Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 13-03-2014 Ran by Monika at 2014-04-06 16:00:50 Run:1 Running from C:\Users\Monika\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** () C:\Users\Monika\AppData\Local\Temp\TasksWatch.exe HKLM-x32\...\Run: [mcui_exe] - "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey HKLM-x32\...\Run: [TasksWatch] - C:\Users\Monika\AppData\Local\Temp\TasksWatch.exe [1289872 2014-04-01] () HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-1363771629-968075442-2822431997-1000\...\Run: [Tiny download manager] - "C:\Users\Monika\AppData\Local\DM\TinyDM.exe" /M AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => C:\PROGRA~2\SupTab\SEARCH~2.DLL File Not Found AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => "C:\PROGRA~2\SupTab\SEARCH~1.DLL" File Not Found Task: {D8D1E7A2-6AC7-45CF-A0D8-418A06ECE915} - System32\Tasks\DTReg => C:\Users\Monika\AppData\Roaming\defaulttab\defaulttab\DTReg.exe <==== ATTENTION StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\webssearches.xml C:\Users\Monika\Downloads\RegClean Pro.lnk C:\Users\Monika\Downloads\Tiny download manager.lnk HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" AV: McAfee Anti-Virus i McAfee Anti-Spyware (Disabled - Up to date) {86355677-4064-3EA7-ABB3-1B136EB04637} AS: McAfee Anti-Virus i McAfee Anti-Spyware (Disabled - Up to date) {3D54B793-665E-3129-9103-206115370C8A} FW: McAfee Firewall (Disabled) {BE0ED752-0A0B-3FFF-80EC-B2269063014C} Reg: reg add "HKCU\Software\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f Reg: reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f Reboot: ***************** [3300] C:\Users\Monika\AppData\Local\Temp\TasksWatch.exe => Process closed successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mcui_exe => Value deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\TasksWatch => Value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoControlPanel => Value deleted successfully. HKU\S-1-5-21-1363771629-968075442-2822431997-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Tiny download manager => Value deleted successfully. "C:\\PROGRA~2\\SupTab\\SEARCH~2.DLL" => Value Data removed successfully. "C:\\PROGRA~2\\SupTab\\SEARCH~1.DLL" => Value Data removed successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D8D1E7A2-6AC7-45CF-A0D8-418A06ECE915} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D8D1E7A2-6AC7-45CF-A0D8-418A06ECE915} => Key deleted successfully. C:\Windows\System32\Tasks\DTReg => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DTReg => Key deleted successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. C:\Program Files (x86)\mozilla firefox\browser\searchplugins\webssearches.xml => Moved successfully. C:\Users\Monika\Downloads\RegClean Pro.lnk => Moved successfully. C:\Users\Monika\Downloads\Tiny download manager.lnk => Moved successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mfefire => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mfefirek => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mfehidk => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mfevtp => Key deleted successfully. AV: McAfee Anti-Virus i McAfee Anti-Spyware (Disabled - Up to date) {86355677-4064-3EA7-ABB3-1B136EB04637} => The item is protected. Make sure the software is uninstalled and its services is removed. AS: McAfee Anti-Virus i McAfee Anti-Spyware (Disabled - Up to date) {3D54B793-665E-3129-9103-206115370C8A} => The item is protected. Make sure the software is uninstalled and its services is removed. FW: McAfee Firewall (Disabled) {BE0ED752-0A0B-3FFF-80EC-B2269063014C} => The item is protected. Make sure the software is uninstalled and its services is removed. ========= reg add "HKCU\Software\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= The system needed a reboot. ==== End of Fixlog ====