Fix result of Farbar Recovery Scan Tool (x64) Version:24-06-2015 Ran by Daria at 2015-06-28 22:37:49 Run:1 Running from C:\Users\Daria\Desktop Loaded Profiles: Daria (Available Profiles: Daria) Boot Mode: Safe Mode (minimal) ============================================== fixlist content: ***************** R2 VSSS; C:\Users\Daria\AppData\Roaming\Microsoft\SystemCertificates\VSSVC.exe [105859264 2015-06-25] (Microsoft Corporation) [File not signed] C:\Users\Daria\AppData\Roaming\Microsoft\SystemCertificates\VSSVC.exe HKU\S-1-5-21-1153746196-1546038390-1762079413-1000\...\CurrentVersion\Windows: [Load] C:\ProgramData\msficnbd.exe <===== ATTENTION HKU\S-1-5-21-1153746196-1546038390-1762079413-1000\...\Policies\Explorer: [] HKLM\...\Policies\Explorer: [TaskbarNoNotification] 1 HKLM\...\Policies\Explorer: [HideSCAHealth] 1 Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION Toolbar: HKLM-x32 - Incredibar Toolbar - {F9639E4A-801B-4843-AEE3-03D9DA199E77} - No File Toolbar: HKU\S-1-5-21-1153746196-1546038390-1762079413-1000 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Toolbar: HKU\S-1-5-21-1153746196-1546038390-1762079413-1000 -> No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.dosearche...0&ts=1382630081 C:\Program Files\2H8N7MDT.exe C:\ProgramData\msficnbd.exe EmptyTemp: ***************** VSSS => Service removed successfully C:\Users\Daria\AppData\Roaming\Microsoft\SystemCertificates\VSSVC.exe => moved successfully. HKU\S-1-5-21-1153746196-1546038390-1762079413-1000\Software\Microsoft\Windows NT\CurrentVersion\Windows\\Load => value restored successfully HKU\S-1-5-21-1153746196-1546038390-1762079413-1000\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => value removed successfully HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\TaskbarNoNotification => value removed successfully HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\HideSCAHealth => value removed successfully ========= reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= "HKLM\SOFTWARE\Policies\Google" => key removed successfully HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{F9639E4A-801B-4843-AEE3-03D9DA199E77} => value removed successfully "HKCR\Wow6432Node\CLSID\{F9639E4A-801B-4843-AEE3-03D9DA199E77}" => key removed successfully HKU\S-1-5-21-1153746196-1546038390-1762079413-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => value removed successfully HKCR\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => key not found. HKU\S-1-5-21-1153746196-1546038390-1762079413-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} => value removed successfully HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => key not found. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => value restored successfully C:\Program Files\2H8N7MDT.exe => moved successfully. C:\ProgramData\msficnbd.exe => moved successfully. EmptyTemp: => 3.5 GB temporary data Removed. The system needed a reboot.. ==== End of Fixlog 22:41:28 ====