Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 07-01-2015 Ran by Pawel at 2015-01-08 23:49:08 Run:1 Running from C:\Users\Pawel\Desktop Loaded Profile: Pawel (Available profiles: Pawel) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: CreateRestorePoint: HKU\S-1-5-21-368780648-3898295154-4159360230-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.trovi.com/?gd=&ctid=CT3322197&octid=EB_ORIGINAL_CTID&ISID=M3022C309-8EC2-408C-AD05-902979B5984F&SearchSource=55&CUI=&UM=8&UP=SP767172D7-D021-40DB-A31D-F48E49CB61ED&SSPV= SearchScopes: HKU\S-1-5-21-368780648-3898295154-4159360230-1000 -> DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&ctid=CT3322197&octid=EB_ORIGINAL_CTID&ISID=M3022C309-8EC2-408C-AD05-902979B5984F&SearchSource=58&CUI=&UM=8&UP=SP767172D7-D021-40DB-A31D-F48E49CB61ED&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-368780648-3898295154-4159360230-1000 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&ctid=CT3322197&octid=EB_ORIGINAL_CTID&ISID=M3022C309-8EC2-408C-AD05-902979B5984F&SearchSource=58&CUI=&UM=8&UP=SP767172D7-D021-40DB-A31D-F48E49CB61ED&q={searchTerms}&SSPV= HKLM-x32\...\RunOnce: [SpUninstallCleanUp] => REG delete HKEY_LOCAL_MACHINE\Software\SearchProtect /f C:\END C:\Program Files (x86)\GUTDFE3.tmp C:\Program Files (x86)\GUMDFE2.tmp C:\Users\Pawel\AppData\Roaming\dlg C:\Users\Pawel\Downloads\*(*)-dp*.exe EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. HKU\S-1-5-21-368780648-3898295154-4159360230-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKU\S-1-5-21-368780648-3898295154-4159360230-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. "HKU\S-1-5-21-368780648-3898295154-4159360230-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}" => Key deleted successfully. HKCR\CLSID\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} => Key not found. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\SpUninstallCleanUp => value deleted successfully. C:\END => Moved successfully. C:\Program Files (x86)\GUTDFE3.tmp => Moved successfully. C:\Program Files (x86)\GUMDFE2.tmp => Moved successfully. C:\Users\Pawel\AppData\Roaming\dlg => Moved successfully. C:\Users\Pawel\Downloads\*(*)-dp*.exe => Moved successfully. EmptyTemp: => Removed 601.9 MB temporary data. The system needed a reboot. ==== End of Fixlog 23:49:36 ====