Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 29-12-2013 Ran by Samsunek at 2013-12-29 15:45:07 Run:1 Running from C:\Users\Samsunek\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** () C:\Users\Samsunek\AppData\Roaming\defaulttab\defaulttab\dtupdate.exe () C:\Program Files (x86)\BuzzSearch\updateBuzzSearch.exe () C:\Program Files (x86)\BuzzSearch\bin\utilBuzzSearch.exe HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [761024 2013-12-10] () HKCU\...\Run: [NextLive] - C:\windows\SysWOW64\rundll32.exe "C:\Users\Samsunek\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mysearchresults.com/?c=3524&t=01 SearchScopes: HKCU - DefaultScope {616D11C5-78EB-4DD3-8712-F6AD6CE6B3BA} URL = SearchScopes: HKCU - {616D11C5-78EB-4DD3-8712-F6AD6CE6B3BA} URL = SearchScopes: HKCU - {79F7CE61-01C2-4200-B7E6-53D2D651FB62} URL = http://www.mysearchresults.com/search?c=3524&t=01&q={searchTerms} BHO-x32: BuzzSearch - {5cf5a690-c8f4-488e-9d20-f21aef602d41} - C:\Program Files (x86)\BuzzSearch\BuzzSearchBHO.dll (BuzzSearch) BHO-x32: DefaultTab Browser Helper - {7F6AFBF1-E065-4627-A2FD-810366367D01} - C:\Users\Samsunek\AppData\Roaming\defaulttab\defaulttab\DefaultTabBHO.dll (Search Results LLC.) BHO-x32: Related Searches - {96A25A24-2E87-4374-8A50-CC6F943FCE4D} - C:\Users\Samsunek\AppData\Roaming\defaulttab\defaulttab\Apps\RelatedLinksBHO.dll (Search Results) BHO-x32: TheSea.TheSeaPlugin - {C585D593-E7F3-4852-A200-561686EE02E4} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Related Searches - {96A25A24-2E87-4374-8A50-CC6F943FCE4D} - C:\Users\Samsunek\AppData\Roaming\defaulttab\defaulttab\Apps\RelatedLinksBHO.dll (Search Results) Task: {71601829-9645-44E7-8738-A71648B2EA05} - System32\Tasks\RegClean Pro => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe <==== ATTENTION Task: {9ED8F392-E6FD-41F6-B88C-6E1DC60CC7AB} - System32\Tasks\RegClean Pro_UPDATES => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe <==== ATTENTION Task: {A83B372C-45F1-4894-A0BA-C126DB5AA257} - System32\Tasks\RegClean Pro_DEFAULT => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe <==== ATTENTION Task: C:\windows\Tasks\RegClean Pro_DEFAULT.job => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe <==== ATTENTION Task: C:\windows\Tasks\RegClean Pro_UPDATES.job => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe <==== ATTENTION R2 Update BuzzSearch; C:\Program Files (x86)\BuzzSearch\updateBuzzSearch.exe [66336 2013-11-08] () R2 Util BuzzSearch; C:\Program Files (x86)\BuzzSearch\bin\utilBuzzSearch.exe [66336 2013-11-26] () R4 ccSet_NARA; \SystemRoot\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [x] S3 SBIOSIO; \??\C:\MfgDiag\DiagTools\AMDAutoOnClear\SBIOSIO64.SYS [x] S3 TVICPORT; \??\C:\windows\system32\DRIVERS\TVICPORT.SYS [x] C:\Users\Samsunek\.android C:\Users\Samsunek\daemonprocess.txt C:\Users\Samsunek\AppData\Local\cache C:\Users\Samsunek\AppData\Local\genienext C:\Users\Samsunek\AppData\Local\Mobogenie C:\Users\Samsunek\AppData\Roaming\newnext.me C:\Users\Samsunek\AppData\Roaming\Systweak C:\Users\Samsunek\Documents\Mobogenie C:\Users\Samsunek\Downloads\SoftonicDownloader_dla_german-truck-simulator.exe C:\Program Files (x86)\Mobogenie C:\Program Files (x86)\Mozilla Firefox ***************** [1872] C:\Users\Samsunek\AppData\Roaming\defaulttab\defaulttab\dtupdate.exe => Process closed successfully. [1296] C:\Program Files (x86)\BuzzSearch\updateBuzzSearch.exe => Process closed successfully. [2248] C:\Program Files (x86)\BuzzSearch\bin\utilBuzzSearch.exe => Process closed successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mobilegeni daemon => Value deleted successfully. HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\NextLive => Value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{616D11C5-78EB-4DD3-8712-F6AD6CE6B3BA} => Key deleted successfully. HKCR\CLSID\{616D11C5-78EB-4DD3-8712-F6AD6CE6B3BA} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{79F7CE61-01C2-4200-B7E6-53D2D651FB62} => Key deleted successfully. HKCR\CLSID\{79F7CE61-01C2-4200-B7E6-53D2D651FB62} => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5cf5a690-c8f4-488e-9d20-f21aef602d41} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{5cf5a690-c8f4-488e-9d20-f21aef602d41} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{7F6AFBF1-E065-4627-A2FD-810366367D01} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{96A25A24-2E87-4374-8A50-CC6F943FCE4D} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{96A25A24-2E87-4374-8A50-CC6F943FCE4D} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C585D593-E7F3-4852-A200-561686EE02E4} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{C585D593-E7F3-4852-A200-561686EE02E4} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{96A25A24-2E87-4374-8A50-CC6F943FCE4D} => Value deleted successfully. HKCR\Wow6432Node\CLSID\{96A25A24-2E87-4374-8A50-CC6F943FCE4D} => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{71601829-9645-44E7-8738-A71648B2EA05} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{71601829-9645-44E7-8738-A71648B2EA05} => Key deleted successfully. C:\Windows\System32\Tasks\RegClean Pro => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RegClean Pro => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9ED8F392-E6FD-41F6-B88C-6E1DC60CC7AB} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9ED8F392-E6FD-41F6-B88C-6E1DC60CC7AB} => Key deleted successfully. C:\Windows\System32\Tasks\RegClean Pro_UPDATES => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RegClean Pro_UPDATES => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A83B372C-45F1-4894-A0BA-C126DB5AA257} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A83B372C-45F1-4894-A0BA-C126DB5AA257} => Key deleted successfully. C:\Windows\System32\Tasks\RegClean Pro_DEFAULT => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RegClean Pro_DEFAULT => Key deleted successfully. C:\windows\Tasks\RegClean Pro_DEFAULT.job => Moved successfully. C:\windows\Tasks\RegClean Pro_UPDATES.job => Moved successfully. Update BuzzSearch => Service deleted successfully. Util BuzzSearch => Service deleted successfully. ccSet_NARA => Service deleted successfully. SBIOSIO => Service deleted successfully. TVICPORT => Service deleted successfully. C:\Users\Samsunek\.android => Moved successfully. C:\Users\Samsunek\daemonprocess.txt => Moved successfully. C:\Users\Samsunek\AppData\Local\cache => Moved successfully. C:\Users\Samsunek\AppData\Local\genienext => Moved successfully. C:\Users\Samsunek\AppData\Local\Mobogenie => Moved successfully. C:\Users\Samsunek\AppData\Roaming\newnext.me => Moved successfully. C:\Users\Samsunek\AppData\Roaming\Systweak => Moved successfully. C:\Users\Samsunek\Documents\Mobogenie => Moved successfully. C:\Users\Samsunek\Downloads\SoftonicDownloader_dla_german-truck-simulator.exe => Moved successfully. C:\Program Files (x86)\Mobogenie => Moved successfully. C:\Program Files (x86)\Mozilla Firefox => Moved successfully. The system needs a manual reboot. ==== End of Fixlog ====