Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 26-09-2014 Ran by pc at 2014-10-01 10:58:26 Run:2 Running from C:\Users\pc\Downloads Loaded Profile: pc (Available profiles: pc) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: Task: {680936CC-07F5-46EE-8A8C-DBAA5B24FC92} - System32\Tasks\Upd Inst-S-1156239722 => c:\programdata\brilliantinstaller\upd inst\Upd Inst.exe Task: {87D2E5C9-F3C8-478C-9AFA-4B6784C9BEA2} - System32\Tasks\Upd Inst-S-42011561 => c:\programdata\appready software\upd inst\Upd Inst.exe Task: C:\windows\Tasks\Upd Inst-S-1156239722.job => c:\programdata\brilliantinstaller\upd inst\Upd Inst.exe Task: C:\windows\Tasks\Upd Inst-S-42011561.job => c:\programdata\appready software\upd inst\Upd Inst.exe S2 1a34a8e0; "C:\windows\system32\rundll32.exe" "c:\progra~2\AssistantSvc.dll",service S3 cpuz135; \??\C:\Users\pc\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [X] S0 txly; System32\drivers\clehlnyc.sys [X] HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\...\Run: [] => [X] HKLM\...\Policies\Explorer: [NoControlPanel] 0 StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKCU - DefaultScope {06E320FB-DA3F-4199-ACEB-1771BE300B9D} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3289075&CUI=UN22166906242510514&UM=1 SearchScopes: HKCU - {06E320FB-DA3F-4199-ACEB-1771BE300B9D} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3289075&CUI=UN22166906242510514&UM=1 SearchScopes: HKCU - {84E73978-A84D-4AEF-950F-E305680E5C46} URL = C:\Program Files (x86)\mozilla firefox\plugins C:\ProgramData\AppReady Software C:\ProgramData\BrilliantInstaller C:\ProgramData\26a8f481a0ac6502 C:\ProgramData\AllCheapPrice C:\ProgramData\DisicouentExtensi C:\ProgramData\FaunDeals C:\ProgramData\Fuun2Save C:\ProgramData\RegularDeails C:\Users\pc\AppData\Local\Popajar C:\Users\pc\AppData\Roaming\de6ddd9f.dat C:\Users\pc\AppData\Roaming\0F1F1C2Y1H1P1C0I0T C:\Users\pc\AppData\Roaming\3909 C:\Users\pc\AppData\Roaming\System DeleteKey: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Skype Packages RemoveDirectory: C:\AdwCleaner Folder: C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Extensions CMD: type "C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Preferences" Reg: reg query "HKLM\SOFTWARE\Clients\StartMenuInternet\OperaStable\shell\open\command" /s EmptyTemp: ***************** Processes closed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{680936CC-07F5-46EE-8A8C-DBAA5B24FC92}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{680936CC-07F5-46EE-8A8C-DBAA5B24FC92}" => Key deleted successfully. C:\Windows\System32\Tasks\Upd Inst-S-1156239722 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Upd Inst-S-1156239722" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{87D2E5C9-F3C8-478C-9AFA-4B6784C9BEA2}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{87D2E5C9-F3C8-478C-9AFA-4B6784C9BEA2}" => Key deleted successfully. C:\Windows\System32\Tasks\Upd Inst-S-42011561 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Upd Inst-S-42011561" => Key deleted successfully. C:\windows\Tasks\Upd Inst-S-1156239722.job => Moved successfully. C:\windows\Tasks\Upd Inst-S-42011561.job => Moved successfully. 1a34a8e0 => Service deleted successfully. cpuz135 => Service deleted successfully. txly => Service deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc" => Key deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoControlPanel => value deleted successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{06E320FB-DA3F-4199-ACEB-1771BE300B9D}" => Key deleted successfully. "HKCR\CLSID\{06E320FB-DA3F-4199-ACEB-1771BE300B9D}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{84E73978-A84D-4AEF-950F-E305680E5C46}" => Key deleted successfully. "HKCR\CLSID\{84E73978-A84D-4AEF-950F-E305680E5C46}" => Key not found. C:\Program Files (x86)\mozilla firefox\plugins => Moved successfully. C:\ProgramData\AppReady Software => Moved successfully. C:\ProgramData\BrilliantInstaller => Moved successfully. C:\ProgramData\26a8f481a0ac6502 => Moved successfully. C:\ProgramData\AllCheapPrice => Moved successfully. C:\ProgramData\DisicouentExtensi => Moved successfully. C:\ProgramData\FaunDeals => Moved successfully. C:\ProgramData\Fuun2Save => Moved successfully. C:\ProgramData\RegularDeails => Moved successfully. C:\Users\pc\AppData\Local\Popajar => Moved successfully. C:\Users\pc\AppData\Roaming\de6ddd9f.dat => Moved successfully. C:\Users\pc\AppData\Roaming\0F1F1C2Y1H1P1C0I0T => Moved successfully. C:\Users\pc\AppData\Roaming\3909 => Moved successfully. C:\Users\pc\AppData\Roaming\System => Moved successfully. HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Skype Packages => Key Deleted successfully. "C:\AdwCleaner" => removed successfully. ========================= Folder: C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Extensions ======================== Directory Not Found ========= type "C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Preferences" ========= ========= End of CMD: ========= ========= reg query "HKLM\SOFTWARE\Clients\StartMenuInternet\OperaStable\shell\open\command" /s ========= HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\OperaStable\shell\open\command (Default) REG_SZ "C:\Program Files (x86)\Opera\Launcher.exe" ========= End of Reg: ========= EmptyTemp: => Removed 493.5 MB temporary data. The system needed a reboot. ==== End of Fixlog ====