Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 29-12-2013 01 Ran by Adrian at 2013-12-30 14:44:38 Run:1 Running from C:\Users\Adrian\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** HKCU\...\Run: [zeazem] - C:\Users\Adrian\zeazem.exe [57344 2013-12-29] () HKCU\...\Run: [GuardSoftware] - C:\Users\Adrian\AppData\Roaming\guard-joyh.exe [1241088 2013-12-29] () AppInit_DLLs: [ ] () AppInit_DLLs-x32: c:\progra~2\ss-hel~1\sprote~1.dll [1050112 2013-01-24] () SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = Task: {88FFCEB5-07CD-41DD-9C61-A7FDD2FD18D4} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe <==== ATTENTION Task: C:\Windows\Tasks\schedule!3036567561.job => C:\ProgramData\BetterSoft\OptimizerPro\OptimizerPro.exe <==== ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION C:\Users\Adrian\zeazem.exe C:\Users\Adrian\AppData\Roaming\guard-joyh.exe C:\Users\Adrian\AppData\Local\Google C:\Program Files (x86)\mozilla firefox\browser\searchplugins\delta-homes.xml C:\Program Files (x86)\mozilla firefox\browser\searchplugins\qvo6.xml C:\Program Files (x86)\NettoCOupOn C:\Program Files (x86)\RanddomPrrice C:\Program Files (x86)\Ss-Helper C:\ProgramData\26f8224556c8cf1f C:\ProgramData\Intelewin filter C:\ProgramData\NettoCOupOn C:\ProgramData\RanddomPrrice C:\cookies.sqlite ***************** HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\zeazem => Value deleted successfully. HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\GuardSoftware => Value deleted successfully. HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{88FFCEB5-07CD-41DD-9C61-A7FDD2FD18D4} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{88FFCEB5-07CD-41DD-9C61-A7FDD2FD18D4} => Key deleted successfully. C:\Windows\System32\Tasks\Desk 365 RunAsStdUser => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Desk 365 RunAsStdUser => Key deleted successfully. C:\Windows\Tasks\schedule!3036567561.job => Moved successfully. HKLM\SOFTWARE\Policies\Google => Key deleted successfully. C:\Users\Adrian\zeazem.exe => Moved successfully. C:\Users\Adrian\AppData\Roaming\guard-joyh.exe => Moved successfully. C:\Users\Adrian\AppData\Local\Google => Moved successfully. C:\Program Files (x86)\mozilla firefox\browser\searchplugins\delta-homes.xml => Moved successfully. C:\Program Files (x86)\mozilla firefox\browser\searchplugins\qvo6.xml => Moved successfully. C:\Program Files (x86)\NettoCOupOn => Moved successfully. C:\Program Files (x86)\RanddomPrrice => Moved successfully. C:\Program Files (x86)\Ss-Helper => Moved successfully. C:\ProgramData\26f8224556c8cf1f => Moved successfully. C:\ProgramData\Intelewin filter => Moved successfully. C:\ProgramData\NettoCOupOn => Moved successfully. C:\ProgramData\RanddomPrrice => Moved successfully. C:\cookies.sqlite => Moved successfully. ==== End of Fixlog ====