs.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_checkout.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_checkout.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_creative.adobe.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_creative.adobe.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_getadblock.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_getadblock.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ib.slsp.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ib.slsp.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_login.alibaba.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_login.alibaba.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ls.hit.gemius.pl_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ls.hit.gemius.pl_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_mail.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_mail.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_online.turkishairlines.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_online.turkishairlines.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_people.directory.live.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_people.directory.live.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.skype.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.skype.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.twitch.tv_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_signin.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_signin.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_talkgadget.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_talkgadget.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.adobe.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.adobe.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.box.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.box.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.dropbox.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.dropbox.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.nike.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.nike.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.pelikan.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.pelikan.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube-nocookie.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube-nocookie.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_activities.aliexpress.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_activities.aliexpress.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_aukro.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_aukro.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cp.atlas.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cp.atlas.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cs.wikipedia.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cs.wikipedia.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_datacomp.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_datacomp.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_disqus.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_disqus.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_dobruchut.azet.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_dobruchut.azet.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_echa.europa.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_echa.europa.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.wikipedia.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.wikipedia.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_feedback.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_feedback.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_femmefashion.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_femmefashion.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fitmarkbags.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fitmarkbags.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_heidipowell.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_heidipowell.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_imhd.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_imhd.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_living.iprima.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_living.iprima.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ls.hit.gemius.pl_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ls.hit.gemius.pl_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_m.commotion.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_m.commotion.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mediweb.hnonline.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mediweb.hnonline.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mp.pianomedia.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mp.pianomedia.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_my.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_my.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_onlinelibrary.wiley.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_onlinelibrary.wiley.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pisanieprac.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pisanieprac.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.ooyala.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.ooyala.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.vimeo.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.vimeo.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_plnielanu.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_plnielanu.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pmj.bmj.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pmj.bmj.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pretaktovanie.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pretaktovanie.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_s7.addthis.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_s7.addthis.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_scholar.google.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_scholar.google.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-au.imrworldwide.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-au.imrworldwide.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-us.imrworldwide.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-us.imrworldwide.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_shop.lenovo.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_shop.lenovo.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikipedia.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikipedia.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikiquote.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikiquote.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sourceforge.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sourceforge.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_starscelebrity.blog.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_starscelebrity.blog.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stat.cncenter.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stat.cncenter.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stores.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stores.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_style.iprima.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_style.iprima.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vas.cas.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vas.cas.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_webslovnik.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_webslovnik.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adobe.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adobe.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.aliexpress.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.aliexpress.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bscom.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bscom.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.cas.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.cas.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convert-jpg-to-pdf.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convert-jpg-to-pdf.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convertpdftoword.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convertpdftoword.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.engadget.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.engadget.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitmark.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitmark.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitnessguru.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitnessguru.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.flypgs.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.flypgs.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.gotogate.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.gotogate.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hlavnespravy.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hlavnespravy.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.imdb.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.imdb.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.koffee.com.au_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.koffee.com.au_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lenovoshop.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lenovoshop.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.nadosah.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.nadosah.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.noviny.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.noviny.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.pandora.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.pandora.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.photoshop.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.photoshop.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.redtube.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.redtube.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sledujuserialy.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sledujuserialy.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.striebro.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.striebro.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.stuba.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.stuba.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.svetit.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.svetit.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sysnet.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sysnet.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tatrabanka.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tatrabanka.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.teraz.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.teraz.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.the-vampire-diaries.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.the-vampire-diaries.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.topky.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.topky.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.turkishairlines.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.turkishairlines.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.twitch.tv_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.union.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.union.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.utorrent.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.utorrent.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.verypdf.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.verypdf.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.who.int_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.who.int_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikidata.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikidata.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikiskripta.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikiskripta.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.zive.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.zive.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_wwwnc.cdc.gov_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_wwwnc.cdc.gov_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zoom.iprima.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zoom.iprima.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zpravy.idnes.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zpravy.idnes.cz_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Local Extension Settings\dihmnpngfonlhjmgkflpnibiaaliendo deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cfhdojbkjhnklbpkdaibdccddilifddb deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ihdefolnlhckckfalccmkakmkgpficdd deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\https_alipay.alibaba.com_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\https_signin.ebay.com_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\https_www.nike.sk_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\http_mp.pianomedia.eu_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\http_zpravy.idnes.cz_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
==== All HKLM and HKCU SearchScopes ======================
HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... ORM=IESR02
==== Reset Google Chrome ======================
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
==== Empty IE Cache ======================
C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Users\nikyp_000\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Default User\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Users\nikyp_000\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
==== Empty FireFox Cache ======================
C:\Users\lenovo\AppData\Local\Mozilla\Firefox\Profiles\41A66E7E5EE1\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Cache emptied successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=9459 folders=1475 1206448989 bytes)
==== Empty Temp Folders ======================
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\Users\lenovo\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on 22.03.2016 at 9:25:25,54 ======================
-
- Návštěvník
- Příspěvky: 58
- Registrován: 24 bře 2014 13:34
Re: prosim o kontroly vyskakuji mi cinske webove adresy
Tak co ??
to je všechno nebo jak ? už dva dny na to čekám na vyjádení




Re: prosim o kontroly vyskakuji mi cinske webove adresy
Tak jednak taky chodím do práce
, a já tu čekám na log z mbam a nevidím ho
. Hlavně mi napište, jeslti na Vás pořád něco vyskakuje. 



Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
-
- Návštěvník
- Příspěvky: 58
- Registrován: 24 bře 2014 13:34
Re: prosim o kontroly vyskakuji mi cinske webove adresy
Tyjo sorry toho sem si tam nevsim
dneska to tam jeste hodim takze zitra to tam bude na 100%
jinak uz na me nic nevyskakuje a vypada to ze je vse ok ale tak radsi to udelam
A jinak v pohodě ja mě je jasný že tohle není vaše jedina prace ja jen tak se radsi ozval kdyby neco ale vidim ze chyba byla na moji strane takze sorry 




Re: prosim o kontroly vyskakuji mi cinske webove adresy


Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data
Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.
Vždy před odvirováním počítače zazálohujte důležitá data

Chcete podpořit naše forum? Informace zde

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.