Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 14-04-2014 Ran by Maciek at 2014-04-15 13:21:27 Run:1 Running from C:\Users\Maciek\Downloads\aa\laptop\frst Boot Mode: Normal ============================================== Content of fixlist: ***************** HKU\S-1-5-21-4290132301-2688213890-8098309-1000\...\Run: [DVDclone] - wscript.exe //B "C:\Users\Maciek\AppData\Local\Temp\DVDclone.vbs" <===== ATTENTION HKU\S-1-5-21-4290132301-2688213890-8098309-1000\...\Run: [7a2b0d6f82e4732be772a4c50aa180dc] - .. [0 2014-03-22] () HKU\S-1-5-21-4290132301-2688213890-8098309-1000\...\Run: [Link] - wscript.exe //B "C:\Users\Maciek\AppData\Local\Temp\Link.vbs" <===== ATTENTION Task: {0AD04C3B-674C-4BCB-909A-89AD7897A1C2} - \BitGuard No Task File Task: {2216DB6C-DC22-40DF-AAFB-68306B619B6B} - \EPUpdater No Task File S3 ASUSProcObsrv; \??\E:\I386\AsPrOb64.sys [X] S3 OSFMount; \??\C:\Program Files\OSFMount\OSFMount.sys [X] S0 vmci; system32\DRIVERS\vmci.sys [X] S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X] C:\Users\Maciek\AppData\Local\Google C:\Windows\1C4551A64743409391E41477CD655043.TMP C:\Windows\3F5C371F8EA24F259D3DD0B4526E3AEA.TMP Reg: reg add "HKCU\Software\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f Reg: reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f Reboot: ***************** HKU\S-1-5-21-4290132301-2688213890-8098309-1000\Software\Microsoft\Windows\CurrentVersion\Run\\DVDclone => Value deleted successfully. HKU\S-1-5-21-4290132301-2688213890-8098309-1000\Software\Microsoft\Windows\CurrentVersion\Run\\7a2b0d6f82e4732be772a4c50aa180dc => Value deleted successfully. HKU\S-1-5-21-4290132301-2688213890-8098309-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Link => Value deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0AD04C3B-674C-4BCB-909A-89AD7897A1C2} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0AD04C3B-674C-4BCB-909A-89AD7897A1C2} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BitGuard => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2216DB6C-DC22-40DF-AAFB-68306B619B6B} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2216DB6C-DC22-40DF-AAFB-68306B619B6B} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EPUpdater => Key deleted successfully. ASUSProcObsrv => Service deleted successfully. OSFMount => Service deleted successfully. vmci => Service deleted successfully. VMnetAdapter => Service deleted successfully. C:\Users\Maciek\AppData\Local\Google => Moved successfully. C:\Windows\1C4551A64743409391E41477CD655043.TMP => Moved successfully. C:\Windows\3F5C371F8EA24F259D3DD0B4526E3AEA.TMP => Moved successfully. ========= reg add "HKCU\Software\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= The system needed a reboot. ==== End of Fixlog ====