Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 13-03-2014 Ran by Karol at 2014-04-14 15:29:05 Run:1 Running from E:\elementy do instalowania Boot Mode: Normal ============================================== Content of fixlist: ***************** S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X] S3 X6va009; \??\C:\Windows\SysWOW64\Drivers\X6va009 [X] Task: {01ADA424-CFDC-4B14-B568-095F83DFC098} - System32\Tasks\{EDE493F0-690D-4040-BA82-0D34D922C31F} => E:\elementy do instalowania\digitalworks20\DW20_95.exe Task: {3E3F4C30-E124-424D-AC55-D785F245D5EE} - System32\Tasks\{EB697BF1-8666-44F5-B7E8-1DBC2379A723} => E:\Gry\Sacred 2\system\sacred2.exe Task: {69F763F3-8F41-4041-AAA1-19CFC53BFB13} - System32\Tasks\RunOW => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe Task: {CF84ED6B-1B77-418B-B21A-87C4373E4422} - System32\Tasks\{F82BDD87-CDB4-4AD8-80F7-A265D4711EEA} => Chrome.exe http://ui.skype.com/ui/0/6.6.0.106/pl/abandoninstall?page=tsMain Task: {D09951D0-B9E2-4E18-8831-CABD14D65D87} - System32\Tasks\{4E66A117-8563-4601-A77F-375FB7E9B852} => E:\elementy do instalowania\digitalworks20\DW20_95.exe HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {28C337F0-9C84-41e1-92DB-DD3B6424AFBF} URL = http://uk.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=IEBDSV SearchScopes: HKCU - {D60D7213-4A3D-4f1f-A1DB-347206814A06} URL = http://www.google.com/cse?cx=partner-pub-3794288947762788%3A7941509802&ie=UTF-8&sa=Search&siteurl=www.google.com%2Fcse%2Fhome%3Fcx%3Dpartner-pub-3794288947762788%3A7941509802&q={searchTerms} FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File C:\Program Files (x86)\mozilla firefox\plugins C:\Program Files\AdTrustMedia C:\ProgramData\Adtrustmedia C:\Users\Karol\AppData\Local\AdTrustMedia Reg: reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ***************** EagleX64 => Unable to delete service VBoxNetFlt => Unable to delete service X6va009 => Unable to delete service HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{01ADA424-CFDC-4B14-B568-095F83DFC098} => Error deleting key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{01ADA424-CFDC-4B14-B568-095F83DFC098} => Error deleting key Could not move "C:\Windows\System32\Tasks\{EDE493F0-690D-4040-BA82-0D34D922C31F}" => Scheduled to move on reboot. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{EDE493F0-690D-4040-BA82-0D34D922C31F} => Error deleting key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3E3F4C30-E124-424D-AC55-D785F245D5EE} => Error deleting key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3E3F4C30-E124-424D-AC55-D785F245D5EE} => Error deleting key Could not move "C:\Windows\System32\Tasks\{EB697BF1-8666-44F5-B7E8-1DBC2379A723}" => Scheduled to move on reboot. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{EB697BF1-8666-44F5-B7E8-1DBC2379A723} => Error deleting key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{69F763F3-8F41-4041-AAA1-19CFC53BFB13} => Error deleting key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{69F763F3-8F41-4041-AAA1-19CFC53BFB13} => Error deleting key Could not move "C:\Windows\System32\Tasks\RunOW" => Scheduled to move on reboot. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RunOW => Error deleting key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CF84ED6B-1B77-418B-B21A-87C4373E4422} => Error deleting key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CF84ED6B-1B77-418B-B21A-87C4373E4422} => Error deleting key Could not move "C:\Windows\System32\Tasks\{F82BDD87-CDB4-4AD8-80F7-A265D4711EEA}" => Scheduled to move on reboot. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F82BDD87-CDB4-4AD8-80F7-A265D4711EEA} => Error deleting key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D09951D0-B9E2-4E18-8831-CABD14D65D87} => Error deleting key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D09951D0-B9E2-4E18-8831-CABD14D65D87} => Error deleting key Could not move "C:\Windows\System32\Tasks\{4E66A117-8563-4601-A77F-375FB7E9B852}" => Scheduled to move on reboot. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4E66A117-8563-4601-A77F-375FB7E9B852} => Error deleting key HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Error setting value. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{28C337F0-9C84-41e1-92DB-DD3B6424AFBF} => Key deleted successfully. HKCR\CLSID\{28C337F0-9C84-41e1-92DB-DD3B6424AFBF} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D60D7213-4A3D-4f1f-A1DB-347206814A06} => Key deleted successfully. HKCR\CLSID\{D60D7213-4A3D-4f1f-A1DB-347206814A06} => Key not found. HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc => Key deleted successfully. C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll not found. C:\Program Files (x86)\Mozilla Firefox\Plugins => Moved successfully. C:\Program Files\AdTrustMedia => Moved successfully. C:\ProgramData\Adtrustmedia => Moved successfully. C:\Users\Karol\AppData\Local\AdTrustMedia => Moved successfully. ========= reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {0633EE93-D776-472f-A0FF-E1416B8B2E3A} /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: =========