Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 29-02-2015 Ran by dell at 2015-03-03 17:26:26 Run:5 Running from C:\Users\dell\Downloads Loaded Profiles: dell (Available profiles: dell) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: CreateRestorePoint: S3 cpuz136; \??\C:\Users\dell\AppData\Local\Temp\cpuz136\cpuz136_x64.sys [X] S3 GENERICDRV; \??\C:\Users\dell\Downloads\amifldrv64.sys [X] R1 iSafeKrnlMon; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [X] R3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X] HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-1367411196-3539214837-2270385853-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie HKU\S-1-5-21-1367411196-3539214837-2270385853-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie SearchScopes: HKU\S-1-5-21-1367411196-3539214837-2270385853-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear SearchScopes: HKU\S-1-5-21-1367411196-3539214837-2270385853-1001 -> {C6987843-B81D-4EFA-8B98-23D60807D099} URL = CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-02-09] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - http://clients2.google.com/service/update2/crx Task: {37987FDD-6E7A-4DD3-9AE0-7E926102E5F1} - System32\Tasks\{3369E3E3-1967-423F-87F5-9A4F8DCB8327} => pcalua.exe -a C:\Users\dell\AppData\Roaming\IDM\bin\chrome_uninstaller.exe C:\ProgramData\*.log C:\ProgramData\Malwarebytes C:\Users\dell\Downloads\yet_another_cleaner_sk_7196726.exe Reg: reg delete HKCU\Software\Mozilla /f Reg: reg delete HKLM\SOFTWARE\Mozilla /f Reg: reg delete HKLM\SOFTWARE\MozillaPlugins /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Mozilla /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\mozilla.org /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\MozillaPlugins /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. cpuz136 => Service not found. GENERICDRV => Service not found. iSafeKrnlMon => Service not found. MBAMSwissArmy => Service not found. HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => Key not found. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => Key not found. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => Key not found. HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => Key not found. HKU\S-1-5-21-1367411196-3539214837-2270385853-1001\Software\Microsoft\Internet Explorer\Main\\Search Bar => Value not found. HKU\S-1-5-21-1367411196-3539214837-2270385853-1001\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKU\S-1-5-21-1367411196-3539214837-2270385853-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => Key not found. HKCR\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => Key not found. HKU\S-1-5-21-1367411196-3539214837-2270385853-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C6987843-B81D-4EFA-8B98-23D60807D099} => Key not found. HKCR\CLSID\{C6987843-B81D-4EFA-8B98-23D60807D099} => Key not found. HKLM\SOFTWARE\Google\Chrome\Extensions\fheoggkfdfchfphceeifdbepaooicaho => Key not found. "C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx" => File/Directory not found. HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fheoggkfdfchfphceeifdbepaooicaho => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{37987FDD-6E7A-4DD3-9AE0-7E926102E5F1} => Key not found. C:\Windows\System32\Tasks\{3369E3E3-1967-423F-87F5-9A4F8DCB8327} not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{3369E3E3-1967-423F-87F5-9A4F8DCB8327} => Key not found. "C:\ProgramData\*.log" => File/Directory not found. "C:\ProgramData\Malwarebytes" => File/Directory not found. "C:\Users\dell\Downloads\yet_another_cleaner_sk_7196726.exe" => File/Directory not found. ========= reg delete HKCU\Software\Mozilla /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Mozilla /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\MozillaPlugins /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\Mozilla /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\mozilla.org /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\MozillaPlugins /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= EmptyTemp: => Removed 26.7 MB temporary data. The system needed a reboot. ==== End of Fixlog 17:27:09 ====