Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:22-06-2014 Ran by Andrzej at 2014-06-23 19:22:54 Run:1 Running from C:\Users\Andrzej\Desktop\diagnostyka Boot Mode: Normal ============================================== Content of fixlist: ***************** C:\Program Files\Greener Web\updateGreenerWeb.exe C:\Program Files\Greener Web\bin\utilGreenerWeb.exe C:\Program Files\Greener Web HKU\S-1-5-21-2249233204-1993995762-2997965696-1000\...\Run: [SpeedUpMyComputer] => C:\Program Files\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe /ot /as HKU\S-1-5-21-2249233204-1993995762-2997965696-1000\...\Run: [FixMyRegistry] => C:\Program Files\SmartTweak\FixMyRegistry\FixMyRegistry.exe /ot /as C:\Program Files\SmartTweak\SpeedUpMyComputer C:\Program Files\SmartTweak\FixMyRegistry C:\Program Files\SmartTweak AppInit_DLLs: C:\PROGRA~1\SupTab\SEARCH~1.DLL => C:\PROGRA~1\SupTab\SEARCH~1.DLL File Not Found Startup: C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\lollipop.lnk KLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-pag...q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-pag...q={searchTerms} URLSearchHook: HKLM - mySyncCell Toolbar - {d46d0a6c-fab1-45a4-997e-030450e41de5} - C:\Program Files\mySyncCell\prxtbmySy.dll (Conduit Ltd.) URLSearchHook: HKCU - mySyncCell Toolbar - {d46d0a6c-fab1-45a4-997e-030450e41de5} - C:\Program Files\mySyncCell\prxtbmySy.dll (Conduit Ltd.) BHO: Greener Web - {1973d53b-7311-45d7-8270-f44571c041a0} - C:\Program Files\Greener Web\GreenerWebbho.dll (Greener Web) BHO: mySyncCell Toolbar - {d46d0a6c-fab1-45a4-997e-030450e41de5} - C:\Program Files\mySyncCell\prxtbmySy.dll (Conduit Ltd.) Toolbar: HKLM - mySyncCell Toolbar - {d46d0a6c-fab1-45a4-997e-030450e41de5} - C:\Program Files\mySyncCell\prxtbmySy.dll (Conduit Ltd.) FF Extension: Greener Web - C:\Users\Andrzej\AppData\Roaming\Mozilla\Firefox\Profiles\3yf99llf.default-1391865424975\Extensions\{a3f28269-ad17-41a8-b032-3e0313ef8979}.xpi [2014-06-20] CHR StartupUrls: "hxxp://www.sweet-page.com/?type=hp&ts=1403261780&from=cor&uid=WDCXWD5000LPVT-24G33T1_WD-WXD1E63KCKY9KCKY9" R2 Update Greener Web; C:\Program Files\Greener Web\updateGreenerWeb.exe [318240 2014-06-20] () R2 Util Greener Web; C:\Program Files\Greener Web\bin\utilGreenerWeb.exe [318240 2014-06-20] () R2 WindowsProtectManger; C:\ProgramData\WindowsProtectManger\wprotectmanager.exe [591776 2014-06-12] (Fuyu LIMITED) R1 {a3f28269-ad17-41a8-b032-3e0313ef8979}Gw; C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}Gw.sys [52928 2014-06-19] (StdLib) C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}Gw.sys C:\ProgramData\WindowsProtectManger C:\Program Files\SupTab C:\ProgramData\IePluginServices C:\Users\Andrzej\AppData\Local\Conduit C:\Program Files\Conduit C:\Users\Windows Portable Devices\sqmapi.dll Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f C:\Users\Andrzej\AppData\Local\Temp\5flj9cif.dll C:\Users\Andrzej\AppData\Local\Temp\BackupSetup.exe C:\Users\Andrzej\AppData\Local\Temp\bitool.dll C:\Users\Andrzej\AppData\Local\Temp\FixMyRegistry.exe C:\Users\Andrzej\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\Andrzej\AppData\Local\Temp\ggdrive-menu.exe C:\Users\Andrzej\AppData\Local\Temp\ggdrive-overlay.exe C:\Users\Andrzej\AppData\Local\Temp\installstats.exe C:\Users\Andrzej\AppData\Local\Temp\MyPCBackup.exe C:\Users\Andrzej\AppData\Local\Temp\SpeedUpMyComputer.exe Reboot: ***************** "C:\Program Files\Greener Web\updateGreenerWeb.exe" => File/Directory not found. "C:\Program Files\Greener Web\bin\utilGreenerWeb.exe" => File/Directory not found. "C:\Program Files\Greener Web" => File/Directory not found. HKU\S-1-5-21-2249233204-1993995762-2997965696-1000\Software\Microsoft\Windows\CurrentVersion\Run\\SpeedUpMyComputer => Value not found. HKU\S-1-5-21-2249233204-1993995762-2997965696-1000\Software\Microsoft\Windows\CurrentVersion\Run\\FixMyRegistry => Value not found. "C:\Program Files\SmartTweak\SpeedUpMyComputer" => File/Directory not found. "C:\Program Files\SmartTweak\FixMyRegistry" => File/Directory not found. "C:\Program Files\SmartTweak" => File/Directory not found. "C:\PROGRA~1\SupTab\SEARCH~1.DLL" => Value Data not found. C:\Users\Andrzej\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\lollipop.lnk not found. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\Microsoft\Internet Explorer\URLSearchHooks\\{d46d0a6c-fab1-45a4-997e-030450e41de5} => Value not found. HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{d46d0a6c-fab1-45a4-997e-030450e41de5} => Value not found. 'HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1973d53b-7311-45d7-8270-f44571c041a0}'=> Key not found. 'HKCR\CLSID\{1973d53b-7311-45d7-8270-f44571c041a0}'=> Key not found. 'HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d46d0a6c-fab1-45a4-997e-030450e41de5}'=> Key not found. 'HKCR\CLSID\{d46d0a6c-fab1-45a4-997e-030450e41de5}'=> Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{d46d0a6c-fab1-45a4-997e-030450e41de5} => Value not found. 'HKCR\CLSID\{d46d0a6c-fab1-45a4-997e-030450e41de5}'=> Key not found. C:\Users\Andrzej\AppData\Roaming\Mozilla\Firefox\Profiles\3yf99llf.default-1391865424975\Extensions\{a3f28269-ad17-41a8-b032-3e0313ef8979}.xpi => not found. CHR StartupUrls: "hxxp://www.sweet-page.com/?type=hp&ts=1403261780&from=cor&uid=WDCXWD5000LPVT-24G33T1_WD-WXD1E63KCKY9KCKY9" ==> The Chrome "Settings" can be used to fix the entry. Update Greener Web => Service not found. Util Greener Web => Service not found. WindowsProtectManger => Service not found. {a3f28269-ad17-41a8-b032-3e0313ef8979}Gw => Service stopped successfully. {a3f28269-ad17-41a8-b032-3e0313ef8979}Gw => Service deleted successfully. C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}Gw.sys => Moved successfully. "C:\ProgramData\WindowsProtectManger" => File/Directory not found. "C:\Program Files\SupTab" => File/Directory not found. "C:\ProgramData\IePluginServices" => File/Directory not found. "C:\Users\Andrzej\AppData\Local\Conduit" => File/Directory not found. "C:\Program Files\Conduit" => File/Directory not found. C:\Users\Windows Portable Devices\sqmapi.dll => Moved successfully. ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= C:\Users\Andrzej\AppData\Local\Temp\5flj9cif.dll => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\BackupSetup.exe => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\bitool.dll => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\FixMyRegistry.exe => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\fp_pl_pfs_installer.exe => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\ggdrive-menu.exe => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\ggdrive-overlay.exe => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\installstats.exe => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\MyPCBackup.exe => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\SpeedUpMyComputer.exe => Moved successfully. The system needed a reboot. ==== End of Fixlog ====