Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:02-06-2014 Ran by Piotr at 2014-06-03 20:38:36 Run:1 Running from C:\Users\Piotr\Desktop\czyszczenie Boot Mode: Normal ============================================== Content of fixlist: ***************** Startup: C:\Users\Piotr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\msconfig.lnk S2 HDD & SSD access service; "C:\Program Files\Common Files\BinarySense\disksvc.exe" [X] S3 catchme; \??\C:\Users\Piotr\AppData\Local\Temp\catchme.sys [X] U1 eabfiltr; Task: {190ACF02-F7C5-4BBD-AFAF-4022B08672A2} - System32\Tasks\{EE0B7021-4879-44B9-893D-0529606BECAB} => Firefox.exe http://ui.skype.com/ui/0/6.14.0.104/pl/abandoninstall?page=tsProgressBar Task: {268D4667-2A41-4D1C-ABC7-00E52DFCB705} - System32\Tasks\{E122CEF3-ED07-4088-B859-A7BD56C64239} => Firefox.exe http://ui.skype.com/ui/0/6.14.0.104/pl/abandoninstall?page=tsProgressBar Task: {49ADAC66-73AF-4EDC-AFEB-052A00F6E545} - System32\Tasks\{6F637DD1-00A3-46F8-81D7-49A2630F8DA4} => Firefox.exe http://ui.skype.com/ui/0/6.14.0.104/pl/abandoninstall?page=tsProgressBar Task: {7D7E2381-FD4E-4C97-BA91-15842426F775} - System32\Tasks\{4E6FBD59-4BB2-4349-9172-FA0046288019} => Firefox.exe http://ui.skype.com/ui/0/5.1.0.112.259/pl/go/help.faq.installer?source=lightinstaller&LastError=1618 ProxyServer: 178.18.31.116:8089 SearchScopes: HKLM - DefaultScope value is missing. FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF HKLM\...\Firefox\Extensions: [otis@digitalpersona.com] - C:\Program Files\DigitalPersona\Bin\FirefoxExt\ FF HKCU\...\Firefox\Extensions: [otis@digitalpersona.com] - C:\Program Files\DigitalPersona\Bin\firefoxext C:\Program Files\Mozilla Firefox\extensions C:\Program Files\mozilla firefox\plugins C:\ProgramData\*.exe C:\Users\Piotr\AppData\Roaming\desktop.ini C:\Users\Piotr\AppData\Roaming\ESET C:\Windows\grep.exe C:\Windows\MBR.exe C:\Windows\sed.exe C:\Windows\PEV.exe C:\Windows\zip.exe C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension DeleteKey: HKLM\SYSTEM\CurrentControlSet\Services\sptd Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f Reboot: ***************** C:\Users\Piotr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\msconfig.lnk => Moved successfully. HDD & SSD access service => Service deleted successfully. catchme => Service deleted successfully. eabfiltr => Service deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{190ACF02-F7C5-4BBD-AFAF-4022B08672A2} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{190ACF02-F7C5-4BBD-AFAF-4022B08672A2} => Key deleted successfully. C:\Windows\System32\Tasks\{EE0B7021-4879-44B9-893D-0529606BECAB} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{EE0B7021-4879-44B9-893D-0529606BECAB} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{268D4667-2A41-4D1C-ABC7-00E52DFCB705} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{268D4667-2A41-4D1C-ABC7-00E52DFCB705} => Key deleted successfully. C:\Windows\System32\Tasks\{E122CEF3-ED07-4088-B859-A7BD56C64239} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E122CEF3-ED07-4088-B859-A7BD56C64239} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{49ADAC66-73AF-4EDC-AFEB-052A00F6E545} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{49ADAC66-73AF-4EDC-AFEB-052A00F6E545} => Key deleted successfully. C:\Windows\System32\Tasks\{6F637DD1-00A3-46F8-81D7-49A2630F8DA4} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6F637DD1-00A3-46F8-81D7-49A2630F8DA4} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7D7E2381-FD4E-4C97-BA91-15842426F775} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7D7E2381-FD4E-4C97-BA91-15842426F775} => Key deleted successfully. C:\Windows\System32\Tasks\{4E6FBD59-4BB2-4349-9172-FA0046288019} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4E6FBD59-4BB2-4349-9172-FA0046288019} => Key deleted successfully. HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => Value deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKLM\Software\Mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b} => Value deleted successfully. HKLM\Software\Mozilla\Firefox\Extensions\\otis@digitalpersona.com => Value deleted successfully. HKCU\Software\Mozilla\Firefox\Extensions\\otis@digitalpersona.com => Value deleted successfully. C:\Program Files\Mozilla Firefox\extensions => Moved successfully. C:\Program Files\mozilla firefox\plugins => Moved successfully. C:\ProgramData\*.exe => Moved successfully. C:\Users\Piotr\AppData\Roaming\desktop.ini => Moved successfully. C:\Users\Piotr\AppData\Roaming\ESET => Moved successfully. C:\Windows\grep.exe => Moved successfully. C:\Windows\MBR.exe => Moved successfully. C:\Windows\sed.exe => Moved successfully. C:\Windows\PEV.exe => Moved successfully. C:\Windows\zip.exe => Moved successfully. C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension => Moved successfully. HKLM\SYSTEM\CurrentControlSet\Services\sptd => Key Deleted successfully. ========= reg delete "HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= The system needed a reboot. ==== End of Fixlog ====