Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 19-05-2015 Ran by Lewy at 2015-05-20 08:55:43 Run:2 Running from D:\DOWNLOADS Loaded Profiles: Lewy & UpdatusUser (Available profiles: Lewy & UpdatusUser) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: HKLM\...\Run: [home] => wscript.exe //B "C:\Users\Lewy\AppData\Local\Temp\home.vbe" <===== ATTENTION HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\Run: [home] => wscript.exe //B "C:\Users\Lewy\AppData\Local\Temp\home.vbe" <===== ATTENTION HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\MountPoints2: {57ddae42-5441-11e3-ad0f-b888e3c62c89} - F:\this_war_of_mine_drmfree.exe HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\MountPoints2: {5bdd4433-9e2a-11e4-a46d-b888e3c62c89} - G:\AutoRun.exe HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\MountPoints2: {5bdd4440-9e2a-11e4-a46d-b888e3c62c89} - G:\AutoRun.exe HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\MountPoints2: {7e6bb080-8e63-11e3-bdb7-b888e3c62c89} - G:\LGAutoRun.exe HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\MountPoints2: {cc75f867-4fd1-11e4-be03-9c4e369e63fc} - G:\autorun.exe HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\MountPoints2: {cc75f889-4fd1-11e4-be03-9c4e369e63fc} - G:\autorun.exe HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\...\MountPoints2: {ed022f04-84e4-11e3-96ec-9c4e369e63fc} - G:\.\StartModem.exe Startup: C:\Users\Lewy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\home.vbe [2015-05-07] () GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION S3 itnzgnxi; No ImagePath S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 MSICDSetup; \??\E:\CDriver64.sys [X] S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X] S1 ttnfd; system32\drivers\ttnfd.sys [X] G:\home.vbe G:\*.lnk C:\Windows\system32\Drivers\etc\hosts.ics C:\ProgramData\5185ab0a00002e25 C:\ProgramData\846063261 Task: {EB02381F-D652-4B1C-894A-712498C62C51} - \Microsoft\Windows\MUI\LPRemove No Task File <==== ATTENTION EmptyTemp: ***************** Processes closed successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\home => Value not found. HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\Software\Microsoft\Windows\CurrentVersion\Run\\home => Value not found. HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{57ddae42-5441-11e3-ad0f-b888e3c62c89} => Key not found. HKCR\CLSID\{57ddae42-5441-11e3-ad0f-b888e3c62c89} => Key not found. HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5bdd4433-9e2a-11e4-a46d-b888e3c62c89} => Key not found. HKCR\CLSID\{5bdd4433-9e2a-11e4-a46d-b888e3c62c89} => Key not found. HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5bdd4440-9e2a-11e4-a46d-b888e3c62c89} => Key not found. HKCR\CLSID\{5bdd4440-9e2a-11e4-a46d-b888e3c62c89} => Key not found. HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7e6bb080-8e63-11e3-bdb7-b888e3c62c89} => Key not found. HKCR\CLSID\{7e6bb080-8e63-11e3-bdb7-b888e3c62c89} => Key not found. HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cc75f867-4fd1-11e4-be03-9c4e369e63fc} => Key not found. HKCR\CLSID\{cc75f867-4fd1-11e4-be03-9c4e369e63fc} => Key not found. HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{cc75f889-4fd1-11e4-be03-9c4e369e63fc} => Key not found. HKCR\CLSID\{cc75f889-4fd1-11e4-be03-9c4e369e63fc} => Key not found. HKU\S-1-5-21-1332373539-1881414760-2737133929-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ed022f04-84e4-11e3-96ec-9c4e369e63fc} => Key not found. HKCR\CLSID\{ed022f04-84e4-11e3-96ec-9c4e369e63fc} => Key not found. C:\Users\Lewy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\home.vbe not found. "C:\Windows\system32\GroupPolicy\Machine" => File/Directory not found. HKLM\SOFTWARE\Policies\Google => Key not found. itnzgnxi => Service not found. EagleX64 => Service not found. MSICDSetup => Service not found. NTIOLib_1_0_C => Service not found. ttnfd => Service not found. G:\home.vbe => Moved successfully. G:\*.lnk => Moved successfully. C:\Windows\system32\Drivers\etc\hosts.ics => Moved successfully. "C:\ProgramData\5185ab0a00002e25" => File/Directory not found. "C:\ProgramData\846063261" => File/Directory not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EB02381F-D652-4B1C-894A-712498C62C51} => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MUI\LPRemove => Key not found. EmptyTemp: => Removed 17.5 MB temporary data. The system needed a reboot. ==== End of Fixlog 08:55:46 ====