offline
- makica1980

- Novi MyCity građanin
- Pridružio: 05 Feb 2014
- Poruke: 6
- Gde živiš: Obrenovac
|
Zoek.exe v5.0.0.0 Updated 31-January-2014
Tool run by korisnik on cet 06.02.2014 at 9:29:32,27.
Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\korisnik\AppData\Local\Temp\Rar$EX95.896\zoek.exe [Scan all users] [Script inserted]
==== Older Logs ======================
C:\zoek-results2014-02-05-214758.log 11051 bytes
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-643227427-2544039522-3149745375-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully
HKEY_USERS\S-1-5-21-643227427-2544039522-3149745375-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} deleted successfully
HKEY_USERS\S-1-5-21-643227427-2544039522-3149745375-1000\Software\Microsoft\Internet Explorer\SearchScopes\{B73DFF53-8CEA-46FF-A428-CAF577F33CF0} deleted successfully
HKEY_USERS\S-1-5-21-643227427-2544039522-3149745375-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully
HKEY_USERS\S-1-5-21-643227427-2544039522-3149745375-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_USERS\S-1-5-21-643227427-2544039522-3149745375-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully
==== Deleting Services ======================
==== FireFox Fix ======================
ProfilePath: C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default
---- Lines [Link mogu videti samo ulogovani korisnici] modified from prefs.js ----
user_pref("extensions.installCache", "[{\"name\":\"app-global\",\"addons\":{\"{972ce4c6-7e08-4474-a285-3208198ce6fd}\":{\"descriptor\":\"C:\\\\Program
---- Lines BabylonToolbar removed from prefs.js ----
user_pref("extensions.BabylonToolbar.admin", false);
user_pref("extensions.BabylonToolbar.aflt", "babsst");
user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
user_pref("extensions.BabylonToolbar.autoRvrt", "false");
user_pref("extensions.BabylonToolbar.dfltLng", "en");
user_pref("extensions.BabylonToolbar.excTlbr", false);
user_pref("extensions.BabylonToolbar.id", "d80ff46e00000000000000e04d7b27fd");
user_pref("extensions.BabylonToolbar.instlDay", "15682");
user_pref("extensions.BabylonToolbar.instlRef", "sst");
user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
user_pref("extensions.BabylonToolbar.rvrt", "false");
user_pref("extensions.BabylonToolbar.tlbrId", "base");
user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "http://search.babylon.com/?babsrc=TB_def&mntrId=d80ff46e00000000000000e04d7b27fd&q=");
user_pref("extensions.BabylonToolbar.vrsn", "1.8.4.9");
user_pref("extensions.BabylonToolbar.vrsni", "1.8.4.9");
user_pref("extensions.BabylonToolbar_i.babExt", "");
user_pref("extensions.BabylonToolbar_i.babTrack", "affID=109220&tt=4912_1");
user_pref("extensions.BabylonToolbar_i.excTlbr", false);
user_pref("extensions.BabylonToolbar_i.newTab", false);
user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.8.4.917:28:19");
---- Lines BabylonToolbar removed from user.js ----
user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "http://search.babylon.com/?babsrc=TB_def&mntrId=d80ff46e00000000000000e04d7b27fd&q=");
user_pref("extensions.BabylonToolbar.id", "d80ff46e00000000000000e04d7b27fd");
user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
user_pref("extensions.BabylonToolbar.instlDay", "15682");
user_pref("extensions.BabylonToolbar.vrsn", "1.8.4.9");
user_pref("extensions.BabylonToolbar.vrsni", "1.8.4.9");
user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.8.4.917:28:19");
user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
user_pref("extensions.BabylonToolbar.aflt", "babsst");
user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
user_pref("extensions.BabylonToolbar.tlbrId", "base");
user_pref("extensions.BabylonToolbar.instlRef", "sst");
user_pref("extensions.BabylonToolbar.dfltLng", "en");
user_pref("extensions.BabylonToolbar_i.excTlbr", false);
user_pref("extensions.BabylonToolbar.excTlbr", false);
user_pref("extensions.BabylonToolbar.admin", false);
user_pref("extensions.BabylonToolbar_i.babTrack", "affID=109220&tt=4912_1");
user_pref("extensions.BabylonToolbar_i.babExt", "");
user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
user_pref("extensions.BabylonToolbar.autoRvrt", "false");
user_pref("extensions.BabylonToolbar.rvrt", "false");
user_pref("extensions.BabylonToolbar_i.newTab", false);
---- Lines CT2670199 removed from prefs.js ----
user_pref("CT2670199.1000082.isPlayDisplay", "true");
user_pref("CT2670199.1000082.state", "{\"state\":\"stopped\",\"text\":\"Californi...\",\"description\":\"California Rock\",\"url\":\"http://feedlive.n
user_pref("CT2670199.addressBarTakeOverEnabledInHidden", "true");
user_pref("CT2670199.autoDisableScopes", 0);
user_pref("CT2670199.countryCode", "RS");
user_pref("CT2670199.defaultSearch", "false");
user_pref("CT2670199.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
user_pref("CT2670199.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
user_pref("CT2670199.enableAlerts", "true");
user_pref("CT2670199.enableFix404ByUser", "TRUE");
user_pref("CT2670199.enableSearchFromAddressBar", "true");
user_pref("CT2670199.FF19Solved", "true");
user_pref("CT2670199.FirstTime", "true");
user_pref("CT2670199.firstTimeDialogOpened", "true");
user_pref("CT2670199.FirstTimeFF3", "true");
user_pref("CT2670199.fixPageNotFoundError", "true");
user_pref("CT2670199.fixPageNotFoundErrorByUser", "true");
user_pref("CT2670199.fixPageNotFoundErrorInHidden", "true");
user_pref("CT2670199.fixUrls", true);
user_pref("CT2670199.fullUserID", "UN15069555063266596.UP.20130627092304");
user_pref("CT2670199.GK_ICY_NOTIF_SENT.enc", "c2VudA==");
user_pref("CT2670199.homepageuserchanged", true);
user_pref("CT2670199.InstallationDate0.2180191645578123.enc", "MTM2NjgxMzk3Mjc1OQ==");
user_pref("CT2670199.installDate", "24/4/2013 16:32:35");
user_pref("CT2670199.installerVersion", "1.4.1.3");
user_pref("CT2670199.installId", "dm");
user_pref("CT2670199.installType", "conduitnsisintegration");
user_pref("CT2670199.isCheckedStartAsHidden", true);
user_pref("CT2670199.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
user_pref("CT2670199.isFirstTimeToolbarLoading", "false");
user_pref("CT2670199.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
user_pref("CT2670199.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"http://search.conduit.com/?ctid=CT2670199&octid=CT2670199&SearchSource
user_pref("CT2670199.lastVersion", "10.23.0.822");
user_pref("CT2670199.mam_gk_appsData.enc", "eyJhcHBzIjpbeyJpZCI6IlByaWNlR29uZyIsInVybCI6Imh0dHA6Ly9wcmljZWdvbmcuY29uZHVpdGFwcHMuY29tL01BTS92MS9odG1sX2
user_pref("CT2670199.mam_gk_appsDefaultEnabled.enc", "bnVsbA==");
user_pref("CT2670199.mam_gk_appState_CouponBuddy.enc", "b24=");
user_pref("CT2670199.mam_gk_appState_Easytobook.enc", "b24=");
user_pref("CT2670199.mam_gk_appState_Easytobook_targeted.enc", "b24=");
user_pref("CT2670199.mam_gk_appState_PriceGong.enc", "b24=");
user_pref("CT2670199.mam_gk_appStateReportTime.enc", "MTM2NjgxMzk3NTM5NQ==");
user_pref("CT2670199.mam_gk_configuration.enc", "eyJjb25maWd1cmF0aW9uIjpbeyJpZCI6IkNvdXBvbkJ1ZGR5IiwiY3JpdGVyaWFzIjpbeyJjcml0ZXJpYUlkIjoiYzY4NmY4ZTAtM
user_pref("CT2670199.mam_gk_currentVersion.enc", "MS40LjQuNg==");
user_pref("CT2670199.mam_gk_eventsCache.enc", "eyIxMzRlZDU0ZC03MjlmLTRjZDAtYmRlMS01MDQ1NjM4MzYxZjkiOnsidG9waWMiOiJzZW5kVXNhZ2UiLCJkYXRhIjp7ImNhdGVnb3J
user_pref("CT2670199.mam_gk_first_time.enc", "MQ==");
user_pref("CT2670199.mam_gk_gadgetOpen.enc", "MA==");
user_pref("CT2670199.mam_gk_lastLoginTime.enc", "MTM2NjgxMzk3NTMxNA==");
user_pref("CT2670199.mam_gk_localization.enc", "eyJnYWRnZXRDb250ZW50UG9saWN5Ijp7IlRleHQiOiJDb250ZW50IFBvbGljeSJ9LCJnYWRnZXREZXNjcmlwdGlvblByaW1hcnkiOn
user_pref("CT2670199.mam_gk_pgUnloadedOnce.enc", "dHJ1ZQ==");
user_pref("CT2670199.mam_gk_settings1.4.4.6.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydmFsIjoyNDAsInN0YW1wIjoiNjFfLTEiLCJpc1Rlc3QiOmZhbHN
user_pref("CT2670199.mam_gk_showCloseButton.enc", "dHJ1ZQ==");
user_pref("CT2670199.mam_gk_showWelcomeGadget.enc", "ZmFsc2U=");
user_pref("CT2670199.mam_gk_userId.enc", "NWQ4YzVhN2ItOWU4NS00OGZkLWE4NTItNTMzOWRkYTg5MTli");
user_pref("CT2670199.migrateAppsAndComponents", true);
user_pref("CT2670199.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"http%3A%2F%2Fwww.mycity.rs%2FAmbulanta%2Fkompjuter-odnedavno-koci-2.html\",\"EB
user_pref("CT2670199.newSettings", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
user_pref("CT2670199.openThankYouPage", "false");
user_pref("CT2670199.openUninstallPage", "true");
user_pref("CT2670199.PG_ENABLE", "dHJ1ZQ==");
user_pref("CT2670199.PG_ENABLE.enc", "dHJ1ZQ==");
user_pref("CT2670199.revertSettingsEnabled", "false");
user_pref("CT2670199.search.searchAppId", "129210744565641873");
user_pref("CT2670199.search.searchCount", "0");
user_pref("CT2670199.searchInNewTabEnabledByUser", "false");
user_pref("CT2670199.searchInNewTabEnabledInHidden", "true");
user_pref("CT2670199.searchSuggestEnabledByUser", "false");
user_pref("CT2670199.searchUserMode", "1");
user_pref("CT2670199.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
user_pref("CT2670199.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
user_pref("CT2670199.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
user_pref("CT2670199.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT2670199\"}");
user_pref("CT2670199.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"http://FreeLunchDesignTB.OurToolbar
user_pref("CT2670199.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"Free Lunch Design TB \"}");
user_pref("CT2670199.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
user_pref("CT2670199.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}");
user_pref("CT2670199.serviceLayer_services_appsMetadata_lastUpdate", "1366814892780");
user_pref("CT2670199.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1366813968027");
user_pref("CT2670199.serviceLayer_services_Configuration_lastUpdate", "1391621853748");
user_pref("CT2670199.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1366813967788");
user_pref("CT2670199.serviceLayer_services_location_lastUpdate", "1372197097728");
user_pref("CT2670199.serviceLayer_services_login_10.15.2.23_lastUpdate", "1366869885912");
user_pref("CT2670199.serviceLayer_services_login_10.15.2.523_lastUpdate", "1368544400113");
user_pref("CT2670199.serviceLayer_services_login_10.16.2.509_lastUpdate", "1372276119335");
user_pref("CT2670199.serviceLayer_services_login_10.16.4.519_lastUpdate", "1374606338755");
user_pref("CT2670199.serviceLayer_services_login_10.16.70.505_lastUpdate", "1377713631598");
user_pref("CT2670199.serviceLayer_services_login_10.19.2.505_lastUpdate", "1378816543557");
user_pref("CT2670199.serviceLayer_services_login_10.20.0.513_lastUpdate", "1380439105165");
user_pref("CT2670199.serviceLayer_services_login_10.20.1.508_lastUpdate", "1382467441132");
user_pref("CT2670199.serviceLayer_services_login_10.21.1.507_lastUpdate", "1384422468413");
user_pref("CT2670199.serviceLayer_services_login_10.22.3.518_lastUpdate", "1385048007968");
user_pref("CT2670199.serviceLayer_services_login_10.22.5.510_lastUpdate", "1386943928430");
user_pref("CT2670199.serviceLayer_services_login_10.23.0.822_lastUpdate", "1391675052191");
user_pref("CT2670199.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1366813967839");
user_pref("CT2670199.serviceLayer_services_searchAPI_lastUpdate", "1391621853971");
user_pref("CT2670199.serviceLayer_services_serviceMap_lastUpdate", "1391621853602");
user_pref("CT2670199.serviceLayer_services_setupAPI_lastUpdate", "1366813964921");
user_pref("CT2670199.serviceLayer_services_toolbarContextMenu_lastUpdate", "1366813967710");
user_pref("CT2670199.serviceLayer_services_toolbarSettings_lastUpdate", "1391675051845");
user_pref("CT2670199.serviceLayer_services_translation_lastUpdate", "1391621853907");
user_pref("CT2670199.settingsINI", true);
user_pref("CT2670199.shouldFirstTimeDialog", "false");
user_pref("CT2670199.showToolbarPermission", "false");
user_pref("CT2670199.smartbar.CTID", "CT2670199");
user_pref("CT2670199.smartbar.isHidden", true);
user_pref("CT2670199.smartbar.toolbarName", "Free Lunch Design TB ");
user_pref("CT2670199.smartbar.Uninstall", "0");
user_pref("CT2670199.startPage", "false");
user_pref("CT2670199.toolbarAppHeartbeat.enc", "eyIxMjk2ODMzODc0ODY0MjgyMjYiOjEzNjY4MTM5NzI3NzJ9");
user_pref("CT2670199.toolbarBornServerTime", "24-4-2013");
user_pref("CT2670199.toolbarCurrentServerTime", "6-2-2014");
user_pref("CT2670199.toolbarLoginClientTime", "Wed Apr 24 2013 16:32:47 GMT+0200");
user_pref("CT2670199.toolbarNotificationHeartbeat.enc", "eyJ0eXBlIjoiaGVhcnRiZWF0IiwidGltZSI6MTM2NjgxNDc3OTI2MSwidXJsIjoiaHR0cDovL3NlYXJjaC5jb25kdWl0L
user_pref("CT2670199.toolbarNotificationQueue.enc", "W3siYXBwIjowLjIxODAxOTE2NDU1NzgxMjMsImFyZ3MiOnsiaWQiOjAuMjE4MDE5MTY0NTU3ODEyMywidG9vbGJhcklkIjoiQ
user_pref("CT2670199.toolbarNotificationSettings.enc", "eyJzZW5kTm90aWZpY2F0aW9ucyI6eyJhbGwiOnRydWUsImFwcHMiOnsiMC4yMTgwMTkxNjQ1NTc4MTIzIjp7InNob3ciOn
user_pref("CT2670199.toolbarNotificationUserId.enc", "NDcyMDAxODAxMjk=");
user_pref("CT2670199.url_history0001.enc", "aHR0cDovL3d3dy5vc2pqem1hai5jb20vdWNlbmljaV9za29sZV9qb3Zhbl9qb3Zhbm92aWNfem1hai5odG1sOjo6Y2xpY2toYW5kbGVyOj
user_pref("CT2670199.UserID", "UN15069555063266596");
user_pref("CT2670199_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1391675020073,\"isWithState\":\"\",\"timeFromStar
user_pref("valueApps.CT2670199.mam_gk_currentVersion", "312E31332E302E3137");
user_pref("valueApps.CT2670199.mam_gk_currentVersion.storedInFile", false);
user_pref("valueApps.CT2670199.mam_gk_globalKeysMigratedToLocalStorage", "31");
user_pref("valueApps.CT2670199.mam_gk_globalKeysMigratedToLocalStorage.storedInFile", false);
user_pref("valueApps.CT2670199.mam_gk_migrated_from_ls", "31");
user_pref("valueApps.CT2670199.mam_gk_migrated_from_ls.storedInFile", false);
user_pref("valueApps.CT2670199.mam_gk_userBornDate", "4E2F41");
user_pref("valueApps.CT2670199.mam_gk_userBornDate.storedInFile", false);
---- Lines conduit removed from prefs.js ----
user_pref("plugin.state.npconduitfirefoxplugin", 2);
user_pref("smartbar.conduitSearchAddressUrlList", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2928751&SearchSource=2&CUI=UN15878527073113725&UM=
---- Lines valueApps removed from prefs.js ----
user_pref("valueApps.storage.mam_gk_userId", "30393366666539362D396338652D343362332D396430662D633935373035363232383535");
---- Lines ask.com removed from prefs.js ----
user_pref("browser.search.order.1", "Ask.com");
user_pref("weboftrust.search.ask.display", "Ask.com Web Search");
---- Lines smartbar removed from prefs.js ----
user_pref("smartbar.machineId", "G7RKKOZICDNPYKT1DSFSLQPNSBX9VORKNWGWKFTK2TE4X7XLROJWIF7G25WSEGITWWBRVG5GH/PLGAUI8QA9OA");
user_pref("smartbar.originalSearchAddressUrl", "");
user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
---- FireFox user.js and prefs.js backups ----
user_06.02.2014_0951_.backup
prefs_06.02.2014_0951_.backup
==== Deleting Files \ Folders ======================
C:\Users\korisnik\daemonprocess.txt deleted
C:\Users\korisnik\.android deleted
C:\Program Files\Mozilla Firefox\searchplugins\babylon.xml deleted
C:\Program Files\Mozilla Firefox\searchplugins\Search_Results.xml deleted
C:\Program Files\Mobogenie deleted
C:\Program Files\Mario Forever deleted
C:\Users\korisnik\AppData\Roaming\All CPU Meter_Settings.ini deleted
C:\Users\korisnik\AppData\Roaming\Advanced System Protector deleted
C:\Users\korisnik\AppData\Roaming\defaulttab deleted
C:\Users\korisnik\AppData\Roaming\Registry Mechanic deleted
C:\Users\korisnik\AppData\Roaming\Systweak deleted
C:\ProgramData\boost_interprocess deleted
C:\ProgramData\InstallMate deleted
C:\ProgramData\Premium deleted
C:\ProgramData\Babylon deleted
C:\Users\korisnik\AppData\Local\Mobogenie deleted
C:\Users\korisnik\AppData\Local\cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mario Forever deleted
C:\Users\korisnik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FTDownloader.com deleted
C:\Users\korisnik\AppData\LocalLow\searchresultstb deleted
C:\Users\korisnik\AppData\LocalLow\ilividtoolbarguid deleted
C:\Windows\system32\Tasks\Advanced System Protector deleted
C:\END deleted
C:\Users\korisnik\Documents\Mobogenie deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\searchplugins\babylon1.xml deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\searchplugins\askcom.xml deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\searchplugins\search-here-1.xml deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\searchplugins\search-here.xml deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\searchplugins\Search_Results.xml deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\valueApps deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\ilividtoolbarguid deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\jetpack deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\CT2670199 deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\extensions\{a5ae8924-4036-420f-b7f6-a47e4b8f692e} deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\smartbar deleted
C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default\extensions\addon@defaulttab.com.xpi deleted
"C:\Users\korisnik\AppData\Local\iLivid" deleted
"C:\Users\korisnik\AppData\Local\PutLockerDownloader" deleted
==== Firefox Extensions ======================
ProfilePath: C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default
- Qualys BrowserCheck - %ProfilePath%\extensions\{7D2FB79E-E58C-4DB5-A36F-AC1C73967F4D}
AppDir: C:\Program Files\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\korisnik\AppData\Roaming\Mozilla\Firefox\Profiles\id86kme9.default
FD6ACD9D85177259D442A0C4AC15F7B8 - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll - Shockwave Flash
AC987EE8037531807C5D7E6217A23501 - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat
EB41064BC07017F5694CF16B4DEF6B10 - C:\Program Files\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat
A9191AE22A8F1287B5E2DF33E3A57253 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U51
9B10927CFD0F7AD39E40C0E34005B1AD - C:\Program Files\Java\jre7\bin\dtplugin\npdeployJava1.dll - Java Deployment Toolkit 7.0.510.13
C36444D7301A8C881FC7296B092609C7 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll - Google Update
F3B0E300AFC94E1A775A2D935A7D384F - C:\Windows\system32\Adobe\Director\np32dsw_1207148.dll - Shockwave for Director / Shockwave for Director
5B92CB0A3EEE50F6B9AE036B4F9B0F0C - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll - Google Earth Plugin
E5AF72B7353FF8D431A7C463A4229524 - C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_168.dll - Shockwave Flash
BA320B0A76BAF9DE67093FDBC2F958AD - C:\Program Files\Verimatrix\ViewRight Web\npViewRight.dll - Verimatrix ViewRight
==== Chrome Look ======================
Google Docs - korisnik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
Google Drive - korisnik\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
YouTube - korisnik\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
Google Search - korisnik\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
Google Wallet - korisnik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Gmail - korisnik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia
Ask Video Search - korisnik\AppData\Local\Torch\User Data\Default\Extensions\khfhickdpicdaakidammlhdmhhpgfmkc
Torch Helper - korisnik\AppData\Local\Torch\User Data\Default\Extensions\lecpjhggilhbceadobnggaagnpfpafhg
Ask Image Search - korisnik\AppData\Local\Torch\User Data\Default\Extensions\maenakfpbfmdigldjpegddiphokaodjh
==== Chrome Fix ======================
C:\Users\korisnik\AppData\Local\Torch\User Data\Default\Extensions\khfhickdpicdaakidammlhdmhhpgfmkc deleted successfully
C:\Users\korisnik\AppData\Local\Torch\User Data\Default\Extensions\lecpjhggilhbceadobnggaagnpfpafhg deleted successfully
C:\Users\korisnik\AppData\Local\Torch\User Data\Default\Extensions\maenakfpbfmdigldjpegddiphokaodjh deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://home.myplaycity.com/"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://home.myplaycity.com/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="http://search.babylon.com/?affID=109220&tt=4912_1&babsrc=NT_ss&mntrId=d80ff46e00000000000000e04d7b27fd"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://home.myplaycity.com/"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
"Tabs"="res://ieframe.dll/tabswelcome.htm"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
==== shortcuts on All Users Desktop ======================
C:\Users\Public\Desktop\ACDSee Pro 4.lnk - C:\Windows\Installer\{88D4FE78-6EA6-4DFB-9FC2-8BC316F0C2FD}\ACDSeeDesktopShortcu_F99F74B4972B4B06B8936B3B0DB0128B.exe
C:\Users\Public\Desktop\Adobe Reader XI.lnk - C:\Program Files\Adobe\Reader 11.0\Reader\AcroRd32.exe
C:\Users\Public\Desktop\AIMP3.lnk - C:\Program Files\AIMP3\AIMP3.exe
C:\Users\Public\Desktop\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe
C:\Users\Public\Desktop\DAEMON Tools Lite.lnk - C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Users\Public\Desktop\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Users\Public\Desktop\Google Earth.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe
C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk - C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Users\Public\Desktop\MCShield Real-Time Monitor.lnk - C:\Program Files\MCShield\MCShieldRTM.exe
C:\Users\Public\Desktop\Mozilla Firefox.lnk - C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\Public\Desktop\Skype.lnk - C:\Windows\Installer\{AA59DDE4-B672-4621-A016-4C248204957A}\SkypeIcon.exe
==== shortcuts in All Users Start Menu ======================
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk - C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AB0000000001}\SC_Reader.ico
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk - C:\Program Files\Mozilla Firefox\firefox.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk - C:\Program Files\CCleaner\CCleaner.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\Uninstall CCleaner.lnk - C:\Program Files\CCleaner\uninst.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk - C:\Program Files\Google\Chrome\Application\chrome.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Deinstalacija programa Google Earth.lnk - C:\Windows\System32\msiexec.exe /x {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Google Earth.lnk - C:\Program Files\Google\Google Earth\client\googleearth.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Pokretanje programa Google Earth u DirectX na?inu rada.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth\Pokretanje programa Google Earth u OpenGL na?inu rada.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk - C:\Program Files\Java\jre7\bin\javacpl.exe -tab about
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk - C:\Program Files\Java\jre7\bin\javacpl.exe -tab update
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk - C:\Program Files\Java\jre7\bin\javacpl.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.lnk -
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield\MCShield Control Center.lnk - C:\Program Files\MCShield\MCShieldCC.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield\MCShield Real-Time Monitor.lnk - C:\Program Files\MCShield\MCShieldRTM.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield\Logs\All scans.lnk - C:\ProgramData\MCShield\AllScans.txt
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield\Logs\Last scan.lnk - C:\ProgramData\MCShield\LastScan.txt
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield\Logs\Summary.lnk - C:\ProgramData\MCShield\Summary.txt
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield\Tools\MCShield Translator.lnk - C:\Program Files\MCShield\Tools\Translator.exe
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield\Uninstall\Uninstall MCShield.lnk - C:\Program Files\MCShield\MCS-Uninstall.exe
==== shortcuts in Quick Launch ======================
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\korisnik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
==== Empty FireFox Cache ======================
C:\Users\korisnik\AppData\Local\Mozilla\Firefox\Profiles\id86kme9.default\Cache emptied successfully
==== Empty Chrome Cache ======================
C:\Users\korisnik\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\korisnik\AppData\Local\Torch\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=5058 folders=626 404256173 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Users\korisnik\AppData\Local\Temp will be emptied at reboot
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\korisnik\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\Users\korisnik\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat" not found
==== EOF on cet 06.02.2014 at 10:03:27,85 ======================
|