Prosím o kontrolu logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Aktebis
Level 1.5
Level 1.5
Příspěvky: 117
Registrován: srpen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Prosím o kontrolu logu

Příspěvekod Aktebis » 28 dub 2015 00:59

Ahoj všem,
mohu poprosit o kontrolu logu.Omlouvám se z appsání předmětu hodně špatné,ale nevím jak to popsat.Načítají se mi stránky cca 20 do minuty.
PC je příliš pomalé a defaktu už není funkční.)
Děkuji za pomoc.
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 0:43:58, on 28.4.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)

FIREFOX: 37.0.2 (x86 cs)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\HTC\HTC Sync Manager\HTC Sync\adb.exe
C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
C:\Program Files\Classic Shell\ClassicStartMenu.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Program Files\TeamViewer\Version7\TeamViewer.exe
C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
C:\Program Files\totalcmd\TOTALCMD.EXE
C:\Program Files\Mozilla Thunderbird\thunderbird.exe
C:\Program Files\DrayTek\Smart VPN Client\SmartVPNClient.exe
C:\Program Files\TeamSpeak 3 Client\ts3client_win32.exe
C:\L2\LineageII.exe
C:\L2\system\l2.exe
C:\Program Files\Overwolf\Overwolf.exe
C:\Program Files\Overwolf\0.84.95.0\OverwolfTSHelper.exe
C:\Program Files\Common Files\Overwolf\0.84.95.0\OverwolfHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-10.exe
C:\Users\dealer4\Downloads\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://googel.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe -s
O4 - HKLM\..\Run: [Classic Start Menu] C:\Program Files\Classic Shell\ClassicStartMenu.exe
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [Overwolf] C:\Program Files\Overwolf\Overwolf.exe -silent
O4 - HKCU\..\RunOnce: [SeznamInstall-uninstall:f23b83f9f009df405373327235d5b8c3] "C:\Users\dealer4\AppData\Local\Temp\\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe" -c "C:\Users\dealer4\AppData\Roaming\Seznam.cz"
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Přeložit Eurotranem XP - res://C:\Users\dealer4\AppData\Roaming\EurotranXP3\EurotranIE8.dll/204
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Slovník - {63FD4C84-6699-4411-BA5D-FED5D5ACCEB1} - C:\Users\dealer4\AppData\Roaming\EurotranXP3\EurotranIE8.dll (HKCU)
O9 - Extra 'Tools' menuitem: Otevřít slovník Eurotran XP - {63FD4C84-6699-4411-BA5D-FED5D5ACCEB1} - C:\Users\dealer4\AppData\Roaming\EurotranXP3\EurotranIE8.dll (HKCU)
O9 - Extra button: Přeložit - {DB18DE43-C0B8-4a13-9E58-E906602172FC} - C:\Users\dealer4\AppData\Roaming\EurotranXP3\EurotranIE8.dll (HKCU)
O9 - Extra 'Tools' menuitem: Přeložit Eurotranem XP - {DB18DE43-C0B8-4a13-9E58-E906602172FC} - C:\Users\dealer4\AppData\Roaming\EurotranXP3\EurotranIE8.dll (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/3.0 ... ontrol.CAB
O17 - HKLM\System\CCS\Services\Tcpip\..\{909EFABB-1ACE-4244-A4D9-057125D57B80}: NameServer = 194.228.41.65 194.228.41.113
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AMD External Events Utility - AMD - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files\BlueStacks\HD-LogRotatorService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: globalUpdate Update Service (globalUpdatem) (globalUpdatem) - globalUpdate - C:\Program Files\globalUpdate\Update\GoogleUpdate.exe
O23 - Service: HTCMonitorService - Nero AG - C:\Program Files\HTC\HTC Sync Manager\HSMServiceEntry.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: KARAT Client Updater - KARAT Software a.s - C:\Program Files\KARAT Software\Karat Client\ISKarat.Loader.Proxy.exe
O23 - Service: Overwolf Updater Windows SCM (OverwolfUpdater) - Overwolf LTD - C:\Program Files\Overwolf\OverwolfUpdater.exe
O23 - Service: Internet Pass-Through Service (PassThru Service) - Unknown owner - C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TeamViewer 7 (TeamViewer7) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe

--
End of file - 6835 bytes

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 28 dub 2015 09:53

Stáhni si ATF Cleaner
Poklepej na ATF Cleaner.exe, klikni na select all found, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.

- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.


Stáhni si TFC
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/

Ulož si ho na svojí plochu
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Prohledat-Scan“
Po skenu se objeví log ( jinak je uložen systémovem disku jako AdwCleaner[R?].txt), jeho obsah sem celý vlož.

Stáhni si Malwarebytes' Anti-Malware
- Při instalaci odeber zatržítko u „Povolit bezplatnou zkušební verzi Malwarebytes' Anti-Malware Premium“
Nainstaluj a spusť ho
- na konci instalace se ujisti že máš zvoleny/zatrhnuty obě možnosti:
Aktualizace Malwarebytes' Anti-Malware a Spustit aplikaci Malwarebytes' Anti-Malware, pokud jo tak klikni na tlačítko konec
- pokud bude nalezena aktualizace, tak se stáhne a nainstaluje
- program se po té spustí a klikni na Skenovat nyní a
- po proběhnutí programu se ti objeví hláška vpravo dole tak klikni na b] Kopírovat do schránky [/b]a a vlož sem celý log.

- po té klikni na tlačítko Exit, objeví se ti hláška tak zvol Ano
(zatím nic nemaž!).

Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Aktebis
Level 1.5
Level 1.5
Příspěvky: 117
Registrován: srpen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Aktebis » 28 dub 2015 10:50

AdwCleaner v4.202 - Log vytvořen 28/04/2015 v 10:18:16
# Aktualizováno 23/04/2015 by Xplode
# Databáze : 2015-04-27.1 [Server]
# Operační system : Windows 7 Home Premium Service Pack 1 (x86)
# Uživatelské jméno : dealer4 - PC27
# Spuštěno z : C:\Users\dealer4\Desktop\adwcleaner_4.202.exe
# Nastavení : Sken

***** [ Služby ] *****

Služba Nalezeno : globalUpdate
Služba Nalezeno : globalUpdatem

***** [ Soubory / Složky ] *****

Složka Nalezeno : C:\Program Files\CinemaP-1.9cV16.03
Složka Nalezeno : C:\Program Files\FileViewPro
Složka Nalezeno : C:\Program Files\globalUpdate
Složka Nalezeno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileViewPro
Složka Nalezeno : C:\Users\dealer4\AppData\Local\globalUpdate
Složka Nalezeno : C:\Users\dealer4\AppData\Local\pokki
Složka Nalezeno : C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\Extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com
Soubor Nalezeno : C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\user.js
Soubor Nalezeno : C:\Windows\Reimage.ini

***** [ Naplánované úlohy ] *****

Úloha Nalezeno : AmiUpdXp
Úloha Nalezeno : globalUpdateUpdateTaskMachineCore
Úloha Nalezeno : globalUpdateUpdateTaskMachineUA
Úloha Nalezeno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6
Úloha Nalezeno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-7
Úloha Nalezeno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-10_user
Úloha Nalezeno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-4
Úloha Nalezeno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-5
Úloha Nalezeno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-5_user

***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Nalezeno : HKCU\Software\AppDataLow\Software\Crossrider
Klíč Nalezeno : HKCU\Software\CinemaP-1.9cV16.03
Klíč Nalezeno : HKCU\Software\GlobalUpdate
Klíč Nalezeno : HKCU\Software\InstalledBrowserExtensions
Klíč Nalezeno : HKCU\Software\Pokki
Klíč Nalezeno : HKLM\SOFTWARE\CinemaP-1.9cV16.03
Klíč Nalezeno : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Klíč Nalezeno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Klíč Nalezeno : HKLM\SOFTWARE\GlobalUpdate
Klíč Nalezeno : HKLM\SOFTWARE\InstalledBrowserExtensions
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{38122A36-83B2-46B8-B39A-EC72A4614A07}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CinemaP-1.9cV16.03
Klíč Nalezeno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FileViewPro_is1
Klíč Nalezeno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Klíč Nalezeno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17728


-\\ Mozilla Firefox v37.0.2 (x86 cs)

[r7c7ov6d.default] - Řádek Nalezeno : user_pref("extensions.accf7276cd388480f88355b680025e1cagmailcom71387.71387.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22amazon.com%22%[...]
[r7c7ov6d.default] - Řádek Nalezeno : user_pref("extensions.accf7276cd388480f88355b680025e1cagmailcom71387.71387.internaldb.__ICM_LITE__fifty_test_rules.value", "%7B%22DE%22%3A%7B%22ALL%22%3A%5B%22anastasiadate.com%22%2C%22www.easyjet.com[...]
[r7c7ov6d.default] - Řádek Nalezeno : user_pref("extensions.accf7276cd388480f88355b680025e1cagmailcom71387.71387.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22deal[...]
[r7c7ov6d.default] - Řádek Nalezeno : user_pref("extensions.crossrider.bic", "14cfcd41552a9f900aaad03079aa1bb8");

*************************

AdwCleaner[R1].txt - [8208 bytů] - [28/04/2015 10:18:16]

########## EOF - C:\AdwCleaner\AdwCleaner[R1].txt - [8266 bytů] ##########




Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 28.4.2015
Čas skenování: 10:28:33
Protokol:
Správce: Ano

Verze: 2.01.6.1022
Databáze malwaru: v2015.04.05.02
Databáze rootkitů: v2015.04.21.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 7 Service Pack 1
CPU: x86
Souborový systém: NTFS
Uživatel: dealer4

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 355168
Uplynulý čas: 18 min, 44 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 2
PUP.Optional.CrossRider.A, C:\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6.exe, 308, , [bc3a91d75931ac8a9e1037f383838a76]
PUP.Optional.CrossRider.A, C:\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-10.exe, 496, , [eb0b3830deace254f1bdc664d53150b0]

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 28
PUP.Optional.Cinema.A, HKLM\SOFTWARE\CinemaP-1.9cV16.03, , [c92d1d4b2763b6808af917c3c73c7c84],
PUP.Optional.Cinema.A, HKLM\SOFTWARE\CinemaP-1.9cV16.03-nv-ie, , [29cd35332c5ea492bdc605d5986ba759],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\GLOBALUPDATE\UPDATE, , [b0466800e4a62a0cba1c647e5ca7ee12],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, , [34c260084e3c3501f9a56893a95a3dc3],
PUP.Software.Updater, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}, , [15e1e781a7e3ea4c36ae0905ac58cd33],
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=10, , [7581d098d9b16bcb8fb661de8e773ac6],
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=4, , [c82eaebaa9e18aac2e18b38c9075e719],
PUP.Optional.Cinema.A, HKU\S-1-5-18\SOFTWARE\CinemaP-1.9cV16.03-nv-ie, , [f40269fffe8ce35392f2895129da52ae],
PUP.Optional.Cinema.A, HKU\S-1-5-21-195085820-1302924477-1453668872-1002\SOFTWARE\CinemaP-1.9cV16.03, , [5e98c6a2305a89ad5b295981f211fe02],
PUP.Optional.Cinema.A, HKU\S-1-5-21-195085820-1302924477-1453668872-1002\SOFTWARE\CinemaP-1.9cV16.03-nv-ie, , [dd1978f0becca492780ce7f32ad9d42c],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-195085820-1302924477-1453668872-1002\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, , [2bcbfe6aafdb0f27c59bb47da164c63a],
PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-195085820-1302924477-1453668872-1002\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY, , [b14570f80d7d0c2a51d5189efb088878],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-195085820-1302924477-1453668872-1002\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, , [f60015533555ec4ae0cc1abdad56bc44],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-195085820-1302924477-1453668872-1002\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\Cinema PlusV16.03, , [b54152164a40c571e09e20acfe05fe02],
PUP.Optional.GlobalUpdate.T, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\globalUpdate, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\globalUpdatem, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\globalUpdate.OneClickCtrl.10, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\globalUpdate.Update3WebControl.4, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.Cinema.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\CinemaP-1.9cV16.03, , [896da7c12f5b9b9bf246732a966db14f],

Hodnoty registru: 3
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\GLOBALUPDATE\UPDATE|path, C:\Program Files\globalUpdate\Update\GoogleUpdate.exe, , [b0466800e4a62a0cba1c647e5ca7ee12]
PUP.Optional.GlobalUpdate.C, HKLM\SOFTWARE\GLOBALUPDATE\UPDATEDEV|AuCheckPeriodMs, 21600000, , [05f198d0107a3afc0984466f8b784fb1]
PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-195085820-1302924477-1453668872-1002\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY|source, Firefox, , [b14570f80d7d0c2a51d5189efb088878]

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 20
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\defaults, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\defaults\preferences, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\userCode, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\locale, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\locale\en-US, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\1.3.25.0, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\Download, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\Install, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\Offline, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\Offline\{99AD1837-44D9-42E8-B8AD-9A7376081ADC}, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.Cinema.A, C:\Program Files\CinemaP-1.9cV16.03, , [896da7c12f5b9b9bf246732a966db14f],

Soubory: 175
PUP.Optional.CrossRider.A, C:\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6.exe, , [bc3a91d75931ac8a9e1037f383838a76],
PUP.Optional.CrossRider.A, C:\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-10.exe, , [eb0b3830deace254f1bdc664d53150b0],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\BYAIAMUF.exe, , [d323f77148423ef8288639f1ab5bc13f],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\GNOK.exe, , [b343c0a88901f0461599a78348be4bb5],
PUP.Optional.CrossRider.A, C:\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-7.exe, , [91656206d7b365d1b9f50c1e15f155ab],
PUP.Optional.CrossRider.A, C:\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-4.exe, , [807690d838523ef8e7c748e222e4d62a],
PUP.Optional.CrossRider.A, C:\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-5.exe, , [af471f4989015ed85856f53545c10af6],
PUP.Optional.CrossRider.A, C:\Program Files\CinemaP-1.9cV16.03\UninstallBrw.exe, , [c72fce9a64263afcaa0414165ea8629e],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\crossrider_statusbar.png, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\button1.png, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\button2.png, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\button3.png, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\button4.png, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\button5.png, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\icon128.png, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\icon16.png, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\icon24.png, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\icon48.png, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\panelarrow-up.png, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\popup.html, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\skin.css, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\update.css, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome.manifest, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\install.rdf, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\61311598dbc0bc678d872a46ab15f16f.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\6303c5c298329b31c0dbe184c4e32a5f.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\6c5ee6e2370d0d0db9d057baf6dbf4d6.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\8254687ad80b7f34918c18d79ed653c0.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\background.html, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\bf2962d426b85f15a0cb1225b3fdb72c.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\browser.xul, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\dialog.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\f9ac1976337eeea7f8da8882a5969962.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\ffCoreFilesIndex.txt, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\options.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\options.xul, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\search_dialog.xul, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\b88ffe89439582b579dc9dacb8ab12d9.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\1a3328e6eeb241cf22457534dd3229f5.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\23a5a18409150474c7d67560ca66e839.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\515afef64dece27bb826e9c667fa6575.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\7c0b3d01867ef07508ba393392ae9e71.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\7c35244ee5b62fe5274feec339cfb8b4.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\8ba750dd29bedec1391881be206f0e42.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\9328aaec3efe38ed8f6f7ddb31a7107e.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\a839d204397fa5188250f0876e03155f.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\bd07052c68b8adee1e1442a357f99945.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\d7af92d0f8a5645e7ffcc534a012dcf9.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\e4751cb2c04f0afd652ddf6f3205bf01.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\eec7bd5826fded346efc5899d236030b.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\ef2704aefc67542310652525fc39f495.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\f897368e1faf87b118668e1d0344c8c9.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\fe968a567d58d8b527afc0a897399cbc.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\01297472a82e0228639901838f3b8194.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\09061d462064367ebf772933803c78e6.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\13e13b0b6fc9912bcd902dbefbdba7ed.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\15380cebc4ff4e417d12f3be3c42f63d.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\1d62fa2d473c6a662c8509e8aca9bf57.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\30c8870bfbab7c7a904d66abd6871f11.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\3509ca3625e2fdfd4913b901536f0221.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\6521a42dee84a8456347dd458091d8fa.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\830de2bb4ea4daf50ca30bd6ed74ce42.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\84989d5e2f324fccac362411d7f1b38b.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\9718d57c25712e963b46d5b0e9cf1e7a.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\af17c514b3f263208ba9af128fad52f5.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\b27b6dbe63865aa9ae5ad0534e322391.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\b54be38f4778b21cc5eaf8a05dd1c33b.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\bd2442cdcdace826999b728b23e070af.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\dcf627cf3e2016b5074271a3d816ac0a.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\f1b71905ee85797ced6bf499bcd12be8.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\f6e0a4759222e0e8c54290143ef24b84.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\facd6cb42dc21bb51a19780e1adf8480.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\fc7fc5a6b6108e82fb2a8f0c55a0294e.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\installer.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\defaults\preferences\prefs.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\manifest.xml, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins.json, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\286.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\102.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\119.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\123.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\13.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\14.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\16.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\17.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\178.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\179.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\180.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\184.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\191.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\195.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\200.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\217.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\220.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\221.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\223.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\231.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\232.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\234.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\242.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\246.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\252.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\253.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\260.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\262.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\263.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\273.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\281.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\288.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\289.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\290.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\300.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\334.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\335.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\339.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\342.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\344.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\345.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\354.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\356.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\375.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\376.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\379.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\380.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\385.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\388.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\389.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\390.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\391.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\4.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\47.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\64.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\7.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\78.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\9.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\91.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\93.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\userCode\background.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\userCode\extension.js, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\locale\en-US\translations.dtd, , [d620c6a2d0ba4cea53dc45704eb5ea16],
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6, , [cb2b02668ffbbd791db47270e81b57a9],
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-7, , [b541c5a3a4e6f343d3fea63c21e222de],
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-10_user, , [8c6ade8a5e2cdc5ae8e932b0e221d12f],
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-4, , [82742147f6941f1728a9f4ee8e7521df],
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-5, , [6d891058e6a4ae8808c9ab3757ac33cd],
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-5_user, , [5e98c7a1593156e0b61bc022ce3523dd],
PUP.SoftwareUpdater.A, C:\Windows\System32\Tasks\AmiUpdXp, , [be38e088d5b5ab8b4308ce19887b1ce4],
PUP.Software.Updater, C:\Windows\Tasks\AmiUpdXp.job, , [0cea0b5d3555181ee201be50e81ce020],
PUP.Optional.CrossRider.T, C:\Windows\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6.job, , [be3812561278ee48d85fe756f015fc04],
PUP.Optional.CrossRider.T, C:\Windows\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-7.job, , [4ea841272664bf77d76074c9d134bc44],
PUP.Optional.CrossRider.T, C:\Windows\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-10_user.job, , [a55174f47c0e64d2d562dd60ba4bff01],
PUP.Optional.CrossRider.T, C:\Windows\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-4.job, , [b2445f09cebc59ddec4bba83030217e9],
PUP.Optional.CrossRider.T, C:\Windows\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-5.job, , [bd3947218a009a9c4fe85be2f41104fc],
PUP.Optional.CrossRider.T, C:\Windows\Tasks\e653cf25-f107-4cbe-b8d1-5dadaea354f2-5_user.job, , [9264c4a4e1a9023494a3fe3f4cb9c33d],
PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job, , [b244ea7e90fa2313024477c61de8bb45],
PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore, , [56a0da8ef09ac07691b67bc22cd9b24e],
PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job, , [8f67d494aae09b9bd771ca73a164d927],
PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA, , [6096a4c45f2b4de91f2a0f2ed33219e7],
PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\temp_e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6, , [cd290563880267cfa2d154f23fc6cb35],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\GoogleUpdate.exe, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\1.3.25.0\GoogleCrashHandler.exe, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\1.3.25.0\GoogleUpdate.exe, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\1.3.25.0\GoogleUpdateBroker.exe, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\1.3.25.0\GoogleUpdateHelper.msi, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\1.3.25.0\GoogleUpdateOnDemand.exe, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\1.3.25.0\goopdate.dll, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\1.3.25.0\goopdateres_en.dll, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\1.3.25.0\psmachine.dll, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.GlobalUpdate.T, C:\Program Files\globalUpdate\Update\1.3.25.0\psuser.dll, , [5c9a1e4a8bff191d2cfa5740e122f50b],
PUP.Optional.Cinema.A, C:\Program Files\CinemaP-1.9cV16.03\bgNova.html, , [896da7c12f5b9b9bf246732a966db14f],
PUP.Optional.Cinema.A, C:\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2.xpi, , [896da7c12f5b9b9bf246732a966db14f],
PUP.Optional.Cinema.A, C:\Program Files\CinemaP-1.9cV16.03\Uninstall.exe, , [896da7c12f5b9b9bf246732a966db14f],
PUP.Optional.Cinema.A, C:\Program Files\CinemaP-1.9cV16.03\utils.exe, , [896da7c12f5b9b9bf246732a966db14f],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\prefs.js, Dobré: (), Špatné: (user_pref("extensions.crossrider.bic", "14cfcd41552a9f900aaad03079aa1bb8");), ,[6690bfa9503aab8bc2a3ff378c7af10f]

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

mople71
Level 3.5
Level 3.5
Příspěvky: 662
Registrován: listopad 14
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod mople71 » 28 dub 2015 14:08

Znovu si otevři AdwCleaner, kde klikni na Scan a poté tentokrát na Clean. Po restartu PC na tebe vyjede další log, ten sem prosím vlož.

-----------------------------------------------------------

Stáhni si Zoek: http://download.bleepingcomputer.com/smeenk/zoek.exe

Ulož na Plochu, otevři jako správce, do otevřeného okna vlož tento kód:

Kód: Vybrat vše

autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;

A klikni na Run script, chvíli to potrvá. Po restartu PC prosím přilož jeho log.

-----------------------------------------------------------

Spusť znovu MBAM. Aplikace se aktualizuje, poté zvol v horní liště Sken -> vyber Vlastní sken a klikni na Skenovat nyní

Objeví se okno Konfigurace vlastního skenu - vyber všechny disky/diskové oddíly (kromě mechaniky, čtečky,...), v levé liště zatrhni Hledat rootkity a klikni na Spustit sken

Po dokončení skenu klikni na tlačítko Exportovat záznam, log ulož a jeho obsah vlož sem.

Všechny nálezy dej mezitím do karantény.

Aktebis
Level 1.5
Level 1.5
Příspěvky: 117
Registrován: srpen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Aktebis » 30 dub 2015 13:07

# AdwCleaner v4.202 - Log vytvořen 29/04/2015 v 17:20:41
# Aktualizováno 23/04/2015 by Xplode
# Databáze : 2015-04-27.1 [Server]
# Operační system : Windows 7 Home Premium Service Pack 1 (x86)
# Uživatelské jméno : dealer4 - PC27
# Spuštěno z : C:\Users\dealer4\Downloads\adwcleaner_4.202.exe
# Nastavení : Čištění

***** [ Služby ] *****

[#] Služba Smazáno : globalUpdate
[#] Služba Smazáno : globalUpdatem

***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileViewPro
Složka Smazáno : C:\Program Files\globalUpdate
Složka Smazáno : C:\Program Files\FileViewPro
Složka Smazáno : C:\Program Files\CinemaP-1.9cV16.03
Složka Smazáno : C:\Users\dealer4\AppData\Local\globalUpdate
Složka Smazáno : C:\Users\dealer4\AppData\Local\pokki
Soubor Smazáno : C:\Windows\Reimage.ini
Soubor Smazáno : C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\user.js

***** [ Naplánované úlohy ] *****

Úloha Smazáno : AmiUpdXp
Úloha Smazáno : globalUpdateUpdateTaskMachineCore
Úloha Smazáno : globalUpdateUpdateTaskMachineUA
Úloha Smazáno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6
Úloha Smazáno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-7
Úloha Smazáno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-10_user
Úloha Smazáno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-4
Úloha Smazáno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-5
Úloha Smazáno : e653cf25-f107-4cbe-b8d1-5dadaea354f2-5_user

***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Klíč Smazáno : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Klíč Smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
Klíč Smazáno : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{38122A36-83B2-46B8-B39A-EC72A4614A07}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Klíč Smazáno : HKCU\Software\GlobalUpdate
Klíč Smazáno : HKCU\Software\InstalledBrowserExtensions
Klíč Smazáno : HKCU\Software\Pokki
Klíč Smazáno : HKCU\Software\CinemaP-1.9cV16.03
Klíč Smazáno : HKCU\Software\AppDataLow\Software\Crossrider
Klíč Smazáno : HKLM\SOFTWARE\GlobalUpdate
Klíč Smazáno : HKLM\SOFTWARE\InstalledBrowserExtensions
Klíč Smazáno : HKLM\SOFTWARE\CinemaP-1.9cV16.03
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FileViewPro_is1
Klíč Smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CinemaP-1.9cV16.03

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17728


-\\ Mozilla Firefox v37.0.2 (x86 cs)

[r7c7ov6d.default\prefs.js] - Řádek Smazáno : user_pref("extensions.accf7276cd388480f88355b680025e1cagmailcom71387.71387.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22amazon.com%22%[...]
[r7c7ov6d.default\prefs.js] - Řádek Smazáno : user_pref("extensions.accf7276cd388480f88355b680025e1cagmailcom71387.71387.internaldb.__ICM_LITE__fifty_test_rules.value", "%7B%22DE%22%3A%7B%22ALL%22%3A%5B%22anastasiadate.com%22%2C%22www.easyjet.com[...]
[r7c7ov6d.default\prefs.js] - Řádek Smazáno : user_pref("extensions.accf7276cd388480f88355b680025e1cagmailcom71387.71387.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22deal[...]
[r7c7ov6d.default\prefs.js] - Řádek Smazáno : user_pref("extensions.crossrider.bic", "14cfcd41552a9f900aaad03079aa1bb8");

*************************

AdwCleaner[R0].txt - [8194 bytů] - [29/04/2015 17:19:25]
AdwCleaner[S0].txt - [8073 bytů] - [29/04/2015 17:20:41]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8131 bytů] ##########


Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 30.4.2015
Čas skenování: 10:51:11
Protokol: MBAM.txt
Správce: Ano

Verze: 2.01.6.1022
Databáze malwaru: v2015.04.05.02
Databáze rootkitů: v2015.04.21.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 7 Service Pack 1
CPU: x86
Souborový systém: NTFS
Uživatel: dealer4

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 530259
Uplynulý čas: 1 hod, 44 min, 35 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 3
PUP.Optional.Cinema.A, HKLM\SOFTWARE\CinemaP-1.9cV16.03-nv-ie, , [01f5571133577bbbdca7e9f147bcaf51],
PUP.Optional.Cinema.A, HKU\S-1-5-18\SOFTWARE\CinemaP-1.9cV16.03-nv-ie, , [1dd9d98facde8ea8c2c2f2e851b2ab55],
PUP.Optional.Cinema.A, HKU\S-1-5-21-195085820-1302924477-1453668872-1002\SOFTWARE\CinemaP-1.9cV16.03-nv-ie, , [ba3c1850c3c7b87ec8bc2baf679c8a76],

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 13
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\defaults, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\defaults\preferences, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\userCode, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\locale, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\locale\en-US, , [cb2bea7e93f7b680f53a0da832d12bd5],

Soubory: 132
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\BYAIAMUF.exe, , [2dc97bed12782e08d4da87a331d5b44c],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\GNOK.exe, , [09ed75f36921f046c4ea8b9fe91d53ad],
PUP.Optional.CrossRider.A, C:\AdwCleaner\Quarantine\C\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6.exe.vir, , [dc1abdab3f4ba690a509fd2d39cd926e],
PUP.Optional.CrossRider.A, C:\AdwCleaner\Quarantine\C\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-7.exe.vir, , [b4425216058567cf991569c1e422db25],
PUP.Optional.CrossRider.A, C:\AdwCleaner\Quarantine\C\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-10.exe.vir, , [28ce71f7cfbba0966c42b6742cdafa06],
PUP.Optional.CrossRider.A, C:\AdwCleaner\Quarantine\C\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-4.exe.vir, , [1ed84a1ef09af1459b13ee3c8f77d32d],
PUP.Optional.CrossRider.A, C:\AdwCleaner\Quarantine\C\Program Files\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-5.exe.vir, , [d1257deb3753f93dd8d65eccc2448b75],
PUP.Optional.CrossRider.A, C:\AdwCleaner\Quarantine\C\Program Files\CinemaP-1.9cV16.03\UninstallBrw.exe.vir, , [c630452355359f976e4009213fc759a7],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\crossrider_statusbar.png, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\button1.png, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\button2.png, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\button3.png, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\button4.png, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\button5.png, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\icon128.png, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\icon16.png, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\icon24.png, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\icon48.png, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\panelarrow-up.png, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\popup.html, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\skin.css, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\skin\update.css, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome.manifest, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\install.rdf, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\037eda5a45dcc5af0cf4a3e2a565dd03.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\15a737efe3c244872c0166624435794d.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\5748920eaf797abbd0b476c312508f2d.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\8c01de201a2cf2bc9fd947ffd021ce09.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\background.html, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\browser.xul, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\ca0a897b1e79f020aa66038367f57e3f.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\d0e5736df91eb082a2efbba966a8a8c4.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\dialog.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\ffCoreFilesIndex.txt, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\options.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\options.xul, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\search_dialog.xul, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\c1334d8784bf8e50cc4f451d978f54ca.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\0b53a4c1d23065d5887c62074fc9a2fd.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\48f0fbaf6ccbddd35413561e32c24ea5.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\6b13184d58aea319d70813bd92ebb696.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\825e17f57cf99943ed87d7c4fb6c36be.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\8468af468761c884e3d28c675f0853ef.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\93bda63fa0b4780ea6a97714c61430a9.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\9dffd8107fe0c58e9760a9f65f4ab1aa.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\bc026b5c6ad03acce8568544c384e1e0.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\c513cb4ee383d78f463b83d6d0da46cf.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\d3c5272553a520963a7b674e85f262cc.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\d52c2cf87697295a8080860a23fb775f.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\e52967e38bd4a666c47fd412f484b303.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\e74bdc8ee4f280218faf056307c2ff55.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\ec17b26ddcda8abfd794862bb2ed946b.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\api\f33b6a059752bf39f931cc8291eac300.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\bfef8f3e34acf3cbfb323b6d2fe96d64.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\04adbb42e867490c9a12a2f18da5bf74.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\116e916309df2896266f6de44e106d48.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\1e3acd3880cf8adcdcf75f081bbc9ea4.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\3b219be7f9ba73c8d40a14bee535f8b1.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\487643595cc01ba50edc20361b401bfd.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\4c1b8344fb65554c73050526c23d4f94.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\67d8ba87dbfabc02aadf71caa7dda6bc.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\6bb1273b9ef6c9d3758136db5dccf64e.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\70ea731ace31387f24184c46424ed70b.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\812e52a2a2fcdbbca65526c2da2300b3.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\855584859c37872529e1568c35fff1f6.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\b169d2061dc43c548e0b66e22f5d33e1.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\bb855519adc05224e2a6862a18ef0884.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\c521e81da2bd27fe99822758ec8fb147.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\c9819bbb03c7e5ca0ef994f76225f3e1.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\d98ffc8a2254ca3487a8e8ce87242f16.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\dbe46e80d02adc31ec3464b742f812c7.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\efb35f089cb020aa57d3d04de44af96b.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\f512e2e773b4191a7747d50ba50a38d9.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\chrome\content\core\installer.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\defaults\preferences\prefs.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\manifest.xml, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins.json, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\334.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\102.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\119.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\13.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\14.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\16.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\17.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\178.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\179.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\180.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\184.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\195.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\200.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\220.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\221.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\223.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\231.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\232.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\234.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\242.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\246.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\252.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\253.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\260.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\262.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\263.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\273.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\281.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\288.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\289.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\290.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\335.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\339.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\345.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\354.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\356.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\376.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\379.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\380.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\385.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\389.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\390.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\391.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\4.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\47.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\64.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\7.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\78.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\9.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\91.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\plugins\93.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\userCode\background.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\extensionData\userCode\extension.js, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com\locale\en-US\translations.dtd, , [cb2bea7e93f7b680f53a0da832d12bd5],
PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\temp_e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6, , [5c9ac6a2c5c542f4b0c390b6ff0649b7],

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)


Co se týče ZOEKU, tak mi nejde udělat LOG.píše mi to
Zoek.exe is running now.
Do not start any browser windows, they may get closed automatically.
Please wait! This window will close when finished.
A logfile will open afterwards and can also be found on your systemdrive as zoek-results.log

mople71
Level 3.5
Level 3.5
Příspěvky: 662
Registrován: listopad 14
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod mople71 » 30 dub 2015 20:12

U Zoeku musíš počkat, až se dodělá... ;)

Aktebis
Level 1.5
Level 1.5
Příspěvky: 117
Registrován: srpen 06
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod Aktebis » 04 kvě 2015 08:32

Zoek.exe v5.0.0.0 Updated 23-04-2015
Tool run by dealer4 on po 04.05.2015 at 8:13:24,42.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\dealer4\Downloads\zoek.exe [Scan all users] [Script inserted]

==== Older Logs ======================

C:\zoek-results2015-04-29-152622.log 1307 bytes
C:\zoek-results2015-04-29-153029.log 384 bytes
C:\zoek-results2015-04-29-153522.log 1322 bytes
C:\zoek-results2015-04-30-105621.log 2173 bytes
C:\zoek-results2015-04-30-110248.log 1420 bytes

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\CanonEPP deleted successfully
C:\PROGRA~2\CanonIJEPPEX2 deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-195085820-1302924477-1453668872-1002\Software\Microsoft\Internet Explorer\Explorer Bars\{52381347-90B3-43F6-AFB1-9167347BBD9E} deleted successfully
HKEY_USERS\S-1-5-21-195085820-1302924477-1453668872-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{52381347-90B3-43F6-AFB1-9167347BBD9E} deleted successfully
HKEY_USERS\S-1-5-21-195085820-1302924477-1453668872-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{52381347-90B3-43F6-AFB1-9167347BBD9E} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{52381347-90B3-43F6-AFB1-9167347BBD9E} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\prefs.js:
user_pref("browser.startup.homepage", "https://www.google.cz/");
user_pref("browser.search.useDBForOrder", true);

Added to C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\prefs.js:

Deleted from C:\Users\dealer4\AppData\Roaming\Nvu\Profiles\givevs49.default\prefs.js:

Added to C:\Users\dealer4\AppData\Roaming\Nvu\Profiles\givevs49.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\dealer4\AppData\Roaming\Thunderbird\Profiles\fowp2dk7.default\prefs.js:

Added to C:\Users\dealer4\AppData\Roaming\Thunderbird\Profiles\fowp2dk7.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\pc27\AppData\Roaming\Mozilla\Firefox\Profiles\krammldy.default\prefs.js:

Added to C:\Users\pc27\AppData\Roaming\Mozilla\Firefox\Profiles\krammldy.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\pc27\AppData\Roaming\Thunderbird\Profiles\4nsz0nrm.default\prefs.js:

Added to C:\Users\pc27\AppData\Roaming\Thunderbird\Profiles\4nsz0nrm.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_04.05.2015_0827_.backup

ProfilePath: C:\Users\dealer4\AppData\Roaming\Nvu\Profiles\givevs49.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_04.05.2015_0827_.backup

ProfilePath: C:\Users\dealer4\AppData\Roaming\Thunderbird\Profiles\fowp2dk7.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_04.05.2015_0827_.backup

ProfilePath: C:\Users\pc27\AppData\Roaming\Mozilla\Firefox\Profiles\krammldy.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_04.05.2015_0827_.backup

ProfilePath: C:\Users\pc27\AppData\Roaming\Thunderbird\Profiles\4nsz0nrm.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs_04.05.2015_0827_.backup

==== Deleting Files \ Folders ======================

C:\Program Files\WinThruster deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinThruster deleted
C:\Users\dealer4\.android deleted
C:\Users\dealer4\AppData\Roaming\ICQ Search deleted
C:\PROGRA~2\ICQ deleted
C:\Users\dealer4\Downloads\ReimageRepair.exe deleted
C:\Windows\tasks\BYAIAMUF.job deleted
C:\Windows\system32\tasks\BYAIAMUF deleted
C:\Windows\tasks\GNOK.job deleted
C:\Windows\system32\tasks\GNOK deleted
C:\Windows\system32\tasks\temp_e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6 deleted
C:\Users\dealer4\AppData\Roaming\BYAIAMUF.exe deleted
C:\Users\dealer4\AppData\Roaming\GNOK.exe deleted
C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\ccf7276c-d388-480f-8835-5b680025e1ca@gmail.com deleted
"C:\Windows\Installer\b0e3cf.msi" deleted
"C:\Users\dealer4\AppData\Roaming\BYAIAMUF" deleted
"C:\Users\dealer4\AppData\Roaming\GNOK" deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\dealer4\AppData\Roaming\Nvu\Profiles\givevs49.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\dealer4\AppData\Roaming\Thunderbird\Profiles\fowp2dk7.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\pc27\AppData\Roaming\Mozilla\Firefox\Profiles\krammldy.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\pc27\AppData\Roaming\Thunderbird\Profiles\4nsz0nrm.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions ======================

ProfilePath: C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default
- Visualisateur 3D de 20-20 - %ProfilePath%\extensions\2020Player_IKEA@2020Technologies.com

ProfilePath: C:\Users\dealer4\AppData\Roaming\Nvu\Profiles\givevs49.default
- Undetermined - %ProfilePath%\extensions\installed-extensions.txt
- Nvu default - %ProfilePath%\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

ProfilePath: C:\Users\dealer4\AppData\Roaming\Thunderbird\Profiles\fowp2dk7.default
- esk slovnk pro kontrolu pravopisu - %ProfilePath%\extensions\cs@dictionaries.addons.mozilla.org

ProfilePath: C:\Users\pc27\AppData\Roaming\Thunderbird\Profiles\4nsz0nrm.default
- ESET Smart Security Extension - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

==== Firefox Plugins ======================

Profilepath: C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default
0806948270D853B709CCBBF38AF167E4 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat
9DF0C4F0CEF60158614EDD1B3AB441EE - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
A843FC35574ECFD9E7A41C5505A9921B - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin
01D93217A9EE48DD37072B671378CC9C - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll - Silverlight Plug-In
1040BD9BF3DDAB7CDA2346F8375480A2 - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll - Java(TM) Platform SE 6 U26
5EB6F21D95E728C61BCFC89F899D6BB0 - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll - Java Deployment Toolkit 6.0.260.3
CE252B04FB9F4F773A7DB5338BFEEA5B - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL - CANON iMAGE GATEWAY Album Plugin Utility
9AE02005247DA91AB1743F5208DBEF76 - C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll - Shockwave Flash
37BC12D7E076F77D432C74DAAE08A138 - C:\Users\dealer4\AppData\Roaming\Mozilla\Firefox\Profiles\r7c7ov6d.default\extensions\2020Player_IKEA@2020Technologies.com\plugins\NP_2020Player_IKEA.dll - 20-20 3D Viewer for IKEA
28986F0A2342A033345EF9E70D395E4F - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrlui.dll - Microsoft® Silverlight


==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://googel.com/"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://www.google.com"
"Search Page"="http://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://www.google.com/ie"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://googel.com/"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search]
"SearchAssistant"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"

==== Reset Google Chrome ======================

Nothing found to reset

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9A5BB82058366FC46AFF5D215D10D5AB deleted successfully
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{028BB5A9-6385-4CF6-A6FF-D512D5015DBA} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\9A5BB82058366FC46AFF5D215D10D5AB deleted successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AMD AVT deleted successfully

==== Empty IE Cache ======================

C:\Users\dealer4\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully

==== Empty FireFox Cache ======================

C:\Users\dealer4\AppData\Local\Mozilla\Firefox\Profiles\r7c7ov6d.default\cache2 emptied successfully

==== Empty Chrome Cache ======================

No Chrome User Data found

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

Java Cache cleared successfully

==== C:\zoek_backup content ======================

C:\zoek_backup (files=179 folders=20 33151598 bytes)

==== Empty Temp Folders ======================

C:\Users\dealer4\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\pc27\AppData\Local\temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\dealer4\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on po 04.05.2015 at 8:30:46,40 ======================

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 05 kvě 2015 10:25

. spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény(smazat vybrané)“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.

Stáhni si RogueKiller by Adlice Software
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 73 hostů