Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 16-08-2014 02 Ran by Mateusz at 2014-08-16 13:28:54 Run:2 Running from C:\Users\Mateusz\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** Reg: reg add HKLM\SYSTEM\CurrentControlSet\Services\Schedule /v Start /t REG_DWORD /d 0x2 /f S4 AVKService; "C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKService.exe" [X] S4 AVKWCtl; "C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKWCtlX64.exe" [X] S4 GDFwSvc; "C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFwSvcx64.exe" [X] S2 Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [X] S2 spdfrmon; C:\Program Files (x86)\SpeedItup Free\spdfrmon.exe [X] Reg: reg query HKLM\SYSTEM\CurrentControlSet\Services\Schedule Reboot: ***************** ========= reg add HKLM\SYSTEM\CurrentControlSet\Services\Schedule /v Start /t REG_DWORD /d 0x2 /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= AVKService => Service deleted successfully. AVKWCtl => Service deleted successfully. GDFwSvc => Service deleted successfully. Nero BackItUp Scheduler 4.0 => Service deleted successfully. spdfrmon => Service deleted successfully. ========= reg query HKLM\SYSTEM\CurrentControlSet\Services\Schedule ========= HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule AtTaskMaxHours REG_DWORD 0x48 DisplayName REG_SZ @%SystemRoot%\system32\schedsvc.dll,-100 Group REG_SZ SchedulerGroup ImagePath REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs Description REG_SZ @%SystemRoot%\system32\schedsvc.dll,-101 ObjectName REG_SZ LocalSystem ErrorControl REG_DWORD 0x1 Start REG_DWORD 0x2 Type REG_DWORD 0x20 DependOnService REG_MULTI_SZ RPCSS\0EventLog ServiceSidType REG_DWORD 0x1 RequiredPrivileges REG_MULTI_SZ SeIncreaseQuotaPrivilege\0SeChangeNotifyPrivilege\0SeAuditPrivilege\0SeImpersonatePrivilege\0SeAssignPrimaryTokenPrivilege\0SeTcbPrivilege\0SeRestorePrivilege FailureActions REG_BINARY 80510100000000000000000003000000140000000100000060EA00000100000060EA00000000000000000000 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\Parameters HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\Security ========= End of Reg: ========= The system needed a reboot. ==== End of Fixlog ====