Fix result of Farbar Recovery Scan Tool (x64) Version:20-08-2015 Ran by user (2015-08-20 16:43:45) Run:2 Running from C:\Users\user\Desktop\logi Loaded Profiles: user (Available Profiles: user) Boot Mode: Normal ============================================== fixlist content: ***************** Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SpyHunter4_is1" /f BootExecute: autocheck autochk * sh4native Sh4Removal URLSearchHook: HKLM-x32 -> Default = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = SearchScopes: HKU\S-1-5-21-1854063861-834038236-3450837710-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [No File] FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [No File] C:\Windows\Minidump\*.dmp C:\Users\user\Downloads\sh-remover.exe C:\spyhunter.fix C:\Windows\SysWOW64\sh4native.exe C:\Users\user\Desktop\SpyHunter4.lnk C:\Windows\Tasks\GKOu5KI8J0Fu65ilvAMpBHle.job C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyHunter4\Deinstalacja programu SpyHunter4.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyHunter4\SpyHunter4.lnk C:\Program Files\Enigma Software Group C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico\AutoPico.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico\KMSpico.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Gothic\Gothic.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Gothic\Uninstall Gothic.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Gothic\Documents\Manual.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Gothic\Documents\Readme.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live\Deinstalacja programu Gameforge Live.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live\Gameforge Live.lnk C:\Users\user\Desktop\KMSpico Final.lnk C:\Users\user\Desktop\SpyHunter4.lnk C:\Users\user\AppData\Local\Microsoft\Windows\GameExplorer\{3EF97878-407F-4E73-930E-414D716469F7}\PlayTasks\2\Manual.lnk C:\Users\user\AppData\Local\Microsoft\Windows\GameExplorer\{3EF97878-407F-4E73-930E-414D716469F7}\PlayTasks\1\Readme.lnk C:\Users\user\AppData\Local\Microsoft\Windows\GameExplorer\{3EF97878-407F-4E73-930E-414D716469F7}\PlayTasks\0\Play.lnk EmptyTemp: ***************** ========= reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SpyHunter4_is1" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= hklm\System\CurrentControlSet\Control\Session Manager\\BootExecute => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\ => value removed successfully "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146}" => key removed successfully HKCR\CLSID\{2f23ab71-4ac6-41f2-a955-ea576e553146} => key not found. HKU\S-1-5-21-1854063861-834038236-3450837710-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully "HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3" => key removed successfully "HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9" => key removed successfully C:\Windows\Minidump\*.dmp => moved successfully C:\Users\user\Downloads\sh-remover.exe => moved successfully C:\spyhunter.fix => moved successfully C:\Windows\SysWOW64\sh4native.exe => moved successfully "C:\Users\user\Desktop\SpyHunter4.lnk" => File/Folder not found. C:\Windows\Tasks\GKOu5KI8J0Fu65ilvAMpBHle.job => moved successfully "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyHunter4\Deinstalacja programu SpyHunter4.lnk" => File/Folder not found. "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyHunter4\SpyHunter4.lnk" => File/Folder not found. "C:\Program Files\Enigma Software Group" => File/Folder not found. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico\AutoPico.lnk => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico\KMSpico.lnk => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Gothic\Gothic.lnk => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Gothic\Uninstall Gothic.lnk => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Gothic\Documents\Manual.lnk => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com\Gothic\Documents\Readme.lnk => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live\Deinstalacja programu Gameforge Live.lnk => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live\Gameforge Live.lnk => moved successfully C:\Users\user\Desktop\KMSpico Final.lnk => moved successfully "C:\Users\user\Desktop\SpyHunter4.lnk" => File/Folder not found. C:\Users\user\AppData\Local\Microsoft\Windows\GameExplorer\{3EF97878-407F-4E73-930E-414D716469F7}\PlayTasks\2\Manual.lnk => moved successfully C:\Users\user\AppData\Local\Microsoft\Windows\GameExplorer\{3EF97878-407F-4E73-930E-414D716469F7}\PlayTasks\1\Readme.lnk => moved successfully C:\Users\user\AppData\Local\Microsoft\Windows\GameExplorer\{3EF97878-407F-4E73-930E-414D716469F7}\PlayTasks\0\Play.lnk => moved successfully EmptyTemp: => 389.6 MB temporary data Removed. The system needed a reboot.. ==== End of Fixlog 16:43:59 ====