chrome被hao123主页绑架的解决
有些东西,本身也许不讨厌,但是你强迫我,那就非解决不可。
比如,hao123,用什么东西后台修改chrome的快捷方式,将hao123的主页作为启动参数来绑定,这样修改chrome本身的设定无效。
查到百度的各种方案都无效,问了下谷歌,只扫到一个答案,非常简洁,用 AdwCleaner可除。
果然,附带清了很多广告。
附上我的清除记录……等下,把QQ也整个删除了?QQ,你到底干什么了?
# AdwCleaner v6.044 - Logfile created 08/03/2017 at 07:57:22
# Updated on 28/02/2017 by Malwarebytes
# Database : 2017-03-07.1 [Server]
# Operating System : Windows 10 Pro (X64)
# Username : mikde - SURFACE
# Running from : C:\Users\mikde\Downloads\AdwCleaner.exe
# Mode: Clean
# Support : https://www.malwarebytes.com/support
***** [ Services ] *****
[-] Service deleted: QPCore
[-] Service deleted: QDAntiDrv
***** [ Folders ] *****
[-] Folder deleted: C:\Users\mikde\AppData\Local\PackageAware
[-] Folder deleted: C:\Users\mikde\AppData\Local\SysassistByHotWheel
[-] Folder deleted: C:\Users\mikde\AppData\Local\hao123
[-] Folder deleted: C:\Users\mikde\AppData\Local\Kuaizip
[-] Folder deleted: C:\Users\mikde\AppData\Local\Tencent
[-] Folder deleted: C:\Users\mikde\AppData\LocalLow\Tencent
[-] Folder deleted: C:\Users\mikde\AppData\Roaming\IQIYI Video
[-] Folder deleted: C:\Users\mikde\AppData\Roaming\Kuaizip
[-] Folder deleted: C:\Users\mikde\AppData\Roaming\Tencent
[-] Folder deleted: C:\Users\mikde\AppData\Roaming\Softlink
[-] Folder deleted: C:\Users\mikde\AppData\Roaming\YouKu
[-] Folder deleted: C:\Users\mikde\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
[-] Folder deleted: C:\Users\mikde\AppData\Local\VirtualStore\Program Files (x86)\Tencent
[-] Folder deleted: C:\ProgramData\Tencent
[#] Folder deleted on reboot: C:\ProgramData\Application Data\Tencent
[-] Folder deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\腾讯软件
[-] Folder deleted: C:\Users\Public\Documents\Rising
[-] Folder deleted: C:\Users\Public\Documents\Tencent
[-] Folder deleted: C:\Program Files (x86)\Tencent
[-] Folder deleted: C:\Program Files (x86)\YouKu
[-] Folder deleted: C:\Program Files (x86)\Common Files\Tencent
[-] Folder deleted: c:\Temp\Tencent
[-] Folder deleted: C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Roaming\Tencent
[-] Folder deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pnaiinchjaonopoejhknmgjingcnaloc
[-] Folder deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mjpieolhcmajmolkhbbeljknkcdcmffk
***** [ Files ] *****
[-] File deleted: C:\Users\mikde\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\UC浏览器.lnk
[-] File deleted: C:\WINDOWS\SysNative\drivers\KuaiZipDrive.sys
[-] File deleted: C:\WINDOWS\SysWOW64\kz.exe
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxps_ke.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxps_ke.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxps_kuaibao.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxps_kuaibao.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxps_mail.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxps_mail.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxps_www.hao123.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxps_www.hao123.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxps_xui.ptlogin2.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxps_xui.ptlogin2.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_cn.qzs.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_cn.qzs.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_cnc.qzs.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_cnc.qzs.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_coral.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_coral.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_db.house.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_db.house.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_finance.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_finance.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_jn.house.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_jn.house.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_mail.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_mail.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_mp.weixin.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_mp.weixin.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_news.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_news.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_rc.qzone.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_rc.qzone.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_sports.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_sports.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_tech.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_tech.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_user.qzone.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_user.qzone.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_v.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_v.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_www.120ask.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_www.120ask.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_www.bookask.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_www.bookask.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_www.hao123.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_www.hao123.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_www.ithao123.cn_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_www.ithao123.cn_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_www.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_www.qq.com_0.localstorage-journal
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_xui.ptlogin2.qq.com_0.localstorage
[-] File deleted: C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1\Local Storage\hxxp_xui.ptlogin2.qq.com_0.localstorage-journal
***** [ DLL ] *****
***** [ WMI ] *****
***** [ Shortcuts ] *****
[-] Shortcut disinfected: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
[-] Shortcut disinfected: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[-] Shortcut disinfected: C:\Users\mikde\Desktop\chrome.lnk
[-] Shortcut disinfected: C:\Users\mikde\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
[-] Shortcut disinfected: C:\Users\mikde\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[-] Shortcut disinfected: C:\Users\mikde\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[-] Shortcut disinfected: C:\Users\mikde\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\chrom.lnk
[-] Shortcut disinfected: C:\Users\mikde\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\UC浏览器 (2).lnk
[!] Shortcut not deleted: C:\Users\mikde\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\UC浏览器.lnk
***** [ Scheduled Tasks ] *****
***** [ Registry ] *****
[-] Key deleted: HKU\S-1-5-21-2394173474-310465021-4167403336-1001\Software\Classes\Tencent
[#] Key deleted on reboot: HKCU\Software\Classes\Tencent
[-] Key deleted: HKLM\SOFTWARE\Classes\Baidu.BaiduMusic.9
[-] Key deleted: HKLM\SOFTWARE\Classes\baidumusic
[-] Key deleted: HKLM\SOFTWARE\Classes\BaiduYunGuanjia.torrent
[-] Key deleted: HKLM\SOFTWARE\Classes\metnsd
[-] Key deleted: HKLM\SOFTWARE\Classes\QZipShell.ContextMenuExt
[-] Key deleted: HKLM\SOFTWARE\Classes\QZipShell.ContextMenuExt.1
[-] Key deleted: HKLM\SOFTWARE\Classes\QZipShell.DragDropMenu
[-] Key deleted: HKLM\SOFTWARE\Classes\QZipShell.DragDropMenu.1
[-] Key deleted: HKLM\SOFTWARE\Classes\QZipShell.KYDropHandler
[-] Key deleted: HKLM\SOFTWARE\Classes\QZipShell.KYDropHandler.1
[-] Key deleted: HKLM\SOFTWARE\Classes\QZipShell.KzShlobj
[-] Key deleted: HKLM\SOFTWARE\Classes\QZipShell.KzShlobj.1
[-] Key deleted: HKLM\SOFTWARE\Classes\QZipShell.PropertyExt
[-] Key deleted: HKLM\SOFTWARE\Classes\QZipShell.PropertyExt.1
[-] Key deleted: HKLM\SOFTWARE\Classes\Tencent
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Tencent
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\Baidu.BaiduMusic.9
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\baidumusic
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\BaiduYunGuanjia.torrent
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\metnsd
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QZipShell.ContextMenuExt
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QZipShell.ContextMenuExt.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QZipShell.DragDropMenu
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QZipShell.DragDropMenu.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QZipShell.KYDropHandler
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QZipShell.KYDropHandler.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QZipShell.KzShlobj
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QZipShell.KzShlobj.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QZipShell.PropertyExt
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QZipShell.PropertyExt.1
[#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\Tencent
[-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
[-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{9CC34070-3A38-4C7A-89CB-EF8177EF07A1}
[-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
[-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{004B0726-A010-4ABF-8556-FCDB7F1FCA1E}
[-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{B9E49847-9822-4139-BC55-7173ED1ADA11}
[-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{AE3D5C7A-413F-4CDB-9331-0E1894637310}
[-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{6B3732AA-F6D4-4F16-9E22-49EDC52C9514}
[-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
[-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{B9E49847-9822-4139-BC55-7173ED1ADA11}
[-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{86C4C3BA-4EA4-4CF8-98B9-6B07B477B835}
[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E6A8DA1-5731-465B-B036-B9E16EF26CAC}
[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{004B0726-A010-4ABF-8556-FCDB7F1FCA1E}
[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE3D5C7A-413F-4CDB-9331-0E1894637310}
[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FB4F6285-4C32-49F2-950F-A5998F9CEC6C}
[-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{004B0726-A010-4ABF-8556-FCDB7F1FCA1E}
[-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{5E6A8DA1-5731-465B-B036-B9E16EF26CAC}
[-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE3D5C7A-413F-4CDB-9331-0E1894637310}
[-] Key deleted: HKU\S-1-5-21-2394173474-310465021-4167403336-1001\Software\SNDA
[-] Key deleted: HKU\S-1-5-21-2394173474-310465021-4167403336-1001\Software\KuaiZipSFX
[-] Key deleted: HKU\S-1-5-21-2394173474-310465021-4167403336-1001\Software\Thunder Network
[-] Key deleted: HKU\S-1-5-21-2394173474-310465021-4167403336-1001\Software\AppDataLow\Thunder Network
[#] Key deleted on reboot: HKCU\Software\SNDA
[#] Key deleted on reboot: HKCU\Software\KuaiZipSFX
[#] Key deleted on reboot: HKCU\Software\Thunder Network
[#] Key deleted on reboot: HKCU\Software\AppDataLow\Thunder Network
[-] Key deleted: HKLM\SOFTWARE\Thunder Network
[#] Key deleted on reboot: [x64] HKCU\Software\SNDA
[#] Key deleted on reboot: [x64] HKCU\Software\KuaiZipSFX
[#] Key deleted on reboot: [x64] HKCU\Software\Thunder Network
[#] Key deleted on reboot: [x64] HKCU\Software\AppDataLow\Thunder Network
[-] Data restored: HKU\S-1-5-21-2394173474-310465021-4167403336-1001\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Data restored: HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data restored: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
[-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\duba.com
[-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\hotnews.duba.com
[-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\qq.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\adm.funshion.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\duba.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\funshion.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\mp.weixin.qq.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\qq.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\qzs.qq.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.duba.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\xui.ptlogin2.qq.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\adm.funshion.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\duba.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\funshion.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\mp.weixin.qq.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\qq.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\qzs.qq.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.duba.com
[-] Key deleted: HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\xui.ptlogin2.qq.com
[#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\duba.com
[#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\hotnews.duba.com
[#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\qq.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\adm.funshion.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\duba.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\funshion.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\mp.weixin.qq.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\qq.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\qzs.qq.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.duba.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\xui.ptlogin2.qq.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\adm.funshion.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\duba.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\funshion.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\mp.weixin.qq.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\qq.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\qzs.qq.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.duba.com
[#] Key deleted on reboot: [x64] HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\xui.ptlogin2.qq.com
[-] Value deleted: HKU\S-1-5-21-2394173474-310465021-4167403336-1001\Software\Microsoft\Windows\CurrentVersion\Run [Wechat]
[-] Value deleted: HKU\S-1-5-21-2394173474-310465021-4167403336-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [Wechat]
[#] Value deleted on reboot: HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Wechat]
[#] Value deleted on reboot: [x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Wechat]
[-] Key deleted: HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
[-] Value deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [QyBrowser.exe]
[-] Key deleted: HKLM\SOFTWARE\MozillaPlugins\@qq.com/TXSSO
[-] Value deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [AndroidServer.exe]
[#] Value deleted on reboot: HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN\FEATURECONTROL\FEATURE_BROWSER_EMULATION [QyBrowser.exe]
[-] Key deleted: HKLM\SOFTWARE\Classes\AppID\QZipShell.DLL
[-] Key deleted: HKCU\Software\MozillaPlugins\@1.qq.com/npqqwebgame
[-] Key deleted: HKLM\SOFTWARE\MozillaPlugins\@qq.com/npqscall
[-] Key deleted: HKLM\SOFTWARE\MozillaPlugins\@qq.com/QQPhotoDrawEx
[-] Key deleted: HKLM\SOFTWARE\MozillaPlugins\@qq.com/QzoneMusic
***** [ Web browsers ] *****
[-] Firefox preferences cleaned: "extensions.cpmanager@mozillaonline.com.qvod_hao123_ts" - 17221
[-] [C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1] [extension] Deleted: mjpieolhcmajmolkhbbeljknkcdcmffk
[-] [C:\Users\mikde\AppData\Local\Google\Chrome\User Data\Profile 1] [extension] Deleted: pnaiinchjaonopoejhknmgjingcnaloc
*************************
:: "Tracing" keys deleted
:: Winsock settings cleared
*************************
C:\AdwCleaner\AdwCleaner[C0].txt - [24829 Bytes] - [08/03/2017 07:57:22]
C:\AdwCleaner\AdwCleaner[S0].txt - [24099 Bytes] - [08/03/2017 07:49:01]
########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [24977 Bytes] ##########
chrome被hao123主页绑架的解决相关推荐
- Firefox(火狐)主页被hao123绑架的解决办法
下载好的Firefox每次打开之后都显示hao123主页. 尝试了网上几种方法,包括查看快捷方式属性.删注册表.找配置文件等方法都不好用. 最后解决办法 第一步,点击Firefox快捷键,进入主页后点 ...
- chrome 打开默认页 被篡改_为什么 Chrome 浏览器的主页会被篡改为 hao123 ?遇到这种情况要如何修复?...
最近重装了一次电脑.尽管什么百度系的软件我都没有下载,Chrome浏览器的主页还是被硬生生劫持了.每次点开后的主页是http://hao.qquu8.com这个链接,紧接着它会跳向hao123.电脑上 ...
- Chrome等浏览器被劫持,篡改,自动打开hao123等垃圾网站解决方法
原作者授权转载: 似乎是昨天下载了一个软件被莫名注入了病毒,IE和Chrome启动时自动打开hao123,而且不是常规的lnk 快捷方式劫持,而是更加恶心的Chrome 命令行注入劫持.各种杀毒,网页 ...
- 彻底解决chrome浏览器被篡改主页的问题chrome浏览器启动打开其他页面
彻底解决chrome浏览器被篡改主页的问题chrome浏览器启动打开其他页面 彻底解决firefox浏览器被篡改主页的问题firefox浏览器启动打开其他页面 浏览器启动的时候,设置的默认首页没有打开 ...
- 解决浏览器主页都变成hao123主页的最有效方法
解决浏览器主页都变成hao123主页的方法,现在网上那些改属性,新建快捷方式都不管用 https://malwaretips.com/blogs/remove-hao123-virus/#adwcle ...
- IE浏览器主页被hao123等篡改的解决办法
最近一段时间一直被IE浏览器主页被篡改的问题困扰,设置好了自己理想的主页,打开浏览器时总是显示被篡改之后的网页.今天终于解决了这一问题,现在方法共享给大家. 好了,直接上干货: 1.打开IE浏览器,设 ...
- 如何彻底删除hao123主页?
我们在使用浏览器的时候,可能有时候会发现浏览器主页被hao123挟持了,成每一次浏览器打开便会默认设置发生hao123主页,非常烦人,有什么办法可以恢复浏览器原本的主页吗?下面小编就给大家分享详细的解 ...
- 浏览器主页锁定的解决方法
文章目录 前言 锁定网址 解除锁定 一.关闭浏览器保护功能 二.关闭新建标签页设置 写在最后 前言 当我们设置浏览器主页后,有时打开浏览器会自动跳转到另一个网址,而非自己设置的主页地址.有时是因为安装 ...
- Chrome浏览器打开异常慢的解决办法
Chrome浏览器打开异常慢的解决办法 参考文章: (1)Chrome浏览器打开异常慢的解决办法 (2)https://www.cnblogs.com/Cate-Hunter/p/10856919.h ...
- JavaScript中的window.close在FireFox和Chrome上不能正常动作的解决方法
原文:JavaScript中的window.close在FireFox和Chrome上不能正常动作的解决方法 JS中关闭窗口的方法window.close()在IE上能够正常动作,而在FireFox和 ...
最新文章
- kali 树莓派 android,【原】树莓派安装KALI LINUX的手记
- 一周一论文(翻译 总结)—— [NSDI 17] TUX2: Distributed Graph Computation for Machine Learning 面向机器学习的分布式图处理系统
- 经典论文复现 | InfoGAN:一种无监督生成方法
- [转]IIS7全新管理工具AppCmd.exe的命令使用
- 读取xml文件转成ListT对象的两种方法(附源码)
- vue组件穿方法_vue组件间通信六种方式(完整版)
- javaSE_06Java中的数组(array)-思维导图
- Google 强迫微软弃用 Edge 内核?
- 大数据技术应用需注意哪些问题
- cf319.B. Modulo Sum(dp 鸽巢原理 同余模)
- Linux 中断总结
- 同济大学高等数学下册第十章重积分以及每日一题
- snmpwalk , snmpget
- xp系统怎样安装传真服务器,ghost xp安装传真服务教程
- 如何将macOS应用程序打包为dmg文件
- 那些编程中遇到的常见英文缩写
- 8. Numpy的索引和切片 (Indexing and Slicing)
- 使用Consol线连接路由器
- 汇编——从一道题目浅谈分支结构
- 高速公路ETC卡签之我见2-卡片消费
热门文章
- c语言第六版题目,C primer plus 第六版 第6版 002章 第二章 复习题 答案 中文
- 一:springCloud服务发现者,服务消费者(方志朋《史上最简单的 SpringCloud 教程》专栏读后感)
- 安卓代码怎么设置省电模式_Android手机省电加速设置大全
- 这些曾盛极一时的经典软件,现在再看,还是记忆犹新
- macOS Mojave patcher 无法制作启动盘
- 嵌入式成长轨迹36 【Zigbee项目】【单片机基础】【单片机SD卡】
- 大二 数据结构 期末复习题(仅供参考)
- matlab排队模型和排队系统仿真
- 爱立信Ericsson
- 机器码、序列号、认证码、注册码的生成算法(四)