Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 24-01-2014 Ran by Suomi at 2014-01-25 20:30:31 Run:1 Running from C:\Users\Kinga\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www1.delta-search.com/?babsrc=HP_ss&mntrId=F65300A0C6000000&affID=119357&tsp=4970 SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=F65300A0C6000000&affID=119357&tsp=4970 Toolbar: HKLM-x32 - No Name - {10EDB994-47F8-43F7-AE96-F2EA63E9F90F} - No File FF SearchPlugin: C:\Users\Kinga\AppData\Roaming\Mozilla\Firefox\Profiles\03o36sdt.default\searchplugins\babylon.xml FF SearchPlugin: C:\Users\Kinga\AppData\Roaming\Mozilla\Firefox\Profiles\03o36sdt.default\searchplugins\safeguard-secure-search.xml FF Extension: QuickStores-Toolbar - C:\Program Files (x86)\Mozilla Firefox\extensions\quickstores@quickstores.de [2013-12-12] C:\Users\Kinga\AppData\Roaming\Babylon C:\Users\Kinga\AppData\Roaming\OpenCandy S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 MEMSWEEP2; \??\C:\windows\system32\2465.tmp [x] Task: {19B92D98-6DC7-477F-B088-F053A4504381} - System32\Tasks\ASC4_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 4\PMonitor.exe Task: {4A3025BC-50FE-40AE-AC10-E6069BC04937} - System32\Tasks\{11CA60F0-7D25-4E19-A38E-8465FE99E5F6} => Firefox.exe http://ui.skype.com/ui/0/5.1.0.104/pl/abandoninstall?source=lightinstaller&page=tsDownload&installinfo=google-toolbar:notoffered;ienotdefaultbrowser2,google-chrome:offered-notinstalled Task: {5850292E-C86E-4763-926A-256DA10ECB57} - System32\Tasks\{2F4A8881-EFF8-46AC-8677-6008C90C675C} => C:\Program Files (x86)\VIDEOzilla\VIDEOzilla.exe Task: {6FF8CD3B-8D1F-4820-942F-68B9763EC399} - System32\Tasks\{89077FA5-38E8-426A-A9D2-07AF5DDD646D} => Firefox.exe http://ui.skype.com/ui/0/5.1.0.104/pl/abandoninstall?source=lightinstaller&page=tsDownload&installinfo=google-toolbar:notoffered;ienotdefaultbrowser2,google-chrome:offered-notinstalled Task: {77005C3A-5637-4C20-A275-5D36F6D08E08} - System32\Tasks\{8F32A1B2-5757-47EA-B472-7941BFE3E8EB} => C:\Users\Kinga\Downloads\memtest86+-4.20.exe.z.exe Task: {8739E287-0DCF-4404-BAC4-154C834F4046} - System32\Tasks\{7CE092CE-E940-4EE7-A6B1-1F1F562F44EC} => Firefox.exe http://ui.skype.com/ui/0/6.9.0.106/pl/abandoninstall?page=tsProgressBar Task: {906DE03A-E839-4521-861C-BC55A6F3987D} - System32\Tasks\{A1349CD1-90BC-4E92-B3B5-CC5853A658C1} => C:\Program Files (x86)\VIDEOzilla\VIDEOzilla.exe Task: {E61F07F8-E3DC-45FD-AF2E-9AD3F735F7F0} - System32\Tasks\{3BEBC064-EFCB-482B-B54B-15C27864FF6E} => Firefox.exe http://ui.skype.com/ui/0/6.9.0.106/pl/go/help.faq.installer?LastError=1618 Task: {E6BB5D9C-12E5-4B18-B242-F94321E9EE90} - System32\Tasks\{CA6CC1A7-91A2-46D3-A4FE-1B5878A5984F} => Firefox.exe http://ui.skype.com/ui/0/5.1.0.104/pl/abandoninstall?source=lightinstaller&page=tsDownload&installinfo=google-toolbar:notoffered;ienotdefaultbrowser2,google-chrome:offered-notinstalled Task: {F0413C65-C511-41E3-A1D8-9510743F5507} - System32\Tasks\{B2E89367-446B-43BE-976D-7A27CB26A0F0} => C:\Users\Kinga\Downloads\memtest86+-4.20.exe.z.exe ***************** HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key deleted successfully. HKCR\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} => Value deleted successfully. HKCR\Wow6432Node\CLSID\{10EDB994-47F8-43F7-AE96-F2EA63E9F90F} => Key not found. C:\Users\Kinga\AppData\Roaming\Mozilla\Firefox\Profiles\03o36sdt.default\searchplugins\babylon.xml => Moved successfully. C:\Users\Kinga\AppData\Roaming\Mozilla\Firefox\Profiles\03o36sdt.default\searchplugins\safeguard-secure-search.xml => Moved successfully. C:\Program Files (x86)\Mozilla Firefox\extensions\quickstores@quickstores.de => Moved successfully. C:\Users\Kinga\AppData\Roaming\Babylon => Moved successfully. C:\Users\Kinga\AppData\Roaming\OpenCandy => Moved successfully. catchme => Service deleted successfully. MEMSWEEP2 => Service deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{19B92D98-6DC7-477F-B088-F053A4504381} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{19B92D98-6DC7-477F-B088-F053A4504381} => Key deleted successfully. C:\Windows\System32\Tasks\ASC4_PerformanceMonitor => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASC4_PerformanceMonitor => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4A3025BC-50FE-40AE-AC10-E6069BC04937} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4A3025BC-50FE-40AE-AC10-E6069BC04937} => Key deleted successfully. C:\Windows\System32\Tasks\{11CA60F0-7D25-4E19-A38E-8465FE99E5F6} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{11CA60F0-7D25-4E19-A38E-8465FE99E5F6} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5850292E-C86E-4763-926A-256DA10ECB57} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5850292E-C86E-4763-926A-256DA10ECB57} => Key deleted successfully. C:\Windows\System32\Tasks\{2F4A8881-EFF8-46AC-8677-6008C90C675C} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{2F4A8881-EFF8-46AC-8677-6008C90C675C} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6FF8CD3B-8D1F-4820-942F-68B9763EC399} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6FF8CD3B-8D1F-4820-942F-68B9763EC399} => Key deleted successfully. C:\Windows\System32\Tasks\{89077FA5-38E8-426A-A9D2-07AF5DDD646D} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{89077FA5-38E8-426A-A9D2-07AF5DDD646D} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{77005C3A-5637-4C20-A275-5D36F6D08E08} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77005C3A-5637-4C20-A275-5D36F6D08E08} => Key deleted successfully. C:\Windows\System32\Tasks\{8F32A1B2-5757-47EA-B472-7941BFE3E8EB} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{8F32A1B2-5757-47EA-B472-7941BFE3E8EB} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8739E287-0DCF-4404-BAC4-154C834F4046} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8739E287-0DCF-4404-BAC4-154C834F4046} => Key deleted successfully. C:\Windows\System32\Tasks\{7CE092CE-E940-4EE7-A6B1-1F1F562F44EC} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7CE092CE-E940-4EE7-A6B1-1F1F562F44EC} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{906DE03A-E839-4521-861C-BC55A6F3987D} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{906DE03A-E839-4521-861C-BC55A6F3987D} => Key deleted successfully. C:\Windows\System32\Tasks\{A1349CD1-90BC-4E92-B3B5-CC5853A658C1} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{A1349CD1-90BC-4E92-B3B5-CC5853A658C1} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E61F07F8-E3DC-45FD-AF2E-9AD3F735F7F0} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E61F07F8-E3DC-45FD-AF2E-9AD3F735F7F0} => Key deleted successfully. C:\Windows\System32\Tasks\{3BEBC064-EFCB-482B-B54B-15C27864FF6E} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{3BEBC064-EFCB-482B-B54B-15C27864FF6E} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E6BB5D9C-12E5-4B18-B242-F94321E9EE90} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E6BB5D9C-12E5-4B18-B242-F94321E9EE90} => Key deleted successfully. C:\Windows\System32\Tasks\{CA6CC1A7-91A2-46D3-A4FE-1B5878A5984F} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{CA6CC1A7-91A2-46D3-A4FE-1B5878A5984F} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F0413C65-C511-41E3-A1D8-9510743F5507} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0413C65-C511-41E3-A1D8-9510743F5507} => Key deleted successfully. C:\Windows\System32\Tasks\{B2E89367-446B-43BE-976D-7A27CB26A0F0} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B2E89367-446B-43BE-976D-7A27CB26A0F0} => Key deleted successfully. ==== End of Fixlog ====