Moc prosím o pomoc při vyčištění.
Přikládám log z HJT před, potom projeto ATF a TFC Cleanery. A projeto Adw a Mbam. Ale nic jsem nemazal.
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:05:05, on 29. 12. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\Barbara\Desktop\HijackThis (1).exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\WINDOWS\SysWOW64\DllHost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Avira SystrayStartTrigger] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avira Mail Protection (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Web Protection (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Avira Service Host (Avira.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo System Agent Service - LENOVO INCORPORATED. - C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: VeriFaceSrv - Unknown owner - C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 11079 bytes
-------------------------------------------------------------------
# AdwCleaner v5.026 - Logfile created 29/12/2015 at 15:38:01
# Updated 21/12/2015 by Xplode
# Database : 2015-12-23.1 [Server]
# Operating system : Windows 8.1 (x64)
# Username : Barbara - IDEA-PC
# Running from : C:\Users\Barbara\Desktop\AdwCleaner.exe
# Option : Scan
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
Folder Found : C:\Program Files (x86)\PriceMinus
Folder Found : C:\ProgramData\5845266467792363576
Folder Found : C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn
***** [ Files ] *****
File Found : C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
File Found : C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage-journal
***** [ DLL ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
Key Found : HKLM\SOFTWARE\3b8494bb-e251-34c8-7163-3956f11d2b15
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{a3c3f82c}
Key Found : HKCU\Software\Classes\CLSID\{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{191F1F24-6CD9-4CC9-8CF7-1006772638D5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{29C26002-10DE-4440-AB58-588CDCAE63C2}
Key Found : HKLM\SOFTWARE\Classes\Interface\{45EC1006-A536-4A2D-BE5B-76FE7DBD89DE}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{ADA38E4E-F20A-4399-BE91-E260AC341C69}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{191F1F24-6CD9-4CC9-8CF7-1006772638D5}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{29C26002-10DE-4440-AB58-588CDCAE63C2}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{45EC1006-A536-4A2D-BE5B-76FE7DBD89DE}
Key Found : HKCU\Software\WEBAPP
Key Found : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Key Found : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
Key Found : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{06B99631-BFA2-3B7A-F58B-D067C2BA59B7}
Key Found : HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
***** [ Web browsers ] *****
[C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Found : pcgpkdkfakmecbfkikbfjekloicbjbhn
########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [2415 bytes] ##########
---------------------------------------------------------------------------
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 29. 12. 2015
Čas skenování: 16:12
Protokol: log23.txt
Správce: Ano
Verze: 2.2.0.1024
Databáze malwaru: v2015.12.29.04
Databáze rootkitů: v2015.12.26.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Barbara
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 411887
Uplynulý čas: 12 min, 29 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 18
PUP.Optional.PriceMinus, HKLM\SOFTWARE\CLASSES\TYPELIB\{ADA38E4E-F20A-4399-BE91-E260AC341C69}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\CLASSES\INTERFACE\{191F1F24-6CD9-4CC9-8CF7-1006772638D5}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\CLASSES\INTERFACE\{29C26002-10DE-4440-AB58-588CDCAE63C2}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\CLASSES\INTERFACE\{45EC1006-A536-4A2D-BE5B-76FE7DBD89DE}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\CLASSES\INTERFACE\{AC5090B9-9FFA-48F7-8011-A70E000B85E0}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{191F1F24-6CD9-4CC9-8CF7-1006772638D5}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{29C26002-10DE-4440-AB58-588CDCAE63C2}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{45EC1006-A536-4A2D-BE5B-76FE7DBD89DE}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{AC5090B9-9FFA-48F7-8011-A70E000B85E0}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{191F1F24-6CD9-4CC9-8CF7-1006772638D5}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{29C26002-10DE-4440-AB58-588CDCAE63C2}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{45EC1006-A536-4A2D-BE5B-76FE7DBD89DE}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{AC5090B9-9FFA-48F7-8011-A70E000B85E0}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{ADA38E4E-F20A-4399-BE91-E260AC341C69}, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{ADA38E4E-F20A-4399-BE91-E260AC341C69}, , [9f3995150f7ccf676370526a42c18977],
PUM.Optional.DisableChromeUpdates, HKLM\SOFTWARE\POLICIES\GOOGLE\UPDATE, , [7761c6e44a416bcbfa5e907849bbe31d],
PUP.Optional.MultiPlug, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{a3c3f82c}, , [f6e251599fec16204b306f47a95ada26],
PUM.Optional.DisableChromeUpdates, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\UPDATE, , [3b9ddad095f6e056233511f78d77aa56],
Hodnoty registru: 2
PUM.Optional.DisableChromeUpdates, HKLM\SOFTWARE\POLICIES\GOOGLE\UPDATE|DisableAutoUpdateChecksCheckboxValue, 1, , [7761c6e44a416bcbfa5e907849bbe31d]
PUM.Optional.DisableChromeUpdates, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\UPDATE|DisableAutoUpdateChecksCheckboxValue, 1, , [3b9ddad095f6e056233511f78d77aa56]
Data registru: 0
(Nenalezeny žádné škodlivé položky)
HJT+ odvirování
Re: HJT+ odvirování
pokračování:
Složky: 239
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug.Gen, C:\ProgramData\5845266467792363576, , [696fe9c1e5a6142246f9325a9a69649c],
PUP.Optional.PriceMinus, C:\Program Files (x86)\PriceMinus, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ar, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\bg, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ca, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\cs, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\da, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\de, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\el, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_GB, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_US, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es_419, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\et, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fil, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\he, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hu, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\id, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\it, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ja, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ko, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lt, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lv, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ms, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\nl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\no, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_BR, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_PT, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ro, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ru, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sk, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sv, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\th, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\tr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\uk, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\vi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_CN, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_TW, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_metadata, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ar, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\bg, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ca, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\cs, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\da, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\de, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\el, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_GB, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_US, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es_419, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\et, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fil, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\he, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hu, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\id, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\it, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ja, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ko, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lt, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lv, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ms, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\nl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\no, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_BR, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_PT, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ro, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ru, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sk, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sv, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\th, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\tr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\uk, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\vi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_CN, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_TW, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_metadata, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ar, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\bg, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ca, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\cs, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\da, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\de, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\el, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_GB, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_US, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es_419, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\et, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\eu, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fil, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\he, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hu, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\id, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\it, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ja, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ko, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lt, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lv, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ms, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\nl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\no, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_BR, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_PT, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ro, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ru, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sk, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sv, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\th, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\tr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\uk, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\vi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_CN, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_TW, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_metadata, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ar, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\bg, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ca, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\cs, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\da, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\de, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\el, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_GB, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_US, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es_419, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\et, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fil, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\he, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hu, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\id, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\it, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ja, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ko, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lt, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lv, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ms, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\nl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\no, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_BR, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_PT, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ro, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ru, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sk, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sv, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\th, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\tr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\uk, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\vi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_CN, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_TW, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_metadata, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\_metadata, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\css, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\html, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\bg, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ca, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\cs, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\da, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\de, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\el, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en_GB, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es_419, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\et, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fi, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fil, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hi, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hu, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\id, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\it, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ja, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ko, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lt, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lv, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nb, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_BR, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_PT, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ro, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ru, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sk, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sv, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\th, , [d50322881d6ec47215759032dc281fe1],
Složky: 239
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug.Gen, C:\ProgramData\5845266467792363576, , [696fe9c1e5a6142246f9325a9a69649c],
PUP.Optional.PriceMinus, C:\Program Files (x86)\PriceMinus, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ar, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\bg, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ca, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\cs, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\da, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\de, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\el, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_GB, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_US, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es_419, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\et, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fil, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\he, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hu, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\id, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\it, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ja, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ko, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lt, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lv, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ms, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\nl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\no, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_BR, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_PT, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ro, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ru, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sk, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sv, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\th, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\tr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\uk, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\vi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_CN, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_TW, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_metadata, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ar, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\bg, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ca, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\cs, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\da, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\de, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\el, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_GB, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_US, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es_419, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\et, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fil, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\he, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hu, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\id, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\it, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ja, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ko, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lt, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lv, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ms, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\nl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\no, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_BR, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_PT, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ro, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ru, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sk, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sv, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\th, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\tr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\uk, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\vi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_CN, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_TW, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_metadata, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ar, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\bg, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ca, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\cs, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\da, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\de, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\el, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_GB, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_US, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es_419, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\et, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\eu, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fil, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\he, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hu, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\id, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\it, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ja, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ko, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lt, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lv, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ms, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\nl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\no, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_BR, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_PT, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ro, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ru, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sk, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sv, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\th, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\tr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\uk, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\vi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_CN, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_TW, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_metadata, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ar, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\bg, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ca, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\cs, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\da, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\de, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\el, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_GB, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_US, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es_419, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\et, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fil, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\he, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hu, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\id, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\it, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ja, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ko, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lt, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lv, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ms, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\nl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\no, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_BR, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_PT, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ro, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ru, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sk, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sv, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\th, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\tr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\uk, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\vi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_CN, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_TW, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_metadata, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\_metadata, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\css, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\html, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\bg, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ca, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\cs, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\da, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\de, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\el, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en_GB, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es_419, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\et, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fi, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fil, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hi, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hu, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\id, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\it, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ja, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ko, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lt, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lv, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nb, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_BR, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_PT, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ro, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ru, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sk, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sv, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\th, , [d50322881d6ec47215759032dc281fe1],
Re: HJT+ odvirování
pokračování:
Složky: 239
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug.Gen, C:\ProgramData\5845266467792363576, , [696fe9c1e5a6142246f9325a9a69649c],
PUP.Optional.PriceMinus, C:\Program Files (x86)\PriceMinus, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ar, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\bg, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ca, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\cs, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\da, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\de, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\el, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_GB, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_US, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es_419, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\et, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fil, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\he, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hu, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\id, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\it, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ja, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ko, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lt, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lv, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ms, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\nl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\no, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_BR, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_PT, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ro, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ru, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sk, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sv, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\th, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\tr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\uk, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\vi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_CN, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_TW, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_metadata, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ar, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\bg, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ca, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\cs, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\da, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\de, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\el, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_GB, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_US, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es_419, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\et, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fil, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\he, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hu, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\id, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\it, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ja, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ko, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lt, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lv, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ms, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\nl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\no, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_BR, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_PT, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ro, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ru, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sk, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sv, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\th, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\tr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\uk, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\vi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_CN, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_TW, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_metadata, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ar, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\bg, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ca, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\cs, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\da, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\de, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\el, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_GB, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_US, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es_419, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\et, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\eu, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fil, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\he, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hu, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\id, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\it, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ja, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ko, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lt, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lv, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ms, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\nl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\no, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_BR, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_PT, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ro, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ru, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sk, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sv, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\th, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\tr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\uk, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\vi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_CN, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_TW, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_metadata, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ar, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\bg, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ca, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\cs, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\da, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\de, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\el, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_GB, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_US, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es_419, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\et, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fil, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\he, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hu, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\id, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\it, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ja, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ko, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lt, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lv, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ms, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\nl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\no, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_BR, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_PT, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ro, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ru, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sk, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sv, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\th, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\tr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\uk, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\vi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_CN, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_TW, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_metadata, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\_metadata, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\css, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\html, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\bg, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ca, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\cs, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\da, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\de, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\el, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en_GB, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es_419, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\et, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fi, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fil, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hi, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hu, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\id, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\it, , [d50322881d6ec47215759032dc281fe1],
Složky: 239
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug.Gen, C:\ProgramData\5845266467792363576, , [696fe9c1e5a6142246f9325a9a69649c],
PUP.Optional.PriceMinus, C:\Program Files (x86)\PriceMinus, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ar, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\bg, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ca, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\cs, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\da, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\de, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\el, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_GB, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_US, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es_419, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\et, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fil, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\he, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hu, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\id, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\it, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ja, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ko, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lt, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lv, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ms, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\nl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\no, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_BR, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_PT, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ro, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ru, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sk, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sl, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sv, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\th, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\tr, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\uk, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\vi, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_CN, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_TW, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_metadata, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ar, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\bg, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ca, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\cs, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\da, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\de, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\el, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_GB, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_US, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es_419, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\et, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fil, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\he, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hu, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\id, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\it, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ja, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ko, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lt, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lv, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ms, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\nl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\no, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_BR, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_PT, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ro, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ru, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sk, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sl, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sv, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\th, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\tr, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\uk, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\vi, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_CN, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_TW, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_metadata, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ar, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\bg, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ca, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\cs, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\da, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\de, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\el, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_GB, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_US, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es_419, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\et, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\eu, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fil, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\he, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hu, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\id, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\it, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ja, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ko, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lt, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lv, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ms, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\nl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\no, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_BR, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_PT, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ro, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ru, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sk, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sl, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sv, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\th, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\tr, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\uk, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\vi, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_CN, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_TW, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_metadata, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ar, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\bg, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ca, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\cs, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\da, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\de, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\el, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_GB, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_US, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es_419, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\et, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fil, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\he, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hu, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\id, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\it, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ja, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ko, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lt, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lv, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ms, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\nl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\no, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_BR, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_PT, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ro, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ru, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sk, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sl, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sv, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\th, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\tr, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\uk, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\vi, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_CN, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_TW, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_metadata, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\_metadata, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\css, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\html, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\bg, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ca, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\cs, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\da, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\de, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\el, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en_GB, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es_419, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\et, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fi, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fil, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hi, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hu, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\id, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\it, , [d50322881d6ec47215759032dc281fe1],
Re: HJT+ odvirování
pokračování:
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ja, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ko, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lt, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lv, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nb, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_BR, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_PT, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ro, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ru, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sk, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sv, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\th, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\tr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\uk, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\vi, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_CN, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_TW, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_metadata, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda, , [d50322881d6ec47215759032dc281fe1],
Soubory: 291
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn\lsdb.js, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn\background.html, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn\content.js, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn\lfJrzvEXT.js, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn\manifest.json, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug.Gen, C:\ProgramData\5845266467792363576\13b50d37ca5edb066cb2bff6eafc4ba9.ini, , [696fe9c1e5a6142246f9325a9a69649c],
PUP.Optional.MultiPlug.Gen, C:\ProgramData\5845266467792363576\164828690fd5c2dd6cb2bff6eafc4ba9.ini, , [696fe9c1e5a6142246f9325a9a69649c],
PUP.Optional.PriceMinus, C:\Program Files (x86)\PriceMinus\jrORUHFjVZGADQ.tlb, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, C:\Program Files (x86)\PriceMinus\jrORUHFjVZGADQ.dat, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\manifest.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\icon_128.png, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\icon_16.png, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\main.html, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\main.js, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ar\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\bg\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ca\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\cs\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\da\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\de\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\el\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_GB\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_US\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es_419\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\et\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fi\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fil\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fr\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\he\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hi\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hu\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\id\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\it\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ja\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ko\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lt\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lv\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ms\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\nl\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\no\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pl\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_BR\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_PT\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ro\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ru\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sk\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sl\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sr\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sv\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\th\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\tr\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\uk\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\vi\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_CN\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_TW\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_metadata\computed_hashes.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_metadata\verified_contents.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\manifest.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\icon_128.png, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\icon_16.png, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\main.html, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\main.js, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ar\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\bg\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ca\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\cs\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\da\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\de\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\el\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_GB\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_US\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es_419\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\et\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fi\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fil\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fr\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\he\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hi\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hu\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\id\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\it\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ja\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ko\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lt\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lv\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ms\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\nl\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\no\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pl\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_BR\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_PT\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ro\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ru\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sk\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sl\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sr\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sv\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\th\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\tr\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\uk\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\vi\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_CN\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_TW\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_metadata\computed_hashes.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_metadata\verified_contents.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\manifest.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\128.png, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ar\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\bg\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ca\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\cs\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\da\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\de\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\el\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_GB\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_US\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es_419\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\et\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\eu\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fi\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fil\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fr\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\he\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hi\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hr\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hu\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\id\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\it\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ja\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ko\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lt\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lv\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ms\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\nl\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\no\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pl\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_BR\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_PT\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ro\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ru\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sk\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sl\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sr\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sv\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\th\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\tr\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\uk\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\vi\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_CN\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_TW\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_metadata\verified_contents.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\manifest.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\icon_128.png, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\icon_16.png, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\main.html, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\main.js, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ar\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\bg\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ca\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\cs\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\da\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ja, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ko, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lt, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lv, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nb, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_BR, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_PT, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ro, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ru, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sk, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sl, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sv, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\th, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\tr, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\uk, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\vi, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_CN, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_TW, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_metadata, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda, , [d50322881d6ec47215759032dc281fe1],
Soubory: 291
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn\lsdb.js, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn\background.html, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn\content.js, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn\lfJrzvEXT.js, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug, C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn\manifest.json, , [a434d4d6c4c7a19523a2e89f42c130d0],
PUP.Optional.MultiPlug.Gen, C:\ProgramData\5845266467792363576\13b50d37ca5edb066cb2bff6eafc4ba9.ini, , [696fe9c1e5a6142246f9325a9a69649c],
PUP.Optional.MultiPlug.Gen, C:\ProgramData\5845266467792363576\164828690fd5c2dd6cb2bff6eafc4ba9.ini, , [696fe9c1e5a6142246f9325a9a69649c],
PUP.Optional.PriceMinus, C:\Program Files (x86)\PriceMinus\jrORUHFjVZGADQ.tlb, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.PriceMinus, C:\Program Files (x86)\PriceMinus\jrORUHFjVZGADQ.dat, , [9f3995150f7ccf676370526a42c18977],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\manifest.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\icon_128.png, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\icon_16.png, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\main.html, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\main.js, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ar\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\bg\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ca\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\cs\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\da\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\de\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\el\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_GB\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\en_US\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\es_419\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\et\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fi\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fil\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\fr\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\he\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hi\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\hu\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\id\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\it\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ja\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ko\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lt\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\lv\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ms\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\nl\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\no\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pl\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_BR\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\pt_PT\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ro\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\ru\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sk\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sl\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sr\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\sv\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\th\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\tr\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\uk\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\vi\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_CN\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_locales\zh_TW\messages.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_metadata\computed_hashes.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\_metadata\verified_contents.json, , [f1e7ffaba3e8b1852763ba08e420b848],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\manifest.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\icon_128.png, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\icon_16.png, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\main.html, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\main.js, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ar\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\bg\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ca\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\cs\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\da\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\de\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\el\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_GB\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\en_US\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\es_419\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\et\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fi\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fil\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\fr\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\he\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hi\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\hu\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\id\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\it\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ja\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ko\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lt\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\lv\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ms\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\nl\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\no\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pl\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_BR\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\pt_PT\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ro\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\ru\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sk\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sl\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sr\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\sv\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\th\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\tr\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\uk\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\vi\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_CN\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_locales\zh_TW\messages.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_metadata\computed_hashes.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\_metadata\verified_contents.json, , [9a3eb6f48803bf775f2b556d2fd5a15f],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\manifest.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\128.png, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ar\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\bg\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ca\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\cs\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\da\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\de\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\el\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_GB\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\en_US\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\es_419\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\et\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\eu\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fi\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fil\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\fr\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\he\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hi\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hr\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\hu\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\id\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\it\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ja\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ko\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lt\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\lv\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ms\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\nl\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\no\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pl\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_BR\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\pt_PT\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ro\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\ru\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sk\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sl\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sr\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\sv\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\th\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\tr\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\uk\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\vi\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_CN\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_locales\zh_TW\messages.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\_metadata\verified_contents.json, , [cf09fdad7b10082eccbeebd751b35fa1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\manifest.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\icon_128.png, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\icon_16.png, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\main.html, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\main.js, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ar\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\bg\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ca\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\cs\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\da\messages.json, , [58804961b8d302340783f1d131d3b947],
Re: HJT+ odvirování
snad už konec:
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\de\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\el\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_GB\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_US\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es_419\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\et\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fi\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fil\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fr\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\he\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hi\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hu\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\id\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\it\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ja\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ko\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lt\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lv\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ms\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\nl\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\no\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pl\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_BR\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_PT\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ro\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ru\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sk\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sl\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sr\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sv\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\th\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\tr\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\uk\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\vi\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_CN\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_TW\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_metadata\computed_hashes.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_metadata\verified_contents.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\manifest.json, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\background.html, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\background.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\browserSpecificScript.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_128x128.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_16x16.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_48x48.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_options_handler_script.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_options_menu.css, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_options_menu.html, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_options_menu_localization.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\call_icon.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\call_icon_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\call_skype_logo.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\call_skype_logo_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\contentscript.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\fpnr.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\gift_icon_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\jquery-2.1.0.min.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\learnmore_icon_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\localization.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\menu_handler.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\mutation-summary.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\number_highlighting.css, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\number_highlighting_builder.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\number_highlighting_chrome.css, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\number_highlighting_chrome_ui1.css, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\number_highlighting_ui1.css, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\plus_icon_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\pnr.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\skypecredit_icon_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\telemetry.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\_metadata\computed_hashes.json, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\_metadata\verified_contents.json, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\manifest.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\craw_background.js, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\craw_window.js, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\css\craw_window.css, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\html\craw_window.html, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\flapper.gif, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\icon_128.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\icon_16.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_close.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_hover.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_maximize.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_pressed.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\bg\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ca\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\cs\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\da\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\de\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\el\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en_GB\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es_419\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\et\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fi\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fil\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fr\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hi\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hr\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hu\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\id\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\it\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ja\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ko\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lt\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lv\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nb\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nl\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pl\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_BR\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_PT\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ro\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ru\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sk\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sl\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sr\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sv\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\th\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\tr\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\uk\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\vi\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_CN\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_TW\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_metadata\verified_contents.json, , [d50322881d6ec47215759032dc281fe1],
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Moc díky.
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\de\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\el\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_GB\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\en_US\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\es_419\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\et\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fi\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fil\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\fr\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\he\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hi\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\hu\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\id\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\it\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ja\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ko\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lt\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\lv\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ms\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\nl\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\no\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pl\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_BR\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\pt_PT\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ro\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\ru\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sk\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sl\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sr\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\sv\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\th\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\tr\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\uk\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\vi\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_CN\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_locales\zh_TW\messages.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_metadata\computed_hashes.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\_metadata\verified_contents.json, , [58804961b8d302340783f1d131d3b947],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\manifest.json, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\background.html, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\background.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\browserSpecificScript.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_128x128.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_16x16.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_48x48.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_options_handler_script.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_options_menu.css, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_options_menu.html, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\c2c_options_menu_localization.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\call_icon.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\call_icon_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\call_skype_logo.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\call_skype_logo_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\contentscript.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\fpnr.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\gift_icon_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\jquery-2.1.0.min.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\learnmore_icon_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\localization.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\menu_handler.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\mutation-summary.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\number_highlighting.css, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\number_highlighting_builder.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\number_highlighting_chrome.css, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\number_highlighting_chrome_ui1.css, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\number_highlighting_ui1.css, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\plus_icon_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\pnr.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\skypecredit_icon_ui1.png, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\telemetry.js, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\_metadata\computed_hashes.json, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\_metadata\verified_contents.json, , [a8305b4f880358dee4a6caf808fc54ac],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\manifest.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\craw_background.js, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\craw_window.js, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\css\craw_window.css, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\html\craw_window.html, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\flapper.gif, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\icon_128.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\icon_16.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_close.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_hover.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_maximize.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_pressed.png, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\bg\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ca\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\cs\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\da\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\de\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\el\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en_GB\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es_419\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\et\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fi\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fil\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fr\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hi\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hr\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hu\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\id\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\it\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ja\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ko\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lt\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lv\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nb\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nl\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pl\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_BR\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_PT\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ro\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ru\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sk\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sl\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sr\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sv\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\th\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\tr\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\uk\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\vi\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_CN\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_TW\messages.json, , [d50322881d6ec47215759032dc281fe1],
PUP.Optional.HijackModifiedExtension, C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_metadata\verified_contents.json, , [d50322881d6ec47215759032dc281fe1],
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Moc díky.
- jerabina
- člen Security týmu
-
Level 6
- Příspěvky: 3647
- Registrován: březen 13
- Bydliště: Litoměřice
- Pohlaví:
- Stav:
Offline
Re: HJT+ odvirování
Něco tam je 
Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [C?].txt) , jeho obsah sem celý vlož.
Spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény(smazat vybrané)“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce“
klikni na „Prohledat-Scan“, po prohledání klikni na „ Vymazat-Clean“
Program provede opravu, po automatickém restartu neukáže log (C:\AdwCleaner [C?].txt) , jeho obsah sem celý vlož.
Spusť znovu MbAM a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény(smazat vybrané)“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.
Stáhni si Junkware Removal Tool by Thisisu
na svojí plochu.
Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.
Stáhni si RogueKiller
32bit.:
http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe
64bit.:
http://www.sur-la-toile.com/RogueKiller ... lerX64.exe
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- počkej až skončí Prescan -vyhledávání škodlivých procesů.
-Potom klikni na „Prohledat“.
- Program skenuje procesy PC. Po proskenování klikni na „Zpráva“celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
Re: HJT+ odvirování
Moc díky.
Zde jsou logy. Jen u toho Malwarebytes (našel 550 do karantény - viz včerejší log) jsem si nevšiml toho exportu logu a zavřel to, takže jsem to aspoň udělal ještě jednou a log, který už nic nenašel a nesmazal vkládám.
# AdwCleaner v5.026 - Logfile created 30/12/2015 at 13:13:03
# Updated 21/12/2015 by Xplode
# Database : 2015-12-29.1 [Server]
# Operating system : Windows 8.1 (x64)
# Username : Barbara - IDEA-PC
# Running from : C:\Users\Barbara\Desktop\AdwCleaner.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\PriceMinus
[-] Folder Deleted : C:\ProgramData\5845266467792363576
[-] Folder Deleted : C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn
***** [ Files ] *****
[-] File Deleted : C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
[-] File Deleted : C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage-journal
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\3b8494bb-e251-34c8-7163-3956f11d2b15
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{a3c3f82c}
[-] Key Deleted : HKCU\Software\Classes\CLSID\{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{191F1F24-6CD9-4CC9-8CF7-1006772638D5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{29C26002-10DE-4440-AB58-588CDCAE63C2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{45EC1006-A536-4A2D-BE5B-76FE7DBD89DE}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{ADA38E4E-F20A-4399-BE91-E260AC341C69}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{191F1F24-6CD9-4CC9-8CF7-1006772638D5}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{29C26002-10DE-4440-AB58-588CDCAE63C2}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{45EC1006-A536-4A2D-BE5B-76FE7DBD89DE}
[-] Key Deleted : HKCU\Software\WEBAPP
[-] Key Deleted : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Key Deleted : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
[-] Key Deleted : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{06B99631-BFA2-3B7A-F58B-D067C2BA59B7}
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Key Deleted : HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Key Deleted : HKU\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\WEBAPP
[-] Key Deleted : HKU\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
***** [ Web browsers ] *****
[-] [C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : pcgpkdkfakmecbfkikbfjekloicbjbhn
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [3066 bytes] ##########
---------------------------------------------
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 30. 12. 2015
Čas skenování: 13:38
Protokol: lll.txt
Správce: Ano
Verze: 2.2.0.1024
Databáze malwaru: v2015.12.30.02
Databáze rootkitů: v2015.12.26.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Barbara
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 411944
Uplynulý čas: 9 min, 4 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
------------------------------------------------------------------------------
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.1 (11.24.2015)
Operating System: Windows 8.1 x64
Ran by Barbara (Administrator) on st 30. 12. 2015 at 13:53:39,63
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 0
Registry: 0
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 30. 12. 2015 at 13:56:44,86
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
--------------
RogueKiller V11.0.5.0 (x64) [Dec 28 2015] (Free) by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/software/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9600) 64 bits version
Spuštěno : Normální režim
Uživatel : Barbara [Práva správce]
Started from : C:\Users\Barbara\Desktop\RogueKillerX64.exe
Mód : Prohledat -- Datum : 12/30/2015 14:12:03
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 26 ¤¤¤
[PUM.HomePage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 1 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 localhost
¤¤¤ Antirootkit : 0 (Driver: Nahrán) ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: ST500LM000-1EJ162 +++++
--- User ---
[MBR] aa1c1e007b9e16f6e4f37aeb7b31282d
[BSP] a204e14e473ca5e8295dcfeaa3179d05 : Empty|VT.Unknown MBR Code
Partition table:
0 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2048 | Size: 1000 MB
1 - [SYSTEM][MAN-MOUNT] EFI system partition | Offset (sectors): 2050048 | Size: 260 MB
2 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2582528 | Size: 1000 MB
3 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 4630528 | Size: 128 MB
4 - Basic data partition | Offset (sectors): 4892672 | Size: 434608 MB
5 - [SYSTEM][MAN-MOUNT] | Offset (sectors): 894969856 | Size: 450 MB
6 - Basic data partition | Offset (sectors): 895891456 | Size: 25600 MB
7 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 948320256 | Size: 13893 MB
User = LL1 ... OK
User = LL2 ... OK
Zde jsou logy. Jen u toho Malwarebytes (našel 550 do karantény - viz včerejší log) jsem si nevšiml toho exportu logu a zavřel to, takže jsem to aspoň udělal ještě jednou a log, který už nic nenašel a nesmazal vkládám.
# AdwCleaner v5.026 - Logfile created 30/12/2015 at 13:13:03
# Updated 21/12/2015 by Xplode
# Database : 2015-12-29.1 [Server]
# Operating system : Windows 8.1 (x64)
# Username : Barbara - IDEA-PC
# Running from : C:\Users\Barbara\Desktop\AdwCleaner.exe
# Option : Cleaning
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
[-] Folder Deleted : C:\Program Files (x86)\PriceMinus
[-] Folder Deleted : C:\ProgramData\5845266467792363576
[-] Folder Deleted : C:\ProgramData\pcgpkdkfakmecbfkikbfjekloicbjbhn
***** [ Files ] *****
[-] File Deleted : C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
[-] File Deleted : C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage-journal
***** [ DLLs ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
[-] Key Deleted : HKLM\SOFTWARE\3b8494bb-e251-34c8-7163-3956f11d2b15
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{a3c3f82c}
[-] Key Deleted : HKCU\Software\Classes\CLSID\{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{191F1F24-6CD9-4CC9-8CF7-1006772638D5}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{29C26002-10DE-4440-AB58-588CDCAE63C2}
[-] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{45EC1006-A536-4A2D-BE5B-76FE7DBD89DE}
[-] Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{ADA38E4E-F20A-4399-BE91-E260AC341C69}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{191F1F24-6CD9-4CC9-8CF7-1006772638D5}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{29C26002-10DE-4440-AB58-588CDCAE63C2}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{45EC1006-A536-4A2D-BE5B-76FE7DBD89DE}
[-] Key Deleted : HKCU\Software\WEBAPP
[-] Key Deleted : HKCU\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Key Deleted : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
[-] Key Deleted : HKLM\SOFTWARE\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{06B99631-BFA2-3B7A-F58B-D067C2BA59B7}
[-] Key Deleted : HKU\.DEFAULT\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Key Deleted : HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
[-] Key Deleted : HKU\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\WEBAPP
[-] Key Deleted : HKU\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\AppDataLow\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}
***** [ Web browsers ] *****
[-] [C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : pcgpkdkfakmecbfkikbfjekloicbjbhn
*************************
:: "Tracing" keys removed
:: Winsock settings cleared
########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [3066 bytes] ##########
---------------------------------------------
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 30. 12. 2015
Čas skenování: 13:38
Protokol: lll.txt
Správce: Ano
Verze: 2.2.0.1024
Databáze malwaru: v2015.12.30.02
Databáze rootkitů: v2015.12.26.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Barbara
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 411944
Uplynulý čas: 9 min, 4 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
------------------------------------------------------------------------------
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.1 (11.24.2015)
Operating System: Windows 8.1 x64
Ran by Barbara (Administrator) on st 30. 12. 2015 at 13:53:39,63
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
File System: 0
Registry: 0
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on st 30. 12. 2015 at 13:56:44,86
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
--------------
RogueKiller V11.0.5.0 (x64) [Dec 28 2015] (Free) by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/software/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9600) 64 bits version
Spuštěno : Normální režim
Uživatel : Barbara [Práva správce]
Started from : C:\Users\Barbara\Desktop\RogueKillerX64.exe
Mód : Prohledat -- Datum : 12/30/2015 14:12:03
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 26 ¤¤¤
[PUM.HomePage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nalezeno
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 1 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 localhost
¤¤¤ Antirootkit : 0 (Driver: Nahrán) ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: ST500LM000-1EJ162 +++++
--- User ---
[MBR] aa1c1e007b9e16f6e4f37aeb7b31282d
[BSP] a204e14e473ca5e8295dcfeaa3179d05 : Empty|VT.Unknown MBR Code
Partition table:
0 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2048 | Size: 1000 MB
1 - [SYSTEM][MAN-MOUNT] EFI system partition | Offset (sectors): 2050048 | Size: 260 MB
2 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2582528 | Size: 1000 MB
3 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 4630528 | Size: 128 MB
4 - Basic data partition | Offset (sectors): 4892672 | Size: 434608 MB
5 - [SYSTEM][MAN-MOUNT] | Offset (sectors): 894969856 | Size: 450 MB
6 - Basic data partition | Offset (sectors): 895891456 | Size: 25600 MB
7 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 948320256 | Size: 13893 MB
User = LL1 ... OK
User = LL2 ... OK
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43298
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: HJT+ odvirování
Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB (kromě myši s klávesnice) nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Pak klikni na "Prohledat " ,po jeho skončení:
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
(musíš dát myší zatržítko do toho čtverečku vlevo od registru ap.)
- Klikni na "Smazat"
- Počkej, dokud Status box nezobrazí " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Vypni antivir i firewall.
Stáhni
Zoek.exe
a uloz si ho na plochu.
Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
- pozor , náběh programu může trvat déle.
Do okna programu vlož skript níže:
klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .
Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log
Zkopíruj sem celý obsah toho logu.
Vlož nový log z HJT + informuj o problémech.
Prosím, odpoj všechny USB (kromě myši s klávesnice) nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- Počkej, až Prescan dokončí práci...
- Pak klikni na "Prohledat " ,po jeho skončení:
- V záložkách (Registry , Tasks , Web Browser apod.) vše zatrhni (dej zatržítka)
(musíš dát myší zatržítko do toho čtverečku vlevo od registru ap.)
- Klikni na "Smazat"
- Počkej, dokud Status box nezobrazí " Mazání dokončeno "
- Klikni na "Zpráva " a zkopíruj a vlož obsah té zprávy prosím sem. Log je možno nalézt v RKreport [číslo]. txt na ploše.
- Zavři RogueKiller
Vypni antivir i firewall.
Stáhni
Zoek.exe
a uloz si ho na plochu.
Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
- pozor , náběh programu může trvat déle.
Do okna programu vlož skript níže:
Kód: Vybrat vše
autoclean;
emptyclsid;
iedefaults;
FFdefaults;
CHRdefaults;
emptyalltemp;
resethosts;
klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .
Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log
Zkopíruj sem celý obsah toho logu.
Vlož nový log z HJT + informuj o problémech.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: HJT+ odvirování
Jedná se o manželčin NTB, je to W8.1 a já zvyklý na W7 s tím moc neumím.
Ten Google Chrome tam dělá pořád paseku, ale třeba je to v W8 normál. Když na ploše spustím Chrome, otevře se mi celá aplikace Google. Na windows liště chybí ikona, jen je tam prázdná kostička (viz obrázek 1)
a neustále tam mám šedou celou obrazovku a pokud chci do prohlížeče, musím jít přes tu ikonu dole vlevo z obrázku 2.
Jestli to je standardní však moc nevím.
Po provedení Zoek a najetí po restartu se zapnula i Avira a řve, že Zoek je virus, navíc to má jen ikonu bílého listu. To smáznout?
Moc dík.
RogueKiller V11.0.5.0 (x64) [Dec 28 2015] (Free) by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/software/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9600) 64 bits version
Spuštěno : Normální režim
Uživatel : Barbara [Práva správce]
Started from : C:\Users\Barbara\Desktop\RogueKillerX64.exe
Mód : Smazat -- Datum : 12/30/2015 20:53:11
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 26 ¤¤¤
[PUM.HomePage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.SearchPage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/?LinkId=54896)
[PUM.SearchPage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/?LinkId=54896)
[PUM.SearchPage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 1 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 localhost Smazáno
¤¤¤ Antirootkit : 0 (Driver: Nahrán) ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: ST500LM000-1EJ162 +++++
--- User ---
[MBR] aa1c1e007b9e16f6e4f37aeb7b31282d
[BSP] a204e14e473ca5e8295dcfeaa3179d05 : Empty|VT.Unknown MBR Code
Partition table:
0 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2048 | Size: 1000 MB
1 - [SYSTEM][MAN-MOUNT] EFI system partition | Offset (sectors): 2050048 | Size: 260 MB
2 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2582528 | Size: 1000 MB
3 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 4630528 | Size: 128 MB
4 - Basic data partition | Offset (sectors): 4892672 | Size: 434608 MB
5 - [SYSTEM][MAN-MOUNT] | Offset (sectors): 894969856 | Size: 450 MB
6 - Basic data partition | Offset (sectors): 895891456 | Size: 25600 MB
7 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 948320256 | Size: 13893 MB
User = LL1 ... OK
User = LL2 ... OK
-------------------------------
Zoek.exe v5.0.0.1 Updated 27-December-2015
Tool run by Barbara on st 30. 12. 2015 at 20:55:37,25.
Microsoft Windows 8.1 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Barbara\Desktop\zoek.exe [Scan all users] [Script inserted]
==== Older Logs ======================
C:\zoek-results2015-02-11-203326.log 7350 bytes
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\SectionDefender deleted successfully
C:\Users\Barbara\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\Barbara\AppData\Local\EmieSiteList deleted successfully
C:\Users\Barbara\AppData\Local\EmieUserList deleted successfully
C:\Users\Barbara\AppData\Local\Skype deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\FeQPRR5z.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
Added to C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\FeQPRR5z.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Deleting Files \ Folders ======================
C:\PROGRA~2\SectionDefender not found
C:\PROGRA~3\Package Cache deleted
C:\WINDOWS\SysNative\config\systemprofile\Searches deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\FeQPRR5z.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Firefox Extensions ======================
==== Firefox Plugins ======================
==== Chromium Look ======================
Google Chrome Version: 46.0.2490.86
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[12. 10. 2015 08:31]
==== Chromium Fix ======================
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_advert.uloz.to_0.localstorage deleted successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_advert.uloz.to_0.localstorage-journal deleted successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage deleted successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage-journal deleted successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage deleted successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
==== All HKLM and HKCU SearchScopes ======================
HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
==== Reset Google Chrome ======================
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\Barbara\AppData\Roaming\Opera Software\Opera Stable\Web Data-journal was reset successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
==== Empty IE Cache ======================
C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\1LXLLUK2 will be deleted at reboot
C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\27N45NYL will be deleted at reboot
C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\ASR9XKFS will be deleted at reboot
C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\ZT1QOV1P will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Cache found
==== Empty Chrome Cache ======================
C:\Users\Barbara\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=190 folders=39 14690669 bytes)
==== Empty Temp Folders ======================
C:\Users\Administrator\AppData\Local\Temp emptied successfully
C:\Users\Barbara\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\Users\Barbara\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\1LXLLUK2" not found
"C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\27N45NYL" not found
"C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\ASR9XKFS" not found
"C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\ZT1QOV1P" not found
"C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted
==== EOF on st 30. 12. 2015 at 22:04:30,33 ======================
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:23:45, on 30. 12. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\WINDOWS\SysWOW64\notepad.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\IrfanView\i_view32.exe
C:\Users\Barbara\Desktop\HijackThis (1).exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Avira SystrayStartTrigger] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avira Mail Protection (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Web Protection (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Avira Service Host (Avira.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo System Agent Service - LENOVO INCORPORATED. - C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: VeriFaceSrv - Unknown owner - C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 11369 bytes
Ten Google Chrome tam dělá pořád paseku, ale třeba je to v W8 normál. Když na ploše spustím Chrome, otevře se mi celá aplikace Google. Na windows liště chybí ikona, jen je tam prázdná kostička (viz obrázek 1)
a neustále tam mám šedou celou obrazovku a pokud chci do prohlížeče, musím jít přes tu ikonu dole vlevo z obrázku 2.
Jestli to je standardní však moc nevím.
Po provedení Zoek a najetí po restartu se zapnula i Avira a řve, že Zoek je virus, navíc to má jen ikonu bílého listu. To smáznout?
Moc dík.
RogueKiller V11.0.5.0 (x64) [Dec 28 2015] (Free) by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Webová stránka : http://www.adlice.com/software/roguekiller/
Blog : http://www.adlice.com
Operační systém : Windows 8.1 (6.3.9600) 64 bits version
Spuštěno : Normální režim
Uživatel : Barbara [Práva správce]
Started from : C:\Users\Barbara\Desktop\RogueKillerX64.exe
Mód : Smazat -- Datum : 12/30/2015 20:53:11
¤¤¤ Procesy : 0 ¤¤¤
¤¤¤ Registry : 26 ¤¤¤
[PUM.HomePage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Start Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/p/?LinkId=255141)
[PUM.HomePage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Page_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... ar=msnhome)
[PUM.SearchPage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/?LinkId=54896)
[PUM.SearchPage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Search Page : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://go.microsoft.com/fwlink/?LinkId=54896)
[PUM.SearchPage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X64) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
[PUM.SearchPage] (X86) HKEY_USERS\S-1-5-21-1625381792-3266785749-893686978-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main | Default_Search_URL : https://search.avira.net/#web/result?source=art&q= -> Nahrazeno (http://www.microsoft.com/isapi/redir.dl ... r=iesearch)
¤¤¤ Úlohy : 0 ¤¤¤
¤¤¤ Soubory : 0 ¤¤¤
¤¤¤ Soubor HOSTS : 1 ¤¤¤
[C:\Windows\System32\drivers\etc\hosts] 127.0.0.1 localhost Smazáno
¤¤¤ Antirootkit : 0 (Driver: Nahrán) ¤¤¤
¤¤¤ Webové prohlížeče : 0 ¤¤¤
¤¤¤ Kontrola MBR : ¤¤¤
+++++ PhysicalDrive0: ST500LM000-1EJ162 +++++
--- User ---
[MBR] aa1c1e007b9e16f6e4f37aeb7b31282d
[BSP] a204e14e473ca5e8295dcfeaa3179d05 : Empty|VT.Unknown MBR Code
Partition table:
0 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2048 | Size: 1000 MB
1 - [SYSTEM][MAN-MOUNT] EFI system partition | Offset (sectors): 2050048 | Size: 260 MB
2 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 2582528 | Size: 1000 MB
3 - [MAN-MOUNT] Microsoft reserved partition | Offset (sectors): 4630528 | Size: 128 MB
4 - Basic data partition | Offset (sectors): 4892672 | Size: 434608 MB
5 - [SYSTEM][MAN-MOUNT] | Offset (sectors): 894969856 | Size: 450 MB
6 - Basic data partition | Offset (sectors): 895891456 | Size: 25600 MB
7 - [SYSTEM][MAN-MOUNT] Basic data partition | Offset (sectors): 948320256 | Size: 13893 MB
User = LL1 ... OK
User = LL2 ... OK
-------------------------------
Zoek.exe v5.0.0.1 Updated 27-December-2015
Tool run by Barbara on st 30. 12. 2015 at 20:55:37,25.
Microsoft Windows 8.1 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Barbara\Desktop\zoek.exe [Scan all users] [Script inserted]
==== Older Logs ======================
C:\zoek-results2015-02-11-203326.log 7350 bytes
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\SectionDefender deleted successfully
C:\Users\Barbara\AppData\Local\EmieBrowserModeList deleted successfully
C:\Users\Barbara\AppData\Local\EmieSiteList deleted successfully
C:\Users\Barbara\AppData\Local\EmieUserList deleted successfully
C:\Users\Barbara\AppData\Local\Skype deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\FeQPRR5z.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
Added to C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\FeQPRR5z.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Deleting Files \ Folders ======================
C:\PROGRA~2\SectionDefender not found
C:\PROGRA~3\Package Cache deleted
C:\WINDOWS\SysNative\config\systemprofile\Searches deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\FeQPRR5z.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Firefox Extensions ======================
==== Firefox Plugins ======================
==== Chromium Look ======================
Google Chrome Version: 46.0.2490.86
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
lifbcibllhkdhoafpjfnlhfpfgnpldfl - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx[12. 10. 2015 08:31]
==== Chromium Fix ======================
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_advert.uloz.to_0.localstorage deleted successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_advert.uloz.to_0.localstorage-journal deleted successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage deleted successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_c.betrad.com_0.localstorage-journal deleted successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage deleted successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_c.betrad.com_0.localstorage-journal deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
==== All HKLM and HKCU SearchScopes ======================
HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
==== Reset Google Chrome ======================
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\Barbara\AppData\Roaming\Opera Software\Opera Stable\Web Data-journal was reset successfully
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\Software\wow6432node\Policies\Google deleted successfully
==== Empty IE Cache ======================
C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\1LXLLUK2 will be deleted at reboot
C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\27N45NYL will be deleted at reboot
C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\ASR9XKFS will be deleted at reboot
C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\ZT1QOV1P will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Cache found
==== Empty Chrome Cache ======================
C:\Users\Barbara\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=190 folders=39 14690669 bytes)
==== Empty Temp Folders ======================
C:\Users\Administrator\AppData\Local\Temp emptied successfully
C:\Users\Barbara\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\Users\Barbara\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\1LXLLUK2" not found
"C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\27N45NYL" not found
"C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\ASR9XKFS" not found
"C:\Users\Barbara\AppData\Local\Microsoft\Windows\INetCache\IE\ZT1QOV1P" not found
"C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted
==== EOF on st 30. 12. 2015 at 22:04:30,33 ======================
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:23:45, on 30. 12. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal
Running processes:
C:\WINDOWS\SysWOW64\notepad.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\IrfanView\i_view32.exe
C:\Users\Barbara\Desktop\HijackThis (1).exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [YouCam Tray] "C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [Intel AppUp(SM) center] "C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe" --domain-id F0399437-FD0C-4A48-B101-F0314A6172E4
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Avira SystrayStartTrigger] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Avira Mail Protection (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Avira Web Protection (AntiVirWebService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Avira Service Host (Avira.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Lenovo System Agent Service - LENOVO INCORPORATED. - C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: VeriFaceSrv - Unknown owner - C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 11369 bytes
- jerabina
- člen Security týmu
-
Level 6
- Příspěvky: 3647
- Registrován: březen 13
- Bydliště: Litoměřice
- Pohlaví:
- Stav:
Offline
Re: HJT+ odvirování
Chrome můžeš zkusit přeinstalovat.
Také můžeš zkusit tu ikonu z lišty odebrat a znovu jí tam připnout.
Klikni pravým na ikonku Chrome na ploše a ve vlastnostech se podívej na Cíl:
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit Farbar Recovery Scan Tool (FRST)
32bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
64bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
a ulož jej na plochu. ,pak spusť FRST jako správce
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Také můžeš zkusit tu ikonu z lišty odebrat a znovu jí tam připnout.
Klikni pravým na ikonku Chrome na ploše a ve vlastnostech se podívej na Cíl:
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit Farbar Recovery Scan Tool (FRST)
32bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
64bit.:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
a ulož jej na plochu. ,pak spusť FRST jako správce
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
Re: HJT+ odvirování
Chrome jsem přeinstaloval, zatím to vypadá ok, uvidíme.
Vzpomněl jsem si ještě na závažný problém. NTB byl koupený s předinstalovanýma W8.
Poslední dobou se objevuje obrazovka, že Windows nejsou aktivované.
Není nainstalovaných cca 70 aktualizací, když se před vypnutím instalují, skončí to chybou a vracením změn. Přitom ten kód Win, tam zapsaný je.
Moc díky za pomoc.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:31-12-2015
Ran by Barbara (administrator) on IDEA-PC (01-01-2016 15:36:12)
Running from C:\Users\Barbara\Desktop
Loaded Profiles: Barbara (Available Profiles: Barbara & Administrator)
Platform: Windows 8.1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(LENOVO INCORPORATED.) C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe
() C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13425224 2013-03-06] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1278024 2013-03-09] (Realtek Semiconductor)
HKLM\...\Run: [HotKeysCmds] => C:\windows\system32\hkcmd.exe
HKLM\...\Run: [Persistence] => C:\windows\system32\igfxpers.exe
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17097200 2013-12-10] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2013-12-10] (Lenovo(beijing) Limited)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3041520 2013-03-09] (Synaptics Incorporated)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-11-19] (Intel Corporation)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [168464 2012-10-31] (CyberLink Corp.)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [803200 2015-12-03] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66320 2015-11-23] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50378880 2015-12-17] (Skype Technologies S.A.)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{726E2361-FF36-47FA-8DEE-44E852DDD4E0}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhome
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1625381792-3266785749-893686978-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-08] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-08] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\FeQPRR5z.default
FF NewTab: about:newtab
FF Homepage: about:home
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-08] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
Chrome:
=======
CHR Profile: C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-30]
CHR Extension: (Dokumenty Google) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-30]
CHR Extension: (Disk Google) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-30]
CHR Extension: (YouTube) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-30]
CHR Extension: (Vyhledávání Google) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-30]
CHR Extension: (Tabulky Google) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-30]
CHR Extension: (Dokumenty Google offline) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-31]
CHR Extension: (Skype) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-12-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-30]
CHR Extension: (Gmail) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-30]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [948392 2015-12-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [466408 2015-12-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [466408 2015-12-03] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1418560 2015-12-03] (Avira Operations GmbH & Co. KG)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [227968 2013-03-01] (Qualcomm Atheros Commnucations) [File not signed]
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [249624 2015-11-23] (Avira Operations GmbH & Co. KG)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319376 2014-10-01] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [164736 2012-11-08] (Intel Corporation)
R2 Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [562504 2013-05-02] (LENOVO INCORPORATED.)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [68368 2013-12-10] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-03-01] (Atheros) [File not signed]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [135880 2015-12-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [146696 2015-12-03] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-03] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [73032 2015-12-03] (Avira Operations GmbH & Co. KG)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-03-01] (Qualcomm Atheros)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2015-02-02] (Disc Soft Ltd)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33008 2013-03-09] (Synaptics Incorporated)
S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr))
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44024 2015-02-04] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [264000 2015-02-04] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-01-01 15:36 - 2016-01-01 15:36 - 00017406 _____ C:\Users\Barbara\Desktop\FRST.txt
2016-01-01 15:36 - 2016-01-01 15:36 - 00000000 ____D C:\Users\Barbara\Desktop\FRST-OlderVersion
2016-01-01 15:29 - 2016-01-01 15:29 - 02370560 _____ (Farbar) C:\Users\Barbara\Downloads\FRST64 (6).exe
2015-12-30 21:13 - 2015-12-30 20:55 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2015-12-30 20:54 - 2015-12-30 20:54 - 01309184 _____ C:\Users\Barbara\Desktop\zoek.exe
2015-12-30 20:53 - 2015-12-30 20:53 - 00017470 _____ C:\Users\Barbara\Desktop\rk11.txt
2015-12-30 14:13 - 2015-12-30 14:13 - 00014342 _____ C:\Users\Barbara\Desktop\rk.txt
2015-12-30 13:56 - 2015-12-30 14:00 - 00000555 _____ C:\Users\Barbara\Desktop\JRT.txt
2015-12-30 13:52 - 2015-12-30 13:52 - 25035336 _____ C:\Users\Barbara\Desktop\RogueKillerX64.exe
2015-12-30 13:51 - 2015-12-30 13:51 - 01599336 _____ (Malwarebytes) C:\Users\Barbara\Desktop\JRT.exe
2015-12-30 13:51 - 2015-12-30 13:51 - 00001138 _____ C:\Users\Barbara\Desktop\lll.txt
2015-12-30 13:23 - 2015-12-30 13:23 - 00003157 _____ C:\Users\Barbara\Desktop\AdwCleaner[C3].txt
2015-12-29 22:39 - 2015-12-29 22:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-12-29 22:09 - 2015-12-29 22:09 - 502509990 _____ C:\WINDOWS\MEMORY.DMP
2015-12-29 22:09 - 2015-12-29 22:09 - 00285960 _____ C:\WINDOWS\Minidump\122915-20000-01.dmp
2015-12-29 22:09 - 2015-12-29 22:09 - 00000000 ____D C:\WINDOWS\Minidump
2015-12-29 15:42 - 2015-12-30 13:24 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-12-29 15:42 - 2015-12-29 16:12 - 00001125 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-12-29 15:42 - 2015-12-29 16:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-12-29 15:42 - 2015-12-29 16:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-12-29 15:42 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-12-29 15:42 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-12-29 15:42 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2015-12-29 14:12 - 2015-12-29 14:12 - 01743360 _____ C:\Users\Barbara\Desktop\AdwCleaner.exe
2015-12-29 14:12 - 2015-12-29 14:12 - 00448512 _____ (OldTimer Tools) C:\Users\Barbara\Desktop\TFC.exe
2015-12-29 14:12 - 2015-12-29 14:12 - 00050688 _____ (Atribune.org) C:\Users\Barbara\Desktop\ATF-Cleaner.exe
2015-12-24 17:48 - 2015-12-24 17:48 - 01512211 _____ C:\Users\Barbara\Desktop\PF-2016.pdf
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-01-01 15:36 - 2015-02-15 20:14 - 02370560 _____ (Farbar) C:\Users\Barbara\Desktop\FRST64.exe
2016-01-01 15:36 - 2015-02-12 15:39 - 00000000 ____D C:\FRST
2016-01-01 15:34 - 2014-09-03 20:18 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Skype
2016-01-01 15:33 - 2014-12-05 16:12 - 00000000 __RDO C:\Users\Barbara\OneDrive
2016-01-01 15:31 - 2014-08-14 20:36 - 00000000 ____D C:\Program Files (x86)\Google
2016-01-01 15:26 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-01-01 13:50 - 2015-01-08 21:12 - 00003974 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{2B938320-AFBA-4FFF-8295-8D55A099E1FD}
2015-12-31 09:54 - 2012-07-26 08:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-12-31 02:01 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-12-31 01:57 - 2013-12-10 19:43 - 00016896 _____ C:\WINDOWS\system32\VfService.trf
2015-12-30 22:00 - 2013-08-22 14:36 - 00000000 ____D C:\Windows
2015-12-30 22:00 - 2013-08-22 14:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-12-30 21:12 - 2015-02-11 20:57 - 00000000 ____D C:\zoek_backup
2015-12-30 20:40 - 2014-08-14 12:30 - 00036608 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2015-12-30 14:13 - 2014-08-14 12:30 - 00000000 ____D C:\ProgramData\RogueKiller
2015-12-30 13:49 - 2014-08-15 13:20 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1625381792-3266785749-893686978-1001
2015-12-30 13:13 - 2014-08-11 19:00 - 00000000 ____D C:\AdwCleaner
2015-12-29 22:51 - 2015-02-23 20:47 - 00000000 ____D C:\Users\Barbara\Desktop\fotki
2015-12-29 22:39 - 2014-09-03 20:18 - 00002747 _____ C:\Users\Public\Desktop\Skype.lnk
2015-12-29 22:39 - 2014-09-03 20:18 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-12-29 22:39 - 2014-09-03 20:18 - 00000000 ____D C:\ProgramData\Skype
2015-12-29 22:10 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\Inf
2015-12-29 15:35 - 2015-01-08 21:15 - 00000000 __SHD C:\Users\Barbara\AppData\LocalLow\EmieBrowserModeList
2015-12-29 15:35 - 2014-05-24 19:32 - 00000000 __SHD C:\Users\Barbara\AppData\LocalLow\EmieUserList
2015-12-29 15:35 - 2014-05-24 15:57 - 00000000 __SHD C:\Users\Barbara\AppData\LocalLow\EmieSiteList
2015-12-29 14:17 - 2015-04-30 20:14 - 00798998 _____ C:\WINDOWS\system32\perfh015.dat
2015-12-29 14:17 - 2015-04-30 20:14 - 00163880 _____ C:\WINDOWS\system32\perfc015.dat
2015-12-29 14:17 - 2014-09-24 17:23 - 02712494 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-12-29 14:17 - 2014-09-24 16:39 - 00740962 _____ C:\WINDOWS\system32\perfh005.dat
2015-12-29 14:17 - 2014-09-24 16:39 - 00152146 _____ C:\WINDOWS\system32\perfc005.dat
2015-12-29 13:51 - 2014-12-05 15:25 - 00000000 ____D C:\Users\Barbara
2015-12-18 09:47 - 2014-08-31 08:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-12-09 11:12 - 2014-08-14 19:40 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-12-09 11:06 - 2014-08-14 19:40 - 140158008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-12-08 09:37 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-12-03 09:18 - 2014-08-31 08:45 - 00146696 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2015-12-03 09:18 - 2014-08-31 08:45 - 00135880 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2015-12-03 09:18 - 2014-08-31 08:45 - 00073032 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2015-12-03 09:18 - 2014-08-31 08:45 - 00035488 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
==================== Files in the root of some directories =======
2015-02-10 20:48 - 2015-02-10 20:48 - 0000853 _____ () C:\Users\Barbara\AppData\Local\recently-used.xbel
2015-02-16 17:33 - 2015-02-16 17:33 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
C:\Users\Barbara\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-06-11 08:29
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version:31-12-2015
Ran by Barbara (2016-01-01 15:37:06)
Running from C:\Users\Barbara\Desktop
Windows 8.1 (X64) (2014-12-05 15:08:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1625381792-3266785749-893686978-500 - Administrator - Disabled) => C:\Users\Administrator
Barbara (S-1-5-21-1625381792-3266785749-893686978-1001 - Administrator - Enabled) => C:\Users\Barbara
Guest (S-1-5-21-1625381792-3266785749-893686978-501 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avira Antivirus (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Avira (HKLM-x32\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.15.129 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{d0e166af-1634-4c0b-ae96-2180e61f9d38}) (Version: 1.1.52.15531 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.1.52.15531 - Avira Operations GmbH & Co. KG) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.11 - Lenovo)
Energy Management (x32 Version: 8.0.2.11 - Lenovo) Hidden
Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.20.1337 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.7.0.1013 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: - )
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.1219 - CyberLink Corp.)
Lenovo OneKey Recovery (Version: 8.0.0.1219 - CyberLink Corp.) Hidden
Lenovo VeriFace (HKLM\...\Lenovo VeriFace) (Version: 5.0.13.5261 - Lenovo)
Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3423 - CyberLink Corp.)
Lenovo YouCam (x32 Version: 4.1.3423 - CyberLink Corp.) Hidden
LibreOffice 4.3 Help Pack (Czech) (HKLM-x32\...\{38313EFE-097D-4FF5-A6A3-9EE54CB4ED2C}) (Version: 4.3.1.2 - The Document Foundation)
LibreOffice 4.3.1.2 (HKLM-x32\...\{303C2B0D-03AF-4C25-A443-E62DE8AA36A8}) (Version: 4.3.1.2 - The Document Foundation)
Malwarebytes Anti-Malware verze 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.222 - Qualcomm Atheros Communications)
Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.13.314.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6859 - Realtek Semiconductor Corp.)
Realtek USB Card Reader (HKLM-x32\...\{1E496A68-4943-424E-829D-5C3C85B7B8F2}) (Version: 6.2.9200.39041 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.5.0.9082 - Microsoft Corporation)
Skype™ 7.17 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.17.105 - Skype Technologies S.A.)
SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.4.1.0 - Synaptics Incorporated)
UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.15 - Lenovo)
UserGuide (x32 Version: 1.0.0.15 - Lenovo) Hidden
Windows Driver Package - Lenovo (ACPIVPC) System (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo)
Windows Driver Package - Lenovo (WUDFRd) LenovoVhid (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo)
WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1625381792-3266785749-893686978-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {B3054713-6374-49F1-8B09-05B10635E695} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-12-09] (Microsoft Corporation)
Task: {BA48FCCD-F364-42BF-B684-E7B4DCC4D3D1} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {CC295F20-C781-4F7C-9914-B6591156212A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-07-23] (Piriform Ltd)
Task: {CD1FDCD1-D897-4164-921E-C56592A10C18} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-03-09] (Synaptics Incorporated)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2013-12-10 19:43 - 2013-12-10 19:43 - 00068368 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
2013-12-10 19:43 - 2013-12-10 19:43 - 00669288 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfDataStorageInterface.dll
2010-01-30 02:40 - 2010-01-30 02:40 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2014-12-09 13:43 - 2014-12-09 13:43 - 00016384 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSIClient\2133a50009fa3b357bfbd29a218be0f6\PSIClient.ni.dll
2013-12-10 19:16 - 2012-10-23 14:22 - 01199648 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2015-12-05 10:21 - 2015-12-05 10:21 - 00933056 ____R () C:\Program Files (x86)\Skype\Phone\ssScreenVVS2.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 14:25 - 2015-12-30 20:56 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\Web\Wallpaper\Lenovo\LenovoWallPaper.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [UDP Query User{B91B6F9E-51DE-4443-B1D8-AFB1A9658B76}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{2E3397D5-A152-4F58-B8FD-0A7D5488530A}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{9EB3B40D-7B18-474F-8A83-8B79F5BEB3B0}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{BC178DC0-6BF8-412C-A742-B55689B0E069}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{1B091911-1CE4-4FE1-BF5F-82E3BD6DF913}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Block) C:\program files (x86)\libreoffice 4\program\soffice.bin
FirewallRules: [UDP Query User{94576CDE-47DA-45C6-AEB1-CB196F966BA9}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Block) C:\program files (x86)\libreoffice 4\program\soffice.bin
FirewallRules: [TCP Query User{0C85A763-3D3E-4DBD-AC27-63C47EB019B8}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{93D2D473-7765-4E7A-B131-F43D240A81FF}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [TCP Query User{AC2BA0C3-A976-4095-A58F-EB7B7976B9B7}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
FirewallRules: [UDP Query User{DC3FDAF5-1706-4D05-A414-33BF575D6419}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
==================== Restore Points =========================
20-11-2015 21:41:33 Windows Update
07-12-2015 08:45:05 Windows Update
10-12-2015 11:44:01 Windows Update
13-12-2015 12:02:19 Windows Update
18-12-2015 20:00:22 Windows Update
23-12-2015 09:15:39 Windows Update
30-12-2015 13:53:44 JRT Pre-Junkware Removal
==================== Faulty Device Manager Devices =============
Name: Bluetooth LWFLT Device
Description: Bluetooth LWFLT Device
Class Guid: {c7c038ad-1f2d-44d4-b2fe-d912be20e6d5}
Manufacturer: Qualcomm Atheros Communications
Service: BTATH_LWFLT
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver
Name: Bluetooth Audio Device
Description: Bluetooth Audio Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications
Service: BTATH_A2DP
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: Virtual Bluetooth Support (Include Audio)
Description: Virtual Bluetooth Support (Include Audio)
Class Guid: {c7c038ad-1f2d-44d4-b2fe-d912be20e6d5}
Manufacturer: Qualcomm Atheros Communications
Service: AthBTPort
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver
==================== Event log errors: =========================
Application errors:
==================
Error: (01/01/2016 03:34:15 PM) (Source: Software Protection Platform Service) (EventID: 8211) (User: )
Description: Aktualizace tokenů licence a kódu Product Key Windows se nezdařila. Chyba: 0x80049F13
Error: (01/01/2016 03:34:15 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=D3VPT
ACID=?
Podrobná chyba[?]
Error: (01/01/2016 03:34:15 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=B7RK3
ACID=?
Podrobná chyba[?]
Error: (01/01/2016 01:51:57 PM) (Source: Software Protection Platform Service) (EventID: 8211) (User: )
Description: Aktualizace tokenů licence a kódu Product Key Windows se nezdařila. Chyba: 0x80049F13
Error: (01/01/2016 01:51:57 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=D3VPT
ACID=?
Podrobná chyba[?]
Error: (01/01/2016 01:51:57 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=B7RK3
ACID=?
Podrobná chyba[?]
Error: (01/01/2016 01:48:21 PM) (Source: Software Protection Platform Service) (EventID: 8211) (User: )
Description: Aktualizace tokenů licence a kódu Product Key Windows se nezdařila. Chyba: 0x80049F13
Error: (01/01/2016 01:48:21 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=D3VPT
ACID=?
Podrobná chyba[?]
Error: (01/01/2016 01:48:21 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=B7RK3
ACID=?
Podrobná chyba[?]
Error: (12/31/2015 03:58:18 PM) (Source: Software Protection Platform Service) (EventID: 8211) (User: )
Description: Aktualizace tokenů licence a kódu Product Key Windows se nezdařila. Chyba: 0x80049F13
System errors:
=============
Error: (01/01/2016 03:24:15 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.
Error: (01/01/2016 03:10:03 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.
Error: (01/01/2016 02:08:23 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.
Error: (12/31/2015 04:41:00 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:41:00 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:40:59 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:40:59 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:40:59 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:40:59 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:40:59 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
CodeIntegrity:
===================================
Date: 2015-03-12 08:48:56.575
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Celeron(R) CPU 1037U @ 1.80GHz
Percentage of memory in use: 37%
Total physical RAM: 3987.27 MB
Available physical RAM: 2507.56 MB
Total Virtual: 8083.27 MB
Available Virtual: 6249.35 MB
==================== Drives ================================
Drive c: (Windows8_OS) (Fixed) (Total:424.42 GB) (Free:311.64 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:23.19 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 4C24C638)
Partition: GPT.
==================== End of Addition.txt ============================
Vzpomněl jsem si ještě na závažný problém. NTB byl koupený s předinstalovanýma W8.
Poslední dobou se objevuje obrazovka, že Windows nejsou aktivované.
Není nainstalovaných cca 70 aktualizací, když se před vypnutím instalují, skončí to chybou a vracením změn. Přitom ten kód Win, tam zapsaný je.
Moc díky za pomoc.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:31-12-2015
Ran by Barbara (administrator) on IDEA-PC (01-01-2016 15:36:12)
Running from C:\Users\Barbara\Desktop
Loaded Profiles: Barbara (Available Profiles: Barbara & Administrator)
Platform: Windows 8.1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(LENOVO INCORPORATED.) C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe
() C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13425224 2013-03-06] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1278024 2013-03-09] (Realtek Semiconductor)
HKLM\...\Run: [HotKeysCmds] => C:\windows\system32\hkcmd.exe
HKLM\...\Run: [Persistence] => C:\windows\system32\igfxpers.exe
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17097200 2013-12-10] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2013-12-10] (Lenovo(beijing) Limited)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3041520 2013-03-09] (Synaptics Incorporated)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-11-19] (Intel Corporation)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [168464 2012-10-31] (CyberLink Corp.)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [803200 2015-12-03] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66320 2015-11-23] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50378880 2015-12-17] (Skype Technologies S.A.)
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{726E2361-FF36-47FA-8DEE-44E852DDD4E0}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhome
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1625381792-3266785749-893686978-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-08] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-08] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)
FireFox:
========
FF ProfilePath: C:\Users\Barbara\AppData\Roaming\Mozilla\Firefox\Profiles\FeQPRR5z.default
FF NewTab: about:newtab
FF Homepage: about:home
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-08] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
Chrome:
=======
CHR Profile: C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-30]
CHR Extension: (Dokumenty Google) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-30]
CHR Extension: (Disk Google) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-30]
CHR Extension: (YouTube) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-30]
CHR Extension: (Vyhledávání Google) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-30]
CHR Extension: (Tabulky Google) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-30]
CHR Extension: (Dokumenty Google offline) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-31]
CHR Extension: (Skype) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-12-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-30]
CHR Extension: (Gmail) - C:\Users\Barbara\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-30]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [948392 2015-12-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [466408 2015-12-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [466408 2015-12-03] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1418560 2015-12-03] (Avira Operations GmbH & Co. KG)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [227968 2013-03-01] (Qualcomm Atheros Commnucations) [File not signed]
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [249624 2015-11-23] (Avira Operations GmbH & Co. KG)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319376 2014-10-01] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [164736 2012-11-08] (Intel Corporation)
R2 Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [562504 2013-05-02] (LENOVO INCORPORATED.)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [68368 2013-12-10] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-03-01] (Atheros) [File not signed]
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [135880 2015-12-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [146696 2015-12-03] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-03] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [73032 2015-12-03] (Avira Operations GmbH & Co. KG)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-03-01] (Qualcomm Atheros)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2015-02-02] (Disc Soft Ltd)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33008 2013-03-09] (Synaptics Incorporated)
S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr))
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44024 2015-02-04] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [264000 2015-02-04] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-01-01 15:36 - 2016-01-01 15:36 - 00017406 _____ C:\Users\Barbara\Desktop\FRST.txt
2016-01-01 15:36 - 2016-01-01 15:36 - 00000000 ____D C:\Users\Barbara\Desktop\FRST-OlderVersion
2016-01-01 15:29 - 2016-01-01 15:29 - 02370560 _____ (Farbar) C:\Users\Barbara\Downloads\FRST64 (6).exe
2015-12-30 21:13 - 2015-12-30 20:55 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2015-12-30 20:54 - 2015-12-30 20:54 - 01309184 _____ C:\Users\Barbara\Desktop\zoek.exe
2015-12-30 20:53 - 2015-12-30 20:53 - 00017470 _____ C:\Users\Barbara\Desktop\rk11.txt
2015-12-30 14:13 - 2015-12-30 14:13 - 00014342 _____ C:\Users\Barbara\Desktop\rk.txt
2015-12-30 13:56 - 2015-12-30 14:00 - 00000555 _____ C:\Users\Barbara\Desktop\JRT.txt
2015-12-30 13:52 - 2015-12-30 13:52 - 25035336 _____ C:\Users\Barbara\Desktop\RogueKillerX64.exe
2015-12-30 13:51 - 2015-12-30 13:51 - 01599336 _____ (Malwarebytes) C:\Users\Barbara\Desktop\JRT.exe
2015-12-30 13:51 - 2015-12-30 13:51 - 00001138 _____ C:\Users\Barbara\Desktop\lll.txt
2015-12-30 13:23 - 2015-12-30 13:23 - 00003157 _____ C:\Users\Barbara\Desktop\AdwCleaner[C3].txt
2015-12-29 22:39 - 2015-12-29 22:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-12-29 22:09 - 2015-12-29 22:09 - 502509990 _____ C:\WINDOWS\MEMORY.DMP
2015-12-29 22:09 - 2015-12-29 22:09 - 00285960 _____ C:\WINDOWS\Minidump\122915-20000-01.dmp
2015-12-29 22:09 - 2015-12-29 22:09 - 00000000 ____D C:\WINDOWS\Minidump
2015-12-29 15:42 - 2015-12-30 13:24 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-12-29 15:42 - 2015-12-29 16:12 - 00001125 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-12-29 15:42 - 2015-12-29 16:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-12-29 15:42 - 2015-12-29 16:12 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-12-29 15:42 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-12-29 15:42 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-12-29 15:42 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2015-12-29 14:12 - 2015-12-29 14:12 - 01743360 _____ C:\Users\Barbara\Desktop\AdwCleaner.exe
2015-12-29 14:12 - 2015-12-29 14:12 - 00448512 _____ (OldTimer Tools) C:\Users\Barbara\Desktop\TFC.exe
2015-12-29 14:12 - 2015-12-29 14:12 - 00050688 _____ (Atribune.org) C:\Users\Barbara\Desktop\ATF-Cleaner.exe
2015-12-24 17:48 - 2015-12-24 17:48 - 01512211 _____ C:\Users\Barbara\Desktop\PF-2016.pdf
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-01-01 15:36 - 2015-02-15 20:14 - 02370560 _____ (Farbar) C:\Users\Barbara\Desktop\FRST64.exe
2016-01-01 15:36 - 2015-02-12 15:39 - 00000000 ____D C:\FRST
2016-01-01 15:34 - 2014-09-03 20:18 - 00000000 ____D C:\Users\Barbara\AppData\Roaming\Skype
2016-01-01 15:33 - 2014-12-05 16:12 - 00000000 __RDO C:\Users\Barbara\OneDrive
2016-01-01 15:31 - 2014-08-14 20:36 - 00000000 ____D C:\Program Files (x86)\Google
2016-01-01 15:26 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-01-01 13:50 - 2015-01-08 21:12 - 00003974 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{2B938320-AFBA-4FFF-8295-8D55A099E1FD}
2015-12-31 09:54 - 2012-07-26 08:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-12-31 02:01 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-12-31 01:57 - 2013-12-10 19:43 - 00016896 _____ C:\WINDOWS\system32\VfService.trf
2015-12-30 22:00 - 2013-08-22 14:36 - 00000000 ____D C:\Windows
2015-12-30 22:00 - 2013-08-22 14:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-12-30 21:12 - 2015-02-11 20:57 - 00000000 ____D C:\zoek_backup
2015-12-30 20:40 - 2014-08-14 12:30 - 00036608 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2015-12-30 14:13 - 2014-08-14 12:30 - 00000000 ____D C:\ProgramData\RogueKiller
2015-12-30 13:49 - 2014-08-15 13:20 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1625381792-3266785749-893686978-1001
2015-12-30 13:13 - 2014-08-11 19:00 - 00000000 ____D C:\AdwCleaner
2015-12-29 22:51 - 2015-02-23 20:47 - 00000000 ____D C:\Users\Barbara\Desktop\fotki
2015-12-29 22:39 - 2014-09-03 20:18 - 00002747 _____ C:\Users\Public\Desktop\Skype.lnk
2015-12-29 22:39 - 2014-09-03 20:18 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-12-29 22:39 - 2014-09-03 20:18 - 00000000 ____D C:\ProgramData\Skype
2015-12-29 22:10 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\Inf
2015-12-29 15:35 - 2015-01-08 21:15 - 00000000 __SHD C:\Users\Barbara\AppData\LocalLow\EmieBrowserModeList
2015-12-29 15:35 - 2014-05-24 19:32 - 00000000 __SHD C:\Users\Barbara\AppData\LocalLow\EmieUserList
2015-12-29 15:35 - 2014-05-24 15:57 - 00000000 __SHD C:\Users\Barbara\AppData\LocalLow\EmieSiteList
2015-12-29 14:17 - 2015-04-30 20:14 - 00798998 _____ C:\WINDOWS\system32\perfh015.dat
2015-12-29 14:17 - 2015-04-30 20:14 - 00163880 _____ C:\WINDOWS\system32\perfc015.dat
2015-12-29 14:17 - 2014-09-24 17:23 - 02712494 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-12-29 14:17 - 2014-09-24 16:39 - 00740962 _____ C:\WINDOWS\system32\perfh005.dat
2015-12-29 14:17 - 2014-09-24 16:39 - 00152146 _____ C:\WINDOWS\system32\perfc005.dat
2015-12-29 13:51 - 2014-12-05 15:25 - 00000000 ____D C:\Users\Barbara
2015-12-18 09:47 - 2014-08-31 08:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-12-09 11:12 - 2014-08-14 19:40 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-12-09 11:06 - 2014-08-14 19:40 - 140158008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-12-08 09:37 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-12-03 09:18 - 2014-08-31 08:45 - 00146696 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2015-12-03 09:18 - 2014-08-31 08:45 - 00135880 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2015-12-03 09:18 - 2014-08-31 08:45 - 00073032 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2015-12-03 09:18 - 2014-08-31 08:45 - 00035488 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
==================== Files in the root of some directories =======
2015-02-10 20:48 - 2015-02-10 20:48 - 0000853 _____ () C:\Users\Barbara\AppData\Local\recently-used.xbel
2015-02-16 17:33 - 2015-02-16 17:33 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
C:\Users\Barbara\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-06-11 08:29
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version:31-12-2015
Ran by Barbara (2016-01-01 15:37:06)
Running from C:\Users\Barbara\Desktop
Windows 8.1 (X64) (2014-12-05 15:08:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-1625381792-3266785749-893686978-500 - Administrator - Disabled) => C:\Users\Administrator
Barbara (S-1-5-21-1625381792-3266785749-893686978-1001 - Administrator - Enabled) => C:\Users\Barbara
Guest (S-1-5-21-1625381792-3266785749-893686978-501 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avira Antivirus (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Avira (HKLM-x32\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.15.129 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{d0e166af-1634-4c0b-ae96-2180e61f9d38}) (Version: 1.1.52.15531 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.1.52.15531 - Avira Operations GmbH & Co. KG) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.11 - Lenovo)
Energy Management (x32 Version: 8.0.2.11 - Lenovo) Hidden
Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.20.1337 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.7.0.1013 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: - )
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.1219 - CyberLink Corp.)
Lenovo OneKey Recovery (Version: 8.0.0.1219 - CyberLink Corp.) Hidden
Lenovo VeriFace (HKLM\...\Lenovo VeriFace) (Version: 5.0.13.5261 - Lenovo)
Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3423 - CyberLink Corp.)
Lenovo YouCam (x32 Version: 4.1.3423 - CyberLink Corp.) Hidden
LibreOffice 4.3 Help Pack (Czech) (HKLM-x32\...\{38313EFE-097D-4FF5-A6A3-9EE54CB4ED2C}) (Version: 4.3.1.2 - The Document Foundation)
LibreOffice 4.3.1.2 (HKLM-x32\...\{303C2B0D-03AF-4C25-A443-E62DE8AA36A8}) (Version: 4.3.1.2 - The Document Foundation)
Malwarebytes Anti-Malware verze 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110405-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.222 - Qualcomm Atheros Communications)
Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.13.314.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6859 - Realtek Semiconductor Corp.)
Realtek USB Card Reader (HKLM-x32\...\{1E496A68-4943-424E-829D-5C3C85B7B8F2}) (Version: 6.2.9200.39041 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.5.0.9082 - Microsoft Corporation)
Skype™ 7.17 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.17.105 - Skype Technologies S.A.)
SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.4.1.0 - Synaptics Incorporated)
UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.15 - Lenovo)
UserGuide (x32 Version: 1.0.0.15 - Lenovo) Hidden
Windows Driver Package - Lenovo (ACPIVPC) System (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo)
Windows Driver Package - Lenovo (WUDFRd) LenovoVhid (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo)
WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1625381792-3266785749-893686978-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {B3054713-6374-49F1-8B09-05B10635E695} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-12-09] (Microsoft Corporation)
Task: {BA48FCCD-F364-42BF-B684-E7B4DCC4D3D1} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => config upnphost start= auto
Task: {CC295F20-C781-4F7C-9914-B6591156212A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-07-23] (Piriform Ltd)
Task: {CD1FDCD1-D897-4164-921E-C56592A10C18} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-03-09] (Synaptics Incorporated)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2013-12-10 19:43 - 2013-12-10 19:43 - 00068368 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
2013-12-10 19:43 - 2013-12-10 19:43 - 00669288 _____ () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfDataStorageInterface.dll
2010-01-30 02:40 - 2010-01-30 02:40 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2014-12-09 13:43 - 2014-12-09 13:43 - 00016384 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSIClient\2133a50009fa3b357bfbd29a218be0f6\PSIClient.ni.dll
2013-12-10 19:16 - 2012-10-23 14:22 - 01199648 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2015-12-05 10:21 - 2015-12-05 10:21 - 00933056 ____R () C:\Program Files (x86)\Skype\Phone\ssScreenVVS2.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 14:25 - 2015-12-30 20:56 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\Web\Wallpaper\Lenovo\LenovoWallPaper.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [UDP Query User{B91B6F9E-51DE-4443-B1D8-AFB1A9658B76}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{2E3397D5-A152-4F58-B8FD-0A7D5488530A}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{9EB3B40D-7B18-474F-8A83-8B79F5BEB3B0}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{BC178DC0-6BF8-412C-A742-B55689B0E069}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{1B091911-1CE4-4FE1-BF5F-82E3BD6DF913}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Block) C:\program files (x86)\libreoffice 4\program\soffice.bin
FirewallRules: [UDP Query User{94576CDE-47DA-45C6-AEB1-CB196F966BA9}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Block) C:\program files (x86)\libreoffice 4\program\soffice.bin
FirewallRules: [TCP Query User{0C85A763-3D3E-4DBD-AC27-63C47EB019B8}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [UDP Query User{93D2D473-7765-4E7A-B131-F43D240A81FF}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe
FirewallRules: [TCP Query User{AC2BA0C3-A976-4095-A58F-EB7B7976B9B7}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
FirewallRules: [UDP Query User{DC3FDAF5-1706-4D05-A414-33BF575D6419}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
==================== Restore Points =========================
20-11-2015 21:41:33 Windows Update
07-12-2015 08:45:05 Windows Update
10-12-2015 11:44:01 Windows Update
13-12-2015 12:02:19 Windows Update
18-12-2015 20:00:22 Windows Update
23-12-2015 09:15:39 Windows Update
30-12-2015 13:53:44 JRT Pre-Junkware Removal
==================== Faulty Device Manager Devices =============
Name: Bluetooth LWFLT Device
Description: Bluetooth LWFLT Device
Class Guid: {c7c038ad-1f2d-44d4-b2fe-d912be20e6d5}
Manufacturer: Qualcomm Atheros Communications
Service: BTATH_LWFLT
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver
Name: Bluetooth Audio Device
Description: Bluetooth Audio Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications
Service: BTATH_A2DP
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Name: Virtual Bluetooth Support (Include Audio)
Description: Virtual Bluetooth Support (Include Audio)
Class Guid: {c7c038ad-1f2d-44d4-b2fe-d912be20e6d5}
Manufacturer: Qualcomm Atheros Communications
Service: AthBTPort
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver
==================== Event log errors: =========================
Application errors:
==================
Error: (01/01/2016 03:34:15 PM) (Source: Software Protection Platform Service) (EventID: 8211) (User: )
Description: Aktualizace tokenů licence a kódu Product Key Windows se nezdařila. Chyba: 0x80049F13
Error: (01/01/2016 03:34:15 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=D3VPT
ACID=?
Podrobná chyba[?]
Error: (01/01/2016 03:34:15 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=B7RK3
ACID=?
Podrobná chyba[?]
Error: (01/01/2016 01:51:57 PM) (Source: Software Protection Platform Service) (EventID: 8211) (User: )
Description: Aktualizace tokenů licence a kódu Product Key Windows se nezdařila. Chyba: 0x80049F13
Error: (01/01/2016 01:51:57 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=D3VPT
ACID=?
Podrobná chyba[?]
Error: (01/01/2016 01:51:57 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=B7RK3
ACID=?
Podrobná chyba[?]
Error: (01/01/2016 01:48:21 PM) (Source: Software Protection Platform Service) (EventID: 8211) (User: )
Description: Aktualizace tokenů licence a kódu Product Key Windows se nezdařila. Chyba: 0x80049F13
Error: (01/01/2016 01:48:21 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=D3VPT
ACID=?
Podrobná chyba[?]
Error: (01/01/2016 01:48:21 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0x80049F13
Částečný klíč Pkey=B7RK3
ACID=?
Podrobná chyba[?]
Error: (12/31/2015 03:58:18 PM) (Source: Software Protection Platform Service) (EventID: 8211) (User: )
Description: Aktualizace tokenů licence a kódu Product Key Windows se nezdařila. Chyba: 0x80049F13
System errors:
=============
Error: (01/01/2016 03:24:15 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.
Error: (01/01/2016 03:10:03 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.
Error: (01/01/2016 02:08:23 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Místní adaptér Bluetooth selhal. Důvod selhaní nebylo možno určit a adaptér nebude používán. Ovladač vysílače byl vyjmut z paměti.
Error: (12/31/2015 04:41:00 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:41:00 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:40:59 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:40:59 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:40:59 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:40:59 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (12/31/2015 04:40:59 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
CodeIntegrity:
===================================
Date: 2015-03-12 08:48:56.575
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Celeron(R) CPU 1037U @ 1.80GHz
Percentage of memory in use: 37%
Total physical RAM: 3987.27 MB
Available physical RAM: 2507.56 MB
Total Virtual: 8083.27 MB
Available Virtual: 6249.35 MB
==================== Drives ================================
Drive c: (Windows8_OS) (Fixed) (Total:424.42 GB) (Free:311.64 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:23.19 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 4C24C638)
Partition: GPT.
==================== End of Addition.txt ============================
- jerabina
- člen Security týmu
-
Level 6
- Příspěvky: 3647
- Registrován: březen 13
- Bydliště: Litoměřice
- Pohlaví:
- Stav:
Offline
Re: HJT+ odvirování
Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Ověříme integritu a úplnost všech systémových souborů:
- Zmáčkni Win + R najednou
- vepiš do spuštění "cmd" bez úvozovek. a stiskni Enter.
- do příkazového řádku vepiš "sfc /scannow" bez úvozovek a stiskni Enter.
- Po dokončení skenu udělej screenshot, ten sem vlož a restartuj počítač.
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
Kód: Vybrat vše
Start
CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-21-1625381792-3266785749-893686978-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF NewTab: about:newtab
FF Homepage: about:home
C:\ProgramData\DP45977C.lfl
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
EmptyTemp:
End
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Ověříme integritu a úplnost všech systémových souborů:
- Zmáčkni Win + R najednou
- vepiš do spuštění "cmd" bez úvozovek. a stiskni Enter.
- do příkazového řádku vepiš "sfc /scannow" bez úvozovek a stiskni Enter.
- Po dokončení skenu udělej screenshot, ten sem vlož a restartuj počítač.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
HJT návod
Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 78 hostů