Advertisement
Guest User

Fix

a guest
Apr 27th, 2018
230
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 12.51 KB | None | 0 0
  1. Fix result of Farbar Recovery Scan Tool (x86) Version: 19.04.2018
  2. Ran by Admin (27-04-2018 16:06:11) Run:1
  3. Running from C:\Users\Admin\Desktop
  4. Loaded Profiles: Admin & (Available Profiles: Admin)
  5. Boot Mode: Normal
  6.  
  7. ==============================================
  8.  
  9. fixlist content:
  10. *****************
  11. FF Plugin HKU\S-1-5-21-51145358-2442092094-1609093457-1000: anvisoft.com/AdblockPlugin -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll [No File]
  12. FF Plugin HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522: anvisoft.com/AdblockPlugin -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll [No File]
  13. S2 Mobizen plugin; C:\Program Files\RSUPPORT\MobizenService\MobizenService.exe [X]
  14. S3 catchme; \??\C:\Users\Admin\AppData\Local\Temp\catchme.sys [X]
  15. S3 KProcessHacker2; \??\C:\Program Files\kprocesshacker.sys [X]
  16. S3 VGPU; System32\drivers\rdvgkmd.sys [X]
  17. S3 XDva409; \??\C:\Windows\system32\XDva409.sys [X]
  18. S3 XDva410; \??\C:\Windows\system32\XDva410.sys [X]
  19. S3 XDva415; \??\C:\Windows\system32\XDva415.sys [X]
  20. S3 XDva423; \??\C:\Windows\system32\XDva423.sys [X]
  21. S3 XDva424; \??\C:\Windows\system32\XDva424.sys [X]
  22. S3 XDva425; \??\C:\Windows\system32\XDva425.sys [X]
  23. S3 XDva511; \??\C:\Windows\system32\XDva511.sys [X]
  24. S3 XDva534; \??\C:\Windows\system32\XDva534.sys [X]
  25. S3 XDva535; \??\C:\Windows\system32\XDva535.sys [X]
  26. S3 XDva536; \??\C:\Windows\system32\XDva536.sys [X]
  27. S3 XDva537; \??\C:\Windows\system32\XDva537.sys [X]
  28. 2015-06-23 19:18 - 2015-06-23 19:18 - 001169408 _____ (wj32) C:\Program Files\AAAMMYYY.exe
  29. 2015-06-23 19:18 - 2015-06-23 19:18 - 001169408 _____ (wj32) C:\Program Files\IIIUU666.exe
  30. 2015-07-01 15:23 - 2015-07-01 15:23 - 001169408 _____ (wj32) C:\Program Files\OOO00CCO.exe
  31. 2015-08-16 19:59 - 2015-08-16 19:59 - 001169408 _____ (wj32) C:\Program Files\SSS44GGS.exe
  32. 2015-07-20 16:48 - 2015-07-20 16:48 - 001169408 _____ (wj32) C:\Program Files\UUU66IIU.exe
  33. 2015-06-23 19:18 - 2015-06-23 19:18 - 001169408 _____ (wj32) C:\Program Files\YYAAMMYM.exe
  34. 2017-01-25 18:50 - 2017-02-26 17:35 - 000008192 _____ () C:\Users\Admin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
  35. 2015-05-10 12:19 - 2015-05-10 12:19 - 000000833 _____ () C:\Users\Admin\AppData\Local\recently-used.xbel
  36. 2017-03-26 17:12 - 2017-03-26 17:21 - 000000552 _____ () C:\Users\Admin\AppData\Local\TroubleshooterConfig.json
  37. 2014-07-08 18:52 - 2014-07-08 18:52 - 000000000 _____ () C:\Users\Admin\AppData\Local\{82412A15-975A-419C-BAD0-F07D5FEE1225}
  38. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{04EBE69E-2DED-44F6-9854-9A3988F751ED}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.51.1\psuser.dll => No File
  39. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll => No File
  40. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{1aad99ea-ee10-5c3a-8174-84c63a67adde}\InprocServer32 -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll => No File
  41. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{2027D000-8CEB-4191-9620-15DD2561855F}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.57.1\psuser.dll => No File
  42. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{41F2ED58-C7A8-43D8-8F5A-E15229560913}\InprocServer32 -> no filepath
  43. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.29\psuser.dll => No File
  44. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{d33c6260-dafc-4b90-bf39-8ad6a5f19b7d}\localserver32 -> "C:\Program Files\Avira\SoftwareUpdater\AviraSoftwareUpdaterToastNotificationsBridge.exe" -ToastActivated => No File
  45. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{04EBE69E-2DED-44F6-9854-9A3988F751ED}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.51.1\psuser.dll => No File
  46. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll => No File
  47. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{1aad99ea-ee10-5c3a-8174-84c63a67adde}\InprocServer32 -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll => No File
  48. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{2027D000-8CEB-4191-9620-15DD2561855F}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.57.1\psuser.dll => No File
  49. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{41F2ED58-C7A8-43D8-8F5A-E15229560913}\InprocServer32 -> no filepath
  50. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.29\psuser.dll => No File
  51. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{d33c6260-dafc-4b90-bf39-8ad6a5f19b7d}\localserver32 -> "C:\Program Files\Avira\SoftwareUpdater\AviraSoftwareUpdaterToastNotificationsBridge.exe" -ToastActivated => No File
  52. ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
  53. ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
  54. ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
  55.  
  56. *****************
  57.  
  58. "HKU\S-1-5-21-51145358-2442092094-1609093457-1000\Software\MozillaPlugins\anvisoft.com/AdblockPlugin" => removed successfully.
  59. "C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll" => not found
  60. FF Plugin HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522: anvisoft.com/AdblockPlugin -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll [No File] => Error: No automatic fix found for this entry.
  61. "HKLM\System\CurrentControlSet\Services\Mobizen plugin" => removed successfully.
  62. Mobizen plugin => service removed successfully.
  63. "HKLM\System\CurrentControlSet\Services\catchme" => removed successfully.
  64. catchme => service removed successfully.
  65. "HKLM\System\CurrentControlSet\Services\KProcessHacker2" => removed successfully.
  66. KProcessHacker2 => service removed successfully.
  67. "HKLM\System\CurrentControlSet\Services\VGPU" => removed successfully.
  68. VGPU => service removed successfully.
  69. "HKLM\System\CurrentControlSet\Services\XDva409" => removed successfully.
  70. XDva409 => service removed successfully.
  71. "HKLM\System\CurrentControlSet\Services\XDva410" => removed successfully.
  72. XDva410 => service removed successfully.
  73. "HKLM\System\CurrentControlSet\Services\XDva415" => removed successfully.
  74. XDva415 => service removed successfully.
  75. "HKLM\System\CurrentControlSet\Services\XDva423" => removed successfully.
  76. XDva423 => service removed successfully.
  77. "HKLM\System\CurrentControlSet\Services\XDva424" => removed successfully.
  78. XDva424 => service removed successfully.
  79. "HKLM\System\CurrentControlSet\Services\XDva425" => removed successfully.
  80. XDva425 => service removed successfully.
  81. "HKLM\System\CurrentControlSet\Services\XDva511" => removed successfully.
  82. XDva511 => service removed successfully.
  83. "HKLM\System\CurrentControlSet\Services\XDva534" => removed successfully.
  84. XDva534 => service removed successfully.
  85. "HKLM\System\CurrentControlSet\Services\XDva535" => removed successfully.
  86. XDva535 => service removed successfully.
  87. "HKLM\System\CurrentControlSet\Services\XDva536" => removed successfully.
  88. XDva536 => service removed successfully.
  89. "HKLM\System\CurrentControlSet\Services\XDva537" => removed successfully.
  90. XDva537 => service removed successfully.
  91. C:\Program Files\AAAMMYYY.exe => moved successfully
  92. C:\Program Files\IIIUU666.exe => moved successfully
  93. C:\Program Files\OOO00CCO.exe => moved successfully
  94. C:\Program Files\SSS44GGS.exe => moved successfully
  95. C:\Program Files\UUU66IIU.exe => moved successfully
  96. C:\Program Files\YYAAMMYM.exe => moved successfully
  97. C:\Users\Admin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully
  98. C:\Users\Admin\AppData\Local\recently-used.xbel => moved successfully
  99. C:\Users\Admin\AppData\Local\TroubleshooterConfig.json => moved successfully
  100. C:\Users\Admin\AppData\Local\{82412A15-975A-419C-BAD0-F07D5FEE1225} => moved successfully
  101. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{04EBE69E-2DED-44F6-9854-9A3988F751ED}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.51.1\psuser.dll => No File => Error: No automatic fix found for this entry.
  102. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.33\psuser.dll => No File => Error: No automatic fix found for this entry.
  103. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{1aad99ea-ee10-5c3a-8174-84c63a67adde}\InprocServer32 -> C:\ProgramData\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll => No File => Error: No automatic fix found for this entry.
  104. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{2027D000-8CEB-4191-9620-15DD2561855F}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.57.1\psuser.dll => No File => Error: No automatic fix found for this entry.
  105. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{41F2ED58-C7A8-43D8-8F5A-E15229560913}\InprocServer32 -> no filepath => Error: No automatic fix found for this entry.
  106. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}\InprocServer32 -> C:\Users\Admin\AppData\Local\Dropbox\Update\1.3.27.29\psuser.dll => No File => Error: No automatic fix found for this entry.
  107. CustomCLSID: HKU\S-1-5-21-51145358-2442092094-1609093457-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-04262018151827522_Classes\CLSID\{d33c6260-dafc-4b90-bf39-8ad6a5f19b7d}\localserver32 -> "C:\Program Files\Avira\SoftwareUpdater\AviraSoftwareUpdaterToastNotificationsBridge.exe" -ToastActivated => No File => Error: No automatic fix found for this entry.
  108. "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{04EBE69E-2DED-44F6-9854-9A3988F751ED}" => removed successfully.
  109. "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{0A368B9B-3566-4730-B40E-EAF6858A53AF}" => removed successfully.
  110. "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{1aad99ea-ee10-5c3a-8174-84c63a67adde}" => removed successfully.
  111. "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{2027D000-8CEB-4191-9620-15DD2561855F}" => removed successfully.
  112. "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{41F2ED58-C7A8-43D8-8F5A-E15229560913}" => removed successfully.
  113. "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{D166BD15-03AF-413A-BEFD-0679FF410B49}" => removed successfully.
  114. "HKU\S-1-5-21-51145358-2442092094-1609093457-1000_Classes\CLSID\{d33c6260-dafc-4b90-bf39-8ad6a5f19b7d}" => removed successfully.
  115. "HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avast" => removed successfully.
  116. HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
  117. "HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PowerISO" => removed successfully.
  118. HKLM\Software\Classes\CLSID\{967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => not found
  119. "HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PowerISO" => removed successfully.
  120. HKLM\Software\Classes\CLSID\{967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => not found
  121.  
  122. ==== End of Fixlog 16:06:46 ====
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement