I have deleted NVH Production and uTorrent
Do I open the browser Chomre up, I in websites download.com.vn, it pops up banner ads like this?
I reset install Chomre but still be so?
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
I used VirusTotal to scan file SECOH-QAD.dll it out a notice dangerous this ???
| SHA256: | 0398221231cff97e1fdc03d357ac4610afb8f3cdde4c90a9ec4d7823b405699e |
|---|---|
| Tên tập tin: | SECOH-QAD.dll |
| Tỷ lệ phát hiện: | 18 / 54 |
| Ngày phân tích: | 2016-07-22 05:07:40 UTC ( 2 phút trước ) |
43
47
| AVware | Trojan.Win32.Generic!BT | 20160722 |
|---|---|---|
| AegisLab | Nettool.Win64.Rpchook!c | 20160721 |
| Antiy-AVL | RiskWare[NetTool:not-a-virus]/Win64.RPCHook | 20160722 |
| CAT-QuickHeal | NetTool.RPCHook.r4 (Not a Virus) | 20160721 |
| ESET-NOD32 | Win64/HackKMS.D potentially unsafe | 20160722 |
| GData | Win64.Application.Agent.YQQKJO | 20160722 |
| Ikarus | PUA.NetTool.RPCHook | 20160721 |
| Jiangmin | NetTool.RPCHook.k | 20160722 |
| K7AntiVirus | Hacktool ( 000047b11 ) | 20160721 |
| K7GW | Hacktool ( 000047b11 ) | 20160722 |
| Kaspersky | not-a-virus:NetTool.Win64.RPCHook.a | 20160722 |
| McAfee | Generic HTool.b | 20160721 |
| McAfee-GW-Edition | Generic HTool.b | 20160722 |
| NANO-Antivirus | Riskware.Win64.HackKMS.dzkjpw | 20160722 |
| VIPRE | Trojan.Win32.Generic!BT | 20160722 |
| ViRobot | RPCHook.3584[h] | 20160722 |
| Yandex | Riskware.NetTool! | 20160721 |
| nProtect | Trojan/W32.Agent.3584.MQ | 20160721 |
| ALYac | 20160722 | |
| AVG | 20160722 | |
| Ad-Aware | 20160722 | |
| AhnLab-V3 | 20160721 | |
| Alibaba | 20160722 | |
| Arcabit | 20160722 | |
| Avast | 20160722 | |
| Avira (no cloud) | 20160721 | |
| Baidu | 20160721 | |
| BitDefender | 20160722 | |
| Bkav | 20160721 | |
| CMC | 20160715 | |
| ClamAV | 20160722 | |
| Comodo | 20160722 | |
| Cyren | 20160722 | |
| DrWeb | 20160722 | |
| Emsisoft | 20160722 | |
| F-Prot | 20160722 | |
| F-Secure | 20160722 | |
| Fortinet | 20160722 | |
| Kingsoft | 20160722 | |
| Malwarebytes | 20160722 | |
| eScan | 20160722 | |
| Microsoft | 20160722 | |
| Panda | 20160721 | |
| Qihoo-360 | 20160722 | |
| SUPERAntiSpyware | 20160722 | |
| Sophos | 20160722 | |
| Symantec | 20160722 | |
| Tencent | 20160722 | |
| TheHacker | 20160720 | |
| TrendMicro | 20160722 | |
| TrendMicro-HouseCall | 20160722 | |
| VBA32 | 20160721 | |
| Zillya | 20160721 | |
| Zoner | 20160722 |
Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.
I have deleted NVH Production and uTorrent
Do I open the browser Chomre up, I in websites download.com.vn, it pops up banner ads like this?
I reset install Chomre but still be so?
This answer has been deleted due to a violation of our Code of Conduct. The answer was manually reported or identified through automated detection before action was taken. Please refer to our Code of Conduct for more information.
Comments have been turned off. Learn more
I think this is from you downloading an extension to download torrents.
Block or allow pop-ups in Chrome
Let's check for a bad extension
**Disable Plug-ins in Google Chrome**
- Click the **Chrome menu**  on the browser toolbar.
- Select **Settings**.
- Scroll down to **Show advanced settings...**
- Locate the **Privacy Section**, select **Content Settings**
- In the pop up window scroll to **Plug-Ins**, select
**Disable individual plug-ins...**
- Locate the following plug-ins or extensions with this name **jstorrent** and set them to Disable:
Follow all the instructions for resetting all browsers
I do not see Plugins jstorrent
Plugins
| Plugins (4) | Details |
|---|
| Widevine Content Decryption Module - Version: 1.4.8.903<br><br>Enables Widevine licenses for playback of HTML audio/video content. (version: 1.4.8.903)<br><br><br> | Name: | Widevine Content Decryption Module | <br> | --- | --- | <br><br><br> | Description: | Enables Widevine licenses for playback of HTML audio/video content. (version: 1.4.8.903) | <br> | --- | --- | <br><br><br> | Version: | 1.4.8.903 | <br> | --- | --- | <br><br><br> | Location: | C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\WidevineCdm\1.4.8.903\_platform_specific\win_x86\widevinecdmadapter.dll | <br> | --- | --- | <br><br><br> | Type: | PPAPI (out-of-process) | <br> | --- | --- | <br><br><br> | Disable | <br> | --- | --- | <br><br><br><br> | MIME types: | MIME type | Description | File extensions | <br> | --- | --- | --- | <br> | application/x-ppapi-widevine-cdm | Widevine Content Decryption Module | . | <br> | --- | <br> | --- | --- | <br><br><br>Disable |
|---|
| Chrome PDF Viewer (2 files)<br><br><br> | Name: | Chrome PDF Viewer | <br> | --- | --- | <br><br><br><br><br><br> | Version: | <br> | --- | --- | <br><br><br> | Location: | chrome-extension://mhjfbmdgcfjbbpaeojofohoefgiehjai/ | <br> | --- | --- | <br><br><br> | Type: | BROWSER PLUGIN | <br> | --- | --- | <br><br><br> | Disable | <br> | --- | --- | <br><br><br><br> | MIME types: | MIME type | Description | File extensions | <br> | --- | --- | --- | <br> | application/pdf | <br> | --- | <br> | --- | --- | <br><br><br> | Name: | Chrome PDF Viewer | <br> | --- | --- | <br><br><br> | Description: | Portable Document Format | <br> | --- | --- | <br><br><br> | Version: | <br> | --- | --- | <br><br><br> | Location: | internal-pdf-viewer | <br> | --- | --- | <br><br><br> | Type: | PPAPI (out-of-process) | <br> | --- | --- | <br><br><br> | Disable | <br> | --- | --- | <br><br><br><br> | MIME types: | MIME type | Description | File extensions | <br> | --- | --- | --- | <br> | application/x-google-chrome-pdf | Portable Document Format | <br> | --- | <br> | --- | --- | <br><br><br>Disable |
|---|
| Native Client<br><br><br> | Name: | Native Client | <br> | --- | --- | <br><br><br><br><br><br> | Version: | <br> | --- | --- | <br><br><br> | Location: | C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.82\internal-nacl-plugin | <br> | --- | --- | <br><br><br> | Type: | PPAPI (in-process) | <br> | --- | --- | <br><br><br> | Disable | <br> | --- | --- | <br><br><br><br> | MIME types: | MIME type | Description | File extensions | <br> | --- | --- | --- | <br> | application/x-nacl | Native Client Executable | . | <br> | --- | <br> | application/x-pnacl | Portable Native Client Executable | . | <br> | --- | <br> | --- | --- | <br><br><br>Disable |
|---|
| Adobe Flash Player - Version: 22.0.0.209<br><br>Shockwave Flash 22.0 r0<br><br><br> | Name: | Shockwave Flash | <br> | --- | --- | <br><br><br> | Description: | Shockwave Flash 22.0 r0 | <br> | --- | --- | <br><br><br> | Version: | 22.0.0.209 | <br> | --- | --- | <br><br><br> | Location: | C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.82\PepperFlash\pepflashplayer.dll | <br> | --- | --- | <br><br><br> | Type: | PPAPI (out-of-process) | <br> | --- | --- | <br><br><br> | Disable | <br> | --- | --- | <br><br><br><br> | MIME types: | MIME type | Description | File extensions | <br> | --- | --- | --- | <br> | application/x-shockwave-flash | Shockwave Flash | .swf | <br> | --- | <br> | application/futuresplash | FutureSplash Player | .spl | <br> | --- | <br> | --- | --- | <br><br><br>Disable |
|---|
You view this notice:
[code]
HitmanPro 3.7.14.265
Computer name . . . . : MAYTINH-1Q20GA5
Windows . . . . . . . : 10.0.0.10586.X64/4
User name . . . . . . : MAYTINH-1Q20GA5\MyPC
UAC . . . . . . . . . : Enabled
License . . . . . . . : Free
Scan date . . . . . . : 2016-07-28 20:11:46
Scan mode . . . . . . : Normal
Scan duration . . . . : 7m 10s
Disk access mode . . : Direct disk access (SRB)
Cloud . . . . . . . . : Internet
Reboot . . . . . . . : No
Threats . . . . . . . : 0
Traces . . . . . . . : 17
Objects scanned . . . : 1,438,546
Files scanned . . . . : 22,120
Remnants scanned . . : 240,008 files / 1,176,418 keys
Cookies _____________________________________________________________________
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:6212760188.log.optimizely.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:adnxs.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:agkn.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:bluekai.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:demdex.net
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:doubleclick.net
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:mathtag.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:mookie1.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:openx.net
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:pixel.rubiconproject.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:popup.taboola.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:pubmatic.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:rubiconproject.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:scorecardresearch.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:taboola.com
C:\Users\MyPC\AppData\Local\Google\Chrome\User Data\Default\Cookies:trc.taboola.com
C:\Users\MyPC\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC#!002\MicrosoftEdge\Cookies\F6WT94YH.txt
[/code]