Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 19-01-2015 Ran by Bartek at 2015-01-22 18:09:34 Run:1 Running from E:\ Loaded Profiles: Bartek (Available profiles: Bartek) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: CreateRestorePoint: Startup: C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Windows Host Service.vbs () Task: {BF2E35C4-DFB1-4EEA-8A3D-8F2072F72F82} - System32\Tasks\Steam_x64-S-2-106-91 => C:\Users\Bartek\AppData\Roaming\Skype\CODEXi\Steam Client [2014-12-30] () <==== ATTENTION Task: {CDFB1F42-C6C3-4ACE-82A4-2662EAAF0AD2} - System32\Tasks\SYSTEM => C:\ProgramData\wmc.exe <==== ATTENTION Task: {2D71FDB5-5305-4AEA-A51D-6424A630AE10} - System32\Tasks\{6803F70A-1CFF-484E-9816-D8D645C4644C} => Chrome.exe http://www.skype.com/go/downloading?source=lightinstaller&ver=6.20.0.104&LastError=12002 Task: {8696033C-5BC5-4FBF-8F9B-B79CC15E861E} - System32\Tasks\{12FA2988-EE48-486C-98C6-F31122481E69} => Chrome.exe http://www.skype.com/go/downloading?source=lightinstaller&ver=6.20.0.104&LastError=12002 FF Plugin: @esn/npbattlelog,version=2.5.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.0\npbattlelogx64.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.5.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.0\npbattlelog.dll No File R4 IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [X] S3 __FOX__FOXONE_DRIVER__; \??\C:\Users\Bartek\AppData\Local\Temp\FoxDriver.sys [X] C:\ProgramData\.windows.sys C:\Users\Bartek\AppData\Local\{*} C:\Users\Bartek\AppData\Roaming\Skype\CODEXi C:\Windows\system32\Drivers\113576BB.sys Hosts: Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f EmptyTemp: ***************** Processes closed successfully. Error: (0) Failed to create a restore point. C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Windows Host Service.vbs => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BF2E35C4-DFB1-4EEA-8A3D-8F2072F72F82}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BF2E35C4-DFB1-4EEA-8A3D-8F2072F72F82}" => Key deleted successfully. C:\Windows\System32\Tasks\Steam_x64-S-2-106-91 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Steam_x64-S-2-106-91" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CDFB1F42-C6C3-4ACE-82A4-2662EAAF0AD2}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CDFB1F42-C6C3-4ACE-82A4-2662EAAF0AD2}" => Key deleted successfully. C:\Windows\System32\Tasks\SYSTEM => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SYSTEM" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2D71FDB5-5305-4AEA-A51D-6424A630AE10}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2D71FDB5-5305-4AEA-A51D-6424A630AE10}" => Key deleted successfully. C:\Windows\System32\Tasks\{6803F70A-1CFF-484E-9816-D8D645C4644C} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6803F70A-1CFF-484E-9816-D8D645C4644C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8696033C-5BC5-4FBF-8F9B-B79CC15E861E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8696033C-5BC5-4FBF-8F9B-B79CC15E861E}" => Key deleted successfully. C:\Windows\System32\Tasks\{12FA2988-EE48-486C-98C6-F31122481E69} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{12FA2988-EE48-486C-98C6-F31122481E69}" => Key deleted successfully. "HKLM\Software\MozillaPlugins\@esn/npbattlelog,version=2.5.0" => Key deleted successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.4.0" => Key deleted successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.5.0" => Key deleted successfully. IOMap => Service not found. __FOX__FOXONE_DRIVER__ => Service deleted successfully. C:\ProgramData\.windows.sys => Moved successfully. C:\Users\Bartek\AppData\Local\{*} => Moved successfully. C:\Users\Bartek\AppData\Roaming\Skype\CODEXi => Moved successfully. C:\Windows\system32\Drivers\113576BB.sys => Moved successfully. Hosts was reset successfully. ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= EmptyTemp: => Removed 542.5 MB temporary data. The system needed a reboot. ==== End of Fixlog 18:19:49 ====