Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 13-09-2013 Ran by gucio at 2013-09-13 20:07:21 Run:2 Running from C:\Users\gucio\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** Task: {614359AB-FC94-4DA1-BE12-2467C60EB42C} - System32\Tasks\DealPly => C:\Users\gucio\AppData\Roaming\DealPly\UpdateProc\UpdateTask.exe [2013-02-11] () Task: {678025E9-E0F7-43DC-95FC-31A4BC00DDDE} - System32\Tasks\EPUpdater => C:\Users\gucio\AppData\Roaming\BabSolution\Shared\BabMaint.exe [2013-06-06] () Task: {91B47B8E-2DEC-429A-B0B0-4DF409D514D1} - System32\Tasks\BrowserProtect => Sc.exe start BrowserProtect Task: {BFB4EF4D-5BC3-45FA-AC71-8C511F3A277D} - System32\Tasks\DealPlyUpdate => C:\Program Files (x86)\DealPly\DealPlyUpdate.exe [2011-12-19] (DealPly) Task: {F3AD12CE-156C-4E02-98AA-84693BCADF7A} - System32\Tasks\DSite => C:\Users\gucio\AppData\Roaming\DSite\UpdateProc\UpdateTask.exe [2013-06-10] () Task: C:\Windows\Tasks\DSite.job => C:\Users\gucio\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE HKCU\...\Run: [AdobeBridge] - [x] HKCU\...\Run: [syshost32] - C:\Users\gucio\AppData\Local\{3C1123B9-AD42-62DA-EA76-9AEDC8569CC7}\syshost.exe HKCU\...\Winlogon: [Shell] explorer.exe,C:\Users\gucio\AppData\Roaming\data.dat <==== ATTENTION AppInit_DLLs-x32: c:\progra~3\browse~1\261519~1.190\{c16c1~1\browse~1.dll [2691536 2013-07-26] () R2 BrowserProtect; C:\ProgramData\BrowserProtect\2.6.1519.190\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe [2847696 2013-07-26] () HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTerms}&AF=119999&babsrc=SP_ss&mntrId=b8457168000000000000bc77372e2251 SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTerms}&AF=119999&babsrc=SP_ss&mntrId=b8457168000000000000bc77372e2251 SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = SearchScopes: HKCU - {5D3DAD3E-BC1F-4602-8FFA-04C5CE16292F} URL = SearchScopes: HKCU - {D1041405-120E-4416-BBA4-0251069D811C} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=kw&q={searchTerms}&locale=en_EU&apn_ptnrs=^U3&apn_dtid=^OSJ000^YY^PL&apn_uid=C7EF90B1-B4B5-4B37-8B8A-4FDF483949FA&apn_sauid=CD0396FC-F2BE-48E3-B580-A7D236DF6F8E BHO: Complitly - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\gucio\AppData\Roaming\Complitly\64\Complitly64.dll (SimplyGen) BHO-x32: Complitly - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Users\gucio\AppData\Roaming\Complitly\Complitly.dll (SimplyGen) BHO-x32: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll (Babylon BHO) BHO-x32: DealPly - {A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} - C:\Program Files (x86)\DealPly\DealPlyIE.dll (DealPly Technologies Ltd) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.21.5\bh\delta.dll (Delta-search.com) Toolbar: HKLM-x32 - Babylon Toolbar - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll (Babylon Ltd.) Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.21.5\deltaTlbr.dll (Delta-search.com) Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File CHR HKLM-x32\...\Chrome\Extension: [dlfienamagdnkekbbbocojppncdambda] - C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx CHR HKLM-x32\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\gucio\AppData\Roaming\BabSolution\CR\Delta.crx CHR HKLM-x32\...\Chrome\Extension: [gaiilaahiahdejapggenmdmafpmbipje] - C:\Program Files (x86)\DealPly\DealPly.crx CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION AlternateDataStreams: C:\Users\gucio\Cookies:ffxfgs0RQYxOgo4lvR0Yks8Wrc AlternateDataStreams: C:\Users\gucio\AppData\Local\Temp:Q680YB8u58lSHiqbkhF7PYPnP3Nh2 C:\Users\gucio\AppData\Local\Ol5DwQLEglmvs0 C:\Users\gucio\AppData\Roaming\Mozilla ***************** HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{614359AB-FC94-4DA1-BE12-2467C60EB42C} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{614359AB-FC94-4DA1-BE12-2467C60EB42C} => Key deleted successfully. C:\Windows\System32\Tasks\DealPly => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPly => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{678025E9-E0F7-43DC-95FC-31A4BC00DDDE} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{678025E9-E0F7-43DC-95FC-31A4BC00DDDE} => Key deleted successfully. C:\Windows\System32\Tasks\EPUpdater => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EPUpdater => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91B47B8E-2DEC-429A-B0B0-4DF409D514D1} => Key not found. C:\Windows\System32\Tasks\BrowserProtect => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BrowserProtect => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BFB4EF4D-5BC3-45FA-AC71-8C511F3A277D} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BFB4EF4D-5BC3-45FA-AC71-8C511F3A277D} => Key deleted successfully. C:\Windows\System32\Tasks\DealPlyUpdate => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyUpdate => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3AD12CE-156C-4E02-98AA-84693BCADF7A} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3AD12CE-156C-4E02-98AA-84693BCADF7A} => Key deleted successfully. C:\Windows\System32\Tasks\DSite => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DSite => Key deleted successfully. C:\Windows\Tasks\DSite.job => Moved successfully. HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => Value deleted successfully. HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\syshost32 => Value deleted successfully. HKCU\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => Value deleted successfully. HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs => Value was restored successfully. BrowserProtect => Service deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = => Value not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully. HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key deleted successfully. HKCR\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key deleted successfully. HKCR\CLSID\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{5D3DAD3E-BC1F-4602-8FFA-04C5CE16292F} => Key deleted successfully. HKCR\CLSID\{5D3DAD3E-BC1F-4602-8FFA-04C5CE16292F} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D1041405-120E-4416-BBA4-0251069D811C} => Key deleted successfully. HKCR\CLSID\{D1041405-120E-4416-BBA4-0251069D811C} => Key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0} => Key deleted successfully. HKCR\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0FB6A909-6086-458F-BD92-1F8EE10042A0} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{0FB6A909-6086-458F-BD92-1F8EE10042A0} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{2EECD738-5844-4a99-B4B6-146BF802613B} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{98889811-442D-49dd-99D7-DC866BE87DBC} => Value deleted successfully. HKCR\Wow6432Node\CLSID\{98889811-442D-49dd-99D7-DC866BE87DBC} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{82E1477C-B154-48D3-9891-33D83C26BCD3} => Value deleted successfully. HKCR\Wow6432Node\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3} => Key deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} => Value deleted successfully. HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value deleted successfully. HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found. HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\dlfienamagdnkekbbbocojppncdambda => Key deleted successfully. C:\Program Files (x86)\Complitly\chrome\ComplitlyChrome.crx => Moved successfully. HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde => Key deleted successfully. C:\Users\gucio\AppData\Roaming\BabSolution\CR\Delta.crx => Moved successfully. HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje => Key deleted successfully. C:\Program Files (x86)\DealPly\DealPly.crx => Moved successfully. HKLM\SOFTWARE\Policies\Google => Key deleted successfully. HKLM\SOFTWARE\Google\Chrome\Extensions\CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION => Key not found. "CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION" => File/Directory not found. "C:\Users\gucio\Cookies" => ":ffxfgs0RQYxOgo4lvR0Yks8Wrc" ADS not found. C:\Users\gucio\AppData\Local\Temp => ":Q680YB8u58lSHiqbkhF7PYPnP3Nh2" ADS removed successfully. C:\Users\gucio\AppData\Local\Ol5DwQLEglmvs0 => Moved successfully. C:\Users\gucio\AppData\Roaming\Mozilla => Moved successfully. The system needs a manual reboot. ==== End of Fixlog ====