Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 03-09-2013 03 Ran by Paweł at 2013-09-05 15:20:23 Run:1 Running from F:\ Boot Mode: Safe Mode (minimal) ============================================== Content of fixlist: ***************** Startup: C:\Users\Paweł\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\jirbsvdcupedlhlhmls.lnk ShortcutTarget: jirbsvdcupedlhlhmls.lnk -> C:\Users\PAWE~1\AppData\Local\Temp\slmhlhldepucdvsbrij.bfg () HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www1.delta-search.com/?babsrc=HP_ss&mntrId=1024001B24AB2420&affID=119357&tsp=4980 SearchScopes: HKCU - DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=1024001B24AB2420&affID=119357&tsp=4980 SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=1024001B24AB2420&affID=119357&tsp=4980 SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = http://tbsearch.ask.com/redirect?client=ie&tb=PTV&o=15184&src=crm&q={searchTerms}&locale=en_US BHO: KMPlayer Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com) Toolbar: HKLM - KMPlayer Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com) Toolbar: HKCU -KMPlayer Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask.com) Task: {3F6E612A-CF59-4700-B478-F82F21408517} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files\Ask.com\UpdateTask.exe [2009-07-10] () C:\32788R22FWJFW C:\Windows\system32\Extensions C:\Windows\system32\searchplugins C:\Program Files\v9Soft C:\ProgramData\Babylon C:\Users\Paweł\AppData\Roaming\Babylon C:\Users\Paweł\Downloads\avast-Free-Antivirus(13266).exe ***************** C:\Users\Paweł\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\jirbsvdcupedlhlhmls.lnk => Moved successfully. C:\Users\PAWE~1\AppData\Local\Temp\slmhlhldepucdvsbrij.bfg => Moved successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} => Key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key deleted successfully. HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} => Value deleted successfully. HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} => Value deleted successfully. HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3F6E612A-CF59-4700-B478-F82F21408517} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3F6E612A-CF59-4700-B478-F82F21408517} => Key deleted successfully. C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Scheduled Update for Ask Toolbar => Key deleted successfully. C:\32788R22FWJFW => Moved successfully. C:\Windows\system32\Extensions => Moved successfully. C:\Windows\system32\searchplugins => Moved successfully. C:\Program Files\v9Soft => Moved successfully. C:\ProgramData\Babylon => Moved successfully. C:\Users\Paweł\AppData\Roaming\Babylon => Moved successfully. C:\Users\Paweł\Downloads\avast-Free-Antivirus(13266).exe => Moved successfully. ==== End of Fixlog ====