Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 29-02-2015 Ran by bart at 2015-03-01 12:19:21 Run:1 Running from C:\Users\bart\Downloads Loaded Profiles: bart (Available profiles: bart) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: CreateRestorePoint: HKU\S-1-5-21-2725652805-2884153030-3423392268-1000\...\Run: [nvxasync] => C:\Users\bart\AppData\Roaming\nvxasync\nvxasync.exe [142678016 2015-02-15] () HKU\S-1-5-21-2725652805-2884153030-3423392268-1000\...\Winlogon: [Shell] C:\ProgramData\nvxasync\cvxasync.exe [142678016 2015-02-15] () <==== ATTENTION HKU\S-1-5-21-2725652805-2884153030-3423392268-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.surfvox.com/ SearchScopes: HKU\S-1-5-21-2725652805-2884153030-3423392268-1000 -> DefaultScope {828B376B-F2F6-4778-928C-E29EC877535E} URL = http://www.google.com/cse?cx=partner-pub-0900663996874144:6813731868&ie=UTF-8&q={searchTerms}&sa=Search&ref=#gsc.tab=0&gsc.q={searchTerms}&gsc.page=1 SearchScopes: HKU\S-1-5-21-2725652805-2884153030-3423392268-1000 -> {828B376B-F2F6-4778-928C-E29EC877535E} URL = http://www.google.com/cse?cx=partner-pub-0900663996874144:6813731868&ie=UTF-8&q={searchTerms}&sa=Search&ref=#gsc.tab=0&gsc.q={searchTerms}&gsc.page=1 C:\ProgramData\nvxasync C:\Users\bart\AppData\Local\Preferences C:\Users\bart\AppData\Local\Secure Preferences C:\Users\bart\AppData\Roaming\chportu C:\Users\bart\AppData\Roaming\nvxasync EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. HKU\S-1-5-21-2725652805-2884153030-3423392268-1000\Software\Microsoft\Windows\CurrentVersion\Run\\nvxasync => value deleted successfully. HKU\S-1-5-21-2725652805-2884153030-3423392268-1000\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => value deleted successfully. HKU\S-1-5-21-2725652805-2884153030-3423392268-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKU\S-1-5-21-2725652805-2884153030-3423392268-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. "HKU\S-1-5-21-2725652805-2884153030-3423392268-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{828B376B-F2F6-4778-928C-E29EC877535E}" => Key deleted successfully. HKCR\CLSID\{828B376B-F2F6-4778-928C-E29EC877535E} => Key not found. C:\ProgramData\nvxasync => Moved successfully. C:\Users\bart\AppData\Local\Preferences => Moved successfully. C:\Users\bart\AppData\Local\Secure Preferences => Moved successfully. C:\Users\bart\AppData\Roaming\chportu => Moved successfully. C:\Users\bart\AppData\Roaming\nvxasync => Moved successfully. EmptyTemp: => Removed 334.2 MB temporary data. The system needed a reboot. ==== End of Fixlog 12:20:06 ====