Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 24-08-2013 01 Ran by Kuba at 2013-08-25 11:01:18 Run:1 Running from G:\ Boot Mode: Normal ============================================== Content of fixlist: ***************** Task: {7204A373-3F58-4A03-B924-F7226150F035} - System32\Tasks\Rpyonn => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation) FF Extension: z - C:\Program Files\Mozilla Firefox\extensions\{28214142-d9cc-eb6d-1bdc-f69319b916fc} CHR HKLM\...\Chrome\Extension: [bejbohlohkkgompgecdcbbglkpjfjgdj] - C:\Users\Kuba\AppData\Local\Temp\crx4006.tmp Toolbar: HKCU -No Name - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - No File HKU\Ola\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\system32\Macromed\Flash\FlashUtil11e_Plugin.exe -update plugin [x] C:\Users\Kuba\AppData\Local\Temp\Quarantine.exe CMD: netsh winsock reset Reg: reg add "HKCU\Software\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f Reg: reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ***************** HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{7204A373-3F58-4A03-B924-F7226150F035} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7204A373-3F58-4A03-B924-F7226150F035} => Key deleted successfully. C:\Windows\System32\Tasks\Rpyonn => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Rpyonn => Key deleted successfully. C:\Program Files\Mozilla Firefox\extensions\{28214142-d9cc-eb6d-1bdc-f69319b916fc} => Moved successfully. HKLM\SOFTWARE\Google\Chrome\Extensions\bejbohlohkkgompgecdcbbglkpjfjgdj => Key deleted successfully. "C:\Users\Kuba\AppData\Local\Temp\crx4006.tmp" => File/Directory not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} => Value deleted successfully. HKCR\CLSID\{BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} => Key not found. HKU\Ola\Software\Microsoft\Windows\CurrentVersion\RunOnce\\FlashPlayerUpdate => Value deleted successfully. C:\Users\Kuba\AppData\Local\Temp\Quarantine.exe => Moved successfully. ========= netsh winsock reset ========= Nie mo¾na uruchomi† funkcji inicjuj¥cej InitHelperDll w NSHHTTP.DLL; kod bˆ©du 10107 Pomy˜lnie zresetowano Winsock Catalog. Musisz ponownie uruchomi† komputer, aby ukoäczy† resetowanie. ========= End of CMD: ========= ========= reg add "HKCU\Software\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ==== End of Fixlog ====