Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 08-10-2014 01 Ran by Patryk at 2014-10-10 07:55:24 Run:1 Running from D:\Logi\FRST Loaded Profile: Patryk (Available profiles: Patryk & Patryk1) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www2.delta-search.com/?babsrc=HP_ss&mntrId=2CB6001A9244CE02&affID=121565&tsp=5005 SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www2.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=2CB6001A9244CE02&affID=121565&tsp=5005 Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Task: {6C4FC328-6A83-4078-ACBC-C76B5D3C1744} - System32\Tasks\BitGuard => Sc.exe start BitGuard <==== ATTENTION S3 cpuz136; \??\C:\Users\Patryk\AppData\Local\Temp\cpuz136\cpuz136_x64.sys [X] S1 jwvplezk; \??\C:\Windows\system32\drivers\jwvplezk.sys [X] C:\Program Files (x86)\Mozilla Firefox C:\Program Files (x86)\Temp C:\Users\Patryk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard C:\Users\Patryk\AppData\Roaming\Babylon C:\Users\Patryk\AppData\Roaming\OpenCandy EmptyTemp: ***************** Processes closed successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\bProtector Start Page => value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\bProtectorDefaultScope => value deleted successfully. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}" => Key deleted successfully. "HKCR\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}" => Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value deleted successfully. "HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6C4FC328-6A83-4078-ACBC-C76B5D3C1744}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6C4FC328-6A83-4078-ACBC-C76B5D3C1744}" => Key deleted successfully. C:\Windows\System32\Tasks\BitGuard => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BitGuard" => Key deleted successfully. cpuz136 => Service deleted successfully. jwvplezk => Service deleted successfully. C:\Program Files (x86)\Mozilla Firefox => Moved successfully. C:\Program Files (x86)\Temp => Moved successfully. C:\Users\Patryk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard => Moved successfully. C:\Users\Patryk\AppData\Roaming\Babylon => Moved successfully. C:\Users\Patryk\AppData\Roaming\OpenCandy => Moved successfully. EmptyTemp: => Removed 798.2 MB temporary data. The system needed a reboot. ==== End of Fixlog ====