Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 20-02-2014 Ran by Ja at 2014-02-21 23:53:37 Run:1 Running from C:\Users\Ja\Desktop\1\repair Boot Mode: Normal ============================================== Content of fixlist: ***************** HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.aartemis.com/web/?type=ds&ts=1388523169&from=cor&uid=WDCXWD5000AZRX-00A8LB0_WD-WMC1U377518675186&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://search.certified-toolbar.com?si=43251&st=home&tid=3623&ver=3.1&ts=1367846070841&tguid=43251-3623-1367846070841-BECAC9D111A3B10EA8652BBA783B3F73 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.aartemis.com/web/?type=ds&ts=1388523169&from=cor&uid=WDCXWD5000AZRX-00A8LB0_WD-WMC1U377518675186&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.aartemis.com/web/?type=ds&ts=1388523169&from=cor&uid=WDCXWD5000AZRX-00A8LB0_WD-WMC1U377518675186&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.aartemis.com/web/?type=ds&ts=1388523169&from=cor&uid=WDCXWD5000AZRX-00A8LB0_WD-WMC1U377518675186&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://search.certified-toolbar.com?si=43251&st=home&tid=3623&ver=3.1&ts=1367846070841&tguid=43251-3623-1367846070841-BECAC9D111A3B10EA8652BBA783B3F73 StartMenuInternet: IEXPLORE.EXE - iexplore.exe SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://search.certified-toolbar.com?si=43251&st=bs&tid=3623&ver=3.1&ts=1367846070841&tguid=43251-3623-1367846070841-BECAC9D111A3B10EA8652BBA783B3F73&q={searchTerms} SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://search.certified-toolbar.com?si=43251&st=bs&tid=3623&ver=3.1&ts=1367846070841&tguid=43251-3623-1367846070841-BECAC9D111A3B10EA8652BBA783B3F73&q={searchTerms} SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.certified-toolbar.com?si=43251&st=bs&tid=3623&ver=2.9&ts=1367846070841&tguid=43251-3623-1367846070841-BECAC9D111A3B10EA8652BBA783B3F73&q={searchTerms} SearchScopes: HKLM - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.mocaflix.com/?l=1&q={searchTerms} SearchScopes: HKCU - DefaultScope {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.certified-toolbar.com?si=43251&st=bs&tid=3623&ver=2.9&ts=1367846070841&tguid=43251-3623-1367846070841-BECAC9D111A3B10EA8652BBA783B3F73&q={searchTerms} BHO: continueytoesaave - {6CF4BCD6-4A43-F5EF-E8B0-7A22F9D7E0A2} - C:\ProgramData\continueytoesaave\513de073a1a4a.dll No File Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll No File FF user.js: detected! => C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\g3rd9gbx.default-1369740492541\user.js S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] S3 WinRing0_1_2_0; \??\C:\gry\Game Booster 3\Driver\WinRing0.sys [X] S3 XDva407; \??\C:\Windows\system32\XDva407.sys [X] C:\Users\Ja\AppData\Local\Akamai ***************** HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Start Default_Page_URL => Value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Default_Page_URL => Value deleted successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => Key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6CF4BCD6-4A43-F5EF-E8B0-7A22F9D7E0A2} => Key deleted successfully. HKCR\CLSID\{6CF4BCD6-4A43-F5EF-E8B0-7A22F9D7E0A2} => Key deleted successfully. HKCR\PROTOCOLS\Handler\linkscanner => Key deleted successfully. HKCR\CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} => Key deleted successfully. C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\g3rd9gbx.default-1369740492541\user.js => Moved successfully. EagleXNt => Service deleted successfully. Synth3dVsc => Service deleted successfully. tsusbhub => Service deleted successfully. VGPU => Service deleted successfully. WinRing0_1_2_0 => Service deleted successfully. XDva407 => Service deleted successfully. C:\Users\Ja\AppData\Local\Akamai => Moved successfully. ==== End of Fixlog ====