Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 13-03-2014 Ran by PG at 2014-03-17 21:29:54 Run:1 Running from C:\Users\PG\Desktop\SOFT_RECOVERY Boot Mode: Normal ============================================== Content of fixlist: ***************** C:\ProgramData\{$1284-9213-2940-1289$} C:\Users\PG\AppData\Roaming\msconfig.ini C:\Users\PG\cxvis S3 gdrv; \??\C:\Windows\gdrv.sys [X] Reg: reg query HKLM\SYSTEM\CurrentControlSet\Services\Schedule ***************** C:\ProgramData\{$1284-9213-2940-1289$} => Moved successfully. C:\Users\PG\AppData\Roaming\msconfig.ini => Moved successfully. C:\Users\PG\cxvis => Moved successfully. gdrv => Service deleted successfully. ========= reg query HKLM\SYSTEM\CurrentControlSet\Services\Schedule ========= HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule AtTaskMaxHours REG_DWORD 0x48 DisplayName REG_SZ @%SystemRoot%\system32\schedsvc.dll,-100 Group REG_SZ SchedulerGroup ImagePath REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs Description REG_SZ @%SystemRoot%\system32\schedsvc.dll,-101 ObjectName REG_SZ LocalSystem ErrorControl REG_DWORD 0x1 Start REG_DWORD 0x2 Type REG_DWORD 0x20 DependOnService REG_MULTI_SZ RPCSS\0EventLog ServiceSidType REG_DWORD 0x1 RequiredPrivileges REG_MULTI_SZ SeIncreaseQuotaPrivilege\0SeChangeNotifyPrivilege\0SeAuditPrivilege\0SeImpersonatePrivilege\0SeAssignPrimaryTokenPrivilege\0SeTcbPrivilege\0SeRestorePrivilege FailureActions REG_BINARY 80510100000000000000000003000000140000000100000060EA00000100000060EA00000000000000000000 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\Parameters HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\Security ========= End of Reg: ========= ==== End of Fixlog ====