Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 18-11-2013 Ran by e at 2013-11-28 08:12:54 Run:1 Running from C:\Documents and Settings\e\Moje dokumenty Boot Mode: Normal ============================================== Content of fixlist: ***************** S2 vToolbarUpdater17.1.2; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.1.2\ToolbarUpdater.exe [x] S3 ALCXWDM; system32\drivers\ALCXWDM.SYS [x] S3 RivaTuner32; \??\C:\Program Files\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner32.sys [x] S3 s3chipid; \??\C:\DOCUME~1\e\USTAWI~1\Temp\s3chipid.sys [x] R1 avgtp; C:\WINDOWS\system32\drivers\avgtpx86.sys [37664 2013-11-11] (AVG Technologies) Reg: reg delete "HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" Reg: reg delete "HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" Reg: reg delete "HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" Reg: reg delete "HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" Reg: reg delete "HKEY_USERS\S-1-5-21-436374069-2139871995-1417001333-1004\Software\Microsoft\Internet Explorer\SearchScopes\Backup.Old.DefaultScope" /f CHR Plugin: (BonanzaDealsLive Update) - C:\Program Files\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll No File CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\17.1.2\\npsitesafety.dll No File Reg: reg add "HKLN\Software\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f SearchScopes: HKLM - Backup.Old.DefaultScope {B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B} SearchScopes: HKCU - Backup.Old.DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - No File C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji\MoboGenie C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji\MoboGenie C:\Documents and Settings\Dominika\daemonprocess.txt C:\Documents and Settings\Radek\daemonprocess.txt HKLM\...\Run: [mobilegeni daemon] - C:\Program Files\Mobogenie\DaemonProcess.exe C:\Program Files\Mobogenie HKU\Administrator\...\Run: [AVG-Secure-Search-Update_JUNE2013_TB] - "C:\Program Files\AVG Secure Search\AVG-Secure-Search-Update_JUNE2013_TB.exe" /PROMPT /CMPID=JUNE2013_TB HKU\Administrator\...\Run: [AVG-Secure-Search-Update_JUNE2013_HP] - "C:\Program Files\AVG Secure Search\AVG-Secure-Search-Update_JUNE2013_HP.exe" /PROMPT /CMPID=JUNE2013_HP C:\Program Files\AVG Secure Search C:\Documents and Settings\e\Ustawienia lokalne\Temp\ntdll_dump.dll C:\Documents and Settings\e\Ustawienia lokalne\Temp\sfamcc00001.dll C:\Documents and Settings\e\Ustawienia lokalne\Temp\sfareca00001.dll Task: C:\WINDOWS\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job => C:\WINDOWS\TEMP\{27D719B3-2BBE-4F4E-97B0-8D5ECD1A6C7F}.exe Task: C:\WINDOWS\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => C:\WINDOWS\TEMP\{2DBFDC55-5054-4747-9423-A9E201457429}.exe ***************** vToolbarUpdater17.1.2 => Service deleted successfully. ALCXWDM => Service deleted successfully. RivaTuner32 => Service deleted successfully. s3chipid => Service deleted successfully. avgtp => Service deleted successfully. ========= reg delete "HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" ========= Permanently delete the registry key .DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes (Y/N)? Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" ========= Permanently delete the registry key S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes (Y/N)? Błąd: system nie może odnaleźć określonego klucza rejestru lub wartości. ========= End of Reg: ========= ========= reg delete "HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" ========= Permanently delete the registry key S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes (Y/N)? Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" ========= Permanently delete the registry key S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes (Y/N)? Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKEY_USERS\S-1-5-21-436374069-2139871995-1417001333-1004\Software\Microsoft\Internet Explorer\SearchScopes\Backup.Old.DefaultScope" /f ========= Błąd: system nie może odnaleźć określonego klucza rejestru lub wartości. ========= End of Reg: ========= C:\Program Files\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll not found. C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\17.1.2\\npsitesafety.dll not found. ========= reg add "HKLN\Software\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f ========= Błąd: nieprawidłowa nazwa klucza ========= End of Reg: ========= HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\Backup.Old.DefaultScope => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\Backup.Old.DefaultScope => Value deleted successfully. HKCR\PROTOCOLS\Handler\linkscanner => Key deleted successfully. HKCR\CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} => Key not found. C:\Documents and Settings\Radek\Ustawienia lokalne\Dane aplikacji\MoboGenie => Moved successfully. C:\Documents and Settings\Dominika\Ustawienia lokalne\Dane aplikacji\MoboGenie => Moved successfully. C:\Documents and Settings\Dominika\daemonprocess.txt => Moved successfully. C:\Documents and Settings\Radek\daemonprocess.txt => Moved successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\mobilegeni daemon => Value deleted successfully. C:\Program Files\Mobogenie => Moved successfully. HKU\Administrator\Software\Microsoft\Windows\CurrentVersion\Run\\AVG-Secure-Search-Update_JUNE2013_TB => Value deleted successfully. HKU\Administrator\Software\Microsoft\Windows\CurrentVersion\Run\\AVG-Secure-Search-Update_JUNE2013_HP => Value deleted successfully. "C:\Program Files\AVG Secure Search" => File/Directory not found. C:\Documents and Settings\e\Ustawienia lokalne\Temp\ntdll_dump.dll => Moved successfully. C:\Documents and Settings\e\Ustawienia lokalne\Temp\sfamcc00001.dll => Moved successfully. C:\Documents and Settings\e\Ustawienia lokalne\Temp\sfareca00001.dll => Moved successfully. C:\WINDOWS\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job => Moved successfully. C:\WINDOWS\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => Moved successfully. The system needs a manual reboot. ==== End of Fixlog ====