Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-02-2015 01 Ran by PAN at 2015-02-11 23:12:51 Run:2 Running from C:\Users\PAN\Desktop\logfix Loaded Profiles: PAN (Available profiles: PAN & UpdatusUser) Boot Mode: Safe Mode (minimal) ============================================== Content of fixlist: ***************** CloseProcesses: HKU\S-1-5-21-406146429-3267792464-4140239600-1001\...\Policies\system: [DisableChangePassword] 1 HKU\S-1-5-21-406146429-3267792464-4140239600-1001\...\Policies\system: [DisableLockWorkStation] 1 HKU\S-1-5-21-406146429-3267792464-4140239600-1001\...\Policies\system: [HideFastUserSwitching] 1 HKU\S-1-5-21-406146429-3267792464-4140239600-1001\...\Policies\Explorer: [NoChangeStartMenu] 1 HKU\S-1-5-21-406146429-3267792464-4140239600-1001\...\Policies\Explorer: [NoLogOff] 1 HKLM-x32\...\Run: [] => [X] Winlogon\Notify\VESWinlogon-x32: VESWinlogon.dll [X] HKU\S-1-5-21-406146429-3267792464-4140239600-1001\...\Run: [AdobeBridge] => [X] Toolbar: HKU\S-1-5-21-406146429-3267792464-4140239600-1001 -> No Name - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - No File Task: {1852DDFE-3CAD-45A2-89E6-DDA4A95983C6} - System32\Tasks\{611CA834-0816-4283-B7D3-45CF4CDE85C3} => pcalua.exe -a "C:\Program Files (x86)\Sony Corporation\VAIO Partners\uninstall.exe" -c -prepareUninstall Task: {57006081-37F3-4B18-93D2-44CC612CF461} - System32\Tasks\{F650D602-A6DA-4238-B046-720C47200602} => pcalua.exe -a C:\dane\pobrane\DCP-J715W-inst-A2-pl.EXE -d "C:\Program Files (x86)\Mozilla Firefox" S3 DFUBTUSB; System32\Drivers\frmupgr.sys [X] S3 pccsmcfd; system32\DRIVERS\pccsmcfdx64.sys [X] HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service" C:\Program Files (x86)\mozilla firefox\plugins C:\ProgramData\TEMP EmptyTemp: ***************** Processes closed successfully. HKU\S-1-5-21-406146429-3267792464-4140239600-1001\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableChangePassword => value deleted successfully. HKU\S-1-5-21-406146429-3267792464-4140239600-1001\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DisableLockWorkStation => value deleted successfully. HKU\S-1-5-21-406146429-3267792464-4140239600-1001\Software\Microsoft\Windows\CurrentVersion\Policies\system\\HideFastUserSwitching => value deleted successfully. HKU\S-1-5-21-406146429-3267792464-4140239600-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoChangeStartMenu => value deleted successfully. HKU\S-1-5-21-406146429-3267792464-4140239600-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoLogOff => value deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully. "HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\VESWinlogon" => Key deleted successfully. HKU\S-1-5-21-406146429-3267792464-4140239600-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value deleted successfully. HKU\S-1-5-21-406146429-3267792464-4140239600-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} => value deleted successfully. HKCR\CLSID\{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} => Key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1852DDFE-3CAD-45A2-89E6-DDA4A95983C6}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1852DDFE-3CAD-45A2-89E6-DDA4A95983C6}" => Key deleted successfully. C:\Windows\System32\Tasks\{611CA834-0816-4283-B7D3-45CF4CDE85C3} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{611CA834-0816-4283-B7D3-45CF4CDE85C3}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{57006081-37F3-4B18-93D2-44CC612CF461}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{57006081-37F3-4B18-93D2-44CC612CF461}" => Key deleted successfully. C:\Windows\System32\Tasks\{F650D602-A6DA-4238-B046-720C47200602} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F650D602-A6DA-4238-B046-720C47200602}" => Key deleted successfully. DFUBTUSB => Service deleted successfully. pccsmcfd => Service deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\MCODS" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\MCODS" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\MpfService" => Key deleted successfully. C:\Program Files (x86)\mozilla firefox\plugins => Moved successfully. C:\ProgramData\TEMP => Moved successfully. EmptyTemp: => Removed 4.5 GB temporary data. The system needed a reboot. ==== End of Fixlog 23:13:26 ====