Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 15-12-2013 Ran by Daniel at 2013-12-15 21:44:47 Run:2 Running from C:\Users\Daniel\Downloads\FRST Boot Mode: Normal ============================================== Content of fixlist: ***************** Reg: reg query HKLM\SYSTEM\CurrentControlSet\Services\Winmgmt /s CMD: sc query Winmgmt CMD: winmgmt /salvagerepository CMD: C:\Windows\SysWOW64\regsvr32.exe /u /s "C:\Program Files\Common Files\System\SysPlayerMenu.dll" Task: {BCB60DB2-5A6B-44AD-8292-4BA3095FD4AB} - System32\Tasks\SPMupdate1 => C:\Program Files\Common Files\System\SysPlayerMenu.dll [2013-11-13] (Goobzo LTD) Task: {CBFE10CF-0939-459E-8732-F9E3BC039C92} - System32\Tasks\Microsoft\Windows\Multimedia\SPMupdate3 => C:\Program Files\Common Files\System\SysPlayerMenu.dll [2013-11-13] (Goobzo LTD) Task: {DC35497D-3598-4618-B673-4153597DD7EB} - System32\Tasks\Microsoft\Windows\Maintenance\SPMupdate2 => C:\Program Files\Common Files\System\SysPlayerMenu.dll [2013-11-13] (Goobzo LTD) C:\Program Files\Common Files\System\SysPlayerMenu.dll ***************** ========= reg query HKLM\SYSTEM\CurrentControlSet\Services\Winmgmt /s ========= HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Winmgmt DisplayName REG_SZ @%Systemroot%\system32\wbem\wmisvc.dll,-205 ImagePath REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs Description REG_SZ @%Systemroot%\system32\wbem\wmisvc.dll,-204 ObjectName REG_SZ localSystem ErrorControl REG_DWORD 0x0 Start REG_DWORD 0x2 Type REG_DWORD 0x20 DependOnService REG_MULTI_SZ RPCSS ServiceSidType REG_DWORD 0x1 FailureActions REG_BINARY 805101000000000000000000030000001400000001000000C0D4010001000000E09304000000000000000000 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Winmgmt\Parameters ServiceDllUnloadOnStop REG_DWORD 0x1 ServiceDll REG_EXPAND_SZ %SystemRoot%\system32\wbem\WMIsvc.dll ServiceMain REG_SZ ServiceMain ========= End of Reg: ========= ========= sc query Winmgmt ========= SERVICE_NAME: Winmgmt TYPE : 20 WIN32_SHARE_PROCESS STATE : 4 RUNNING (STOPPABLE, PAUSABLE, ACCEPTS_SHUTDOWN) WIN32_EXIT_CODE : 0 (0x0) SERVICE_EXIT_CODE : 0 (0x0) CHECKPOINT : 0x0 WAIT_HINT : 0x0 ========= End of CMD: ========= ========= winmgmt /salvagerepository ========= Repozytorium WMI jest sp¢jne. ========= End of CMD: ========= ========= C:\Windows\SysWOW64\regsvr32.exe /u /s "C:\Program Files\Common Files\System\SysPlayerMenu.dll" ========= ========= End of CMD: ========= HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BCB60DB2-5A6B-44AD-8292-4BA3095FD4AB} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BCB60DB2-5A6B-44AD-8292-4BA3095FD4AB} => Key deleted successfully. C:\Windows\System32\Tasks\SPMupdate1 => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SPMupdate1 => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CBFE10CF-0939-459E-8732-F9E3BC039C92} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CBFE10CF-0939-459E-8732-F9E3BC039C92} => Key deleted successfully. C:\Windows\System32\Tasks\Microsoft\Windows\Multimedia\SPMupdate3 => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Multimedia\SPMupdate3 => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DC35497D-3598-4618-B673-4153597DD7EB} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DC35497D-3598-4618-B673-4153597DD7EB} => Key deleted successfully. C:\Windows\System32\Tasks\Microsoft\Windows\Maintenance\SPMupdate2 => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Maintenance\SPMupdate2 => Key deleted successfully. C:\Program Files\Common Files\System\SysPlayerMenu.dll => Moved successfully. ==== End of Fixlog ====