Primetio sam da je sistem usporio.Prilikom dizanja sistema,gasenja,surfovanja netom, treba mu vise vremena za otvaranje stranica, i desava mi se da me kursor ne slusa. Takodje mi se cini da je i otvaranje nekih programa sporije nego sto je bilo ranije.Problem je poceo da se pojavljuje od prilike pre nekih 7 dana,probao sam da ga resim uz pomoc nod32 antivirus 8.Konekcija bezicni net 2mb
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 29-05-2015
Ran by SelenA (administrator) on SELENA-PC on 30-05-2015 16:36:13
Running from C:\Users\SelenA\Downloads
Loaded Profiles: SelenA (Available Profiles: SelenA)
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: geekstogo.com/forum/topic/335081-frst-t.....scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
() C:\ProgramData\DatacardService\HWDeviceService.exe
( ) C:\Windows\System32\lxdxcoms.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
() C:\ProgramData\Telenor Internet\OnlineUpdate\ouc.exe
() C:\Users\SelenA\AppData\Local\Viber\Viber.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\UI0Detect.exe
() C:\Windows\winsys.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_188.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_188.exe
(Emsisoft Ltd) C:\Program Files\Emsisoft Anti-Malware\a2service.exe
(Emsisoft Ltd) C:\Program Files\Emsisoft Anti-Malware\a2guard.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5088456 2015-01-28] (ESET)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM\...\Run: [emsisoft anti-malware] => c:\program files\emsisoft anti-malware\a2guard.exe [4923832 2015-05-30] (Emsisoft Ltd)
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5529880 2015-03-13] (Piriform Ltd)
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\Run: [Viber] => C:\Users\SelenA\AppData\Local\Viber\Viber.exe [80036560 2015-05-25] ()
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\Run: [SysUtils] => C:\Windows\winsys.exe [2355712 2012-01-01] ()
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\MountPoints2: {6130e2d3-585a-11e4-b749-001167000000} - E:\AutoRun.exe
BootExecute: autocheck autochk * sdnclean.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = msn.com/?ocid=iehp
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: BitComet Helper -> {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} -> C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll [2013-11-29] (BitComet)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-04-24] (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-24] (Oracle Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer]
Tcpip\..\Interfaces\{76B90091-229D-40A4-855A-62DDEB1F60D5}: [NameServer]
Tcpip\..\Interfaces\{7A6CE973-9C7B-4DD7-999E-758511D6B87D}: [NameServer]
Tcpip\..\Interfaces\{885484B4-9073-4A39-8494-B0D9C1C4AC13}: [NameServer]
Tcpip\..\Interfaces\{F6B3B155-C830-4D93-860B-4A639E27770B}: [NameServer]
FF ProfilePath: C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default
FF Homepage: google.com
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-05-25] ()
FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-24] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-24] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-04] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-04] (NVIDIA Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL [2006-10-26] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npwachk.dll [2010-01-14] (Nullsoft, Inc.)
FF SearchPlugin: C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default\searchplugins\podnapisinet.xml [2015-03-19]
FF Extension: BitComet Video Downloader - C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default\Extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB} [2014-11-05]
FF Extension: Topface. Meeting is easy - C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default\Extensions\jid1-XsAruLV1bBBn9Q@jetpack.xpi [2015-04-03]
FF Extension: Adblock Plus - C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-10-27]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-05-01]
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
CHR Profile: C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-29]
CHR Extension: (Google Docs) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-29]
CHR Extension: (Google Drive) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-05-29]
CHR Extension: (YouTube) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-05-29]
CHR Extension: (Google Search) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-05-29]
CHR Extension: (Google Sheets) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-29]
CHR Extension: (Bookmark Manager) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-29]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-05-29]
CHR Extension: (Google Wallet) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-29]
CHR Extension: (Gmail) - C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-29]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 a2AntiMalware; C:\Program Files\Emsisoft Anti-Malware\a2service.exe [5155576 2015-05-30] (Emsisoft Ltd)
S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe [1296728 2013-11-29] (www.BitComet.com)
R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [1349576 2015-01-28] (ESET)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [915600 2014-12-13] (NVIDIA Corporation)
R2 HWDeviceService.exe; C:\ProgramData\DatacardService\HWDeviceService.exe [271712 2011-03-14] ()
R2 lxdx_device; C:\Windows\system32\lxdxcoms.exe [589824 2009-10-16] ( ) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-13] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18186896 2014-12-13] (NVIDIA Corporation)
S2 Telenor Internet. RunOuc; C:\Program Files\Telenor Internet\UpdateDog\ouc.exe [655712 2011-12-23] ()
S3 UsbCS; C:\Program Files\3DSP\BluetoothWLAN_usb\Utilities\UsbCS.exe [90112 2009-12-15] (3DSP corporation) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2014-06-17] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 androidusb; C:\Windows\System32\Drivers\wsadb.sys [34792 2015-05-11] (Google Inc)
R0 BtHidBus; C:\Windows\System32\Drivers\BtHidBus.sys [20104 2010-04-06] (IVT Corporation.)
S3 btnetBUs; C:\Windows\System32\Drivers\btnetBus.sys [25864 2010-04-06] ()
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [193464 2015-01-30] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [135808 2015-01-30] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [123424 2015-01-30] (ESET)
R1 epp32; C:\Windows\System32\DRIVERS\epp32.sys [111368 2015-03-24] (Emsisoft GmbH)
S3 huawei_cdcacm; C:\Windows\System32\DRIVERS\ew_jucdcacm.sys [89856 2011-09-09] (Huawei Technologies Co., Ltd.)
S3 huawei_ext_ctrl; C:\Windows\System32\DRIVERS\ew_juextctrl.sys [26624 2011-09-09] (Huawei Technologies Co., Ltd.)
S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [190976 2011-12-02] (Huawei Technologies Co., Ltd.)
S3 IvtBtBUs; C:\Windows\System32\Drivers\IvtBtBus.sys [23048 2010-04-06] (IVT Corporation.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18576 2014-12-13] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [32912 2014-11-22] (NVIDIA Corporation)
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 btaudio; system32\drivers\btaudio.sys [X]
S3 BTCOM; system32\DRIVERS\btcomport.sys [X]
S3 BTCOMBUS; System32\Drivers\btcombus.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S3 BTKRNL; system32\DRIVERS\btkrnl.sys [X]
S3 BTWDNDIS; system32\DRIVERS\btwdndis.sys [X]
S3 BTWUSB; System32\Drivers\btwusb.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfd.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-30 16:36 - 2015-05-30 16:36 - 00014509 _____ () C:\Users\SelenA\Downloads\FRST.txt
2015-05-30 16:34 - 2015-05-30 16:34 - 00001419 _____ () C:\Users\SelenA\Desktop\FRST - Shortcut.lnk
2015-05-30 16:13 - 2015-05-30 16:15 - 00025463 _____ () C:\Users\SelenA\Downloads\Addition.txt
2015-05-30 16:10 - 2015-05-30 16:36 - 00000000 ____D () C:\FRST
2015-05-30 16:10 - 2015-05-30 16:10 - 01147392 _____ (Farbar) C:\Users\SelenA\Downloads\FRST.exe
2015-05-30 15:02 - 2015-05-30 15:02 - 00000000 ____D () C:\ProgramData\Emsisoft
2015-05-30 14:37 - 2015-05-30 15:53 - 00000000 ____D () C:\Program Files\Emsisoft Anti-Malware
2015-05-30 14:37 - 2015-05-30 14:37 - 00001053 _____ () C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk
2015-05-30 14:37 - 2015-05-30 14:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Emsisoft Anti-Malware
2015-05-30 14:37 - 2015-03-24 00:17 - 00111368 _____ (Emsisoft GmbH) C:\Windows\system32\Drivers\epp32.sys
2015-05-30 14:19 - 2015-05-30 14:24 - 159485920 _____ (Emsisoft Ltd. ) C:\Users\SelenA\Downloads\EmsisoftAntiMalwareSetup.exe
2015-05-30 14:17 - 2015-05-30 14:18 - 22132648 _____ (SUPERAntiSpyware) C:\Users\SelenA\Downloads\SUPERAntiSpyware.exe
2015-05-30 12:59 - 2015-05-30 12:59 - 04127410 _____ () C:\Users\SelenA\Downloads\com.wifi.ifre.krc.lcdgbau_vhmniungw.SOFTSTRIBE.com.apk
2015-05-30 12:59 - 2015-05-30 12:59 - 03638359 _____ () C:\Users\SelenA\Downloads\com.yasolution.hackwifiprank.SOFTSTRIBE.com.apk
2015-05-30 12:58 - 2015-05-30 12:59 - 08606768 _____ () C:\Users\SelenA\Downloads\com.digifunstudios.wifipassfinder.SOFTSTRIBE.com.apk
2015-05-30 12:57 - 2015-05-30 12:58 - 04118654 _____ () C:\Users\SelenA\Downloads\com.wifi.ifre.krc.softstribe.com.apk
2015-05-30 12:27 - 2015-05-30 12:27 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Curiolab
2015-05-30 12:11 - 2015-05-30 12:12 - 02670160 _____ (www.PerfectUninstaller.com ) C:\Users\SelenA\Downloads\PerfectUninstaller_Setup.exe
2015-05-30 11:29 - 2015-05-30 11:29 - 00000000 ____D () C:\Users\SelenA\Desktop\007_Spy_Software_v3.87
2015-05-30 09:09 - 2015-05-30 12:36 - 06655386 _____ () C:\Windows\winsys.dat
2015-05-30 09:04 - 2012-01-01 16:24 - 02355712 _____ () C:\Windows\winsys.exe
2015-05-30 09:04 - 2011-10-11 22:18 - 01198080 _____ (The OpenSSL Project, openssl.org/) C:\Windows\libeay32.dll
2015-05-30 09:04 - 2011-10-11 22:18 - 00303104 _____ (The OpenSSL Project, openssl.org/) C:\Windows\ssleay32.dll
2015-05-29 14:42 - 2015-05-29 14:42 - 00000079 _____ () C:\Windows\wininit.ini
2015-05-28 19:22 - 2015-05-28 19:21 - 00450771 ____R () C:\Windows\system32\Drivers\etc\hosts.20150528-192214.backup
2015-05-28 19:21 - 2015-05-28 18:55 - 00450771 ____R () C:\Windows\system32\Drivers\etc\hosts.20150528-192135.backup
2015-05-28 18:55 - 2009-06-10 23:39 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20150528-185549.backup
2015-05-27 15:32 - 2015-05-27 15:32 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Kingosoft
2015-05-19 20:57 - 2015-05-24 09:55 - 00000000 ____D () C:\Users\SelenA\Desktop\vuk 2
2015-05-17 20:52 - 2015-05-17 20:59 - 00000000 ____D () C:\Users\SelenA\Desktop\Tomanija
2015-05-15 23:23 - 2015-05-15 23:23 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-05-13 19:00 - 2015-05-13 19:00 - 02449920 _____ () C:\Users\SelenA\Documents\Clip 1.avi
2015-05-12 19:21 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2015-05-12 19:20 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2015-05-12 19:15 - 2015-05-12 19:15 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Echobit
2015-05-12 19:15 - 2015-05-12 19:15 - 00000000 ____D () C:\ProgramData\Echobit
2015-05-11 01:12 - 2015-05-11 01:12 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_wsadb_01009.Wdf
2015-05-11 01:11 - 2015-05-11 01:11 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf
2015-05-11 01:09 - 2015-05-11 01:09 - 00851176 _____ (Microsoft Corporation) C:\Windows\system32\WinUSBCoInstaller2.dll
2015-05-11 01:09 - 2015-05-11 01:09 - 00034792 _____ (Google Inc) C:\Windows\system32\Drivers\wsadb.sys
2015-05-11 01:08 - 2015-05-11 01:08 - 00080184 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2015-05-10 21:06 - 2015-05-10 21:06 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Wondershare
2015-05-10 21:06 - 2015-05-10 21:06 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Wondershare
2015-05-10 21:06 - 2015-05-10 21:06 - 00000000 ____D () C:\Program Files\Common Files\Wondershare
2015-05-10 21:04 - 2015-05-10 21:06 - 00000000 ____D () C:\Users\Public\Documents\Wondershare
2015-05-10 21:00 - 2015-05-27 15:57 - 00000000 ____D () C:\Users\SelenA\.android
2015-05-10 21:00 - 2015-05-21 20:57 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Coolmuster
2015-05-05 18:57 - 2015-05-05 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB PC Camera (SN9C102)
2015-05-05 18:57 - 2015-05-05 18:57 - 00000000 ____D () C:\Program Files\Common Files\snpstd
2015-05-05 18:57 - 2006-05-03 15:40 - 00390784 _____ () C:\Windows\system32\Drivers\snpstd.sys
2015-05-05 18:57 - 2005-10-19 19:22 - 00036864 _____ ( ) C:\Windows\system32\dsnpstd.ax
2015-05-05 18:57 - 2005-10-11 13:54 - 00339968 _____ () C:\Windows\vsnpstd.exe
2015-05-05 18:57 - 2005-04-20 17:34 - 00061440 _____ ( ) C:\Windows\system32\rsnpstd.dll
2015-05-05 18:57 - 2005-04-20 17:16 - 00036864 _____ ( ) C:\Windows\system32\vsnpstd.dll
2015-05-05 18:57 - 2005-02-01 19:29 - 00020480 _____ () C:\Windows\usnpstd.exe
2015-05-05 18:57 - 2004-02-16 13:59 - 00061440 _____ ( ) C:\Windows\system32\csnpstd.dll
2015-05-05 18:57 - 2003-01-17 17:35 - 00013023 _____ () C:\Windows\snpstd.src
2015-05-05 18:57 - 2003-01-17 17:34 - 00015541 _____ () C:\Windows\snpstd.ini
2015-05-05 18:57 - 2002-07-03 11:44 - 00053248 _____ (Microsoft Corporation) C:\Windows\amcap.exe
2015-05-05 15:11 - 2015-05-05 15:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2015-05-05 15:11 - 2015-05-05 15:11 - 00000000 ____D () C:\ProgramData\ESET
2015-05-05 08:10 - 2015-05-05 08:10 - 00000000 ____D () C:\Program Files\VideoLAN
2015-05-05 07:43 - 2015-05-05 08:04 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\iSpy
2015-05-04 22:20 - 2014-05-14 18:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-05-04 22:20 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-05-04 22:20 - 2014-05-14 18:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-05-04 22:20 - 2014-05-14 18:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-05-04 22:20 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-05-04 22:20 - 2014-05-14 18:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-05-04 22:20 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-05-04 22:20 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-05-04 22:20 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-05-04 22:01 - 2015-05-13 19:00 - 00000728 _____ () C:\Users\SelenA\Documents\Default.sfvidcap
2015-05-04 22:01 - 2015-05-04 22:02 - 06964736 _____ () C:\Users\SelenA\Documents\Clip 0.avi
2015-05-04 21:57 - 2015-05-04 21:57 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Publish Providers
2015-05-04 21:56 - 2015-05-04 21:56 - 00002628 _____ () C:\Users\SelenA\Documents\Register Vegas Pro.htm
2015-05-04 21:49 - 2015-05-04 21:49 - 00001038 _____ () C:\Users\Public\Desktop\Vegas Pro 11.0.lnk
2015-05-04 21:49 - 2015-05-04 21:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2015-05-04 21:48 - 2015-05-04 21:48 - 00000000 ____D () C:\ProgramData\Sony
2015-05-04 21:48 - 2015-05-04 21:48 - 00000000 ____D () C:\Program Files\Sony
2015-05-04 20:58 - 2015-05-04 21:48 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Sony
2015-05-04 20:57 - 2015-05-04 21:57 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Sony
2015-05-04 20:44 - 2015-05-04 20:44 - 00001251 _____ () C:\Users\SelenA\Desktop\Movie Maker.lnk
2015-05-04 20:43 - 2015-05-04 20:43 - 00001320 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2015-05-04 20:43 - 2015-05-04 20:43 - 00001251 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2015-05-04 20:42 - 2015-05-04 20:42 - 00000000 ____D () C:\Program Files\Windows Live
2015-05-04 20:42 - 2015-05-04 20:42 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-05-04 20:41 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2015-05-04 20:41 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2015-05-04 20:41 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2015-05-04 20:41 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2015-05-04 20:40 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2015-05-04 20:39 - 2015-05-08 09:29 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Windows Live
2015-05-04 20:39 - 2015-05-04 20:39 - 00000000 ____D () C:\Program Files\Common Files\Windows Live
2015-05-03 12:24 - 2015-05-03 20:08 - 00000000 ____D () C:\Users\SelenA\Documents\Free YouTube Downloader
2015-05-03 12:23 - 2015-05-03 12:23 - 00002233 _____ () C:\Users\Public\Desktop\Free YouTube Downloader.lnk
2015-05-03 12:23 - 2015-02-15 21:01 - 01296896 _____ (Clever Components) C:\Windows\system32\clmultidx7.ocx
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-05-30 15:58 - 2014-10-19 21:02 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-30 08:40 - 2009-07-14 06:34 - 00026576 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-30 08:40 - 2009-07-14 06:34 - 00026576 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-30 08:33 - 2014-12-19 20:50 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\ViberPC
2015-05-30 08:32 - 2014-10-19 21:25 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-05-30 08:32 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-29 21:15 - 2014-11-05 23:47 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\BitComet
2015-05-29 14:46 - 2014-12-19 20:46 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Viber
2015-05-29 14:45 - 2014-12-19 20:50 - 00001002 _____ () C:\Users\SelenA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber.lnk
2015-05-29 14:45 - 2014-12-19 20:50 - 00000994 _____ () C:\Users\SelenA\Desktop\Viber.lnk
2015-05-29 14:40 - 2015-01-20 18:18 - 00000000 ____D () C:\Program Files\Google
2015-05-29 13:48 - 2015-01-20 18:18 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Google
2015-05-29 11:12 - 2014-10-20 12:37 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\.minecraft
2015-05-28 09:09 - 2010-11-20 23:01 - 00006166 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-27 18:56 - 2015-02-12 15:24 - 00000000 ___RD () C:\Program Files\Skype
2015-05-25 08:35 - 2014-10-19 21:01 - 00000000 ____D () C:\Users\SelenA\AppData\Local\Adobe
2015-05-25 08:33 - 2014-10-19 21:02 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-05-25 08:33 - 2014-10-19 21:02 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-05-24 09:50 - 2015-01-04 14:49 - 00376488 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-23 11:46 - 2015-01-04 19:51 - 00096672 _____ () C:\Users\SelenA\AppData\Local\GDIPFONTCACHEV1.DAT
2015-05-19 08:12 - 2009-07-14 06:53 - 00032628 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-05-18 19:22 - 2015-02-12 15:24 - 00000000 ____D () C:\Users\SelenA\AppData\Roaming\Skype
2015-05-18 18:51 - 2014-12-08 19:26 - 00000000 ____D () C:\Users\SelenA\Desktop\Gimp
2015-05-16 18:14 - 2014-10-19 08:01 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-05-14 19:28 - 2015-04-15 13:01 - 00000000 ____D () C:\Users\SelenA\Documents\Bandicam
2015-05-14 18:44 - 2015-02-12 15:23 - 00000000 ____D () C:\ProgramData\Skype
2015-05-14 00:07 - 2015-02-21 14:03 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-05-10 21:00 - 2014-10-19 07:54 - 00000000 ____D () C:\Users\SelenA
2015-05-05 21:44 - 2014-10-19 07:54 - 00000000 ____D () C:\Users\SelenA\AppData\Local\VirtualStore
2015-05-05 18:57 - 2014-10-19 21:34 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-05-05 18:57 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\twain_32
2015-05-05 18:52 - 2014-10-19 21:33 - 00000000 ___HD () C:\Program Files\Temp
2015-05-05 11:03 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-05-04 21:40 - 2014-12-02 12:01 - 00000000 ____D () C:\Fraps
2015-05-04 20:41 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-05-03 20:09 - 2014-11-02 22:50 - 00000000 ____D () C:\Users\SelenA\Documents\Quick YouTube Downloader
2015-05-03 12:23 - 2014-10-20 12:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quick YouTube Downloader
==================== Files in the root of some directories =======
2015-03-28 17:55 - 2015-03-28 17:55 - 0000218 _____ () C:\Users\SelenA\AppData\Local\recently-used.xbel
2014-10-29 22:44 - 2014-10-29 22:44 - 0007602 _____ () C:\Users\SelenA\AppData\Local\Resmon.ResmonCfg
2015-02-26 18:43 - 2015-02-26 18:43 - 0000252 _____ () C:\ProgramData\FastPics.log
2015-02-26 20:51 - 2015-02-26 20:51 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-24 11:59
==================== End of log ============================
I, da li je Nod nesto nasao?
1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 btaudio; system32\drivers\btaudio.sys [X]
S3 BTCOM; system32\DRIVERS\btcomport.sys [X]
S3 BTCOMBUS; System32\Drivers\btcombus.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S3 BTKRNL; system32\DRIVERS\btkrnl.sys [X]
S3 BTWDNDIS; system32\DRIVERS\btwdndis.sys [X]
S3 BTWUSB; System32\Drivers\btwusb.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfd.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\Run: [SysUtils] => C:\Windows\winsys.exe [2355712 2012-01-01] ()
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\MountPoints2: {6130e2d3-585a-11e4-b749-001167000000} - E:\AutoRun.exe
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-05-01]
2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.
3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.
Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.
Fix result of Farbar Recovery Scan Tool (x86) Version: 29-05-2015
Ran by SelenA at 2015-05-30 21:59:16 Run:1
Running from C:\Users\SelenA\Downloads
Loaded Profiles: SelenA (Available Profiles: SelenA)
Boot Mode: Normal
fixlist content:
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 btaudio; system32\drivers\btaudio.sys [X]
S3 BTCOM; system32\DRIVERS\btcomport.sys [X]
S3 BTCOMBUS; System32\Drivers\btcombus.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S3 BTKRNL; system32\DRIVERS\btkrnl.sys [X]
S3 BTWDNDIS; system32\DRIVERS\btwdndis.sys [X]
S3 BTWUSB; System32\Drivers\btwusb.sys [X]
S3 pccsmcfd; system32\DRIVERS\pccsmcfd.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\Run: [SysUtils] => C:\Windows\winsys.exe [2355712 2012-01-01] ()
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\...\MountPoints2: {6130e2d3-585a-11e4-b749-001167000000} - E:\AutoRun.exe
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-05-01]
Restore point was successfully created.
BT => Service Removed successfully.
btaudio => Service Removed successfully.
BTCOM => Service Removed successfully.
BTCOMBUS => Service Removed successfully.
Btcsrusb => Service Removed successfully.
BTKRNL => Service Removed successfully.
BTWDNDIS => Service Removed successfully.
BTWUSB => Service Removed successfully.
pccsmcfd => Service Removed successfully.
VGPU => Service Removed successfully.
HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\Software\Microsoft\Windows\CurrentVersion\Run\\SysUtils => value Removed successfully.
"HKU\S-1-5-21-4083034163-1963661737-3383224876-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6130e2d3-585a-11e4-b749-001167000000}" => key Removed successfully.
HKCR\CLSID\{6130e2d3-585a-11e4-b749-001167000000} => key not found.
C:\Windows\winsys.exe => Moved successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value Removed successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value Removed successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value Removed successfully.
C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi => Moved successfully.
EmptyTemp: => Removed 475.5 MB temporary data.
The system needed a reboot.
==== End of Fixlog 22:00:14 ====
Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by SelenA on Sat 05/30/2015 at 22:27:56.77.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\SelenA\Downloads\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
5/30/2015 10:28:45 PM Zoek.exe System Restore Point Created Successfully.
==== Empty Folders Check ======================
C:\PROGRA~2\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} deleted successfully
C:\Users\SelenA\AppData\Roaming\Publish Providers deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\PROGRA~2\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} not found
C:\Users\SelenA\.android deleted
C:\Program Files\Common Files\Wondershare deleted
C:\autoexec.tmp deleted
C:\DelFix.tmp deleted
C:\lxdx.tmp deleted
C:\Users\SelenA\AppData\Roaming\Wondershare deleted
C:\PROGRA~2\UpdaterLog.txt deleted
C:\PROGRA~2\Lavasoft\Web Companion deleted
C:\Users\SelenA\AppData\Local\Wondershare deleted
C:\Windows\wininit.ini deleted
C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default\jetpack deleted
C:\Users\Public\Desktop\Free YouTube Downloader.lnk deleted
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default
user_pref("browser.startup.homepage", "www.google.com");
==== Firefox Extensions ======================
ProfilePath: C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default
- BitComet - %ProfilePath%\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
- Topface. Meeting is easy - %ProfilePath%\extensions\jid1-XsAruLV1bBBn9Q@jetpack.xpi
- Adblock Plus - %ProfilePath%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\SelenA\AppData\Roaming\Mozilla\Firefox\Profiles\ek8i7pbk.default
DC26A2A219E08DE10320E8B7D5433690 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat
E42650C972D21F334EB0D3264941DCD7 - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
C454432F43C61767873DA91885759471 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll - NVIDIA 3D VISION
954FAB833273DCBC3254E95D2AAF0C46 - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll - NVIDIA 3D Vision
F0E80E561C3F715DB01ACCC97B72463A - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll - Photo Gallery
D31C4608FDCD9CEB756F45E91DCF64F8 - C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll - Java(TM) Platform SE 8 U45
66F9ADD8A2335EF9870AFDA4F35F492B - C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 8.0.450.14
2E661988463BCFA1B95D4DAAB9B0B6FA - C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_188.dll - Shockwave Flash
==== Chromium Look ======================
Bookmark Manager - SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik
Chrome Hotword Shared Module - SelenA\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper deleted successfully
==== Empty IE Cache ======================
C:\Users\SelenA\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
==== Empty FireFox Cache ======================
C:\Users\SelenA\AppData\Local\Mozilla\Firefox\Profiles\ek8i7pbk.default\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\SelenA\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\SelenA\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=86 folders=40 8276650 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\SelenA\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\SelenA\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted
==== EOF on Sat 05/30/2015 at 22:38:44.10 ======================