Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:09-06-2014 03 Ran by Ania at 2014-06-10 23:34:01 Run:1 Running from C:\Users\Ania\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** FF user.js: detected! => C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\1zm4tslr.default\user.js FF SearchPlugin: C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\1zm4tslr.default\searchplugins\babylon.xml FF SearchPlugin: C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\1zm4tslr.default\searchplugins\delta.xml HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=6275BCAEC5CFA5E2&affID=119818&tt=250613_gr3&tsp=4925 SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File Task: {1BFDBA4B-9C89-46AE-A0B9-C03080F6DC00} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-3146292988-2315933456-2787739076-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe Task: {3EE6B9E1-E3BE-47E3-8054-96B332A7F3BA} - System32\Tasks\{0C3DC661-B0F9-4E25-B154-72026560AF0E} => C:\Program Files\SubEdit-Player\subedit.exe Task: {9BBFFC1A-1E5F-4144-85A0-9667064BCE21} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-3146292988-2315933456-2787739076-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe Task: {E350E857-8207-4EC2-B0BB-775C91682744} - System32\Tasks\PandaUSBVaccine => C:\Program Files\Panda USB Vaccine\RunInteractiveWin.exe AlternateDataStreams: C:\ProgramData\Temp:0472FC1A AlternateDataStreams: C:\ProgramData\Temp:AB689DEA S3 anvsnddrv; system32\drivers\anvsnddrv.sys [X] Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\Search" /f ***************** C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\1zm4tslr.default\user.js => Moved successfully. C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\1zm4tslr.default\searchplugins\babylon.xml => Moved successfully. C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\1zm4tslr.default\searchplugins\delta.xml => Moved successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Search Bar => value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. 'HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}' => Key deleted successfully. 'HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}'=> Key not found. 'HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}' => Key deleted successfully. 'HKCR\Wow6432Node\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}'=> Key not found. 'HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}' => Key deleted successfully. 'HKCR\Wow6432Node\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}'=> Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => value deleted successfully. 'HKCR\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068}'=> Key not found. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1BFDBA4B-9C89-46AE-A0B9-C03080F6DC00}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1BFDBA4B-9C89-46AE-A0B9-C03080F6DC00}' => Key deleted successfully. C:\Windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-3146292988-2315933456-2787739076-1001 => Moved successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealUpgradeLogonTaskS-1-5-21-3146292988-2315933456-2787739076-1001' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3EE6B9E1-E3BE-47E3-8054-96B332A7F3BA}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3EE6B9E1-E3BE-47E3-8054-96B332A7F3BA}' => Key deleted successfully. C:\Windows\System32\Tasks\{0C3DC661-B0F9-4E25-B154-72026560AF0E} => Moved successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{0C3DC661-B0F9-4E25-B154-72026560AF0E}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9BBFFC1A-1E5F-4144-85A0-9667064BCE21}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9BBFFC1A-1E5F-4144-85A0-9667064BCE21}' => Key deleted successfully. C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-3146292988-2315933456-2787739076-1001 => Moved successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealUpgradeScheduledTaskS-1-5-21-3146292988-2315933456-2787739076-1001' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E350E857-8207-4EC2-B0BB-775C91682744}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E350E857-8207-4EC2-B0BB-775C91682744}' => Key deleted successfully. C:\Windows\System32\Tasks\PandaUSBVaccine => Moved successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PandaUSBVaccine' => Key deleted successfully. C:\ProgramData\Temp => ":0472FC1A" ADS removed successfully. C:\ProgramData\Temp => ":AB689DEA" ADS removed successfully. anvsnddrv => Service deleted successfully. ========= reg delete "HKCU\Software\Microsoft\Internet Explorer\Search" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ==== End of Fixlog ====