Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06.06.2018 01Ran by Toni (administrator) on TONI-PC (15-06-2018 22:32:45)Running from D:\SlikeLoaded Profiles: Toni (Available Profiles: Toni)Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)Internet Explorer Version 11 (Default browser: FF)Boot Mode: NormalTutorial for Farbar Recovery Scan Tool: -frst-tutorial-how-to-use-farbar-recovery-scan-tool/==================== Processes (Whitelisted) =================(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)(ESET) D:\Program files\ESET\ESET Security\ekrn.exe(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe(Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe(Malwarebytes) D:\Program files\Malwarebytes\Anti-Malware\MBAMService.exe(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe(MyCity) D:\Program Files (x86)\MCShield\MCShieldRTM.exe() C:\Advanced Wheel Mouse\wh_exec.exe(ESET) D:\Program files\ESET\ESET Security\egui.exe(Malwarebytes) D:\Program files\Malwarebytes\Anti-Malware\mbamtray.exe(Adobe Systems, Incorporated) D:\Program Files (x86)\Adobe Photoshop CS5\Photoshop.exe(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe(Mozilla Corporation) D:\Program Files (x86)\Mozilla Firefox\firefox.exe(Mozilla Corporation) D:\Program Files (x86)\Mozilla Firefox\firefox.exe(Microsoft Corporation) C:\Windows\System32\dllhost.exe==================== Registry (Whitelisted) ===========================(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)HKLM\...\Run: [egui] => D:\Program Files\ESET\ESET Security\ecmds.exe [324352 2017-12-18] (ESET)HKLM\...\Run: [ctfmon] => C:\Windows\system32\CTFMON.EXE [9728 2009-07-14] (Microsoft Corporation)HKLM-x32\...\Run: [WheelMouse] => C:\Advanced Wheel Mouse\wh_exec.exe [147456 2010-05-26] ()Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE ->HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE ->HKU\S-1-5-21-960558740-2251998360-3135729050-1000\...\Run: [MCShield Monitor] => D:\Program Files (x86)\MCShield\mcshieldrtm.exe [650816 2014-04-11] (MyCity)HKU\S-1-5-21-960558740-2251998360-3135729050-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->Startup: C:\Users\Toni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ctfmon.exe [2009-07-14] (Microsoft Corporation)GroupPolicy: Restriction - Chrome DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL =SearchScopes: HKU\S-1-5-20 -> 0191A6B0-1154-4C22-9182-23A95BBE92D9 URL = hxxp://www.google.com/search?q=searchTermsBHO: No Name -> 9030D464-4C02-4ABF-8ECC-5164760863C6 -> No FileFireFox:========FF ProfilePath: C:\Users\Toni\AppData\Roaming\Mozilla\Firefox\Profiles\vee4hv2c.default-1466108301541 [2018-06-15]FF Homepage: Mozilla\Firefox\Profiles\vee4hv2c.default-1466108301541 -> hxxps://www.google.rs/webhp?hl=sr&sa=X&ved=0ahUKEwjk_Pi9xYraAhXCJZoKHUXSAGAQPAgDFF NetworkProxy: Mozilla\Firefox\Profiles\vee4hv2c.default-1466108301541 -> type", 0FF Extension: (F.B Purity - Cleans up Facebook (WX)) - C:\Users\Toni\AppData\Roaming\Mozilla\Firefox\Profiles\vee4hv2c.default-1466108301541\Extensions\fbpElectroWebExt@fbpurity.com.xpi [2018-06-03]FF Extension: (Dictionnaire français) - C:\Users\Toni\AppData\Roaming\Mozilla\Firefox\Profiles\vee4hv2c.default-1466108301541\Extensions\fr-dicollecte@dictionaries.addons.mozilla.org [2018-05-11] [Legacy]FF Extension: (DuckDuckGo Plus) - C:\Users\Toni\AppData\Roaming\Mozilla\Firefox\Profiles\vee4hv2c.default-1466108301541\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2018-04-11] [Legacy]FF Extension: (Default) - C:\Users\Toni\AppData\Roaming\Mozilla\Firefox\Profiles\vee4hv2c.default-1466108301541\Extensions\972ce4c6-7e08-4474-a285-3208198ce6fd.xpi [2018-05-06] [Legacy] [not signed]FF Extension: (Video DownloadHelper) - C:\Users\Toni\AppData\Roaming\Mozilla\Firefox\Profiles\vee4hv2c.default-1466108301541\Extensions\b9db16a4-6edc-47ec-a1f4-b86292ed211d.xpi [2018-03-07]FF Extension: (JDownloader Browser Solver Extension) - C:\Users\Toni\AppData\Roaming\Mozilla\Firefox\Profiles\vee4hv2c.default-1466108301541\Extensions\c4163d03-7c8a-410b-9753-379b6c29b50e.xpi [2017-12-08]FF Extension: (Adblock Plus) - C:\Users\Toni\AppData\Roaming\Mozilla\Firefox\Profiles\vee4hv2c.default-1466108301541\Extensions\d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d.xpi [2018-05-17]FF Extension: (Greasemonkey) - C:\Users\Toni\AppData\Roaming\Mozilla\Firefox\Profiles\vee4hv2c.default-1466108301541\Extensions\e4a8a97b-f2ed-450b-b12d-ee082ba24781.xpi [2018-02-09]FF HKLM\...\Firefox\Extensions: [soda_pdf_8_conv@sodapdf.com] - C:\Program Files\Soda PDF 8\resources\sodapdf8firefoxextension => not foundFF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - D:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not foundFF HKU\S-1-5-21-960558740-2251998360-3135729050-1000\...\Firefox\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Toni\AppData\Roaming\IDM\idmmzcc5FF Extension: (IDM CC) - C:\Users\Toni\AppData\Roaming\IDM\idmmzcc5 [2016-05-25] [Legacy] [not signed]FF HKU\S-1-5-21-960558740-2251998360-3135729050-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Toni\AppData\Roaming\IDM\idmmzcc5FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_28_0_0_137.dll [2018-02-02] ()FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [No File]FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_28_0_0_137.dll [2018-02-02] ()FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> D:\Program Files (x86)\Java\bin\dtplugin\npDeployJava1.dll [2017-05-22] (Oracle Corporation)FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> D:\Program Files (x86)\Java\bin\plugin2\npjp2.dll [2017-05-22] (Oracle Corporation)FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [No File]FF Plugin-x32: @nokia.com/EnablerPlugin -> C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2014-11-19] ( )FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-05-11] (Adobe Systems Inc.)FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [No File]FF Plugin HKU\.DEFAULT: @hola.org/FlashPlayer -> C:\Users\Toni\AppData\Local\Hola\firefox_hola\app\flash\NPSWF32_18_0_0_232.dll [No File]FF Plugin HKU\.DEFAULT: @hola.org/vlc -> C:\Users\Toni\AppData\Local\Hola\firefox_hola\app\vlc\npvlc.dll [No File]FF Plugin HKU\S-1-5-21-960558740-2251998360-3135729050-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\Toni\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)FF Plugin HKU\S-1-5-21-960558740-2251998360-3135729050-1000: @talk.google.com/O1DPlugin -> C:\Users\Toni\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google)FF Plugin HKU\S-1-5-21-960558740-2251998360-3135729050-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Toni\AppData\Local\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-22] (Google Inc.)FF Plugin HKU\S-1-5-21-960558740-2251998360-3135729050-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Toni\AppData\Local\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-22] (Google Inc.)FF Plugin HKU\S-1-5-21-960558740-2251998360-3135729050-1000: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [No File]FF Plugin ProgramFiles/Appdata: C:\Users\Toni\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google)FF Plugin ProgramFiles/Appdata: C:\Users\Toni\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google)FF Plugin ProgramFiles/Appdata: C:\Users\Toni\AppData\Roaming\mozilla\plugins\Xnpgoogletalk (1).dll [2014-10-29] (Google)FF Plugin ProgramFiles/Appdata: C:\Users\Toni\AppData\Roaming\mozilla\plugins\xnpgoogletalk (2).dll [2014-10-29] (Google)StartMenuInternet: FIREFOX.EXE - D:\Program Files (x86)\Mozilla Firefox\firefox.exe==================== Services (Whitelisted) ====================(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)R2 ekrn; D:\Program Files\ESET\ESET Security\ekrn.exe [1940584 2017-12-18] (ESET)R2 MBAMService; D:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008 2018-05-03] (Malwarebytes)S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [1816520 2018-04-03] (Wacom Technology, Corp.)===================== Drivers (Whitelisted) ======================(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)S3 61883; C:\Windows\System32\DRIVERS\61883.sys [60288 2009-07-14] (Microsoft Corporation)S3 b06diag; C:\Windows\system32\drivers\bxdiaga.sys [88104 2012-03-08] (Broadcom Corporation)S3 BFN7x64; C:\Windows\system32\drivers\Xeno7x64.sys [157288 2012-02-22] (Bigfoot Networks, Inc.)S3 BthAvrcp; C:\Windows\System32\DRIVERS\BthAvrcp.sys [29184 2009-08-13] (CSR, plc)S3 BtHidBus; C:\Windows\System32\Drivers\BtHidBus.sys [22568 2016-09-10] (IVT Corporation.)S3 btnetBUs; C:\Windows\System32\Drivers\btnetBus.sys [31480 2012-12-24] (IVT Corporation.)S3 bxfcoe; C:\Windows\system32\drivers\bxfcoe.sys [178216 2012-02-22] (Broadcom Corporation)S3 bxois; C:\Windows\system32\drivers\bxois.sys [539176 2012-02-22] (Broadcom Corporation)R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-09-03] (Disc Soft Ltd)R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [134368 2018-01-19] (ESET)R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [107328 2018-01-19] (ESET)R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [180088 2018-01-19] (ESET)R2 ekbdflt; C:\Windows\System32\DRIVERS\ekbdflt.sys [50744 2018-01-19] (ESET)R1 epfw; C:\Windows\System32\DRIVERS\epfw.sys [81880 2018-01-19] (ESET)R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [61040 2018-01-19] (ESET)R1 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [106304 2018-01-19] (ESET)R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [152184 2018-06-09] (Malwarebytes)S3 EtronSTOR; C:\Windows\System32\Drivers\EtronSTOR.sys [32512 2012-07-24] (Etron Technology Inc)R1 IMFCameraProtect; C:\Windows\system32\drivers\IMFCameraProtect.sys [26272 2018-03-20] (IObit.com)R3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [46568 2013-01-19] ()S3 IvtAudioBusSrv; C:\Windows\System32\Drivers\IvtBtBus.sys [27256 2012-12-24] (IVT Corporation.)S3 IvtBtBUs; C:\Windows\System32\Drivers\IvtBtBus.sys [27256 2012-12-24] (IVT Corporation.)S3 IvtPanBusSrv; C:\Windows\System32\Drivers\btnetBus.sys [31480 2012-12-24] (IVT Corporation.)S3 JmUsbCcgp; C:\Windows\System32\DRIVERS\jmccgp.sys [17136 2009-07-29] (JMicron Technology Corp.)R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [190696 2018-06-09] (Malwarebytes)R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [112872 2018-06-15] (Malwarebytes)R3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [44768 2018-06-15] (Malwarebytes)R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [253664 2018-06-15] (Malwarebytes)R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [94840 2018-06-15] (Malwarebytes)S3 phantomtap; C:\Windows\System32\DRIVERS\phantomtap.sys [35664 2017-07-13] (The OpenVPN Project)S3 PRODIGY; C:\Windows\System32\Drivers\PRODIGY.SYS [32377 2006-08-29] (B-phreaks) [File not signed]S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2016-02-02] (Secunia)S3 rkhdrv40; C:\Windows\SysWow64\Drivers\rkhdrv40.sys [24448 2018-05-23] () [File not signed]R0 sptd; C:\Windows\System32\Drivers\sptd.sys [386680 2015-01-06] (Duplex Secure Ltd.)U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation)R3 WacHidRouterPro; C:\Windows\System32\DRIVERS\wachidrouter.sys [115680 2018-01-12] (Wacom Technology, Corp.)R3 whfltr2k; C:\Windows\System32\DRIVERS\whfltr2k.sys [10368 2009-09-16] ()S1 aiptektp; system32\DRIVERS\aiptektp.sys [X]S3 BlueletAudio; system32\DRIVERS\blueletaudio.sys [X]S3 BT; system32\DRIVERS\btnetdrv.sys [X]S3 BTCOM; system32\DRIVERS\btcomport.sys [X]S3 Btcsrusb; System32\Drivers\btcusb.sys [X]S3 catchme; \??\C:\ComboFix\catchme.sys [X]S3 cpuz140; \??\C:\Users\Toni\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [X]
ESET Internet Security 11.0.159.9 x86 Crack
2ff7e9595c
Comments