kontrola logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

elvis5
nováček
Příspěvky: 13
Registrován: listopad 15
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod elvis5 » 22 lis 2015 13:59

malware 1 část


Malwarebytes Anti-Malware

www.malwarebytes.org

Datum skenování: 22.11.2015
Čas skenování: 12:50
Protokol: hrozby.txt
Správce: Ano

Verze: 2.2.0.1024
Databáze malwaru: v2015.11.22.02
Databáze rootkitů: v2015.11.14.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto

OS: Windows 10
CPU: x64
Souborový systém: NTFS
Uživatel: Marek

Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 463978
Uplynulý čas: 29 min, 6 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 54
PUP.Optional.Babylon, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}, Do karantény, [f8120081bccf89ada9fd1d1c758de020],
PUP.Optional.ConduitTB.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1}, Do karantény, [bd4dfa878b0056e0b17f9dd4f70c59a7],
PUP.Optional.ConduitTB.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}, Do karantény, [bd4dfa878b0056e0b17f9dd4f70c59a7],
PUP.Optional.ConduitTB.Gen, HKLM\SOFTWARE\CLASSES\Toolbar.CT1750559, Do karantény, [a5656d1402890036332a93ccc53e9f61],
PUP.Optional.CrossRider, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\3874, Do karantény, [8b7f156c4942e6503275d5a015eea35d],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{006A4FEA-BEB5-4088-8A7C-C9EDAFDEE1B2}, Do karantény, [b753067bcebd76c0acfdadc8847fac54],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{048BEE96-9110-48F9-AABF-749391CF0F16}, Do karantény, [917908791279b3834f5a1d587f84ab55],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2FF9696A-D071-4724-8DF3-70023AC634B7}, Do karantény, [b5556f12d9b2e6503377294c08fbc739],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35C8E407-9D9E-4993-8D6D-D9622EDC1CC1}, Do karantény, [c8420c75107bc373b4f60c693ec56c94],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6D362AF4-65AE-4B47-B4ED-4740D465B3A1}, Do karantény, [99718af768237fb7416aabcad03312ee],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7CBFC949-2735-4FA4-B7C6-CAC03629F76F}, Do karantény, [4dbdd7aab9d256e07833c2b3f60d8080],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\00e1002c-7029-4aa8-96af-5a4f99b861b7-1, Smazat při restartu, [d337ef92711a79bd6f3d85f0df246997],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\00e1002c-7029-4aa8-96af-5a4f99b861b7-2, Smazat při restartu, [53b7404194f7df577f2dde976a9945bb],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\00e1002c-7029-4aa8-96af-5a4f99b861b7-5, Smazat při restartu, [a76385fc454686b0119b5a1b6d96ff01],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\3acf9a70-1a99-4e96-962c-fb7ed7f05265-1, Smazat při restartu, [1febef928ffc3afc208c462f46bd748c],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\3acf9a70-1a99-4e96-962c-fb7ed7f05265-2, Smazat při restartu, [25e58bf66e1d0531426a284da261ae52],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\3acf9a70-1a99-4e96-962c-fb7ed7f05265-3, Smazat při restartu, [709a265b2665c373eebe2d48ee15ba46],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\3acf9a70-1a99-4e96-962c-fb7ed7f05265-4, Smazat při restartu, [b654156cacdf0e282d7ffe77847fd828],
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\3acf9a70-1a99-4e96-962c-fb7ed7f05265-5, Smazat při restartu, [42c80879e5a663d31c90a9cca75cb54b],
PUP.Optional.MalwareCleaner, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Malware Cleaner, Smazat při restartu, [d5350a77d9b2e74f3943345ba35fef11],
PUP.Optional.PrxySvrRST, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SmartComp Safe Network Viewer, Smazat při restartu, [c3476918008b201603de2d657b879967],
PUP.Optional.GoPhoto, HKLM\SOFTWARE\WOW6432NODE\GoPhoto.it V9.0, Do karantény, [907afd84a5e6d95dfaa8e896986b60a0],
PUP.Optional.TornTV, HKLM\SOFTWARE\WOW6432NODE\Torntv V9.0, Do karantény, [f01a3051e8a3ee4872e3178a49bad12f],
PUP.Optional.ConduitTB.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Toolbar.CT1750559, Do karantény, [ae5c98e9e3a86fc7075681de91728a76],
PUP.Optional.BuenoSearch, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\acfoobbgoakpihljnfedbcfaipcdlfhk, Do karantény, [49c198e94a4148eee49ad29b6d96a957],
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{006A4FEA-BEB5-4088-8A7C-C9EDAFDEE1B2}, Do karantény, [ff0b5f227e0d3ef803a660150bf8b947],
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{048BEE96-9110-48F9-AABF-749391CF0F16}, Do karantény, [61a9b8c9a8e3f541c3e6264fd3309a66],
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2FF9696A-D071-4724-8DF3-70023AC634B7}, Do karantény, [8486f38e800b1323802a9dd8887bfe02],
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35C8E407-9D9E-4993-8D6D-D9622EDC1CC1}, Do karantény, [e1296120ccbfd264c5e54c2911f2aa56],
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6D362AF4-65AE-4B47-B4ED-4740D465B3A1}, Do karantény, [25e5463babe07bbb18938de80102c040],
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7CBFC949-2735-4FA4-B7C6-CAC03629F76F}, Do karantény, [1befd8a9bbd0ee4857544a2bef144db3],
PUP.Optional.GoPhoto, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\GoPhoto.it V9.0, Do karantény, [48c2ff82117a5fd7d4c8a0de82817b85],
PUP.Optional.TornTV, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\Torntv V9.0, Do karantény, [be4cbac7701bff376fd5653c788b08f8],
PUP.Optional.Conduit, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\APPDATALOW\SOFTWARE\ConduitSearchScopes, Do karantény, [e9219fe2bdce9d99ee230f627a8934cc],
PUP.Optional.GoPhoto, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\APPDATALOW\SOFTWARE\GoPhoto.it V9.0, Do karantény, [34d6ceb3d3b882b42973116d946fc937],
PUP.Optional.TornTV, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\APPDATALOW\SOFTWARE\Torntv V9.0, Do karantény, [23e7770a4447122420249e035da6619f],
PUP.Optional.ConduitTB.Gen, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\CONDUIT\DistributionEngine, Do karantény, [0ffb6819d6b5c373293e90cf5da633cd],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{006A4FEA-BEB5-4088-8A7C-C9EDAFDEE1B2}, Do karantény, [65a5711082096ec81d6bbbba33d01fe1],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{048BEE96-9110-48F9-AABF-749391CF0F16}, Do karantény, [9c6e5c2509820a2ccdbbcaab21e2d42c],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{27C47844-2F4A-4630-B0CE-1396FA47CBE3}, Do karantény, [35d599e80f7c35011c6d274e49ba6b95],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2FF9696A-D071-4724-8DF3-70023AC634B7}, Do karantény, [d9313051f596b0866a1f1560a55e50b0],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35C8E407-9D9E-4993-8D6D-D9622EDC1CC1}, Do karantény, [b3571071acdf063023664b2aea19966a],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{449A96E1-26FB-4046-9D55-84D539A67824}, Do karantény, [ab5f4041226986b071184233a65dcb35],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6D362AF4-65AE-4B47-B4ED-4740D465B3A1}, Do karantény, [57b3d6ab5239e254a9e1175e649fc13f],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{77AF9CBE-979D-49A8-B1D1-AB7876105247}, Do karantény, [f416c7ba7318ca6cf29889ece2210cf4],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7CBFC949-2735-4FA4-B7C6-CAC03629F76F}, Do karantény, [91790e73a2e9f343771393e2e41f817f],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8229F8AC-C8BD-4164-A6B6-6683E2A0F2C2}, Do karantény, [f713661b6c1fe353b8d21f56e122fd03],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C71B9E37-F8E1-4682-A46C-BFAEB3691BA0}, Do karantény, [8981c9b8b0db072f7f0adc999b68b44c],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CC5785EB-F675-4416-84C5-1085F5EF1E72}, Do karantény, [ce3c0f72652652e42861c6af18eb9e62],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D9FE9234-C796-4BBE-9AEC-EF811BBFF9F8}, Do karantény, [f416a4dda6e59c9a1476b7becf3443bd],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E2EB65C9-A481-4CA0-BE10-1EBCAEA26219}, Do karantény, [34d6f1908efd1224b6d41461bb484fb1],
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{EA35EA52-309C-42F9-A1A0-A6ED2E1B5824}, Do karantény, [6aa083fedcaf49ede1a9bbba9c6704fc],
PUP.Optional.Conduit, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{8E1EF5AE-B507-4BAF-9A39-4F56DA90D22C}, Do karantény, [8882e99857341d191cfba0d1fe0532ce],
PUP.Optional.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PrivoxyService, Do karantény, [8b7fe29f3358270f916081dec73b06fa],

Hodnoty registru: 30
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{006a4fea-beb5-4088-8a7c-c9edafdee1b2}|AppName, Torntv V9.0-bg.exe, Do karantény, [b753067bcebd76c0acfdadc8847fac54]
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{048bee96-9110-48f9-aabf-749391cf0f16}|AppName, GoPhoto.it V9.0-bg.exe, Do karantény, [917908791279b3834f5a1d587f84ab55]
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2ff9696a-d071-4724-8df3-70023ac634b7}|AppName, Torntv V9.0-buttonutil.exe, Do karantény, [b5556f12d9b2e6503377294c08fbc739]
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35c8e407-9d9e-4993-8d6d-d9622edc1cc1}|AppName, GoPhoto.it V9.0-buttonutil.exe, Do karantény, [c8420c75107bc373b4f60c693ec56c94]
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6d362af4-65ae-4b47-b4ed-4740d465b3a1}|AppName, GoPhoto.it V9.0-codedownloader.exe, Do karantény, [99718af768237fb7416aabcad03312ee]
PUP.Optional.CrossRider, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7cbfc949-2735-4fa4-b7c6-cac03629f76f}|AppName, Torntv V9.0-codedownloader.exe, Do karantény, [4dbdd7aab9d256e07833c2b3f60d8080]
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{006a4fea-beb5-4088-8a7c-c9edafdee1b2}|AppName, Torntv V9.0-bg.exe, Do karantény, [ff0b5f227e0d3ef803a660150bf8b947]
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{048bee96-9110-48f9-aabf-749391cf0f16}|AppName, GoPhoto.it V9.0-bg.exe, Do karantény, [61a9b8c9a8e3f541c3e6264fd3309a66]
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2ff9696a-d071-4724-8df3-70023ac634b7}|AppName, Torntv V9.0-buttonutil.exe, Do karantény, [8486f38e800b1323802a9dd8887bfe02]
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35c8e407-9d9e-4993-8d6d-d9622edc1cc1}|AppName, GoPhoto.it V9.0-buttonutil.exe, Do karantény, [e1296120ccbfd264c5e54c2911f2aa56]
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6d362af4-65ae-4b47-b4ed-4740d465b3a1}|AppName, GoPhoto.it V9.0-codedownloader.exe, Do karantény, [25e5463babe07bbb18938de80102c040]
PUP.Optional.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7cbfc949-2735-4fa4-b7c6-cac03629f76f}|AppName, Torntv V9.0-codedownloader.exe, Do karantény, [1befd8a9bbd0ee4857544a2bef144db3]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{006a4fea-beb5-4088-8a7c-c9edafdee1b2}|AppName, Torntv V9.0-bg.exe, Do karantény, [65a5711082096ec81d6bbbba33d01fe1]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{048bee96-9110-48f9-aabf-749391cf0f16}|AppName, GoPhoto.it V9.0-bg.exe, Do karantény, [9c6e5c2509820a2ccdbbcaab21e2d42c]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{27C47844-2F4A-4630-B0CE-1396FA47CBE3}|AppName, 00e1002c-7029-4aa8-96af-5a4f99b861b7-2.exe-buttonutil.exe, Do karantény, [35d599e80f7c35011c6d274e49ba6b95]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2ff9696a-d071-4724-8df3-70023ac634b7}|AppName, Torntv V9.0-buttonutil.exe, Do karantény, [d9313051f596b0866a1f1560a55e50b0]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35c8e407-9d9e-4993-8d6d-d9622edc1cc1}|AppName, GoPhoto.it V9.0-buttonutil.exe, Do karantény, [b3571071acdf063023664b2aea19966a]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{449A96E1-26FB-4046-9D55-84D539A67824}|AppName, 00e1002c-7029-4aa8-96af-5a4f99b861b7-2.exe-buttonutil.exe, Do karantény, [ab5f4041226986b071184233a65dcb35]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6d362af4-65ae-4b47-b4ed-4740d465b3a1}|AppName, GoPhoto.it V9.0-codedownloader.exe, Do karantény, [57b3d6ab5239e254a9e1175e649fc13f]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{77AF9CBE-979D-49A8-B1D1-AB7876105247}|AppName, 00e1002c-7029-4aa8-96af-5a4f99b861b7-2.exe-codedownloader.exe, Do karantény, [f416c7ba7318ca6cf29889ece2210cf4]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7cbfc949-2735-4fa4-b7c6-cac03629f76f}|AppName, Torntv V9.0-codedownloader.exe, Do karantény, [91790e73a2e9f343771393e2e41f817f]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8229F8AC-C8BD-4164-A6B6-6683E2A0F2C2}|AppName, 3acf9a70-1a99-4e96-962c-fb7ed7f05265-2.exe-codedownloader.exe, Do karantény, [f713661b6c1fe353b8d21f56e122fd03]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C71B9E37-F8E1-4682-A46C-BFAEB3691BA0}|AppName, 00e1002c-7029-4aa8-96af-5a4f99b861b7-2.exe-buttonutil.exe, Do karantény, [8981c9b8b0db072f7f0adc999b68b44c]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CC5785EB-F675-4416-84C5-1085F5EF1E72}|AppName, 3acf9a70-1a99-4e96-962c-fb7ed7f05265-2.exe-buttonutil.exe, Do karantény, [ce3c0f72652652e42861c6af18eb9e62]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D9FE9234-C796-4BBE-9AEC-EF811BBFF9F8}|AppName, 00e1002c-7029-4aa8-96af-5a4f99b861b7-2.exe-codedownloader.exe, Do karantény, [f416a4dda6e59c9a1476b7becf3443bd]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E2EB65C9-A481-4CA0-BE10-1EBCAEA26219}|AppName, 3acf9a70-1a99-4e96-962c-fb7ed7f05265-2.exe-codedownloader.exe, Do karantény, [34d6f1908efd1224b6d41461bb484fb1]
PUP.Optional.CrossRider, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{EA35EA52-309C-42F9-A1A0-A6ED2E1B5824}|AppName, 00e1002c-7029-4aa8-96af-5a4f99b861b7-2.exe-codedownloader.exe, Do karantény, [6aa083fedcaf49ede1a9bbba9c6704fc]
PUP.Optional.Conduit, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{8E1EF5AE-B507-4BAF-9A39-4F56DA90D22C}|URL, http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1750559&CUI=UN17542014064981006, Do karantény, [8882e99857341d191cfba0d1fe0532ce]
PUP.Optional.Conduit, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{8E1EF5AE-B507-4BAF-9A39-4F56DA90D22C}|FaviconURL, http://search.conduit.com/favicon.ico, Do karantény, [ca40b6cb1378989ebc5b442d649fbf41]
PUM.Optional.ProxyHijacker, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|ProxyServer, 127.0.0.1:8118, Do karantény, [38d29be6f893af8747f4bc107b889769]

Data registru: 1
Hijack.StartPage, HKU\S-1-5-21-2790705977-2588249919-3448850516-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, http://www.buenosearch.com/?babsrc=HP_s ... 6&tsp=5231, Dobré: (www.google.com), Špatné: (http://www.buenosearch.com/?babsrc=HP_s ... 6&tsp=5231),Nahrazeno,[0bff0e73cfbc40f6555f6fef6b998878]

Složky: 35
PUP.Optional.PrxySvrRST, C:\Users\Marek\AppData\Roaming\Updater, Do karantény, [59b15f220f7cfa3c4a80045bce35bb45],
PUP.Optional.ConduitTB.Gen, C:\Program Files (x86)\Conduit\Community Alerts, Do karantény, [bd4dfa878b0056e0b17f9dd4f70c59a7],
PUP.Optional.ConduitTB.Gen, C:\Program Files (x86)\Conduit, Do karantény, [bd4dfa878b0056e0b17f9dd4f70c59a7],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa\2.2, Do karantény, [9278dba6e3a865d1a97556362cd73fc1],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa, Do karantény, [9278dba6e3a865d1a97556362cd73fc1],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa\2.2, Do karantény, [bd4dd8a98dfe3df9e23c5834838017e9],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa, Do karantény, [bd4dd8a98dfe3df9e23c5834838017e9],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa\2.2, Do karantény, [20ea701186055bdb58c67d0f5aa933cd],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa, Do karantény, [20ea701186055bdb58c67d0f5aa933cd],
Trojan.StolenData, C:\Users\Marek\AppData\Roaming\dclogs, Do karantény, [7e8c8ff2acdf51e52475d6f3bb48c838],
PUP.Optional.PrxySvrRST, C:\Program Files (x86)\SmartComp Safe Network, Do karantény, [8b7fe29f3358270f916081dec73b06fa],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\defaults, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\defaults\preferences, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\userCode, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\defaults, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\defaults\preferences, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\userCode, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ccfjbdjailljfihgkoccfbiljjapiijb_0, Do karantény, [a4665a27adde69cdae4d620607fbaf51],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_lmnbobhffedhdhfpcjkjphcfpeeiocdn_0, Do karantény, [30da82ffa6e5b77fd63b0a60f40ef907],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ccfjbdjailljfihgkoccfbiljjapiijb, Do karantény, [50ba6b161a7138fe763cc5a70bf73bc5],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lmnbobhffedhdhfpcjkjphcfpeeiocdn, Do karantény, [42c8bdc4d8b365d1a621e885ab57e020],

Reklama
elvis5
nováček
Příspěvky: 13
Registrován: listopad 15
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod elvis5 » 22 lis 2015 14:00

malware 2 část

Soubory: 245
PUP.Optional.BitCoinMiner, C:\Windows\SysWOW64\acumnctgfjl.exe, Do karantény, [6c9e10714348e056e547fdfa738e18e8],
Trojan.BitCoinMiner, C:\Windows\SysWOW64\dcgmnctgfjl.exe, Do karantény, [dc2e077abbd0b4827dd11fd85aa7fe02],
Trojan.Agent.BCM, C:\Windows\SysWOW64\lcpmnctgfjl.exe, Do karantény, [4bbf5d248506bf7723dc7a2626dacc34],
RiskWare.BitCoinMiner, C:\Users\Public\Other\minerd.exe, Do karantény, [ab5f2061fd8e072f8a8182a2be43da26],
PUP.Optional.ProxyHijacker.BCM, C:\Users\Public\Other\mining_proxy.exe, Do karantény, [e1298ff292f987af4dc8a2a820e09d63],
PUP.Optional.MalwareCleaner, C:\Windows\System32\Tasks\Malware Cleaner, Do karantény, [ed1da3dea3e886b0bebdb4db61a1db25],
PUP.Optional.PrxySvrRST, C:\Windows\System32\Tasks\SmartComp Safe Network Viewer, Do karantény, [09011f62513ae056746b7f13f50d3dc3],
PUP.Optional.PrxySvrRST, C:\Users\Marek\AppData\Roaming\Updater\winupd.exe, Do karantény, [59b15f220f7cfa3c4a80045bce35bb45],
PUP.Optional.CrossRider, C:\Windows\System32\Tasks\00e1002c-7029-4aa8-96af-5a4f99b861b7-1, Do karantény, [69a1176aaedde15540a49fc6956e9769],
PUP.Optional.CrossRider, C:\Windows\System32\Tasks\00e1002c-7029-4aa8-96af-5a4f99b861b7-2, Do karantény, [b852156c0289ca6c34b071f4ae55b947],
PUP.Optional.CrossRider, C:\Windows\System32\Tasks\00e1002c-7029-4aa8-96af-5a4f99b861b7-5, Do karantény, [c248f988404b69cdae360065f60d0af6],
PUP.Optional.CrossRider, C:\Windows\System32\Tasks\3acf9a70-1a99-4e96-962c-fb7ed7f05265-1, Do karantény, [24e66d14fc8f2115c321e67f996aff01],
PUP.Optional.CrossRider, C:\Windows\System32\Tasks\3acf9a70-1a99-4e96-962c-fb7ed7f05265-2, Do karantény, [e921abd60e7d56e0e6fe43224db66a96],
PUP.Optional.CrossRider, C:\Windows\System32\Tasks\3acf9a70-1a99-4e96-962c-fb7ed7f05265-3, Do karantény, [c446dfa2ef9c979f7e66f27344bf03fd],
PUP.Optional.CrossRider, C:\Windows\System32\Tasks\3acf9a70-1a99-4e96-962c-fb7ed7f05265-4, Do karantény, [d337740ded9ec27431b3a3c26d9615eb],
PUP.Optional.CrossRider, C:\Windows\System32\Tasks\3acf9a70-1a99-4e96-962c-fb7ed7f05265-5, Do karantény, [68a2aad74d3ea3934a9a91d44bb8d42c],
PUP.Optional.CrossRider, C:\Windows\Tasks\00e1002c-7029-4aa8-96af-5a4f99b861b7-1.job, Do karantény, [6f9b027f7912a98d6a7b15507a8957a9],
PUP.Optional.CrossRider, C:\Windows\Tasks\00e1002c-7029-4aa8-96af-5a4f99b861b7-2.job, Do karantény, [6d9d443d3e4daf875e87dd887e85d62a],
PUP.Optional.CrossRider, C:\Windows\Tasks\00e1002c-7029-4aa8-96af-5a4f99b861b7-5.job, Do karantény, [030741402e5dc17527be67fe1be8f10f],
PUP.Optional.CrossRider, C:\Windows\Tasks\3acf9a70-1a99-4e96-962c-fb7ed7f05265-1.job, Do karantény, [8684f98895f620169a4b91d4a2612ad6],
PUP.Optional.CrossRider, C:\Windows\Tasks\3acf9a70-1a99-4e96-962c-fb7ed7f05265-2.job, Do karantény, [36d4d7aa018a7abc10d580e5679cf60a],
PUP.Optional.CrossRider, C:\Windows\Tasks\3acf9a70-1a99-4e96-962c-fb7ed7f05265-3.job, Do karantény, [e02a87fa9fec89ad3ea70362a95a8e72],
PUP.Optional.CrossRider, C:\Windows\Tasks\3acf9a70-1a99-4e96-962c-fb7ed7f05265-4.job, Do karantény, [f119b7cab0db0234b4316302f112c63a],
PUP.Optional.CrossRider, C:\Windows\Tasks\3acf9a70-1a99-4e96-962c-fb7ed7f05265-5.job, Do karantény, [b753027fe1aa38fee302f76ec53ef10f],
PUP.Optional.ConduitTB.Gen, C:\Program Files (x86)\Conduit\Community Alerts\Alert.dll, Do karantény, [bd4dfa878b0056e0b17f9dd4f70c59a7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ccfjbdjailljfihgkoccfbiljjapiijb_0.localstorage, Do karantény, [69a1572a82093ff7b75abcb7f0136e92],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ccfjbdjailljfihgkoccfbiljjapiijb_0.localstorage-journal, Do karantény, [dd2d1170107bf343838e6211f80b1ee2],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa\2.2\lsdb.js, Do karantény, [9278dba6e3a865d1a97556362cd73fc1],
PUP.Optional.MultiPlug, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa\2.2\content.js, Do karantény, [9278dba6e3a865d1a97556362cd73fc1],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa\2.2\lsdb.js, Do karantény, [bd4dd8a98dfe3df9e23c5834838017e9],
PUP.Optional.MultiPlug, C:\Users\Guest\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa\2.2\content.js, Do karantény, [bd4dd8a98dfe3df9e23c5834838017e9],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa\2.2\lsdb.js, Do karantény, [20ea701186055bdb58c67d0f5aa933cd],
PUP.Optional.MultiPlug, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\emfcpmbmcclplcapahgehkfkfhgalffa\2.2\content.js, Do karantény, [20ea701186055bdb58c67d0f5aa933cd],
Trojan.StolenData, C:\Users\Marek\AppData\Roaming\dclogs\2014-04-28-2.dc, Do karantény, [7e8c8ff2acdf51e52475d6f3bb48c838],
Trojan.StolenData, C:\Users\Marek\AppData\Roaming\dclogs\2014-04-29-3.dc, Do karantény, [7e8c8ff2acdf51e52475d6f3bb48c838],
Trojan.StolenData, C:\Users\Marek\AppData\Roaming\dclogs\2014-04-30-4.dc, Do karantény, [7e8c8ff2acdf51e52475d6f3bb48c838],
PUP.Optional.PrxySvrRST, C:\Program Files (x86)\SmartComp Safe Network\checkproxy.exe, Do karantény, [8b7fe29f3358270f916081dec73b06fa],
PUP.Optional.PrxySvrRST, C:\Program Files (x86)\SmartComp Safe Network\jpchromium.exe, Do karantény, [8b7fe29f3358270f916081dec73b06fa],
PUP.Optional.PrxySvrRST, C:\Program Files (x86)\SmartComp Safe Network\jpchromium64.exe, Do karantény, [8b7fe29f3358270f916081dec73b06fa],
PUP.Optional.PrxySvrRST, C:\Program Files (x86)\SmartComp Safe Network\jpweb.dll, Do karantény, [8b7fe29f3358270f916081dec73b06fa],
PUP.Optional.PrxySvrRST, C:\Program Files (x86)\SmartComp Safe Network\jpweb64.dll, Do karantény, [8b7fe29f3358270f916081dec73b06fa],
PUP.Optional.PrxySvrRST, C:\Program Files (x86)\SmartComp Safe Network\mgwz.dll, Do karantény, [8b7fe29f3358270f916081dec73b06fa],
PUP.Optional.PrxySvrRST, C:\Program Files (x86)\SmartComp Safe Network\msnworker.exe, Do karantény, [8b7fe29f3358270f916081dec73b06fa],
PUP.Optional.PrxySvrRST, C:\Program Files (x86)\SmartComp Safe Network\privoxy.exe, Do karantény, [8b7fe29f3358270f916081dec73b06fa],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome.manifest, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\baseObject.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\dialog.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\main.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\options.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\platformVersion.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\asyncDB.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\background.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\browserAction.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\contextMenu.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\dbManager.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\dom_bg.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\fileManager.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\firefox.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\firefoxNotifications.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\firefoxOmnibox.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\message.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\pageAction.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\request.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\tabs.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\webRequest.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\api\windowsMessagingHandler.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\addressBarChangeObserver.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\console.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\consts.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\delegate.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\extensionDataStore.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\folderIOWrapper.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\httpObserver.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\IDBWrapper.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\installer.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\logFile.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\prefs.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\progressListenerObserver.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\registry.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\reloadObserver.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\reports.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\requestObject.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\searchSettings.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\uninstallObserver.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\updateManager.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\utils.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\chrome\content\core\xhr.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\defaults\preferences\prefs.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\1.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\1000020.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\1000025.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\1000030.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\102.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\103.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\104.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\123.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\13.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\14.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\155.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\16.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\17.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\175.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\177.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\180.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\182.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\183.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\190.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\193.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\195.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\207.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\21.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\22.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\220.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\223.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\246.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\28.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\4.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\47.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\64.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\7.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\72.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\78.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\9.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\91.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\93.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\plugins\98.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\userCode\background.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\2ea36bf1-0877-4aaa-882c-ff78f7d9d95c@dfb1672d-116a-4eb4-8be0-44786bd1d3dd.com\extensionData\userCode\extension.js, Do karantény, [0307344d8cffc76fcb9bb3b5719129d7],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome.manifest, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\baseObject.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\dialog.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\main.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\options.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\platformVersion.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\asyncDB.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\background.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\browserAction.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\contextMenu.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\dbManager.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\dom_bg.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\fileManager.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\firefox.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\firefoxNotifications.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\firefoxOmnibox.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\message.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\pageAction.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\request.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\tabs.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\webRequest.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\api\windowsMessagingHandler.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\addressBarChangeObserver.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\console.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\consts.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\delegate.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\extensionDataStore.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\folderIOWrapper.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\httpObserver.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],

elvis5
nováček
Příspěvky: 13
Registrován: listopad 15
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod elvis5 » 22 lis 2015 14:01

malware 3 část

tent\core\IDBWrapper.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\installer.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\logFile.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\prefs.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\progressListenerObserver.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\registry.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\reloadObserver.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\reports.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\requestObject.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\searchSettings.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\uninstallObserver.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\updateManager.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\utils.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\chrome\content\core\xhr.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\defaults\preferences\prefs.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\1.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\1000020.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\1000025.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\1000030.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\102.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\103.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\104.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\123.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\13.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\14.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\155.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\16.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\17.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\175.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\177.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\180.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\182.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\183.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\190.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\193.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\195.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\207.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\21.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\22.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\220.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\223.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\246.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\28.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\4.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\47.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\64.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\7.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\72.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\78.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\9.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\91.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\93.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\plugins\98.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\userCode\background.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\extensions\5a6bf058-b978-4b84-a2ec-6f5462cfccb2@10120365-d3c0-4ec9-8624-5fac2592d0df.com\extensionData\userCode\extension.js, Do karantény, [f01ac0c1b9d2f244dc8ab4b4679bce32],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ccfjbdjailljfihgkoccfbiljjapiijb_0\244, Do karantény, [a4665a27adde69cdae4d620607fbaf51],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ccfjbdjailljfihgkoccfbiljjapiijb\000525.ldb, Do karantény, [50ba6b161a7138fe763cc5a70bf73bc5],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ccfjbdjailljfihgkoccfbiljjapiijb\000530.ldb, Do karantény, [50ba6b161a7138fe763cc5a70bf73bc5],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ccfjbdjailljfihgkoccfbiljjapiijb\000531.log, Do karantény, [50ba6b161a7138fe763cc5a70bf73bc5],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ccfjbdjailljfihgkoccfbiljjapiijb\CURRENT, Do karantény, [50ba6b161a7138fe763cc5a70bf73bc5],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ccfjbdjailljfihgkoccfbiljjapiijb\LOCK, Do karantény, [50ba6b161a7138fe763cc5a70bf73bc5],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ccfjbdjailljfihgkoccfbiljjapiijb\LOG, Do karantény, [50ba6b161a7138fe763cc5a70bf73bc5],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ccfjbdjailljfihgkoccfbiljjapiijb\LOG.old, Do karantény, [50ba6b161a7138fe763cc5a70bf73bc5],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ccfjbdjailljfihgkoccfbiljjapiijb\MANIFEST-000529, Do karantény, [50ba6b161a7138fe763cc5a70bf73bc5],
PUP.Optional.CrossRider, C:\Users\Marek\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lmnbobhffedhdhfpcjkjphcfpeeiocdn\LOG.old, Do karantény, [42c8bdc4d8b365d1a621e885ab57e020],
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (user_pref("extensions.buenosearch.tlbrSrchUrl", "http://www.buenosearch.com/?q={searchTerms}&babsrc=TB_ss&mntrId=2688E0CA94E1F447&affID=128403&tt=240414_16&tsp=5231");), Nahrazeno,[a06ac5bc67245fd7c98d3f46e420718f]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (128403&tt=240414_16&tsp=5231");
user_pref("extensions.buenosearch.tb_url", "http://www.buenosearch.com/?q={searchTerms}&babsrc=TB_ss&mntrId=2688E0CA94E1F447&affI), Nahrazeno,[e3277d04b3d86fc79eb87a0b16eefd03]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (ffID=128403&tt=240414_16&tsp=5231");
user_pref("extensions.buenosearch.tb_), Nahrazeno,[59b195ec8efd7fb71e38394c59ab29d7]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (l", "http://www.buenosearch.com/?q={searchTerms}&babsrc=TB_ss&mntrId=2688E0CA94E1F44), Nahrazeno,[38d259284e3d3ff7c3935e2736ce8c74]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (://www.buenosearch.com/?q={searchTerms}&babsrc=TB_ss&m), Nahrazeno,[31d91b66deaddd59c98d7a0b5ca843bd]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (uenosearch.tlbrSrchUrl", "http://www.buenosearch.com/), Nahrazeno,[8a80176a33583cfae1754d3862a29868]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (buenosearch.tlbrSrchUrl", "http://www.buenosearch.com/), Nahrazeno,[1cee463b9fecb0861046731223e12ed2]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (uenosearch.tlbrSrchUrl", "http://www.buenosearch.com/?q={search), Nahrazeno,[1af0fd84315aaf8765f1a8dd25dfb44c]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (h.tlbrSrchUrl", "http://www.buenosearch.com/?q={searchTerms), Nahrazeno,[39d19ae7f59623138cca1a6b0ef6fa06]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (earch.tlbrSrchUrl", "http://www.buenosearch.com/?q={searc), Nahrazeno,[aa60542dc2c9ed4977dfdaab52b29e62]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (osearch.tlbrSrchUrl", "http://www.buenosearch.com/?), Nahrazeno,[9d6da0e14a41e353aaac582db84c3dc3]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (s.buenosearch.tlbrSrchUrl", "http://www.buenosearch.), Nahrazeno,[c8425928810ac96dc393acd96b9948b8]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (.buenosearch.tlbrSrchUrl", "http://www.buenosearch.), Nahrazeno,[af5bf19029621f1733230f763cc8ae52]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (.buenosearch.tlbrSrchUrl", "http://www.buenosearch), Nahrazeno,[07039de4177467cf272f661f867e1be5]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (ns.buenosearch.tlbrSrchUrl", "http://www.buenosearc), Nahrazeno,[0406334e4645152151055a2ba55f629e]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (s.buenosearch.tlbrSrchUrl", "http://www.buenosearch.co), Nahrazeno,[e921a6db95f670c64115067fed17fa06]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (uenosearch.tlbrSrchUrl", "http://www.buenosearch.), Nahrazeno,[cf3bb7caabe0c472bb9bd1b491739c64]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (ons.buenosearch.tlbrSrchUrl", "http://www.buenosearch.), Nahrazeno,[0cfedaa799f20c2a292dc5c0ac5851af]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (uenosearch.tlbrSrchUrl", "http://www.buenosearch.c), Nahrazeno,[94769ee38b003204e67089fc40c4b44c]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (ns.buenosearch.tlbrSrchUrl", "http://www.buenosear), Nahrazeno,[13f7c4bd810a0d29a1b5aadb966ed927]
PUP.Optional.BuenoSearch, C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\gyik28xc.default\user.js, Dobré: (), Špatné: (absrc=TB_ss&mntrId=2688E0CA94E1F447&affID=128403&tt=240414_16&tsp=5231");
user_pref("extensions.buenosearch.tb_url", "http://www.buenosearch.com/?q={searchTerms}), Nahrazeno,[d931463b454624125756b5d05ca8b14f]

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod jerabina » 22 lis 2015 14:53

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB (kromě myši s klávesnice) nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Pak klikni na "Prohledat " ,po jeho skončení:
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
(musíš dát myší zatržítko do toho čtverečku vlevo od registru ap.)
- Klikni na "Smazat"
- Počkej, dokud Status box nezobrazí " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller

Vypni antivir
Stáhni
Zoek.exe

a uloz si ho na plochu.
Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
- pozor , náběh programu může trvat déle.

Do okna programu vlož skript níže:

Kód: Vybrat vše

autoclean;
emptyclsid;
iedefaults;
FFdefaults;
CHRdefaults;
emptyalltemp;
resethosts;


klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .

Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log
Zkopíruj sem celý obsah toho logu.

Vlož nový log z HJT + informuj o problémech.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

elvis5
nováček
Příspěvky: 13
Registrován: listopad 15
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod elvis5 » 24 lis 2015 19:07

jak dlouho by měl přibližně pracovat ten program zoek ? měl jsem ho spuštěný skoro cely den a na posledním řádku scriptu bylo : Del by CLSID a žádný restart mi nenabídnul.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod jaro3 » 24 lis 2015 19:39

Zkus ho v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 75 hostů