Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 05-01-2014 Ran by admin at 2014-01-08 07:37:03 Run:1 Running from C:\Documents and Settings\admin\Pulpit Boot Mode: Normal ============================================== Content of fixlist: ***************** Task: C:\WINDOWS\Tasks\EPUpdater.job => C:\DOCUME~1\admin\DANEAP~1\BABSOL~1\Shared\BabMaint.exe Task: C:\WINDOWS\Tasks\GlaryInitialize.job => C:\Program Files\Glary Utilities\initialize.exe HKLM\...\Run: [mobilegeni daemon] - C:\Program Files\Mobogenie\DaemonProcess.exe [738496 2013-10-18] () HKCU\...\Run: [AVG-Secure-Search-Update_1213b] - C:\Documents and Settings\admin\Dane aplikacji\AVG 1213b Campaign\AVG-Secure-Search-Update-1213b.exe /PROMPT /mid=4273c6df12c998c3c67c13d1aac081b6-a4cca59a7271c076cd3019e85f2869b281084197 /CMPID=1213b HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=idg&from=idg&uid=WDC_WD1600AAJS-75B4A0_WD-WMAT2144293042930&ts=1358430359 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=idg&from=idg&uid=WDC_WD1600AAJS-75B4A0_WD-WMAT2144293042930&ts=1358430359 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com/?utm_source=b&utm_medium=idg&from=idg&uid=WDC_WD1600AAJS-75B4A0_WD-WMAT2144293042930&ts=1358430359 URLSearchHook: ATTENTION ==> Default URLSearchHook is missing. URLSearchHook: HKCU - (No Name) - {CA3EB689-8F09-4026-AA10-B9534C691CE0} - No File SearchScopes: HKLM - {c1d89ae7-449d-4929-b24b-fded04adbe06} URL = http://isearch.glarysoft.com/?q={searchTerms}&src=iesearch SearchScopes: HKLM - {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} URL = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&query={searchTerms}&invocationType=tb50winampie7 SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://search.v9.com/web/?q={searchTerms} SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.delta-search.com/?q={searchTerms}&affID=121845&babsrc=SP_ss&mntrId=3896001D60965B6A SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = http://websearch.ask.com/redirect?client=ie&tb=GLSV5&o=10168&src=crm&q={searchTerms}&locale=en_US&apn_ptnrs=GL&apn_dtid=YYYYYYYYPL&apn_uid=1775AE76-A95D-47D9-8DD0-9E6D06C01CBE&apn_sauid=227D1DE3-2226-4E8B-8296-47385535889E SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.v9.com/web/?q={searchTerms} SearchScopes: HKCU - {B7B664DF-3AF9-4C8E-8148-F42BB7831D27} URL = http://www.ask.com/web?o=15710&l=dis&q={searchTerms} SearchScopes: HKCU - {c1d89ae7-449d-4929-b24b-fded04adbe06} URL = http://isearch.glarysoft.com/?q={searchTerms}&src=iesearch SearchScopes: HKCU - {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} URL = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&query={searchTerms}&invocationType=tb50winampie7 BHO: No Name - {2EECD738-5844-4a99-B4B6-146BF802613B} - No File BHO: No Name - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No File BHO: DealPly - {A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} - C:\Program Files\DealPly\DealPlyIE.dll (DealPly Technologies Ltd) BHO: TBSB05810 Class - {A7AF277D-1466-4A7B-93AF-B043984A5671} - C:\Program Files\Glarysoft Toolbar\tbcore3.dll () BHO: No Name - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - No File BHO: No Name - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - No File Toolbar: HKLM - Glarysoft Toolbar - {32D47EA5-9473-4CAD-805D-9999F15D5AE2} - C:\Program Files\Glarysoft Toolbar\tbcore3.dll () Toolbar: HKLM - No Name - {98889811-442D-49dd-99D7-DC866BE87DBC} - No File Toolbar: HKLM - No Name - {82E1477C-B154-48D3-9891-33D83C26BCD3} - No File Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKCU - Glarysoft Toolbar - {32D47EA5-9473-4CAD-805D-9999F15D5AE2} - C:\Program Files\Glarysoft Toolbar\tbcore3.dll () Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File C:\Documents and Settings\All Users\Dane aplikacji\APN C:\Documents and Settings\All Users\Dane aplikacji\avg9 C:\Documents and Settings\All Users\Dane aplikacji\Babylon C:\Documents and Settings\All Users\Dane aplikacji\f-secure C:\Documents and Settings\All Users\Dane aplikacji\fssg C:\Documents and Settings\All Users\Dane aplikacji\Tarma Installer C:\Documents and Settings\admin\daemonprocess.txt C:\Documents and Settings\admin\Dane aplikacji\AVG9 C:\Documents and Settings\admin\Dane aplikacji\GlarySoft C:\Documents and Settings\admin\Dane aplikacji\Toolbar4 C:\Documents and Settings\admin\Dane aplikacji\TuneUp Software C:\Documents and Settings\admin\Dane aplikacji\Uniblue C:\Documents and Settings\admin\Moje dokumenty\Mobogenie C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\cache C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Mobogenie C:\Documents and Settings\Default User\Dane aplikacji\TuneUp Software C:\Program Files\DealPly C:\Program Files\Glarysoft Toolbar C:\Program Files\Mobogenie C:\Program Files\mozilla firefox\searchplugins\glarysearch.xml C:\Program Files\mozilla firefox\searchplugins\v9.xml Reg: reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Search" /f ***************** C:\WINDOWS\Tasks\EPUpdater.job => Moved successfully. C:\WINDOWS\Tasks\GlaryInitialize.job => Moved successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\mobilegeni daemon => Value deleted successfully. HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\AVG-Secure-Search-Update_1213b => Value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. Default URLSearchHook was restored successfully . HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{CA3EB689-8F09-4026-AA10-B9534C691CE0} => Value not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{c1d89ae7-449d-4929-b24b-fded04adbe06} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{c1d89ae7-449d-4929-b24b-fded04adbe06} => Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7B664DF-3AF9-4C8E-8148-F42BB7831D27} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{B7B664DF-3AF9-4C8E-8148-F42BB7831D27} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{c1d89ae7-449d-4929-b24b-fded04adbe06} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{c1d89ae7-449d-4929-b24b-fded04adbe06} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} => Key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4a99-B4B6-146BF802613B} => Key deleted successfully. HKCR\CLSID\{2EECD738-5844-4a99-B4B6-146BF802613B} => Key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} => Key deleted successfully. HKCR\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} => Key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} => Key deleted successfully. HKCR\CLSID\{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7AF277D-1466-4A7B-93AF-B043984A5671} => Key deleted successfully. HKCR\CLSID\{A7AF277D-1466-4A7B-93AF-B043984A5671} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} => Key deleted successfully. HKCR\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} => Key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} => Key deleted successfully. HKCR\CLSID\{F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} => Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{32D47EA5-9473-4CAD-805D-9999F15D5AE2} => Value deleted successfully. HKCR\CLSID\{32D47EA5-9473-4CAD-805D-9999F15D5AE2} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{98889811-442D-49dd-99D7-DC866BE87DBC} => Value deleted successfully. HKCR\CLSID\{98889811-442D-49dd-99D7-DC866BE87DBC} => Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{82E1477C-B154-48D3-9891-33D83C26BCD3} => Value deleted successfully. HKCR\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3} => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} => Value deleted successfully. HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32D47EA5-9473-4CAD-805D-9999F15D5AE2} => Value deleted successfully. HKCR\CLSID\{32D47EA5-9473-4CAD-805D-9999F15D5AE2} => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value deleted successfully. HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found. HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{68282C51-9459-467B-95BF-3C0E89627E55} => Key deleted successfully. HKCR\CLSID\{68282C51-9459-467B-95BF-3C0E89627E55} => Key not found. HKCR\PROTOCOLS\Handler\linkscanner => Key deleted successfully. HKCR\CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} => Key not found. C:\Documents and Settings\All Users\Dane aplikacji\APN => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\avg9 => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\Babylon => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\f-secure => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\fssg => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\Tarma Installer => Moved successfully. C:\Documents and Settings\admin\daemonprocess.txt => Moved successfully. C:\Documents and Settings\admin\Dane aplikacji\AVG9 => Moved successfully. C:\Documents and Settings\admin\Dane aplikacji\GlarySoft => Moved successfully. C:\Documents and Settings\admin\Dane aplikacji\Toolbar4 => Moved successfully. C:\Documents and Settings\admin\Dane aplikacji\TuneUp Software => Moved successfully. C:\Documents and Settings\admin\Dane aplikacji\Uniblue => Moved successfully. C:\Documents and Settings\admin\Moje dokumenty\Mobogenie => Moved successfully. C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\cache => Moved successfully. C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Mobogenie => Moved successfully. C:\Documents and Settings\Default User\Dane aplikacji\TuneUp Software => Moved successfully. C:\Program Files\DealPly => Moved successfully. C:\Program Files\Glarysoft Toolbar => Moved successfully. C:\Program Files\Mobogenie => Moved successfully. C:\Program Files\mozilla firefox\searchplugins\glarysearch.xml => Moved successfully. C:\Program Files\mozilla firefox\searchplugins\v9.xml => Moved successfully. ========= reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Search" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ==== End of Fixlog ====