Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 05-08-2014 Ran by euro at 2014-08-06 14:06:59 Run:1 Running from C:\Users\euro\Desktop\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** C:\Users\euro\AppData\Roaming\wyUpdate AU HKLM-x32\...\Run: [] => [X] Task: C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job => C:\windows\TEMP\{6921D528-9D3A-4294-86B2-FC7897EE1679}.exe Task: C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => C:\windows\TEMP\{E2CEA9D0-DB0B-4BE3-98D2-F2979264DD2C}.exe Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f Task: {C8851F6E-979A-4F7D-A53D-0A9CFFA0FB31} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv => C:\windows\TEMP\{E2CEA9D0-DB0B-4BE3-98D2-F2979264DD2C}.exe Task: {16B70C08-991E-42F4-ACB9-046F8768514E} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv => C:\windows\TEMP\{6921D528-9D3A-4294-86B2-FC7897EE1679}.exe HKU\S-1-5-21-2100001416-2170443706-2230923172-1000\...\Run: [AVG-Secure-Search-Update_JUNE2013_TB] => "C:\Program Files (x86)\AVG Secure Search\AVG-Secure-Search-Update_JUNE2013_TB.exe" /PROMPT /CMPID=JUNE2013_TB HKU\S-1-5-21-2100001416-2170443706-2230923172-1000\...\Run: [AVG-Secure-Search-Update_JUNE2013_HP] => "C:\Program Files (x86)\AVG Secure Search\AVG-Secure-Search-Update_JUNE2013_HP.exe" /PROMPT /CMPID=JUNE2013_HP C:\Program Files (x86)\AVG Secure Search SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.as...q={searchTerms} SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.as...q={searchTerms} earchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.as...q={searchTerms} SearchScopes: HKCU - {E24D0F05-5CA4-4296-9718-8DDE31B631CC} URL = http://search.condui...&ctid=CT3220468 SearchScopes: HKCU - {E300269F-D3AF-455A-81D3-170D890ADB1C} URL = http://websearch.ask...F8-5EE1028EC239 Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\\npsitesafety.dll No File R1 avgtp; C:\windows\system32\drivers\avgtpx64.sys C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job C:\Program Files (x86)\Greener Web Reboot: ***************** C:\Users\euro\AppData\Roaming\wyUpdate AU => Moved successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully. C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job => Moved successfully. C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => Moved successfully. ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C8851F6E-979A-4F7D-A53D-0A9CFFA0FB31}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C8851F6E-979A-4F7D-A53D-0A9CFFA0FB31}" => Key deleted successfully. C:\Windows\System32\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AVG-Secure-Search-Update_JUNE2013_TB_rmv" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{16B70C08-991E-42F4-ACB9-046F8768514E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16B70C08-991E-42F4-ACB9-046F8768514E}" => Key deleted successfully. C:\Windows\System32\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AVG-Secure-Search-Update_JUNE2013_HP_rmv" => Key deleted successfully. HKU\S-1-5-21-2100001416-2170443706-2230923172-1000\Software\Microsoft\Windows\CurrentVersion\Run\\AVG-Secure-Search-Update_JUNE2013_TB => value deleted successfully. HKU\S-1-5-21-2100001416-2170443706-2230923172-1000\Software\Microsoft\Windows\CurrentVersion\Run\\AVG-Secure-Search-Update_JUNE2013_HP => value deleted successfully. "C:\Program Files (x86)\AVG Secure Search" => File/Directory not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key deleted successfully. "HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key not found. earchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.as...q={searchTerms} => Error: No automatic fix found for this entry. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E24D0F05-5CA4-4296-9718-8DDE31B631CC}" => Key deleted successfully. "HKCR\CLSID\{E24D0F05-5CA4-4296-9718-8DDE31B631CC}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E300269F-D3AF-455A-81D3-170D890ADB1C}" => Key deleted successfully. "HKCR\CLSID\{E300269F-D3AF-455A-81D3-170D890ADB1C}" => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value deleted successfully. "HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}" => Key not found. C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\14.2.0\\npsitesafety.dll not found. avgtp => Unable to stop service avgtp => Service deleted successfully. "C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job" => File/Directory not found. "C:\windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job" => File/Directory not found. C:\Program Files (x86)\Greener Web => Moved successfully. The system needed a reboot. ==== End of Fixlog ====