Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-09-2014 Ran by Rysiek at 2014-09-13 12:06:45 Run:2 Running from C:\Users\Rysiek\Desktop\porządki Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: R1 {5eeb83d0-96ea-4249-942c-beead6847053}w; C:\Windows\System32\drivers\{5eeb83d0-96ea-4249-942c-beead6847053}w.sys [52376 2014-09-08] (StdLib) R1 {c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw; C:\Windows\System32\drivers\{c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw.sys [52368 2014-09-06] (StdLib) S3 catchme; \??\C:\Users\Rysiek\AppData\Local\Temp\catchme.sys [X] S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [X] BootExecute: autocheck autochk * sdnclean.exe URLSearchHook: HKLM - Default Value = {CCC7B159-1D8C-11E3-B2AD-F3EF3D58318D} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {C190F895-3056-45D2-A695-FA200225DEDA} URL = http://us.yhs.search.yahoo.com/avg/search?fr=yhs-avg-chrome&type=yahoo_avg_hs2-tb-web_chrome_us&p={searchTerms} Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab Task: {59D0A362-D34B-4EA7-8CBE-F60AC77E39EE} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\SymErr.exe Task: {7B381832-8F54-4F69-9A55-18CE38C6F573} - System32\Tasks\{4F9D8BD0-FB93-4043-9393-549054DF6964} => Iexplore.exe http://ui.skype.com/ui/0/5.9.0.115.259/pl/abandoninstall?source=lightinstaller&page=tsInstall Task: {86DE7C27-AD1F-4D4A-A3A0-0F57DEF91FC8} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1180907031-1715803540-624890359-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe Task: {92BCF61D-B19F-48D3-967D-6D8192C2FB1A} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe Task: {A1374BCD-074F-48CC-AA18-7063E9B58FD3} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1180907031-1715803540-624890359-1000 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe Task: {A4FAEC86-2688-4AFF-9651-ADCCC818DFBE} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files\Norton Identity Safe\Engine\2014.5.0.67\SymErr.exe Task: {AEE53336-C247-422B-8341-2F54785F90EE} - System32\Tasks\{131BEFCA-FA49-4FC5-B6B1-5C4AADA7D316} => Iexplore.exe http://ui.skype.com/ui/0/5.9.0.115.259/pl/abandoninstall?source=lightinstaller&page=tsMain C:\Program Files\Mozilla Firefox\plugins C:\Program Files\SmarterPower C:\Program Files\Spybot - Search & Destroy 2 C:\ProgramData\Spybot - Search & Destroy C:\Users\Rysiek\AppData\Local\{*} C:\Users\Rysiek\AppData\Local\CouponsMalibu. C:\Users\Rysiek\Downloads\*(*)-dp.exe C:\Users\Rysiek\Downloads\arcasonow.exe C:\Windows\System32\drivers\{c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw.sys C:\Windows\System32\drivers\{5eeb83d0-96ea-4249-942c-beead6847053}w.sys C:\Windows\system32\Drivers\etc\hosts.*.backup Reg: reg delete HKCU\Software\Google /f Reg: reg delete HKLM\SOFTWARE\Google /f EmptyTemp: ***************** Processes closed successfully. {5eeb83d0-96ea-4249-942c-beead6847053}w => Service not found. {c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw => Service not found. catchme => Service not found. hwusbdev => Service not found. HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => Value was restored successfully. HKLM\Software\Microsoft\Internet Explorer\URLSearchHooks\\ => Value not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found. "HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C190F895-3056-45D2-A695-FA200225DEDA}" => Key not found. "HKCR\CLSID\{C190F895-3056-45D2-A695-FA200225DEDA}" => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value not found. "HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}" => Key not found. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{68282C51-9459-467B-95BF-3C0E89627E55}" => Key not found. "HKCR\CLSID\{68282C51-9459-467B-95BF-3C0E89627E55}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{59D0A362-D34B-4EA7-8CBE-F60AC77E39EE}" => Key not found. C:\Windows\System32\Tasks\Norton Identity Safe\Norton Error Processor not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton Identity Safe\Norton Error Processor" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7B381832-8F54-4F69-9A55-18CE38C6F573}" => Key not found. C:\Windows\System32\Tasks\{4F9D8BD0-FB93-4043-9393-549054DF6964} not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4F9D8BD0-FB93-4043-9393-549054DF6964}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{86DE7C27-AD1F-4D4A-A3A0-0F57DEF91FC8}" => Key not found. C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1180907031-1715803540-624890359-1000 not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealUpgradeScheduledTaskS-1-5-21-1180907031-1715803540-624890359-1000" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{92BCF61D-B19F-48D3-967D-6D8192C2FB1A}" => Key not found. C:\Windows\System32\Tasks\Run RoboForm TaskBar Icon not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Run RoboForm TaskBar Icon" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A1374BCD-074F-48CC-AA18-7063E9B58FD3}" => Key not found. C:\Windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1180907031-1715803540-624890359-1000 not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealUpgradeLogonTaskS-1-5-21-1180907031-1715803540-624890359-1000" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A4FAEC86-2688-4AFF-9651-ADCCC818DFBE}" => Key not found. C:\Windows\System32\Tasks\Norton Identity Safe\Norton Error Analyzer not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton Identity Safe\Norton Error Analyzer" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AEE53336-C247-422B-8341-2F54785F90EE}" => Key not found. C:\Windows\System32\Tasks\{131BEFCA-FA49-4FC5-B6B1-5C4AADA7D316} not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{131BEFCA-FA49-4FC5-B6B1-5C4AADA7D316}" => Key not found. "C:\Program Files\Mozilla Firefox\plugins" => File/Directory not found. "C:\Program Files\SmarterPower" => File/Directory not found. "C:\Program Files\Spybot - Search & Destroy 2" => File/Directory not found. "C:\ProgramData\Spybot - Search & Destroy" => File/Directory not found. "C:\Users\Rysiek\AppData\Local\{*}" => File/Directory not found. "C:\Users\Rysiek\AppData\Local\CouponsMalibu." => File/Directory not found. "C:\Users\Rysiek\Downloads\*(*)-dp.exe" => File/Directory not found. "C:\Users\Rysiek\Downloads\arcasonow.exe" => File/Directory not found. "C:\Windows\System32\drivers\{c5e48979-bd7f-4cf7-9b73-2482a67a4f37}Gw.sys" => File/Directory not found. "C:\Windows\System32\drivers\{5eeb83d0-96ea-4249-942c-beead6847053}w.sys" => File/Directory not found. "C:\Windows\system32\Drivers\etc\hosts.*.backup" => File/Directory not found. ========= reg delete HKCU\Software\Google /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Google /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= EmptyTemp: => Removed 35.5 MB temporary data. The system needed a reboot. ==== End of Fixlog ====