Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 17-04-2014 Ran by Ewa at 2014-04-17 14:55:26 Run:1 Running from C:\Users\Ewa\Documents\Naprawa Boot Mode: Normal ============================================== Content of fixlist: ***************** URLSearchHook: HKLM-x32 - Default Value = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} URLSearchHook: HKLM-x32 - SiteFinder - {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files (x86)\SiteFinder\SiteFinder.dll (Site Finder) BHO-x32: TBLayoutBHO Class - {008f6853-9cb4-41c5-a950-39d55e5e06ba} - C:\Program Files (x86)\Amazon Browser Bar\AmazonBrowserBar.3.0.dll (Amazon.com) BHO-x32: FindRight - {2c774641-5504-46a8-b63f-6715ae3fe376} - C:\Program Files (x86)\FindRight\FindRightBHO.dll (FindRight) BHO-x32: AlxHelper Class - {F443A627-5009-4323-9C1D-7FD598D0D712} - C:\Program Files (x86)\Amazon Browser Bar\AmazonBrowserBar.3.0.dll (Amazon.com) Toolbar: HKLM-x32 - Amazon Browser Bar - {EA582743-9076-4178-9AA6-7393FDF4D5CE} - C:\Program Files (x86)\Amazon Browser Bar\AmazonBrowserBar.3.0.dll (Amazon.com) CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] - C:\Program Files (x86)\Amazon\ABB\AmazonChrome-lenovo-abb.crx [2012-02-18] HKU\S-1-5-21-3631931409-1417981497-3388749590-1000\...\Run: [Power2GoExpress] => NA Task: {A3F2A8CB-CFDB-4504-8EC3-C68CB347CCF8} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe S2 Update FindRight; C:\Program Files (x86)\FindRight\updateFindRight.exe [350496 2014-04-09] () S2 Util FindRight; C:\Program Files (x86)\FindRight\bin\utilFindRight.exe [350496 2014-04-09] () R1 wStLibG64; C:\Windows\System32\drivers\wStLibG64.sys [61112 2014-03-26] (StdLib) U3 BcmSqlStartupSvc; U2 CLKMSVC10_3A60B698; U2 CLKMSVC10_C3B3B687; U2 DriverService; U2 iATAgentService; U2 idealife Update Service; U3 IGRS; U2 IviRegMgr; U2 Oasis2Service; U2 PCCarerService; U2 ReadyComm.DirectRouter; U2 RichVideo; U2 RtLedService; U2 SeaPort; U2 SoftwareService; U3 SQLWriter; C:\Users\Public\AlexaNSISPlugin.3652.dll C:\Users\Ewa\AppData\Roaming\AVAST Software C:\Users\Ewa\AppData\Roaming\SimilarSites C:\Users\Ewa\Downloads\yet_another_cleaner_reh.exe C:\Users\Ewa\Downloads\yet_another_cleaner_mar.exe C:\Windows\system32\Drivers\WSTLIBG64.sys Reg: reg delete HKCU\Software\Mozilla /f Reg: reg delete HKLM\SOFTWARE\MozillaPlugins /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Mozilla /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\mozilla.org /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\MozillaPlugins /f CMD: rd /s /q C:\Users\Ewa\Downloads\FRST-OlderVersion CMD: rd /s /q C:\Users\Ewa\Downloads\FRSTold Reboot: ***************** HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\ => Value deleted successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} => Value deleted successfully. HKCR\Wow6432Node\CLSID\{CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{008f6853-9cb4-41c5-a950-39d55e5e06ba} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{008f6853-9cb4-41c5-a950-39d55e5e06ba} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2c774641-5504-46a8-b63f-6715ae3fe376} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{2c774641-5504-46a8-b63f-6715ae3fe376} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F443A627-5009-4323-9C1D-7FD598D0D712} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{F443A627-5009-4323-9C1D-7FD598D0D712} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{EA582743-9076-4178-9AA6-7393FDF4D5CE} => Value deleted successfully. HKCR\Wow6432Node\CLSID\{EA582743-9076-4178-9AA6-7393FDF4D5CE} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam => Key deleted successfully. C:\Program Files (x86)\Amazon\ABB\AmazonChrome-lenovo-abb.crx => Moved successfully. HKU\S-1-5-21-3631931409-1417981497-3388749590-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Power2GoExpress => Value deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A3F2A8CB-CFDB-4504-8EC3-C68CB347CCF8} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A3F2A8CB-CFDB-4504-8EC3-C68CB347CCF8} => Key deleted successfully. C:\Windows\System32\Tasks\avast! Emergency Update => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\avast! Emergency Update => Key deleted successfully. Update FindRight => Unable to stop service Update FindRight => Service deleted successfully. Util FindRight => Unable to stop service Util FindRight => Service deleted successfully. wStLibG64 => Unable to stop service wStLibG64 => Service deleted successfully. BcmSqlStartupSvc => Service deleted successfully. CLKMSVC10_3A60B698 => Service deleted successfully. CLKMSVC10_C3B3B687 => Service deleted successfully. DriverService => Service deleted successfully. iATAgentService => Service deleted successfully. idealife Update Service => Service deleted successfully. IGRS => Service deleted successfully. IviRegMgr => Service deleted successfully. Oasis2Service => Service deleted successfully. PCCarerService => Service deleted successfully. ReadyComm.DirectRouter => Service deleted successfully. RichVideo => Service deleted successfully. RtLedService => Service deleted successfully. SeaPort => Service deleted successfully. SoftwareService => Service deleted successfully. SQLWriter => Service deleted successfully. C:\Users\Public\AlexaNSISPlugin.3652.dll => Moved successfully. C:\Users\Ewa\AppData\Roaming\AVAST Software => Moved successfully. C:\Users\Ewa\AppData\Roaming\SimilarSites => Moved successfully. "C:\Users\Ewa\Downloads\yet_another_cleaner_reh.exe" => File/Directory not found. "C:\Users\Ewa\Downloads\yet_another_cleaner_mar.exe" => File/Directory not found. C:\Windows\system32\Drivers\WSTLIBG64.sys => Moved successfully. ========= reg delete HKCU\Software\Mozilla /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\MozillaPlugins /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\Mozilla /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\mozilla.org /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\MozillaPlugins /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= rd /s /q C:\Users\Ewa\Downloads\FRST-OlderVersion ========= ========= End of CMD: ========= ========= rd /s /q C:\Users\Ewa\Downloads\FRSTold ========= ========= End of CMD: ========= The system needed a reboot. ==== End of Fixlog ====