Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-03-2014 Ran by SYSTEM at 2014-11-30 13:44:33 Run:1 Running from H:\ Boot Mode: Recovery ============================================== Content of fixlist: ***************** HKU\Filip\...\Policies\Explorer: [] AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll File Not Found AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => "C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll" File Not Found Startup: C:\Users\Filip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\8CB6068E6.lnk ShortcutTarget: 8CB6068E6.lnk -> C:\Windows\System32\regsvr32.exe (Microsoft Corporation) S2 Winmgmt; C:\ProgramData\8CB6068E6.zot [350208 2014-11-30] () S2 HiPatchService; D:\Hi-Rez Studios\HiPatchService.exe [X] S2 Update PodoWeb; "C:\Program Files (x86)\PodoWeb\updatePodoWeb.exe" [X] S2 Util PodoWeb; "C:\Program Files (x86)\PodoWeb\bin\utilPodoWeb.exe" [X] S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [X] S3 SPPD; \??\C:\Windows\system32\drivers\SPPD.sys [X] S1 {00c97d86-accb-4288-9972-6d929c1fe93a}Gw64; system32\drivers\{00c97d86-accb-4288-9972-6d929c1fe93a}Gw64.sys [X] S1 {19b94dbb-e67e-43ec-827b-c943f0fc9c16}Gw64; system32\drivers\{19b94dbb-e67e-43ec-827b-c943f0fc9c16}Gw64.sys [X] S1 {972b8ad0-9d6f-4688-9227-759df6914df4}Gw64; system32\drivers\{972b8ad0-9d6f-4688-9227-759df6914df4}Gw64.sys [X] S1 {c0b542ce-0b43-4536-9ff3-886eaf9fb44c}w64; system32\drivers\{c0b542ce-0b43-4536-9ff3-886eaf9fb44c}w64.sys [X] GroupPolicy: Group Policy on Chrome detected <======= ATTENTION C:\ProgramData\6E8606BC8.cpp C:\ProgramData\8CB6068E6.zot C:\ProgramData\01e58235-010d-43b1-8340-277d43a75321 C:\Users\Filip\AppData\Local\cache ***************** HKU\Filip\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => Value deleted successfully. "C:\\PROGRA~2\\SearchProtect\\SearchProtect\\bin\\SPVC64Loader.dll" => Value Data removed successfully. "C:\\PROGRA~2\\SearchProtect\\SearchProtect\\bin\\SPVC32Loader.dll" => Value Data removed successfully. C:\Users\Filip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\8CB6068E6.lnk => Moved successfully. C:\Windows\System32\regsvr32.exe => Moved successfully. Winmgmt => Service restored successfully. HiPatchService => Service deleted successfully. Update PodoWeb => Service deleted successfully. Util PodoWeb => Service deleted successfully. nvvad_WaveExtensible => Service deleted successfully. SPPD => Service deleted successfully. {00c97d86-accb-4288-9972-6d929c1fe93a}Gw64 => Service deleted successfully. {19b94dbb-e67e-43ec-827b-c943f0fc9c16}Gw64 => Service deleted successfully. {972b8ad0-9d6f-4688-9227-759df6914df4}Gw64 => Service deleted successfully. {c0b542ce-0b43-4536-9ff3-886eaf9fb44c}w64 => Service deleted successfully. C:\Windows\System32\GroupPolicy\Machine => Moved successfully. C:\Windows\System32\GroupPolicy\GPT.ini => Moved successfully. C:\ProgramData\6E8606BC8.cpp => Moved successfully. C:\ProgramData\8CB6068E6.zot => Moved successfully. C:\ProgramData\01e58235-010d-43b1-8340-277d43a75321 => Moved successfully. C:\Users\Filip\AppData\Local\cache => Moved successfully. ==== End of Fixlog ====