Премини към съдържанието
Форумът в приложение

По-лесно сърфиране. Научи повече.

Kaldata.com - Форуми

Приложение на форума на цял екран с push известия, значки и други.

За да инсталирате това приложение на iOS и iPadOS
  1. Докоснете Иконата за споделяне в Safari
  2. Превъртете менюто и докоснете Добавяне към началния екран.
  3. Докоснете Добавяне в горния десен ъгъл.
За да инсталирате това приложение на Android
  1. Докоснете менюто с 3 точки (⋮) в горния десен ъгъл на браузъра.
  2. Докоснете Добавяне към началния екран или Инсталиране на приложение.
  3. Потвърдете, като докоснете Инсталиране.

Добре дошли!

Добре дошли в нашите форуми, пълни с полезна информация. Имате проблем с компютъра или телефона си? Публикувайте нова тема и ще намерите решение на всичките си проблеми. Общувайте свободно и открийте безброй нови приятели.

Моля, регистрирайте се за да публикувате тема и да получите пълен достъп до всички функции.

 

Забиване на клипове в Mozilla

Featured Replies

Клиповете в Firefox ми забиват, след което целия Firefox става много бавен. Знам че препоръчвате някои програми, но незнам коя от тях е най-подходяща за моя проблем.

  • Отговори 61
  • Прегледи 3,1k
  • Създадено
  • Последен отговор

Като за начало пробвай с друг браузър. Освен това кажи и каква ти е конфигурацията, да не се окаже, че вече е остаряла за браузване.

Клиповете в Firefox ми забиват, след което целия Firefox става много бавен. Знам че препоръчвате някои програми, но незнам коя от тях е най-подходяща за моя проблем.

Само браузера ли работи бавно, или това се усеща при  работата и с други програми?

  • Автор

Само браузера ли работи бавно, или това се усеща при  работата и с други програми?

Браузера като цяло работи добре, до момента когато пусна клипа и след това трябва да го рестартирам за да се оправи. С други програми нямам проблеми.

Като за начало пробвай с друг браузър. Освен това кажи и каква ти е конфигурацията, да не се окаже, че вече е остаряла за браузване.

С Google Chrome нямам проблеми. RAM 4,00 GB 64 bit Operating System Intel ® Core 2 Duo CPU 3.00 GHz, версията на Мозила е последната

Конфигурацията е добра. Пробвай да деинсталираш мозила и флаш плеъра и да ги инсталираш отново.

  • Автор

Конфигурацията е добра. Пробвай да деинсталираш мозила и флаш плеъра и да ги инсталираш отново.

Направих го, отначало клипа тръгна добре и после пак същото.

Здравейте!

Тъй като това е в раздела за премахване на зловреден софтуер от което съдя, че предполагате такъв тип проблеми, ви препоръчвам да се запознаете с информацията, която ни е нужна и с правилата, които трябва да спазвате в процеса на работата ни тук.

https://www.kaldata.com/forums/topic/132819-%D1%81%D0%B8%D1%81%D1%82%D0%B5%D0%BC%D0%B0%D1%82%D0%B0-%D0%BC%D0%B8-%D0%B5-%D0%B8%D0%BD%D1%84%D0%B5%D0%BA%D1%82%D0%B8%D1%80%D0%B0%D0%BD%D0%B0-%D0%BA%D0%B0%D0%BA%D0%B2%D0%BE-%D0%B4%D0%B0-%D0%BF%D1%80%D0%B0%D0%B2%D1%8F-%D1%81%D0%B5%D0%B3%D0%B0/

  • Автор

Само не можах да разбера как да си прикача втория файл

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:30-07-2015
Ran by Lenovo (administrator) on LENOVO-PC (31-07-2015 15:24:11)
Running from D:\Download
Loaded Profiles: Lenovo (Available Profiles: Lenovo)
Platform: Windows 7 Ultimate (X64) Language: English (United States)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(BitTorrent Inc.) C:\Users\Lenovo\AppData\Roaming\uTorrent\uTorrent.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(PokerStars) C:\Program Files (x86)\PokerStars.BG\PokerStars.exe
() C:\Program Files (x86)\PokerStars.BG\gameutil1.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5595848 2015-01-28] (ESET)
HKU\S-1-5-21-578373634-2819587407-707087891-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd)
HKU\S-1-5-21-578373634-2819587407-707087891-1001\...\Run: [uTorrent] => C:\Users\Lenovo\AppData\Roaming\uTorrent\uTorrent.exe [1993056 2015-07-29] (BitTorrent Inc.)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-578373634-2819587407-707087891-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-578373634-2819587407-707087891-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
URLSearchHook: HKLM-x32 - Default Value = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D}
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-12] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
BHO-x32: Skype add-on (mastermind) -> {22BF413B-C6D2-4d91-82A9-A0F997BA588C} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-08-04] (Skype Technologies S.A.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-12] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
Toolbar: HKLM-x32 - No Name - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} -  No File
DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} http://content.systemrequirementslab.com/bin/srldetect_intel_4.5.24.0.cab
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 77.71.1.1 77.71.0.1
Tcpip\..\Interfaces\{3EB743FC-FC09-4846-A94F-1BA7625EE52A}: [DhcpNameServer] 77.71.0.1 77.71.1.1
Tcpip\..\Interfaces\{E8EA78CD-3919-4541-BA62-37B626925DC1}: [DhcpNameServer] 77.71.1.1 77.71.0.1

FireFox:
========
FF ProfilePath: C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9zm9ha3.default
FF SearchEngineOrder.3: Bing
FF Homepage: hxxp://www.gbg.bg/
FF Keyword.URL: hxxp://www.bing.com/search?FORM=SKY2DF&PC=SKY2&q=
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-31] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-31] (Google Inc.)
FF Extension: Adblock Plus - C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9zm9ha3.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-05-20]
FF Extension: QuickStores-Toolbar - C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected] [2015-07-27]

Chrome:
=======
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-31]
CHR Extension: (Google Docs) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-31]
CHR Extension: (Google Drive) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-31]
CHR Extension: (YouTube) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-31]
CHR Extension: (Google Search) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-31]
CHR Extension: (Google Sheets) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-31]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-31]
CHR Extension: (Gmail) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-31]

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1349576 2015-01-28] (ESET)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2015-04-14] (DT Soft Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [246000 2015-02-23] (ESET)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [241880 2015-02-23] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [169792 2015-02-23] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [159480 2015-02-23] (ESET)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
S3 cpudrv64; \??\C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-31 13:13 - 2015-07-31 13:13 - 00002253 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-31 13:13 - 2015-07-31 13:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-07-31 13:12 - 2015-07-31 15:17 - 00000998 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-31 13:12 - 2015-07-31 13:17 - 00000994 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-31 13:12 - 2015-07-31 13:12 - 00003994 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-07-31 13:12 - 2015-07-31 13:12 - 00003742 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-07-31 12:28 - 2015-07-31 12:28 - 00001159 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-07-31 12:28 - 2015-07-31 12:28 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-07-31 12:28 - 2015-07-31 12:28 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-31 11:11 - 2015-07-31 15:24 - 00000000 ____D C:\FRST
2015-07-29 16:04 - 2015-07-29 16:04 - 00000853 _____ C:\Users\Lenovo\Desktop\µTorrent.lnk
2015-07-29 16:04 - 2015-07-29 16:04 - 00000833 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-07-28 11:48 - 2015-07-28 11:48 - 00000000 ____D C:\Program Files (x86)\ESET
2015-07-27 19:04 - 2015-07-28 11:25 - 00000000 ____D C:\Qoobox
2015-07-27 19:04 - 2015-07-27 19:11 - 00000000 ____D C:\Windows\erdnt
2015-07-27 18:28 - 2015-07-27 18:28 - 00000187 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\QuickStores.url
2015-07-18 18:34 - 2015-07-18 18:34 - 00000000 ____D C:\ProgramData\4c690437000059dc
2015-07-18 18:34 - 2015-07-18 18:34 - 00000000 _____ C:\Users\Lenovo\AppData\Local\Temp.dat
2015-07-18 18:31 - 2015-07-19 14:19 - 00000000 ____D C:\Program Files (x86)\Fox News
2015-07-18 18:30 - 2015-07-19 14:21 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Remorseful Heroism
2015-07-18 18:30 - 2015-07-18 18:30 - 00000000 ____D C:\ProgramData\{1256d627-1661-300a-1256-6d627166589c}

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-31 15:23 - 2014-09-06 08:42 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\uTorrent
2015-07-31 15:18 - 2014-09-06 08:44 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Skype
2015-07-31 13:38 - 2009-07-14 07:45 - 00014192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-31 13:38 - 2009-07-14 07:45 - 00014192 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-31 13:33 - 2015-05-30 12:37 - 00000000 ____D C:\Users\Lenovo\AppData\Local\PokerStars.BG
2015-07-31 13:12 - 2014-09-06 08:59 - 00000000 ____D C:\Program Files (x86)\Google
2015-07-31 12:28 - 2014-09-24 22:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-07-31 09:12 - 2014-09-06 18:28 - 01212467 _____ C:\Windows\WindowsUpdate.log
2015-07-31 09:12 - 2009-07-14 08:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-31 09:12 - 2009-07-14 07:51 - 00063334 _____ C:\Windows\setupact.log
2015-07-31 09:11 - 2014-09-06 09:16 - 00202376 _____ C:\Windows\PFRO.log
2015-07-30 15:26 - 2009-07-14 08:13 - 00778150 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-30 15:00 - 2015-05-21 15:00 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-07-29 16:04 - 2014-09-06 08:43 - 00000000 ____D C:\Program Files (x86)\uTorrent
2015-07-27 19:43 - 2009-07-14 05:34 - 00000215 _____ C:\Windows\system.ini
2015-07-27 19:12 - 2009-07-14 06:20 - 00000000 __RHD C:\Users\Default
2015-07-27 16:01 - 2015-03-13 15:16 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Adobe
2015-07-27 15:22 - 2015-05-27 12:08 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\SlimBrowser
2015-07-27 15:09 - 2009-07-14 06:20 - 00000000 ____D C:\Windows\SchCache
2015-07-27 12:45 - 2014-09-06 08:43 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-07-27 12:45 - 2014-09-06 08:43 - 00000000 ____D C:\ProgramData\Skype
2015-07-25 21:27 - 2014-09-06 08:59 - 00000000 ____D C:\Users\Lenovo\AppData\Local\Google
2015-07-25 19:26 - 2014-09-06 09:40 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\vlc
2015-07-19 14:02 - 2015-05-21 14:59 - 00001102 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-07-19 14:02 - 2015-05-21 14:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-07-19 14:02 - 2015-05-21 14:59 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-07-09 12:16 - 2015-05-30 12:36 - 00000000 ____D C:\Program Files (x86)\PokerStars.BG

==================== Files in the root of some directories =======

2015-04-08 18:56 - 2015-04-08 18:56 - 0000000 ___SH () C:\Users\Lenovo\AppData\Local\LumaEmu
2015-07-18 18:34 - 2015-07-18 18:34 - 0000000 _____ () C:\Users\Lenovo\AppData\Local\Temp.dat

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-07-23 10:50

==================== End of log ============================

  • Автор

Additional scan result of Farbar Recovery Scan Tool (x64) Version:30-07-2015
Ran by Lenovo (2015-07-31 11:12:04)
Running from D:\Download
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-578373634-2819587407-707087891-500 - Administrator - Disabled)
Guest (S-1-5-21-578373634-2819587407-707087891-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-578373634-2819587407-707087891-1002 - Limited - Enabled)
Lenovo (S-1-5-21-578373634-2819587407-707087891-1001 - Administrator - Enabled) => C:\Users\Lenovo

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET NOD32 Antivirus 8.0 (Enabled - Out of date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET NOD32 Antivirus 8.0 (Enabled - Out of date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

????????? WinRAR (HKLM\...\WinRAR archiver) (Version:  - )
µTorrent (HKU\S-1-5-21-578373634-2819587407-707087891-1001\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.)
BS.Player PRO (HKLM-x32\...\BSPlayerp) (Version: 2.68.1077 - AB Team, d.o.o.)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.46.1.0327 - DT Soft Ltd)
Delta Force (HKLM-x32\...\Delta Force) (Version:  - )
ESET NOD32 Antivirus (HKLM\...\{D60FE294-EAFD-4A57-A55F-A99AE8520A98}) (Version: 8.0.312.4 - ESET, spol s r. o.)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
EVEREST Ultimate Edition v4.20 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 4.20 - Lavalys, Inc.)
Favorite-Games 5.22 (HKLM-x32\...\Favorite-Games_is1) (Version:  - Favorite-Games 2001-2013 ©)
Foxit Reader (HKLM-x32\...\Foxit Reader) (Version:  - )
Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden
Intel® Network Connections 19.3.141.0 (HKLM\...\PROSetDX) (Version: 19.3.141.0 - Intel)
Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office 2010 Service Pack 1 (SP1) (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}) (Version:  - Microsoft)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.6029.1000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Mozilla Firefox 39.0 (x86 bg) (HKLM-x32\...\Mozilla Firefox 39.0 (x86 bg)) (Version: 39.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0 - Mozilla)
MPC-HC 1.7.5 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.5 - MPC-HC Team)
PokerStars.bg (HKLM-x32\...\PokerStars.bg) (Version:  - PokerStars.bg)
Skype web features (HKLM-x32\...\{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}) (Version: 1.0.3971 - Skype Technologies S.A.)
Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.)
Test Drive Unlimited 2 (HKLM-x32\...\Test Drive Unlimited 2_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)
TP-LINK Wireless Client Utility (HKLM-x32\...\{7A2A107B-9695-423F-9462-8F17C178BD35}) (Version: 7.0 - TP-LINK)
VLC media player 1.1.7 (HKLM-x32\...\VLC media player) (Version: 1.1.7 - VideoLAN)
Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.0) (Version: 1.3.0 - Xvid Team)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================

29-07-2015 18:28:26 Scheduled Checkpoint

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 05:34 - 2009-06-11 00:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {18AB2963-37E9-4215-9CAD-E21ED605FF3E} - System32\Tasks\{135E0D11-A941-4278-BD65-88C47BBCF17B} => pcalua.exe -a "D:\Games\Counter-Strike\Counter-Strike 1.6 Mega Edition\Counter-Strike v1.6 Mega Edition.exe" -d "D:\Games\Counter-Strike\Counter-Strike 1.6 Mega Edition"
Task: {2C5B095C-0357-4234-9CD9-2810E4CED468} - System32\Tasks\{F9A21DCF-E36F-4FC7-9E8D-660AB65150E2} => pcalua.exe -a C:\Users\Lenovo\Downloads\Intel%20X4500%20Windows%207%20Vista%2064bit%2015162.exe -d C:\Users\Lenovo\Downloads
Task: {47C0CB30-3313-4280-B9D7-04D406E08A65} - System32\Tasks\{989A0D82-98E9-4400-A05A-2D81123A3014} => pcalua.exe -a C:\Windows\IsUninst.exe -c -f"d:\games\delta force1\Uninst.isu"
Task: {8C8870AC-4C02-4236-9D6D-6AC5E742A673} - System32\Tasks\{6944F15A-BB07-41F4-935D-B3107C48185A} => Firefox.exe http://ui.skype.com/ui/0/7.0.0.102/bg/abandoninstall?page=tsProgressBar
Task: {B5B33FDE-52A8-476F-94FB-BFA618E83D99} - System32\Tasks\{0DA3FAA2-E34E-4AD2-BF3E-2B126BDB484C} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-06-30] (Skype Technologies S.A.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Loaded Modules (Whitelisted) ==============

2011-03-17 00:07 - 2011-03-17 00:07 - 04297568 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2011-03-17 00:11 - 2011-03-17 00:11 - 04297568 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-578373634-2819587407-707087891-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 77.71.1.1 - 77.71.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: IePluginServices => 2
MSCONFIG\Services: Intel® PROSet Monitoring Service => 2
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\startupfolder: C:^Users^Lenovo^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^TornTvDownloader.lnk => C:\Windows\pss\TornTvDownloader.lnk.Startup
MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: TornTv Downloader => C:\Users\Lenovo\AppData\Roaming\TornTV.com\Torntv Downloader.exe /c=startup
MSCONFIG\startupreg: uTorrent => "C:\Program Files (x86)\uTorrent\uTorrent.exe"  /MINIMIZED

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [VirtualPC-In-UDP-1] => (Allow) %SystemRoot%\System32\vpc.exe
FirewallRules: [VirtualPC-In-UDP-2] => (Allow) %SystemRoot%\System32\vpc.exe
FirewallRules: [VirtualPC-In-TCP-1] => (Allow) %SystemRoot%\System32\vpc.exe
FirewallRules: [{2BC7A047-6774-43DC-A2F0-F74114C0220F}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [{BD3B7FC0-6063-40C9-B9C5-8677EB8B4260}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe
FirewallRules: [{CE427DF4-8948-4A89-BF5F-33BC6C752C91}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{29E03F6C-7514-40CF-AAA1-1FD7B29D6672}] => (Allow) D:\Download\Calvin_Harris_-_Let_s_Go_feat_Ne_-_Yo_downloader.exe
FirewallRules: [{FB400B0D-F3E8-461E-8B2C-45D36D046D22}] => (Allow) D:\Download\Calvin_Harris_-_Let_s_Go_feat_Ne_-_Yo_downloader.exe
FirewallRules: [{5AF560FD-2F7B-43A8-B49A-2DCF0F95A3CB}] => (Allow) C:\Program Files (x86)\YourFileDownloader\YourFileDownloader.exe
FirewallRules: [{EC86A14C-2D79-40F0-8C5E-B6B75B835BF8}] => (Allow) C:\Program Files (x86)\YourFileDownloader\YourFileDownloader.exe
FirewallRules: [{DFD10D97-1DAE-47B5-9942-59EB585BDC2D}] => (Allow) C:\Program Files (x86)\YourFileDownloader\Downloader.exe
FirewallRules: [{D8219A9C-41F3-494B-9BFC-62DB645F5D76}] => (Allow) C:\Program Files (x86)\YourFileDownloader\Downloader.exe
FirewallRules: [TCP Query User{ADEB7FB4-A70A-4454-A9FF-969DD8CA0BBF}C:\users\lenovo\appdata\roaming\torntv.com\torntv downloader.exe] => (Allow) C:\users\lenovo\appdata\roaming\torntv.com\torntv downloader.exe
FirewallRules: [uDP Query User{9C3E185C-B7A5-4D36-9F96-9AC5DE5A0AEB}C:\users\lenovo\appdata\roaming\torntv.com\torntv downloader.exe] => (Allow) C:\users\lenovo\appdata\roaming\torntv.com\torntv downloader.exe
FirewallRules: [{3989917A-092B-43F0-9C98-4C5F11E0014F}] => (Allow) C:\Program Files (x86)\BearShare Applications\BearShare\BearShare.exe
FirewallRules: [TCP Query User{5C5502E6-1C6F-4D3C-AB85-8E20BAE9DED0}D:\games\test drive\test drive unlimited 2\uplauncher.exe] => (Allow) D:\games\test drive\test drive unlimited 2\uplauncher.exe
FirewallRules: [uDP Query User{97C0BD2A-1656-483D-B175-5A0181D794FE}D:\games\test drive\test drive unlimited 2\uplauncher.exe] => (Allow) D:\games\test drive\test drive unlimited 2\uplauncher.exe
FirewallRules: [{C6D6A622-6BC8-4E36-BCE4-9013BAFB8E1A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{E342FEE5-75D1-4467-8D61-4B19F3CA2D9B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{F5462420-649F-4CEC-9F99-854366DD865A}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe
FirewallRules: [uDP Query User{B29A3E3F-96D5-4148-89EA-126C6328DE9F}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe
FirewallRules: [TCP Query User{CE24C725-37B4-46BB-A0A7-45D891B27D1F}D:\games\delta force1\df.exe] => (Block) D:\games\delta force1\df.exe
FirewallRules: [uDP Query User{50C48971-23D2-4272-BC90-011B33CAD36F}D:\games\delta force1\df.exe] => (Block) D:\games\delta force1\df.exe
FirewallRules: [TCP Query User{D350A245-31AD-492C-8A1C-4F605A93B9E1}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [uDP Query User{3569D0B4-35A7-4754-98EA-8F858CEBD834}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [{9F446FD0-91C9-4B1D-BDF6-FC55E5B7D143}] => (Allow) C:\Users\Lenovo\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{01A26E2B-798F-45F3-AD8D-4CCD09FA5E29}] => (Allow) C:\Users\Lenovo\AppData\Roaming\uTorrent\uTorrent.exe

==================== Faulty Device Manager Devices =============

Name: PCI Simple Communications Controller
Description: PCI Simple Communications Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: PCI Serial Port
Description: PCI Serial Port
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/30/2015 10:12:28 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifest.

Error: (07/29/2015 11:29:40 PM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{60042969-6CCA-46CD-81D4-22A056C989F3}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}HB_StartScreenSaver

Error: (07/29/2015 06:21:38 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifest.

Error: (07/28/2015 09:10:29 PM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{60042969-6CCA-46CD-81D4-22A056C989F3}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}HB_StartScreenSaver

Error: (07/28/2015 05:27:06 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifest.

Error: (07/28/2015 11:48:35 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifest.

Error: (07/28/2015 11:48:31 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifest.

Error: (07/28/2015 11:48:31 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifest.

Error: (07/28/2015 11:47:53 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifest.

Error: (07/28/2015 11:47:52 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifest.


System errors:
=============
Error: (07/31/2015 09:12:03 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.

Module Path: C:\Windows\system32\athExt.dll
Error Code: 126

Error: (07/30/2015 03:22:19 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.

Module Path: C:\Windows\system32\athExt.dll
Error Code: 126

Error: (07/30/2015 09:12:16 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.

Module Path: C:\Windows\system32\athExt.dll
Error Code: 126

Error: (07/29/2015 06:23:58 PM) (Source: volsnap) (EventID: 36) (User: )
Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.

Error: (07/29/2015 11:56:20 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.

Module Path: C:\Windows\system32\athExt.dll
Error Code: 126

Error: (07/28/2015 09:11:46 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.

Module Path: C:\Windows\system32\athExt.dll
Error Code: 126

Error: (07/28/2015 12:23:20 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
%%1275

Error: (07/28/2015 12:23:20 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Lenovo\AppData\Local\Temp\ehdrv.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.

Error: (07/28/2015 12:23:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The eapihdrv service failed to start due to the following error:
%%1275

Error: (07/28/2015 12:23:19 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Lenovo\AppData\Local\Temp\ehdrv.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.


Microsoft Office:
=========================
Error: (07/30/2015 10:12:28 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe

Error: (07/29/2015 11:29:40 PM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{60042969-6CCA-46CD-81D4-22A056C989F3}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}HB_StartScreenSaver

Error: (07/29/2015 06:21:38 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe

Error: (07/28/2015 09:10:29 PM) (Source: EventSystem) (EventID: 4621) (User: )
Description: 80070005EventSystem.EventSubscription{60042969-6CCA-46CD-81D4-22A056C989F3}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}HB_StartScreenSaver

Error: (07/28/2015 05:27:06 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe

Error: (07/28/2015 11:48:35 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifestD:\Download\esetsmartinstaller_enu.exe

Error: (07/28/2015 11:48:31 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifestD:\Download\esetsmartinstaller_enu.exe

Error: (07/28/2015 11:48:31 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifestD:\Download\esetsmartinstaller_enu.exe

Error: (07/28/2015 11:47:53 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifestD:\Download\esetsmartinstaller_enu.exe

Error: (07/28/2015 11:47:52 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_fa5cc277170a386a.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16400_none_4209f94e2b866170.manifestD:\Download\esetsmartinstaller_enu.exe


==================== Memory info ===========================

Processor: Intel® Core2 Duo CPU E8400 @ 3.00GHz
Percentage of memory in use: 56%
Total physical RAM: 3551.17 MB
Available physical RAM: 1543.66 MB
Total Virtual: 7100.49 MB
Available Virtual: 5174.47 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:48.83 GB) (Free:24.27 GB) NTFS
Drive d: () (Fixed) (Total:100.12 GB) (Free:15.7 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149.1 GB) (Disk ID: 71827182)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=48.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=100.1 GB) - (Type=07 NTFS)

==================== End of log ============================

Стъпка 1

Изтеглете fixlist.txt и го запазете в папката от която стартирахте FRST.exe.

Стартирайте FRST.exe и натиснете бутона Fix веднъж!

След като приключи, ако ви поиска рестарт - съгласете се. След рестарта публикувайте лог файла - fixlog.txt, който ще се създаде след работата на програмата.

 

Внимание: Скрипта е създаден за текущата система. Да не се ползва за други системи с подобни проблеми!

Стъпка 2

Обновете Malwarebytes Anti-Malware и направете сканиране от типа Threat Scan. Публикувайте лог файла си тук.

Стъпка 3

Уверете се, че защитите срещу PUP/PUA/SA са включени:

http://kb.eset.com/esetkb/index?page=content&id=SOLN3204&actp=search&viewlocale=en_US&searchid=1438348066574

След, което се уверете, че антивирусната е с последните обновления и направете пълно сканиране на системата. Пишете ми за резултатите от нея.

В следващия си коментар в тази тема, включете следните лог файлове:

  • Лог файл от FRST Fix
  • Лог файл от Malwarebytes Anti-Malware

fixlist.txt

  • Автор

Това е файла от фикса, а от log-а- Malware не го изкара или е някъде другаде. И при Malware и при антивирусната не откри никакви заплахи

 

Fix result of Farbar Recovery Scan Tool (x64) Version:30-07-2015
Ran by Lenovo (2015-07-31 21:52:05) Run:2
Running from D:\Download
Loaded Profiles: Lenovo (Available Profiles: Lenovo)
Boot Mode: Normal
==============================================

fixlist content:
*****************
start
CreateRestorePoint:
CloseProcesses:
FirewallRules: [{29E03F6C-7514-40CF-AAA1-1FD7B29D6672}] => (Allow) D:\Download\Calvin_Harris_-_Let_s_Go_feat_Ne_-_Yo_downloader.exe
FirewallRules: [{FB400B0D-F3E8-461E-8B2C-45D36D046D22}] => (Allow) D:\Download\Calvin_Harris_-_Let_s_Go_feat_Ne_-_Yo_downloader.exe
FirewallRules: [{5AF560FD-2F7B-43A8-B49A-2DCF0F95A3CB}] => (Allow) C:\Program Files (x86)\YourFileDownloader\YourFileDownloader.exe
FirewallRules: [{EC86A14C-2D79-40F0-8C5E-B6B75B835BF8}] => (Allow) C:\Program Files (x86)\YourFileDownloader\YourFileDownloader.exe
FirewallRules: [{DFD10D97-1DAE-47B5-9942-59EB585BDC2D}] => (Allow) C:\Program Files (x86)\YourFileDownloader\Downloader.exe
FirewallRules: [{D8219A9C-41F3-494B-9BFC-62DB645F5D76}] => (Allow) C:\Program Files (x86)\YourFileDownloader\Downloader.exe
FirewallRules: [TCP Query User{ADEB7FB4-A70A-4454-A9FF-969DD8CA0BBF}C:\users\lenovo\appdata\roaming\torntv.com\torntv downloader.exe] => (Allow) C:\users\lenovo\appdata\roaming\torntv.com\torntv downloader.exe
FirewallRules: [uDP Query User{9C3E185C-B7A5-4D36-9F96-9AC5DE5A0AEB}C:\users\lenovo\appdata\roaming\torntv.com\torntv downloader.exe] => (Allow) C:\users\lenovo\appdata\roaming\torntv.com\torntv downloader.exe
C:\Users\Lenovo\AppData\Roaming\TornTV.com
C:\Program Files (x86)\YourFileDownloader
C:\Windows\pss\TornTvDownloader.lnk.Startup
FirewallRules: [TCP Query User{D350A245-31AD-492C-8A1C-4F605A93B9E1}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
FirewallRules: [uDP Query User{3569D0B4-35A7-4754-98EA-8F858CEBD834}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-578373634-2819587407-707087891-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
URLSearchHook: HKLM-x32 - Default Value = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D}
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Toolbar: HKLM-x32 - No Name - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} -  No File
FF Extension: QuickStores-Toolbar - C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected] [2015-07-27]
2015-07-27 18:28 - 2015-07-27 18:28 - 00000187 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\QuickStores.url
2015-07-18 18:34 - 2015-07-18 18:34 - 00000000 ____D C:\ProgramData\4c690437000059dc
2015-07-18 18:34 - 2015-07-18 18:34 - 00000000 _____ C:\Users\Lenovo\AppData\Local\Temp.dat
2015-07-18 18:31 - 2015-07-19 14:19 - 00000000 ____D C:\Program Files (x86)\Fox News
2015-07-18 18:30 - 2015-07-19 14:21 - 00000000 ____D C:\Users\Lenovo\AppData\Roaming\Remorseful Heroism
2015-07-18 18:30 - 2015-07-18 18:30 - 00000000 ____D C:\ProgramData\{1256d627-1661-300a-1256-6d627166589c}
2015-07-18 18:34 - 2015-07-18 18:34 - 0000000 _____ () C:\Users\Lenovo\AppData\Local\Temp.dat
RemoveProxy:
EmptyTemp:
CMD: bitsadmin /reset /allusers
end
*****************

Restore point was successfully created.
Processes closed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{29E03F6C-7514-40CF-AAA1-1FD7B29D6672} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FB400B0D-F3E8-461E-8B2C-45D36D046D22} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5AF560FD-2F7B-43A8-B49A-2DCF0F95A3CB} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EC86A14C-2D79-40F0-8C5E-B6B75B835BF8} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DFD10D97-1DAE-47B5-9942-59EB585BDC2D} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D8219A9C-41F3-494B-9BFC-62DB645F5D76} => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{ADEB7FB4-A70A-4454-A9FF-969DD8CA0BBF}C:\users\lenovo\appdata\roaming\torntv.com\torntv downloader.exe => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9C3E185C-B7A5-4D36-9F96-9AC5DE5A0AEB}C:\users\lenovo\appdata\roaming\torntv.com\torntv downloader.exe => value not found.
"C:\Users\Lenovo\AppData\Roaming\TornTV.com" => File/Folder not found.
"C:\Program Files (x86)\YourFileDownloader" => File/Folder not found.
"C:\Windows\pss\TornTvDownloader.lnk.Startup" => File/Folder not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D350A245-31AD-492C-8A1C-4F605A93B9E1}C:\program files (x86)\internet explorer\iexplore.exe => value not found.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3569D0B4-35A7-4754-98EA-8F858CEBD834}C:\program files (x86)\internet explorer\iexplore.exe => value not found.
"C:\Windows\system32\GroupPolicy\Machine" => File/Folder not found.
HKLM\SOFTWARE\Policies\Google => key not found.
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => key not found.
HKU\S-1-5-21-578373634-2819587407-707087891-1001\SOFTWARE\Policies\Microsoft\Internet Explorer => key not found.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\ => value not found.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value not found.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} => value not found.
HKCR\Wow6432Node\CLSID\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} => key not found.
C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected] not found.
"C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\QuickStores.url" => File/Folder not found.
"C:\ProgramData\4c690437000059dc" => File/Folder not found.
"C:\Users\Lenovo\AppData\Local\Temp.dat" => File/Folder not found.
"C:\Program Files (x86)\Fox News" => File/Folder not found.
"C:\Users\Lenovo\AppData\Roaming\Remorseful Heroism" => File/Folder not found.
"C:\ProgramData\{1256d627-1661-300a-1256-6d627166589c}" => File/Folder not found.
"C:\Users\Lenovo\AppData\Local\Temp.dat" => File/Folder not found.

========= RemoveProxy: =========

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-578373634-2819587407-707087891-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully
HKU\S-1-5-21-578373634-2819587407-707087891-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully


========= End of RemoveProxy: =========


=========  bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.5.7600 ]
BITS administration utility.
© Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

0 out of 0 jobs canceled.

========= End of CMD: =========

EmptyTemp: => 355.7 MB temporary data Removed.


The system needed a reboot..

==== End of Fixlog 21:56:22 ====

  • Автор

Добра работа с FRST, но бих искал да видя лог файла от Malwarebytes Anti-Malware.

Знам че трябва, но след сканиране не ми  изкарва този файл. Незнам защо така се получава.

Стартирайте Malwarebytes Anti-Malware, отидете на таба History, а след това изберете Application Logs. От списъка в дясно ви интересува тип Scan Log, този който е най-отгоре. Кликате два пъти върху него, копирате съдържанието и го публикувате тук.

  • Автор

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 3.8.2015 г.
Scan Time: 16:14 ч.
Logfile: scan log.txt
Administrator: Yes

Version: 2.1.8.1057
Malware Database: v2015.08.03.03
Rootkit Database: v2015.07.30.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7
CPU: x64
File System: NTFS
User: Lenovo

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 408435
Time Elapsed: 15 min, 3 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 0
(No malicious items detected)

Physical Sectors: 0
(No malicious items detected)


(end)

  • Автор

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.5.4 (07.27.2015:1)
OS: Windows 7 Ultimate x64
Ran by Lenovo on Ї®­ 03.08.2015 Ј. at 17:57:08,47
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks



~~~ Registry Values



~~~ Registry Keys



~~~ Files

Successfully deleted: [File] C:\Users\Lenovo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\quickstores.url



~~~ Folders



~~~ FireFox

Successfully deleted the following from C:\Users\Lenovo\AppData\Roaming\mozilla\firefox\profiles\p9zm9ha3.default\prefs.js

user_pref(browser.search.searchengine.alias, mystartsearch);
user_pref(browser.search.searchengine.desc, this is my first firefox searchEngine);
user_pref(browser.search.searchengine.iconURL, hxxp://www.mystartsearch.com/favicon.ico);
user_pref(browser.search.searchengine.name, mystartsearch);
user_pref(browser.search.searchengine.ptid, wpc);
user_pref(browser.search.searchengine.uid, ST3160318AS_5VY2E3SLXXXX5VY2E3SL);
user_pref(browser.search.searchengine.url, hxxp://www.mystartsearch.com/web/?type=ds&ts=1437233553&z=7c0602c6fa3e58b6af2a772gazac3mdo0c2c0wfo6t&from=wpc&uid=ST3160318AS_5VY
user_pref(extensions.a60aee250a09b4f1285fc76ad45f3883bgmailcom71811.71811.internaldb.monetization_plugin_bundledUrls.value, %7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfil
user_pref(extensions.aWQNKK59573794WAYA30227232com72523.72523.internaldb.monetization_plugin_bundledUrls.value, %7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D
user_pref(extensions.hza8L5kUuB9TE48Z.url, hxxp://liversely.org/sync2/?q=hfZ9oelNAyPRDchEAen0rTr6pdaMg708BNmGWj8cmGhGheDUojw8rdCFpdw8rHwErchIC7n0rjkEqHw5rjkHrHs8tNhVCT94tMV
user_pref(extensions.quick_start.enable_search1, false);
user_pref(extensions.quick_start.sd.closeWindowWithLastTab_prev_state, false);
Emptied folder: C:\Users\Lenovo\AppData\Roaming\mozilla\firefox\profiles\p9zm9ha3.default\minidumps [4 files]



~~~ Chrome


[C:\Users\Lenovo\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\Lenovo\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

[C:\Users\Lenovo\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\Lenovo\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Ї®­ 03.08.2015 Ј. at 18:00:58,49
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 


# AdwCleaner v4.208 - Logfile created 03/08/2015 at 18:06:30
# Updated 09/07/2015 by Xplode
# Database : 2015-08-01.1 [server]
# Operating system : Windows 7 Ultimate  (x64)
# Username : Lenovo - LENOVO-PC
# Running from : D:\Download\adwcleaner_4.208.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****

[!] Folder Deleted : C:\Windows\assembly\GAC_MSIL\QuickStoresToolbar
File Deleted : C:\Users\Lenovo\AppData\Roaming\Mozilla\Firefox\Profiles\p9zm9ha3.default\searchplugins\yahoo.xml
File Deleted : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Mozilla\Extends
Key Deleted : HKLM\SOFTWARE\abccdb55-5639-bf09-bfa8-924262d608f2
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{CC6F4F54-6EF8-4E84-BDC6-ABC6F83100BE}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}

***** [ Web browsers ] *****

-\\ Internet Explorer v8.0.7600.16385


-\\ Mozilla Firefox v39.0 (x86 en-US)


-\\ Google Chrome v

[C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [search Provider] : hxxp://www.ask.com/web?q={searchTerms}

-\\ Comodo Dragon v


-\\ Chrome Canary v


*************************

AdwCleaner[R0].txt - [18020 bytes] - [20/05/2015 21:59:04]
AdwCleaner[R1].txt - [1382 bytes] - [20/05/2015 22:10:04]
AdwCleaner[R2].txt - [1500 bytes] - [21/05/2015 12:38:53]
AdwCleaner[R3].txt - [2070 bytes] - [03/08/2015 18:05:08]
AdwCleaner[s0].txt - [16646 bytes] - [20/05/2015 22:00:06]
AdwCleaner[s1].txt - [1468 bytes] - [20/05/2015 22:11:20]
AdwCleaner[s2].txt - [1586 bytes] - [21/05/2015 12:39:56]
AdwCleaner[s3].txt - [1980 bytes] - [03/08/2015 18:06:30]

########## EOF - C:\AdwCleaner\AdwCleaner[s3].txt - [2039  bytes] ##########
 

  • Автор

C:\Users\Lenovo\AppData\Roaming\uTorrent\uTorrent.exe    a variant of Win32/OpenCandy.C potentially unsafe application
C:\Users\Lenovo\AppData\Roaming\uTorrent\updates\3.4.3_40760.exe    a variant of Win32/OpenCandy.C potentially unsafe application
Operating memory    a variant of Win32/OpenCandy.C potentially unsafe application
 

Моля, повторете сканирането с ESET Online Scanner като този път маркирате и опцията Remove found threats. Пишете ми как е положението с Mozilla Firefox.

  • Автор

Пак забиват.    An error occurred. Please try again later.  Това ми изписва.

  • Автор

Направих го и там е същото, само че без никакви надписи.

Архивирана тема

Темата е твърде стара и е архивирана. Не можете да добавяте нови отговори в нея, но винаги можете да публикувате нова тема, в която да продължи дискусията. Регистрирайте се или влезте във вашия профил за да публикувате нова тема.

Разглеждащи това в момента 0

  • Няма регистрирани потребители разглеждащи тази страница.

Дарение

  • Подкрепи съществуването на форума - направи дарение
    32%
    Дарени 315 € от нужните 1 000 €

Бюлетин

Получавайте известие, когато има важна промяна или новина свързана с форума.

Профил

Навигация

Търсене

Търсене

Конфигуриране на push известия в браузъра

Chrome (Android)
  1. Докоснете иконата на катинар до адресната лента.
  2. Докоснете Разрешения → Известия.
  3. Променете предпочитанията си.
Chrome (Desktop)
  1. Кликнете върху иконата на катинар в адресната лента.
  2. Изберете Настройки на сайта.
  3. Намерете Известия и коригирайте предпочитанията си.