Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 18-06-2014 Ran by Czarek at 2014-06-20 12:49:48 Run:1 Running from C:\Users\Czarek\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** Task: {87E8E90A-0995-481F-9B4D-C89C1D0905BA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1970835742GUI => C:\Users\Czarek\AppData\Roaming\aerix\googleupd.exe <==== ATTENTION Task: {8D23B0CA-AF84-4B6C-B27F-0F830464FAE2} - System32\Tasks\Origin => C:\Users\Czarek\AppData\Roaming\Origin\update.vbe [2014-04-25] () <==== ATTENTION C:\Windows\Temp\svchost.exe C:\Users\Czarek\AppData\Roaming\Origin\update.vbe C:\Users\Czarek\AppData\Roaming\Origin C:\Users\Andrzej\AppData\Local\Temp\2m9s0v8j.dll C:\Users\Andrzej\AppData\Local\Temp\msuqryvm.dll C:\Users\Andrzej\AppData\Local\Temp\tpyvi-dt.dll C:\Users\Andrzej\AppData\Local\Temp\zgpflnbq.dll Reboot: ***************** 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{87E8E90A-0995-481F-9B4D-C89C1D0905BA}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{87E8E90A-0995-481F-9B4D-C89C1D0905BA}' => Key deleted successfully. C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1970835742GUI => Moved successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-1970835742GUI' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8D23B0CA-AF84-4B6C-B27F-0F830464FAE2}' => Key deleted successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D23B0CA-AF84-4B6C-B27F-0F830464FAE2}' => Key deleted successfully. C:\Windows\System32\Tasks\Origin => Moved successfully. 'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Origin' => Key deleted successfully. C:\Windows\Temp\svchost.exe => Moved successfully. C:\Users\Czarek\AppData\Roaming\Origin\update.vbe => Moved successfully. C:\Users\Czarek\AppData\Roaming\Origin => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\2m9s0v8j.dll => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\msuqryvm.dll => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\tpyvi-dt.dll => Moved successfully. C:\Users\Andrzej\AppData\Local\Temp\zgpflnbq.dll => Moved successfully. The system needed a reboot. ==== End of Fixlog ====