Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 08-01-2014 01 Ran by User at 2014-01-09 10:23:00 Run:2 Running from C:\Documents and Settings\User\Pulpit Boot Mode: Normal ============================================== Content of fixlist: ***************** HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.myhoome.com/ SearchScopes: HKCU - {12503EC9-CD77-4F88-A9DF-6B4CA6E603FC} URL = http://www.idg.pl?q={searchTerms} SearchScopes: HKCU - {41DEC4D4-99C4-4CE4-82A5-CC113490CA15} URL = http://www.idg.pl?q={searchTerms} SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2002} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=876&systemid=2&apn_uid=2313075238934124&apn_dtid=IME002&o=APN10641&apn_ptnrs=AG2&q={searchTerms} HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" S2 PEVSystemStart; "C:\ComboFix\pev.3XE" EXEC /i "C:\ComboFix\REGT.3XE" /S "C:\ComboFix\CregB.dat" S2 ADILOADER; System32\Drivers\adildr.sys [x] S3 adiusbaw; system32\DRIVERS\adiusbaw.sys [x] S0 GDBehave; system32\drivers\GDBehave.sys [x] S1 GDMnIcpt; \??\C:\WINDOWS\system32\drivers\MiniIcpt.sys [x] R1 HookCentre; C:\WINDOWS\system32\drivers\HookCentre.sys [47832 2013-06-10] (G Data Software AG) C:\WINDOWS\system32\drivers\HookCentre.sys C:\WINDOWS\system32\REN2D.tmp C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software C:\Documents and Settings\MasterAdmin\Menu Start\Programy\Theorica Divx ;-) Codecs C:\Program Files\Common Files\G DATA ***************** HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{12503EC9-CD77-4F88-A9DF-6B4CA6E603FC} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{12503EC9-CD77-4F88-A9DF-6B4CA6E603FC} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{41DEC4D4-99C4-4CE4-82A5-CC113490CA15} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{41DEC4D4-99C4-4CE4-82A5-CC113490CA15} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2002} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2002} => Key not found. HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => Key deleted successfully. PEVSystemStart => Service deleted successfully. ADILOADER => Service deleted successfully. adiusbaw => Service deleted successfully. GDBehave => Service deleted successfully. GDMnIcpt => Service deleted successfully. HookCentre => Service deleted successfully. C:\WINDOWS\system32\drivers\HookCentre.sys => Moved successfully. C:\WINDOWS\system32\REN2D.tmp => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software => Moved successfully. C:\Documents and Settings\MasterAdmin\Menu Start\Programy\Theorica Divx ;-) Codecs => Moved successfully. C:\Program Files\Common Files\G DATA => Moved successfully. The system needs a manual reboot. ==== End of Fixlog ====