Премини към съдържанието

Stanislav Georgiev 123

Потребител
  • Публикации

    12
  • Регистрация

  • Последно онлайн

Харесвания

2 Неутрална репутация

Всичко за Stanislav Georgiev 123

  • Титла
    Потребител
  1. DirectX Error

    Опитвам се да подкарам последното call of duty,пробвах да спра едната видео карта същия резултат,интересно ми е защото си играя нормално без да забива или насича и всеки път по различно време се появява грешкатаонзи ден играх около 30мин и тогава се появи,вчера още в началото. Eто сега пак играх около 40мин и чак тогава ме изхвърли незнам вече
  2. DirectX Error

    С предишния драйвер беше същото точно заради това ъпдейтнах
  3. DirectX Error

    Леново Y510P Nvidia GT750M SLI
  4. DirectX Error

    Не,не съм овърклоквал нищо ето инфо за компа
  5. DirectX Error

    Здравейте колеги,как мога да поправя тази грешка ,всички ъпдейти съм инсталирал както на видео картата така и уиндоса е последния.Благодаря предварително.
  6. call of duty ww2 PC

    И аз имам същия проблем ако може някой да даде идея всички драйвери са ъпдейтнати и "windows-a"e последния какво може да е ?
  7. Да Ви кажа от време на време се ровя из "тъмните дебри" обаче от толкова време насам само горепосочения проблем съм имал и затова не ползвам антивирусна програма,нито прегряване на лаптопа нито нищо
  8. Благодаря Ви много за указаното съдействие,и само да вметна че аз не използвам антивирусна програма,а разчитам на windows defender.Трябва ли да сложа някаква?
  9. Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 31/03/2017 Scan Time: 14:32 Logfile: log.txt Administrator: Yes Version: 2.2.1.1043 Malware Database: v2017.03.31.04 Rootkit Database: v2017.03.11.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 10 CPU: x64 File System: NTFS User: Stanislav Scan Type: Threat Scan Result: Completed Objects Scanned: 349246 Time Elapsed: 32 min, 44 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Enabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 7 PUP.Optional.SearchGo, HKLM\SOFTWARE\CLASSES\SearchBar.SearchBarMain, Quarantined, [9bf512be9513a096a7a1dd00926ea759], PUP.Optional.SearchGo, HKLM\SOFTWARE\CLASSES\SearchBar.SearchBarMain.1, Quarantined, [8c04844c4a5e4ee81236617c5aa66997], PUP.Optional.SearchGo, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SearchBar.SearchBarMain, Quarantined, [8c04844c4a5e4ee81236617c5aa66997], PUP.Optional.SearchGo, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SearchBar.SearchBarMain.1, Quarantined, [8c04844c4a5e4ee81236617c5aa66997], PUP.Optional.SearchGo, HKLM\SOFTWARE\CLASSES\WOW6432NODE\SearchBar.SearchBarMain, Quarantined, [8c04844c4a5e4ee81236617c5aa66997], PUP.Optional.SearchGo, HKLM\SOFTWARE\CLASSES\WOW6432NODE\SearchBar.SearchBarMain.1, Quarantined, [8c04844c4a5e4ee81236617c5aa66997], PUP.Optional.StartPage, HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\SOFTWARE\START PAGE, Quarantined, [b0e0ac246147c1750a01a24e08fb8e72], Registry Values: 1 PUP.Optional.StartPage, HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\SOFTWARE\START PAGE|Start Page, http://granena.ru/?utm_content=31b5cebd524a9af6c7a772dca81815e9&utm_source=startpm&utm_term=DF0E9B1CA206E3609A2E75AC654569A7&utm_d=20160830, Quarantined, [b0e0ac246147c1750a01a24e08fb8e72] Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 0 (No malicious items detected) Physical Sectors: 0 (No malicious items detected) (end) HitmanPro 3.7.15.281 www.hitmanpro.com Computer name . . . . : SLAVI Windows . . . . . . . : 10.0.0.14393.X64/8 User name . . . . . . : SLAVI\Stanislav UAC . . . . . . . . . : Enabled License . . . . . . . : Free Scan date . . . . . . : 2017-03-31 15:29:23 Scan mode . . . . . . : Normal Scan duration . . . . : 8m 30s Disk access mode . . : Direct disk access (SRB) Cloud . . . . . . . . : Internet Reboot . . . . . . . : No Threats . . . . . . . : 1 Traces . . . . . . . : 22 Objects scanned . . . : 1,987,481 Files scanned . . . . : 75,989 Remnants scanned . . : 462,292 files / 1,449,200 keys Malware _____________________________________________________________________ C:\Program Files\KMSpico\Service_KMS.exe Size . . . . . . . : 691,480 bytes Age . . . . . . . : 478.8 days (2015-12-08 20:02:27) Entropy . . . . . : 5.7 SHA-256 . . . . . : 6347952EA63F103774E6F209B3BC0F697D8C22F8A357D6541A9A9F4E3D42092C Needs elevation . : Yes Product . . . . . : Service_KMS RSA Key Size . . . : 1024 Service . . . . . : Service KMSELDI LanguageID . . . . : 0 Authenticode . . . : Self-signed > Bitdefender . . . : Trojan.GenericKD.1416153 Fuzzy . . . . . . : 108.0 Startup HKLM\SYSTEM\CurrentControlSet\Services\Service KMSELDI\ Suspicious files ____________________________________________________________ C:\Users\Stanislav\Downloads\FRST64.exe Size . . . . . . . : 2,424,832 bytes Age . . . . . . . : 4.0 days (2017-03-27 14:30:09) Entropy . . . . . : 7.6 SHA-256 . . . . . : 3A3DCD0D3C9C1FE10C45AF795DC9452DA192246BB67D896AB7F16151A53C1B5F Needs elevation . : Yes Fuzzy . . . . . . : 24.0 Program has no publisher information but prompts the user for permission elevation. Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs. Authors name is missing in version info. This is not common to most programs. Version control is missing. This file is probably created by an individual. This is not typical for most programs. Time indicates that the file appeared recently on this computer. Forensic Cluster 0.0s C:\Users\Stanislav\Downloads\FRST64.exe 2.9s C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{402C8D87-95A7-449B-AE55-8020ECA40C22} 3.5s C:\ProgramData\Microsoft\Windows Defender\Scans\MetaStore\1\46\67A9C37052D52FBE.dat C:\WINDOWS\SysWOW64\GameMon.des Size . . . . . . . : 3,699,626 bytes Age . . . . . . . : 353.7 days (2016-04-11 23:24:51) Entropy . . . . . : 8.0 SHA-256 . . . . . : FD862DB8A51A52F52D199A0266C4307E5AD14FE1446C7B0100AE7AEF5310AD72 Product . . . . . : nProtect Game Monitor Publisher . . . . : INCA Internet Co., Ltd. Description . . . : nProtect Game Monitor Rev 2359 Version . . . . . : 2015.12.16.1 Service . . . . . : npggsvc LanguageID . . . . : 1042 Fuzzy . . . . . . : 34.0 The file name extension of this program is not common. Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs. Starts automatically as a service during system bootup. The file is located in a folder that contains core operating system files from Windows. This is not typical for most programs and is only common to system tools, drivers and hacking utilities. Startup HKLM\SYSTEM\CurrentControlSet\Services\npggsvc\ Potential Unwanted Programs _________________________________________________ HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\SOFTWARE\IM\ (Sweetpacks) Cookies _____________________________________________________________________ C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\2UG2E1SU.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\623GHTJE.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\6HSCIZCG.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\7P2US8QQ.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\BK5ZBJ6V.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\C8NN97V6.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\JTU03UAT.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\K3ED54AD.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\KKA43NNG.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MNPFGQS3.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\PH4LDQYI.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\UTLQBVU2.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\VCOT27RL.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\VPYBA8WD.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\YBXX6LVH.cookie C:\Users\Stanislav\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!121\MicrosoftEdge\Cookies\5FY1ZKQV.cookie
  10. Да няма го вече проблема със браузъра,какво следва сега?
  11. Emsisoft Emergency Kit - Version 2017.2 Last update: 31/03/2017 11:19:20 AM User account: SLAVI\Stanislav Computer name: SLAVI OS version: Windows 10x64 Scan settings: Scan type: Custom Scan Objects: Rootkits, Memory, Traces, C:\ Detect PUPs: On Scan archives: On ADS Scan: On File extension filter: Off Direct disk access: Off Scan start: 31/03/2017 11:20:15 AM C:\AdwCleaner\quarantine\files\ftkuvxlodigaobreeikxzohqpgxsyuit\searchgo.exe detected: Adware.GenericKD.3607517 (B) [krnl.xmd] C:\AdwCleaner\quarantine\files\cnivoablhigjotghczndxfngwlphjnry\Seviler.exe detected: Gen:Variant.Mikey.53773 (B) [krnl.xmd] C:\Downloads\KMSpico 9.06.20131120 Install\KMSpico_setup.exe -> (Instyler o) -> (Instyler Module 6) detected: Application.Hacktool.KMSActivator.F (B) [krnl.xmd] C:\FRST\Quarantine\C\Users\Stanislav\AppData\Local\ScriptWriter\ScriptWriter.exe detected: Application.InstallMon (A) [286321] C:\FRST\Quarantine\C\Users\Stanislav\AppData\Roaming\Voya-Tip.bin.xBAD -> (RAR Sfx o) -> [Comment] -> (unicode) detected: Trojan.ScriptKD.3185 (B) [krnl.xmd] C:\FRST\Quarantine\C\Users\Stanislav\AppData\Roaming\Voya-Tip.bin.xBAD -> (RAR Sfx o) -> LogicHandler.exe detected: Gen:Variant.Adware.Linkury.19 (B) [krnl.xmd] C:\FRST\Quarantine\C\Users\Stanislav\AppData\Local\Temp\c0.exe.xBAD detected: Trojan.Generic.20309126 (B) [krnl.xmd] C:\FRST\Quarantine\C\Users\Stanislav\AppData\Local\Temp\ICReinstall_JavaSetup.exe.xBAD detected: Application.InstallCore (A) [285475] C:\FRST\Quarantine\C\Users\Stanislav\AppData\LocalLow\SearchGo\searchgo.dll detected: Trojan.GenericKD.3158757 (B) [krnl.xmd] C:\Program Files\KMSpico\Service_KMS.exe detected: Application.Hacktool.KMSActivator.F (B) [krnl.xmd] C:\Users\Stanislav\Downloads\Andy_46.16_66.exe detected: Application.AdInstall (A) [285134] Scanned 396213 Found 11 Scan end: 31/03/2017 12:50:33 PM Scan time: 1:30:18
  12. Fix result of Farbar Recovery Scan Tool (x64) Version: 15-03-2017 Ran by Stanislav (28-03-2017 02:09:40) Run:1 Running from C:\Users\Stanislav\Downloads Loaded Profiles: Stanislav (Available Profiles: Stanislav) Boot Mode: Normal ============================================== fixlist content: ***************** start CreateRestorePoint: CloseProcesses: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\...\Run: [iozvjyidny] => explorer "hxxp://granena.ru/?utm_source=uoua03n&utm_content=e739009bccd5f1e6d71a91bff5994529&utm_term=DF0E9B1CA206E3609A2E75AC654569A7&utm_d=20160830" <===== ATTENTION HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\...\Run: [Stanislav] => explorer.exe hxxp://sd-steam.info <===== ATTENTION GroupPolicy: Restriction <======= ATTENTION GroupPolicy\User: Restriction <======= ATTENTION HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://granena.ru/?utm_content=31b5cebd524a9af6c7a772dca81815e9&utm_source=startpm&utm_term=DF0E9B1CA206E3609A2E75AC654569A7&utm_d=20160830 SearchScopes: HKLM -> DefaultScope value is missing SearchScopes: HKLM-x32 -> ielnksrch URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoHukF2bfbYiq88Ox7xHVm6J7S71JPaBR4g-du6PiTF-eDOx8MhV2kHQTe_nkNHQzzOxyijBNHhFMJECuzlVx1d96eWR4r4gG90rGgk4fYG1tufaUuuDinrviNLnbaq0w5BMCZjYIlx_2fRA1I5qp8bvojyTEEQ7b3F9SCY_nnA,,&q={searchTerms} BHO-x32: Searchgo Class -> {598AEFC6-DD3C-4A63-9AC3-53FCF6155931} -> C:\Users\Stanislav\AppData\LocalLow\SearchGo\searchgo.dll [2016-08-30] (Searchgo) C:\Users\Stanislav\AppData\LocalLow\SearchGo BHO-x32: Поиск@Mail.Ru -> {8E8F97CD-60B5-456F-A201-73065652D099} -> C:\Users\Stanislav\AppData\Local\Mail.Ru\Sputnik\IESearchPlugin.dll => No File Toolbar: HKLM-x32 - Searchgo - {2BC46CFA-4B00-4193-A7BD-6AD1D0BCB5BC} - C:\Users\Stanislav\AppData\LocalLow\SearchGo\searchgo.dll [2016-08-30] (Searchgo) FF DefaultSearchEngine: Mozilla\Firefox\Profiles\8no0xt45.default -> GoSearch FF SelectedSearchEngine: Mozilla\Firefox\Profiles\8no0xt45.default -> GoSearch FF Homepage: Mozilla\Firefox\Profiles\8no0xt45.default -> hxxp://granena.ru/?utm_content=31b5cebd524a9af6c7a772dca81815e9&utm_source=startpm&utm_term=DF0E9B1CA206E3609A2E75AC654569A7&utm_d=20160830 FF Keyword.URL: Mozilla\Firefox\Profiles\8no0xt45.default -> hxxp://go.mail.ru/distib/ep/?product_id=%7B4D15DED9-9FFC-49B6-BDEB-85DDC0F0F02C%7D&gp=811014 S2 backlh; C:\ProgramData\Logic Handler\set.exe [X] 2016-08-30 10:19 - 2016-08-30 10:19 - 7118336 _____ () C:\Users\Stanislav\AppData\Roaming\agent.dat 2016-08-30 10:19 - 2016-08-30 10:19 - 0054272 _____ () C:\Users\Stanislav\AppData\Roaming\ApplicationHosting.dat 2016-08-30 10:19 - 2016-08-30 10:19 - 0848565 _____ () C:\Users\Stanislav\AppData\Roaming\Canfix.bin 2016-08-30 10:19 - 2016-08-30 10:19 - 0070704 _____ () C:\Users\Stanislav\AppData\Roaming\Config.xml 2016-08-30 10:19 - 2016-08-30 10:19 - 1900860 _____ () C:\Users\Stanislav\AppData\Roaming\Dalttough.tst 2016-08-30 10:19 - 2016-08-30 10:19 - 0072720 _____ () C:\Users\Stanislav\AppData\Roaming\Icedax.tst 2016-08-30 10:19 - 2016-08-30 10:19 - 0018384 _____ () C:\Users\Stanislav\AppData\Roaming\InstallationConfiguration.xml 2016-08-30 10:19 - 2016-08-30 10:19 - 0138240 _____ () C:\Users\Stanislav\AppData\Roaming\Installer.dat 2016-08-30 10:19 - 2016-08-30 10:19 - 0126464 _____ () C:\Users\Stanislav\AppData\Roaming\lobby.dat 2016-08-30 10:19 - 2016-08-30 10:19 - 0018432 _____ () C:\Users\Stanislav\AppData\Roaming\Main.dat 2016-08-30 10:19 - 2016-08-30 10:19 - 0005568 _____ () C:\Users\Stanislav\AppData\Roaming\md.xml 2016-08-30 10:19 - 2016-08-30 10:19 - 0126464 _____ () C:\Users\Stanislav\AppData\Roaming\noah.dat 2016-08-30 10:19 - 2016-08-30 10:19 - 0032038 _____ () C:\Users\Stanislav\AppData\Roaming\uninstall_temp.ico 2016-08-30 10:19 - 2016-08-30 10:19 - 2279413 _____ () C:\Users\Stanislav\AppData\Roaming\Voya-Tip.bin 2016-09-25 13:11 - 2016-09-25 13:11 - 0102912 _____ () C:\Users\Stanislav\AppData\Local\Temp\c0.exe 2016-10-26 12:43 - 2016-10-26 12:43 - 1166160 _____ ( ) C:\Users\Stanislav\AppData\Local\Temp\ICReinstall_JavaSetup.exe 2017-03-22 03:24 - 2017-03-22 03:24 - 0739904 _____ (Oracle Corporation) C:\Users\Stanislav\AppData\Local\Temp\jre-8u121-windows-au.exe 2017-02-15 21:28 - 2017-02-23 11:17 - 0868152 _____ (NVIDIA Corporation) C:\Users\Stanislav\AppData\Local\Temp\nvSCPAPI64.dll 2017-02-23 23:01 - 2017-02-23 11:17 - 0354176 _____ (NVIDIA Corporation) C:\Users\Stanislav\AppData\Local\Temp\nvStInst.exe Task: {1A68537A-5F1B-4B7A-8595-5801C1F4BB47} - \syslog -> No File <==== ATTENTION Task: {1B0068C4-2E20-4212-B462-1C3B9B36337C} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {27056BE0-B773-4DA6-BB01-6EFDB80D204E} - System32\Tasks\SearchGo Task => C:\Users\Stanislav\AppData\Local\SearchGo\searchgo.exe [2016-08-30] (Searchgo) <==== ATTENTION Task: {41FAAC5E-118D-4522-84BF-1C2A11492C45} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {4F8E2F94-E79B-4F78-A3A7-EE63432F520C} - System32\Tasks\snf => C:\ProgramData\Quoteex\Quoteex.exe <==== ATTENTION C:\ProgramData\Quoteex Task: {76C16399-8457-4EAE-AA8B-1EDE6D37DA34} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {7865C11E-231B-4BEE-AA0B-D422A3B3DBE2} - System32\Tasks\ScriptWriter => C:\Users\Stanislav\AppData\Local\ScriptWriter\ScriptWriter.exe [2017-03-27] () <==== ATTENTION C:\Users\Stanislav\AppData\Local\ScriptWriter Task: {8A7F287E-A3B0-47D8-8317-245365DA9F33} - \FileSystemDriver -> No File <==== ATTENTION Task: {A47CDE3D-06A2-4AC5-9C0E-CBBFC8DF972F} - System32\Tasks\snp => C:\ProgramData\Quoteex\Quoteex.exe <==== ATTENTION Task: {AE72DED9-411A-4A02-AE54-9244750ED0A8} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {C7DBF464-BB01-4A1C-AC26-F72FD6FA63A7} - \Stanislav -> No File <==== ATTENTION Task: {D24CBACE-CB45-4BD9-9ED0-3862E3FAD7DC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {EC4EE86C-2881-4D21-AF59-1A8236B988AF} - System32\Tasks\{06A91B15-1C51-4059-9025-7D524F3F1070} => pcalua.exe -a "C:\Program Files (x86)\Origin Games\FIFA 16 DEMO\ModdingWayInstaller.exe" -d "C:\Program Files (x86)\Origin Games\FIFA 16 DEMO" Task: {F3C7F6B0-8AFB-4AB1-BA46-5018640D84EF} - \Lenovo\Lenovo Service Bridge\S-1-5-21-1059160026-2563336714-3159294338-1001 -> No File <==== ATTENTION C:\Users\Stanislav\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mail.Ru.lnk cmd: bitsadmin /reset /allusers cmd: netsh winsock reset catalog cmd: ipconfig /flushdns RemoveProxy: EmptyTemp: End ***************** Restore point was successfully created. Processes closed successfully. HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Microsoft\Windows\CurrentVersion\Run\\iozvjyidny => value removed successfully HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Stanislav => value removed successfully C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully C:\WINDOWS\system32\GroupPolicy\User => moved successfully HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\ielnksrch => key removed successfully HKCR\Wow6432Node\CLSID\ielnksrch => key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{598AEFC6-DD3C-4A63-9AC3-53FCF6155931} => key removed successfully HKCR\Wow6432Node\CLSID\{598AEFC6-DD3C-4A63-9AC3-53FCF6155931} => key not found. C:\Users\Stanislav\AppData\LocalLow\SearchGo => moved successfully HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E8F97CD-60B5-456F-A201-73065652D099} => key removed successfully HKCR\Wow6432Node\CLSID\{8E8F97CD-60B5-456F-A201-73065652D099} => key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{2BC46CFA-4B00-4193-A7BD-6AD1D0BCB5BC} => value removed successfully HKCR\Wow6432Node\CLSID\{2BC46CFA-4B00-4193-A7BD-6AD1D0BCB5BC} => key not found. Firefox DefaultSearchEngine removed successfully Firefox SelectedSearchEngine removed successfully Firefox "homepage" removed successfully Firefox "Keyword.URL" removed successfully HKLM\System\CurrentControlSet\Services\backlh => key removed successfully backlh => service removed successfully C:\Users\Stanislav\AppData\Roaming\agent.dat => moved successfully C:\Users\Stanislav\AppData\Roaming\ApplicationHosting.dat => moved successfully "C:\Users\Stanislav\AppData\Roaming\Canfix.bin" => not found. C:\Users\Stanislav\AppData\Roaming\Config.xml => moved successfully C:\Users\Stanislav\AppData\Roaming\Dalttough.tst => moved successfully C:\Users\Stanislav\AppData\Roaming\Icedax.tst => moved successfully C:\Users\Stanislav\AppData\Roaming\InstallationConfiguration.xml => moved successfully C:\Users\Stanislav\AppData\Roaming\Installer.dat => moved successfully C:\Users\Stanislav\AppData\Roaming\lobby.dat => moved successfully C:\Users\Stanislav\AppData\Roaming\Main.dat => moved successfully C:\Users\Stanislav\AppData\Roaming\md.xml => moved successfully C:\Users\Stanislav\AppData\Roaming\noah.dat => moved successfully C:\Users\Stanislav\AppData\Roaming\uninstall_temp.ico => moved successfully C:\Users\Stanislav\AppData\Roaming\Voya-Tip.bin => moved successfully C:\Users\Stanislav\AppData\Local\Temp\c0.exe => moved successfully C:\Users\Stanislav\AppData\Local\Temp\ICReinstall_JavaSetup.exe => moved successfully C:\Users\Stanislav\AppData\Local\Temp\jre-8u121-windows-au.exe => moved successfully C:\Users\Stanislav\AppData\Local\Temp\nvSCPAPI64.dll => moved successfully C:\Users\Stanislav\AppData\Local\Temp\nvStInst.exe => moved successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1A68537A-5F1B-4B7A-8595-5801C1F4BB47} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1A68537A-5F1B-4B7A-8595-5801C1F4BB47} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\syslog => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1B0068C4-2E20-4212-B462-1C3B9B36337C} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1B0068C4-2E20-4212-B462-1C3B9B36337C} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{27056BE0-B773-4DA6-BB01-6EFDB80D204E} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{27056BE0-B773-4DA6-BB01-6EFDB80D204E} => key removed successfully C:\WINDOWS\System32\Tasks\SearchGo Task => moved successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SearchGo Task => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{41FAAC5E-118D-4522-84BF-1C2A11492C45} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{41FAAC5E-118D-4522-84BF-1C2A11492C45} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4F8E2F94-E79B-4F78-A3A7-EE63432F520C} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F8E2F94-E79B-4F78-A3A7-EE63432F520C} => key removed successfully C:\WINDOWS\System32\Tasks\snf => moved successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\snf => key removed successfully "C:\ProgramData\Quoteex" => not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{76C16399-8457-4EAE-AA8B-1EDE6D37DA34} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{76C16399-8457-4EAE-AA8B-1EDE6D37DA34} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7865C11E-231B-4BEE-AA0B-D422A3B3DBE2} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7865C11E-231B-4BEE-AA0B-D422A3B3DBE2} => key removed successfully C:\WINDOWS\System32\Tasks\ScriptWriter => moved successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScriptWriter => key removed successfully C:\Users\Stanislav\AppData\Local\ScriptWriter => moved successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8A7F287E-A3B0-47D8-8317-245365DA9F33} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8A7F287E-A3B0-47D8-8317-245365DA9F33} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FileSystemDriver => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A47CDE3D-06A2-4AC5-9C0E-CBBFC8DF972F} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A47CDE3D-06A2-4AC5-9C0E-CBBFC8DF972F} => key removed successfully C:\WINDOWS\System32\Tasks\snp => moved successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\snp => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AE72DED9-411A-4A02-AE54-9244750ED0A8} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AE72DED9-411A-4A02-AE54-9244750ED0A8} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{C7DBF464-BB01-4A1C-AC26-F72FD6FA63A7} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7DBF464-BB01-4A1C-AC26-F72FD6FA63A7} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Stanislav => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D24CBACE-CB45-4BD9-9ED0-3862E3FAD7DC} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D24CBACE-CB45-4BD9-9ED0-3862E3FAD7DC} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EC4EE86C-2881-4D21-AF59-1A8236B988AF} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EC4EE86C-2881-4D21-AF59-1A8236B988AF} => key removed successfully C:\WINDOWS\System32\Tasks\{06A91B15-1C51-4059-9025-7D524F3F1070} => moved successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{06A91B15-1C51-4059-9025-7D524F3F1070} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F3C7F6B0-8AFB-4AB1-BA46-5018640D84EF} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3C7F6B0-8AFB-4AB1-BA46-5018640D84EF} => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Lenovo Service Bridge\S-1-5-21-1059160026-2563336714-3159294338-1001 => key removed successfully C:\Users\Stanislav\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mail.Ru.lnk => moved successfully ========= bitsadmin /reset /allusers ========= BITSADMIN version 3.0 BITS administration utility. (C) Copyright 2000-2006 Microsoft Corp. BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows. Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets. Unable to cancel {01122AB9-C32B-4789-BA52-03D10824852F}. 0 out of 1 jobs canceled. ========= End of CMD: ========= ========= netsh winsock reset catalog ========= Sucessfully reset the Winsock Catalog. You must restart the computer in order to complete the reset. ========= End of CMD: ========= ========= ipconfig /flushdns ========= Windows IP Configuration Successfully flushed the DNS Resolver Cache. ========= End of CMD: ========= ========= RemoveProxy: ========= HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully ========= End of RemoveProxy: ========= =========== EmptyTemp: ========== BITS transfer queue => 6808768 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 386065253 B Java, Flash, Steam htmlcache => 22509700 B Windows/system/drivers => 110901962 B Edge => 80689373 B Chrome => 0 B Firefox => 9587907 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 128 B LocalService => 788 B NetworkService => 13385602 B Stanislav => 1723049269 B RecycleBin => 0 B EmptyTemp: => 2.2 GB temporary data Removed. ================================ The system needed a reboot. ==== End of Fixlog 02:11:07 ==== # AdwCleaner v6.044 - Logfile created 28/03/2017 at 02:29:38 # Updated on 28/02/2017 by Malwarebytes # Database : 2017-03-27.1 [Server] # Operating System : Windows 10 Pro (X64) # Username : Stanislav - SLAVI # Running from : C:\Users\Stanislav\Downloads\adwcleaner_6.044.exe # Mode: Clean # Support : https://www.malwarebytes.com/support ***** [ Services ] ***** ***** [ Folders ] ***** [-] Folder deleted: C:\ProgramData\5223e45f-1c57-0 [-] Folder deleted: C:\ProgramData\5223e45f-6f17-1 [-] Folder deleted: C:\Users\Stanislav\AppData\Local\SearchGo [-] Folder deleted: C:\Users\Stanislav\AppData\Local\FileSystemDriver [-] Folder deleted: C:\Users\Stanislav\AppData\Local\Вoйти в Интeрнет [-] Folder deleted: C:\Users\Stanislav\AppData\Local\Поиcк в Интeрнете [-] Folder deleted: C:\Users\Stanislav\AppData\Roaming\MailProducts [-] Folder deleted: C:\Users\Stanislav\AppData\Roaming\GameLauncher\Seviler [-] Folder deleted: C:\ProgramData\Mail.Ru [-] Folder deleted: C:\ProgramData\CloudPrinter [-] Folder deleted: C:\ProgramData\Logic Handler [#] Folder deleted on reboot: C:\ProgramData\Quoteexs [#] Folder deleted on reboot: C:\ProgramData\Application Data\Mail.Ru [#] Folder deleted on reboot: C:\ProgramData\Application Data\CloudPrinter [#] Folder deleted on reboot: C:\ProgramData\Application Data\Logic Handler [#] Folder deleted on reboot: C:\ProgramData\Application Data\Quoteexs [#] Folder deleted on reboot: C:\Program Files (x86)\AdAnti [-] Folder deleted: C:\Users\Stanislav\AppData\Roaming\GameLauncher ***** [ Files ] ***** [-] File deleted: C:\Users\Stanislav\Favorites\Mail.Ru.url [-] File deleted: C:\Users\Stanislav\Favorites\Mail.Ru Агент - используй для общения!.url [-] File deleted: C:\WINDOWS\SysWOW64\findit.xml ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Shortcuts ] ***** ***** [ Scheduled Tasks ] ***** [-] Task deleted: amiupdaterExd [-] Task deleted: amiupdaterExi ***** [ Registry ] ***** [-] Key deleted: HKCU\Software\3462b42711605eb40963ec15d304e084 [-] Key deleted: HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Hosting [#] Key deleted on reboot: [x64] HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\Application Hosting [-] Key deleted: [x64] HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\services\CloudPrinter [-] Key deleted: HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO [-] Key deleted: HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\IESearchPlugin.MailRuBHO.1 [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{8E8F97CD-60B5-456F-A201-73065652D099} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{2BC46CFA-4B00-4193-A7BD-6AD1D0BCB5BC} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{598AEFC6-DD3C-4A63-9AC3-53FCF6155931} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{C69276F0-9BC1-404F-8566-FCB14D0ED4B8} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8E8F97CD-60B5-456F-A201-73065652D099} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2BC46CFA-4B00-4193-A7BD-6AD1D0BCB5BC} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{598AEFC6-DD3C-4A63-9AC3-53FCF6155931} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8E8F97CD-60B5-456F-A201-73065652D099} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2BC46CFA-4B00-4193-A7BD-6AD1D0BCB5BC} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{598AEFC6-DD3C-4A63-9AC3-53FCF6155931} [-] Key deleted: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\One System Care [-] Key deleted: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\PRODUCTSETUP [-] Key deleted: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Mail.Ru [-] Key deleted: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Ultimate-Discounter [-] Key deleted: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\csastats [-] Key deleted: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Microsoft\Gosearch [-] Key deleted: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Microsoft\Gosearchq [-] Key deleted: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Xpom [-] Key deleted: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\AppDataLow\Software\Mail.Ru [#] Key deleted on reboot: HKCU\Software\One System Care [#] Key deleted on reboot: HKCU\Software\PRODUCTSETUP [#] Key deleted on reboot: HKCU\Software\Mail.Ru [#] Key deleted on reboot: HKCU\Software\Ultimate-Discounter [#] Key deleted on reboot: HKCU\Software\csastats [#] Key deleted on reboot: HKCU\Software\Microsoft\Gosearch [#] Key deleted on reboot: HKCU\Software\Microsoft\Gosearchq [#] Key deleted on reboot: HKCU\Software\Xpom [#] Key deleted on reboot: HKCU\Software\AppDataLow\Software\Mail.Ru [-] Key deleted: HKLM\SOFTWARE\Mail.Ru [-] Key deleted: HKLM\SOFTWARE\mtQuoteex [-] Key deleted: HKLM\SOFTWARE\FileSystemDriver [-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\11598763487076930564 [#] Key deleted on reboot: [x64] HKCU\Software\One System Care [#] Key deleted on reboot: [x64] HKCU\Software\PRODUCTSETUP [#] Key deleted on reboot: [x64] HKCU\Software\Mail.Ru [#] Key deleted on reboot: [x64] HKCU\Software\Ultimate-Discounter [#] Key deleted on reboot: [x64] HKCU\Software\csastats [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Gosearch [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Gosearchq [#] Key deleted on reboot: [x64] HKCU\Software\Xpom [#] Key deleted on reboot: [x64] HKCU\Software\AppDataLow\Software\Mail.Ru [-] Data restored: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Microsoft\Internet Explorer\Main [Search Bar] [-] Data restored: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Microsoft\Internet Explorer\Main [SearchAssistant] [-] Data restored: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Microsoft\Internet Explorer\Search [Default_Search_URL] [-] Data restored: HKU\S-1-5-21-1059160026-2563336714-3159294338-1001\Software\Microsoft\Internet Explorer\SearchUrl [Default] [-] Data restored: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default] [-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar] [-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [SearchAssistant] [-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL] [-] Data restored: HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default] [-] Data restored: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar] [-] Data restored: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [SearchAssistant] [-] Data restored: [x64] HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL] [-] Data restored: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default] [-] Value deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\piroga.space [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\st.chatango.com [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\piroga.space [-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\st.chatango.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\piroga.space [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\st.chatango.com [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\piroga.space [#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\st.chatango.com [-] Key deleted: HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} [#] Key deleted on reboot: HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\Application Hosting [-] Key deleted: HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SILENTPROCESSEXIT\Quoteex.exe ***** [ Web browsers ] ***** ************************* :: "Tracing" keys deleted :: Winsock settings cleared ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [9847 Bytes] - [28/03/2017 02:29:38] C:\AdwCleaner\AdwCleaner[S0].txt - [10930 Bytes] - [28/03/2017 02:28:52] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [9994 Bytes] ######## Все още незнам дали има промяна,но ако забележа такава или не ще Ви пиша.Поздрави и благодаря.
  • Разглеждащи в момента   0 потребители

    Няма регистрирани потребители разглеждащи тази страница.

×

Информация

Този сайт използва бисквитки (cookies), за най-доброто потребителско изживяване. С използването му, вие приемате нашите Условия за ползване.