Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 21-07-2014 Ran by SIWY at 2014-07-22 18:25:03 Run:1 Running from C:\Users\SIWY\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** Task: {DB45BCA3-413C-408E-B6B0-583F01871E90} - \Program aktualizacji online firmy Adobe. No Task File <==== ATTENTION HKU\S-1-5-21-982367207-1440490565-2568245623-1001\...\Run: [help] => C:\Users\SIWY\AppData\Roaming\InstallDir\help.exe [81920 2010-11-21] ( ) HKU\S-1-5-21-982367207-1440490565-2568245623-1001\...\Run: [wfirewall] => C:\Users\SIWY\AppData\Roaming\wfirewall\alg.exe [81920 2014-06-02] ( ) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\system.pif ( ) Startup: C:\Users\SIWY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\system.pif ( ) SearchScopes: HKLM - {0CEEE379-BFE6-4B45-8C64-3632C458CFEB} URL = http://www.amazon.co...s={searchTerms} SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = http://eu.ask.com/we...&l=dis&o=HPNTDF SearchScopes: HKLM-x32 - DefaultScope value is missing. S3 btmaux; system32\DRIVERS\btmaux.sys [X] Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File C:\ProgramData\AVG C:\Users\SIWY\AppData\Local\AVG C:\Users\SIWY\AppData\Local\Avg2014 C:\Users\SIWY\AppData\Roaming\InstallDir C:\Users\SIWY\AppData\Roaming\OpenCandy C:\Users\SIWY\AppData\Roaming\wfirewall reboot: ***************** 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DB45BCA3-413C-408E-B6B0-583F01871E90}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DB45BCA3-413C-408E-B6B0-583F01871E90}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Program aktualizacji online firmy Adobe.' => Key deleted successfully. HKU\S-1-5-21-982367207-1440490565-2568245623-1001\Software\Microsoft\Windows\CurrentVersion\Run\\help => value deleted successfully. HKU\S-1-5-21-982367207-1440490565-2568245623-1001\Software\Microsoft\Windows\CurrentVersion\Run\\wfirewall => value deleted successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\system.pif => Moved successfully. C:\Users\SIWY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\system.pif => Moved successfully. 'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0CEEE379-BFE6-4B45-8C64-3632C458CFEB}' => Key deleted successfully. 'HKCR\CLSID\{0CEEE379-BFE6-4B45-8C64-3632C458CFEB}'=> Key not found. 'HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827}' => Key deleted successfully. 'HKCR\CLSID\{2fa28606-de77-4029-af96-b231e3b8f827}'=> Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. btmaux => Service deleted successfully. 'HKCR\PROTOCOLS\Filter\text/xml' => Key deleted successfully. 'HKCR\CLSID\{807553E5-5146-11D5-A672-00B0D022E945}'=> Key not found. C:\ProgramData\AVG => Moved successfully. C:\Users\SIWY\AppData\Local\AVG => Moved successfully. C:\Users\SIWY\AppData\Local\Avg2014 => Moved successfully. C:\Users\SIWY\AppData\Roaming\InstallDir => Moved successfully. C:\Users\SIWY\AppData\Roaming\OpenCandy => Moved successfully. C:\Users\SIWY\AppData\Roaming\wfirewall => Moved successfully. The system needed a reboot. ==== End of Fixlog ====