Fix result of Farbar Recovery Scan Tool (x64) Version:24-02-2016 Ran by Ziggy (2016-02-24 20:44:37) Run:1 Running from C:\Users\Ziggy\Desktop Loaded Profiles: Ziggy (Available Profiles: Ziggy & Fendrepans0 & Fendrepans & Administrator & Guest) Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: CreateRestorePoint: HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13876952 2000-01-01] (Realtek Semiconductor) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender 2016\bdagent.exe [1643232 2016-02-01] (Bitdefender) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2978129333-1637225295-611555160-1000\...\Run: [screenshooter] => C:\Program Files (x86)\ScreenShooter\screenshooter.exe [606208 2010-09-03] () HKU\S-1-5-21-2978129333-1637225295-611555160-1000\...\Run: [Advanced SystemCare 9] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [2010912 2015-11-30] (IObit) HKU\S-1-5-21-2978129333-1637225295-611555160-1000\...\Policies\Explorer: [NolowDiskSpaceChecks] 1 HKU\S-1-5-18\...\Run: [Agent Portfela Bitdefender] => "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe" HKU\S-1-5-18\...\Run: [Portfel Bitdefender] => "C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe" --hidden --nowizard HKU\S-1-5-18\...\Run: [Agent aplikacji Portfel Bitdefender] => "C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe" ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => No File BootExecute: autocheck autochk * SmartDefragBootTime.exe CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION Replace: R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel® Corporation) S3 PortTalk; C:\Windows\SysWOW64\Drivers\PortTalk.sys [3567 2002-01-12] (Beyond Logic hxxp://www.beyondlogic.org) S3 AndNetDiag; system32\DRIVERS\lgandnetdiag64.sys [X] S3 ANDNetModem; system32\DRIVERS\lgandnetmodem64.sys [X] S3 andnetndis; system32\DRIVERS\lgandnetndis64.sys [X] Hosts: EmptyTemp: Reboot: ***************** Processes closed successfully. Restore point was successfully created. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\RTHDVCPL => value removed successfully HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ShadowPlay => value removed successfully HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Bdagent => value removed successfully "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui" => key removed successfully HKU\S-1-5-21-2978129333-1637225295-611555160-1000\Software\Microsoft\Windows\CurrentVersion\Run\\screenshooter => value removed successfully HKU\S-1-5-21-2978129333-1637225295-611555160-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Advanced SystemCare 9 => value removed successfully HKU\S-1-5-21-2978129333-1637225295-611555160-1000\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NolowDiskSpaceChecks => value removed successfully HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\\Agent Portfela Bitdefender => value removed successfully HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\\Portfel Bitdefender => value removed successfully HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\\Agent aplikacji Portfel Bitdefender => value removed successfully HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ GoogleDriveBlacklisted => key not found. "HKCR\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}" => key removed successfully HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ GoogleDriveSynced => key not found. "HKCR\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}" => key removed successfully HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ GoogleDriveSyncing => key not found. "HKCR\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}" => key removed successfully "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => key removed successfully HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\GDriveSharedOverlay" => key removed successfully HKCR\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => key not found. hklm\System\CurrentControlSet\Control\Session Manager\\BootExecute => value restored successfully "HKLM\SOFTWARE\Policies\Google" => key removed successfully "Replace:" => not found Intel® Capability Licensing Service Interface => service not found. PortTalk => service removed successfully AndNetDiag => service removed successfully C:\Windows\System32\Drivers\etc\hosts => moved successfully Hosts restored successfully. EmptyTemp: => 1 GB temporary data Removed. The system needed a reboot. ==== End of Fixlog 20:45:35 ====