Browser brljavi, i mozda jos nesto... nz

2

Browser brljavi, i mozda jos nesto... nz

offline
  • drmrdz 
  • Novi MyCity građanin
  • Pridružio: 28 Jan 2021
  • Poruke: 13

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-01-2021
Ran by mertz-win10 (administrator) on DESKTOP-RC349HN (Hewlett-Packard 500-420nc) (29-01-2021 15:28:22)
Running from C:\Users\mertz-win10\Desktop
Loaded Profiles: mertz-win10
Platform: Windows 10 Pro Version 1909 18363.1316 (X64) Language: English (United States)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe
(Comodo Security Solutions, Inc. -> Comodo Inc.) C:\Program Files (x86)\Comodo\IceDragon\icedragon_updater.exe
(FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe
(IDT, Inc.) [File not signed] C:\Program Files\IDT\WDM\stacsv64.exe
(IDT, Inc.) [File not signed] C:\Program Files\IDT\WDM\sttray64.exe
(Integrated Device Technology Inc. -> Hewlett-Packard) [File not signed] C:\Program Files\IDT\WDM\Beats64.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
(Kilonova LLC -> Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.5.0.7\Lightshot.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2012.21.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <9>
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_e0a5a1b06de180e3\Display.NvContainer\NVDisplay.Container.exe <2>
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(remotemouse.net) [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouse.exe
(RemoteMouse.net) [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouseCore.exe
(Viber Media S.à r.l. -> Viber Media S.à r.l.) C:\Users\mertz-win10\AppData\Local\Viber\Viber.exe
(Winstep Software Technologies) [File not signed] [File is in use] C:\Program Files (x86)\Winstep\Nexus.exe
(Winstep Software Technologies) [File not signed] C:\Program Files (x86)\Winstep\WsxService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2014-01-05] (IDT, Inc.) [File not signed]
HKLM\...\Run: [BeatsOSDApp] => C:\Program Files\IDT\WDM\beats64.exe [41664 2014-01-05] (Integrated Device Technology Inc. -> Hewlett-Packard) [File not signed]
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [455872 2020-02-09] (Power Software Limited -> Power Software Ltd)
HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226728 2019-07-21] (Kilonova LLC -> )
HKU\S-1-5-21-39625150-317594477-3264285943-1002\...\Run: [Viber] => C:\Users\mertz-win10\AppData\Local\Viber\Viber.exe [46949592 2021-01-11] (Viber Media S.à r.l. -> Viber Media S.à r.l.)
HKU\S-1-5-21-39625150-317594477-3264285943-1002\...\Run: [Nexus] => C:\Program Files (x86)\Winstep\Nexus.exe [18012288 2020-10-28] (Winstep Software Technologies) [File not signed] [File is in use]
HKU\S-1-5-21-39625150-317594477-3264285943-1002\...\Run: [Opera Browser Assistant] => C:\Users\mertz-win10\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3154456 2020-11-25] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-39625150-317594477-3264285943-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32440376 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
Startup: C:\Users\mertz-win10\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2021-01-06]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {070AC270-EE4C-4C55-A9E5-2A430DC87BDC} - System32\Tasks\update-S-1-5-21-39625150-317594477-3264285943-1002 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {138FA5FF-ED59-4206-BB45-2485D23425E3} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {1C9ACAEF-7DD2-4D05-91EE-2C97B66A0B5F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [850928 2020-03-18] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {287342EC-503C-4390-B4FC-49F2EAB329FC} - System32\Tasks\Opera scheduled Autoupdate 1600979346 => C:\Users\mertz-win10\AppData\Local\Programs\Opera\launcher.exe [1776280 2021-01-14] (Opera Software AS -> Opera Software)
Task: {365C3AC9-3780-4E1F-A05F-AD5DA2A7D51E} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3891365D-212C-4866-9428-A685A3864BA3} - System32\Tasks\Opera scheduled assistant Autoupdate 1600979357 => C:\Users\mertz-win10\AppData\Local\Programs\Opera\launcher.exe [1776280 2021-01-14] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\mertz-win10\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {398864C8-F14F-43BE-B2FA-D7DC3A05C1AB} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5332904 2021-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {3FA29F60-57C2-4111-ADC9-279F59B2DBE8} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\Windows\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
Task: {4A7E5DCF-161A-4B45-A435-66A459923DB6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5332904 2021-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {58FA798E-19FE-49C2-9F6B-D4B525C28680} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3293168 2020-04-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5CDF7405-8192-4A8C-9DB6-64C528DE089B} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
Task: {6FA213F0-F3F2-4AB3-A836-C64197FAF7B8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26913848 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {7D9835E1-B135-4AF5-A0A0-A83B185EB5E5} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23062920 2021-01-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {809CD016-B8FC-4CB5-A274-DD2026130C4A} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098912 2020-11-05] (Intel(R) System Usage Report -> Intel Corporation)
Task: {93881C80-D3D3-4EB7-A4F3-C29F7E3E29E5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A048474D-732B-47BA-9AEC-49407C24AD96} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AA393CF1-B429-4154-BEA7-D6B1272D90B0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B4AE9DF1-42FB-4C64-9807-53DA718A14F2} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BB091DCF-303C-4D01-B61B-EF53E2EB6D17} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23062920 2021-01-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {C0021F52-A9C7-4CA2-AC75-089FB7282B7A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C2A406E6-6B1A-4973-B898-A68EA295B1C4} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [143720 2021-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {C4CFA00D-EBA2-4916-9382-9B0B03104F05} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CB019AC6-3B0B-4091-B464-1E431B8B8BB0} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [850928 2020-03-18] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {CC40EAA0-063A-4C2A-9A43-BBB6868E6941} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: <Company name>)
Task: {D5E0B025-C1C1-4433-A121-77465C5A49A6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DB132812-B166-4047-A9D5-66A7D8976EC4} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [677344 2021-01-27] (Mozilla Corporation -> Mozilla Foundation)
Task: {E0D58637-33EF-44CA-8C77-9A5854AFB3BC} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098912 2020-11-05] (Intel(R) System Usage Report -> Intel Corporation)
Task: {F6D1B856-89E1-4948-A9DB-22F255E66A3B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FAD3938F-ACE9-4BF2-B2BD-349D345AF628} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [143720 2021-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {FF492FCF-7807-4809-BAF5-ACE75182B012} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FF595D3F-C1AA-4EB4-86BF-EC9E000A1BC1} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\update-S-1-5-21-39625150-317594477-3264285943-1002.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe
Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 217.144.16.199
Tcpip\..\Interfaces\{42aaef9f-79fe-4d61-b30c-21053a214862}: [DhcpNameServer] 217.144.16.199 192.168.0.1
Tcpip\..\Interfaces\{a64bccdf-3d92-4d2e-8cf2-48601086b324}: [DhcpNameServer] 192.168.1.1 217.144.16.199

FireFox:
========
FF DefaultProfile: jv50ier2.default
FF DefaultProfile: 7x69lkhi.default
FF ProfilePath: C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\jv50ier2.default [2021-01-29]
FF NewTab: Mozilla\Firefox\Profiles\jv50ier2.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2021-01-28 06:43:46&iid=7d6e534e-5efb-49c4-85e0-ac6f2c16354c&bName=
FF ProfilePath: C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release [2021-01-29]
FF Session Restore: Mozilla\Firefox\Profiles\n2ks7cy9.default-release -> is enabled.
FF Notifications: Mozilla\Firefox\Profiles\n2ks7cy9.default-release -> hxxps://www.instagram.com; hxxps://www.reddit.com; hxxps://eon.tv; hxxps://www.nike.sk
FF Extension: (Facebook Container) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\@contain-facebook.xpi [2020-10-19]
FF Extension: (Google Container) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\@contain-google.xpi [2020-12-09]
FF Extension: (WebRTC Leak Shield) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\@webrtc-leak-shield.xpi [2020-10-27]
FF Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\@windscribeff.xpi [2020-12-24]
FF Extension: (Dark Reader) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\addon@darkreader.org.xpi [2021-01-22]
FF Extension: (F.B Purity - Cleans up Facebook (WX)) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\fbpElectroWebExt@fbpurity.com.xpi [2021-01-28] [UpdateUrl:hxxps://www.fbpurity.com/FF-FBP-Ext-Updates.json]
FF Extension: (Ghostery – Privacy Ad Blocker) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\firefox@ghostery.com.xpi [2020-12-20]
FF Extension: (HTTPS Svuda) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\https-everywhere@eff.org.xpi [2021-01-29]
FF Extension: (Wikiwand: Wikipedia Modernized) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\jid1-D7momAzRw417Ag@jetpack.xpi [2020-12-19]
FF Extension: (Privacy Badger) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2020-12-19]
FF Extension: (DuckDuckGo Privacy Essentials) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2021-01-11]
FF Extension: (Grammar and Spell Checker — LanguageTool) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\languagetool-webextension@languagetool.org.xpi [2021-01-27]
FF Extension: (Linux Mint-Y Dark (Blue)) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\linuxmint-y-dark@krafting.net.xpi [2020-09-21]
FF Extension: (uBlock Origin) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\uBlock0@raymondhill.net.xpi [2021-01-05]
FF Extension: (Mac Os Mojave Night) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{086662ae-6205-4e16-b88e-d5e68c39033e}.xpi [2020-09-21]
FF Extension: (Indigo gradient) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{126256f7-871d-408d-ba42-857122040826}.xpi [2020-09-21]
FF Extension: (Share Backported) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{1bab54e2-6c60-4ee1-88f7-52b1df77924f}.xpi [2021-01-11]
FF Extension: (Unseen) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{230ed5ec-936c-4ad1-b3d4-e2bb251bd1c3}.xpi [2021-01-09]
FF Extension: (Linux Mint-Y-dark background) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{384bb391-6475-447f-bc9b-43b0113b53a7}.xpi [2020-09-21]
FF Extension: (RiteTag) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{3f58c30e-756b-40f4-a94b-7aef17bfbaf6}.xpi [2020-09-25]
FF Extension: (abstract 58) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{49f89ee5-3f35-4bbf-9913-6c9d77978cde}.xpi [2020-09-21]
FF Extension: (Pinterest Downloader) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{57bc827b-0b82-46a5-9a20-cde76a7903f1}.xpi [2020-10-17]
FF Extension: (macOS Mojave Light Adaptive) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{5c31252b-091e-4e02-89b8-ad41b123f044}.xpi [2020-09-21]
FF Extension: (Mac OS Sierra Blur High Light) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{6ec020c9-9973-412d-a400-60164700566b}.xpi [2020-09-21]
FF Extension: (macOS Mojave Safari Dark ) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{8189d924-9b0f-46c2-8ba9-4219dc45f9fa}.xpi [2020-09-21]
FF Extension: (Media Helper) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{85603edc-044f-4391-9a95-a94682f449b4}.xpi [2020-12-19]
FF Extension: (Pixel Fox FFColourMod) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{9e9a10b2-70ab-4a9c-8aa0-ea150b18af15}.xpi [2020-08-23]
FF Extension: (ANIMATED Blue Plexus by candelora) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{abca071b-3177-4a86-84b9-c9a712c2268b}.xpi [2020-09-21]
FF Extension: (macOS Catalina - Theme) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{b1f936f8-e532-414f-a195-ab2a8717baaf}.xpi [2020-09-21]
FF Extension: (Popup blocker for FF: Poper Blocker) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{bee8b1f2-823a-424c-959c-f8f76c8b2306}.xpi [2020-05-29]
FF Extension: (macOS Mojave Light Blue) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{c19ecb13-0dfb-4845-8f9e-fad17959ef77}.xpi [2020-09-21]
FF Extension: (600% Sound Volume) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{c4b582ec-4343-438c-bda2-2f691c16c262}.xpi [2020-12-23]
FF Extension: (Volume Booster) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{ceced21a-f0d8-4b52-b147-20761bb00abe}.xpi [2020-12-23]
FF Extension: (No Name) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-01-29]
FF Extension: (MacOS) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{d31c12dc-0dc1-4cd8-95c6-467a40931cd0}.xpi [2020-09-21]
FF Extension: (Dark Fox) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{e7fe4ffe-f256-4f85-906d-072fdd698585}.xpi [2020-09-21]
FF Extension: (Ubuntu Yaru Dark Matte) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{eca5abdd-d8d6-4156-9515-b8e683703fba}.xpi [2020-09-21]
FF Extension: (Northern Lake by MaDonna) - C:\Users\mertz-win10\AppData\Roaming\Mozilla\Firefox\Profiles\n2ks7cy9.default-release\Extensions\{fcebb804-5eb9-43d9-a12a-30f6ca1b9b1b}.xpi [2020-09-21]
FF ProfilePath: C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default [2021-01-29]
FF Session Restore: Comodo\IceDragon\Profiles\7x69lkhi.default -> is enabled.
FF Extension: (Facebook Container) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\@contain-facebook.xpi [2020-10-24]
FF Extension: (Google Container) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\@contain-google.xpi [2020-10-19]
FF Extension: (Hoxx VPN Proxy) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\@hoxx-vpn.xpi [2020-10-19]
FF Extension: (WebRTC Leak Shield) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\@webrtc-leak-shield.xpi [2020-10-19]
FF Extension: (Dark Reader) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\addon@darkreader.org.xpi [2020-10-19]
FF Extension: (Online Security Pro) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\cos@comodo.com.xpi [2020-10-19]
FF Extension: (HTTPS Svuda) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\https-everywhere@eff.org.xpi [2020-10-19]
FF Extension: (Https Enforcement) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\https@comodo.com.xpi [2019-03-15]
FF Extension: (Wikiwand: Wikipedia Modernized) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\jid1-D7momAzRw417Ag@jetpack.xpi [2020-10-19]
FF Extension: (Privacy Badger) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2020-10-19]
FF Extension: (DuckDuckGo Privacy Essentials) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2020-10-19]
FF Extension: (Linux Mint-Y Dark (Blue)) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\linuxmint-y-dark@krafting.net.xpi [2020-10-19]
FF Extension: (uBlock Origin) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\uBlock0@raymondhill.net.xpi [2020-10-19]
FF Extension: (Mac Os Mojave Night) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{086662ae-6205-4e16-b88e-d5e68c39033e}.xpi [2020-10-19]
FF Extension: (Indigo gradient) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{126256f7-871d-408d-ba42-857122040826}.xpi [2020-10-19]
FF Extension: (Share Backported) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{1bab54e2-6c60-4ee1-88f7-52b1df77924f}.xpi [2020-10-19]
FF Extension: (Linux Mint-Y-dark background) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{384bb391-6475-447f-bc9b-43b0113b53a7}.xpi [2020-10-19]
FF Extension: (RiteTag) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{3f58c30e-756b-40f4-a94b-7aef17bfbaf6}.xpi [2020-10-19]
FF Extension: (abstract 58) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{49f89ee5-3f35-4bbf-9913-6c9d77978cde}.xpi [2020-10-19]
FF Extension: (Pinterest Downloader) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{57bc827b-0b82-46a5-9a20-cde76a7903f1}.xpi [2020-10-19]
FF Extension: (macOS Mojave Light Adaptive) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{5c31252b-091e-4e02-89b8-ad41b123f044}.xpi [2020-10-19]
FF Extension: (Media Downloader) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{5e9eca63-6e0d-47ce-9862-07d938121575}.xpi [2019-03-15] [Legacy]
FF Extension: (Mac OS Sierra Blur High Light) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{6ec020c9-9973-412d-a400-60164700566b}.xpi [2020-10-19]
FF Extension: (macOS Mojave Safari Dark ) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{8189d924-9b0f-46c2-8ba9-4219dc45f9fa}.xpi [2020-10-19]
FF Extension: (Media Helper) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{85603edc-044f-4391-9a95-a94682f449b4}.xpi [2020-10-19]
FF Extension: (Old Layout for Facebook) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{8792af17-0df8-40ab-81d3-6cc777171564}.xpi [2020-10-24]
FF Extension: (Pixel Fox FFColourMod) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{9e9a10b2-70ab-4a9c-8aa0-ea150b18af15}.xpi [2020-10-19]
FF Extension: (ANIMATED Blue Plexus by candelora) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{abca071b-3177-4a86-84b9-c9a712c2268b}.xpi [2020-10-19]
FF Extension: (macOS Catalina - Theme) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{b1f936f8-e532-414f-a195-ab2a8717baaf}.xpi [2020-10-19]
FF Extension: (Popup blocker for FF: Poper Blocker) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{bee8b1f2-823a-424c-959c-f8f76c8b2306}.xpi [2020-10-19]
FF Extension: (macOS Mojave Light Blue) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{c19ecb13-0dfb-4845-8f9e-fad17959ef77}.xpi [2020-10-19]
FF Extension: (No Name) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2020-10-19]
FF Extension: (MacOS) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{d31c12dc-0dc1-4cd8-95c6-467a40931cd0}.xpi [2020-10-19]
FF Extension: (Dark Fox) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{e7fe4ffe-f256-4f85-906d-072fdd698585}.xpi [2020-10-19]
FF Extension: (Ubuntu Yaru Dark Matte) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{eca5abdd-d8d6-4156-9515-b8e683703fba}.xpi [2020-10-19]
FF Extension: (Northern Lake by MaDonna) - C:\Users\mertz-win10\AppData\Roaming\Comodo\IceDragon\Profiles\7x69lkhi.default\Extensions\{fcebb804-5eb9-43d9-a12a-30f6ca1b9b1b}.xpi [2020-10-19]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-01-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-01-03] (Microsoft Corporation -> Microsoft Corporation)

Opera:
=======
OPR Profile: C:\Users\mertz-win10\AppData\Roaming\Opera Software\Opera Stable [2021-01-29]
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding}
OPR Extension: (Translator) - C:\Users\mertz-win10\AppData\Roaming\Opera Software\Opera Stable\Extensions\cnbpedcoekjafichoehopgaaldogogch [2020-09-24]
OPR Extension: (Rich Hints Agent) - C:\Users\mertz-win10\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2020-10-22]
OPR Extension: (Sidebar for YouTube™) - C:\Users\mertz-win10\AppData\Roaming\Opera Software\Opera Stable\Extensions\ljkgfkfopogmclcinephnaeekjiikibd [2020-09-24]
OPR Extension: (Adblock Plus - free ad blocker) - C:\Users\mertz-win10\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2020-12-22]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8960384 2021-01-19] (Microsoft Corporation -> Microsoft Corporation)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe [2357936 2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
R2 IceDragonUpdater; C:\Program Files (x86)\Comodo\IceDragon\icedragon_updater.exe [2616800 2019-05-29] (Comodo Security Solutions, Inc. -> Comodo Inc.)
R2 RemoteMouseService; C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe [11264 2020-09-23] () [File not signed]
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6264144 2021-01-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2014-01-05] (IDT, Inc.) [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Winstep Xtreme Service; C:\Program Files (x86)\Winstep\WsxService.exe [777216 2019-10-29] (Winstep Software Technologies) [File not signed]
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_e0a5a1b06de180e3\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_e0a5a1b06de180e3\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 STHDA; C:\Windows\system32\DRIVERS\stwrt64.sys [551936 2014-01-05] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S3 tap-tb-0901; C:\Windows\System32\drivers\tap-tb-0901.sys [38656 2020-11-03] (TunnelBear, Inc. -> The OpenVPN Project)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2020-12-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [429296 2020-12-04] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-04] (Microsoft Windows -> Microsoft Corporation)
U4 DiagTrack; no ImagePath
U4 dmwappushservice; no ImagePath
S3 hsstap; \SystemRoot\System32\drivers\hsstap.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-01-29 08:52 - 2021-01-29 15:03 - 000000000 ____D C:\Program Files\CCleaner
2021-01-29 08:52 - 2021-01-29 08:52 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update
2021-01-29 08:52 - 2021-01-29 08:52 - 000002900 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC
2021-01-29 08:52 - 2021-01-29 08:52 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2021-01-29 08:52 - 2021-01-29 08:52 - 000000863 _____ C:\ProgramData\Desktop\CCleaner.lnk
2021-01-29 08:52 - 2021-01-29 08:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2021-01-29 08:51 - 2021-01-29 08:51 - 030584912 _____ (Piriform Software Ltd) C:\Users\mertz-win10\ccsetup576.exe
2021-01-28 14:39 - 2021-01-29 15:01 - 000002361 _____ C:\Users\mertz-win10\Desktop\Fixlog.txt
2021-01-28 10:46 - 2021-01-28 10:47 - 000000000 ____D C:\Users\mertz-win10\Downloads\m. office & verificattion
2021-01-28 08:19 - 2021-01-28 15:21 - 000033711 _____ C:\Users\mertz-win10\Desktop\Addition.txt
2021-01-28 08:17 - 2021-01-29 15:28 - 000035780 _____ C:\Users\mertz-win10\Desktop\FRST.txt
2021-01-28 08:16 - 2021-01-29 15:28 - 000000000 ____D C:\FRST
2021-01-28 08:13 - 2021-01-28 08:13 - 002297856 _____ (Farbar) C:\Users\mertz-win10\Desktop\FRST64.exe
2021-01-28 07:55 - 2021-01-28 07:57 - 000000000 ____D C:\Users\mertz-win10\Downloads\Nanjing.Swansoft.CNC.Simulator.v6.45.Multilang-BEAN { torrentkit.com }
2021-01-28 07:49 - 2021-01-28 07:49 - 026571028 _____ (The qBittorrent project) C:\Users\mertz-win10\qbittorrent_4.3.3_x64_setup.exe
2021-01-28 07:49 - 2021-01-28 07:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
2021-01-28 07:43 - 2021-01-28 07:43 - 000001895 _____ C:\Users\mertz-win10\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
2021-01-28 07:43 - 2021-01-28 07:43 - 000000000 ____D C:\Users\mertz-win10\AppData\Local\BitTorrentHelper
2021-01-27 12:14 - 2021-01-27 12:14 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2021-01-27 10:18 - 2021-01-28 14:42 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-01-24 08:11 - 2021-01-24 08:11 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business 2016.lnk
2021-01-24 08:11 - 2021-01-24 08:11 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2021-01-24 08:11 - 2021-01-24 08:11 - 000002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2021-01-24 08:11 - 2021-01-24 08:11 - 000002414 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
2021-01-24 08:11 - 2021-01-24 08:11 - 000002413 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2021-01-24 08:11 - 2021-01-24 08:11 - 000002407 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2021-01-24 08:11 - 2021-01-24 08:11 - 000002401 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2021-01-24 08:11 - 2021-01-24 08:11 - 000002393 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2021-01-24 08:11 - 2021-01-24 08:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
2021-01-23 19:33 - 2021-01-23 19:33 - 000001434 _____ C:\Windows\system32\default_error_stack-000015-000000.txt
2021-01-23 11:20 - 2021-01-23 11:20 - 000000000 ____D C:\Users\mertz-win10\AppData\Roaming\TunnelBear
2021-01-23 11:20 - 2021-01-23 11:20 - 000000000 ____D C:\Users\mertz-win10\AppData\Local\TunnelBear
2021-01-23 11:00 - 2021-01-23 11:00 - 000000000 ____D C:\Users\mertz-win10\AppData\Local\IsolatedStorage
2021-01-23 09:35 - 2021-01-23 11:01 - 000000000 ____D C:\ProgramData\ProgDVB
2021-01-23 09:35 - 2021-01-23 11:01 - 000000000 ____D C:\Program Files\ProgDVB x64
2021-01-22 21:19 - 2021-01-22 21:19 - 000001426 _____ C:\Windows\system32\default_error_stack-000014-000000.txt
2021-01-22 21:18 - 2021-01-24 23:42 - 000000544 _____ C:\Users\mertz-win10\Desktop\vikend.txt
2021-01-19 06:51 - 2021-01-19 06:51 - 000001435 _____ C:\Windows\system32\default_error_stack-000013-000000.txt
2021-01-17 23:27 - 2021-01-17 23:27 - 000000000 ____D C:\Users\mertz-win10\AppData\Local\Viber
2021-01-16 23:58 - 2021-01-20 03:46 - 000000989 _____ C:\Users\mertz-win10\Desktop\sub.txt
2021-01-16 11:47 - 2021-01-16 11:47 - 000001433 _____ C:\Windows\system32\default_error_stack-000012-000000.txt
2021-01-15 07:44 - 2021-01-15 23:00 - 000000567 _____ C:\Users\mertz-win10\Desktop\pet.txt
2021-01-14 01:34 - 2021-01-24 16:47 - 000000000 ____D C:\Users\mertz-win10\Desktop\klajdza
2021-01-14 00:29 - 2021-01-14 00:29 - 000696832 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx
2021-01-14 00:29 - 2021-01-14 00:29 - 000576512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx
2021-01-14 00:29 - 2021-01-14 00:29 - 000568320 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2021-01-14 00:29 - 2021-01-14 00:29 - 000555008 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2021-01-14 00:29 - 2021-01-14 00:29 - 000502784 _____ C:\Windows\system32\AssignedAccessCsp.dll
2021-01-14 00:29 - 2021-01-14 00:29 - 000500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr
2021-01-14 00:29 - 2021-01-14 00:29 - 000455680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2021-01-14 00:29 - 2021-01-14 00:29 - 000294912 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2021-01-14 00:29 - 2021-01-14 00:29 - 000233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2021-01-14 00:29 - 2021-01-14 00:29 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2021-01-14 00:29 - 2021-01-14 00:29 - 000151040 _____ C:\Windows\system32\uwfcsp.dll
2021-01-14 00:29 - 2021-01-14 00:29 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax
2021-01-14 00:29 - 2021-01-14 00:29 - 000094720 _____ C:\Windows\system32\VirtualMonitorManager.dll
2021-01-14 00:29 - 2021-01-14 00:29 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2021-01-14 00:29 - 2021-01-14 00:29 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2021-01-14 00:29 - 2021-01-14 00:29 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2021-01-14 00:29 - 2021-01-14 00:29 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl
2021-01-14 00:29 - 2021-01-14 00:29 - 000067072 _____ C:\Windows\system32\BWContextHandler.dll
2021-01-14 00:29 - 2021-01-14 00:29 - 000053248 _____ C:\Windows\SysWOW64\BWContextHandler.dll
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth18.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth17.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth16.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth15.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin
2021-01-14 00:29 - 2021-01-14 00:29 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin
2021-01-14 00:28 - 2021-01-14 00:28 - 002590720 _____ C:\Windows\system32\dwmscene.dll
2021-01-14 00:28 - 2021-01-14 00:28 - 001841152 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2021-01-14 00:28 - 2021-01-14 00:28 - 001101312 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2021-01-14 00:28 - 2021-01-14 00:28 - 000549888 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2021-01-14 00:28 - 2021-01-14 00:28 - 000540672 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2021-01-14 00:28 - 2021-01-14 00:28 - 000458240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl
2021-01-14 00:28 - 2021-01-14 00:28 - 000453632 _____ C:\Windows\system32\ssdm.dll
2021-01-14 00:28 - 2021-01-14 00:28 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2021-01-14 00:28 - 2021-01-14 00:28 - 000331264 _____ C:\Windows\SysWOW64\ssdm.dll
2021-01-14 00:28 - 2021-01-14 00:28 - 000266752 _____ C:\Windows\system32\HeatCore.dll
2021-01-14 00:28 - 2021-01-14 00:28 - 000235520 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2021-01-14 00:28 - 2021-01-14 00:28 - 000208896 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2021-01-14 00:28 - 2021-01-14 00:28 - 000208384 _____ C:\Windows\SysWOW64\HeatCore.dll
2021-01-14 00:28 - 2021-01-14 00:28 - 000186368 _____ C:\Windows\system32\BthpanContextHandler.dll
2021-01-14 00:28 - 2021-01-14 00:28 - 000184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2021-01-14 00:28 - 2021-01-14 00:28 - 000167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl
2021-01-14 00:28 - 2021-01-14 00:28 - 000164864 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2021-01-14 00:28 - 2021-01-14 00:28 - 000061440 _____ C:\Windows\system32\rdsxvmaudio.dll
2021-01-13 19:28 - 2021-01-15 07:46 - 000000812 _____ C:\Users\mertz-win10\Desktop\sre.txt
2021-01-09 20:01 - 2021-01-10 03:05 - 000000000 ____D C:\Users\mertz-win10\Desktop\advokat
2021-01-07 17:14 - 2021-01-07 17:14 - 000001435 _____ C:\Windows\system32\default_error_stack-000011-000000.txt
2021-01-06 14:24 - 2021-01-06 14:24 - 000000000 ____D C:\Users\mertz-win10\AppData\Roaming\4kdownload.com
2021-01-06 02:06 - 2021-01-06 02:06 - 000000000 ____D C:\Users\mertz-win10\Documents\OneNote Notebooks
2021-01-06 01:58 - 2021-01-06 01:58 - 000002456 _____ C:\Users\mertz-win10\Desktop\Skype for Business 2016.lnk
2021-01-06 01:57 - 2021-01-06 01:57 - 000002451 _____ C:\Users\mertz-win10\Desktop\Word 2016.lnk
2021-01-05 18:32 - 2021-01-05 18:32 - 000000000 ____D C:\Windows\system32\appmgmt
2021-01-05 18:29 - 2021-01-05 18:29 - 000001420 _____ C:\Users\Public\Desktop\Foxit Reader.lnk
2021-01-05 18:29 - 2021-01-05 18:29 - 000001420 _____ C:\ProgramData\Desktop\Foxit Reader.lnk
2021-01-05 18:29 - 2021-01-05 18:29 - 000000000 ____D C:\Users\Public\Foxit Software
2021-01-05 18:29 - 2021-01-05 18:29 - 000000000 ____D C:\Users\mertz-win10\AppData\Roaming\Foxit Software
2021-01-05 18:29 - 2021-01-05 18:29 - 000000000 ____D C:\Users\mertz-win10\AppData\Roaming\Foxit AgentInformation
2021-01-05 18:29 - 2021-01-05 18:29 - 000000000 ____D C:\Users\mertz-win10\AppData\LocalLow\Foxit
2021-01-05 18:29 - 2021-01-05 18:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2021-01-05 18:29 - 2021-01-05 18:29 - 000000000 ____D C:\ProgramData\Foxit Software
2021-01-05 18:29 - 2021-01-05 18:29 - 000000000 ____D C:\ProgramData\Foxit ContentPlatform
2021-01-05 18:29 - 2021-01-05 18:29 - 000000000 ____D C:\Program Files (x86)\Foxit Software
2021-01-05 18:26 - 2021-01-05 18:26 - 073945696 _____ (Foxit Software Inc. ) C:\Users\mertz-win10\Downloads\FoxitReader1011_enu_Setup_Prom.exe
2021-01-05 07:41 - 2020-12-15 14:37 - 000041816 _____ C:\Windows\system32\Drivers\semav6msr64.sys
2021-01-05 07:40 - 2021-01-05 07:41 - 000002678 _____ C:\Windows\system32\Tasks\USER_ESRV_SVC_QUEENCREEK
2021-01-05 06:29 - 2021-01-12 10:51 - 000000000 ____D C:\Windows\system32\Tasks\NCH Software
2021-01-05 06:29 - 2021-01-05 06:46 - 000000000 ____D C:\ProgramData\NCH Software
2021-01-05 06:29 - 2021-01-05 06:46 - 000000000 ____D C:\Program Files (x86)\NCH Software
2021-01-05 06:29 - 2021-01-05 06:41 - 000000000 ____D C:\Users\mertz-win10\AppData\Roaming\NCH Software
2021-01-05 06:29 - 2021-01-05 06:29 - 000001369 _____ C:\Users\Public\Desktop\NCH Suite.lnk
2021-01-05 06:29 - 2021-01-05 06:29 - 000001369 _____ C:\ProgramData\Desktop\NCH Suite.lnk
2021-01-05 06:29 - 2021-01-05 06:29 - 000001247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CardWorks Business Card Software.lnk
2021-01-05 06:29 - 2021-01-05 06:29 - 000001235 _____ C:\Users\Public\Desktop\CardWorks Business Card Software.lnk
2021-01-05 06:29 - 2021-01-05 06:29 - 000001235 _____ C:\ProgramData\Desktop\CardWorks Business Card Software.lnk
2021-01-04 19:39 - 2021-01-04 19:39 - 000001434 _____ C:\Windows\system32\default_error_stack-000010-000000.txt
2021-01-03 03:27 - 2021-01-03 03:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2021-01-03 02:12 - 2021-01-24 08:11 - 000002492 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive for Business.lnk
2021-01-03 02:12 - 2021-01-03 02:12 - 000002393 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2021-01-03 02:12 - 2021-01-03 02:12 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2021-01-02 08:31 - 2021-01-02 08:31 - 000000000 ____D C:\Users\mertz-win10\Documents\Custom Office Templates
2021-01-02 07:27 - 2021-01-02 07:27 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2021-01-02 07:27 - 2021-01-02 07:27 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2021-01-02 07:27 - 2021-01-02 07:27 - 000002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2021-01-02 07:27 - 2021-01-02 07:27 - 000002414 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2021-01-02 07:27 - 2021-01-02 07:27 - 000002413 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2021-01-02 07:27 - 2021-01-02 07:27 - 000002407 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2021-01-02 07:27 - 2021-01-02 07:27 - 000002401 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2021-01-02 07:25 - 2021-01-02 07:25 - 000000000 ____D C:\Program Files\Microsoft Office 15
2021-01-01 17:03 - 2021-01-04 00:58 - 000000000 ____D C:\Users\mertz-win10\Desktop\gymbeam
2020-12-31 14:39 - 2020-12-31 14:39 - 000001434 _____ C:\Windows\system32\default_error_stack-000009-000000.txt

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-01-29 15:24 - 2020-04-10 05:00 - 000000000 ____D C:\Users\mertz-win10
2021-01-29 15:10 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\AppReadiness
2021-01-29 15:10 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-01-29 15:05 - 2019-08-17 06:05 - 000796056 _____ C:\Windows\system32\PerfStringBackup.INI
2021-01-29 15:05 - 2019-03-19 05:50 - 000000000 ____D C:\Windows\INF
2021-01-29 15:03 - 2020-04-10 05:32 - 000000000 ____D C:\ProgramData\NVIDIA
2021-01-29 15:02 - 2020-04-10 05:34 - 000000000 ____D C:\Users\mertz-win10\AppData\LocalLow\Mozilla
2021-01-29 15:01 - 2020-09-21 17:34 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2021-01-29 15:01 - 2020-09-21 17:34 - 000000000 __SHD C:\Users\mertz-win10\IntelGraphicsProfiles
2021-01-29 15:01 - 2020-04-10 05:43 - 000001209 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1
2021-01-29 15:01 - 2020-04-10 05:31 - 000018089 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2021-01-29 15:01 - 2020-04-10 05:31 - 000010634 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2021-01-29 15:01 - 2020-04-10 05:31 - 000008778 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2021-01-29 15:01 - 2019-07-18 22:07 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-01-29 15:01 - 2019-03-19 05:37 - 000524288 _____ C:\Windows\system32\config\BBI
2021-01-29 14:56 - 2020-04-17 21:18 - 000000000 ____D C:\Users\mertz-win10\AppData\Roaming\ViberPC
2021-01-29 14:56 - 2019-07-18 22:07 - 000000000 ____D C:\Windows\system32\SleepStudy
2021-01-29 14:45 - 2020-04-10 05:15 - 000004174 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{CAE0CB1C-BCBB-43DC-A5A4-4A720C4B154E}
2021-01-29 09:59 - 2020-06-05 21:10 - 000000000 ____D C:\Users\Public\Documents\Winstep
2021-01-29 09:59 - 2020-06-05 21:10 - 000000000 ____D C:\ProgramData\Documents\Winstep
2021-01-29 08:56 - 2020-10-03 08:58 - 000000000 ____D C:\Users\mertz-win10\AppData\Local\CrashDumps
2021-01-29 08:56 - 2019-07-18 23:06 - 000000000 ____D C:\Windows\Panther
2021-01-29 08:56 - 2019-07-18 22:09 - 000000000 ____D C:\Windows\minidump
2021-01-28 15:39 - 2020-04-17 21:18 - 000000000 ____D C:\Users\mertz-win10\Documents\ViberDownloads
2021-01-28 14:42 - 2020-04-10 05:34 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-01-28 07:59 - 2020-06-02 00:18 - 000000000 ____D C:\Users\mertz-win10\AppData\Roaming\qBittorrent
2021-01-28 07:49 - 2020-12-24 20:49 - 000000000 ____D C:\Program Files\qBittorrent
2021-01-28 07:44 - 2020-04-10 05:34 - 000000000 ____D C:\ProgramData\Mozilla
2021-01-27 21:12 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2021-01-27 12:14 - 2020-04-10 05:34 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-01-26 08:44 - 2020-04-10 05:00 - 000000000 ____D C:\Users\mertz-win10\AppData\Local\Packages
2021-01-25 08:07 - 2020-09-22 02:42 - 000012949 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1
2021-01-24 10:04 - 2020-09-24 16:14 - 000000000 ____D C:\Users\mertz-win10\AppData\Local\ElevatedDiagnostics
2021-01-24 08:11 - 2020-06-01 17:51 - 000000000 ____D C:\Program Files\Microsoft Office
2021-01-24 05:18 - 2020-10-10 21:12 - 000000000 ____D C:\Users\mertz-win10\AppData\Roaming\vlc
2021-01-23 11:21 - 2020-04-10 05:43 - 000000000 ____D C:\ProgramData\Package Cache
2021-01-22 10:42 - 2020-04-10 05:40 - 000799104 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2021-01-21 02:55 - 2020-09-23 02:30 - 000011519 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1
2021-01-18 15:20 - 2020-09-24 21:29 - 000004272 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1600979346
2021-01-18 15:20 - 2020-09-24 21:29 - 000001489 _____ C:\Users\mertz-win10\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Прегледач Opera.lnk
2021-01-18 06:11 - 2020-12-24 22:37 - 000000000 ____D C:\Users\mertz-win10\Desktop\radna nedelja
2021-01-14 00:40 - 2020-04-10 05:00 - 000000000 ___RD C:\Users\mertz-win10\3D Objects
2021-01-14 00:40 - 2019-07-18 22:10 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-01-14 00:40 - 2019-07-18 22:07 - 000453280 _____ C:\Windows\system32\FNTCACHE.DAT
2021-01-14 00:40 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2021-01-14 00:39 - 2019-03-19 07:22 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-01-14 00:39 - 2019-03-19 07:22 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-01-14 00:39 - 2019-03-19 07:22 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ___SD C:\Windows\SysWOW64\F12
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ___SD C:\Windows\system32\UNP
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ___SD C:\Windows\system32\F12
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ___RD C:\Windows\PrintDialog
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\setup
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\Dism
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\Com
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SystemResources
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\setup
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\oobe
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\migwiz
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\Dism
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\Com
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\AdvancedInstallers
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\ShellExperiences
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\ShellComponents
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\Provisioning
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\PolicyDefinitions
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\IME
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\bcastdvr
2021-01-14 00:39 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender
2021-01-14 00:34 - 2019-03-19 05:37 - 000000000 ____D C:\Windows\CbsTemp
2021-01-14 00:33 - 2020-04-19 02:37 - 000000000 ____D C:\Windows\system32\MRT
2021-01-14 00:31 - 2020-04-19 02:37 - 135062968 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-01-14 00:28 - 2019-08-17 06:02 - 002877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2021-01-10 21:18 - 2020-11-16 14:41 - 000000000 ____D C:\Users\mertz-win10\Desktop\lola
2021-01-05 19:10 - 2020-10-08 01:34 - 000003834 _____ C:\Windows\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2021-01-05 18:32 - 2020-06-05 14:13 - 000000000 ____D C:\Program Files (x86)\Adobe
2021-01-05 07:41 - 2020-10-08 01:23 - 000003762 _____ C:\Windows\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132
2021-01-05 07:41 - 2020-10-08 01:23 - 000003528 _____ C:\Windows\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon
2021-01-03 02:25 - 2020-10-10 13:40 - 000007597 _____ C:\Users\mertz-win10\AppData\Local\Resmon.ResmonCfg
2021-01-03 02:12 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared

==================== Files in the root of some directories ========

2021-01-29 08:51 - 2021-01-29 08:51 - 030584912 _____ (Piriform Software Ltd) C:\Users\mertz-win10\ccsetup576.exe
2020-10-19 00:12 - 2020-10-19 00:12 - 081009168 _____ (COMODO) C:\Users\mertz-win10\icedragonsetup.exe
2020-10-08 01:22 - 2020-10-08 01:22 - 002507624 _____ (Intel) C:\Users\mertz-win10\Intel-Driver-and-Support-Assistant-Installer.exe
2020-10-01 00:11 - 2020-10-01 00:11 - 001342218 _____ () C:\Users\mertz-win10\iZotope_Ozone.exe
2020-12-24 20:46 - 2020-12-24 20:46 - 026204717 _____ (The qBittorrent project) C:\Users\mertz-win10\qbittorrent_4.3.1_x64_setup.exe
2021-01-28 07:49 - 2021-01-28 07:49 - 026571028 _____ (The qBittorrent project) C:\Users\mertz-win10\qbittorrent_4.3.3_x64_setup.exe
2020-10-20 15:02 - 2020-10-20 15:02 - 047521768 _____ (Clarobet AB) C:\Users\mertz-win10\RebelBettingSetup.exe
2020-10-16 22:57 - 2020-10-16 22:57 - 001229697 _____ (Remote Mouse ) C:\Users\mertz-win10\RemoteMouse.exe
2020-10-01 23:03 - 2020-10-01 23:03 - 002786328 _____ (Skillbrains ) C:\Users\mertz-win10\setup-lightshot.exe
2020-12-20 15:05 - 2020-12-20 15:05 - 008234296 _____ (Piriform Software Ltd) C:\Users\mertz-win10\spsetup132.exe
2020-10-01 00:08 - 2020-10-01 00:08 - 017412576 _____ (Nullsoft, Inc.) C:\Users\mertz-win10\winamp566_full_all.exe
2020-10-10 13:40 - 2021-01-03 02:25 - 000007597 _____ () C:\Users\mertz-win10\AppData\Local\Resmon.ResmonCfg
2020-10-01 23:03 - 2020-10-01 23:03 - 000000003 _____ () C:\Users\mertz-win10\AppData\Local\updater.log
2020-10-01 23:03 - 2020-10-01 23:03 - 000000424 _____ () C:\Users\mertz-win10\AppData\Local\UserProducts.xml

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
mycity.rs/must-login.png

offline
  • Pridružio: 23 Maj 2020
  • Poruke: 139

Rekao bih da ti search ne valja samo u Firefox-u, je l' tako? Radi li normalno u Operi?

Ako je samo u Firefox-u, preporucio bih ti da odradis reset Firefox-a jer imas veliki broj ekstenzija instaliranih za koje je tesko reci da li su nezeljene ili ne i da li su ti sve potrebne. Zapisi sve ekstenzije koje ti trebaju i uradi reset Firefox-a u podesavanjima prateci sledece instrukcije i vidi da li search radi kako treba i zatim instaliraj samo ekstenzije koje su ti potrebne.


U search tab-u u Firefox-u kucaj about:support i klikni na Refresh Firefox... i opet Refresh Firefox.
Firefox ce se zatim zatvoriti kako bi odradio reset i nakon par trenutaka ponovo otvoriti. Klikni Finish kada se opet otvori.
Javi kako je onda stanje pa ces ponovo instalirati potrebne ekstenzije kada zavrsimo sa slucajem.

offline
  • drmrdz 
  • Novi MyCity građanin
  • Pridružio: 28 Jan 2021
  • Poruke: 13

Hehe sad je sve Ok. Ekstenzije su se same vratilie, ali Firefox radi besprekorno.
Puno hvala za trud!

offline
  • Pridružio: 23 Maj 2020
  • Poruke: 139

Odlicno. Nema na cemu!

Moj ti je savet da izbrises sve nepotrebne ekstenzije jer i veliki broj aktivnih ekstenzija ti moze malo usporiti pretrazivac, pa je najbolje drzati samo one koje redovno koristis.

Takodje, preimenuj FRST.exe sa Desktop-a u uninstall.exe i pokreni kako bi izbrisao FRST i ostale podatke koje su bile potrebne FRST-u za rad. Sistem ce se restartovati nakon toga.

Jos jedna stvar. Vidim da imas instaliran Ccleaner instaliran na sistemu. Ukoliko ga koristis samo za brisanje cache-a i junk podataka, nije problem, medjutim nemoj koristiti njegov registry cleaner jer moze da napravi vise stete nego koristi. Windows-u 10 ne treba nikakav dodatan registry cleaner i moze ga samo napraviti jos sporijim.

Poslednja stvar. Na sistemu imas takodje tragova BSOD-a (Blue Screen of Death) pa me zanima da li ti se cesto desavaju, odnosno da ti sistem crash-uje i slicno.

offline
  • drmrdz 
  • Novi MyCity građanin
  • Pridružio: 28 Jan 2021
  • Poruke: 13

Napisano: 29 Jan 2021 16:37

Aha, ok. Nisam znao to za registry. Onda ga necu koristiti.
Sto se tice BSOD, svaki drugi ili teci restart. To bi zaista bilo dobro da se resi, ako moze

Dopuna: 29 Jan 2021 16:38

Imam nekih 8-9 ekstenzija koej rade, i to je to. Izlistao je sve ekstenzije, jer i na Linuxu koristim Firefox

offline
  • Pridružio: 23 Maj 2020
  • Poruke: 139

Citat:Sto se tice BSOD, svaki drugi ili teci restart. To bi zaista bilo dobro da se resi, ako moze
To je bas cesto. Otvori temu u Windows potforumu i postavi dva-tri skorasnja izvestaja iz C:\Windows\minidump i neko ce ti se javiti.

offline
  • drmrdz 
  • Novi MyCity građanin
  • Pridružio: 28 Jan 2021
  • Poruke: 13

U redu. Hvala ti!

Ko je trenutno na forumu
 

Ukupno su 1255 korisnika na forumu :: 63 registrovanih, 12 sakrivenih i 1180 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: -[CoA]-, A.R.Chafee.Jr., amaterSRB, awathorn, Azog, babaroga, Battlehammer, black venom, Bobrock1, botta, ccoogg123, cifra, DARKMEN22, Denaya, djordje92sm, Fisherman, geo.dule, Georgius, goran.vvv, Istman, ivan979, Joco Skljoco, Još malo pa deda, Konda, Koridor, maiden6657, Marko Marković, mercedesamg, milenko crazy north, milimoj, MilosKop, miodrag, nenad81, nikoladim, NoOneEver Dreams, novator, operniki, Outis, Parker, Petarvu, pvoman, raketaš, Rocker, rodoljub, sakota79, Shilok, Skakac7, Smd, solic, srbijaiznadsvega, stegonosa, strn, Tas011, Toni, Toper, Vatrogasaccc, Viceroy, vlad the impaler, Vlada1389, Voja1978, vukovi, zastavnik, Zeks