Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 29-01-2014 01 Ran by młody at 2014-01-31 21:20:43 Run:1 Running from C:\Users\młody\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** () C:\Program Files (x86)\Mobogenie\DaemonProcess.exe HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe [735936 2013-09-28] () StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = R2 Wpm; C:\ProgramData\WPM\wprotectmanager.exe [499856 2014-01-02] (Cherished Technololgy LIMITED) U3 swmidi; Task: {73BF8425-08BE-472D-B3CC-07B149C1B87B} - System32\Tasks\EPUpdater => C:\Users\MODY~1\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe <==== ATTENTION AlternateDataStreams: C:\Users\młody\Ustawienia lokalne:CrCvdjuvqHdKZ6Tl7QyKpvZTG AlternateDataStreams: C:\Users\młody\Ustawienia lokalne:y6fKnS4yglbZ0vLImGwT AlternateDataStreams: C:\Users\młody\AppData\Local:CrCvdjuvqHdKZ6Tl7QyKpvZTG AlternateDataStreams: C:\Users\młody\AppData\Local:y6fKnS4yglbZ0vLImGwT AlternateDataStreams: C:\Users\młody\AppData\Local\Dane aplikacji:CrCvdjuvqHdKZ6Tl7QyKpvZTG AlternateDataStreams: C:\Users\młody\AppData\Local\Dane aplikacji:y6fKnS4yglbZ0vLImGwT AlternateDataStreams: C:\Users\młody\AppData\Local\Temp:dRbleKyZHfCeM8p9y7E4dWHXP AlternateDataStreams: C:\Users\młody\AppData\Local\Temp:hM2Dk3HXHHUPB4Q9q3p C:\Program Files (x86)\Mobogenie C:\ProgramData\eSafe C:\ProgramData\WPM ***************** C:\Program Files (x86)\Mobogenie\DaemonProcess.exe => No running process found HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mobilegeni daemon => Value deleted successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key deleted successfully. HKCR\CLSID\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => Key not found. Wpm => Service not found. swmidi => Service deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{73BF8425-08BE-472D-B3CC-07B149C1B87B} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{73BF8425-08BE-472D-B3CC-07B149C1B87B} => Key deleted successfully. C:\Windows\System32\Tasks\EPUpdater => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EPUpdater => Key deleted successfully. "C:\Users\młody\Ustawienia lokalne" => ":CrCvdjuvqHdKZ6Tl7QyKpvZTG" ADS not found. "C:\Users\młody\Ustawienia lokalne" => ":y6fKnS4yglbZ0vLImGwT" ADS not found. C:\Users\młody\AppData\Local => ":CrCvdjuvqHdKZ6Tl7QyKpvZTG" ADS removed successfully. C:\Users\młody\AppData\Local => ":y6fKnS4yglbZ0vLImGwT" ADS removed successfully. "C:\Users\młody\AppData\Local\Dane aplikacji" => ":CrCvdjuvqHdKZ6Tl7QyKpvZTG" ADS not found. "C:\Users\młody\AppData\Local\Dane aplikacji" => ":y6fKnS4yglbZ0vLImGwT" ADS not found. C:\Users\młody\AppData\Local\Temp => ":dRbleKyZHfCeM8p9y7E4dWHXP" ADS removed successfully. C:\Users\młody\AppData\Local\Temp => ":hM2Dk3HXHHUPB4Q9q3p" ADS removed successfully. C:\Program Files (x86)\Mobogenie => Moved successfully. C:\ProgramData\eSafe => Moved successfully. C:\ProgramData\WPM => Moved successfully. ==== End of Fixlog ====