Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 10-09-2014 Ran by HP at 2014-09-12 03:29:24 Run:1 Running from C:\Users\HP\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** [noparse]CloseProcesses: HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKCU - {640A5880-642C-41FC-8281-073BE9650C9D} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3289075&CUI=UN20725252785441155&UM=1 SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 hwusbfake; system32\DRIVERS\ewusbfake.sys [X] S3 RimUsb; System32\Drivers\RimUsb_AMD64.sys [X] Task: {4D3F98A2-EC2C-4CB7-A030-7C02A70A05BD} - \Program aktualizacji online firmy Adobe. No Task File <==== ATTENTION C:\Users\HP\AppData\Local\Google\Chrome CMD: reg import C:\Users\HP\Desktop\FIX.REG CMD: sc config "PLAY ONLINE. RunOuc" start= demand CMD: for /d %f in (C:\Users\HP\AppData\Local\{*}) do rd /s /q "%f" EmptyTemp:[/noparse] ***************** [noparse]CloseProcesses: => Error: No automatic fix found for this entry. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{640A5880-642C-41FC-8281-073BE9650C9D}" => Key deleted successfully. "HKCR\CLSID\{640A5880-642C-41FC-8281-073BE9650C9D}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" => Key deleted successfully. "HKCR\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" => Key not found. catchme => Service deleted successfully. hwusbfake => Service deleted successfully. RimUsb => Service deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4D3F98A2-EC2C-4CB7-A030-7C02A70A05BD}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4D3F98A2-EC2C-4CB7-A030-7C02A70A05BD}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Program aktualizacji online firmy Adobe." => Key deleted successfully. C:\Users\HP\AppData\Local\Google\Chrome => Moved successfully. ========= reg import C:\Users\HP\Desktop\FIX.REG ========= BD: Okrelony plik nie jest plikiem rejestru. Mona importowa tylko pliki rejestru. ========= End of CMD: ========= ========= sc config "PLAY ONLINE. RunOuc" start= demand ========= [SC] ChangeServiceConfig SUKCES ========= End of CMD: ========= ========= for /d %f in (C:\Users\HP\AppData\Local\{*}) do rd /s /q "%f" ========= ========= End of CMD: ========= EmptyTemp: => Removed 2.8 GB temporary data. The system needed a reboot. ==== End of Fixlog ====