Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 22-07-2013 01 Ran by adam at 2013-07-23 17:43:43 Run:1 Running from C:\Users\adam\Desktop Boot Mode: Normal ============================================== HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\Unlock: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\RunReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\mozilla\Thunderbird\Extensions" /v eplgTb@eset.com /fS2 AVGIDSAgent; "D:\AVG AntiVirus\avgidsagent.exe" [x]HKLM\...\Runonce: [NCInstallQueue] - rundll32 netman.dll,ProcessQueue [x]Task: {381FF089-288F-4724-9EDA-EEABB5EBE09A} - System32\Tasks\avast! Emergency Update => D:\Avast\AvastEmUpdate.exe No FileTask: {4562BF10-FCE1-4C37-BC81-6D79E3A2B834} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe No FileTask: {5EF8D3A0-EDF3-427F-A613-3654F335C423} - System32\Tasks\EasyBatteryManager => %ProgramFiles(x86)%\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe No FileTask: {C4E47875-86C6-4858-A1F8-C44310615D90} - System32\Tasks\EasySpeedUpManager => %programfiles(x86)%\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe No FileTask: {D80AE553-A2B7-4B2B-B2A0-43BFB62AA4CD} - System32\Tasks\SamsungSupportCenter => %programfiles(x86)%\Samsung\Samsung Support Center\SSCKbdHk.exe No File{0D7562AE-8EF6-416d-A838-AB665251703A} => Key not found. HKCR\CLSID\Unlock: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\RunReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\mozilla\Thunderbird\Extensions" /v eplgTb@eset.com /fS2 AVGIDSAgent; "D:\AVG AntiVirus\avgidsagent.exe" [x]HKLM\...\Runonce: [NCInstallQueue] - rundll32 netman.dll,ProcessQueue [x]Task: {381FF089-288F-4724-9EDA-EEABB5EBE09A} - System32\Tasks\avast! Emergency Update => D:\Avast\AvastEmUpdate.exe No FileTask: {4562BF10-FCE1-4C37-BC81-6D79E3A2B834} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe No FileTask: {5EF8D3A0-EDF3-427F-A613-3654F335C423} - System32\Tasks\EasyBatteryManager => %ProgramFiles(x86)%\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe No FileTask: {C4E47875-86C6-4858-A1F8-C44310615D90} - System32\Tasks\EasySpeedUpManager => %programfiles(x86)%\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe No FileTask: {D80AE553-A2B7-4B2B-B2A0-43BFB62AA4CD} - System32\Tasks\SamsungSupportCenter => %programfiles(x86)%\Samsung\Samsung Support Center\SSCKbdHk.exe No File{0D7562AE-8EF6-416d-A838-AB665251703A} => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{381FF089-288F-4724-9EDA-EEABB5EBE09A} - System32\Tasks\avast! Emergency Update => D:\Avast\AvastEmUpdate.exe No FileTask: {4562BF10-FCE1-4C37-BC81-6D79E3A2B834} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe No FileTask: {5EF8D3A0-EDF3-427F-A613-3654F335C423} - System32\Tasks\EasyBatteryManager => %ProgramFiles(x86)%\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe No FileTask: {C4E47875-86C6-4858-A1F8-C44310615D90} - System32\Tasks\EasySpeedUpManager => %programfiles(x86)%\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe No FileTask: {D80AE553-A2B7-4B2B-B2A0-43BFB62AA4CD} - System32\Tasks\SamsungSupportCenter => %programfiles(x86)%\Samsung\Samsung Support Center\SSCKbdHk.exe No FileSearchScopes: HKCU - {0D7562AE-8EF6-416d-A838-AB665251703A} URL = http://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4Toolbar: HKCU - No Name - {41564952-412D-5637-00A7-7A786E7484D7} => Value not found. HKCR\CLSID\{381FF089-288F-4724-9EDA-EEABB5EBE09A} - System32\Tasks\avast! Emergency Update => D:\Avast\AvastEmUpdate.exe No FileTask: {4562BF10-FCE1-4C37-BC81-6D79E3A2B834} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe No FileTask: {5EF8D3A0-EDF3-427F-A613-3654F335C423} - System32\Tasks\EasyBatteryManager => %ProgramFiles(x86)%\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe No FileTask: {C4E47875-86C6-4858-A1F8-C44310615D90} - System32\Tasks\EasySpeedUpManager => %programfiles(x86)%\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe No FileTask: {D80AE553-A2B7-4B2B-B2A0-43BFB62AA4CD} - System32\Tasks\SamsungSupportCenter => %programfiles(x86)%\Samsung\Samsung Support Center\SSCKbdHk.exe No FileSearchScopes: HKCU - {0D7562AE-8EF6-416d-A838-AB665251703A} URL = http://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4Toolbar: HKCU - No Name - {41564952-412D-5637-00A7-7A786E7484D7} => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\Unlock: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\RunReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\mozilla\Thunderbird\Extensions" /v eplgTb@eset.com /fS2 AVGIDSAgent; "D:\AVG AntiVirus\avgidsagent.exe" [x]HKLM\...\Runonce: [NCInstallQueue] - rundll32 netman.dll,ProcessQueue [x]{381FF089-288F-4724-9EDA-EEABB5EBE09A} => Key not found. C:\Windows\Unlock: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\RunReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\mozilla\Thunderbird\Extensions" /v eplgTb@eset.com /fS2 AVGIDSAgent; "D:\AVG AntiVirus\avgidsagent.exe" [x]HKLM\...\Runonce: [NCInstallQueue] - rundll32 netman.dll,ProcessQueue [x]System32\Tasks\avast! Emergency Update => D:\Avast\AvastEmUpdate.exe No FileTask: {4562BF10-FCE1-4C37-BC81-6D79E3A2B834} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe No FileTask: {5EF8D3A0-EDF3-427F-A613-3654F335C423} - System32\Tasks\EasyBatteryManager => %ProgramFiles(x86)%\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe No FileTask: {C4E47875-86C6-4858-A1F8-C44310615D90} - System32\Tasks\EasySpeedUpManager => %programfiles(x86)%\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe No FileTask: {D80AE553-A2B7-4B2B-B2A0-43BFB62AA4CD} - System32\Tasks\SamsungSupportCenter not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\TreeUnlock: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\RunReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\mozilla\Thunderbird\Extensions" /v eplgTb@eset.com /fS2 AVGIDSAgent; "D:\AVG AntiVirus\avgidsagent.exe" [x]HKLM\...\Runonce: [NCInstallQueue] - rundll32 netman.dll,ProcessQueue [x]\avast! Emergency Update => D:\Avast\AvastEmUpdate.exe No FileTask: {4562BF10-FCE1-4C37-BC81-6D79E3A2B834} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe No FileTask: {5EF8D3A0-EDF3-427F-A613-3654F335C423} - System32\Tasks\EasyBatteryManager => %ProgramFiles(x86)%\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe No FileTask: {C4E47875-86C6-4858-A1F8-C44310615D90} - System32\Tasks\EasySpeedUpManager => %programfiles(x86)%\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe No FileTask: {D80AE553-A2B7-4B2B-B2A0-43BFB62AA4CD} - System32\Tasks\SamsungSupportCenter => Key not found. "Unlock: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\RunReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\mozilla\Thunderbird\Extensions" /v eplgTb@eset.com /fS2 AVGIDSAgent; "D:\AVG AntiVirus\avgidsagent.exe" [x]HKLM\...\Runonce: [NCInstallQueue] - rundll32 netman.dll,ProcessQueue [x]Task: {381FF089-288F-4724-9EDA-EEABB5EBE09A} - System32\Tasks\avast! Emergency Update => D:\Avast\AvastEmUpdate.exe No FileTask: {4562BF10-FCE1-4C37-BC81-6D79E3A2B834} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe No FileTask: {5EF8D3A0-EDF3-427F-A613-3654F335C423} - System32\Tasks\EasyBatteryManager => %ProgramFiles(x86)%\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe No FileTask: {C4E47875-86C6-4858-A1F8-C44310615D90} - System32\Tasks\EasySpeedUpManager => %programfiles(x86)%\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe No FileTask: {D80AE553-A2B7-4B2B-B2A0-43BFB62AA4CD} - System32\Tasks\SamsungSupportCenter => %programfiles(x86)%\Samsung\Samsung Support Center\SSCKbdHk.exe No FileSearchScopes: HKCU - {0D7562AE-8EF6-416d-A838-AB665251703A} URL = http://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4Toolbar: HKCU - No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No FileC:\Program Files (x86)\mozilla firefox\searchplugins\fcmdSrch.xmlC:\PROGRA~3\LOCALS~1\Temp\msbvoyv.comC:\Users\adam\AppData\Local\47603a32-4e6a-436e-bd36-8ff2d3012181C:\Users\adam\AppData\Local\~tmp4505751983573070207.exeC:\Users\adam\AppData\Roaming\result.dbC:\Users\adam\AppData\Roaming\cache.datC:\Users\adam\AppData\Local\MFADataC:\Users\adam\AppData\Local\Avg2013C:\ProgramData\AVG2013C:\ProgramData\Common FilesC:\ProgramData\MFADataC:\ProgramData\AVAST Software" => not found. HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Unlock: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\RunReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\mozilla\Thunderbird\Extensions" /v eplgTb@eset.com /fS2 AVGIDSAgent; "D:\AVG AntiVirus\avgidsagent.exe" [x]NCInstallQueue => Value not found. Unlock: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\RunReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /fReg: reg delete "HKLM\SOFTWARE\Wow6432Node\mozilla\Thunderbird\Extensions" /v eplgTb@eset.com /fAVGIDSAgent => Service not found. ========= Unlock: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run" /f reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /f reg delete "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /f reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe" /f reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE" /f reg delete "HKLM\SOFTWARE\Wow6432Node\mozilla\Thunderbird\Extensions" /v eplgTb@eset.com /fS2 AVGIDSAgent; "D:\AVG AntiVirus\avgidsagent.exe" [x]HKLM\...\Runonce: [NCInstallQueue] - rundll32 netman.dll,ProcessQueue [x]Task: {381FF089-288F-4724-9EDA-EEABB5EBE09A} - System32\Tasks\avast! Emergency Update => D:\Avast\AvastEmUpdate.exe No FileTask: {4562BF10-FCE1-4C37-BC81-6D79E3A2B834} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe No FileTask: {5EF8D3A0-EDF3-427F-A613-3654F335C423} - System32\Tasks\EasyBatteryManager => %ProgramFiles(x86)%\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe No FileTask: {C4E47875-86C6-4858-A1F8-C44310615D90} - System32\Tasks\EasySpeedUpManager => %programfiles(x86)%\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe No FileTask: {D80AE553-A2B7-4B2B-B2A0-43BFB62AA4CD} - System32\Tasks\SamsungSupportCenter => %programfiles(x86)%\Samsung\Samsung Support Center\SSCKbdHk.exe No FileSearchScopes: HKCU - {0D7562AE-8EF6-416d-A838-AB665251703A} URL = http://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4Toolbar: HKCU - No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No FileFF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\fcmdSrch.xmlC:\PROGRA~3\LOCALS~1\Temp\msbvoyv.comC:\Users\adam\AppData\Local\47603a32-4e6a-436e-bd36-8ff2d3012181C:\Users\adam\AppData\Local\~tmp4505751983573070207.exeC:\Users\adam\AppData\Roaming\result.dbC:\Users\adam\AppData\Roaming\cache.datC:\Users\adam\AppData\Local\MFADataC:\Users\adam\AppData\Local\Avg2013C:\ProgramData\AVG2013C:\ProgramData\Common FilesC:\ProgramData\MFADataC:\ProgramData\AVAST Software ========= Nazwa 'f' nie jest rozpoznawana jako polecenie wewn©trzne lub zewn©trzne, program wykonywalny lub plik wsadowy. ========= End of Reg: ========= permissions for "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\RunReg: reg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run /fReg: reg delete HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe /fReg: reg delete HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE /fReg: reg delete HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avguard.exe /fReg: reg delete HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWEBGRD.EXE /fReg: reg delete HKLM\SOFTWARE\Wow6432Node\mozilla\Thunderbird\Extensions /v eplgTb@eset.com /fS2 AVGIDSAgent; D:\AVG AntiVirus\avgidsagent.exe [x]HKLM\...\Runonce: [NCInstallQueue] - rundll32 netman.dll,ProcessQueue [x]Task: {381FF089-288F-4724-9EDA-EEABB5EBE09A} - System32\Tasks\avast! Emergency Update => D:\Avast\AvastEmUpdate.exe No FileTask: {4562BF10-FCE1-4C37-BC81-6D79E3A2B834} - System32\Tasks\SUPBackground => C:\Program Files\Samsung\Samsung Update Plus\SUPBackground.exe No FileTask: {5EF8D3A0-EDF3-427F-A613-3654F335C423} - System32\Tasks\EasyBatteryManager => C:\Program Files (x86)\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe No FileTask: {C4E47875-86C6-4858-A1F8-C44310615D90} - System32\Tasks\EasySpeedUpManager => C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe No FileTask: {D80AE553-A2B7-4B2B-B2A0-43BFB62AA4CD} - System32\Tasks\SamsungSupportCenter => C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe No FileSearchScopes: HKCU - {0D7562AE-8EF6-416d-A838-AB665251703A} URL = http://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4Toolbar: HKCU - No Name - {41564952-412D-5637-00A7-7A786E7484D7} - No FileFF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\fcmdSrch.xmlC:\PROGRA~3\LOCALS~1\Temp\msbvoyv.comC:\Users\adam\AppData\Local\47603a32-4e6a-436e-bd36-8ff2d3012181C:\Users\adam\AppData\Local\~tmp4505751983573070207.exeC:\Users\adam\AppData\Roaming\result.dbC:\Users\adam\AppData\Roaming\cache.datC:\Users\adam\AppData\Local\MFADataC:\Users\adam\AppData\Local\Avg2013C:\ProgramData\AVG2013C:\ProgramData\Common FilesC:\ProgramData\MFADataC:\ProgramData\AVAST Software" restored successfully ==== End of Fixlog ====