Advertisement
Guest User

Untitled

a guest
Aug 3rd, 2014
353
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 32.82 KB | None | 0 0
  1.  
  2. Zoek.exe v5.0.0.0 Updated 03-August-2014
  3. Tool run by OldmanYo on Sun 08/03/2014 at 14:36:34.45.
  4. Microsoft Windows 8.1 Pro 6.3.9600 x64
  5. Running in: Normal Mode Internet Access Detected
  6. Launched: C:\AllokVideoFolder\zoek.com [Scan all users] [Script inserted]
  7.  
  8. ==== Older Logs ======================
  9.  
  10. C:\zoek-results2014-08-03-112635.log 26792 bytes
  11.  
  12. ==== Files Recently Created / Modified ======================
  13.  
  14. ====== C:\Windows ====
  15. 2014-08-03 06:35:33 C893A71AE21E9852027B7F0BC499B23F 1430 ----a-w- C:\Windows\update.js
  16. ====== C:\Users\OldmanYo\AppData\Local\Temp ====
  17. 2014-07-27 10:24:06 21E9A9E7295795CF37E03106FD39A3BB 285608 ----a-w- C:\Users\OldmanYo\AppData\Local\Temp\appshat_generic.exe
  18. 2014-07-27 10:24:03 6F9F37A8E2C59BC5F3D55F3B3CC875A1 1186409 ----a-w- C:\Users\OldmanYo\AppData\Local\Temp\PartnerInstaller_smtyc.exe
  19. 2014-07-26 16:07:12 697FE754DE48CEF509C6AF41013DF1BD 6200504 ----a-w- C:\Users\OldmanYo\AppData\Local\Temp\idman621build2.exe
  20. ====== Java Cache =====
  21. 2014-08-02 06:47:45 EB306CF06E3FAFFA1017FA100F07ED13 482 ----a-w- C:\Users\OldmanYo\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\23\70e87357-79a5f39a
  22. ====== C:\Windows\SysWOW64 =====
  23. 2014-08-02 18:03:00 7F26D694BC7E78958BE38D1D9AAFC2B9 272808 ----a-w- C:\Windows\SysWOW64\javaws.exe
  24. 2014-08-02 18:02:58 FFAECE8AEC1D9CCDCEC1C55C2CA450BA 175528 ----a-w- C:\Windows\SysWOW64\java.exe
  25. 2014-08-02 18:02:58 67BE34FBF29E783691C713517102E67E 175528 ----a-w- C:\Windows\SysWOW64\javaw.exe
  26. 2014-08-02 18:02:58 419094DF76A32252ECD70730382029ED 98216 ----a-w- C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
  27. ====== C:\Windows\SysWOW64\drivers =====
  28. ====== C:\Windows\Sysnative =====
  29. 2014-08-02 17:59:19 F3E38432E0B377BE1503B9FBF5523524 17928 ----a-w- C:\Windows\Sysnative\nitrolocalui9.dll
  30. 2014-08-02 17:59:19 EA6D2CEC5ABC420BB2AB1F9E397A7AD7 29704 ----a-w- C:\Windows\Sysnative\nitrolocalmon9.dll
  31. ====== C:\Windows\Sysnative\drivers =====
  32. 2014-07-23 11:02:18 B9F719B572D8D440DD8B5401C35B3B6F 180136 ----a-w- C:\Windows\Sysnative\drivers\idmwfp.sys
  33. 2014-07-10 20:48:24 8A50D5304E6AE48664CF5838EC32F647 122584 ----a-w- C:\Windows\Sysnative\drivers\MBAMSwissArmy.sys
  34. 2014-07-10 20:48:09 9D9ED48F841EA37AA5310D54B9E5D3C7 91352 ----a-w- C:\Windows\Sysnative\drivers\mbamchameleon.sys
  35. 2014-07-10 20:48:09 0664F6335F108F38FE08C3CA747311EE 64216 ----a-w- C:\Windows\Sysnative\drivers\mwac.sys
  36. ====== C:\Windows\Tasks ======
  37. 2014-08-03 06:35:33 DC5DAEDAADCFA7F6074758F532E43FC0 3164 ----a-w- C:\Windows\Sysnative\Tasks\Flash Update
  38. 2014-08-03 06:35:33 344DCF4F5E8DFAC7199DF1F56ACBA370 324 ----a-w- C:\Windows\Tasks\Flash Update.job
  39. 2014-07-22 17:34:17 FB16A20878EA76F3C37B7C4995699E2D 830 ----a-w- C:\Windows\Tasks\Adobe Flash Player Updater.job
  40. 2014-07-22 17:34:17 6C37182EAC39D2ACB1C3C03F3E9367E6 3718 ----a-w- C:\Windows\Sysnative\Tasks\Adobe Flash Player Updater
  41. ====== C:\Windows\Temp ======
  42. ======= C:\Program Files =====
  43. 2014-08-02 17:59:08 -------- d-----w- C:\Program Files\Common Files\Nitro
  44. 2014-08-01 10:56:59 -------- d-----w- C:\Program Files\Avidemux 2.6 - 64bits
  45. ======= C:\PROGRA~2 =====
  46. 2014-08-03 11:41:35 -------- d-----w- C:\PROGRA~2\Internet Download Manager
  47. 2014-08-02 18:03:00 -------- d-----w- C:\PROGRA~2\COMMON~1\Java
  48. 2014-08-02 17:59:07 -------- d-----w- C:\PROGRA~2\Nitro
  49. 2014-08-02 17:59:07 -------- d-----w- C:\PROGRA~2\COMMON~1\Nitro
  50. 2014-07-27 18:31:20 -------- d-----w- C:\PROGRA~2\COMMON~1\AVSMedia
  51. 2014-07-27 18:31:20 -------- d-----w- C:\PROGRA~2\AVS4YOU
  52. 2014-07-27 10:57:32 -------- d-----w- C:\PROGRA~2\Foxit Software
  53. 2014-07-26 20:39:32 -------- d-----w- C:\PROGRA~2\BigKahunaReef3
  54. 2014-07-26 17:36:16 -------- d-----w- C:\PROGRA~2\Serious Sam 2
  55. 2014-07-24 20:17:36 -------- d-----w- C:\PROGRA~2\Movavi Core 5.1.0
  56. 2014-07-24 20:16:19 -------- d-----w- C:\PROGRA~2\Movavi Video Suite 12
  57. 2014-07-22 14:56:04 -------- d-----w- C:\PROGRA~2\Apowersoft
  58. 2014-07-14 19:42:11 -------- d-----w- C:\PROGRA~2\Croteam
  59. 2014-07-04 20:30:48 -------- d-----w- C:\PROGRA~2\COMMON~1\PAP7501
  60. ======= C: =====
  61. ====== C:\Users\OldmanYo\AppData\Roaming ======
  62. 2014-08-03 11:41:38 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\IDM
  63. 2014-08-03 11:41:36 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
  64. 2014-08-03 07:36:17 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\Nitro PDF
  65. 2014-08-02 17:59:28 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\Nitro
  66. 2014-08-02 14:32:58 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\Downloaded Installations
  67. 2014-08-01 10:57:08 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\avidemux
  68. 2014-07-31 21:08:59 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\Ahead
  69. 2014-07-27 18:31:55 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\AVS4YOU
  70. 2014-07-27 16:22:28 -------- d-----w- C:\Users\OldmanYo\AppData\Local\Abelssoft
  71. 2014-07-27 13:28:27 4EC73BFE18512911AC1505011B2FABBC 1298 ----a-w- C:\Users\OldmanYo\AppData\Local\recently-used.xbel
  72. 2014-07-27 10:57:59 -------- d-----w- C:\Windows\SysNative\config\systemprofile\AppData\Roaming\Foxit Software
  73. 2014-07-27 10:57:59 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\Foxit Software
  74. 2014-07-27 10:57:50 -------- d-----w- C:\Windows\sysWoW64\config\systemprofile\AppData\Roaming\Foxit Software
  75. 2014-07-27 10:24:07 -------- d-----w- C:\Users\OldmanYo\AppData\Local\CrashRpt
  76. 2014-07-26 17:36:48 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Serious Sam 2
  77. 2014-07-24 20:23:04 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\MOVAVI
  78. 2014-07-24 20:19:27 -------- d-----w- C:\Users\OldmanYo\AppData\Local\Movavi
  79. 2014-07-22 14:56:04 -------- d-----w- C:\Users\OldmanYo\AppData\Roaming\Apowersoft
  80. ====== C:\Users\OldmanYo ======
  81. 2014-08-03 11:41:36 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
  82. 2014-08-03 09:01:30 83C0AF64AC7B777A61C13E608D9B4CC6 2094080 ----a-w- C:\Users\OldmanYo\Desktop\FRST64.exe
  83. 2014-08-02 18:02:58 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
  84. 2014-08-02 09:34:12 -------- d-----w- C:\ProgramData\Mozilla
  85. 2014-07-27 18:31:55 -------- d-----w- C:\ProgramData\AVS4YOU
  86. 2014-07-27 13:43:43 -------- d-----w- C:\ProgramData\Nitro
  87. 2014-07-27 13:25:55 -------- d-----w- C:\Users\OldmanYo\.gnome2
  88. 2014-07-27 10:57:56 -------- d-----w- C:\Users\Public\Foxit Software
  89. 2014-07-27 10:57:47 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
  90. 2014-07-26 20:40:50 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BigKahunaReef3
  91. 2014-07-26 17:36:48 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Serious Sam 2
  92. 2014-07-24 20:23:03 -------- d-----w- C:\ProgramData\Movavi Video Suite 12
  93. 2014-07-24 20:17:31 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movavi Video Suite 12
  94. 2014-07-24 20:16:28 -------- d-----w- C:\ProgramData\Movavi
  95. 2014-07-22 14:56:18 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft
  96. 2014-07-04 20:30:55 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prestigio 1.3 megapixels High performance webcam
  97.  
  98. ====== C: exe-files ==
  99. 2014-08-03 09:01:30 83C0AF64AC7B777A61C13E608D9B4CC6 2094080 ----a-w- C:\Users\OldmanYo\Desktop\FRST64.exe
  100. 2014-08-03 07:53:00 F704039ACF2180705585380B5BF4CA04 3858000 ----a-w- C:\Users\OldmanYo\Desktop\sHaRewbb_idm621b2\Internet Download Manager 6.21 Build 2\Crack\IDMan.exe
  101. 2014-08-03 07:53:00 EBF30D0B9E7D6D531FFE6B43CA7CD236 6200464 ----a-w- C:\Users\OldmanYo\Desktop\sHaRewbb_idm621b2\Internet Download Manager 6.21 Build 2\Setup\idman621build2f.exe
  102. 2014-08-02 18:03:00 7F26D694BC7E78958BE38D1D9AAFC2B9 272808 ----a-w- C:\Windows\SysWOW64\javaws.exe
  103. 2014-08-02 18:02:58 FFAECE8AEC1D9CCDCEC1C55C2CA450BA 175528 ----a-w- C:\Windows\SysWOW64\java.exe
  104. 2014-08-02 18:02:58 67BE34FBF29E783691C713517102E67E 175528 ----a-w- C:\Windows\SysWOW64\javaw.exe
  105. 2014-08-02 18:02:53 FFAECE8AEC1D9CCDCEC1C55C2CA450BA 175528 ----a-w- C:\Program Files (x86)\Java\jre7\bin\java.exe
  106. 2014-08-02 18:02:53 F67B94393ADB74B6616CFEECD1171EFE 68008 ----a-w- C:\Program Files (x86)\Java\jre7\bin\javacpl.exe
  107. 2014-08-02 18:02:53 CBBC0857D6E677362AADD3C54FFD6E50 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\rmid.exe
  108. 2014-08-02 18:02:53 C626BC51E0149090DDBA9A98C5E27689 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\java-rmi.exe
  109. 2014-08-02 18:02:53 A980296E1EC9921356F0D8AD06A6EF9C 182696 ----a-w- C:\Program Files (x86)\Java\jre7\bin\jqs.exe
  110. 2014-08-02 18:02:53 992B9F82FE3364B1DE57DD1FA09DC590 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\servertool.exe
  111. 2014-08-02 18:02:53 9538F45F86C30E9AB73E9159BA55FE2B 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\keytool.exe
  112. 2014-08-02 18:02:53 91B7F0DA8B6C52096CFD8B738F3D3D24 16808 ----a-w- C:\Program Files (x86)\Java\jre7\bin\tnameserv.exe
  113. 2014-08-02 18:02:53 7F26D694BC7E78958BE38D1D9AAFC2B9 272808 ----a-w- C:\Program Files (x86)\Java\jre7\bin\javaws.exe
  114. 2014-08-02 18:02:53 7EF928D407D281E66C248AC323995F6E 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\klist.exe
  115. 2014-08-02 18:02:53 74F08806423063B1ABD3B79958DA8B22 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\pack200.exe
  116. 2014-08-02 18:02:53 731F0F68BD4B24C96539E7041162F4B5 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\kinit.exe
  117. 2014-08-02 18:02:53 6A81137F68B0A8815B9BE3BE11F29CCE 48040 ----a-w- C:\Program Files (x86)\Java\jre7\bin\jabswitch.exe
  118. 2014-08-02 18:02:53 67BE34FBF29E783691C713517102E67E 175528 ----a-w- C:\Program Files (x86)\Java\jre7\bin\javaw.exe
  119. 2014-08-02 18:02:53 550D282FDE001860D09544DCE6F3B218 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\ktab.exe
  120. 2014-08-02 18:02:53 51CCA1D8C86EEDD01E962F54AD0A40A3 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\rmiregistry.exe
  121. 2014-08-02 18:02:53 4A9C9EB33EC6779E2B8A1CDAB6B22E75 75688 ----a-w- C:\Program Files (x86)\Java\jre7\bin\jp2launcher.exe
  122. 2014-08-02 18:02:53 24A247CB63FE3A5DEC8E1070F9D49ECE 16296 ----a-w- C:\Program Files (x86)\Java\jre7\bin\policytool.exe
  123. 2014-08-02 18:02:53 131EE1B71F6F770AB6820FD383BC184E 50088 ----a-w- C:\Program Files (x86)\Java\jre7\bin\ssvagent.exe
  124. 2014-08-02 18:02:53 09AD1CE65816D427E12A564A24F3FE11 16808 ----a-w- C:\Program Files (x86)\Java\jre7\bin\orbd.exe
  125. 2014-08-02 18:02:53 04390E59F4EA447B05B3B31DA4CB23FF 145832 ----a-w- C:\Program Files (x86)\Java\jre7\bin\unpack200.exe
  126. === C: other files ==
  127. 2014-08-03 11:27:48 899E3D6603A025EC0E8589D068C34168 544 ----a-w- C:\$Recycle.Bin\S-1-5-21-3337885084-2580845718-1551276708-1001\$IR1IP55.com
  128. 2014-08-03 11:22:34 782B87DDCA0DD7127DB51A47DCA3DFBE 1417360 ----a-w- C:\$Recycle.Bin\S-1-5-21-3337885084-2580845718-1551276708-1001\$RR1IP55.com
  129. 2014-08-03 05:41:56 9563558970C402642C3A7D025612A7F5 3329 ----a-w- C:\Users\OldmanYo\.rainlendar2\backups\20140803-Rainlendar2Backup.zip
  130. 2014-08-02 18:02:53 C17BF24D0FEB42E51B0C961030CB5F36 18650 ----a-w- C:\Program Files (x86)\Java\jre7\lib\deploy\ffjcext.zip
  131. 2014-08-02 14:30:10 F0C1E71ED0D9A3ABBFFFF09B721E55C9 131571 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi
  132. 2014-08-02 14:30:10 CA9BD528D1B3533F53B2BCA258B92DFC 16851 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\bym@savetheworld.org.xpi
  133. 2014-08-02 14:30:10 AF33E757BD7DC179F9DC25868009A3C1 297630 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
  134. 2014-08-02 14:30:10 A6046284A44B5758D8DD68D90DB2C499 53864 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\{3e9bb2a7-62ca-4efa-a4e6-f6f6168a652d}.xpi
  135. 2014-08-02 14:30:10 A296C3D54F805FFA8602056AC0976183 538675 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
  136. 2014-08-02 14:30:10 9A13074F72E5EB85B9E977339EBB7D1C 548760 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\{f759ca51-3a91-4dd1-ae78-9db5eee9ebf0}.xpi
  137. 2014-08-02 14:30:10 911EFA201CBD0D96EE74FBA7077BC4F9 50313 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\{524B8EF8-C312-11DB-8039-536F56D89593}.xpi
  138. 2014-08-02 14:30:10 90D2E95753879BA93D4CD67D014320D0 541094 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi
  139. 2014-08-02 14:30:10 8C7F8AFFE41F49B6453E34C9133BFD70 55713 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\googledictionary@toptip.ca.xpi
  140. 2014-08-02 14:30:10 6C7EBF7D13322E0929C6BD9E3FF7D171 8860 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\facepaste.firefox.addon@azabani.com.xpi
  141. 2014-08-02 14:30:10 45CE093A80663A272518AC6B50EACACE 15913 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\DuplicateInTabContext@schuzak.jp.xpi
  142. 2014-08-02 14:30:10 4347FCD1832F7D2791CB4AE8ABEE9161 215649 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\savedpasswordeditor@daniel.dawson.xpi
  143. 2014-08-02 14:30:10 3F00F7EC310BDC23C05A252D88BB1A7F 183206 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\thumbnailZoom@dadler.github.com.xpi
  144. 2014-08-02 14:30:10 349DCDF7FBBEC38A7B7939C201710E69 444794 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\nimbusscreencaptureff@everhelper.me.xpi
  145. 2014-08-02 14:30:10 2CAB234FCDC55A8C72657DCE1B8F20AB 325350 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}.xpi
  146. 2014-08-02 14:30:10 2852F8C1A5ADFD416A840A70621C4D5D 349185 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\autopager@mozilla.org.xpi
  147. 2014-08-02 14:30:10 2776587AD9DF1363FA24DBF113C4DD12 307011 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\{54BB9F3F-07E5-486c-9B39-C7398B99391C}.xpi
  148. 2014-08-02 14:30:10 24D202E92251B2201869C04B12268810 42346 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\add-to-searchbox@maltekraus.de.xpi
  149. 2014-08-02 14:30:10 237A158E104406C04E3BFD600176898B 23913 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\the-addon-bar@GeekInTraining-GiT.xpi
  150. 2014-08-02 14:30:10 202030C583516F986A46D54C9AF5B3A1 89442 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}.xpi
  151. 2014-08-02 09:42:59 F0C1E71ED0D9A3ABBFFFF09B721E55C9 131571 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi
  152. 2014-08-02 09:42:59 CA9BD528D1B3533F53B2BCA258B92DFC 16851 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\bym@savetheworld.org.xpi
  153. 2014-08-02 09:42:59 AF33E757BD7DC179F9DC25868009A3C1 297630 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
  154. 2014-08-02 09:42:59 A6046284A44B5758D8DD68D90DB2C499 53864 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\{3e9bb2a7-62ca-4efa-a4e6-f6f6168a652d}.xpi
  155. 2014-08-02 09:42:59 A296C3D54F805FFA8602056AC0976183 538675 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
  156. 2014-08-02 09:42:59 9A13074F72E5EB85B9E977339EBB7D1C 548760 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\{f759ca51-3a91-4dd1-ae78-9db5eee9ebf0}.xpi
  157. 2014-08-02 09:42:59 911EFA201CBD0D96EE74FBA7077BC4F9 50313 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\{524B8EF8-C312-11DB-8039-536F56D89593}.xpi
  158. 2014-08-02 09:42:59 90D2E95753879BA93D4CD67D014320D0 541094 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi
  159. 2014-08-02 09:42:59 8C7F8AFFE41F49B6453E34C9133BFD70 55713 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\googledictionary@toptip.ca.xpi
  160. 2014-08-02 09:42:59 6C7EBF7D13322E0929C6BD9E3FF7D171 8860 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\facepaste.firefox.addon@azabani.com.xpi
  161. 2014-08-02 09:42:59 45CE093A80663A272518AC6B50EACACE 15913 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\DuplicateInTabContext@schuzak.jp.xpi
  162. 2014-08-02 09:42:59 4347FCD1832F7D2791CB4AE8ABEE9161 215649 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\savedpasswordeditor@daniel.dawson.xpi
  163. 2014-08-02 09:42:59 3F00F7EC310BDC23C05A252D88BB1A7F 183206 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\thumbnailZoom@dadler.github.com.xpi
  164. 2014-08-02 09:42:59 349DCDF7FBBEC38A7B7939C201710E69 444794 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\nimbusscreencaptureff@everhelper.me.xpi
  165. 2014-08-02 09:42:59 2CAB234FCDC55A8C72657DCE1B8F20AB 325350 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}.xpi
  166. 2014-08-02 09:42:59 2852F8C1A5ADFD416A840A70621C4D5D 349185 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\autopager@mozilla.org.xpi
  167. 2014-08-02 09:42:59 2776587AD9DF1363FA24DBF113C4DD12 307011 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\{54BB9F3F-07E5-486c-9B39-C7398B99391C}.xpi
  168. 2014-08-02 09:42:59 24D202E92251B2201869C04B12268810 42346 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\add-to-searchbox@maltekraus.de.xpi
  169. 2014-08-02 09:42:59 237A158E104406C04E3BFD600176898B 23913 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\the-addon-bar@GeekInTraining-GiT.xpi
  170. 2014-08-02 09:42:59 202030C583516F986A46D54C9AF5B3A1 89442 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}.xpi
  171. 2014-08-02 05:38:12 25EE9BBD416F77C6EC51E09F959C4033 3308 ----a-w- C:\Users\OldmanYo\.rainlendar2\backups\20140802-Rainlendar2Backup.zip
  172. 2014-08-01 07:54:42 F0C1E71ED0D9A3ABBFFFF09B721E55C9 131571 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi
  173. 2014-08-01 07:54:42 AF33E757BD7DC179F9DC25868009A3C1 297630 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
  174. 2014-08-01 07:54:42 A6046284A44B5758D8DD68D90DB2C499 53864 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\{3e9bb2a7-62ca-4efa-a4e6-f6f6168a652d}.xpi
  175. 2014-08-01 07:54:42 A296C3D54F805FFA8602056AC0976183 538675 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
  176. 2014-08-01 07:54:42 9A13074F72E5EB85B9E977339EBB7D1C 548760 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\{f759ca51-3a91-4dd1-ae78-9db5eee9ebf0}.xpi
  177. 2014-08-01 07:54:42 911EFA201CBD0D96EE74FBA7077BC4F9 50313 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\{524B8EF8-C312-11DB-8039-536F56D89593}.xpi
  178. 2014-08-01 07:54:42 2CAB234FCDC55A8C72657DCE1B8F20AB 325350 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}.xpi
  179. 2014-08-01 07:54:42 2776587AD9DF1363FA24DBF113C4DD12 307011 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\{54BB9F3F-07E5-486c-9B39-C7398B99391C}.xpi
  180. 2014-08-01 07:54:42 202030C583516F986A46D54C9AF5B3A1 89442 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}.xpi
  181. 2014-08-01 07:54:41 CA9BD528D1B3533F53B2BCA258B92DFC 16851 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\bym@savetheworld.org.xpi
  182. 2014-08-01 07:54:41 90D2E95753879BA93D4CD67D014320D0 541094 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi
  183. 2014-08-01 07:54:41 8C7F8AFFE41F49B6453E34C9133BFD70 55713 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\googledictionary@toptip.ca.xpi
  184. 2014-08-01 07:54:41 6C7EBF7D13322E0929C6BD9E3FF7D171 8860 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\facepaste.firefox.addon@azabani.com.xpi
  185. 2014-08-01 07:54:41 45CE093A80663A272518AC6B50EACACE 15913 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\DuplicateInTabContext@schuzak.jp.xpi
  186. 2014-08-01 07:54:41 4347FCD1832F7D2791CB4AE8ABEE9161 215649 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\savedpasswordeditor@daniel.dawson.xpi
  187. 2014-08-01 07:54:41 3F00F7EC310BDC23C05A252D88BB1A7F 183206 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\thumbnailZoom@dadler.github.com.xpi
  188. 2014-08-01 07:54:41 349DCDF7FBBEC38A7B7939C201710E69 444794 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\nimbusscreencaptureff@everhelper.me.xpi
  189. 2014-08-01 07:54:41 2852F8C1A5ADFD416A840A70621C4D5D 349185 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\autopager@mozilla.org.xpi
  190. 2014-08-01 07:54:41 24D202E92251B2201869C04B12268810 42346 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\add-to-searchbox@maltekraus.de.xpi
  191. 2014-08-01 07:54:41 237A158E104406C04E3BFD600176898B 23913 ----a-w- C:\Users\OldmanYo\Desktop\Old Firefox Data\dzgivhza.default\extensions\the-addon-bar@GeekInTraining-GiT.xpi
  192. 2014-08-01 05:30:13 14CA1632F07E8CB72094BBC3D1EF763B 3306 ----a-w- C:\Users\OldmanYo\.rainlendar2\backups\20140801-Rainlendar2Backup.zip
  193. 2014-07-31 03:44:32 2131C6ACE414D0941F60BAEFC36BB0E3 3308 ----a-w- C:\Users\OldmanYo\.rainlendar2\backups\20140731-Rainlendar2Backup.zip
  194. 2014-07-30 05:17:59 6B366F2C37C03D67E54474ED126DC829 3308 ----a-w- C:\Users\OldmanYo\.rainlendar2\backups\20140730-Rainlendar2Backup.zip
  195. 2014-07-29 05:14:57 FC6472F618F590C37A360823A2B6E999 3308 ----a-w- C:\Users\OldmanYo\.rainlendar2\backups\20140729-Rainlendar2Backup.zip
  196. 2014-07-28 05:16:17 26DE8A4E060AF08C92361D602110CBF0 3308 ----a-w- C:\Users\OldmanYo\.rainlendar2\backups\20140728-Rainlendar2Backup.zip
  197.  
  198. ==== Startup Registry Enabled ======================
  199.  
  200. [HKEY_USERS\S-1-5-21-3337885084-2580845718-1551276708-1001\Software\Microsoft\Windows\CurrentVersion\Run]
  201. "Actual Window Manager"="C:\Program Files (x86)\Actual Window Manager\ActualWindowManagerCenter.exe"
  202. "Rainlendar2"="C:\Program Files (x86)\Rainlendar2\Rainlendar2.exe"
  203. "de"="I:\Instalacije\MOJ Windows\DesktopOk\DesktopOK_x64.exe"
  204. "rf"="C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
  205. "Innovative StartUp Firewall"="C:\Program Files (x86)\Innovative Solutions\Innovative StartUp Firewall\FirewallStartup.exe /AUTOSTART"
  206. "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun"
  207. "mocni812"="C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe"
  208. "trz"="C:\Program Files (x86)\PCsensor\PCsensorTEMPer V23.5\TEMPerV21.exe"
  209. "uTorrent"="C:\Users\OldmanYo\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED"
  210. "7 Taskbar Tweaker"="C:\Users\OldmanYo\AppData\Roaming\7+ Taskbar Tweaker\7+ Taskbar Tweaker.exe -hidewnd"
  211. "krenaCHE812"="C:\FreeRapid-0.9u4\frd.exe"
  212.  
  213. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  214. "VolPanel"="C:\Program Files (x86)\Creative\Volume Panel\VolPanlu.exe /r"
  215. "CTxfiHlp"="CTXFIHLP.EXE"
  216. "NetTime"="C:\Program Files (x86)\NetTime\NetTime.exe"
  217. "P8000RCApp"="C:\Program Files (x86)\GIGABYTE\P8000RCService\P8000RCApp.exe"
  218. "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
  219.  
  220. [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
  221. "Actual Window Manager"="C:\Program Files (x86)\Actual Window Manager\ActualWindowManagerCenter.exe"
  222. "Rainlendar2"="C:\Program Files (x86)\Rainlendar2\Rainlendar2.exe"
  223. "de"="I:\Instalacije\MOJ Windows\DesktopOk\DesktopOK_x64.exe"
  224. "rf"="C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
  225. "Innovative StartUp Firewall"="C:\Program Files (x86)\Innovative Solutions\Innovative StartUp Firewall\FirewallStartup.exe /AUTOSTART"
  226. "Skype"="C:\Program Files (x86)\Skype\Phone\Skype.exe /minimized /regrun"
  227. "mocni812"="C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe"
  228. "trz"="C:\Program Files (x86)\PCsensor\PCsensorTEMPer V23.5\TEMPerV21.exe"
  229. "uTorrent"="C:\Users\OldmanYo\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED"
  230. "7 Taskbar Tweaker"="C:\Users\OldmanYo\AppData\Roaming\7+ Taskbar Tweaker\7+ Taskbar Tweaker.exe -hidewnd"
  231. "krenaCHE812"="C:\FreeRapid-0.9u4\frd.exe"
  232.  
  233. ==== Startup Registry Enabled x64 ======================
  234.  
  235. [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  236. "EvtMgr6"="C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming"
  237. "Classic Start Menu"="C:\Program Files\Classic Shell\ClassicStartMenu.exe -autorun"
  238. "egui"="C:\Program Files\ESET\ESET Smart Security\egui.exe /hide /waitservice"
  239.  
  240. ==== Startup Folders ======================
  241.  
  242. 2014-02-05 15:39:20 981 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ArsClip.lnk
  243. 2014-02-05 12:20:43 1742 ----a-w- C:\Users\OldmanYo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
  244.  
  245. ==== Task Scheduler Jobs ======================
  246.  
  247. C:\Windows\tasks\Adobe Flash Player Updater.job --a-------- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [07/22/2014 07:34 PM]
  248. C:\Windows\tasks\Flash Update.job --a-------- C:\Windows\system32\wscript.exe [08/22/2013 05:37 AM]
  249.  
  250. ==== Other Scheduled Tasks ======================
  251.  
  252. "C:\Windows\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]
  253. "C:\Windows\SysNative\tasks\Flash Update" [C:\Windows\system32\wscript.exe //nologo //B C:\Windows\update.js]
  254. "C:\Windows\SysNative\tasks\WizMouse" ["C:\Program Files (x86)\WizMouse\WizMouseLaunch.exe"]
  255. "C:\Windows\SysNative\tasks\{84B50A1B-B5B7-466C-BEFA-93EA7D7E5CA6}" ["c:\program files (x86)\mozilla firefox\firefox.exe"]
  256. "C:\Windows\SysNative\tasks\Nero\Nero Info" [C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe]
  257.  
  258. ==== Firefox Extensions Registry ======================
  259.  
  260. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
  261. "Player@Wondershare.com"="C:\ProgramData\Wondershare\Player\Player@Wondershare.com" [02/07/2014 11:17 PM]
  262. [HKEY_CURRENT_USER\Software\Mozilla\Firefox\Extensions]
  263. "mozilla_cc@internetdownloadmanager.com"="C:\Users\OldmanYo\AppData\Roaming\IDM\idmmzcc5" [08/03/2014 01:41 PM]
  264.  
  265. ==== Firefox Extensions ======================
  266.  
  267. ProfilePath: C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default
  268. - Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
  269. - Add to Search Bar - %ProfilePath%\extensions\add-to-searchbox@maltekraus.de.xpi
  270. - AutoPager - %ProfilePath%\extensions\autopager@mozilla.org.xpi
  271. - Blank Your Monitor Easy Reading - %ProfilePath%\extensions\bym@savetheworld.org.xpi
  272. - Duplicate in Tab Context Menu - %ProfilePath%\extensions\DuplicateInTabContext@schuzak.jp.xpi
  273. - facepaste - %ProfilePath%\extensions\facepaste.firefox.addon@azabani.com.xpi
  274. - Wiktionary and Google Translate - %ProfilePath%\extensions\googledictionary@toptip.ca.xpi
  275. - Nimbus Screen Capture - editable screenshots. - %ProfilePath%\extensions\nimbusscreencaptureff@everhelper.me.xpi
  276. - Undetermined - %ProfilePath%\extensions\savedpasswordeditor@daniel.dawson.xpi
  277. - The Addon Bar restored - %ProfilePath%\extensions\the-addon-bar@GeekInTraining-GiT.xpi
  278. - Thumbnail Zoom Plus - %ProfilePath%\extensions\thumbnailZoom@dadler.github.com.xpi
  279. - Trnh Qun L Phin - %ProfilePath%\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi
  280. - ShowIP - %ProfilePath%\extensions\{3e9bb2a7-62ca-4efa-a4e6-f6f6168a652d}.xpi
  281. - Bulk Image Downloader - %ProfilePath%\extensions\{524B8EF8-C312-11DB-8039-536F56D89593}.xpi
  282. - Text Link - %ProfilePath%\extensions\{54BB9F3F-07E5-486c-9B39-C7398B99391C}.xpi
  283. - NoScript - %ProfilePath%\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
  284. - Password Exporter - %ProfilePath%\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}.xpi
  285. - CoolPreviews - %ProfilePath%\extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}.xpi
  286. - Greasemonkey - %ProfilePath%\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
  287. - UnMHT - %ProfilePath%\extensions\{f759ca51-3a91-4dd1-ae78-9db5eee9ebf0}.xpi
  288. - Download Manager Tweak - %ProfilePath%\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi
  289.  
  290. ProfilePath: C:\Users\OldmanYo\AppData\Roaming\Thunderbird\Profiles\5q0sgowb.default
  291. - Lightning - %ProfilePath%\extensions\{e2fda1a4-762b-4020-b5ad-a41df1933103}
  292.  
  293. ProfilePath: C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default
  294. - Add to Search Bar - %ProfilePath%\extensions\add-to-searchbox@maltekraus.de.xpi
  295. - AutoPager - %ProfilePath%\extensions\autopager@mozilla.org.xpi
  296. - Blank Your Monitor Easy Reading - %ProfilePath%\extensions\bym@savetheworld.org.xpi
  297. - Duplicate in Tab Context Menu - %ProfilePath%\extensions\DuplicateInTabContext@schuzak.jp.xpi
  298. - facepaste - %ProfilePath%\extensions\facepaste.firefox.addon@azabani.com.xpi
  299. - Wiktionary and Google Translate - %ProfilePath%\extensions\googledictionary@toptip.ca.xpi
  300. - Nimbus Screen Capture - editable screenshots. - %ProfilePath%\extensions\nimbusscreencaptureff@everhelper.me.xpi
  301. - Undetermined - %ProfilePath%\extensions\savedpasswordeditor@daniel.dawson.xpi
  302. - The Addon Bar restored - %ProfilePath%\extensions\the-addon-bar@GeekInTraining-GiT.xpi
  303. - Thumbnail Zoom Plus - %ProfilePath%\extensions\thumbnailZoom@dadler.github.com.xpi
  304. - Trnh Qun L Phin - %ProfilePath%\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi
  305. - ShowIP - %ProfilePath%\extensions\{3e9bb2a7-62ca-4efa-a4e6-f6f6168a652d}.xpi
  306. - Bulk Image Downloader - %ProfilePath%\extensions\{524B8EF8-C312-11DB-8039-536F56D89593}.xpi
  307. - Text Link - %ProfilePath%\extensions\{54BB9F3F-07E5-486c-9B39-C7398B99391C}.xpi
  308. - NoScript - %ProfilePath%\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
  309. - Password Exporter - %ProfilePath%\extensions\{B17C1C5A-04B1-11DB-9804-B622A1EF5492}.xpi
  310. - CoolPreviews - %ProfilePath%\extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}.xpi
  311. - Greasemonkey - %ProfilePath%\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
  312. - UnMHT - %ProfilePath%\extensions\{f759ca51-3a91-4dd1-ae78-9db5eee9ebf0}.xpi
  313. - Download Manager Tweak - %ProfilePath%\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi
  314.  
  315. AppDir: C:\Program Files (x86)\Mozilla Firefox
  316. - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
  317.  
  318. ==== Firefox Plugins ======================
  319.  
  320. Profilepath: C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\dzgivhza.default
  321. 4390CCD3790F8D9C427C0C29590C62D7 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll - Shockwave Flash
  322.  
  323. Profilepath: C:\Users\OldmanYo\AppData\Roaming\Mozilla\Firefox\Profiles\ylje2ngk.default
  324. 4390CCD3790F8D9C427C0C29590C62D7 - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll - Shockwave Flash
  325.  
  326.  
  327. ==== Chrome Look ======================
  328.  
  329. HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
  330. bkdegagmpemadclljncealhmmkojfoam - C:\ProgramData\Wondershare\Player\Player@Wondershare.com.crx[09/28/2013 02:59 PM]
  331. jeaohhlajejodfjadcponpnjgkiikocn - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx[07/08/2014 09:48 AM]
  332.  
  333. ==== IE Start and Search Settings ======================
  334.  
  335. [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
  336. "Start Page"="http://city.static.abradio.cz/city-80.html"
  337. [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
  338. "Default_Page_URL"="http://xn--80afat5b.xn--p1ai"
  339. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
  340. "Default_Page_URL"="http://xn--80afat5b.xn--p1ai"
  341. [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
  342. "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
  343.  
  344. ==== All HKCU SearchScopes ======================
  345.  
  346. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
  347. {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"
  348.  
  349. ==== C:\zoek_backup content ======================
  350.  
  351. C:\zoek_backup (files=0 folders=0 0 bytes)
  352.  
  353. ==== EOF on Sun 08/03/2014 at 14:39:39.51 ======================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement