Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:14-05-2014 Ran by admin at 2014-05-15 20:04:21 Run:1 Running from C:\Users\admin\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** () C:\Program Files\webget\updatewebget.exe () C:\Program Files\webget\bin\utilwebget.exe () C:\Users\admin\AppData\Roaming\Theta\wwing.exe () C:\Program Files\webget\bin\webget.PurBrowse.exe () C:\Program Files\webget\bin\webget.BrowserAdapter.exe Startup: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\{a45624fe-880e-0d76-5251-a8d8a45624fe}.exe () HKU\S-1-5-21-2372006593-2295337032-2824968523-1000\...\Run: [Keyboard Inf.] => C:\Users\admin\AppData\Roaming\Theta\wwing.exe [4086272 2014-03-19] () BHO: Torntv V9.0 - {11111111-1111-1111-1111-110511131190} - C:\Program Files\Torntv V9.0\Torntv V9.0-bho.dll No File BHO: webget - {dc264a72-fa75-4948-b881-ea8eff8e5dd2} - C:\Program Files\webget\webgetbho.dll No File FF Plugin: @staging.google.com/globalUpdate Update;version=10 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) FF Plugin: @staging.google.com/globalUpdate Update;version=4 - C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-05-12] (globalUpdate) S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-05-12] (globalUpdate) R2 Update webget; C:\Program Files\webget\updatewebget.exe [317720 2014-05-13] () R2 Util webget; C:\Program Files\webget\bin\utilwebget.exe [317720 2014-05-13] () R1 {9edd0ea8-2819-47c2-8320-b007d5996f8a}Gw; C:\Windows\System32\drivers\{9edd0ea8-2819-47c2-8320-b007d5996f8a}Gw.sys [52920 2014-05-07] (StdLib) S3 AsrCDDrv; \??\C:\Windows\system32\Drivers\AsrCDDrv.sys [X] S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X] Task: {126B7BE4-C981-45F8-B153-AB426C4353AD} - System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-6 => C:\Program Files\Torntv V9.0\Torntv V9.0-novainstaller.exe <==== ATTENTION Task: {1D34BAE4-D16D-44B1-BB8E-F9E0C83325FB} - System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-4 => C:\Program Files\Torntv V9.0\c0976ad7-b268-4bd9-b131-7cf2ab414e25-4.exe <==== ATTENTION Task: {203A668C-1A89-4B54-8C07-D31A509A9E49} - System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-1 => C:\Program Files\Torntv V9.0\Torntv V9.0-codedownloader.exe <==== ATTENTION Task: {26118E73-281D-4950-BAE5-0B5D765C900F} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-05-12] (globalUpdate) Task: {5AC9FA7D-6C58-47FF-B63E-F1E6306EF284} - System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-7 => C:\Program Files\Torntv V9.0\Torntv V9.0-nova.exe <==== ATTENTION Task: {89625DB9-4CFB-4B5F-ADA1-9C8D7A0FBDB5} - System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-5 => C:\Program Files\Torntv V9.0\c0976ad7-b268-4bd9-b131-7cf2ab414e25-5.exe <==== ATTENTION Task: {8B1DE93F-28F0-4E8D-86CA-937ECAB57FD0} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-05-12] (globalUpdate) Task: {F4851116-5196-4EE4-BFDB-2062FAECCC0E} - System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-2 => C:\Program Files\Torntv V9.0\c0976ad7-b268-4bd9-b131-7cf2ab414e25-2.exe <==== ATTENTION Task: C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-1.job => C:\Program Files\Torntv V9.0\Torntv V9.0-codedownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-2.job => C:\Program Files\Torntv V9.0\c0976ad7-b268-4bd9-b131-7cf2ab414e25-2.exe <==== ATTENTION Task: C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-4.job => C:\Program Files\Torntv V9.0\c0976ad7-b268-4bd9-b131-7cf2ab414e25-4.exe <==== ATTENTION Task: C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-5.job => C:\Program Files\Torntv V9.0\c0976ad7-b268-4bd9-b131-7cf2ab414e25-5.exe <==== ATTENTION Task: C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-6.job => C:\Program Files\Torntv V9.0\Torntv V9.0-novainstaller.exe <==== ATTENTION Task: C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-7.job => C:\Program Files\Torntv V9.0\Torntv V9.0-nova.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe C:\Program Files\globalUpdate C:\Program Files\mozilla firefox C:\Users\admin\AppData\Local\globalUpdate C:\Users\admin\AppData\Local\Lollipop C:\Users\admin\AppData\Local\Opera Software C:\Users\admin\AppData\Roaming\*.exe C:\Users\admin\AppData\Roaming\{a45624fe-880e-0d76-5251-a8d8a45624fe} C:\Users\admin\AppData\Roaming\Opera Software C:\Users\admin\AppData\Roaming\systweak C:\Users\admin\AppData\Roaming\Theta C:\Windows\system32\Drivers\{9edd0ea8-2819-47c2-8320-b007d5996f8a}Gw.sys Reboot: ***************** [1840] C:\Program Files\webget\updatewebget.exe => Process closed successfully. [2060] C:\Program Files\webget\bin\utilwebget.exe => Process closed successfully. [2852] C:\Users\admin\AppData\Roaming\Theta\wwing.exe => Process closed successfully. C:\Program Files\webget\bin\webget.PurBrowse.exe => No running process found C:\Program Files\webget\bin\webget.BrowserAdapter.exe => No running process found C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\{a45624fe-880e-0d76-5251-a8d8a45624fe}.exe not found. HKU\S-1-5-21-2372006593-2295337032-2824968523-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Keyboard Inf. => Value not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511131190} => Key not found. HKCR\CLSID\{11111111-1111-1111-1111-110511131190} => Key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} => Key not found. HKCR\CLSID\{dc264a72-fa75-4948-b881-ea8eff8e5dd2} => Key not found. HKLM\Software\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10 => Key deleted successfully. C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll => Moved successfully. HKLM\Software\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4 => Key deleted successfully. C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll not found. globalUpdate => Service deleted successfully. globalUpdatem => Service deleted successfully. Update webget => Service not found. Util webget => Service not found. {9edd0ea8-2819-47c2-8320-b007d5996f8a}Gw => Service stopped successfully. {9edd0ea8-2819-47c2-8320-b007d5996f8a}Gw => Service deleted successfully. AsrCDDrv => Service deleted successfully. EagleXNt => Service deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{126B7BE4-C981-45F8-B153-AB426C4353AD} => Key not found. C:\Windows\System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-6 not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c0976ad7-b268-4bd9-b131-7cf2ab414e25-6 => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1D34BAE4-D16D-44B1-BB8E-F9E0C83325FB} => Key not found. C:\Windows\System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-4 not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c0976ad7-b268-4bd9-b131-7cf2ab414e25-4 => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{203A668C-1A89-4B54-8C07-D31A509A9E49} => Key not found. C:\Windows\System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-1 not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c0976ad7-b268-4bd9-b131-7cf2ab414e25-1 => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{26118E73-281D-4950-BAE5-0B5D765C900F} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{26118E73-281D-4950-BAE5-0B5D765C900F} => Key deleted successfully. C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5AC9FA7D-6C58-47FF-B63E-F1E6306EF284} => Key not found. C:\Windows\System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-7 not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c0976ad7-b268-4bd9-b131-7cf2ab414e25-7 => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89625DB9-4CFB-4B5F-ADA1-9C8D7A0FBDB5} => Key not found. C:\Windows\System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-5 not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c0976ad7-b268-4bd9-b131-7cf2ab414e25-5 => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8B1DE93F-28F0-4E8D-86CA-937ECAB57FD0} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B1DE93F-28F0-4E8D-86CA-937ECAB57FD0} => Key deleted successfully. C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4851116-5196-4EE4-BFDB-2062FAECCC0E} => Key not found. C:\Windows\System32\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-2 not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c0976ad7-b268-4bd9-b131-7cf2ab414e25-2 => Key not found. C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-1.job not found. C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-2.job not found. C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-4.job not found. C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-5.job not found. C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-6.job not found. C:\Windows\Tasks\c0976ad7-b268-4bd9-b131-7cf2ab414e25-7.job not found. C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => Moved successfully. C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => Moved successfully. C:\Program Files\globalUpdate => Moved successfully. C:\Program Files\mozilla firefox => Moved successfully. C:\Users\admin\AppData\Local\globalUpdate => Moved successfully. C:\Users\admin\AppData\Local\Lollipop => Moved successfully. C:\Users\admin\AppData\Local\Opera Software => Moved successfully. "C:\Users\admin\AppData\Roaming\*.exe" => File/Directory not found. C:\Users\admin\AppData\Roaming\{a45624fe-880e-0d76-5251-a8d8a45624fe} => Moved successfully. C:\Users\admin\AppData\Roaming\Opera Software => Moved successfully. C:\Users\admin\AppData\Roaming\systweak => Moved successfully. C:\Users\admin\AppData\Roaming\Theta => Moved successfully. C:\Windows\system32\Drivers\{9edd0ea8-2819-47c2-8320-b007d5996f8a}Gw.sys => Moved successfully. The system needed a reboot. ==== End of Fixlog ====