Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 13-03-2014 01 Ran by PTYLLO at 2014-04-05 09:15:05 Run:1 Running from J:\! OTL\a Boot Mode: Normal ============================================== Content of fixlist: ***************** Task: {2D498699-5BE8-49A4-A128-83E2F0B6F389} - System32\Tasks\Plus-HD-7.6-enabler => C:\Program Files\Plus-HD-7.6\Plus-HD-7.6-enabler.exe <==== ATTENTION Task: {97C3DAA5-A617-49CC-93AF-D8368868D6B0} - System32\Tasks\Plus-HD-7.6-validator => C:\Program Files\Plus-HD-7.6\Plus-HD-7.6-validator.exe <==== ATTENTION Task: {B48999AA-96CD-4220-8B59-F56D33213581} - System32\Tasks\Plus-HD-7.6-firefoxinstaller => C:\Program Files\Plus-HD-7.6\Plus-HD-7.6-firefoxinstaller.exe <==== ATTENTION Task: {B9516008-8060-449D-9BF8-53A685E8871E} - System32\Tasks\Plus-HD-7.6-codedownloader => C:\Program Files\Plus-HD-7.6\Plus-HD-7.6-codedownloader.exe <==== ATTENTION Task: {F926D2BD-9E07-4E40-AC02-4FEB37D4F591} - System32\Tasks\Plus-HD-7.6-updater => C:\Program Files\Plus-HD-7.6\Plus-HD-7.6-updater.exe <==== ATTENTION Task: C:\Windows\Tasks\Plus-HD-7.6-codedownloader.job => C:\Program Files\Plus-HD-7.6\Plus-HD-7.6-codedownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\Plus-HD-7.6-enabler.job => C:\Program Files\Plus-HD-7.6\Plus-HD-7.6-enabler.exe <==== ATTENTION Task: C:\Windows\Tasks\Plus-HD-7.6-firefoxinstaller.job => C:\Program Files\Plus-HD-7.6\Plus-HD-7.6-firefoxinstaller.exe <==== ATTENTION Task: C:\Windows\Tasks\Plus-HD-7.6-updater.job => C:\Program Files\Plus-HD-7.6\Plus-HD-7.6-updater.exe <==== ATTENTION Task: C:\Windows\Tasks\Plus-HD-7.6-validator.job => C:\Program Files\Plus-HD-7.6\Plus-HD-7.6-validator.exe <==== ATTENTION HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie URLSearchHook: HKCU - (No Name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No File SearchScopes: HKLM - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.aspx?ctid=CT3321486&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SPA0805101-5FFA-4269-8F40-5852D18BC0CB&q={searchTerms}&SSPV= SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.aspx?ctid=CT3321486&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SPA0805101-5FFA-4269-8F40-5852D18BC0CB&q={searchTerms}&SSPV= SearchScopes: HKCU - {460C3D19-B3D4-4964-A550-77D263B0CCCB} URL = http://search.softonic.com/MOY00002/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=beef2b8200000000000094de80d76d45&toi=16099&r=890 SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear BHO: No Name - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No File FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Plugin: @Nero.com/KM - C:\PROGRA~1\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG) Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\vProt" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Search" /f Reg: reg delete "HKCU\SOFTWARE\Microsoft\Internet Explorer\Search" /f ***************** HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2D498699-5BE8-49A4-A128-83E2F0B6F389} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2D498699-5BE8-49A4-A128-83E2F0B6F389} => Key deleted successfully. C:\Windows\System32\Tasks\Plus-HD-7.6-enabler => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-7.6-enabler => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{97C3DAA5-A617-49CC-93AF-D8368868D6B0} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{97C3DAA5-A617-49CC-93AF-D8368868D6B0} => Key deleted successfully. C:\Windows\System32\Tasks\Plus-HD-7.6-validator => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-7.6-validator => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B48999AA-96CD-4220-8B59-F56D33213581} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B48999AA-96CD-4220-8B59-F56D33213581} => Key deleted successfully. C:\Windows\System32\Tasks\Plus-HD-7.6-firefoxinstaller => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-7.6-firefoxinstaller => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B9516008-8060-449D-9BF8-53A685E8871E} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9516008-8060-449D-9BF8-53A685E8871E} => Key deleted successfully. C:\Windows\System32\Tasks\Plus-HD-7.6-codedownloader => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-7.6-codedownloader => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F926D2BD-9E07-4E40-AC02-4FEB37D4F591} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F926D2BD-9E07-4E40-AC02-4FEB37D4F591} => Key deleted successfully. C:\Windows\System32\Tasks\Plus-HD-7.6-updater => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-7.6-updater => Key deleted successfully. C:\Windows\Tasks\Plus-HD-7.6-codedownloader.job => Moved successfully. C:\Windows\Tasks\Plus-HD-7.6-enabler.job => Moved successfully. C:\Windows\Tasks\Plus-HD-7.6-firefoxinstaller.job => Moved successfully. C:\Windows\Tasks\Plus-HD-7.6-updater.job => Moved successfully. C:\Windows\Tasks\Plus-HD-7.6-validator.job => Moved successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Search Bar => Value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{84FF7BD6-B47F-46F8-9130-01B2696B36CB} => Value deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{460C3D19-B3D4-4964-A550-77D263B0CCCB} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{460C3D19-B3D4-4964-A550-77D263B0CCCB} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => Key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB} => Key deleted successfully. HKCR\CLSID\{84FF7BD6-B47F-46F8-9130-01B2696B36CB} => Key not found. HKLM\Software\Mozilla\Firefox\Extensions\\smartwebprinting@hp.com => Value deleted successfully. HKCU\Software\Mozilla\Firefox\Extensions\\smartwebprinting@hp.com => Value deleted successfully. HKLM\Software\MozillaPlugins\@Nero.com/KM => Key deleted successfully. C:\PROGRA~1\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL => Moved successfully. ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\vProt" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Search" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKCU\SOFTWARE\Microsoft\Internet Explorer\Search" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ==== End of Fixlog ====