Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Fix result of Farbar Recovery Scan Tool (x86) Version: 19.04.2018
- Ran by Admin (27-04-2018 16:06:11) Run:1
- Running from C:\Users\Admin\Desktop
- Loaded Profiles: Admin & (Available Profiles: Admin)
- Boot Mode: Normal
- ==============================================
- fixlist content:
- *****************
- FF Plugin HKU\S-1-5-21-51145358-2442092094-1609093457-1000: anvisoft.com/AdblockPlugin -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll [No File]
- FF Plugin HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522: anvisoft.com/AdblockPlugin -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll [No File]
- S2 Mobizen plugin; C:\Program Files\RSUPPORT\MobizenService\MobizenService.exe [X]
- S3 catchme; \??\C:\Users\Admin\AppData\Local\Temp\catchme.sys [X]
- S3 KProcessHacker2; \??\C:\Program Files\kprocesshacker.sys [X]
- S3 VGPU; System32\drivers\rdvgkmd.sys [X]
- S3 XDva409; \??\C:\Windows\system32\XDva409.sys [X]
- S3 XDva410; \??\C:\Windows\system32\XDva410.sys [X]
- S3 XDva415; \??\C:\Windows\system32\XDva415.sys [X]
- S3 XDva423; \??\C:\Windows\system32\XDva423.sys [X]
- S3 XDva424; \??\C:\Windows\system32\XDva424.sys [X]
- S3 XDva425; \??\C:\Windows\system32\XDva425.sys [X]
- S3 XDva511; \??\C:\Windows\system32\XDva511.sys [X]
- S3 XDva534; \??\C:\Windows\system32\XDva534.sys [X]
- S3 XDva535; \??\C:\Windows\system32\XDva535.sys [X]
- S3 XDva536; \??\C:\Windows\system32\XDva536.sys [X]
- S3 XDva537; \??\C:\Windows\system32\XDva537.sys [X]
- 2015-06-23 19:18 - 2015-06-23 19:18 - 001169408 _____ (wj32) C:\Program Files\AAAMMYYY.exe
- 2015-06-23 19:18 - 2015-06-23 19:18 - 001169408 _____ (wj32) C:\Program Files\IIIUU666.exe
- 2015-07-01 15:23 - 2015-07-01 15:23 - 001169408 _____ (wj32) C:\Program Files\OOO00CCO.exe
- 2015-08-16 19:59 - 2015-08-16 19:59 - 001169408 _____ (wj32) C:\Program Files\SSS44GGS.exe
- 2015-07-20 16:48 - 2015-07-20 16:48 - 001169408 _____ (wj32) C:\Program Files\UUU66IIU.exe
- 2015-06-23 19:18 - 2015-06-23 19:18 - 001169408 _____ (wj32) C:\Program Files\YYAAMMYM.exe
- 2017-01-25 18:50 - 2017-02-26 17:35 - 000008192 _____ () C:\Users\Admin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
- 2015-05-10 12:19 - 2015-05-10 12:19 - 000000833 _____ () C:\Users\Admin\AppData\Local\recently-used.xbel
- 2017-03-26 17:12 - 2017-03-26 17:21 - 000000552 _____ () C:\Users\Admin\AppData\Local\TroubleshooterConfig.json
- 2014-07-08 18:52 - 2014-07-08 18:52 - 000000000 _____ () C:\Users\Admin\AppData\Local\{82412A15-975A-419C-BAD0-F07D5FEE1225}
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{04EBE69E-2DED-44F6-9854-9A3988F751ED}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.51.1\psuser.dll => No File
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll => No File
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{1aad99ea-ee10-5c3a-8174-84c63a67adde}\InprocServer32 -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll => No File
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{2027D000-8CEB-4191-9620-15DD2561855F}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.57.1\psuser.dll => No File
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{41F2ED58-C7A8-43D8-8F5A-E15229560913}\InprocServer32 -> no filepath
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.29\psuser.dll => No File
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{d33c6260-dafc-4b90-bf39-8ad6a5f19b7d}\localserver32 -> "C:\Program Files\Avira\SoftwareUpdater\AviraSoftwareUpdaterToastNotificationsBridge.exe" -ToastActivated => No File
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{04EBE69E-2DED-44F6-9854-9A3988F751ED}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.51.1\psuser.dll => No File
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll => No File
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{1aad99ea-ee10-5c3a-8174-84c63a67adde}\InprocServer32 -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll => No File
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{2027D000-8CEB-4191-9620-15DD2561855F}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.57.1\psuser.dll => No File
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{41F2ED58-C7A8-43D8-8F5A-E15229560913}\InprocServer32 -> no filepath
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.29\psuser.dll => No File
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{d33c6260-dafc-4b90-bf39-8ad6a5f19b7d}\localserver32 -> "C:\Program Files\Avira\SoftwareUpdater\AviraSoftwareUpdaterToastNotificationsBridge.exe" -ToastActivated => No File
- ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
- ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
- ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
- *****************
- "HKU\S-1-5-21-51145358-2442092094-1609093457-1000\Software\MozillaPlugins\anvisoft.com/AdblockPlugin" => removed successfully.
- "C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll" => not found
- FF Plugin HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522: anvisoft.com/AdblockPlugin -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll [No File] => Error: No automatic fix found for this entry.
- "HKLM\System\CurrentControlSet\Services\Mobizen plugin" => removed successfully.
- Mobizen plugin => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\catchme" => removed successfully.
- catchme => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\KProcessHacker2" => removed successfully.
- KProcessHacker2 => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\VGPU" => removed successfully.
- VGPU => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\XDva409" => removed successfully.
- XDva409 => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\XDva410" => removed successfully.
- XDva410 => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\XDva415" => removed successfully.
- XDva415 => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\XDva423" => removed successfully.
- XDva423 => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\XDva424" => removed successfully.
- XDva424 => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\XDva425" => removed successfully.
- XDva425 => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\XDva511" => removed successfully.
- XDva511 => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\XDva534" => removed successfully.
- XDva534 => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\XDva535" => removed successfully.
- XDva535 => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\XDva536" => removed successfully.
- XDva536 => service removed successfully.
- "HKLM\System\CurrentControlSet\Services\XDva537" => removed successfully.
- XDva537 => service removed successfully.
- C:\Program Files\AAAMMYYY.exe => moved successfully
- C:\Program Files\IIIUU666.exe => moved successfully
- C:\Program Files\OOO00CCO.exe => moved successfully
- C:\Program Files\SSS44GGS.exe => moved successfully
- C:\Program Files\UUU66IIU.exe => moved successfully
- C:\Program Files\YYAAMMYM.exe => moved successfully
- C:\Users\Admin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully
- C:\Users\Admin\AppData\Local\recently-used.xbel => moved successfully
- C:\Users\Admin\AppData\Local\TroubleshooterConfig.json => moved successfully
- C:\Users\Admin\AppData\Local\{82412A15-975A-419C-BAD0-F07D5FEE1225} => moved successfully
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{04EBE69E-2DED-44F6-9854-9A3988F751ED}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.51.1\psuser.dll => No File => Error: No automatic fix found for this entry.
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll => No File => Error: No automatic fix found for this entry.
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{1aad99ea-ee10-5c3a-8174-84c63a67adde}\InprocServer32 -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll => No File => Error: No automatic fix found for this entry.
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{2027D000-8CEB-4191-9620-15DD2561855F}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.57.1\psuser.dll => No File => Error: No automatic fix found for this entry.
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{41F2ED58-C7A8-43D8-8F5A-E15229560913}\InprocServer32 -> no filepath => Error: No automatic fix found for this entry.
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.29\psuser.dll => No File => Error: No automatic fix found for this entry.
- CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{d33c6260-dafc-4b90-bf39-8ad6a5f19b7d}\localserver32 -> "C:\Program Files\Avira\SoftwareUpdater\AviraSoftwareUpdaterToastNotificationsBridge.exe" -ToastActivated => No File => Error: No automatic fix found for this entry.
- "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{04EBE69E-2DED-44F6-9854-9A3988F751ED}" => removed successfully.
- "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}" => removed successfully.
- "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{1aad99ea-ee10-5c3a-8174-84c63a67adde}" => removed successfully.
- "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{2027D000-8CEB-4191-9620-15DD2561855F}" => removed successfully.
- "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{41F2ED58-C7A8-43D8-8F5A-E15229560913}" => removed successfully.
- "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}" => removed successfully.
- "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{d33c6260-dafc-4b90-bf39-8ad6a5f19b7d}" => removed successfully.
- "HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avast" => removed successfully.
- HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
- "HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PowerISO" => removed successfully.
- HKLM\Software\Classes\CLSID\{967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => not found
- "HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PowerISO" => removed successfully.
- HKLM\Software\Classes\CLSID\{967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => not found
- ==== End of Fixlog 16:06:46 ====
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement