Премини към съдържанието

Константин Анжело

Потребител
  • Публикации

    22
  • Регистрация

  • Последно онлайн

Харесвания

3 Неутрална репутация

Всичко за Константин Анжело

  • Титла
    Потребител
  1. много съм ви благодарен за оделеното време благодаря от ново лек ден и на вас !!!
  2. All processes killed========== OTL ==========Service esgiguard stopped successfully!Service esgiguard deleted successfully!File C:Program FilesEnigma Software GroupSpyHunteresgiguard.sys not found.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0_localesen folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0_locales folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbsl folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tblibjquery.alertsimages folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tblibjquery.alerts folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tblib folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbcore folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaWEATHERjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaWEATHERcss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaWEATHER folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaTWITTERresources folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaTWITTERjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaTWITTERimg folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaTWITTER folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaSEARCHviewstylersx folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaSEARCHviewstyle folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaSEARCHviewscript folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaSEARCHview folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaSEARCHresources folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaSEARCHjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaSEARCHCss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaSEARCHbuildSettings folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaSEARCH folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaRADIO_PLAYERjsresources folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaRADIO_PLAYERjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaRADIO_PLAYERcsscustom-theme folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaRADIO_PLAYERcss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaRADIO_PLAYER folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaPRICE_GONGmenu_dlg folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaPRICE_GONGimages folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaPRICE_GONGcsscustom-theme folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaPRICE_GONGcss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaPRICE_GONGagreement folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaPRICE_GONG folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaOptimizerjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaOptimizer folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaNOTIFICATIONjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaNOTIFICATIONimageslight folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaNOTIFICATIONimagesdark folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaNOTIFICATIONimages folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaNOTIFICATIONcss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaNOTIFICATION folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaMULTI_RSSjsresources folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaMULTI_RSSjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaMULTI_RSSimg folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaMULTI_RSScss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaMULTI_RSS folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaHIGHLIGHTERjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaHIGHLIGHTERcss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaHIGHLIGHTER folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaEMAIL_NOTIFIERjsplugins folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaEMAIL_NOTIFIERjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaEMAIL_NOTIFIERcss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaEMAIL_NOTIFIER folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaAPPLICATION_BUTTONresources folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaAPPLICATION_BUTTONJs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwaAPPLICATION_BUTTON folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalwa folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluimenujs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluimenuimg folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluimenucss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluimenu folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluigfjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluigfimg folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluigfcss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluigf folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluigadgetFrame folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluidlgftdimages folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluidlgftd folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaluidlg folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalui folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalspspsdimages folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalspspsd folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalspspbdimages folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalspspbd folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalspjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalsp folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaloptionsjsresources folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaloptionsjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaloptionsimages folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaloptionscss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbaloptions folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalmsd folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalapi folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalacres folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalacimg folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalaccss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalac folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalaboutBoxjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalaboutBoximages folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbalaboutBox folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tbal folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0tb folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0SearchNewTabPagesjs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0SearchNewTabPagesimg folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0SearchNewTabPageshtml folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0SearchNewTabPagescss folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0SearchNewTabPagesAPI folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0SearchNewTabPages folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0Searchhtml folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0Search folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0plugins folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0jstoolbarAPI folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0jstabsback folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0jstabs folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0jsoptions folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0jslib folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0js folder moved successfully.C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultExtensionsklibnahbojhkanfgaglnlalfkgpcppfi10.15.2.523_0 folder moved successfully.Service vToolbarUpdater15.1.0 stopped successfully!Service vToolbarUpdater15.1.0 deleted successfully!File C:Program FilesCommon FilesAVG Secure SearchvToolbarUpdater15.1.0ToolbarUpdater.exe not found.Service avgtp stopped successfully!Service avgtp deleted successfully!C:WindowsSystem32driversavgtpx86.sys moved successfully.Registry key HKEY_LOCAL_MACHINESoftwareMozillaPlugins@pandasecurity.com/activescan deleted successfully.C:Program FilesEmsisoft Anti-Malware folder moved successfully.C:UsersKonstantinAppDataLocalAVG SafeGuard toolbarSiteSafety folder moved successfully.C:UsersKonstantinAppDataLocalAVG SafeGuard toolbarDNT folder moved successfully.C:UsersKonstantinAppDataLocalAVG SafeGuard toolbar folder moved successfully.File C:WindowsSystem32driversavgtpx86.sys not found.C:WindowsSystem32driverstmcomm.sys moved successfully.========== COMMANDS ========== [EMPTYTEMP] User: admin->Temp folder emptied: 0 bytes->Temporary Internet Files folder emptied: 67 bytes->Google Chrome cache emptied: 11670754 bytes->Flash cache emptied: 56466 bytes User: All Users User: Default->Temp folder emptied: 0 bytes->Temporary Internet Files folder emptied: 0 bytes->Flash cache emptied: 56466 bytes User: Default User->Temp folder emptied: 0 bytes->Temporary Internet Files folder emptied: 0 bytes->Flash cache emptied: 0 bytes User: Konstantin->Temp folder emptied: 65517509 bytes->Temporary Internet Files folder emptied: 23397621 bytes->Java cache emptied: 679120 bytes->FireFox cache emptied: 366181437 bytes->Google Chrome cache emptied: 367741708 bytes->Opera cache emptied: 1474796 bytes->Flash cache emptied: 11042 bytes User: Public->Temp folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes%systemroot% .tmp files removed: 3141547 bytes%systemroot%System32 .tmp files removed: 0 bytes%systemroot%System32drivers .tmp files removed: 0 bytesWindows Temp folder emptied: 26762821 bytesRecycleBin emptied: 0 bytes Total Files Cleaned = 827,00 mb Restore point Set: OTL Restore Point OTL by OldTimer - Version 3.2.69.0 log created on 04282013_105619 FilesFolders moved on Reboot...File move failed. C:Windowstempvmware-SYSTEMvmauthd.log scheduled to be moved on reboot.C:Windowstempvmware-SYSTEMvmware-usbarb-SYSTEM-2040.log moved successfully. PendingFileRenameOperations files... Registry entries deleted on Reboot...
  3. Не доста добре варви в момента за кое то съм ти много благодарен !
  4. Здравеи ESET Online Scanner Уверете се, че е премахната отметката от: [*]Remove found threats Уверете се че са маркирани следните позиции: [*]Scan Archives Кликнете върху Advanced Settings и маркирайте следните опции: [*]Scan for potentially unwanted applications [*]Scan for potentially unsafe applications [*]Enable Anti-Stealth Technology до тук добре давам старт почва да сканира поне 20 пъти пробвах стига до C:Config.Msi3cde2.rbf това в продалжение на 7 минути после забива лаптопа показва син екран и се рестартира ... Malwarebytes' Anti-Malware сканирането мина добре не уткри нищо
  5. Здравеи те извинете за закаснението исползвам прокси на мозила прес него влизам в замунда нет поради простата причина нямам достап от австриа http://www.xroxy.com/proxy-country-BG.htm това е саита а за горе посоченото ип не съм сигорен дали съм го исползвал Results of screen317's Security Check version 0.99.63 Windows 7 x86 (UAC is enabled) Out of date service pack!! Internet Explorer 9 ``````````````Antivirus/Firewall Check:`````````````` Windows Firewall Enabled! WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware, версия 1.75.0.1300 Java 7 Update 17 Java version out of Date! Adobe Flash Player 11.7.700.169 Adobe Reader XI Mozilla Firefox (20.0.1) Google Chrome 26.0.1410.43 Google Chrome 26.0.1410.64 ````````Process Check: objlist.exe by Laurent```````` `````````````````System Health check````````````````` Total Fragmentation on Drive C: 9% ````````````````````End of Log``````````````````````
  6. RogueKiller V8.5.4 [Mar 18 2013] by Tigzy mail : tigzyRK<at>gmail<dot>com Feedback : http://www.geekstogo.com/forum/files/file/413-roguekiller/ Website : http://tigzy.geekstogo.com/roguekiller.php Blog : http://tigzyrk.blogspot.com/ Operating System : Windows 7 (6.1.7600 ) 32 bits version Started in : Normal mode User : Konstantin [Admin rights] Mode : Scan -- Date : 04/18/2013 21:17:35 | ARK || FAK || MBR | ¤¤¤ Bad processes : 2 ¤¤¤ [sUSP PATH] 4952_cstrike[1].exe -- C:UsersKonstantinAppDataLocalMicrosoftWindowsTemporary Internet FilesContent.IE5FXK6XMLZ4952_cstrike[1].exe [-] -> KILLED [TermProc] [sVCHOST] svchost.exe -- C:CSFilessvchost.exe [x] -> KILLED [TermProc] ¤¤¤ Registry Entries : 24 ¤¤¤ [RUN][HJNAME] HKLM[...]Run : Omega-Drive v0001f.4 (C:CSFilessvchost.exe) [-] -> FOUND [TASK][bLPATH] schedule!3036567561.job : C:ProgramDataBetterSoftOptimizerProOptimizerPro.exe /schedule /profile "c:programdatabettersoftoptimizerpro3036567561.ini" [x] -> FOUND [TASK][sUSP PATH] DealPly : C:UsersKONSTA~1AppDataRoamingDealPlyUPDATE~1UPDATE~1.EXE /Check [x] -> FOUND [TASK][sUSP PATH] RunAsStdUser Task : "C:UsersKonstantinAppDataLocalRavenBleuSAbin1.0.15.0RavenBleuSA.exe" [x] -> FOUND [TASK][sUSP PATH] {18B5831C-971D-40C6-99BA-48730BF45494} : C:UsersKonstantinAppDataLocalVirtualStoreProgram FilesCounter-Strike 1.6cstrikeCounter-Strike 1.6 Professional Edition (2010).exe [x] -> FOUND [TASK][sUSP PATH] {259DC3C2-095A-41E0-8450-7DF6624B4A4A} : C:UsersKonstantinDesktopFilm Bit CometCounter-Strike 1.6 Perfect EditionCounter-Strike 1.6 Perfect Editionhl.exe [x] -> FOUND [TASK][sUSP PATH] {3CDD7C62-D463-43B2-B7D6-8A7C5849871E} : C:UsersKonstantinDesktopPROGRAMISkypeSetup_3.8.0.188.exe [x] -> FOUND [TASK][sUSP PATH] {3D760023-003D-4701-9501-BA4CB5C2FFFA} : C:UsersKonstantinDesktopPROGRAMISK PlayerSK PlayerSK PlayerSK Player.exe [-] -> FOUND [TASK][sUSP PATH] {74225B37-5CF5-4D8E-ABFA-E04F01CCE622} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {88BE1816-EE96-4EC6-86FA-A08E5B1F492D} : C:UsersKonstantinDesktopPROGRAMISkypeSetup_3.8.0.188.exe [x] -> FOUND [TASK][sUSP PATH] {8C5A3513-3C31-4C5F-AF7B-A8676B204342} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {95515361-DC01-47B3-9E78-7056D3C1FD7D} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {A373E246-9335-4112-ADC7-520C7849C08E} : C:UsersKonstantinDesktopFilm Bit CometCounter-Strike 1.6 Perfect EditionCounter-Strike 1.6 Perfect Editionhl.exe [x] -> FOUND [TASK][sUSP PATH] {D6623141-1379-4EA5-8883-888616454571} : C:UsersKonstantinAppDataLocalVirtualStoreProgram FilesCounter-Strike 1.6cstrikeCounter-Strike 1.6 Professional Edition (2010).exe [x] -> FOUND [TASK][sUSP PATH] {F608320C-76AE-49A0-8707-2F3E3C6E29F8} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {F6A4FD83-A100-4796-AE01-106365C9E6D4} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [PROXY FF] kk7qi87c.default 78.130.136.18 :8080 -> FOUND [DNS] HKLM[...]ControlSet001ServicesTcpipInterfaces{511CABAC-EE39-4DA6-A40A-06E72B4F1D58} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> FOUND [DNS] HKLM[...]ControlSet001ServicesTcpipInterfaces{F390195D-0EDB-4B3B-A1C3-1A232A7B12EF} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> FOUND [HJPOL] HKLM[...]System : DisableRegistryTools (0) -> FOUND [HJ DESK] HKCU[...]ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND [HJ DESK] HKCU[...]NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND [HJ DESK] HKLM[...]NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND [HJ DESK] HKLM[...]NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND ¤¤¤ Particular Files / Folders: ¤¤¤ ¤¤¤ Driver : [LOADED] ¤¤¤ ¤¤¤ Infection : Mal.Hosts|Rogue.ProgFiles ¤¤¤ ¤¤¤ HOSTS File: ¤¤¤ --> C:Windowssystem32driversetchosts 199.180.131.151 www.imeetzu.com 199.180.131.151 imeetzu.com 199.180.131.151 www.omegle.com 199.180.131.151 omegle.com 199.180.131.151 www.runescape.com 199.180.131.151 runescape.com 199.180.131.151 google.com 199.180.131.151 www.google.ae 199.180.131.151 www.google.com.af 199.180.131.151 www.google.com.ag 199.180.131.151 www.google.off.ai 199.180.131.151 www.google.am 199.180.131.151 www.google.com.ar 199.180.131.151 www.google.as 199.180.131.151 www.google.at 199.180.131.151 www.google.com.au 199.180.131.151 www.google.az 199.180.131.151 www.google.ba 199.180.131.151 www.google.com.bd 199.180.131.151 www.google.be [...] ¤¤¤ MBR Check: ¤¤¤ +++++ PhysicalDrive0: WDC WD5000BEVT-00A0RT0 ATA Device +++++ --- User --- [MBR] 1bdd6efb7a0930ea4b1b2ae23d44e50c [bSP] 25c7dd0aef760eb1f9a31c5f107d41b0 : Windows 7/8 MBR Code Partition table: 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo 1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 Mo User = LL1 ... OK! User = LL2 ... OK! Finished : << RKreport[2]_S_04182013_02d2117.txt >> RKreport[1]_S_04182013_02d2101.txt ; RKreport[2]_S_04182013_02d2117.txt RogueKiller V8.5.4 [Mar 18 2013] by Tigzy mail : tigzyRK<at>gmail<dot>com Feedback : http://www.geekstogo.com/forum/files/file/413-roguekiller/ Website : http://tigzy.geekstogo.com/roguekiller.php Blog : http://tigzyrk.blogspot.com/ Operating System : Windows 7 (6.1.7600 ) 32 bits version Started in : Normal mode User : Konstantin [Admin rights] Mode : Scan -- Date : 04/18/2013 21:17:35 | ARK || FAK || MBR | ¤¤¤ Bad processes : 2 ¤¤¤ [sUSP PATH] 4952_cstrike[1].exe -- C:UsersKonstantinAppDataLocalMicrosoftWindowsTemporary Internet FilesContent.IE5FXK6XMLZ4952_cstrike[1].exe [-] -> KILLED [TermProc] [sVCHOST] svchost.exe -- C:CSFilessvchost.exe [x] -> KILLED [TermProc] ¤¤¤ Registry Entries : 24 ¤¤¤ [RUN][HJNAME] HKLM[...]Run : Omega-Drive v0001f.4 (C:CSFilessvchost.exe) [-] -> FOUND [TASK][bLPATH] schedule!3036567561.job : C:ProgramDataBetterSoftOptimizerProOptimizerPro.exe /schedule /profile "c:programdatabettersoftoptimizerpro3036567561.ini" [x] -> FOUND [TASK][sUSP PATH] DealPly : C:UsersKONSTA~1AppDataRoamingDealPlyUPDATE~1UPDATE~1.EXE /Check [x] -> FOUND [TASK][sUSP PATH] RunAsStdUser Task : "C:UsersKonstantinAppDataLocalRavenBleuSAbin1.0.15.0RavenBleuSA.exe" [x] -> FOUND [TASK][sUSP PATH] {18B5831C-971D-40C6-99BA-48730BF45494} : C:UsersKonstantinAppDataLocalVirtualStoreProgram FilesCounter-Strike 1.6cstrikeCounter-Strike 1.6 Professional Edition (2010).exe [x] -> FOUND [TASK][sUSP PATH] {259DC3C2-095A-41E0-8450-7DF6624B4A4A} : C:UsersKonstantinDesktopFilm Bit CometCounter-Strike 1.6 Perfect EditionCounter-Strike 1.6 Perfect Editionhl.exe [x] -> FOUND [TASK][sUSP PATH] {3CDD7C62-D463-43B2-B7D6-8A7C5849871E} : C:UsersKonstantinDesktopPROGRAMISkypeSetup_3.8.0.188.exe [x] -> FOUND [TASK][sUSP PATH] {3D760023-003D-4701-9501-BA4CB5C2FFFA} : C:UsersKonstantinDesktopPROGRAMISK PlayerSK PlayerSK PlayerSK Player.exe [-] -> FOUND [TASK][sUSP PATH] {74225B37-5CF5-4D8E-ABFA-E04F01CCE622} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {88BE1816-EE96-4EC6-86FA-A08E5B1F492D} : C:UsersKonstantinDesktopPROGRAMISkypeSetup_3.8.0.188.exe [x] -> FOUND [TASK][sUSP PATH] {8C5A3513-3C31-4C5F-AF7B-A8676B204342} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {95515361-DC01-47B3-9E78-7056D3C1FD7D} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {A373E246-9335-4112-ADC7-520C7849C08E} : C:UsersKonstantinDesktopFilm Bit CometCounter-Strike 1.6 Perfect EditionCounter-Strike 1.6 Perfect Editionhl.exe [x] -> FOUND [TASK][sUSP PATH] {D6623141-1379-4EA5-8883-888616454571} : C:UsersKonstantinAppDataLocalVirtualStoreProgram FilesCounter-Strike 1.6cstrikeCounter-Strike 1.6 Professional Edition (2010).exe [x] -> FOUND [TASK][sUSP PATH] {F608320C-76AE-49A0-8707-2F3E3C6E29F8} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {F6A4FD83-A100-4796-AE01-106365C9E6D4} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [PROXY FF] kk7qi87c.default 78.130.136.18 :8080 -> FOUND [DNS] HKLM[...]ControlSet001ServicesTcpipInterfaces{511CABAC-EE39-4DA6-A40A-06E72B4F1D58} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> FOUND [DNS] HKLM[...]ControlSet001ServicesTcpipInterfaces{F390195D-0EDB-4B3B-A1C3-1A232A7B12EF} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> FOUND [HJPOL] HKLM[...]System : DisableRegistryTools (0) -> FOUND [HJ DESK] HKCU[...]ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND [HJ DESK] HKCU[...]NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND [HJ DESK] HKLM[...]NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND [HJ DESK] HKLM[...]NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND ¤¤¤ Particular Files / Folders: ¤¤¤ ¤¤¤ Driver : [LOADED] ¤¤¤ ¤¤¤ Infection : Mal.Hosts|Rogue.ProgFiles ¤¤¤ ¤¤¤ HOSTS File: ¤¤¤ --> C:Windowssystem32driversetchosts 199.180.131.151 www.imeetzu.com 199.180.131.151 imeetzu.com 199.180.131.151 www.omegle.com 199.180.131.151 omegle.com 199.180.131.151 www.runescape.com 199.180.131.151 runescape.com 199.180.131.151 google.com 199.180.131.151 www.google.ae 199.180.131.151 www.google.com.af 199.180.131.151 www.google.com.ag 199.180.131.151 www.google.off.ai 199.180.131.151 www.google.am 199.180.131.151 www.google.com.ar 199.180.131.151 www.google.as 199.180.131.151 www.google.at 199.180.131.151 www.google.com.au 199.180.131.151 www.google.az 199.180.131.151 www.google.ba 199.180.131.151 www.google.com.bd 199.180.131.151 www.google.be [...] ¤¤¤ MBR Check: ¤¤¤ +++++ PhysicalDrive0: WDC WD5000BEVT-00A0RT0 ATA Device +++++ --- User --- [MBR] 1bdd6efb7a0930ea4b1b2ae23d44e50c [bSP] 25c7dd0aef760eb1f9a31c5f107d41b0 : Windows 7/8 MBR Code Partition table: 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo 1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 Mo User = LL1 ... OK! User = LL2 ... OK! Finished : << RKreport[2]_S_04182013_02d2117.txt >> RKreport[1]_S_04182013_02d2101.txt ; RKreport[2]_S_04182013_02d2117.txt # AdwCleaner v2.200 - Logfile created 04/18/2013 at 21:26:38 # Updated 02/04/2013 by Xplode # Operating system : Windows 7 Ultimate (32 bits) # User : Konstantin - TOSHIBA # Boot Mode : Normal # Running from : C:UsersKonstantinDesktopadwcleaner.exe # Option [Delete] ***** [services] ***** ***** [Files / Folders] ***** Deleted on reboot : C:ProgramDataBrowser Manager File Deleted : C:END File Deleted : C:Program FilesMozilla Firefoxsearchpluginsbabylon.xml File Deleted : C:UsersKonstantinAppDataRoamingMozillaFirefoxProfileskk7qi87c.defaultsearchpluginsConduit.xml File Deleted : C:UsersKonstantinAppDataRoamingMozillaFirefoxProfileskk7qi87c.defaultsearchpluginsdelta.xml File Deleted : C:UsersKonstantinAppDataRoamingMozillaFirefoxProfileskk7qi87c.defaultsearchpluginsWeb Search.xml Folder Deleted : C:Program FilesBrowseToSave Folder Deleted : C:Program FilesCommon FilesAVG Secure Search Folder Deleted : C:Program FilesCommon Filesspigot Folder Deleted : C:Program FilesConduit Folder Deleted : C:Program FilesOptimizer Pro Folder Deleted : C:Program FilesPutLockerDownloader Folder Deleted : C:ProgramDataInstallMate Folder Deleted : C:ProgramDataMicrosoftWindowsStart MenuProgramsBrowse2save Folder Deleted : C:ProgramDataMicrosoftWindowsStart MenuProgramsMedia Finder Folder Deleted : C:ProgramDataMicrosoftWindowsStart MenuProgramsSearch-NewTab Folder Deleted : C:ProgramDataSoftSafe Folder Deleted : C:ProgramDataTarma Installer Folder Deleted : C:UsersKONSTA~1AppDataLocalTempCT3289847 Folder Deleted : C:UsersKonstantinAppDataLocalAPN Folder Deleted : C:UsersKonstantinAppDataLocalConduit Folder Deleted : C:UsersKonstantinAppDataLocalPutLockerDownloader Folder Deleted : C:UsersKonstantinAppDataLocalSwvUpdater Folder Deleted : C:UsersKonstantinAppDataLocalLowConduit Folder Deleted : C:UsersKonstantinAppDataLocalLowfacemoods.com Folder Deleted : C:UsersKonstantinAppDataLocalLowSearchqutoolbar Folder Deleted : C:UsersKonstantinAppDataRoamingBabylon Folder Deleted : C:UsersKonstantinAppDataRoamingMedia Finder Folder Deleted : C:UsersKonstantinAppDataRoamingMozillaExtensions{ec8030f7-c20a-464f-9b0e-13a3a9e97384}gencrawler@some.com Folder Deleted : C:UsersKonstantinAppDataRoamingMozillaFirefoxProfileskk7qi87c.defaultextensions{739df940-c5ee-4bab-9d7e-270894ae687a} Folder Deleted : C:UsersKonstantinAppDataRoamingMozillaFirefoxProfileskk7qi87c.defaultjetpack ***** [Registry] ***** Key Deleted : HKCUSoftware1ClickDownload Key Deleted : HKCUSoftware5cd8f17f4086744065eb0992a09e05a2 Key Deleted : HKCUSoftware5d57dddce16eeb10 Key Deleted : HKCUSoftwareAPN PIP Key Deleted : HKCUSoftwareAppDataLowSoftwareConduit Key Deleted : HKCUSoftwareAppDataLowSoftwareSearch Settings Key Deleted : HKCUSoftwareAppDataLowSoftwareSmartBar Key Deleted : HKCUSoftwareAppDataLowSProtector Key Deleted : HKCUSoftwareBabylonToolbar Key Deleted : HKCUSoftwareConduit Key Deleted : HKCUSoftwareDataMngr Key Deleted : HKCUSoftwareDataMngr_Toolbar Key Deleted : HKCUSoftwaredelta LTD Key Deleted : HKCUSoftwareilivid Key Deleted : HKCUSoftwareInstallCore Key Deleted : HKCUSoftwareMediaFinder Key Deleted : HKCUSoftwareMicrosoftInternet ExplorerMenuExtDownload with &Media Finder Key Deleted : HKCUSoftwareMicrosoftInternet ExplorerSearchScopes{006EE092-9658-4FD6-BD8E-A21A348E59F5} Key Deleted : HKCUSoftwareMicrosoftInternet ExplorerSearchScopes{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Key Deleted : HKCUSoftwareMicrosoftInternet ExplorerSearchScopes{95B7759C-8C7F-4BF1-B163-73684A933233} Key Deleted : HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{95B7759C-8C7F-4BF1-B163-73684A933233} Key Deleted : HKCUSoftwareMicrosoftWindowsCurrentVersionExtSettings{98889811-442D-49DD-99D7-DC866BE87DBC} Key Deleted : HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{95B7759C-8C7F-4BF1-B163-73684A933233} Key Deleted : HKCUSoftwareMicrosoftWindowsCurrentVersionExtStats{DF7770F7-832F-4BDF-B144-100EDDD0C3AE} Key Deleted : HKCUSoftwareSmartBar Key Deleted : HKCUSoftwareSoftonic Key Deleted : HKCUSoftwareStartSearch Key Deleted : HKLMSOFTWARE5d57dddce16eeb10 Key Deleted : HKLMSoftwareAVG Security Toolbar Key Deleted : HKLMSoftwareBabylon Key Deleted : HKLMSoftwareBabylonToolbar Key Deleted : HKLMSOFTWAREClassesAppID{1FDFF5A2-7BB1-48E1-8081-7236812B12B2} Key Deleted : HKLMSOFTWAREClassesAppID{35C1605E-438B-4D64-AAB1-8885F097A9B1} Key Deleted : HKLMSOFTWAREClassesAppID{5B1881D1-D9C7-46DF-B041-1E593282C7D0} Key Deleted : HKLMSOFTWAREClassesAppID{608D3067-77E8-463D-9084-908966806826} Key Deleted : HKLMSOFTWAREClassesAppID{AD25754E-D76C-42B3-A335-2F81478B722F} Key Deleted : HKLMSOFTWAREClassesAppID{B16632F1-24E0-4D99-A68D-70BFB6447C48} Key Deleted : HKLMSOFTWAREClassesAppID{BB711CB0-C70B-482E-9852-EC05EBD71DBB} Key Deleted : HKLMSOFTWAREClassesAppID{BDB69379-802F-4EAF-B541-F8DE92DD98DB} Key Deleted : HKLMSOFTWAREClassesAppID{C0CEA572-2978-4DFC-A672-8100FF0E276A} Key Deleted : HKLMSOFTWAREClassesAppID{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} Key Deleted : HKLMSOFTWAREClassesAppID{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17} Key Deleted : HKLMSOFTWAREClassesAppID{EA28B360-05E0-4F93-8150-02891F1D8D3C} Key Deleted : HKLMSOFTWAREClassesAppIDScriptHelper.EXE Key Deleted : HKLMSOFTWAREClassesAppIDViProtocol.DLL Key Deleted : HKLMSOFTWAREClassesApplicationsilividsetup.exe Key Deleted : HKLMSOFTWAREClassesb Key Deleted : HKLMSOFTWAREClassesCLSID{3C471948-F874-49F5-B338-4F214A2EE0B1} Key Deleted : HKLMSOFTWAREClassesCLSID{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Key Deleted : HKLMSOFTWAREClassesCLSID{80922EE0-8A76-46AE-95D5-BD3C3FE0708D} Key Deleted : HKLMSOFTWAREClassesCLSID{95B7759C-8C7F-4BF1-B163-73684A933233} Key Deleted : HKLMSOFTWAREClassesCLSID{AE07101B-46D4-4A98-AF68-0333EA26E113} Key Deleted : HKLMSOFTWAREClassesCLSID{B658800C-F66E-4EF3-AB85-6C0C227862A9} Key Deleted : HKLMSOFTWAREClassesCLSID{DF390AA1-1E65-4825-B8E7-BE6B47BD56B8} Key Deleted : HKLMSOFTWAREClassesCLSID{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Key Deleted : HKLMSOFTWAREClassesCLSID{E95EAD3F-18C6-4304-9DC6-BD6FD8E11D37} Key Deleted : HKLMSOFTWAREClassesCLSID{F25AF245-4A81-40DC-92F9-E9021F207706} Key Deleted : HKLMSOFTWAREClassesesrv.BabylonESrvc Key Deleted : HKLMSOFTWAREClassesesrv.BabylonESrvc.1 Key Deleted : HKLMSOFTWAREClassesesrv.escrtSrvc Key Deleted : HKLMSOFTWAREClassesesrv.escrtSrvc.1 Key Deleted : HKLMSOFTWAREClassesInterface{0194532A-A99C-4337-937E-2A452C8957BE} Key Deleted : HKLMSOFTWAREClassesInterface{03E2A1F3-4402-4121-8B35-733216D61217} Key Deleted : HKLMSOFTWAREClassesInterface{44C3C1DB-2127-433C-98EC-4C9412B5FC3A} Key Deleted : HKLMSOFTWAREClassesInterface{4D5132DD-BB2B-4249-B5E0-D145A8C982E1} Key Deleted : HKLMSOFTWAREClassesInterface{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7} Key Deleted : HKLMSOFTWAREClassesInterface{5F339F0B-716F-408F-A627-DEEB5DEB4020} Key Deleted : HKLMSOFTWAREClassesInterface{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE} Key Deleted : HKLMSOFTWAREClassesInterface{706D4A4B-184A-4434-B331-296B07493D2D} Key Deleted : HKLMSOFTWAREClassesInterface{74C012C4-00FB-4F04-9AFB-4AD5449D2018} Key Deleted : HKLMSOFTWAREClassesInterface{8BE10F21-185F-4CA0-B789-9921674C3993} Key Deleted : HKLMSOFTWAREClassesInterface{94C0B25D-3359-4B10-B227-F96A77DB773F} Key Deleted : HKLMSOFTWAREClassesInterface{95734BDE-B702-45B9-86E5-27676729F904} Key Deleted : HKLMSOFTWAREClassesInterface{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC} Key Deleted : HKLMSOFTWAREClassesInterface{A9379648-F6EB-4F65-A624-1C10411A15D0} Key Deleted : HKLMSOFTWAREClassesInterface{B0B75FBA-7288-4FD3-A9EB-7EE27FA65599} Key Deleted : HKLMSOFTWAREClassesInterface{B173667F-8395-4317-8DD6-45AD1FE00047} Key Deleted : HKLMSOFTWAREClassesInterface{B32672B3-F656-46E0-B584-FE61C0BB6037} Key Deleted : HKLMSOFTWAREClassesInterface{B7EA2226-F876-4BE4-B478-76EBAE2A668A} Key Deleted : HKLMSOFTWAREClassesInterface{C2434722-5C85-4CA0-BA69-1B67E7AB3D68} Key Deleted : HKLMSOFTWAREClassesInterface{C2996524-2187-441F-A398-CD6CB6B3D020} Key Deleted : HKLMSOFTWAREClassesInterface{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Key Deleted : HKLMSOFTWAREClassesInterface{D0482C8E-BAEA-4943-911A-B661060F56A7} Key Deleted : HKLMSOFTWAREClassesInterface{E047E227-5342-4D94-80F7-CFB154BF55BD} Key Deleted : HKLMSOFTWAREClassesInterface{E3F79BE9-24D4-4F4D-8C13-DF2C9899F82E} Key Deleted : HKLMSOFTWAREClassesInterface{E77EEF95-3E83-4BB8-9C0D-4A5163774997} Key Deleted : HKLMSOFTWAREClassesInterface{F16AB1DB-15C0-4456-A29E-4DF24FB9E3D2} Key Deleted : HKLMSOFTWAREClassesProd.cap Key Deleted : HKLMSOFTWAREClassesPROTOCOLSHandlerviprotocol Key Deleted : HKLMSOFTWAREClassesS Key Deleted : HKLMSOFTWAREClassesScriptHelper.ScriptHelperApi Key Deleted : HKLMSOFTWAREClassesScriptHelper.ScriptHelperApi.1 Key Deleted : HKLMSOFTWAREClassesToolbar.CT3289847 Key Deleted : HKLMSOFTWAREClassesTypeLib{0C2E529C-A82C-4AC6-8807-0B51F7AD7BB2} Key Deleted : HKLMSOFTWAREClassesTypeLib{11549FE4-7C5A-4C17-9FC3-56FC5162A994} Key Deleted : HKLMSOFTWAREClassesTypeLib{35C1605E-438B-4D64-AAB1-8885F097A9B1} Key Deleted : HKLMSOFTWAREClassesTypeLib{6E8BF012-2C85-4834-B10A-1B31AF173D70} Key Deleted : HKLMSOFTWAREClassesTypeLib{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93} Key Deleted : HKLMSOFTWAREClassesTypeLib{92E5039E-FF1E-4AFB-8F24-87592D20C383} Key Deleted : HKLMSOFTWAREClassesTypeLib{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8} Key Deleted : HKLMSOFTWAREClassesTypeLib{A1489C85-4F6F-48C4-AC9E-18B63AF4703E} Key Deleted : HKLMSOFTWAREClassesTypeLib{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Key Deleted : HKLMSOFTWAREClassesTypeLib{E2343056-CC08-46AC-B898-BFC7ACF4E755} Key Deleted : HKLMSOFTWAREClassesTypeLib{F310F027-15CB-4A7F-B10D-3A4AFB5013A5} Key Deleted : HKLMSOFTWAREClassesViProtocol.ViProtocolOLE Key Deleted : HKLMSOFTWAREClassesViProtocol.ViProtocolOLE.1 Key Deleted : HKLMSoftwareConduit Key Deleted : HKLMSoftwareDataMngr Key Deleted : HKLMSOFTWAREGoogleChromeExtensionsdednnpigldgdbpgcdpfppmlcnnbjciel Key Deleted : HKLMSOFTWAREGoogleChromeExtensionsihflimipbcaljfnojhhknppphnnciiif Key Deleted : HKLMSOFTWAREGoogleChromeExtensionsjbpkiefagocgkmemidfngdkamloieekf Key Deleted : HKLMSOFTWAREGoogleChromeExtensionslpmkgpnbiojfaoklbkpfneikocaobfai Key Deleted : HKLMSOFTWAREMicrosoftInternet ExplorerLow RightsElevationPolicy{377E5D4D-77E5-476A-8716-7E70A9272DA0} Key Deleted : HKLMSOFTWAREMicrosoftInternet ExplorerLow RightsElevationPolicy{8375D9C8-634F-4ECB-8CF5-C7416BA5D542} Key Deleted : HKLMSOFTWAREMicrosoftInternet ExplorerLow RightsElevationPolicy{99079A25-328F-4BD4-BE04-00955ACAA0A7} Key Deleted : HKLMSOFTWAREMicrosoftInternet ExplorerLow RightsElevationPolicy{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} Key Deleted : HKLMSOFTWAREMicrosoftInternet ExplorerLow RightsElevationPolicy{F25AF245-4A81-40DC-92F9-E9021F207706} Key Deleted : HKLMSOFTWAREMicrosoftInternet ExplorerLow RightsElevationPolicy{FFDF9EF3-3C3A-4F05-9A6E-5D3B778EC567} Key Deleted : HKLMSOFTWAREMicrosoftInternet ExplorerSearchScopes{006EE092-9658-4FD6-BD8E-A21A348E59F5} Key Deleted : HKLMSOFTWAREMicrosoftTracingBabylon_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingBabylon_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingBabylonTC_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingBabylonTC_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingConduitInstaller_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingConduitInstaller_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingdatamngrUI_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingdatamngrUI_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingfacemoodssrv_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingfacemoodssrv_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingiLividMediaBar_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingiLividMediaBar_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingiLividSetup_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingiLividSetup_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingiLividSetupV1_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingiLividSetupV1_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingMyBabylontb_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingMyBabylontb_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingPutlockerDownloader_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingPutlockerDownloader_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingSearchquMediaBar_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingSearchquMediaBar_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingSetupDataMngr_Searchqu_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingSetupDataMngr_Searchqu_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingSnapDo_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingSnapDo_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingwajam_install_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingwajam_install_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftTracingWajamUpdater_RASAPI32 Key Deleted : HKLMSOFTWAREMicrosoftTracingWajamUpdater_RASMANCS Key Deleted : HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerBrowser Helper Objects{95B7759C-8C7F-4BF1-B163-73684A933233} Key Deleted : HKLMSOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{8F97BFF8-488B-4107-BCEE-B161AB4E4183} Key Deleted : HKLMSOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{A1B48071-416D-474E-A13B-BE5456E7FC31} Key Deleted : HKLMSOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{C6FDD0C3-266A-4DC3-B459-28C697C44CDC} Key Deleted : HKLMSOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{F25AF245-4A81-40DC-92F9-E9021F207706} Key Deleted : HKLMSOFTWAREMozillaPlugins@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin Key Deleted : HKLMSoftwarePIP Key Deleted : HKLMSoftwareSP Global Key Deleted : HKLMSoftwareSProtector Key Deleted : HKLMSoftwareTarma Installer Key Deleted : HKLMSoftwareYourFileDownloader Value Deleted : HKLMSOFTWAREMicrosoftInternet ExplorerToolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}] Value Deleted : HKLMSOFTWAREMicrosoftInternet ExplorerToolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Value Deleted : HKLMSOFTWAREMicrosoftInternet ExplorerToolbar [10] Value Deleted : HKLMSOFTWAREMozillaFirefoxExtensions [Avg@toolbar] ***** [internet Browsers] ***** - Internet Explorer v9.0.8112.16470 Replaced : [HKCUSoftwareMicrosoftInternet ExplorerSearchUrl - Default] = hxxp://feed.snap.do/?publisher=VertiTechnologyYB&dpid=VertiTechnologyYB&co=AT&userid=db73b66f-4326-45cf-b35d-23495995e7fb&searchtype=ds&q={searchTerms}&installDate=08/04/2013 --> hxxp://www.google.com Replaced : [HKLMSOFTWAREMicrosoftInternet ExplorerSearchUrl - Default] = hxxp://feed.snap.do/?publisher=VertiTechnologyYB&dpid=VertiTechnologyYB&co=AT&userid=db73b66f-4326-45cf-b35d-23495995e7fb&searchtype=ds&q={searchTerms}&installDate=08/04/2013 --> hxxp://www.google.com - Mozilla Firefox v20.0.1 (bg) File : C:UsersKonstantinAppDataRoamingMozillaFirefoxProfileskk7qi87c.defaultprefs.js C:UsersKonstantinAppDataRoamingMozillaFirefoxProfileskk7qi87c.defaultuser.js ... Deleted ! Deleted : user_pref("CT3176921_Firefox.csv", "[{"from":"Abs Layer","action":"loading toolbar","time"[...] Deleted : user_pref("CT3289847.FF19Solved", "true"); Deleted : user_pref("CT3289847.UserID", "UN13221593605156252"); Deleted : user_pref("CT3289847.browser.search.defaultthis.engineName", "true"); Deleted : user_pref("CT3289847.installDate", "14/4/2013 12:50:23"); Deleted : user_pref("CT3289847.installerVersion", "1.3.7.3"); Deleted : user_pref("CT3289847.keyword", "true"); Deleted : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT3289847&octid=CT328984[...] Deleted : user_pref("Smartbar.ConduitSearchEngineList", "express-files Customized Web Search"); Deleted : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3176921[...] Deleted : user_pref("Smartbar.SearchFromAddressBarSavedUrl", ""); Deleted : user_pref("Smartbar.keywordURLSelectedCTID", "CT3176921"); Deleted : user_pref("aol_toolbar.default.homepage.check", false); Deleted : user_pref("aol_toolbar.default.search.check", false); Deleted : user_pref("avg.install.userHPSettings", "hxxp://www1.delta-search.com/?affID=122303&babsrc=HP_ss&mnt[...] Deleted : user_pref("avg.install.userSPSettings", "Delta Search"); Deleted : user_pref("browser.search.defaultthis.engineName", "WhiteSmoke New Customized Web Search"); Deleted : user_pref("browser.search.defaulturl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3289847&CUI[...] Deleted : user_pref("ct3176921.UserID", "UN30423867863128818"); Deleted : user_pref("extensions.5110bcf6eed94.scode", "(function(){try{if('aol.com,mail.google.com,premiumrepo[...] Deleted : user_pref("extensions.514ef0957dba3.scode", "(function(){try{if('aol.com,mail.google.com,premiumrepo[...] Deleted : user_pref("extensions.BabylonToolbar.admin", false); Deleted : user_pref("extensions.BabylonToolbar.aflt", "babsst"); Deleted : user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}"); Deleted : user_pref("extensions.BabylonToolbar.autoRvrt", "false"); Deleted : user_pref("extensions.BabylonToolbar.dfltLng", "en"); Deleted : user_pref("extensions.BabylonToolbar.excTlbr", false); Deleted : user_pref("extensions.BabylonToolbar.ffxUnstlRst", true); Deleted : user_pref("extensions.BabylonToolbar.id", "6a35eb7a0000000000007844767a7425"); Deleted : user_pref("extensions.BabylonToolbar.instlDay", "15799"); Deleted : user_pref("extensions.BabylonToolbar.instlRef", "sst"); Deleted : user_pref("extensions.BabylonToolbar.newTab", false); Deleted : user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar"); Deleted : user_pref("extensions.BabylonToolbar.prtkDS", 0); Deleted : user_pref("extensions.BabylonToolbar.prtkHmpg", 0); Deleted : user_pref("extensions.BabylonToolbar.prtnrId", "babylon"); Deleted : user_pref("extensions.BabylonToolbar.rvrt", "false"); Deleted : user_pref("extensions.BabylonToolbar.smplGrp", "none"); Deleted : user_pref("extensions.BabylonToolbar.tlbrId", "uninst"); Deleted : user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=[...] Deleted : user_pref("extensions.BabylonToolbar.vrsn", "1.8.11.10"); Deleted : user_pref("extensions.BabylonToolbar.vrsnTs", "1.8.11.102:03:13"); Deleted : user_pref("extensions.BabylonToolbar.vrsni", "1.8.11.10"); Deleted : user_pref("extensions.BabylonToolbar_i.babExt", ""); Deleted : user_pref("extensions.BabylonToolbar_i.babTrack", "affID=120318"); Deleted : user_pref("extensions.BabylonToolbar_i.newTab", true); Deleted : user_pref("extensions.BabylonToolbar_i.newTabUrl", "hxxp://www.delta-search.com/?affID=119776&babsrc[...] Deleted : user_pref("extensions.BabylonToolbar_i.srcExt", "ss"); Deleted : user_pref("extensions.delta.admin", false); Deleted : user_pref("extensions.delta.aflt", "babsst"); Deleted : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}"); Deleted : user_pref("extensions.delta.autoRvrt", "false"); Deleted : user_pref("extensions.delta.bbDpng", "4"); Deleted : user_pref("extensions.delta.cntry", "AT"); Deleted : user_pref("extensions.delta.dfltLng", "en"); Deleted : user_pref("extensions.delta.excTlbr", false); Deleted : user_pref("extensions.delta.ffxUnstlRst", true); Deleted : user_pref("extensions.delta.hdrMd5", "CB0A3570F8B5123BCD078DBDBEA1380E"); Deleted : user_pref("extensions.delta.id", "6a35eb7a0000000000007844767a7425"); Deleted : user_pref("extensions.delta.instlDay", "15809"); Deleted : user_pref("extensions.delta.instlRef", "sst"); Deleted : user_pref("extensions.delta.lastVrsnTs", "1.8.10.019:06:21"); Deleted : user_pref("extensions.delta.newTab", false); Deleted : user_pref("extensions.delta.prdct", "delta"); Deleted : user_pref("extensions.delta.prtnrId", "delta"); Deleted : user_pref("extensions.delta.rvrt", "false"); Deleted : user_pref("extensions.delta.sg", "none"); Deleted : user_pref("extensions.delta.smplGrp", "none"); Deleted : user_pref("extensions.delta.tlbrId", "base"); Deleted : user_pref("extensions.delta.tlbrSrchUrl", ""); Deleted : user_pref("extensions.delta.vrsn", "1.8.16.16"); Deleted : user_pref("extensions.delta.vrsnTs", "1.8.16.1612:15:50"); Deleted : user_pref("extensions.delta.vrsni", "1.8.16.16"); Deleted : user_pref("extensions.helperbar.SmartbarDisabled", false); Deleted : user_pref("extensions.helperbar.SmartbarStateMinimaized", false); Deleted : user_pref("keyword.URL", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3289847&SearchSource=2&CU[...] Deleted : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?ctid=CT3289847&octid=CT3289847[...] Deleted : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT[...] Deleted : user_pref("smartbar.machineId", "HFCV1J6C6JOVUCV1MIVMGQBHEPG68DVI0EVTR+VPNUAKZVNLNXWG2JRTA73M6ILHAYN[...] Deleted : user_pref("smartbar.originalSearchAddressUrl", ""); Deleted : user_pref("smartbar.originalSearchEngine", ""); Deleted : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "hxxp://websearch.helpmefindyour.info[...] Deleted : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", ""); Deleted : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", ""); Deleted : user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", ""); Deleted : user_pref("sweetim.toolbar.searchguard.enable", ""); - Google Chrome v26.0.1410.64 File : C:UsersKonstantinAppDataLocalGoogleChromeUser DataDefaultPreferences Deleted [l.2527] : homepage = "hxxp://search.conduit.com/?ctid=CT3289847&SearchSource=48&CUI=UN27332711912047423&UM[...] File : C:UsersadminAppDataLocalGoogleChromeUser DataDefaultPreferences Deleted [l.584] : homepage = "hxxp://feed.snap.do/?publisher=VertiTechnologyYB&dpid=VertiTechnologyYB&co=AT&userid[...] Deleted [l.718] : urls_to_restore_on_startup = [ "hxxp://feed.snap.do/?publisher=VertiTechnologyYB&dpid=VertiTe[...] - Opera v12.14.1738.0 File : C:UsersKonstantinAppDataRoamingOperaOperaoperaprefs.ini Deleted : Home URL=hxxp://www.searchnu.com/102 ************************* AdwCleaner[R1].txt - [23428 octets] - [18/04/2013 21:25:45] AdwCleaner[s1].txt - [23215 octets] - [18/04/2013 21:26:38] ########## EOF - C:AdwCleaner[s1].txt - [23276 octets] ########## ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 4.8.5 (04.17.2013:1) OS: Windows 7 Ultimate x86 Ran by Konstantin on четв 18.04.2013 г. at 21:35:46,03 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] hkey_current_usersoftwaremixidj Successfully deleted: [Registry Key] hkey_local_machinesoftwaremixidj Successfully deleted: [Registry Key] hkey_local_machinesoftwaresystweak ~~~ Files Successfully deleted: [File] "C:Windowssystem32roboot.exe" ~~~ Folders Successfully deleted: [Folder] "C:ProgramDataspeedypc software" Successfully deleted: [Folder] "C:UsersKonstantinAppDataRoamingdrivercure" Successfully deleted: [Folder] "C:UsersKonstantinAppDataRoamingspeedypc software" Successfully deleted: [Folder] "C:UsersKonstantinappdatalocallowmixidj" Successfully deleted: [Folder] "C:Program Filesmixidj" ~~~ FireFox Successfully deleted: [File] C:UsersKonstantinAppDataRoamingmozillafirefoxprofileskk7qi87c.defaultinvalidprefs.js Successfully deleted: [Folder] C:UsersKonstantinAppDataRoamingmozillafirefoxprofileskk7qi87c.defaultextensionsjid1-yZwVFzbsyfMrqQ@jetpack Successfully deleted the following from C:UsersKonstantinAppDataRoamingmozillafirefoxprofileskk7qi87c.defaultprefs.js user_pref("extensions.mixidj.tlbrId", "mdelta"); Emptied folder: C:UsersKonstantinAppDataRoamingmozillafirefoxprofileskk7qi87c.defaultminidumps [299 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on четв 18.04.2013 г. at 21:41:36,15 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  7. RogueKiller V8.5.4 [Mar 18 2013] by Tigzy mail : tigzyRK<at>gmail<dot>com Feedback : http://www.geekstogo.com/forum/files/file/413-roguekiller/ Website : http://tigzy.geekstogo.com/roguekiller.php Blog : http://tigzyrk.blogspot.com/ Operating System : Windows 7 (6.1.7600 ) 32 bits version Started in : Normal mode User : Konstantin [Admin rights] Mode : Scan -- Date : 04/18/2013 21:01:24 | ARK || FAK || MBR | ¤¤¤ Bad processes : 2 ¤¤¤ [sUSP PATH] 4952_cstrike[1].exe -- C:UsersKonstantinAppDataLocalMicrosoftWindowsTemporary Internet FilesContent.IE5FXK6XMLZ4952_cstrike[1].exe [-] -> KILLED [TermProc] [sVCHOST] svchost.exe -- C:CSFilessvchost.exe [x] -> KILLED [TermProc] ¤¤¤ Registry Entries : 24 ¤¤¤ [RUN][HJNAME] HKLM[...]Run : Omega-Drive v0001f.4 (C:CSFilessvchost.exe) [-] -> FOUND [TASK][bLPATH] schedule!3036567561.job : C:ProgramDataBetterSoftOptimizerProOptimizerPro.exe /schedule /profile "c:programdatabettersoftoptimizerpro3036567561.ini" [x] -> FOUND [TASK][sUSP PATH] DealPly : C:UsersKONSTA~1AppDataRoamingDealPlyUPDATE~1UPDATE~1.EXE /Check [x] -> FOUND [TASK][sUSP PATH] RunAsStdUser Task : "C:UsersKonstantinAppDataLocalRavenBleuSAbin1.0.15.0RavenBleuSA.exe" [x] -> FOUND [TASK][sUSP PATH] {18B5831C-971D-40C6-99BA-48730BF45494} : C:UsersKonstantinAppDataLocalVirtualStoreProgram FilesCounter-Strike 1.6cstrikeCounter-Strike 1.6 Professional Edition (2010).exe [x] -> FOUND [TASK][sUSP PATH] {259DC3C2-095A-41E0-8450-7DF6624B4A4A} : C:UsersKonstantinDesktopFilm Bit CometCounter-Strike 1.6 Perfect EditionCounter-Strike 1.6 Perfect Editionhl.exe [x] -> FOUND [TASK][sUSP PATH] {3CDD7C62-D463-43B2-B7D6-8A7C5849871E} : C:UsersKonstantinDesktopPROGRAMISkypeSetup_3.8.0.188.exe [x] -> FOUND [TASK][sUSP PATH] {3D760023-003D-4701-9501-BA4CB5C2FFFA} : C:UsersKonstantinDesktopPROGRAMISK PlayerSK PlayerSK PlayerSK Player.exe [-] -> FOUND [TASK][sUSP PATH] {74225B37-5CF5-4D8E-ABFA-E04F01CCE622} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {88BE1816-EE96-4EC6-86FA-A08E5B1F492D} : C:UsersKonstantinDesktopPROGRAMISkypeSetup_3.8.0.188.exe [x] -> FOUND [TASK][sUSP PATH] {8C5A3513-3C31-4C5F-AF7B-A8676B204342} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {95515361-DC01-47B3-9E78-7056D3C1FD7D} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {A373E246-9335-4112-ADC7-520C7849C08E} : C:UsersKonstantinDesktopFilm Bit CometCounter-Strike 1.6 Perfect EditionCounter-Strike 1.6 Perfect Editionhl.exe [x] -> FOUND [TASK][sUSP PATH] {D6623141-1379-4EA5-8883-888616454571} : C:UsersKonstantinAppDataLocalVirtualStoreProgram FilesCounter-Strike 1.6cstrikeCounter-Strike 1.6 Professional Edition (2010).exe [x] -> FOUND [TASK][sUSP PATH] {F608320C-76AE-49A0-8707-2F3E3C6E29F8} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [TASK][sUSP PATH] {F6A4FD83-A100-4796-AE01-106365C9E6D4} : C:UsersKonstantinDesktopFilm Bit CometCallus Emulator + RomsCALLUS95.EXE [x] -> FOUND [PROXY FF] kk7qi87c.default 78.130.136.18 :8080 -> FOUND [DNS] HKLM[...]ControlSet001ServicesTcpipInterfaces{511CABAC-EE39-4DA6-A40A-06E72B4F1D58} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> FOUND [DNS] HKLM[...]ControlSet001ServicesTcpipInterfaces{F390195D-0EDB-4B3B-A1C3-1A232A7B12EF} : NameServer (8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1) -> FOUND [HJPOL] HKLM[...]System : DisableRegistryTools (0) -> FOUND [HJ DESK] HKCU[...]ClassicStartMenu : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND [HJ DESK] HKCU[...]NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND [HJ DESK] HKLM[...]NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND [HJ DESK] HKLM[...]NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND ¤¤¤ Particular Files / Folders: ¤¤¤ ¤¤¤ Driver : [LOADED] ¤¤¤ ¤¤¤ Infection : Mal.Hosts|Rogue.ProgFiles ¤¤¤ ¤¤¤ HOSTS File: ¤¤¤ --> C:Windowssystem32driversetchosts 199.180.131.151 www.imeetzu.com 199.180.131.151 imeetzu.com 199.180.131.151 www.omegle.com 199.180.131.151 omegle.com 199.180.131.151 www.runescape.com 199.180.131.151 runescape.com 199.180.131.151 google.com 199.180.131.151 www.google.ae 199.180.131.151 www.google.com.af 199.180.131.151 www.google.com.ag 199.180.131.151 www.google.off.ai 199.180.131.151 www.google.am 199.180.131.151 www.google.com.ar 199.180.131.151 www.google.as 199.180.131.151 www.google.at 199.180.131.151 www.google.com.au 199.180.131.151 www.google.az 199.180.131.151 www.google.ba 199.180.131.151 www.google.com.bd 199.180.131.151 www.google.be [...] ¤¤¤ MBR Check: ¤¤¤ +++++ PhysicalDrive0: WDC WD5000BEVT-00A0RT0 ATA Device +++++ --- User --- [MBR] 1bdd6efb7a0930ea4b1b2ae23d44e50c [bSP] 25c7dd0aef760eb1f9a31c5f107d41b0 : Windows 7/8 MBR Code Partition table: 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo 1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 476838 Mo User = LL1 ... OK! User = LL2 ... OK! Finished : << RKreport[1]_S_04182013_02d2101.txt >> RKreport[1]_S_04182013_02d2101.txt
  8. http://dox.bg/files/dw?a=fb57f08052 доста е големичак фаила
  9. DDS (Ver_2011-09-30.01) - NTFS_x86 Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 10.17.2 Run by Konstantin at 8:31:55 on 2013-04-18 Microsoft Windows 7 Ultimate 6.1.7600.0.1251.359.1033.18.2039.1223 [GMT 2:00] . SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes ================ . C:Windowssystem32wininit.exe C:Windowssystem32lsm.exe C:WindowsSystem32spoolsv.exe C:Windowssystem32WLANExt.exe C:Windowssystem32conhost.exe C:Program FilesCommon FilesAdobeARM1.0armsvc.exe C:Program FilesRalinkCommonRaRegistry.exe C:Program FilesSkypeUpdaterUpdater.exe C:Windowssystem32sppsvc.exe C:Program FilesCommon FilesVMwareUSBvmware-usbarbitrator.exe C:Windowssystem32vmnat.exe C:Windowssystem32taskhost.exe C:Program FilesNETGEARWNDA3100v2WifiSvc.exe C:Program FilesVMwareVMware Workstationvmware-authd.exe C:Windowssystem32taskeng.exe C:Windowssystem32taskeng.exe C:Windowssystem32vmnetdhcp.exe C:Windowssystem32wbemwmiprvse.exe C:Windowssystem32Dwm.exe C:WindowsSystem32alg.exe C:WindowsExplorer.EXE C:Windowssystem32wbemWmiApSrv.exe C:Windowssystem32wbemwmiprvse.exe C:Program FilesNETGEARWNDA3100v2WNDA3100v2.exe C:Program FilesRalinkCommonRaUI.exe C:Windowssystem32SearchIndexer.exe C:Windowssystem32SearchProtocolHost.exe C:Windowssystem32SearchFilterHost.exe C:Windowssystem32conhost.exe C:Windowssystem32svchost.exe -k DcomLaunch C:Windowssystem32svchost.exe -k RPCSS C:WindowsSystem32svchost.exe -k LocalServiceNetworkRestricted C:WindowsSystem32svchost.exe -k LocalSystemNetworkRestricted C:Windowssystem32svchost.exe -k netsvcs C:Windowssystem32svchost.exe -k LocalService C:Windowssystem32svchost.exe -k NetworkService C:Windowssystem32svchost.exe -k LocalServiceNoNetwork C:Windowssystem32svchost.exe -k LocalServiceAndNoImpersonation C:Windowssystem32svchost.exe -k imgsvc C:WindowsSystem32svchost.exe -k secsvcs . ============== Pseudo HJT Report =============== . BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:program filescommon filesadobeacrobatactivexAcroIEHelperShim.dll BHO: BitComet Helper: {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - c:program filesbitcomettoolsBitCometBHO_1.5.4.11.dll BHO: mixidj Helper Object: {4D6A9BBF-402C-4301-B1EF-28D04F71D761} - c:program filesmixidjmixidj1.8.4.1bhmixidj.dll BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:program filesjavajre7binssv.dll BHO: AVG SafeGuard toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:program filesjavajre7binjp2ssv.dll TB: <No Name>: {ae07101b-46d4-4a98-af68-0333ea26e113} - LocalServer32 - <no file> TB: MixiDJ Toolbar: {CA9B9C89-4662-4ADC-9C23-A452BECD5D19} - c:program filesmixidjmixidj1.8.4.1mixidjTlbr.dll TB: AVG SafeGuard toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - uRun: [bitComet] "c:program filesbitcometBitComet.exe" /tray mRun: [vProt] "c:program filesavg safeguard toolbarvprot.exe" dRun: [skype] "c:program filesskypephoneSkype.exe" /minimized /regrun StartupFolder: c:progra~2micros~1windowsstartm~1programsstartupnetgea~1.lnk - c:program filesnetgearwnda3100v2WNDA3100v2.exe StartupFolder: c:progra~2micros~1windowsstartm~1programsstartupralink~1.lnk - c:program filesralinkcommonRaUI.exe uPolicies-Explorer: NoDriveTypeAutoRun = dword:221 uPolicies-Explorer: NoDrives = dword:0 uPolicies-Explorer: NoViewContextMenu = 0 mPolicies-Explorer: NoDrives = dword:0 mPolicies-Explorer: NoDriveTypeAutoRun = dword:255 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 mPolicies-System: SynchronousMachineGroupPolicy = dword:1 mPolicies-System: SynchronousUserGroupPolicy = dword:1 mPolicies-WindowsSystem: AllowBlockingAppsAtShutdown = dword:1 IE: &С&валяне &с BitComet - c:program filesbitcometBitComet.exe/AddLink.htm IE: &С&валяне на всички с BitComet - c:program filesbitcometBitComet.exe/AddAllLink.htm IE: Download with &Media Finder - <no file> IE: {40525A66-DB98-480D-BCF9-7AF88C1AF438} - {40525A66-DB98-480D-BCF9-7AF88C1AF438} - <orphaned> IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - c:program filesbitcomettoolsBitCometBHO_1.5.4.11.dll/206 LSP: %SystemRoot%system32vsocklib.dll DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} - hxxp://utilities.pcpitstop.com/da2/PCPitStop2.cab TCP: NameServer = 212.186.211.21 195.34.133.21 TCP: Interfaces{511CABAC-EE39-4DA6-A40A-06E72B4F1D58} : NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 TCP: Interfaces{5BF6C039-337F-4C9B-ADDE-085D6C3CEF29} : DHCPNameServer = 195.34.133.21 212.186.211.21 TCP: Interfaces{62C6D3BD-DCD2-47AA-A5EA-BD5418E84ADF}4586F6D637F6E6935333036473 : DHCPNameServer = 10.0.0.138 10.0.0.138 TCP: Interfaces{62C6D3BD-DCD2-47AA-A5EA-BD5418E84ADF}A557D60274279656368656E6 : DHCPNameServer = 192.168.0.254 213.33.99.70 TCP: Interfaces{B94D868B-5969-48AA-9A3D-BE9F35D9970B} : DHCPNameServer = 212.186.211.21 195.34.133.21 TCP: Interfaces{B94D868B-5969-48AA-9A3D-BE9F35D9970B}4586F6D637F6E6134393732303 : DHCPNameServer = 10.0.0.138 10.0.0.138 TCP: Interfaces{B94D868B-5969-48AA-9A3D-BE9F35D9970B}55053403034323931363 : DHCPNameServer = 212.186.211.21 195.34.133.21 TCP: Interfaces{BE3579A2-19F9-488C-9952-C4ED7904CFA2} : DHCPNameServer = 195.34.133.21 212.186.211.21 TCP: Interfaces{BE3579A2-19F9-488C-9952-C4ED7904CFA2}55053403034323931363 : DHCPNameServer = 195.34.133.21 212.186.211.21 TCP: Interfaces{F390195D-0EDB-4B3B-A1C3-1A232A7B12EF} : NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:program filescommon filesskypeSkype4COM.dll Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:program filescommon filesavg secure searchviprotocolinstaller15.1.0ViProtocol.dll Notify: igfxcui - igfxdev.dll mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:program filesgooglechromeapplication26.0.1410.64installerchrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome Hosts: 199.180.131.151 www.imeetzu.com Hosts: 199.180.131.151 imeetzu.com Hosts: 199.180.131.151 www.omegle.com Hosts: 199.180.131.151 omegle.com Hosts: 199.180.131.151 www.runescape.com . Note: multiple HOSTS entries found. Please refer to Attach.txt . ================= FIREFOX =================== . FF - ProfilePath - c:userskonstantinappdataroamingmozillafirefoxprofileskk7qi87c.default FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3289847&CUI=UN13221593605156252&UM=2&SearchSource=3&q={searchTerms} FF - prefs.js: browser.startup.homepage - hxxps://www.google.bg/ FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3289847&SearchSource=2&CUI=UN13221593605156252&UM=2&q= FF - prefs.js: network.proxy.http - 78.130.136.18 FF - prefs.js: network.proxy.http_port - 8080 FF - prefs.js: network.proxy.ssl - 78.130.136.18 FF - prefs.js: network.proxy.ssl_port - 8080 FF - prefs.js: network.proxy.type - 1 FF - plugin: c:program filesadobereader 11.0readerairnppdf32.dll FF - plugin: c:program filescommon filesavg secure searchsitesafetyinstaller15.1.0npsitesafety.dll FF - plugin: c:program filesganymedepluginsnpganymedenet.dll FF - plugin: c:program filesgoogleupdate1.3.21.135npGoogleUpdate3.dll FF - plugin: c:program filesinhatchteaminhatchnpinhatch.dll FF - plugin: c:program filesjavajre7binplugin2npjp2.dll FF - plugin: c:program filesmozilla firefoxpluginsnpganymedenet.dll FF - plugin: c:windowssystem32macromedflashNPSWF32_11_4_402_287.dll FF - plugin: c:windowssystem32npDeployJava1.dll FF - plugin: c:windowssystem32npmproxy.dll . ---- FIREFOX POLICIES ---- FF - user.js: extensions.shownSelectionUI - true . FF - user.js: extensions.mixidj.tlbrSrchUrl - FF - user.js: extensions.mixidj.id - 6a35eb7a0000000000007844767a7425 FF - user.js: extensions.mixidj.appId - {A2773ED4-83BD-488A-A186-73590706C916} FF - user.js: extensions.mixidj.instlDay - 15798 FF - user.js: extensions.mixidj.vrsn - 1.8.4.1 FF - user.js: extensions.mixidj.vrsni - 1.8.4.1 FF - user.js: extensions.mixidj_i.vrsnTs - 1.8.4.112:36:34 FF - user.js: extensions.mixidj.prtnrId - mixidj FF - user.js: extensions.mixidj.prdct - mixidj FF - user.js: extensions.mixidj.aflt - babsst FF - user.js: extensions.mixidj_i.smplGrp - none FF - user.js: extensions.mixidj.tlbrId - mdelta FF - user.js: extensions.mixidj.instlRef - sst FF - user.js: extensions.mixidj.dfltLng - en FF - user.js: extensions.mixidj_i.excTlbr - false FF - user.js: extensions.mixidj.excTlbr - false FF - user.js: extensions.mixidj.admin - false FF - user.js: extensions.mixidj.autoRvrt - false FF - user.js: extensions.mixidj.rvrt - false FF - user.js: extensions.mixidj_i.newTab - false FF - user.js: extensions.BabylonToolbar.tlbrSrchUrl - hxxp://search.babylon.com/?babsrc=TB_def&mntrId=6a35eb7a0000000000007844767a7425&q= FF - user.js: extensions.BabylonToolbar.id - 6a35eb7a0000000000007844767a7425 FF - user.js: extensions.BabylonToolbar.appId - {BDB69379-802F-4eaf-B541-F8DE92DD98DB} FF - user.js: extensions.BabylonToolbar.instlDay - 15799 FF - user.js: extensions.BabylonToolbar.vrsn - 1.8.11.10 FF - user.js: extensions.BabylonToolbar.vrsni - 1.8.11.10 FF - user.js: extensions.BabylonToolbar.vrsnTs - 1.8.11.102:03:13 FF - user.js: extensions.BabylonToolbar.prtnrId - babylon FF - user.js: extensions.BabylonToolbar.prdct - BabylonToolbar FF - user.js: extensions.BabylonToolbar.aflt - babsst FF - user.js: extensions.BabylonToolbar.smplGrp - none FF - user.js: extensions.BabylonToolbar.tlbrId - uninst FF - user.js: extensions.BabylonToolbar.instlRef - sst FF - user.js: extensions.BabylonToolbar.dfltLng - en FF - user.js: extensions.BabylonToolbar.excTlbr - false FF - user.js: extensions.BabylonToolbar.ffxUnstlRst - true FF - user.js: extensions.BabylonToolbar.admin - false FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=120318 FF - user.js: extensions.BabylonToolbar_i.babExt - FF - user.js: extensions.BabylonToolbar_i.srcExt - ss FF - user.js: extensions.BabylonToolbar.autoRvrt - false FF - user.js: extensions.BabylonToolbar.rvrt - false FF - user.js: extensions.BabylonToolbar.newTab - false FF - user.js: extensions.delta.tlbrSrchUrl - FF - user.js: extensions.delta.id - 6a35eb7a0000000000007844767a7425 FF - user.js: extensions.delta.appId - {C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} FF - user.js: extensions.delta.instlDay - 15809 FF - user.js: extensions.delta.vrsn - 1.8.16.16 FF - user.js: extensions.delta.vrsni - 1.8.16.16 FF - user.js: extensions.delta.vrsnTs - 1.8.16.1612:15:50 FF - user.js: extensions.delta.prtnrId - delta FF - user.js: extensions.delta.prdct - delta FF - user.js: extensions.delta.aflt - babsst FF - user.js: extensions.delta.smplGrp - none FF - user.js: extensions.delta.tlbrId - base FF - user.js: extensions.delta.instlRef - sst FF - user.js: extensions.delta.dfltLng - en FF - user.js: extensions.delta.excTlbr - false FF - user.js: extensions.delta.ffxUnstlRst - true FF - user.js: extensions.delta.admin - false FF - user.js: extensions.delta.autoRvrt - false FF - user.js: extensions.delta.rvrt - false FF - user.js: extensions.delta.newTab - false . . ============= SERVICES / DRIVERS =============== . R0 gfibto;gfibto;c:windowssystem32driversgfibto.sys [2013-3-28 13560] R0 PCTCore;PCTools KDS;c:windowssystem32driversPCTCore.sys [2012-11-10 368616] R0 pctDS;PC Tools Data Store;c:windowssystem32driverspctDS.sys [2012-11-10 342168] R0 pctEFA;PC Tools Extended File Attributes;c:windowssystem32driverspctEFA.sys [2012-11-10 909728] R0 SCMNdisP;General NDIS Protocol Driver;c:windowssystem32driversSCMNdisP.sys [2013-4-15 21728] R1 avgtp;avgtp;c:windowssystem32driversavgtpx86.sys [2013-4-14 34592] R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:windowssystem32driversdtsoftbus01.sys [2013-3-24 242240] R1 PCTSD;PC Tools Spyware Doctor Driver;c:windowssystem32driversPCTSD.sys [2012-11-10 202280] R1 vwififlt;Virtual WiFi Filter Driver;c:windowssystem32driversvwififlt.sys [2009-7-14 48128] R2 AdobeARMservice;Adobe Acrobat Update Service;c:program filescommon filesadobearm1.0armsvc.exe [2012-12-18 65192] R2 RalinkRegistryWriter;Ralink Registry Writer;c:program filesralinkcommonRaRegistry.exe [2013-4-9 185632] R2 sbapifs;sbapifs;c:windowssystem32driverssbapifs.sys [2012-9-12 66344] R2 SkypeUpdate;Skype Updater;c:program filesskypeupdaterUpdater.exe [2013-2-28 161384] R2 VMUSBArbService;VMware USB Arbitration Service;c:program filescommon filesvmwareusbvmware-usbarbitrator.exe [2011-8-21 665200] R2 vstor2-mntapi10-shared;Vstor2 MntApi 1.0 Driver (shared);c:windowssystem32driversvstor2-mntapi10-shared.sys [2011-7-8 22768] R2 WSWNDA3100;WSWNDA3100;c:program filesnetgearwnda3100v2WifiSvc.exe [2013-4-15 272864] R3 netr28u;RT2870 USB Extensible Wireless LAN Card Driver;c:windowssystem32driversnetr28u.sys [2009-9-15 807936] R3 RTL8187B;Realtek RTL8187B Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter;c:windowssystem32driversRTL8187B.sys [2009-6-10 347136] R3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:windowssystem32driversvwifimp.sys [2009-7-14 14336] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:windowsmicrosoft.netframeworkv4.0.30319mscorsvw.exe [2010-3-18 130384] S2 gupdate;Google Update-Dienst (gupdate);c:program filesgoogleupdateGoogleUpdate.exe [2011-7-26 136176] S2 vToolbarUpdater15.1.0;vToolbarUpdater15.1.0;c:program filescommon filesavg secure searchvtoolbarupdater15.1.0toolbarupdater.exe --> c:program filescommon filesavg secure searchvtoolbarupdater15.1.0ToolbarUpdater.exe [?] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:windowssystem32driversb57nd60x.sys [2009-7-14 229888] S3 BCMH43XX;Broadcom 802.11 USB Network Adapter Driver;c:windowssystem32driversbcmwlhigh6.sys [2013-4-15 1081920] S3 BITCOMET_HELPER_SERVICE;BitComet Disk Boost Service;c:program filesbitcomettoolsbitcometservice.exe -service --> c:program filesbitcomettoolsBitCometService.exe -service [?] S3 gupdatem;Google Update-Dienst (gupdatem);c:program filesgoogleupdateGoogleUpdate.exe [2011-7-26 136176] S3 MozillaMaintenance;Mozilla Maintenance Service;c:program filesmozilla maintenance servicemaintenanceservice.exe [2013-2-13 115608] S3 SwitchBoard;SwitchBoard;c:program filescommon filesadobeswitchboardSwitchBoard.exe [2010-2-19 517096] S3 teamviewervpn;TeamViewer VPN Adapter;c:windowssystem32driversteamviewervpn.sys [2012-2-26 25088] S3 VMwareHostd;VMware Workstation Server;c:program filesvmwarevmware workstationvmware-hostd.exe [2011-8-22 11837440] S3 WiFiPasswordService;WiFiPasswordService;c:userskonsta~1appdatalocaltempwifipasswordservice.exe --> c:userskonsta~1appdatalocaltempWiFiPasswordService.exe [?] S3 WSDPrintDevice;WSD Print Support via UMB;c:windowssystem32driversWSDPrint.sys [2009-7-14 17920] S3 WSDScan;WSD Scan Support via UMB;c:windowssystem32driversWSDScan.sys [2009-7-14 20480] . =============== Created Last 30 ================ . 2013-04-17 23:10:42 -------- d-----w- c:program filesEmsisoft Anti-Malware 2013-04-17 20:41:57 22856 ----a-w- c:windowssystem32driversmbam.sys 2013-04-17 20:41:57 -------- d-----w- c:program filesMalwarebytes' Anti-Malware 2013-04-17 20:19:36 -------- d-----w- c:userskonstantinappdataroamingSpeedyPC Software 2013-04-17 20:19:00 -------- d-----w- c:programdataSpeedyPC Software 2013-04-17 19:54:22 -------- d-----w- c:program filesEnigma Software Group 2013-04-17 19:34:42 257928 ----a-w- c:windowssystem32driverstmcomm.sys 2013-04-17 09:50:26 6991832 ----a-w- c:programdatamicrosoftwindows defenderdefinition updates{d81bae2e-7519-4304-b609-b2dcd3e18afc}mpengine.dll 2013-04-17 09:31:01 -------- d-----w- c:userskonstantinappdataroamingWinZip 2013-04-15 08:25:17 91448 ----a-w- c:windowssystem32bcmwlcoi.dll 2013-04-15 08:25:17 1081920 ----a-w- c:windowssystem32driversbcmwlhigh6.sys 2013-04-15 08:25:15 3874816 ----a-w- c:windowssystem32bcmihvsrv.dll 2013-04-15 08:25:15 3563520 ----a-w- c:windowssystem32bcmihvui.dll 2013-04-15 08:25:13 21728 ----a-w- c:windowssystem32driversSCMNdisP.sys 2013-04-15 08:25:04 96784 ----a-w- c:windowssystem32Packet.dll 2013-04-15 08:25:04 53299 ----a-w- c:windowssystem32pthreadVC.dll 2013-04-15 08:25:04 50704 ----a-w- c:windowssystem32driversnpf.sys 2013-04-15 08:25:04 281104 ----a-w- c:windowssystem32wpcap.dll 2013-04-15 08:24:40 -------- d-----w- c:program filesNETGEAR 2013-04-15 04:27:57 354416 ----a-w- c:windowssystem32vmnetdhcp.exe 2013-04-15 04:27:51 432752 ----a-w- c:windowssystem32vmnat.exe 2013-04-15 04:27:50 25712 ----a-w- c:windowssystem32driversvmnetuserif.sys 2013-04-15 04:27:02 783472 ----a-w- c:windowssystem32vnetlib.dll 2013-04-15 04:24:19 -------- d-----w- c:program filesVMware 2013-04-15 04:23:16 -------- d-----w- c:program filescommon filesVMware 2013-04-14 17:26:03 -------- d-----w- c:programdataTamoSoft 2013-04-14 10:54:24 -------- d-----w- c:userskonstantinappdatalocalSwvUpdater 2013-04-14 10:53:41 -------- d-----w- c:program filesConduit 2013-04-14 10:53:32 -------- d-----w- c:userskonstantinappdatalocalConduit 2013-04-14 10:52:55 -------- d-----w- c:userskonstantinappdatalocalCRE 2013-04-14 10:48:38 -------- d-----w- c:userskonstantinappdataroamingiPumper 2013-04-13 23:06:41 -------- d-----w- c:userskonstantinappdatalocalAVG SafeGuard toolbar 2013-04-13 23:05:57 34592 ----a-w- c:windowssystem32driversavgtpx86.sys 2013-04-13 23:05:47 -------- d-----w- c:program filescommon filesAVG Secure Search 2013-04-13 22:53:54 -------- d-----w- c:userskonstantinappdatalocalXilisoft 2013-04-13 22:53:51 -------- d-----w- c:userskonstantinappdataroamingXilisoft 2013-04-12 08:16:19 -------- d-----w- c:userskonstantinappdataroamingBabylon 2013-04-12 07:22:08 -------- d-----w- c:program filesRAR Password Unlocker 2013-04-10 06:24:32 -------- d-----w- c:userskonstantinappdatalocalVMware 2013-04-09 22:12:49 -------- d-----w- c:userskonstantinappdataroamingMalwarebytes 2013-04-09 20:19:34 -------- d-----w- c:programdataRalink 2013-04-09 20:18:05 221184 ----a-w- c:windowssystem32RaCoInst.dll 2013-04-09 20:18:05 -------- d-----w- c:programdataRalink Driver 2013-04-09 20:17:37 -------- d-----w- c:program filesCisco 2013-04-09 20:17:22 97280 ----a-w- c:windowssystem32RAEXTUI.dll 2013-04-09 20:17:22 764416 ----a-w- c:windowssystem32RAIHV.dll 2013-04-09 20:17:22 1597440 ----a-w- c:windowssystem32RaCertMgr.dll 2013-04-09 20:17:21 -------- d-----w- c:program filesRalink 2013-04-09 17:07:24 -------- d-----w- c:program filesWiseFixer 2013-04-08 19:57:12 188176 ----a-w- c:windowssystem32driversVBoxDrv.sys 2013-04-08 19:56:01 94480 ----a-w- c:windowssystem32driversVBoxUSBMon.sys 2013-04-08 03:11:01 -------- d-----w- c:program filesPassword Recovery Engine for Network Connections 2013-04-04 08:01:53 -------- d-----w- c:programdataSeaarch-NEEwTaaby 2013-04-04 08:01:32 -------- d-----w- c:program filesOptimizer Pro 2013-04-04 08:01:16 -------- d-----w- c:program filesBrowseToSave 2013-04-04 08:00:56 -------- d-----w- c:program filesSolibo Ltd 2013-04-04 05:53:41 -------- d-----w- c:program filesGTK2-Runtime 2013-04-03 23:48:44 -------- d-----w- c:program filesPassReminder 2013-04-03 23:17:35 -------- d-----w- C:WifiPassReminder 2013-04-03 23:16:15 -------- d-----w- C:Python26 2013-04-03 23:15:33 -------- d-----w- c:program filesWifiPassReminder 2013-04-03 20:14:32 -------- d-----w- c:userskonstantinappdatalocalIsolatedStorage 2013-04-03 20:14:02 -------- d-----w- c:program filesMetaGeek 2013-04-03 10:36:33 -------- d-----w- c:program filesmixidj 2013-04-03 10:35:36 -------- d-----w- c:program filesRegCleaner 2013-04-03 09:37:24 -------- d-----w- c:userskonstantinappdatalocalPrograms 2013-04-02 15:08:33 398336 ----a-w- c:windowsregedit.exe 2013-04-02 12:22:26 -------- d-----w- c:program filesVITSOFT 2013-04-02 11:55:07 -------- d-----w- c:program filesGlary Utilities 2013-04-02 10:06:02 -------- d-sh--w- C:found.001 2013-04-01 13:25:24 -------- d-----w- c:programdataSystemOptimizeExpert 2013-03-29 21:53:59 -------- d-----w- c:programdataregid.1986-12.com.adobe 2013-03-29 05:37:04 -------- d-----w- c:program filesAnvisoft 2013-03-28 11:30:58 -------- d-----w- c:programdataSpybot - Search & Destroy 2013-03-28 11:22:20 44424 ----a-w- c:windowssystem32sbbd.exe 2013-03-28 11:21:41 -------- d-----w- c:userskonstantinappdataroamingLavasoftStatistics 2013-03-28 11:20:38 -------- d-----w- c:programdataDownloaded Installations 2013-03-28 11:18:35 13560 ----a-w- c:windowssystem32driversgfibto.sys 2013-03-28 10:02:11 -------- d-----w- c:windows0AC0F1B261C74B6EACEF58FCC0B94835.TMP 2013-03-27 10:40:55 -------- d-----w- c:program filesGanymede 2013-03-24 17:33:55 242240 ----a-w- c:windowssystem32driversdtsoftbus01.sys 2013-03-24 17:33:43 -------- d-----w- c:program filesDAEMON Tools Lite 2013-03-24 17:33:05 -------- d-----w- c:programdataDAEMON Tools Lite 2013-03-24 08:59:44 -------- d-----w- c:programdataTarma Installer 2013-03-24 08:21:52 -------- d-----w- c:program filesMakayama Interactive 2013-03-24 07:15:27 -------- d-----w- c:programdataSSearcchy-NewTab 2013-03-24 07:15:23 18952 ----a-w- c:windowssystem32roboot.exe 2013-03-24 06:25:18 -------- d-----w- c:programdataSearrcch-NewaTyaby 2013-03-24 06:25:17 -------- d-----w- c:programdataSoftSafe 2013-03-24 06:24:00 -------- d-----w- c:programdataInstallMate 2013-03-24 05:34:40 -------- d-----w- c:programdata{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A} 2013-03-24 05:34:37 -------- d-----w- c:programdataIObit 2013-03-24 05:34:08 -------- d-----w- c:program filescommon filesSpigot 2013-03-22 14:55:42 -------- d-sh--w- C:found.000 . ==================== Find3M ==================== . 2013-04-11 14:22:56 770384 ----a-w- c:windowssystem32msvcr100.dll 2013-04-11 14:22:56 421200 ----a-w- c:windowssystem32msvcp100.dll 2013-03-15 17:30:06 104720 ----a-w- c:windowssystem32driversVBoxNetAdp.sys 2013-03-11 01:18:09 94112 ----a-w- c:windowssystem32WindowsAccessBridge.dll 2013-03-11 01:18:09 861088 ----a-w- c:windowssystem32npDeployJava1.dll 2013-03-11 01:18:09 782240 ----a-w- c:windowssystem32deployJava1.dll 2013-02-06 13:12:46 34304 ----a-w- c:windowssystem32atmlib.dll 2013-02-06 13:12:46 295424 ----a-w- c:windowssystem32atmfd.dll 2013-02-02 03:38:35 1800704 ----a-w- c:windowssystem32jscript9.dll 2013-02-02 03:30:32 1427968 ----a-w- c:windowssystem32inetcpl.cpl 2013-02-02 03:30:21 1129472 ----a-w- c:windowssystem32wininet.dll 2013-02-02 03:26:47 142848 ----a-w- c:windowssystem32ieUnatt.exe 2013-02-02 03:26:21 420864 ----a-w- c:windowssystem32vbscript.dll 2013-02-02 03:23:28 2382848 ----a-w- c:windowssystem32mshtml.tlb . ============= FINISH: 8:33:57,35 =============== от 10 мин немога да поставя Аttach Възникна грешкаpost_too_long
  10. пробвал съм с Mozilla Firefox опера Google Chrome никакъф саит не иска да се отвори сега съм в друг комп чрез TeamViewer поради простата причина при всеки опит ми излиза This website has been blocked for yo и ме потканва да пратя смс
  11. този сайт е бил блокиран за вас!!! вирус как да го премахна инфо http://prikachi.com/images.php?images/311/6092311o.png опитах да го премахна с Malwarebytes Anti-Malware нямаше резолтат
  12. Ниска скорост на WiFi

    явно така ще стане били ми казал или дал нещо как да преинсталирам windows7 с лаптоп съм че грам не съм на ясно как става !!!!а за програмата мисля че и тази съм използвал SUPERAntiSpyware Free Edition
  • Разглеждащи в момента   0 потребители

    Няма регистрирани потребители разглеждащи тази страница.

×

Информация

Този сайт използва бисквитки (cookies), за най-доброто потребителско изживяване. С използването му, вие приемате нашите Условия за ползване.