Мемо Д. Публикувано Ноември 17, 2015 Report Share Публикувано Ноември 17, 2015 Здравейте,имам следния проблем,когато вляза в някой сайт ми се показват реклами(Sonic train ads) които ако не ги премахна ми влиза в други сайтове автоматично и не мога а свърша никаква работа.Пробвах да ги премахна с Adplus,ресет на браузъра но не става.В прикачения файл вижте за какво става въпрос.Има ли начин да се махнат тези реклами? Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Ноември 18, 2015 Report Share Публикувано Ноември 18, 2015 Като за начало сканирай с Malwarebytes Anti-Malware, както е описано в този коментар. Ако продължаваш да имаш проблеми след това, изпълни и инструциите за FRST. Цитирай Link to comment Сподели другаде More sharing options...
Мемо Д. Публикувано Ноември 18, 2015 Author Report Share Публикувано Ноември 18, 2015 Направих всичко както трябва,сканирах премахнах файловете рестартирах и пак ми показва рекламите ? Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Ноември 18, 2015 Report Share Публикувано Ноември 18, 2015 А ще изпълниш ли останалите инструкции? Да се моля ли трябва, макар че ти имаш проблем, а не аз? Цитирай Link to comment Сподели другаде More sharing options...
Мемо Д. Публикувано Ноември 19, 2015 Author Report Share Публикувано Ноември 19, 2015 Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:18-11-2015Ran by aishe (administrator) on AISHE-PC (19-11-2015 18:54:10)Running from C:\Users\aishe\DesktopLoaded Profiles: aishe (Available Profiles: aishe)Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: Български (България)Internet Explorer Version 11 (Default browser: FF)Boot Mode: NormalTutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Enigma Software Group USA, LLC.) C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe(Intel Corporation) C:\Windows\System32\igfxCUIService.exe(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe(Lavasoft Limited) C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe(BitTorrent Inc.) C:\Users\aishe\AppData\Roaming\uTorrent\uTorrent.exe(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe(wifimouse.necta.us) C:\Program Files (x86)\MouseServer\MouseServer.exe(© 2015 Microsoft Corporation) C:\Users\aishe\AppData\Local\Microsoft\BingSvc\BingSvc.exe(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe(Lavasoft) C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe(Intel Corporation) C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe(BitTorrent Inc.) C:\Users\aishe\AppData\Roaming\uTorrent\updates\3.4.5_41202\utorrentie.exe(BitTorrent Inc.) C:\Users\aishe\AppData\Roaming\uTorrent\updates\3.4.5_41202\utorrentie.exe(TODO: <公司名>) C:\Program Files (x86)\Blazers\Watsvc.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe(Intel Corporation) C:\Windows\System32\igfxEM.exe(Intel Corporation) C:\Windows\System32\igfxHK.exe(Intel Corporation) C:\Windows\System32\igfxTray.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM-x32\...\Run: [uSB3MON] => C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291280 2012-12-20] (Intel Corporation)HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7004376 2015-11-12] (AVAST Software)HKU\S-1-5-21-4236579484-338471864-2289227500-1000\...\Run: [uTorrent] => C:\Users\aishe\AppData\Roaming\uTorrent\uTorrent.exe [1822048 2015-11-09] (BitTorrent Inc.)HKU\S-1-5-21-4236579484-338471864-2289227500-1000\...\Run: [Facebook Update] => C:\Users\aishe\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2015-05-10] (Facebook Inc.)HKU\S-1-5-21-4236579484-338471864-2289227500-1000\...\Run: [MouseServer] => C:\Program Files (x86)\MouseServer\MouseServer.exe [243200 2014-11-30] (wifimouse.necta.us)HKU\S-1-5-21-4236579484-338471864-2289227500-1000\...\Run: [bingSvc] => C:\Users\aishe\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-12] (© 2015 Microsoft Corporation)HKU\S-1-5-21-4236579484-338471864-2289227500-1000\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [48138880 2015-10-14] (Skype Technologies S.A.)HKU\S-1-5-21-4236579484-338471864-2289227500-1000\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [1438480 2015-09-25] (Lavasoft)HKU\S-1-5-21-4236579484-338471864-2289227500-1000\...\MountPoints2: {21af44a7-6344-11e5-a6c0-54bef723bf11} - G:\setup.exeHKU\S-1-5-21-4236579484-338471864-2289227500-1000\...\MountPoints2: {21af44ba-6344-11e5-a6c0-54bef723bf11} - I:\setup.exeHKU\S-1-5-21-4236579484-338471864-2289227500-1000\...\MountPoints2: {21af44c7-6344-11e5-a6c0-54bef723bf11} - G:\Autorun.exeHKU\S-1-5-21-4236579484-338471864-2289227500-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11264 2009-07-14] (Microsoft Corporation)HKU\S-1-5-18\...\RunOnce: [sPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2013-12-24] (Microsoft Corporation)ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-11-12] (AVAST Software)CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Winsock: Catalog9-x64 01 C:\Windows\system32\LavasoftTcpService64.dll [425744 2015-09-25] (Lavasoft Limited)Winsock: Catalog9-x64 02 C:\Windows\system32\LavasoftTcpService64.dll [425744 2015-09-25] (Lavasoft Limited)Winsock: Catalog9-x64 03 C:\Windows\system32\LavasoftTcpService64.dll [425744 2015-09-25] (Lavasoft Limited)Winsock: Catalog9-x64 04 C:\Windows\system32\LavasoftTcpService64.dll [425744 2015-09-25] (Lavasoft Limited)Winsock: Catalog9-x64 16 C:\Windows\system32\LavasoftTcpService64.dll [425744 2015-09-25] (Lavasoft Limited)Tcpip\Parameters: [DhcpNameServer] 192.168.0.1Tcpip\..\Interfaces\{76952857-59F7-46CD-AA7A-CCC6AFF7EA3D}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1Tcpip\..\Interfaces\{E0768228-A75D-4750-8A44-3E5BB1AB61F8}: [DhcpNameServer] 192.168.0.1 Internet Explorer:==================HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.comHKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?trackid=sp-006HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-4236579484-338471864-2289227500-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}HKU\S-1-5-21-4236579484-338471864-2289227500-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxps://www.google.com/?trackid=sp-006SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}SearchScopes: HKU\S-1-5-21-4236579484-338471864-2289227500-1000 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = SearchScopes: HKU\S-1-5-21-4236579484-338471864-2289227500-1000 -> OldSearch URL = hxxp://www.bing.com/search?FORM=SKY2DF&PC=SKY2&q={searchTerms}&src=IE-SearchBoxSearchScopes: HKU\S-1-5-21-4236579484-338471864-2289227500-1000 -> {55730390-0120-4669-9bd2-7be9dd4372c3} URL = hxxp://www.findamo.com/search.html?&q={searchTerms}&cid=3975ch=2SearchScopes: HKU\S-1-5-21-4236579484-338471864-2289227500-1000 -> {B52F3DC1-2112-4C00-A890-32CE7BE94AB7} URL = hxxp://www.search.ask.com/web?tpid=SPCV7-SAT&o=APN11084&pf=V7&p2=%5EB5T%5Ezzz031%5EYY%5EBG&gct=&itbv=12.10.0.3434&apn_uid=20A461D6-7512-4EDE-87C8-23F8A05C65B8&apn_ptnrs=%5EB5T&apn_dtid=%5Ezzz031%5EYY%5EBG&apn_dbr=iexplore.exe_6_11.0.9600.16521&doi=2014-03-23&trgb=IE&q={searchTerms}&psv=SearchScopes: HKU\S-1-5-21-4236579484-338471864-2289227500-1000 -> {B9C7CE32-DA91-43C2-B7E9-0E9AAFC675CD} URL = hxxp://eu.ask.com/web?l=dis&o=APN10234&gct=sb&qsrc=2869&apn_dtid=^YYYYYY^YY^BG&apn_ptnrs=^A8B&apn_uid=1048034861734096&p2=^A8B^YYYYYY^YY^BG&q={searchTerms}BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-11-12] (AVAST Software)BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-11-12] (AVAST Software)BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation)Toolbar: HKLM-x32 - No Name - {3cb073f3-be3c-4e8f-942d-8a747b54486f} - No FileToolbar: HKU\S-1-5-21-4236579484-338471864-2289227500-1000 -> No Name - {25E2E5C9-C43C-4EE8-B23E-4383915F2BCE} - No FileHandler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation)Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) FireFox:========FF ProfilePath: C:\Users\aishe\AppData\Roaming\Mozilla\Firefox\Profiles\2nx53w6p.defaultFF DefaultSearchEngine: DefaultFF DefaultSearchUrl: hxxps://www.google.com/search/?trackid=sp-006FF SearchEngineOrder.1: Google (avast)FF SearchEngineOrder.3: Bing FF SelectedSearchEngine: DefaultFF Homepage: user_pref("browser.startup.homepage", "hxxps://www.malwarebytes.org/restorebrowser/FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-12] ()FF Plugin: @microsoft.com/GENUINE -> disabled [No File]FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-12] ()FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files Picasa\npPicasa3.dll [2014-01-06] (Google, Inc.)FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]FF Plugin-x32: @popularscreensavers.com/Plugin -> C:\Program Files (x86)\PopularScreensavers\NPp5Stub.dll [No File]FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-26] (Google Inc.)FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-26] (Google Inc.)FF Plugin-x32: @videolan.org/vlc,version=2.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-09-27] (Adobe Systems Inc.)FF Plugin HKU\S-1-5-21-4236579484-338471864-2289227500-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\aishe\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np32dsw.dll [2003-02-11] (Macromedia, Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-09-27] (Adobe Systems Inc.)FF SearchPlugin: C:\Users\aishe\AppData\Roaming\Mozilla\Firefox\Profiles\2nx53w6p.default\searchplugins\google-avast.xml [2015-11-12]FF SearchPlugin: C:\Users\aishe\AppData\Roaming\Mozilla\Firefox\Profiles\2nx53w6p.default\searchplugins\yahoo-lavasoft.xml [2015-09-25]FF Extension: Sonic Train - C:\Users\aishe\AppData\Roaming\Mozilla\Firefox\Profiles\2nx53w6p.default\Extensions\{9deeed95-68a0-4f56-a922-b54fb587dac0}.xpi [2015-11-08] [not signed]FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FFFF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-11-12]FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FFFF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2015-11-12] Chrome: =======CHR HomePage: Default -> hxxp://www.msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=en-usCHR DefaultSearchURL: Default -> hxxp://searchinterneat-a.akamaihd.net/s?eq=U0EeE1xZE1oZB1ZEfQkPAFsTFwJAbVtZWQFcFVYRcRQAVF8SDA0ad1pbU1oUGVcXeR9aFQQTQkcFME0FBloEURNNfWpXD1ASdUdCKVc=&q={searchTerms}CHR DefaultSearchKeyword: Default -> searchinterneat-a.akamaihd.netCHR DefaultNewTabURL: Default -> hxxp://searchinterneat-a.akamaihd.net/t?eq=U0EeFFhaR1oWHAUUIVtaVw4SDFdCeAEVVVpDEBgbdV9bTAFIFlZAclpdWVtFGBNBNARaAktXUUEeJ1pNER8fHGZMLlBbNUsQSFs=CHR Profile: C:\Users\aishe\AppData\Local\Google\Chrome\User Data\DefaultCHR Extension: (Google Презентации) - C:\Users\aishe\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-26]CHR Extension: (Google Документи) - C:\Users\aishe\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-26]CHR Extension: (Google Диск) - C:\Users\aishe\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-09]CHR Extension: (YouTube) - C:\Users\aishe\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-26]CHR Extension: (Google Търсене) - C:\Users\aishe\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-09]CHR Extension: (Електронни таблици от Google) - C:\Users\aishe\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-26]CHR Extension: (Google Документи офлайн) - C:\Users\aishe\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-19]CHR Extension: (Avast Online Security) - C:\Users\aishe\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-11-14]CHR Extension: (Skype Click to Call) - C:\Users\aishe\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-11-10]CHR Extension: (Плащания в уеб магазина на Chrome) - C:\Users\aishe\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-26]CHR Extension: (Gmail) - C:\Users\aishe\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-26]CHR HKU\S-1-5-21-4236579484-338471864-2289227500-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crxCHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-11-12]CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-10-12] ==================== Services (Whitelisted) ======================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [174416 2015-11-12] (AVAST Software)R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation)R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation)R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-08-27] (Intel Corporation)R2 LavasoftTcpService; C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2751760 2015-09-25] (Lavasoft Limited)R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)S2 SearchProtectionService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [16656 2015-09-25] ()R2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1026944 2015-11-14] (Enigma Software Group USA, LLC.)R2 Watsvc; C:\Program Files (x86)\Blazers\Watsvc.exe [107160 2015-04-16] (TODO: <公司名>)R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)S3 gusvc; "C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe" [X] ===================== Drivers (Whitelisted) ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-11-12] (AVAST Software)R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [97648 2015-11-12] (AVAST Software)R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-11-12] (AVAST Software)R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-11-12] (AVAST Software)R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2015-11-12] (AVAST Software)R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2015-11-12] (AVAST Software)R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [154256 2015-11-12] (AVAST Software)R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [273784 2015-11-12] (AVAST Software)S3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2015-09-25] (Disc Soft Ltd)S3 dtproscsibus; C:\Windows\System32\DRIVERS\dtproscsibus.sys [30352 2015-09-25] (Disc Soft Ltd)S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2015-11-14] ()R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [118504 2012-12-19] (Qualcomm Atheros Co., Ltd.)R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2015-11-19] (Malwarebytes)R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]S3 tsusbhub; system32\drivers\tsusbhub.sys [X]S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-11-19 18:54 - 2015-11-19 18:54 - 00019740 _____ C:\Users\aishe\Desktop\FRST.txt2015-11-19 18:52 - 2015-11-19 18:54 - 00000000 ____D C:\FRST2015-11-19 18:51 - 2015-11-19 18:51 - 02008576 _____ (Farbar) C:\Users\aishe\Desktop\FRST64.exe2015-11-18 19:49 - 2015-11-18 19:49 - 00040321 _____ C:\malwarebytes.txt2015-11-18 19:34 - 2015-11-18 19:34 - 00000080 _____ C:\Users\aishe\Desktop\чTorrent.lnk2015-11-18 19:34 - 2015-11-18 19:34 - 00000080 _____ C:\Users\aishe\AppData\Roaming\Microsoft\Windows\Start Menu\чTorrent.lnk2015-11-18 18:56 - 2015-11-19 18:46 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys2015-11-18 18:56 - 2015-11-18 18:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware2015-11-18 18:56 - 2015-11-18 18:56 - 00000000 ____D C:\ProgramData\Malwarebytes2015-11-18 18:56 - 2015-11-18 18:56 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware2015-11-18 18:56 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys2015-11-18 18:56 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys2015-11-18 18:56 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys2015-11-14 18:53 - 2015-11-14 18:53 - 00000000 _____ C:\autoexec.bat2015-11-14 18:52 - 2015-11-14 18:52 - 00022704 _____ C:\Windows\system32\Drivers\EsgScanner.sys2015-11-14 18:52 - 2015-11-14 18:52 - 00000000 ____D C:\Users\aishe\AppData\Roaming\Enigma Software Group2015-11-14 18:52 - 2015-11-14 18:52 - 00000000 ____D C:\sh4ldr2015-11-14 18:52 - 2015-11-14 18:52 - 00000000 ____D C:\Program Files\Enigma Software Group2015-11-14 18:32 - 2015-11-14 18:32 - 00000000 ____D C:\ProgramData\GRETECH2015-11-14 18:26 - 2015-11-14 18:26 - 00003246 _____ C:\Windows\System32\Tasks\Trojan Killer2015-11-14 18:25 - 2015-11-14 18:25 - 00000000 ____D C:\ProgramData\GridinSoft2015-11-14 17:58 - 2015-11-14 17:58 - 00001397 _____ C:\Users\Mehmed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk2015-11-14 17:58 - 2015-11-14 17:58 - 00000000 ____D C:\Users\Mehmed\AppData\Roaming\AVAST Software2015-11-14 17:58 - 2015-11-14 17:58 - 00000000 ____D C:\Users\Mehmed\AppData\Roaming\Adobe2015-11-14 17:57 - 2015-11-14 18:00 - 00002253 _____ C:\Users\Mehmed\Desktop\Google Chrome.lnk2015-11-14 17:57 - 2015-11-14 17:58 - 00000000 ___RD C:\Users\Mehmed\Virtual Machines2015-11-14 17:57 - 2015-11-14 17:57 - 00000020 ___SH C:\Users\Mehmed\ntuser.ini2015-11-14 17:57 - 2015-11-14 17:57 - 00000000 ____D C:\Users\Mehmed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome2015-11-14 17:57 - 2015-11-14 17:57 - 00000000 ____D C:\Users\Mehmed\AppData\Local\VirtualStore2015-11-14 17:57 - 2015-11-14 17:57 - 00000000 ____D C:\Users\Mehmed\AppData\Local\Google2015-11-14 17:57 - 2015-11-14 17:57 - 00000000 ____D C:\Users\Mehmed2015-11-14 17:57 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\Mehmed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories2015-11-14 17:57 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\Mehmed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance2015-11-14 01:04 - 2015-11-18 19:35 - 00001141 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk2015-11-12 18:30 - 2015-11-19 18:55 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job2015-11-12 18:30 - 2015-11-12 18:31 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater2015-11-12 18:15 - 2015-11-12 18:11 - 00386096 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe2015-11-12 18:13 - 2015-11-12 18:13 - 00000000 ____D C:\Users\aishe\AppData\Roaming\AVAST Software2015-11-12 18:12 - 2015-11-18 19:35 - 00001960 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk2015-11-12 18:12 - 2015-11-17 16:13 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update2015-11-12 18:12 - 2015-11-12 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software2015-11-12 18:12 - 2015-11-12 18:11 - 00449992 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys2015-11-12 18:12 - 2015-11-12 18:11 - 00273784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys2015-11-12 18:12 - 2015-11-12 18:11 - 00154256 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys2015-11-12 18:12 - 2015-11-12 18:11 - 00065224 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys2015-11-12 18:11 - 2015-11-12 18:11 - 01059656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys2015-11-12 18:11 - 2015-11-12 18:11 - 00097648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys2015-11-12 18:11 - 2015-11-12 18:11 - 00093528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys2015-11-12 18:11 - 2015-11-12 18:11 - 00043112 _____ (AVAST Software) C:\Windows\avastSS.scr2015-11-12 18:11 - 2015-11-12 18:11 - 00028656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys2015-11-12 18:08 - 2015-11-12 18:08 - 00000000 ____D C:\Program Files\AVAST Software2015-11-12 18:07 - 2015-11-12 18:07 - 00000000 ____D C:\ProgramData\AVAST Software2015-11-12 17:50 - 2015-11-03 19:55 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys2015-11-11 19:44 - 2015-11-04 00:10 - 00390344 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll2015-11-11 19:44 - 2015-11-03 23:51 - 00342728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll2015-11-11 19:44 - 2015-10-31 01:46 - 25818624 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll2015-11-11 19:44 - 2015-10-31 01:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb2015-11-11 19:44 - 2015-10-31 01:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll2015-11-11 19:44 - 2015-10-31 01:25 - 02886656 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll2015-11-11 19:44 - 2015-10-31 01:25 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec2015-11-11 19:44 - 2015-10-31 01:25 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll2015-11-11 19:44 - 2015-10-31 01:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll2015-11-11 19:44 - 2015-10-31 01:24 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll2015-11-11 19:44 - 2015-10-31 01:24 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll2015-11-11 19:44 - 2015-10-31 01:17 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll2015-11-11 19:44 - 2015-10-31 01:16 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll2015-11-11 19:44 - 2015-10-31 01:13 - 00616960 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll2015-11-11 19:44 - 2015-10-31 01:12 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe2015-11-11 19:44 - 2015-10-31 01:12 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe2015-11-11 19:44 - 2015-10-31 01:11 - 05990912 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll2015-11-11 19:44 - 2015-10-31 01:11 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll2015-11-11 19:44 - 2015-10-31 01:11 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll2015-11-11 19:44 - 2015-10-31 01:04 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe2015-11-11 19:44 - 2015-10-31 01:01 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll2015-11-11 19:44 - 2015-10-31 00:58 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb2015-11-11 19:44 - 2015-10-31 00:53 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll2015-11-11 19:44 - 2015-10-31 00:52 - 20331520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll2015-11-11 19:44 - 2015-10-31 00:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll2015-11-11 19:44 - 2015-10-31 00:49 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll2015-11-11 19:44 - 2015-10-31 00:47 - 00504832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll2015-11-11 19:44 - 2015-10-31 00:46 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll2015-11-11 19:44 - 2015-10-31 00:46 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll2015-11-11 19:44 - 2015-10-31 00:45 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec2015-11-11 19:44 - 2015-10-31 00:45 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll2015-11-11 19:44 - 2015-10-31 00:44 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll2015-11-11 19:44 - 2015-10-31 00:44 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll2015-11-11 19:44 - 2015-10-31 00:42 - 02279936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll2015-11-11 19:44 - 2015-10-31 00:39 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll2015-11-11 19:44 - 2015-10-31 00:39 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll2015-11-11 19:44 - 2015-10-31 00:37 - 00480256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll2015-11-11 19:44 - 2015-10-31 00:36 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll2015-11-11 19:44 - 2015-10-31 00:36 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll2015-11-11 19:44 - 2015-10-31 00:36 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe2015-11-11 19:44 - 2015-10-31 00:34 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll2015-11-11 19:44 - 2015-10-31 00:32 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe2015-11-11 19:44 - 2015-10-31 00:31 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll2015-11-11 19:44 - 2015-10-31 00:29 - 02126336 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl2015-11-11 19:44 - 2015-10-31 00:29 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll2015-11-11 19:44 - 2015-10-31 00:28 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll2015-11-11 19:44 - 2015-10-31 00:23 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll2015-11-11 19:44 - 2015-10-31 00:22 - 14457856 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll2015-11-11 19:44 - 2015-10-31 00:21 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll2015-11-11 19:44 - 2015-10-31 00:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll2015-11-11 19:44 - 2015-10-31 00:18 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll2015-11-11 19:44 - 2015-10-31 00:17 - 02487808 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll2015-11-11 19:44 - 2015-10-31 00:17 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll2015-11-11 19:44 - 2015-10-31 00:16 - 04527616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll2015-11-11 19:44 - 2015-10-31 00:11 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll2015-11-11 19:44 - 2015-10-31 00:10 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll2015-11-11 19:44 - 2015-10-31 00:09 - 12854272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll2015-11-11 19:44 - 2015-10-31 00:09 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl2015-11-11 19:44 - 2015-10-31 00:09 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll2015-11-11 19:44 - 2015-10-31 00:04 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll2015-11-11 19:44 - 2015-10-30 23:53 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll2015-11-11 19:44 - 2015-10-30 23:51 - 02011136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll2015-11-11 19:44 - 2015-10-30 23:48 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll2015-11-11 19:44 - 2015-10-30 23:46 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll2015-11-11 19:44 - 2015-10-20 20:42 - 03168768 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll2015-11-11 19:44 - 2015-10-20 20:42 - 02608128 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll2015-11-11 19:44 - 2015-10-20 20:42 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll2015-11-11 19:44 - 2015-10-20 20:42 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll2015-11-11 19:44 - 2015-10-20 20:42 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll2015-11-11 19:44 - 2015-10-20 20:42 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll2015-11-11 19:44 - 2015-10-20 20:42 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll2015-11-11 19:44 - 2015-10-20 20:41 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe2015-11-11 19:44 - 2015-10-20 20:41 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll2015-11-11 19:44 - 2015-10-20 20:41 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe2015-11-11 19:44 - 2015-10-20 20:41 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll2015-11-11 19:44 - 2015-10-20 19:46 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll2015-11-11 19:44 - 2015-10-20 19:46 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll2015-11-11 19:44 - 2015-10-20 19:46 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll2015-11-11 19:44 - 2015-10-20 19:46 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll2015-11-11 19:44 - 2015-10-20 19:45 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe2015-11-11 19:43 - 2015-10-20 03:12 - 05570496 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe2015-11-11 19:43 - 2015-10-20 03:12 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys2015-11-11 19:43 - 2015-10-20 03:12 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys2015-11-11 19:43 - 2015-10-20 03:09 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll2015-11-11 19:43 - 2015-10-20 03:06 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll2015-11-11 19:43 - 2015-10-20 03:06 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll2015-11-11 19:43 - 2015-10-20 03:06 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll2015-11-11 19:43 - 2015-10-20 03:06 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll2015-11-11 19:43 - 2015-10-20 03:05 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll2015-11-11 19:43 - 2015-10-20 03:05 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll2015-11-11 19:43 - 2015-10-20 03:05 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe2015-11-11 19:43 - 2015-10-20 03:05 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe2015-11-11 19:43 - 2015-10-20 03:05 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll2015-11-11 19:43 - 2015-10-20 03:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll2015-11-11 19:43 - 2015-10-20 03:04 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe2015-11-11 19:43 - 2015-10-20 03:04 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe2015-11-11 19:43 - 2015-10-20 03:04 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe2015-11-11 19:43 - 2015-10-20 03:00 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll2015-11-11 19:43 - 2015-10-20 02:59 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:52 - 03991488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe2015-11-11 19:43 - 2015-10-20 02:52 - 03935680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe2015-11-11 19:43 - 2015-10-20 02:48 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll2015-11-11 19:43 - 2015-10-20 02:45 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll2015-11-11 19:43 - 2015-10-20 02:45 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll2015-11-11 19:43 - 2015-10-20 02:45 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll2015-11-11 19:43 - 2015-10-20 02:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll2015-11-11 19:43 - 2015-10-20 02:45 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll2015-11-11 19:43 - 2015-10-20 02:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll2015-11-11 19:43 - 2015-10-20 02:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll2015-11-11 19:43 - 2015-10-20 02:45 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll2015-11-11 19:43 - 2015-10-20 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe2015-11-11 19:43 - 2015-10-20 02:45 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll2015-11-11 19:43 - 2015-10-20 02:45 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll2015-11-11 19:43 - 2015-10-20 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll2015-11-11 19:43 - 2015-10-20 02:44 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll2015-11-11 19:43 - 2015-10-20 02:44 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll2015-11-11 19:43 - 2015-10-20 02:44 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll2015-11-11 19:43 - 2015-10-20 02:44 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll2015-11-11 19:43 - 2015-10-20 02:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe2015-11-11 19:43 - 2015-10-20 02:44 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll2015-11-11 19:43 - 2015-10-20 02:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll2015-11-11 19:43 - 2015-10-20 02:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 01:41 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys2015-11-11 19:43 - 2015-10-20 01:40 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys2015-11-11 19:43 - 2015-10-20 01:40 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys2015-11-11 19:43 - 2015-10-20 01:29 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe2015-11-11 19:43 - 2015-10-20 01:29 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe2015-11-11 19:43 - 2015-10-20 01:27 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 01:27 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 01:27 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll2015-11-11 19:43 - 2015-10-20 01:27 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll2015-11-11 19:43 - 2015-10-13 18:41 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys2015-11-11 19:43 - 2015-10-13 18:40 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys2015-11-11 19:43 - 2015-10-13 06:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys2015-11-11 19:43 - 2015-10-01 20:00 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll2015-11-11 19:43 - 2015-10-01 20:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll2015-11-11 19:43 - 2015-10-01 19:50 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll2015-11-11 19:43 - 2015-09-23 15:15 - 00460776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys2015-11-11 19:43 - 2015-09-23 15:15 - 00299632 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll2015-11-11 19:43 - 2015-09-23 15:09 - 00251000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll2015-11-09 21:02 - 2015-08-06 20:04 - 14176768 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll2015-11-09 21:02 - 2015-08-06 20:03 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll2015-11-09 21:02 - 2015-08-06 19:44 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll2015-11-09 21:02 - 2015-08-06 19:44 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll2015-11-09 21:01 - 2015-10-01 20:06 - 00692672 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi2015-11-09 21:01 - 2015-10-01 20:04 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi2015-11-09 21:01 - 2015-10-01 20:00 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe2015-11-09 21:01 - 2015-10-01 20:00 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll2015-11-09 21:01 - 2015-10-01 20:00 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll2015-11-09 21:01 - 2015-10-01 20:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll2015-11-09 21:01 - 2015-10-01 20:00 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe2015-11-09 21:01 - 2015-10-01 19:50 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll2015-11-09 21:01 - 2015-10-01 19:00 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys2015-11-09 19:43 - 2015-11-09 19:43 - 00003194 _____ C:\Windows\System32\Tasks\{151EC38C-6592-458D-ADCC-EF63BAA5F70F} ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-11-19 18:54 - 2009-07-14 06:45 - 00017040 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A02015-11-19 18:54 - 2009-07-14 06:45 - 00017040 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A02015-11-19 18:50 - 2013-12-18 21:40 - 00000000 ____D C:\Users\aishe\AppData\Roaming\uTorrent2015-11-19 18:50 - 2013-12-18 19:33 - 01855576 _____ C:\Windows\WindowsUpdate.log2015-11-19 18:45 - 2015-10-02 21:31 - 00000000 ____D C:\Users\aishe\AppData\LocalLow\uTorrent2015-11-19 18:45 - 2013-12-18 22:17 - 00116728 _____ C:\Windows\PFRO.log2015-11-19 18:45 - 2013-12-18 21:36 - 00000992 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job2015-11-19 18:45 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT2015-11-19 18:45 - 2009-07-14 06:51 - 00058084 _____ C:\Windows\setupact.log2015-11-19 16:06 - 2013-12-18 21:36 - 00000996 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job2015-11-19 15:43 - 2013-12-18 21:52 - 00000000 ____D C:\Users\aishe\AppData\Roaming\Skype2015-11-19 15:41 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\L2Schemas2015-11-18 21:12 - 2014-08-15 17:49 - 00000928 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4236579484-338471864-2289227500-1000UA.job2015-11-18 19:45 - 2009-07-14 07:13 - 00726316 _____ C:\Windows\system32\PerfStringBackup.INI2015-11-18 19:35 - 2015-09-21 23:22 - 00002691 _____ C:\Users\Public\Desktop\Skype.lnk2015-11-18 19:35 - 2014-12-14 15:45 - 00002557 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office PowerPoint Viewer 2007.lnk2015-11-18 19:35 - 2014-12-12 17:51 - 00001147 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk2015-11-18 19:35 - 2014-04-29 17:31 - 00000977 _____ C:\Users\Public\Desktop\Free MP3 Cutter.lnk2015-11-18 19:35 - 2014-03-12 00:02 - 00002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk2015-11-18 19:35 - 2014-03-12 00:02 - 00002013 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk2015-11-18 19:35 - 2014-02-04 22:08 - 00001941 _____ C:\Users\Public\Desktop\CDBurnerXP.lnk2015-11-18 19:35 - 2014-02-04 22:08 - 00001887 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk2015-11-18 19:35 - 2013-12-18 22:10 - 00001179 _____ C:\Users\Public\Desktop\GOM Player.lnk2015-11-18 19:35 - 2013-12-18 19:35 - 00001333 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk2015-11-18 19:35 - 2013-12-18 19:35 - 00001314 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk2015-11-18 19:35 - 2009-07-14 06:57 - 00001511 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk2015-11-18 19:35 - 2009-07-14 06:57 - 00001292 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk2015-11-18 19:35 - 2009-07-14 06:57 - 00001234 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk2015-11-18 19:35 - 2009-07-14 06:54 - 00001198 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk2015-11-18 19:34 - 2015-02-18 19:33 - 00001031 _____ C:\Users\aishe\Desktop\PhotoScape.lnk2015-11-18 19:34 - 2014-11-02 15:32 - 00000000 ____D C:\Program Files (x86)\Settings Manager2015-11-18 19:34 - 2014-10-01 19:39 - 00000000 ____D C:\Users\aishe\AppData\Roaming\Performersoft2015-11-18 19:34 - 2014-07-25 03:33 - 00000000 ____D C:\Users\aishe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games2015-11-18 19:34 - 2014-03-23 20:08 - 00000000 ____D C:\ProgramData\APN2015-11-18 19:34 - 2014-03-23 20:07 - 00000000 ____D C:\ProgramData\ReviverSoft2015-11-18 19:34 - 2014-02-09 00:02 - 00000000 ____D C:\Users\aishe\AppData\Local\Popajar2015-11-18 19:34 - 2013-12-20 18:21 - 00001397 _____ C:\Users\aishe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk2015-11-18 19:34 - 2013-12-20 15:11 - 00001398 _____ C:\Users\aishe\Desktop\Winamp.lnk2015-11-18 19:34 - 2013-12-19 00:00 - 00001897 _____ C:\Users\aishe\Desktop\Bluetooth File Transfer Wizard.lnk2015-11-18 19:34 - 2013-12-18 22:10 - 00001177 _____ C:\Users\aishe\AppData\Roaming\Microsoft\Windows\Start Menu\GOM Player.lnk2015-11-18 19:34 - 2009-07-14 07:01 - 00001218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk2015-11-18 19:34 - 2009-07-14 06:49 - 00001246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk2015-11-16 17:01 - 2014-12-12 17:51 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service2015-11-14 18:52 - 2013-12-18 19:38 - 00000000 ____D C:\Users\aishe2015-11-14 17:55 - 2014-08-15 17:49 - 00000906 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4236579484-338471864-2289227500-1000Core.job2015-11-14 01:04 - 2015-07-17 03:54 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox2015-11-13 10:41 - 2013-12-18 22:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player2015-11-13 10:38 - 2009-07-14 06:45 - 00292104 _____ C:\Windows\system32\FNTCACHE.DAT2015-11-13 10:36 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\bg-BG2015-11-13 10:36 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\bg-BG2015-11-13 00:36 - 2013-12-26 12:45 - 00000000 ____D C:\Windows\system32\MRT2015-11-13 00:31 - 2013-12-26 12:45 - 145617392 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe2015-11-13 00:21 - 2009-07-14 09:46 - 00000000 ____D C:\Program Files\Windows Journal2015-11-12 18:31 - 2014-01-10 00:55 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe2015-11-12 18:31 - 2014-01-10 00:55 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl2015-11-12 17:28 - 2014-12-26 15:33 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task2015-11-12 17:27 - 2015-04-24 09:51 - 00000000 ____D C:\Users\aishe\AppData\Local\cmsiex2015-11-11 19:20 - 2013-12-18 21:52 - 00000000 ____D C:\ProgramData\Skype2015-11-11 19:17 - 2009-07-14 07:08 - 00032570 _____ C:\Windows\Tasks\SCHEDLGU.TXT2015-11-10 23:21 - 2015-03-24 21:38 - 00000000 ____D C:\Users\aishe\Desktop\Айше Дунгьова A2972015-11-10 23:20 - 2015-06-21 17:58 - 00000000 ____D C:\Users\aishe\Desktop\Nova chalga2015-11-10 13:53 - 2015-09-22 23:23 - 00000000 ___RD C:\Program Files (x86)\Skype2015-11-10 13:53 - 2013-12-18 19:39 - 00000000 ___RD C:\Users\aishe\Virtual Machines Files to move or delete:====================C:\ProgramData\RegistryReviver.exe Some files in TEMP:====================C:\Users\aishe\AppData\Local\Temp\AskSLib.dllC:\Users\aishe\AppData\Local\Temp\AutoRun.exeC:\Users\aishe\AppData\Local\Temp\AutoRunGUI.dllC:\Users\aishe\AppData\Local\Temp\BingSvc.exeC:\Users\aishe\AppData\Local\Temp\BSvcProcessor.exeC:\Users\aishe\AppData\Local\Temp\BSvcUpdater.exeC:\Users\aishe\AppData\Local\Temp\eauninstall.exeC:\Users\aishe\AppData\Local\Temp\FIFA 07_uninst.exeC:\Users\aishe\AppData\Local\Temp\passwordbox_setup.exeC:\Users\aishe\AppData\Local\Temp\SkypeSetup.exeC:\Users\aishe\AppData\Local\Temp\vcredist_x64.exeC:\Users\aishe\AppData\Local\Temp\{702802E7-C0F3-4F9F-BD6D-26349081424A}-46.0.2490.80_45.0.2454.101_chrome_updater.exeC:\Users\aishe\AppData\Local\Temp\{F95B512D-891B-45B0-A14D-540E22F14630}-46.0.2490.80_45.0.2454.101_chrome_updater.exe ==================== Bamital & volsnap ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\system32\winlogon.exe => File is digitally signedC:\Windows\system32\wininit.exe => File is digitally signedC:\Windows\SysWOW64\wininit.exe => File is digitally signedC:\Windows\explorer.exe => File is digitally signedC:\Windows\SysWOW64\explorer.exe => File is digitally signedC:\Windows\system32\svchost.exe => File is digitally signedC:\Windows\SysWOW64\svchost.exe => File is digitally signedC:\Windows\system32\services.exe => File is digitally signedC:\Windows\system32\User32.dll => File is digitally signedC:\Windows\SysWOW64\User32.dll => File is digitally signedC:\Windows\system32\userinit.exe => File is digitally signedC:\Windows\SysWOW64\userinit.exe => File is digitally signedC:\Windows\system32\rpcss.dll => File is digitally signedC:\Windows\system32\dnsapi.dll => File is digitally signedC:\Windows\SysWOW64\dnsapi.dll => File is digitally signedC:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-11-13 12:09 ==================== End of FRST.txt ============================ Malwarebytes Anti-Malwarewww.malwarebytes.org Protection, 18.11.2015 г. 18:56 ч., SYSTEM, AISHE-PC, Protection, Malware Protection, Starting, Protection, 18.11.2015 г. 18:56 ч., SYSTEM, AISHE-PC, Protection, Malware Protection, Started, Protection, 18.11.2015 г. 18:56 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Starting, Protection, 18.11.2015 г. 18:56 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Started, Update, 18.11.2015 г. 18:57 ч., SYSTEM, AISHE-PC, Manual, Remediation Database, 2015.9.16.1, 2015.11.17.1, Update, 18.11.2015 г. 18:57 ч., SYSTEM, AISHE-PC, Manual, Rootkit Database, 2015.9.18.1, 2015.11.14.1, Update, 18.11.2015 г. 18:57 ч., SYSTEM, AISHE-PC, Manual, IP Database, 2015.9.21.2, 2015.11.17.3, Update, 18.11.2015 г. 18:57 ч., SYSTEM, AISHE-PC, Manual, Domain Database, 2015.9.22.3, 2015.11.18.1, Update, 18.11.2015 г. 18:57 ч., SYSTEM, AISHE-PC, Manual, Malware Database, 2015.9.22.5, 2015.11.18.5, Protection, 18.11.2015 г. 18:57 ч., SYSTEM, AISHE-PC, Protection, Refresh, Starting, Protection, 18.11.2015 г. 18:57 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Stopping, Protection, 18.11.2015 г. 18:57 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Stopped, Protection, 18.11.2015 г. 18:57 ч., SYSTEM, AISHE-PC, Protection, Refresh, Success, Protection, 18.11.2015 г. 18:57 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Starting, Protection, 18.11.2015 г. 18:57 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Started, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.8, js.users.51.la, 51594, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.8, js.users.51.la, 51594, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.8, js.users.51.la, 51595, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.8, js.users.51.la, 51596, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.18, tcf.huntergui.com, 51613, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.18, tcf.huntergui.com, 51613, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.22, nhn.rundevoptions.com, 51627, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.22, nhn.rundevoptions.com, 51627, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.26, a.visadd.com, 51634, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.26, a.visadd.com, 51634, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.8, js.users.51.la, 51635, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.8, js.users.51.la, 51641, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.30, zb1.zeroredirect1.com, 51651, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.30, zb1.zeroredirect1.com, 51651, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51657, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51657, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51658, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51659, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.8, js.users.51.la, 51664, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.8, js.users.51.la, 51665, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.8, js.users.51.la, 51666, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51680, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51681, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:27 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51682, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:29 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.31, a.visadd.com, 51715, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:29 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.31, a.visadd.com, 51715, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Update, 18.11.2015 г. 19:34 ч., SYSTEM, AISHE-PC, Scheduler, Domain Database, 2015.11.18.1, 2015.11.18.2, Protection, 18.11.2015 г. 19:34 ч., SYSTEM, AISHE-PC, Protection, Refresh, Starting, Protection, 18.11.2015 г. 19:34 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Stopping, Protection, 18.11.2015 г. 19:34 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Stopped, Protection, 18.11.2015 г. 19:35 ч., SYSTEM, AISHE-PC, Protection, Refresh, Success, Protection, 18.11.2015 г. 19:35 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Starting, Protection, 18.11.2015 г. 19:35 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Started, Detection, 18.11.2015 г. 19:35 ч., SYSTEM, AISHE-PC, Protection, Защита от злонамерен софтуер, Файл, PUP.Optional.Yontoo, C:\Users\aishe\AppData\Local\Temp\{8B2BC8DC-E26D-4C1C-9411-6CE35B5F28E5}.dll, Quarantine Failed, 5, Достъпът е отказан. , [a6d77f000d7ed066a05169dc9071d32d]Detection, 18.11.2015 г. 19:35 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.4, searchinterneat-a.akamaihd.net, 51839, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:35 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.4, searchinterneat-a.akamaihd.net, 51839, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Scan, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Manual, Начало: 18.11.2015 г. 18:57 ч., Продължителност: 35 мин. 16 сек., Сканиране за заплахи, Завършено, 15 открита злонамерени програми, 371 открити нежелани програми, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.16, js.users.51.la, 51878, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.16, js.users.51.la, 51878, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.16, js.users.51.la, 51879, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.16, js.users.51.la, 51880, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.26, tcf.huntergui.com, 51888, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.26, tcf.huntergui.com, 51888, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.30, nhn.rundevoptions.com, 51895, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.30, nhn.rundevoptions.com, 51895, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.34, a.visadd.com, 51915, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.34, a.visadd.com, 51915, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.16, js.users.51.la, 51919, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.16, js.users.51.la, 51920, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51984, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51984, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51985, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51986, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 127.42.0.16, js.users.51.la, 51989, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51990, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51991, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 51992, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Защита от злонамерен софтуер, Файл, PUP.Optional.Yontoo, C:\ProgramData\1a0254e4-d458-47fa-82a0-6940ee729f6c\plugins\7\Plugin.exe, Quarantine Failed, 5, Достъпът е отказан. , [1964c9b63f4cab8b2cc580c512ef7090]Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Защита от злонамерен софтуер, Файл, PUP.Optional.Yontoo, C:\ProgramData\1a0254e4-d458-47fa-82a0-6940ee729f6c\plugins\3\Plugin.exe, Quarantine Failed, 5, Достъпът е отказан. , [7ffef08f2269d660b63bdc698b7653ad]Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Защита от злонамерен софтуер, Файл, PUP.Optional.Yontoo, C:\ProgramData\1a0254e4-d458-47fa-82a0-6940ee729f6c\plugins\12\Plugin.exe, Quarantine Failed, 5, Достъпът е отказан. , [ef8ed2ad99f23cfa02ef63e2bf4251af]Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Защита от злонамерен софтуер, Файл, PUP.Optional.Yontoo, C:\ProgramData\1a0254e4-d458-47fa-82a0-6940ee729f6c\plugins\3\Plugin.exe, Quarantine Failed, 5, Достъпът е отказан. , [7ffef08f2269d660b63bdc698b7653ad]Detection, 18.11.2015 г. 19:36 ч., SYSTEM, AISHE-PC, Protection, Защита от злонамерен софтуер, Файл, PUP.Optional.Yontoo, C:\ProgramData\1a0254e4-d458-47fa-82a0-6940ee729f6c\plugins\7\Plugin.exe, Quarantine Failed, 5, Достъпът е отказан. , [1964c9b63f4cab8b2cc580c512ef7090]Protection, 18.11.2015 г. 19:38 ч., SYSTEM, AISHE-PC, Protection, Malware Protection, Starting, Protection, 18.11.2015 г. 19:38 ч., SYSTEM, AISHE-PC, Protection, Malware Protection, Started, Protection, 18.11.2015 г. 19:38 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Starting, Protection, 18.11.2015 г. 19:38 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Started, Detection, 18.11.2015 г. 19:40 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 167.114.83.160, a.visadd.com, 49394, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:40 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 167.114.83.160, a.visadd.com, 49395, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:40 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 167.114.83.160, a.visadd.com, 49394, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:40 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 167.114.83.160, a.visadd.com, 49396, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:40 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 167.114.83.160, a.visadd.com, 49397, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 212.95.165.8, searchinterneat-a.akamaihd.net, 49406, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 212.95.165.8, searchinterneat-a.akamaihd.net, 49406, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 212.95.165.8, searchinterneat-a.akamaihd.net, 49409, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49425, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49425, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49426, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49427, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 212.95.165.8, searchinterneat-a.akamaihd.net, 49456, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 212.95.165.8, searchinterneat-a.akamaihd.net, 49462, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.34, tcf.huntergui.com, 49477, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.34, tcf.huntergui.com, 49477, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.34, tcf.huntergui.com, 49478, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.34, tcf.huntergui.com, 49479, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 113.107.42.34, js.users.51.la, 49607, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 113.107.42.34, js.users.51.la, 49607, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 113.107.42.34, js.users.51.la, 49608, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.34, tcf.huntergui.com, 49662, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.34, nhn.rundevoptions.com, 49670, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.34, nhn.rundevoptions.com, 49670, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 113.107.42.34, js.users.51.la, 49686, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.34, tcf.huntergui.com, 49703, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.34, tcf.huntergui.com, 49704, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 113.107.42.34, js.users.51.la, 49713, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 167.114.83.160, a.visadd.com, 49727, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49747, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49748, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49749, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49752, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49753, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:41 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49755, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Update, 18.11.2015 г. 19:42 ч., SYSTEM, AISHE-PC, Manual, Malware Database, 2015.11.18.5, 2015.11.18.6, Protection, 18.11.2015 г. 19:42 ч., SYSTEM, AISHE-PC, Protection, Refresh, Starting, Protection, 18.11.2015 г. 19:42 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Stopping, Protection, 18.11.2015 г. 19:42 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Stopped, Protection, 18.11.2015 г. 19:42 ч., SYSTEM, AISHE-PC, Protection, Refresh, Success, Protection, 18.11.2015 г. 19:42 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Starting, Protection, 18.11.2015 г. 19:42 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Started, Detection, 18.11.2015 г. 19:45 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 212.95.165.8, searchinterneat-a.akamaihd.net, 49845, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:45 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 212.95.165.8, searchinterneat-a.akamaihd.net, 49845, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 212.95.165.8, searchinterneat-a.akamaihd.net, 49851, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, tcf.huntergui.com, 49875, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, tcf.huntergui.com, 49875, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 49879, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 49879, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 49884, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, nhn.rundevoptions.com, 49889, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, nhn.rundevoptions.com, 49889, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 198.27.102.144, a.visadd.com, 49910, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 198.27.102.144, a.visadd.com, 49910, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 49923, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 49927, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, tcf.huntergui.com, 49945, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, tcf.huntergui.com, 49946, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, tcf.huntergui.com, 49947, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49969, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49970, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49969, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49971, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49974, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49975, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 49976, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50006, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50009, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, tcf.huntergui.com, 50012, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, nhn.rundevoptions.com, 50019, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50024, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50036, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50037, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50038, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50043, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50045, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50046, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 198.27.102.144, a.visadd.com, 50047, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50071, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50074, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, tcf.huntergui.com, 50077, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 198.27.102.144, a.visadd.com, 50081, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, nhn.rundevoptions.com, 50086, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50088, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50091, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50092, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50095, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50139, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50142, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, tcf.huntergui.com, 50147, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 37.58.93.181, 41.teracreative.com, 50148, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 37.58.93.181, 41.teracreative.com, 50148, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 198.27.102.144, a.visadd.com, 50151, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, nhn.rundevoptions.com, 50152, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50156, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:46 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50158, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50169, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50170, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50171, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50173, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50174, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50175, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 54.88.117.14, zd1.zeroredirect1.com, 50185, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 54.88.117.14, zd1.zeroredirect1.com, 50185, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50199, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50224, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 108.162.200.127, cdn.visadd.com, 50234, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 108.162.200.127, cdn.visadd.com, 50235, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 108.162.200.127, cdn.visadd.com, 50234, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 108.162.200.127, cdn.visadd.com, 50236, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50243, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 222.187.225.125, js.users.51.la, 50244, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, tcf.huntergui.com, 50246, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 37.58.102.35, nhn.rundevoptions.com, 50249, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 198.27.102.144, a.visadd.com, 50252, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 117.21.226.37, js.users.51.la, 50257, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 117.21.226.37, js.users.51.la, 50258, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, Domain, 117.21.226.37, js.users.51.la, 50257, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50283, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50284, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 18.11.2015 г. 19:47 ч., SYSTEM, AISHE-PC, Protection, Malicious Website Protection, IP, 70.186.131.246, jsl.infostatsvc.com, 50285, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, (end) Addition.txt Цитирай Link to comment Сподели другаде More sharing options...
Night_Raven Публикувано Ноември 19, 2015 Report Share Публикувано Ноември 19, 2015 Лично аз не бих разчитал на Web Companion и на твое място бих я деинсталирал. Същото се отнася и за SpyHunter. Впрочем същото важи и за Driver Genius. Ако все още е налична в списъка с инсталирани приложения Smileys We Love Toolbar for IE, я деинсталирай. След това изпълни следното: - изтегли прикрепения файл Fixlist.txt и го запази в същата папка, където се намира FRST/FRST64 (това трябва да е работният плот, ако си следвал точно инструкциите в предишния коментар), и замени стария файл с такова име, ако има такъв; - стартирай FRST/FRST64; - кликни бутон Fix и изчакай инструмента да извърши поправките; - ако случайно има нужда от рестарт, се съгласи и остави системата да се рестартира нормално, след което остави инструментът да си довърши работата; - когато всичко приключи, в същата папка ще се създаде Fixlog.txt, копирай съдържанието му към следващия си коментар или го прикрепи към него. Цитирай Link to comment Сподели другаде More sharing options...
Препоръчан пост
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.