Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 10-03-2014 01 Ran by Kuba at 2014-03-17 23:31:45 Run:1 Running from C:\Users\Kuba\Pliki instalacyjne Boot Mode: Normal ============================================== Content of fixlist: ***************** Startup: C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\home.vbe () HKLM-x32\...\Runonce: [] - [X] HKLM\...\Policies\Explorer: [NoControlPanel] 0 SearchScopes: HKCU - {06042CED-CF63-498E-9B78-94DA126BF5BA} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=crm&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYPL&apn_uid=5E4C8EB2-5A46-4A09-ABDA-815B8F0E19AA&apn_sauid=78C8B3AD-9514-4E4A-B0A0-9DC773E7924E BHO-x32: Winamp Toolbar Loader - {4accc990-3dc7-4456-a734-5cb4b610a7f5} - C:\Program Files (x86)\Winamp Toolbar\winamppltb.dll No File Toolbar: HKLM-x32 - Winamp Toolbar - {a0b1221c-a3ff-4f7c-a393-dc63af5301e9} - C:\Program Files (x86)\Winamp Toolbar\winamppltb.dll No File Toolbar: HKCU - No Name - {A0B1221C-A3FF-4F7C-A393-DC63AF5301E9} - No File CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF32.dll No File FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\windows\system32\Adobe\Director\np32dsw_1209149.dll No File FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird Task: {500E1D44-FAD7-4F79-A2E5-2B51561CA286} - System32\Tasks\EasyPartitionManager => C:\Windows\MSetup\BA46-12225A02\EPM.exe Task: {88277488-3E8A-40B9-BD81-B6C05DECD0AE} - System32\Tasks\{C0895016-4D2F-4A79-BABB-C6B35A3528F2} => C:\Users\Kuba\Desktop\dsj210\DSJ.EXE Task: {A2EB9C28-F202-4565-B106-E9EFE09E3A72} - System32\Tasks\{569AD91A-3351-4DC0-AE96-DBE6B5D14208} => C:\Users\Kuba\Pictures\A\FIFAWC2002DemoEnglish.exe AlternateDataStreams: C:\Windows:64C1E9E914948AE1 Unlock: HKLM\SYSTEM\CurrentControlSet\Services\sptd S1 prodrv06; \SystemRoot\System32\drivers\prodrv06.sys [X] S4 sptd; System32\Drivers\sptd.sys [X] Reboot: ***************** C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\home.vbe => Moved successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\ => Value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoControlPanel => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{06042CED-CF63-498E-9B78-94DA126BF5BA} => Key deleted successfully. HKCR\CLSID\{06042CED-CF63-498E-9B78-94DA126BF5BA} => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4accc990-3dc7-4456-a734-5cb4b610a7f5} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{4accc990-3dc7-4456-a734-5cb4b610a7f5} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{a0b1221c-a3ff-4f7c-a393-dc63af5301e9} => Value deleted successfully. HKCR\Wow6432Node\CLSID\{a0b1221c-a3ff-4f7c-a393-dc63af5301e9} => Key deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{A0B1221C-A3FF-4F7C-A393-DC63AF5301E9} => Value deleted successfully. HKCR\CLSID\{A0B1221C-A3FF-4F7C-A393-DC63AF5301E9} => Key not found. HKLM\SOFTWARE\Policies\Google => Key deleted successfully. HKLM\Software\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer => Key deleted successfully. C:\windows\system32\Macromed\Flash\NPSWF32.dll not found. HKLM\Software\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer => Key deleted successfully. C:\windows\system32\Adobe\Director\np32dsw_1209149.dll not found. HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\eplgTb@eset.com => Value deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{500E1D44-FAD7-4F79-A2E5-2B51561CA286} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{500E1D44-FAD7-4F79-A2E5-2B51561CA286} => Key deleted successfully. C:\Windows\System32\Tasks\EasyPartitionManager => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EasyPartitionManager => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{88277488-3E8A-40B9-BD81-B6C05DECD0AE} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{88277488-3E8A-40B9-BD81-B6C05DECD0AE} => Key deleted successfully. C:\Windows\System32\Tasks\{C0895016-4D2F-4A79-BABB-C6B35A3528F2} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C0895016-4D2F-4A79-BABB-C6B35A3528F2} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A2EB9C28-F202-4565-B106-E9EFE09E3A72} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A2EB9C28-F202-4565-B106-E9EFE09E3A72} => Key deleted successfully. C:\Windows\System32\Tasks\{569AD91A-3351-4DC0-AE96-DBE6B5D14208} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{569AD91A-3351-4DC0-AE96-DBE6B5D14208} => Key deleted successfully. C:\Windows => ":64C1E9E914948AE1" ADS removed successfully. "HKLM\SYSTEM\CurrentControlSet\Services\sptd" => Key unlocked successfully. prodrv06 => Service deleted successfully. sptd => Service deleted successfully. The system needed a reboot. ==== End of Fixlog ====