Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16.05.2018 01Ran by Toni (23-05-2018 10:04:05)Running from D:\SlikeWindows 7 Ultimate Service Pack 1 (X64) (2013-09-03 13:23:15)Boot Mode: Normal============================================================================== Accounts: =============================Administrator (S-1-5-21-960558740-2251998360-3135729050-500 - Administrator - Disabled)Guest (S-1-5-21-960558740-2251998360-3135729050-501 - Limited - Disabled)Toni (S-1-5-21-960558740-2251998360-3135729050-1000 - Administrator - Enabled) => C:\Users\Toni==================== Security Center ========================(If an entry is included in the fixlist, it will be removed.)AV: Malwarebytes (Enabled - Up to date) 23007AD3-69FE-687C-2629-D584AFFAF72BAV: ESET Internet Security (Enabled - Up to date) EC1D6F37-E411-475A-DF50-12FF7FE4AC70AS: ESET Internet Security (Enabled - Up to date) 577C8ED3-C22B-48D4-E5E0-298D0463E6CDAS: Malwarebytes (Enabled - Up to date) 98619B37-4FC4-67F2-1C99-EEF6D47DBD96AS: Windows Defender (Enabled - Out of date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46AS: IObit Malware Fighter (Enabled - Up to date) 0B81F5C2-9C9F-1DB6-0BF9-02BFE6D63BAFFW: ESET Firewall (Disabled) D426EE12-AE7E-4602-F40F-BBCA8137EB0B==================== Installed Programs ======================(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)4K Video Downloader 4.1 (HKLM-x32\...\4K Video Downloader_is1) (Version: 4.1.2.2075 - Open Media LLC)7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )ACDSee 10 Photo Manager (HKLM-x32\...\F8B98EB6-FC06-45BF-87D4-9784E0408611) (Version: 10.0.219 - ACD Systems International)Adobe Acrobat Reader DC (HKLM-x32\...\AC76BA86-7AD7-1033-7B44-AC0F074E4100) (Version: 18.011.20040 - Adobe Systems Incorporated)Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.5.1.17730 - Adobe Systems Inc.)Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.4.980 - Adobe Systems Incorporated.)Adobe Flash Player 21 ActiveX (HKLM-x32\...\FA944726-00F8-43B5-BB97-33E6FF409C22) (Version: 21.0.0.242 - Adobe Systems Incorporated)Adobe Flash Player 28 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 28.0.0.137 - Adobe Systems Incorporated)Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)Advanced Wheel Mouse 6.0.0.010 (HKLM-x32\...\WheelMouse) (Version: - )BufferChm (HKLM-x32\...\2EEA7AA4-C203-4b90-A34F-19FB7EF1C81C) (Version: 130.0.327.000 - Hewlett-Packard) HiddenD3DX10 (HKLM-x32\...\E09C4DB7-630C-4F06-A631-8EA7239923AF) (Version: 15.4.2368.0902 - Microsoft) HiddenDAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0335 - Disc Soft Ltd)DocProc (HKLM-x32\...\9B362566-EC1B-4700-BB9C-EC661BDE2175) (Version: 13.0.0.0 - Hewlett-Packard) HiddenDropbox (HKU\S-1-5-21-960558740-2251998360-3135729050-1000\...\Dropbox) (Version: 50.4.71 - Dropbox, Inc.)eMule (HKLM-x32\...\eMule) (Version: - )ESET Security (HKLM\...\B489BC2D-0079-4631-97BF-CA2378299D43) (Version: 11.0.159.9 - ESET, spol. s r.o.)FastStone Image Viewer 5.2 (HKLM-x32\...\FastStone Image Viewer) (Version: 5.2 - FastStone Soft)Free Audio Converter (HKLM-x32\...\Free Audio Converter_is1) (Version: 5.0.68.1117 - DVDVideoSoft Ltd.)Free Audio Editor (HKLM-x32\...\Free Audio Editor_is1) (Version: 1.1.35.831 - Digital Wave Ltd)Free File Viewer 2014 (HKLM-x32\...\FreeFileViewer_is1) (Version: 2014.2.16.0 - Bitberry Software) C:\Users\Toni\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\C3BC25C0-FCD3-4F01-AFDD-41373F017C9A\InprocServer32 -> C:\Users\Toni\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll => No FileCustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\E8CF3E55-F919-49D9-ABC0-948E6CB34B9F\InprocServer32 -> C:\Users\Toni\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll (Google Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\EA724FD3-844D-43A9-A8C9-A5BC35FC20E4\InprocServer32 -> C:\Users\Toni\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll (Google Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\F09690BD-582D-4439-B6ED-5C2545D2F424\InprocServer32 -> C:\Windows\system32\kernel32.dll (Microsoft Corporation)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\FB314ED9-A251-47B7-93E1-CDD82E34AF8B\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\FB314EDA-A251-47B7-93E1-CDD82E34AF8B\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\FB314EDB-A251-47B7-93E1-CDD82E34AF8B\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\FB314EDC-A251-47B7-93E1-CDD82E34AF8B\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\FB314EDD-A251-47B7-93E1-CDD82E34AF8B\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\FB314EDE-A251-47B7-93E1-CDD82E34AF8B\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\FB314EDF-A251-47B7-93E1-CDD82E34AF8B\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\FB314EE0-A251-47B7-93E1-CDD82E34AF8B\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\FB314EE1-A251-47B7-93E1-CDD82E34AF8B\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\FB314EE2-A251-47B7-93E1-CDD82E34AF8B\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)CustomCLSID: HKU\S-1-5-21-960558740-2251998360-3135729050-1000_Classes\CLSID\FBC9D74C-AF55-4309-9FB2-C426E071637F\InprocServer32 -> C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.)ShellIconOverlayIdentifiers: [ IMFSafeBox] -> 0BB81440-5F42-4480-A5F7-770A6F439FC8 => D:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2018-03-20] (IObit)ShellIconOverlayIdentifiers: [ DropboxExt01] -> FB314ED9-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers: [ DropboxExt02] -> FB314EDF-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers: [ DropboxExt03] -> FB314EE1-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers: [ DropboxExt04] -> FB314EDB-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers: [ DropboxExt05] -> FB314EDA-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers: [ DropboxExt06] -> FB314EDC-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers: [ DropboxExt07] -> FB314EDD-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers: [ DropboxExt08] -> FB314EE0-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers: [ DropboxExt09] -> FB314EE2-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers: [ DropboxExt10] -> FB314EDE-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers: [00avast] -> 472083B0-C522-11CF-8763-00608CC02F24 => -> No FileShellIconOverlayIdentifiers: [IDM Shell Extension] -> CDC95B92-E27C-4745-A8C5-64A52A78855D => -> No FileShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> FB314ED9-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> FB314EDF-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> FB314EE1-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> FB314EDB-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> FB314EDA-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> FB314EDC-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> FB314EDD-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> FB314EE0-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> FB314EE2-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> FB314EDE-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> FB314ED9-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> FB314EDA-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> FB314EDD-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> FB314EDE-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> FB314EDB-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> FB314EDF-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> FB314EDC-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> FB314EE0-A251-47B7-93E1-CDD82E34AF8B => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ContextMenuHandlers1-x32: [7-Zip] -> 23170F69-40C1-278A-1000-000100020000 => D:\Program Files (x86)\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov)ContextMenuHandlers1-x32: [B1ShellEx] -> [CC]76CF52AF-2B2D-4999-8CE8-495187BB11CD => -> No FileContextMenuHandlers1-x32: [ESET Security Shell] -> B089FE88-FB52-11D3-BDF1-0050DA34150D => D:\Program Files\ESET\ESET Security\shellExt.dll [2017-12-18] (ESET)ContextMenuHandlers1-x32: [IObit Malware Fighter] -> 0BB81440-5F42-4480-A5F7-770A6F439FC8 => D:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2018-03-20] (IObit)ContextMenuHandlers1-x32: [IObitUnstaler] -> B19ED566-D419-470b-B111-3C89040BC027 => D:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2018-01-25] (IObit)ContextMenuHandlers1-x32: [WinRAR] -> B41DB860-64E4-11D2-9906-E49FADC173CA => D:\Program Files (x86)\WinRAR\rarext64.dll [2014-06-10] (Alexander Roshal)ContextMenuHandlers1-x32-x32: [WinRAR32] -> B41DB860-8EE4-11D2-9906-E49FADC173CA => D:\Program Files (x86)\WinRAR\rarext.dll [2014-06-10] (Alexander Roshal)ContextMenuHandlers1-x32-x32: [WinZip] -> E0D79304-84BE-11CE-9641-444553540000 => D:\Program Files (x86)\WinZip\WZSHLS64.DLL [2007-04-11] (WinZip Computing LP)ContextMenuHandlers2: [ESET Security Shell] -> B089FE88-FB52-11D3-BDF1-0050DA34150D => D:\Program Files\ESET\ESET Security\shellExt.dll [2017-12-18] (ESET)ContextMenuHandlers3: [00avast] -> [CC]472083B0-C522-11CF-8763-00608CC02F24 => -> No FileContextMenuHandlers4-x32: [7-Zip] -> 23170F69-40C1-278A-1000-000100020000 => D:\Program Files (x86)\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov)ContextMenuHandlers4-x32: [IObit Malware Fighter] -> 0BB81440-5F42-4480-A5F7-770A6F439FC8 => D:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2018-03-20] (IObit)ContextMenuHandlers4-x32: [IObitUnstaler] -> B19ED566-D419-470b-B111-3C89040BC027 => D:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2018-01-25] (IObit)ContextMenuHandlers4-x32-x32: [WinRAR] -> B41DB860-8EE4-11D2-9906-E49FADC173CA => D:\Program Files (x86)\WinRAR\rarext.dll [2014-06-10] (Alexander Roshal)ContextMenuHandlers4-x32-x32-x32: [WinRAR32] -> B41DB860-8EE4-11D2-9906-E49FADC173CA => D:\Program Files (x86)\WinRAR\rarext.dll [2014-06-10] (Alexander Roshal)ContextMenuHandlers4-x32-x32-x32: [WinZip] -> E0D79304-84BE-11CE-9641-444553540000 => D:\Program Files (x86)\WinZip\WZSHLS64.DLL [2007-04-11] (WinZip Computing LP)ContextMenuHandlers5: [igfxcui] -> 3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4 => C:\Windows\system32\igfxpph.dll [2012-09-28] (Intel Corporation)ContextMenuHandlers6: [B1ShellEx] -> 76CF52AF-2B2D-4999-8CE8-495187BB11CD => -> No FileContextMenuHandlers6: [ESET Security Shell] -> B089FE88-FB52-11D3-BDF1-0050DA34150D => D:\Program Files\ESET\ESET Security\shellExt.dll [2017-12-18] (ESET)ContextMenuHandlers6: [IObit Malware Fighter] -> 0BB81440-5F42-4480-A5F7-770A6F439FC8 => D:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2018-03-20] (IObit)ContextMenuHandlers6: [IObitUnstaler] -> B19ED566-D419-470b-B111-3C89040BC027 => D:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2018-01-25] (IObit)ContextMenuHandlers6: [RUShellExt] -> 2C5515DC-2A7E-4BFD-B813-CACC2B685EB7 => D:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll [2012-12-29] (VS Revo Group)ContextMenuHandlers6: [WinRAR] -> B41DB860-64E4-11D2-9906-E49FADC173CA => D:\Program Files (x86)\WinRAR\rarext64.dll [2014-06-10] (Alexander Roshal)ContextMenuHandlers6-x32: [WinRAR32] -> B41DB860-8EE4-11D2-9906-E49FADC173CA => D:\Program Files (x86)\WinRAR\rarext.dll [2014-06-10] (Alexander Roshal)ContextMenuHandlers6-x32: [WinZip] -> E0D79304-84BE-11CE-9641-444553540000 => D:\Program Files (x86)\WinZip\WZSHLS64.DLL [2007-04-11] (WinZip Computing LP)ContextMenuHandlers1_S-1-5-21-960558740-2251998360-3135729050-1000: [DropboxExt] -> ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ContextMenuHandlers4_S-1-5-21-960558740-2251998360-3135729050-1000: [DropboxExt] -> ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)ContextMenuHandlers5_S-1-5-21-960558740-2251998360-3135729050-1000: [DropboxExt] -> ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C => C:\Users\Toni\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.)==================== Scheduled Tasks (Whitelisted) =============(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)Task: 0541A361-7666-4F84-9AF7-621A9872FD4A - System32\Tasks\16DBA862-E512-4883-AC52-8FC6358DF923 => C:\Program Files (x86)\Mozilla Firefox\firefox.exeTask: 14DE4BBE-4B0A-4B8E-BE89-9096B14F9341 - System32\Tasks\77CC0124-945F-41D5-96B5-7A74544AAF22 => D:\Program Files (x86)\Adobe Photoshop CS5\Photoshop.exe [2010-04-07] (Adobe Systems, Incorporated)Task: 1B828061-AB93-41B5-AFC8-31358D0F66B3 - \2b2e7b30-82dc-4deb-b480-b81abc7f2791 -> No File C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-02-02] (Adobe Systems Incorporated)Task: 39C4D3F7-6431-4778-B6FF-03DA44450875 - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-960558740-2251998360-3135729050-1000Core1d0c171f753ac59 => C:\Users\Toni\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2018-05-22] (Dropbox, Inc.)Task: 3BC386BF-A85A-41BC-89A8-61CD0413955E - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exeTask: 40C54FF5-119C-4B35-8D3E-91E1E9B6CBDD - System32\Tasks\9A746B7E-CE12-450F-A190-957ECEFA2CBE => C:\Windows\system32\pcalua.exe -a E:\SETUP.EXE -d E:\Task: 75D55313-6456-4D3B-B62F-AFEDD0B6D0AB - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2016-03-22] ()Task: 915F480F-CBCC-4AEC-8F91-DD5454B4797C - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-960558740-2251998360-3135729050-1000Core => C:\Users\Toni\AppData\Local\Google\Update\GoogleUpdate.exe [2018-05-22] (Google Inc.)Task: 986D79C6-672C-493D-8231-1604D2D2DFF8 - System32\Tasks\887DD254-3346-4BB4-99BC-034E23B7B3D5 => C:\Windows\system32\pcalua.exe -a C:\Windows\system32\pcwrun.exe -c "C:\Program Files (x86)\MOBIMB\MPBrowser.exe"Task: 9ED2C9C8-EE6A-4FA6-A575-B61E2FC6211E - System32\Tasks\70D3EC11-F100-451D-929B-D3ACDD42FF17 => C:\Windows\system32\pcalua.exe -a D:\install\arhiveri\WinRar\winrar_3.30_corporate_edition.exe -d D:\install\arhiveri\WinRarTask: AC4E5ACF-89F7-4220-BA21-81EE183975E2 - \Microsoft\Windows\Application Experience\AitAgent -> No File C:\Windows\system32\pcalua.exe -a "C:\Users\Toni\Desktop\BlueSoleil 6.4.275.0WithMobile\install\x86\setup.exe" -d "C:\Users\Toni\Desktop\BlueSoleil 6.4.275.0WithMobile\install\x86"Task: BF5DA17E-626D-4B7B-A445-7F4E709AFABC - System32\Tasks\499F36F3-02E2-48BA-B9F3-626A680C0753 => C:\Windows\system32\pcalua.exe -a E:\ivt6.2\setup.exe -d E:\ivt6.2Task: C1AC266B-5DBB-4972-A9BE-353DD822F2C5 - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated)Task: DCE05937-D615-4DBE-9A90-13AA71EF4464 - System32\Tasks\E1C90732-DF77-4EAF-9677-209E6FD2A386 => "c:\program files (x86)\mozilla firefox\firefox.exe" hxxp://ui.skype.com/ui/0/7.5.64.101/en/abandoninstall?page=tsMainTask: E393FBB9-43E9-4307-9AC5-8DF881BC8868 - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-960558740-2251998360-3135729050-1000UA => C:\Users\Toni\AppData\Local\Google\Update\GoogleUpdate.exe [2018-05-22] (Google Inc.)Task: E7329D54-471F-4432-9751-37FA47561B27 - System32\Tasks\476AD3D8-47E5-47D4-81AE-3C6E4513398B => D:\Program Files (x86)\Adobe Photoshop CS5\Photoshop.exe [2010-04-07] (Adobe Systems, Incorporated)Task: EE02C1C0-A375-4445-8EAB-68160FDBC46E - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-960558740-2251998360-3135729050-1000UA => C:\Users\Toni\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2018-05-22] (Dropbox, Inc.)Task: FE68D9A6-45FB-4192-BF09-5CC113A47F0A - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\rundll32.exe aepdu.dll,AePduRunUpdate -nolegacyTask: FFD2A248-92A5-48F4-A044-22C51A9A496F - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-960558740-2251998360-3135729050-1000Core1d0c171f753ac59.job => C:\Users\Toni\AppData\Local\Dropbox\Update\DropboxUpdate.exeTask: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-960558740-2251998360-3135729050-1000UA.job => C:\Users\Toni\AppData\Local\Dropbox\Update\DropboxUpdate.exe==================== Shortcuts & WMI ========================(The entries could be listed to be restored or removed.)==================== Loaded Modules (Whitelisted) ==============2009-09-01 05:31 - 2009-09-01 05:31 - 000022016 _____ () C:\Windows\System32\ssp2ml6.dll2017-04-03 16:39 - 2018-04-03 19:04 - 002288072 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll2018-04-06 18:55 - 2018-03-12 15:09 - 002300192 _____ () D:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll2018-04-06 18:54 - 2018-03-27 13:47 - 002492704 _____ () D:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll2018-05-22 21:40 - 2018-05-21 19:06 - 000847688 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\dropbox_watchdog.dll2018-05-22 21:40 - 2018-05-21 19:06 - 002079048 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\dropbox_crashpad.dll2018-05-22 21:40 - 2018-05-21 19:05 - 000100312 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\_ctypes.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000018896 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\select.pyd2018-05-22 21:40 - 2018-05-21 19:09 - 000020808 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000035808 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000694232 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\unicodedata.pyd2018-05-22 21:39 - 2018-05-21 19:08 - 000021856 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000130520 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd2018-05-22 21:39 - 2018-05-21 19:08 - 001845600 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd2018-05-22 21:39 - 2018-05-21 19:08 - 000022880 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd2018-05-22 21:40 - 2018-05-21 19:06 - 000116696 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\pywintypes27.dll2018-05-22 21:40 - 2018-05-21 19:05 - 000105944 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32api.pyd2018-05-22 21:40 - 2018-05-21 19:10 - 000022872 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winffi.crt.compiled._winffi_crt.pyd2018-05-22 21:40 - 2018-05-21 19:08 - 000063312 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000024536 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32event.pyd2018-05-22 21:40 - 2018-05-21 19:08 - 000077120 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\fastpath.pyd2018-05-22 21:40 - 2018-05-21 19:06 - 000392664 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\pythoncom27.dll2018-05-22 21:40 - 2018-05-21 19:05 - 000043480 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32process.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000020952 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\mmapfile.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000124888 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32file.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000114136 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32security.pyd2018-05-22 21:40 - 2018-05-21 19:09 - 000392520 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd2018-05-22 21:40 - 2018-05-21 19:10 - 000028000 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winffi.kernel32.compiled._winffi_kernel32.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000024024 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32clipboard.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000175576 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32gui.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000030168 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32pipe.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000026072 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32job.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000048600 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32service.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000057816 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32evtlog.pyd2018-05-22 21:39 - 2018-05-21 19:08 - 000021840 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd2018-05-22 21:40 - 2018-05-21 19:10 - 000023376 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winshell.compiled._winshell.pyd2018-05-22 21:39 - 2018-05-21 19:08 - 000022864 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\crashpad.compiled._Crashpad.pyd2018-05-22 21:40 - 2018-05-21 19:09 - 000066400 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winenumhandles.compiled._WinEnumHandles.pyd2018-05-22 21:40 - 2018-05-21 19:10 - 000025440 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000145880 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\pyexpat.pyd2018-05-22 21:40 - 2018-05-21 19:09 - 003863880 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000084944 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\sip.pyd2018-05-22 21:40 - 2018-05-21 19:08 - 001798464 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd2018-05-22 21:40 - 2018-05-21 19:08 - 001959232 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000028632 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32ts.pyd2018-05-22 21:40 - 2018-05-21 19:09 - 000155472 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd2018-05-22 21:40 - 2018-05-21 19:08 - 000521544 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd2018-05-22 21:40 - 2018-05-21 19:09 - 000051024 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineCore.pyd2018-05-22 21:40 - 2018-05-21 19:08 - 000043336 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd2018-05-22 21:40 - 2018-05-21 19:09 - 000131400 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd2018-05-22 21:40 - 2018-05-21 19:09 - 000219984 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd2018-05-22 21:40 - 2018-05-21 19:08 - 000204104 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000060888 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32print.pyd2018-05-22 21:40 - 2018-05-21 19:10 - 000054616 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winrpcserver.compiled._RPCServer.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000024024 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\win32profile.pyd2018-05-22 21:40 - 2018-05-21 19:10 - 000022880 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winffi.user32.compiled._winffi_user32.pyd2018-05-22 21:40 - 2018-05-21 19:10 - 000022368 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winffi.iphlpapi.compiled._winffi_iphlpapi.pyd2018-05-22 21:40 - 2018-05-21 19:10 - 000021856 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winffi.winerror.compiled._winffi_winerror.pyd2018-05-22 21:40 - 2018-05-21 19:10 - 000022368 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winffi.wininet.compiled._winffi_wininet.pyd2018-05-22 21:39 - 2018-05-21 19:08 - 000027496 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd2018-05-22 21:40 - 2018-05-21 19:05 - 000349144 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winxpgui.pyd2018-05-22 21:40 - 2018-05-21 19:10 - 000023904 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd2018-05-22 21:40 - 2018-05-21 19:08 - 000025432 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd2018-05-22 21:40 - 2018-05-21 19:06 - 000036312 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\librsync.dll2018-05-22 21:40 - 2018-05-21 19:10 - 000021856 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\winffi.advapi32.compiled._winffi_advapi32.pyd2018-05-22 21:40 - 2018-05-21 19:08 - 000181064 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL2018-05-22 21:40 - 2018-05-21 19:09 - 000030544 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\wind3d11.compiled._wind3d11.pyd2018-05-22 21:40 - 2018-05-21 19:08 - 000024384 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\libEGL.DLL2018-05-22 21:40 - 2018-05-21 19:08 - 001638208 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\libGLESv2.dll2018-05-22 21:40 - 2018-05-21 19:08 - 000546632 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd2018-05-22 21:40 - 2018-05-21 19:08 - 000359744 _____ () C:\Users\Toni\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd2018-05-22 08:29 - 2017-05-22 11:16 - 000442144 _____ () D:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl2018-05-22 08:29 - 2017-05-22 11:16 - 000210720 _____ () D:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl2018-05-22 08:29 - 2017-05-22 11:16 - 000059680 _____ () D:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl2018-05-22 08:29 - 2018-01-25 17:02 - 000899856 _____ () D:\Program Files (x86)\IObit\IObit Uninstaller\webres.dll2018-05-22 08:29 - 2018-01-25 17:01 - 000631568 _____ () D:\Program Files (x86)\IObit\IObit Uninstaller\ProductStatistics.dll2018-05-22 08:29 - 2017-05-22 11:16 - 000524064 _____ () D:\Program Files (x86)\IObit\IObit Uninstaller\sqlite3.dll2013-07-10 18:07 - 2013-07-10 18:07 - 000756888 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL==================== Alternate Data Streams (Whitelisted) =========(If an entry is included in the fixlist, only the ADS will be removed.)AlternateDataStreams: C:\ProgramData\TEMP:05E9FFE5 [122]AlternateDataStreams: C:\ProgramData\TEMP:DBC416F8 [144]==================== Safe Mode (Whitelisted) ===================(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mbamchameleon => ""="Driver"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mbamchameleon => ""="Driver"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WRkrn => ""="Driver"HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WRSVC => ""="Service"==================== Association (Whitelisted) ===============(If an entry is included in the fixlist, the registry item will be restored to default or removed.)==================== Internet Explorer trusted/restricted ===============(If an entry is included in the fixlist, it will be removed from the registry.)IE restricted site: HKU\.DEFAULT\...\europacasino.com -> www.europacasino.comIE trusted site: HKU\S-1-5-21-960558740-2251998360-3135729050-1000\...\fnac.com -> hxxps://livre.fnac.comIE restricted site: HKU\S-1-5-21-960558740-2251998360-3135729050-1000\...\europacasino.com -> www.europacasino.comIE restricted site: HKU\S-1-5-21-960558740-2251998360-3135729050-1000\...\skype.com -> hxxps://apps.skype.comIE restricted site: HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\...\europacasino.com -> www.europacasino.comIE restricted site: HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415-ED1FC765-E35E-4C3D-BF15-2C2B11260CE4-05232018081547519\...\europacasino.com -> www.europacasino.com==================== Hosts content: ==========================(If needed Hosts: directive could be included in the fixlist to reset Hosts.)2015-03-21 20:59 - 2016-12-20 22:50 - 000000583 ____R C:\Windows\system32\Drivers\etc\hosts127.0.0.1 activate.adobe.com127.0.0.1 practivate.adobe.com127.0.0.1 ereg.adobe.com127.0.0.1 activate.wip3.adobe.com127.0.0.1 wip3.adobe.com127.0.0.1 3dns-3.adobe.com127.0.0.1 3dns-2.adobe.com127.0.0.1 adobe-dns.adobe.com127.0.0.1 adobe-dns-2.adobe.com127.0.0.1 adobe-dns-3.adobe.com127.0.0.1 ereg.wip3.adobe.com127.0.0.1 activate-sea.adobe.com127.0.0.1 wwis-dubc1-vip60.adobe.com127.0.0.1 activate-sjc0.adobe.com\127.0.0.1 na1r.services.adobe.com127.0.0.1 hlrcv.stage.adobe.com127.0.0.1 lmlicenses.wip4.adobe.com127.0.0.1 lm.licenses.adobe.com==================== Other Areas ============================(Currently there is no automatic fix for this section.)HKU\S-1-5-21-960558740-2251998360-3135729050-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Toni\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpgDNS Servers: 208.67.222.222 - 208.67.220.220HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)Windows Firewall is enabled.==================== MSCONFIG/TASK MANAGER disabled items ==MSCONFIG\Services: BlueSoleilCS => 2MSCONFIG\Services: BsHelpCS => 3MSCONFIG\Services: MBAMScheduler => 2MSCONFIG\Services: SDScannerService => 3MSCONFIG\Services: SDUpdateService => 3MSCONFIG\Services: SDWSCService => 2MSCONFIG\Services: uSHAREitSvc => 3MSCONFIG\Services: WTService => 2MSCONFIG\Services: wudfsvc => 3MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^errorlog.txt => C:\Windows\pss\errorlog.txt.CommonStartupMSCONFIG\startupfolder: C:^Users^Toni^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^errorlog.txt => C:\Windows\pss\errorlog.txt.StartupMSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorunMSCONFIG\startupreg: Dropbox Update => "C:\Users\Toni\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /cMSCONFIG\startupreg: Google Update => "C:\Users\Toni\AppData\Local\Google\Update\GoogleUpdate.exe" /cMSCONFIG\startupreg: NextLive => C:\Windows\SysWOW64\rundll32.exe "C:\Users\Toni\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m lMSCONFIG\startupreg: RTHDVCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -sMSCONFIG\startupreg: WheelMouse => C:\ADVANC1\wh_exec.exe==================== FirewallRules (Whitelisted) ===============(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)FirewallRules: [ScanManagement-WSD-Out-TCP] => (Allow) %SystemRoot%\System32\mmc.exeFirewallRules: [ScanManagement-RCWS-Out-TCP] => (Allow) %SystemRoot%\System32\mmc.exeFirewallRules: [TCP Query User85D12854-F0F5-44F4-969C-E0186D57F58AC:\users\toni\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\toni\appdata\roaming\dropbox\bin\dropbox.exeFirewallRules: [UDP Query UserE3148D2D-1E2F-46FE-BC33-7C83E0EE51CBC:\users\toni\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\toni\appdata\roaming\dropbox\bin\dropbox.exe==================== Restore Points =========================ATTENTION: System Restore is disabled==================== Faulty Device Manager Devices =============Name:Description:Class Guid:Manufacturer:Service:Problem: : The drivers for this device are not installed. (Code 28)Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.Name: Microsoft Teredo Tunneling AdapterDescription: Microsoft Teredo Tunneling AdapterClass Guid: 4d36e972-e325-11ce-bfc1-08002be10318Manufacturer: MicrosoftService: tunnelProblem: : This device is disabled. (Code 22)Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.Name:Description:Class Guid:Manufacturer:Service:Problem: : This device is disabled. (Code 22)Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.==================== Event log errors: =========================Application errors:==================Error: (05/22/2018 09:56:27 PM) (Source: Application Error) (EventID: 1000) (User: )Description: Faulting application name: plugin-container.exe, version: 52.8.0.6694, time stamp: 0x5ae79b5aFaulting module name: mozglue.dll, version: 52.8.0.6694, time stamp: 0x5ae796cfException code: 0x80000003Fault offset: 0x0000ff0fFaulting process id: 0x10b8Faulting application start time: 0x01d3f206111cafe3Faulting application path: D:\Program Files (x86)\Mozilla Firefox\plugin-container.exeFaulting module path: D:\Program Files (x86)\Mozilla Firefox\mozglue.dllReport Id: 35c96c5b-5dfa-11e8-84f6-d43d7e59e09aError: (05/22/2018 09:49:44 PM) (Source: SideBySide) (EventID: 80) (User: )Description: Activation context generation failed for "C:\Users\Toni\Desktop\autoruns\Autoruns.exe".Error in manifest or policy file "" on line .A component version required by the application conflicts with another component version already active.Conflicting components are:.Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.Error: (05/22/2018 09:49:43 PM) (Source: SideBySide) (EventID: 80) (User: )Description: Activation context generation failed for "C:\Users\Toni\Desktop\autoruns\autorunsc.exe".Error in manifest or policy file "" on line .A component version required by the application conflicts with another component version already active.Conflicting components are:.Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.Error: (05/22/2018 09:37:38 PM) (Source: SideBySide) (EventID: 80) (User: )Description: Activation context generation failed for "D:\Tekstovi\razno\install\autoruns.exe".Error in manifest or policy file "" on line .A component version required by the application conflicts with another component version already active.Conflicting components are:.Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.Error: (05/22/2018 09:31:25 PM) (Source: Outlook) (EventID: 34) (User: )Description: Failed to get the Crawl Scope Manager with error=0x80070015.Error: (05/22/2018 09:28:49 PM) (Source: Windows Search Service) (EventID: 7042) (User: )Description: The Windows Search Service is being stopped because there is a problem with the indexer: The catalog is corrupt.Details: The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)Error: (05/22/2018 09:28:49 PM) (Source: Windows Search Service) (EventID: 7010) (User: )Description: The index cannot be initialized.Details: The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)Error: (05/22/2018 09:28:49 PM) (Source: Windows Search Service) (EventID: 3058) (User: )Description: The application cannot be initialized.Context: Windows ApplicationDetails: The content index catalog is corrupt. (HRESULT : 0xc0041801) (0xc0041801)System errors:=============Error: (05/23/2018 08:12:51 AM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: The following boot-start or system-start driver(s) failed to load:aiptektpError: (05/22/2018 09:48:08 PM) (Source: Service Control Manager) (EventID: 7026) (User: )Description: The following boot-start or system-start driver(s) failed to load:aiptektpError: (05/22/2018 09:45:51 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)Description: The following fatal alert was received: 70.Error: (05/22/2018 09:45:50 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)Description: The following fatal alert was received: 70.Error: (05/22/2018 09:45:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: )Description: The IMF Service service terminated unexpectedly. It has done this 1 time(s).Error: (05/22/2018 09:45:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: )Description: The Wacom Professional Service service terminated unexpectedly. It has done this 1 time(s).Error: (05/22/2018 09:45:24 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)Description: The following fatal alert was received: 70.Error: (05/22/2018 09:45:24 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)Description: The following fatal alert was received: 70.Windows Defender:===================================Date: 2017-07-29 13:14:46.511Description:Windows Defender has detected spyware or other potentially unwanted software.For more information please see the following: =37020&name=Trojan:Win32/Ircbrute!gmb&threatid=203707Name:Trojan:Win32/Ircbrute!gmbID:203707Severity:SevereCategory:TrojanPath Found:file:C:\Users\Toni\AppData\Local\Temp\Rar$EXa0.260\NOD32 2.70.32 + Crack\Crack.exe;file:C:\Users\Toni\AppData\Local\Temp\Rar$EXa0.916\NOD32 2.70.32 + Crack\Crack.exe;file:C:\Users\Toni\Desktop\NOD32 2.70.32 + Crack\Crack.exeDetection Type:ConcreteDetection Source:SystemStatus:UnknownProcess Name:Date: 2017-07-29 13:10:06.047Description:Windows Defender has detected spyware or other potentially unwanted software.For more information please see the following: =37020&name=Trojan:Win32/Ircbrute!gmb&threatid=203707Name:Trojan:Win32/Ircbrute!gmbID:203707Severity:SevereCategory:TrojanPath Found:file:C:\Users\Toni\AppData\Local\Temp\Rar$EXa0.260\NOD32 2.70.32 + Crack\Crack.exe;file:C:\Users\Toni\AppData\Local\Temp\Rar$EXa0.916\NOD32 2.70.32 + Crack\Crack.exe;file:C:\Users\Toni\Desktop\NOD32 2.70.32 + Crack\Crack.exe;process:pid:1020;process:pid:2300;process:pid:316Detection Type:ConcreteDetection Source:Real-Time ProtectionStatus:UnknownProcess Name:Date: 2017-07-29 13:09:49.683Description:Windows Defender has detected spyware or other potentially unwanted software.For more information please see the following: =37020&name=Trojan:Win32/Ircbrute!gmb&threatid=203707Name:Trojan:Win32/Ircbrute!gmbID:203707Severity:SevereCategory:TrojanPath Found:file:C:\Users\Toni\AppData\Local\Temp\Rar$EXa0.260\NOD32 2.70.32 + Crack\Crack.exe;file:C:\Users\Toni\AppData\Local\Temp\Rar$EXa0.916\NOD32 2.70.32 + Crack\Crack.exe;process:pid:1020;process:pid:2300Detection Type:ConcreteDetection Source:Real-Time ProtectionStatus:UnknownProcess Name:Date: 2017-07-29 13:08:25.030Description:Windows Defender has detected spyware or other potentially unwanted software.For more information please see the following: =37020&name=Trojan:Win32/Ircbrute!gmb&threatid=203707Name:Trojan:Win32/Ircbrute!gmbID:203707Severity:SevereCategory:TrojanPath Found:file:C:\Users\Toni\AppData\Local\Temp\Rar$EXa0.916\NOD32 2.70.32 + Crack\Crack.exe;process:pid:1020Detection Type:ConcreteDetection Source:Real-Time ProtectionStatus:UnknownProcess Name:CodeIntegrity:===================================Date: 2018-05-04 14:29:04.505Description:Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program files\ESET\ESET Security\Modules\em002_64\37235\em002_64.dll.raw because the set of per-page image hashes could not be found on the system.Date: 2018-05-04 14:29:03.280Description:Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program files\ESET\ESET Security\Modules\em002_64\37235\em002_64.dll.raw because the set of per-page image hashes could not be found on the system.Date: 2018-05-04 14:28:58.865Description:Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program files\ESET\ESET Security\Modules\em023_64\12188\em023_64.dll.raw because the set of per-page image hashes could not be found on the system.Date: 2018-05-04 14:28:58.689Description:Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program files\ESET\ESET Security\Modules\em023_64\12188\em023_64.dll.raw because the set of per-page image hashes could not be found on the system.Date: 2018-05-04 14:28:48.993Description:Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program files\ESET\ESET Security\Modules\em002_64\37261\em002_64.dll.raw because the set of per-page image hashes could not be found on the system.Date: 2018-05-04 14:28:47.833Description:Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program files\ESET\ESET Security\Modules\em002_64\37261\em002_64.dll.raw because the set of per-page image hashes could not be found on the system.Date: 2018-05-04 14:28:44.065Description:Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program files\ESET\ESET Security\Modules\em023_64\12201\em023_64.dll.raw because the set of per-page image hashes could not be found on the system.Date: 2018-05-04 14:28:43.860Description:Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program files\ESET\ESET Security\Modules\em023_64\12201\em023_64.dll.raw because the set of per-page image hashes could not be found on the system.==================== Memory info ===========================Processor: Intel Pentium CPU G2020 @ 2.90GHzPercentage of memory in use: 54%Total physical RAM: 3989.46 MBAvailable physical RAM: 1800.69 MBTotal Virtual: 7977.12 MBAvailable Virtual: 5778.45 MB==================== Drives ================================Drive c: () (Fixed) (Total:97.56 GB) (Free:56.05 GB) NTFSDrive d: () (Fixed) (Total:368.1 GB) (Free:67.18 GB) NTFS\\?\Volumee5003e40-14e4-11e3-8e02-806e6f6e6963\ (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS==================== MBR & Partition Table ==========================================================================Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: C087C087)Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)Partition 2: (Not Active) - (Size=97.6 GB) - (Type=07 NTFS)Partition 3: (Not Active) - (Size=368.1 GB) - (Type=07 NTFS)==================== End of Addition.txt ============================
ESET NOD32 2.70.32 PORTABLE SCANNER FIXED!!! setup free
2ff7e9595c
Comments