Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 17-08-2014 01 Ran by Malagorzala at 2014-08-21 17:09:08 Run:2 Running from C:\Users\Malagorzala\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" HKU\S-1-5-21-3332081184-1491823389-1171079222-1001\...\Run: [AdobeBridge] => [X] ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => No File StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll No File FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2011-02-11] S2 HP Health Check Service; "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe" [X] S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X] AlternateDataStreams: C:\Program Files\Common Files\Microsoft Shared:5T9QSftildH8rEOZVIjkXZ59IG AlternateDataStreams: C:\ProgramData\Microsoft:41GKtg5GC6tfauKbe759vjs AlternateDataStreams: C:\ProgramData\Microsoft:PzzGmSquxSi2uzzhMEg6Yz7QdC AlternateDataStreams: C:\Users\Malagorzala\Ustawienia lokalne:qd7yvJKumDIQ1cBNbuWQZu5Rjf AlternateDataStreams: C:\Users\Malagorzala\AppData\Local:qd7yvJKumDIQ1cBNbuWQZu5Rjf AlternateDataStreams: C:\Users\Malagorzala\AppData\Local\Dane aplikacji:qd7yvJKumDIQ1cBNbuWQZu5Rjf AlternateDataStreams: C:\Users\Malagorzala\AppData\Local\Temp:90zT4pcNgCfxKdN67 Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\services" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /f EmptyTemp: ***************** HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe Reader Speed Launcher => value deleted successfully. HKU\S-1-5-21-3332081184-1491823389-1171079222-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value deleted successfully. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => Key deleted successfully. "HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}" => Key not found. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully. "HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully. "HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => Key not found. "HKLM\Software\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer" => Key deleted successfully. HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\wrc@avast.com => value deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki" => Key deleted successfully. "C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx" => File/Directory not found. HP Health Check Service => Service deleted successfully. MBAMSwissArmy => Service deleted successfully. C:\Program Files\Common Files\Microsoft Shared => ":5T9QSftildH8rEOZVIjkXZ59IG" ADS removed successfully. C:\ProgramData\Microsoft => ":41GKtg5GC6tfauKbe759vjs" ADS removed successfully. C:\ProgramData\Microsoft => ":PzzGmSquxSi2uzzhMEg6Yz7QdC" ADS removed successfully. "C:\Users\Malagorzala\Ustawienia lokalne" => ":qd7yvJKumDIQ1cBNbuWQZu5Rjf" ADS not found. C:\Users\Malagorzala\AppData\Local => ":qd7yvJKumDIQ1cBNbuWQZu5Rjf" ADS removed successfully. "C:\Users\Malagorzala\AppData\Local\Dane aplikacji" => ":qd7yvJKumDIQ1cBNbuWQZu5Rjf" ADS not found. C:\Users\Malagorzala\AppData\Local\Temp => ":90zT4pcNgCfxKdN67" ADS removed successfully. ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\services" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= EmptyTemp: => Removed 1.2 GB temporary data. The system needed a reboot. ==== End of Fixlog ====