Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosim o kontroly vyskakuji mi cinske webove adresy

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
skimiwriter
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 24 bře 2014 13:34

prosim o kontroly vyskakuji mi cinske webove adresy

#1 Příspěvek od skimiwriter »

Logfile of random's system information tool 1.10 (written by random/random)
Run by lenovo at 2016-03-19 14:43:33
Microsoft Windows 10 Home
System drive C: has 242 GB (27%) free of 905 GB
Total RAM: 8056 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:43:43, on 19.03.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\plugins\QMNetMon\QQPCNetFlow.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRealTimeSpeedup.exe
C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\lenovo\AppData\Roaming\uTorrent\uTorrent.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\lenovo.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://top81.com.cn
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://top81.com.cn
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: Skype for Business Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: QPMIEHelper - {50F4150A-48B2-417A-BE4C-C83F580FB904} - C:\Program Files (x86)\Common Files\Tencent\QQPhoneManager\2.0.201.3192\npQQPhoneManagerExt.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll
O4 - HKLM\..\Run: [331BigDog] "C:\Program Files (x86)\USB Camera\VM331STI.EXE"
O4 - HKLM\..\Run: [Dolby Advanced Audio v2] "C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart
O4 - HKLM\..\Run: [YouCam Mirage] "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [UpdateP2GShortCut] "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Aeria Ignite] "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent
O4 - HKLM\..\Run: [Bonus.SSR.FR12] "C:\Program Files (x86)\ABBYY FineReader 12\Bonus.ScreenshotReader.exe" /autorun
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [un] C:\Users\lenovo\AppData\Local\Temp\un.exe /start
O4 - HKLM\..\Run: [ QQPCTray] "C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe" /regrun
O4 - HKCU\..\Run: [Epson Stylus SX230] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHKE.EXE /FU "C:\Users\lenovo\AppData\Local\Temp\E_S6FE.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [EPSON SX230 Series] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIHKE.EXE /FU "C:\Users\lenovo\AppData\Local\Temp\E_S61D8.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\lenovo\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [uTorrent] "C:\Users\lenovo\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Curse.lnk = lenovo\AppData\Roaming\Curse Client\Bin\Curse.exe
O4 - Startup: Dropbox.lnk = lenovo\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovať do programu Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&oslať do programu OneNote - res://C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.aeriagames.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: ABBYY FineReader 12 PE Licensing Service (ABBYY.Licensing.FineReader.Professional.12.0) - ABBYY Production LLC - C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Autodesk Content Service - Autodesk, Inc. - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @oem80.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) - Unknown owner - C:\WINDOWS\system32\CxAudMsg64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Comodo Security Solutions, Inc. - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\WINDOWS\system32\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Elan Service (ETDService) - ELAN Microelectronics Corp. - C:\Program Files\Elantech\ETDService.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: ggbugreport - Unknown owner - C:\Program Files (x86)\SearchesToYesbnd\bugreport.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: LSCWinService - Lenovo - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) - Nero AG - C:\Program Files (x86)\Nero\Update\NASvc.exe
O23 - Service: NBService - Nero AG - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NMIndexingService - Nero AG - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: QQPCMgr RTP Service (QQPCRTP) - Tencent - C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRTP.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Conexant SmartAudio service (SAService) - Conexant Systems, Inc. - C:\WINDOWS\system32\SAsrv.exe
O23 - Service: ScsiAccess - Unknown owner - C:\Program Files (x86)\Photodex\ProShow Gold\ScsiAccess.exe
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: Sony PC Companion - Avanquest Software - C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Spy Emergency Health Check (SpyEmrgHealth) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyHealth.exe
O23 - Service: Spy Emergency Engine Service (SpyEmrgSrv) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Winsere - Unknown owner - C:\Program Files (x86)\Winsere\Winsere\Winsere.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 17543 bytes

======Listing Processes======







winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\WINDOWS\system32\nvvsvc.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\system32\svchost.exe -k LocalService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-38e6e432-7004-4b8b-8958-38ca5e5ff5d4 -SystemEventPortName:HostProcess-b8f0efda-215a-421b-a16c-8bce055b4ed5 -IoCancelEventPortName:HostProcess-949f7321-3188-4ff4-9e7c-9cee92731ef3 -NonStateChangingEventPortName:HostProcess-8313fdb5-294a-4c39-961c-8806b955d961 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:e79587e2-3503-4f4c-8a7a-54c2e001fb6c -DeviceGroupId:WudfDefaultDevicePool
C:\WINDOWS\System32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
dashost.exe {a1f80910-e7ba-4935-94713e8ef0b08df8}
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\BtwRSupportService.exe
"C:\Program Files (x86)\ABBYY FineReader 12\NetworkLicenseServer.exe" -service
C:\WINDOWS\system32\svchost.exe -k appmodel
C:\WINDOWS\System32\svchost.exe -k utcsvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Elantech\ETDService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\WINDOWS\system32\CxAudMsg64.exe"
"C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe"
"C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe"
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe"
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencyHealth.exe"
"C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe"
"C:\Program Files (x86)\Photodex\ProShow Gold\ScsiAccess.exe"
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" nss 17da29be-f83f-4c83-9a28-d232cbd03145 1
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe"
"C:\Program Files (x86)\Nero\Update\NASvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe" serviceapp
sihost.exe
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\Windows\System32\RuntimeBroker.exe -Embedding
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Elantech\ETDIntelligent.exe"
"C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe"
"C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe"
"C:\Program Files (x86)\Lenovo\Energy Management\utility.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"fontdrvhost.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe" /showasync
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
taskhostw.exe
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRtp.exe" -r
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe" /elevated /regrun
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\plugins\QMNetMon\QQPCNetFlow.exe" /regrun /elevated
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCRealTimeSpeedup.exe"
"C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17347.218\QQPCTray.exe" /slient /PLUGIN_管家蓝屏修复 /pcmgr
"C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca

"C:\WINDOWS\System32\Taskmgr.exe" /3
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" "http://www.hohosearch.com/?ts=AHEpC38tC ... &mode=scrp"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.87 --handshake-handle=0x1c8
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=5648 --on-initialized-event-handle=776 --parent-handle=780 /prefetch:6
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="7400.0.1168941475\125757136" --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --supports-dual-gpus=false --gpu-driver-bug-workarounds=3,11,16,25,54 --gpu-vendor-id=0x8086 --gpu-device-id=0x0106 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=9.17.10.4229 --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.2.103993363\2082447772" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.3.1620095450\671260825" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --extension-process --enable-webrtc-hw-h264-encoding --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.4.1388300808\792575966" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.11.2009834108\1547594659" /prefetch:1
explorer.exe
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.15.965426967\350700473" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.28.1456142746\199760380" /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe272_ Global\UsGthrCtrlFltPipeMssGthrPipe272 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.103.277289221\860729003" /prefetch:1
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Users\lenovo\AppData\Roaming\uTorrent\uTorrent.exe" "magnet:?xt=urn:btih:d6620285f6d59a36fef6f74c97c2af9db9621567&dn=Titan+Souls+%28GOG%29&tr=udp%3A%2F%2Ftracker.openbittorrent.com%3A80&tr=udp%3A%2F%2Fopen.demonii.com%3A1337&tr=udp%3A%2F%2Ftracker.coppersurfer.tk%3A6969&tr=udp%3A%2F%2Fexodus.desync.com%3A6969"
taskeng.exe {391DFA95-6508-46A8-A886-795B7EDB34CB}

taskeng.exe {2E739F5C-C557-4533-A88B-A318EE44049B}
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/*AsyncSetAsDefault/Disabled/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_5/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ChromeSuggestions/Default/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Control_Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/StableHQPFrequencyBugFix_PrePeriod_4/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*SpdyEnableDependencies/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_29/*UMA-Uniformity-Trial-10-Percent/group_03/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_02/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --user-data-dir="C:\Users\lenovo\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108" --disable-client-side-phishing-detection --instant-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --channel="7400.104.1290476034\296708203" /prefetch:1
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 608 612 620 8192 616
"C:\Users\lenovo\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontroly vyskakuji mi cinske webove adresy

#2 Příspěvek od motji »

Zdravím :)

:arrow: Stáhněte AdwCleaner http://www.bleepingcomputer.com/download/adwcleaner/
-Uložte program na plochu a ukončete všechny spuštěné programy .
-spusťte AdwCleaner, klikněte na Scan a po dokončení skenu na Clean
- provede se oprava, restartuje se pc - (případně restartujte) a objeví se log C:\AdwCleaner\AdwCleaner.txt , obsah logu zkopírujte zde.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

skimiwriter
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 24 bře 2014 13:34

Re: prosim o kontroly vyskakuji mi cinske webove adresy

#3 Příspěvek od skimiwriter »

# AdwCleaner v5.103 - Logfile created 21/03/2016 at 11:54:40
# Updated 20/03/2016 by Xplode
# Database : 2016-03-21.1 [Server]
# Operating system : Windows 10 Home (x64)
# Username : lenovo - SKIMI
# Running from : C:\Users\lenovo\Desktop\AdwCleaner.exe
# Option : Clean
# Support : http://toolslib.net/forum

***** [ Services ] *****

[-] Service Deleted : TSDefenseBt
[-] Service Deleted : TSSysKit
[-] Service Deleted : QMUdisk
[-] Service Deleted : TS888x64
[-] Service Deleted : QQSysMonX64
[-] Service Deleted : TFsFlt
[!] Service Not Deleted : TAOKernelDriver
[-] Service Deleted : softaal
[-] Service Deleted : SRepairDrv

***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files (x86)\tencent
[-] Folder Deleted : C:\Program Files (x86)\SearchesToYesbnd
[-] Folder Deleted : C:\Program Files (x86)\Winsere
[-] Folder Deleted : C:\Program Files (x86)\WinTaske
[-] Folder Deleted : C:\Program Files (x86)\Common Files\tencent
[#] Folder Deleted : C:\Program Files\Common Files\tencent
[-] Folder Deleted : C:\ProgramData\tencent
[-] Folder Deleted : C:\ProgramData\TXQMPC
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\腾讯软件
[-] Folder Deleted : C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ooebklgpfnbcnpokahmdidgbmlcdepkm
[-] Folder Deleted : C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl
[-] Folder Deleted : C:\Users\lenovo\AppData\Local\Temp\tencent
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\tencent
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\SpringFiles
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
[-] Folder Deleted : C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\YourGSearchFinder_br
[#] Folder Deleted : C:\WINDOWS\SysNative\Tasks\WinTaske
[-] Folder Deleted : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\tencent

***** [ Files ] *****

[-] File Deleted : C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage
[-] File Deleted : C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage
[-] File Deleted : C:\WINDOWS\SysNative\drivers\TFsFltX64.sys
[-] File Deleted : C:\WINDOWS\SysWOW64\drivers\TS888x64.sys

***** [ DLLs ] *****


***** [ Shortcuts ] *****

[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Borderlands The Pre-Sequel.lnk
[-] Shortcut Disinfected : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games\Borderlands 2\Borderlands 2.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\Desktop\Programs\Google Chrome.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\Desktop\Programs\Tor Browser\Start Tor Browser.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\Desktop\Games\The Vanishing of Ethan Carter.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk
[-] Shortcut Disinfected : C:\Users\lenovo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk

***** [ Scheduled tasks ] *****

[-] Task Deleted : WinTaske

***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP
[-] Key Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP
[-] Key Deleted : HKLM\SOFTWARE\MICROSOFT\SYSTEMCERTIFICATES\ROOT\CERTIFICATES\26D9E607FFF0C58C7844B47FF8B6E079E5A2220E
[-] Key Deleted : HKLM\SOFTWARE\microsoft\windows nt\currentversion\Image File Execution Options\MsMpEng.exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\metnsd
[-] Key Deleted : HKLM\SOFTWARE\Classes\NTService.Control.1
[-] Key Deleted : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{50F4150A-48B2-417A-BE4C-C83F580FB904}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{754DF2CE-51E8-4895-B53C-6381418B84AE}
[-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7BC34A3-BA86-11CF-84B1-CBC2DA68BF6C}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7BC34A1-BA86-11CF-84B1-CBC2DA68BF6C}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50F4150A-48B2-417A-BE4C-C83F580FB904}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{50F4150A-48B2-417A-BE4C-C83F580FB904}
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{29B6CFD5-0064-411A-8C42-9890C83F9921}
[-] Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved [{754DF2CE-51E8-4895-B53C-6381418B84AE}]
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7BC34A1-BA86-11CF-84B1-CBC2DA68BF6C}
[-] Key Deleted : HKCU\Software\VNT
[-] Key Deleted : HKLM\SOFTWARE\hohosearchSoftware
[-] Key Deleted : HKU\S-1-5-21-3506386250-3181969935-685841320-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\App Lid
[-] Key Deleted : HKU\S-1-5-21-3506386250-3181969935-685841320-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Crossrider
[-] Key Deleted : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tab]
[-] Data Restored : HKU\S-1-5-21-3506386250-3181969935-685841320-1002\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{E07FEB5D-9B81-483F-8F46-A9FF09BEE32F}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{FE76D7ED-F4C9-4482-A3E5-CE45132622DD}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{F729ECB3-3A82-4B74-B2D3-BD425EC763F3}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{25012AE5-8B8F-4181-8AB3-827F00C85C9E}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{702919C6-D267-4B04-9FD7-F4AA63598688}]
[-] Value Deleted : HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules [{F0965A2C-51F5-4C93-9390-588275363B96}]
[-] Key Deleted : HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.com/download_winamp/

***** [ Web browsers ] *****

[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.newtab.url", "hxxp://www.hohosearch.com/?ts=AHEpC38tC38pA0.. ... ode=ffseng");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.hp", "hxxp://www.hohosearch.com/?ts=AHEpC38tC38pA0.. ... =ffsengext");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.sp", "hxxp://www.hohosearch.com/chrome.php?mode=ffse ... v=20160317");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.url", "hxxp://www.hohosearch.com/chrome.php?mode=ffse ... v=20160317");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.startup.homepage", "hxxp://www.hohosearch.com/?ts=AHEpC38tC38pA0.. ... ode=ffseng");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.mywebsearch.prevKwdEnabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.BUTTON_STRUCTURE", "[{\"b\":224520315,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224520316,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.browser.version.last", "45.0");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.firstKnownVersion", "7.38.8.45986");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.homepage", "/index.jhtml?n=782a34aa");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.hp.enabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.hp.guardType", "HPR");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.initialized", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.installation.installDate", "2016031914");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.installation.success", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lastActivePing", "1458553849412");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lastKnownVersion", "7.38.8.45986");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lssState", "{\"previousLocales\":[\"cs\",\"en-US\",\"en\"],\"supportedLocales\":[\"de\",\"es\",\"pt\",\"ja\",\"en\"],\"defaultLocale\":\"en\",\"supp[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.defaultSearch", false);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.homePageEnabled", false);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.keywordEnabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.tabEnabled", false);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.language", "en");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.type", "Toolbar");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.successUrl", "hxxp://www.hohosearch.com/chrome.php?uid=3EA72 ... toolbar&q=[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.toolbarCollapsed", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._brMembers_.\"],\"filesToDelete\":[\"C:\\\\Users\\\\lenovo\\\\AppData\\\[...]
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled", true);
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "yourGSearchfinder@GSearch.com");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark.lastInstalled", "yourGSearchfinder@GSearch.com");
[-] [C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("keyword.URL", "hxxp://www.hohosearch.com/chrome.php?uid=3EA72 ... toolbar&q=");
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : lacnetonery.sk
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : dungeon-defenders.en.softonic.com
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : baldurs-gate-2.en.softonic.com
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.default-search.net?sid=476&aid=113& ... 77&src=hmp
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.mystartsearch.com/?type=hp&ts=14152 ... J9ECA38641
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.istartsurf.com/?type=hp&ts=14449986 ... J9ECA38641
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Deleted : hxxp://www.mystartsearch.com/?type=hp&ts=14449 ... J9ECA38641
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : nonjdcjchghhkdoolnlbekcfllmednbl
[-] [C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : ooebklgpfnbcnpokahmdidgbmlcdepkm

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [787 bytes] - [21/03/2016 11:00:24]
C:\AdwCleaner\AdwCleaner[C2].txt - [16065 bytes] - [21/03/2016 11:54:40]
C:\AdwCleaner\AdwCleaner[S1].txt - [21167 bytes] - [21/03/2016 10:55:42]
C:\AdwCleaner\AdwCleaner[S2].txt - [16048 bytes] - [21/03/2016 11:49:34]

########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [16287 bytes] ##########

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontroly vyskakuji mi cinske webove adresy

#4 Příspěvek od motji »

Pěkné:D
vyosek píše::arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem

:arrow: Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken

NIC NEMAZAT :!:
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontroly vyskakuji mi cinske webove adresy

#5 Příspěvek od motji »

A ještě obnovte prohlížeče dle tohoto návodu

https://www.pcrisk.cz/jak-odstranit-spy ... cu-vychozi
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

skimiwriter
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 24 bře 2014 13:34

Re: prosim o kontroly vyskakuji mi cinske webove adresy

#6 Příspěvek od skimiwriter »

Ok :D všechno udělám akorát ještě teda se mi dneska povedlo odinstalovat nějakej ten čínskej program kterej se choval jako nejakej cleaner a zrychlovac pc něco jak jsou ty ruzny aplikace na telefon a stím se mi vymazal i google chrome kterej sem uz znova nainstaloval jinak ten reset jsem teda jeste taky udelal toho prohlizece. jdu na ten zoek ;) akorat teda mam problem ty veci jsem tam zkopiroval ale to run scan nebo co tam nemam vubec takovou moznost :D P.S. ok zkusil jsem znova zapnout a je to tam :D

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontroly vyskakuji mi cinske webove adresy

#7 Příspěvek od motji »

:D
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

skimiwriter
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 24 bře 2014 13:34

Re: prosim o kontroly vyskakuji mi cinske webove adresy

#8 Příspěvek od skimiwriter »

Zoek.exe v5.0.0.1 Updated 31-December-2015
Tool run by lenovo on 21.03.2016 at 16:40:16,08.
Microsoft Windows 10 Home 10.0.10586 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\lenovo\Desktop\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2015-10-19-193724.log 15408 bytes

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\Sierra On-Line deleted successfully
C:\PROGRA~3\Comms deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\Users\lenovo\AppData\Local\ActiveSync deleted successfully
C:\Users\lenovo\AppData\Local\NetworkTiles deleted successfully
C:\Users\lenovo\AppData\Local\StardewValley deleted successfully
C:\Users\nikyp_000\AppData\Local\ActiveSync deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3506386250-3181969935-685841320-1002\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1B5D5DBD-C857-4377-A755-06E50B4AC2B0} deleted successfully
HKEY_USERS\S-1-5-21-3506386250-3181969935-685841320-1002\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{639B74F1-0594-432C-97C8-68C8C17A1E1D} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js:
user_pref("browser.search.defaultenginename", "hohosearch");
user_pref("browser.search.defaultenginename.US", "data:text/plain,browser.search.defaultenginename.US=hohosearch");
user_pref("browser.search.selectedEngine", "hohosearch");
user_pref("keyword.URL", "http://www.hohosearch.com/chrome.php?ui ... toolbar&q=");

Added to C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F\prefs.js:
user_pref("browser.startup.homepage", "http://www.hohosearch.com/?ts=AHEpC38tC ... ode=ffseng");
user_pref("browser.newtab.url", "http://www.hohosearch.com/?ts=AHEpC38tC ... ode=ffseng");
user_pref("browser.search.defaultenginename", "hohosearch");
user_pref("browser.search.selectedEngine", "hohosearch");

Added to C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Added to C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1

user.js not found
---- Lines WebSearch removed from prefs.js ----
user_pref("extensions.mywebsearch.prevKwdEnabled", true);
---- Lines mindspark removed from prefs.js ----
user_pref("extensions.toolbar.mindspark._brMembers_.browser.version.last", "45.0");
user_pref("extensions.toolbar.mindspark._brMembers_.BUTTON_STRUCTURE", "[{\"b\":224520315,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224520316,
user_pref("extensions.toolbar.mindspark._brMembers_.firstKnownVersion", "7.38.8.45986");
user_pref("extensions.toolbar.mindspark._brMembers_.homepage", "/index.jhtml?n=782a3570");
user_pref("extensions.toolbar.mindspark._brMembers_.hp.enabled", true);
user_pref("extensions.toolbar.mindspark._brMembers_.hp.guardType", "HPR");
user_pref("extensions.toolbar.mindspark._brMembers_.initialized", true);
user_pref("extensions.toolbar.mindspark._brMembers_.installation.installDate", "2016032112");
user_pref("extensions.toolbar.mindspark._brMembers_.installation.success", true);
user_pref("extensions.toolbar.mindspark._brMembers_.lastActivePing", "1458558648118");
user_pref("extensions.toolbar.mindspark._brMembers_.lastKnownVersion", "7.38.8.45986");
user_pref("extensions.toolbar.mindspark._brMembers_.lssState", "{\"previousLocales\":[\"cs\",\"en-US\",\"en\"],\"supportedLocales\":[\"de\",\"es\",\"p
user_pref("extensions.toolbar.mindspark._brMembers_.options.defaultSearch", false);
user_pref("extensions.toolbar.mindspark._brMembers_.options.homePageEnabled", false);
user_pref("extensions.toolbar.mindspark._brMembers_.options.keywordEnabled", true);
user_pref("extensions.toolbar.mindspark._brMembers_.options.tabEnabled", false);
user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.language", "en");
user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.type", "Toolbar");
user_pref("extensions.toolbar.mindspark._brMembers_.successUrl", "http://www.hohosearch.com/chrome.php?ui ... ptid=amz&t
user_pref("extensions.toolbar.mindspark._brMembers_.toolbarCollapsed", true);
user_pref("extensions.toolbar.mindspark._brMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._brMembers_.\"],\"file
user_pref("extensions.toolbar.mindspark.hp.enabled", true);
user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "yourGSearchfinder@GSearch.com");
user_pref("extensions.toolbar.mindspark.lastInstalled", "yourGSearchfinder@GSearch.com");
---- Lines searches removed from prefs.js ----
user_pref("browser.urlbar.suggest.searches", true);
---- FireFox user.js and prefs.js backups ----

prefs_19.10.2015_2034_.backup
prefs__0023_.backup

ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F

user.js not found
---- Lines search.com removed from prefs.js ----
user_pref("browser.search.searchengine.hp", "http://www.hohosearch.com/?ts=AHEpC38tC ... ptid=amz&m
user_pref("browser.search.searchengine.sp", "http://www.hohosearch.com/chrome.php?mo ... .&uid=3EA7
user_pref("browser.search.searchengine.url", "http://www.hohosearch.com/chrome.php?mo ... ..&uid=3EA
---- Lines searches removed from prefs.js ----
user_pref("browser.urlbar.suggest.searches", true);
---- Lines browser.startup.page removed from prefs.js ----
user_pref("browser.startup.page", 1);
---- FireFox user.js and prefs.js backups ----

prefs_19.10.2015_2034_.backup
prefs__0023_.backup

ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_19.10.2015_2034_.backup
prefs__0023_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\Borderlands The Pre-Sequel not found
C:\PROGRA~2\Sierra On-Line not found
C:\PROGRA~3\Špidla Data Processing, s.r.o not found
C:\Users\lenovo\AppData\Roaming\Factorio deleted
C:\PROGRA~2\Click on browse to specify the directory for extraction deleted
C:\PROGRA~2\Paradox Interactive deleted
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Users\Public\Documents\dmp deleted
C:\windows\SysNative\drivers\TAOKernelEx64.sys deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\GPT.INI deleted
C:\WINDOWS\Syswow64\GroupPolicy\gpt.ini deleted
C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\YourGSearchFinder_br deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"sp@avast.com"="C:\Program Files\AVAST Software\Avast\SafePrice\FF" [09.01.2016 12:14]

==== Firefox Extensions ======================

ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
- GsearchFinder - %ProfilePath%\extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi

ProfilePath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\CCACCBF1-7AB4-4CF5-B32D-668C686A539F
- Undetermined - C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\extensions\faststartff@gmail.com
- Undetermined - C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\e755gawf.default\extensions\d9676068985d4d81bb390a@7be93ab3c8e144f694a0509d5.com
- GsearchFinder - %ProfilePath%\extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi

AppDir: C:\Program Files (x86)\Mozilla Firefox
- Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi

==== Firefox Plugins ======================

Profilepath: C:\Users\lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
F627791AB91E01A9829A8D9B6E024D52 - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll - Shockwave Flash
0E24E57BC24262D1662046779186434A - C:\Users\lenovo\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll - Unity Player
774DD80B2D3C05C265C0C119F85E208F - C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll - PDF-XChange Viewer


==== Chromium Look ======================

Google Chrome Version: 46.0.2490.86

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
eofcbnmajmjmplflapaojjnihcjkigck - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx[09.01.2016 12:13]
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[09.01.2016 12:13]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[]

Comodo Drag&Drop Service - lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aneodkojaglhnkkdbbdnmmmgimlcaogo
Comodo Web Inspector - lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bdngekjahnmlkinegnhdmmbcfnmbclnn
Comodo Media Downloader - lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dihmnpngfonlhjmgkflpnibiaaliendo
Facebook Customizer (by Adblock Plus) - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm
Avast SafePrice - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Avast Online Security - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
CoolROM for Chrome - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihdefolnlhckckfalccmkakmkgpficdd
Road Blocks - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldcpoimjjikjcphnnlphcajepbfbdmeo
Google Drive App Launcher - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh
Hover Zoom - lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl
Avast SafePrice - nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Avast Online Security - nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki

==== Chromium Fix ======================

C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\aneodkojaglhnkkdbbdnmmmgimlcaogo deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\bdngekjahnmlkinegnhdmmbcfnmbclnn deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\dihmnpngfonlhjmgkflpnibiaaliendo deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\mcmdgbiocnkpnaccjkailibfgepaccgf deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\deoeenbkoccjaefmmhpmlegngdjohdcm deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eadjehomimgheecmioghioappchbhedf deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihdefolnlhckckfalccmkakmkgpficdd deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldcpoimjjikjcphnnlphcajepbfbdmeo deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nonjdcjchghhkdoolnlbekcfllmednbl deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-devtools_devtools_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eofcbnmajmjmplflapaojjnihcjkigck_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_eofcbnmajmjmplflapaojjnihcjkigck_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_player.twitch.tv_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_player.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.twitch.tv_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_orteil.dashnet.org_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_orteil.dashnet.org_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_reklama2.viry.cz_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_reklama2.viry.cz_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tokyoplastic.com_0.localstorage deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tokyoplastic.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gighmmpiobklfepjocnamgkkbiglidom_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mjocghlclkpgheifflemilcnblodjohg_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mjocghlclkpgheifflemilcnblodjohg_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nonjdcjchghhkdoolnlbekcfllmednbl_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_88d6796030686edeb759dc1bbba1c36e.inpref.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_88d6796030686edeb759dc1bbba1c36e.inpref.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_alipay.alibaba.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_alipay.alibaba.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.eu2.amadeus.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.eu2.amadeus.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.flypgs.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_book.flypgs.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_checkout.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_checkout.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_clients5.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_creative.adobe.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_creative.adobe.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_f.vimeocdn.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_getadblock.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_getadblock.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ib.slsp.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ib.slsp.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_login.alibaba.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_login.alibaba.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ls.hit.gemius.pl_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ls.hit.gemius.pl_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_mail.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_mail.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_online.turkishairlines.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_online.turkishairlines.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_people.directory.live.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_people.directory.live.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_plus.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.skype.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.skype.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.twitch.tv_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_secure.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_signin.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_signin.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_talkgadget.google.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_talkgadget.google.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.adobe.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.adobe.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.box.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.box.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.dropbox.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.dropbox.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.facebook.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.google.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.nike.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.nike.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.pelikan.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.pelikan.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.tipsport.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube-nocookie.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube-nocookie.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_www.youtube.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_activities.aliexpress.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_activities.aliexpress.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_aukro.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_aukro.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cp.atlas.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cp.atlas.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cs.wikipedia.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_cs.wikipedia.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_datacomp.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_datacomp.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_disqus.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_disqus.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_dobruchut.azet.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_dobruchut.azet.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_echa.europa.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_echa.europa.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.wikipedia.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_en.wikipedia.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_feedback.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_feedback.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_femmefashion.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_femmefashion.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fitmarkbags.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fitmarkbags.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_heidipowell.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_heidipowell.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_imhd.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_imhd.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_living.iprima.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_living.iprima.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ls.hit.gemius.pl_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_ls.hit.gemius.pl_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_m.commotion.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_m.commotion.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mediweb.hnonline.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mediweb.hnonline.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mp.pianomedia.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_mp.pianomedia.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_my.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_my.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_onlinelibrary.wiley.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_onlinelibrary.wiley.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pisanieprac.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pisanieprac.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.ooyala.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.ooyala.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.vimeo.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_player.vimeo.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_plnielanu.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_plnielanu.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pmj.bmj.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pmj.bmj.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pretaktovanie.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_pretaktovanie.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_s7.addthis.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_s7.addthis.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_scholar.google.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_scholar.google.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-au.imrworldwide.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-au.imrworldwide.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-us.imrworldwide.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_secure-us.imrworldwide.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_shop.lenovo.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_shop.lenovo.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikipedia.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikipedia.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikiquote.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sk.wikiquote.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sourceforge.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_sourceforge.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_starscelebrity.blog.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_starscelebrity.blog.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stat.cncenter.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stat.cncenter.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stores.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_stores.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_style.iprima.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_style.iprima.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vas.cas.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vas.cas.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_webslovnik.zoznam.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_webslovnik.zoznam.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adobe.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.adobe.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.aliexpress.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.aliexpress.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bscom.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.bscom.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.cas.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.cas.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convert-jpg-to-pdf.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convert-jpg-to-pdf.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convertpdftoword.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.convertpdftoword.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ebay.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.ebay.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.engadget.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.engadget.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitmark.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitmark.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitnessguru.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.fitnessguru.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.flypgs.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.flypgs.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.gotogate.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.gotogate.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hlavnespravy.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.hlavnespravy.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.imdb.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.imdb.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.koffee.com.au_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.koffee.com.au_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lenovoshop.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.lenovoshop.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.nadosah.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.nadosah.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.noviny.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.noviny.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.pandora.net_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.pandora.net_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.photoshop.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.photoshop.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.redtube.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.redtube.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sledujuserialy.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sledujuserialy.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.striebro.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.striebro.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.stuba.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.stuba.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.svetit.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.svetit.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sysnet.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.sysnet.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tatrabanka.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.tatrabanka.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.teraz.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.teraz.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.the-vampire-diaries.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.the-vampire-diaries.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.topky.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.topky.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.turkishairlines.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.turkishairlines.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.twitch.tv_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.twitch.tv_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.union.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.union.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.utorrent.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.utorrent.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.verypdf.com_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.verypdf.com_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.who.int_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.who.int_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikidata.org_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikidata.org_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikiskripta.eu_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.wikiskripta.eu_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.zive.sk_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.zive.sk_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_wwwnc.cdc.gov_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_wwwnc.cdc.gov_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zoom.iprima.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zoom.iprima.cz_0.localstorage-journal deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zpravy.idnes.cz_0.localstorage deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_zpravy.idnes.cz_0.localstorage-journal deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Local Extension Settings\dihmnpngfonlhjmgkflpnibiaaliendo deleted successfully
C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\cfhdojbkjhnklbpkdaibdccddilifddb deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ihdefolnlhckckfalccmkakmkgpficdd deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\https_alipay.alibaba.com_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\https_signin.ebay.com_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\https_www.nike.sk_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\http_mp.pianomedia.eu_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\databases\http_zpravy.idnes.cz_0 deleted successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ghbmnnjooekpmoecnnnilnnbdlolhkhi deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... ORM=IESR02

==== Reset Google Chrome ======================

C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Users\nikyp_000\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Default User\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\lenovo\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Users\nikyp_000\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

C:\Users\lenovo\AppData\Local\Mozilla\Firefox\Profiles\41A66E7E5EE1\cache2 emptied successfully

==== Empty Chrome Cache ======================

C:\Users\lenovo\AppData\Local\Comodo\Dragon\User Data\Default\Cache emptied successfully
C:\Users\lenovo\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\nikyp_000\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=9459 folders=1475 1206448989 bytes)

==== Empty Temp Folders ======================

C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\lenovo\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on 22.03.2016 at 9:25:25,54 ======================

skimiwriter
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 24 bře 2014 13:34

Re: prosim o kontroly vyskakuji mi cinske webove adresy

#9 Příspěvek od skimiwriter »

Tak co ?? :D to je všechno nebo jak ? už dva dny na to čekám na vyjádení :D :thumbsup:

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontroly vyskakuji mi cinske webove adresy

#10 Příspěvek od motji »

Tak jednak taky chodím do práce :) , a já tu čekám na log z mbam a nevidím ho :?: . Hlavně mi napište, jeslti na Vás pořád něco vyskakuje. :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

skimiwriter
Návštěvník
Návštěvník
Příspěvky: 58
Registrován: 24 bře 2014 13:34

Re: prosim o kontroly vyskakuji mi cinske webove adresy

#11 Příspěvek od skimiwriter »

Tyjo sorry toho sem si tam nevsim :D dneska to tam jeste hodim takze zitra to tam bude na 100% :D jinak uz na me nic nevyskakuje a vypada to ze je vse ok ale tak radsi to udelam :D A jinak v pohodě ja mě je jasný že tohle není vaše jedina prace ja jen tak se radsi ozval kdyby neco ale vidim ze chyba byla na moji strane takze sorry :P

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: prosim o kontroly vyskakuji mi cinske webove adresy

#12 Příspěvek od motji »

:D v pohodě, já si říkala kde je ten log :D
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Odpovědět