Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 14-12-2014 01 Ran by kokix_000 at 2014-12-16 20:56:31 Run:1 Running from C:\Users\kokix_000\Desktop Loaded Profile: kokix_000 (Available profiles: kokix_000) Boot Mode: Safe Mode (with Networking) ============================================== Content of fixlist: ***************** CloseProcesses: CMD: type C:\Users\kokix_000\AppData\Roaming\Mozilla\Firefox\Profiles\ebfm7wye.default\user.js CMD: copy /y C:\Users\kokix_000\AppData\Roaming\Mozilla\Firefox\Profiles\ebfm7wye.default\prefs.js C:\Users\kokix_000\Desktop\prefs.js FF DefaultSearchUrl: hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT1700389&SearchSource=3&q={searchTerms} FF Keyword.URL: FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> D:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll No File CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION Task: {18D32FD3-D9F5-493D-B8AC-EDED87B9D9F2} - System32\Tasks\FSSUpdaterService => C:\Users\kokix_000\AppData\Roaming\UpdaterService\FSSUpdaterService.exe [2014-07-23] () Task: {3ABF479A-8C23-489C-8D63-C8BF0E9CFE31} - System32\Tasks\{FF348FC6-4D16-47B0-87EB-2224F9688F5E} => pcalua.exe -a C:\Users\kokix_000\Desktop\Downloads\DELL_WIRELESS-370-BLUETOOTH-_A02-1_R235898.exe -d C:\Users\kokix_000\Desktop\Downloads S1 Bfilter; \??\C:\Windows\System32\drivers\Bfilter.sys [X] S1 Bfmon; \??\C:\Windows\System32\drivers\Bfmon.sys [X] S0 Bhbase; System32\drivers\Bhbase.sys [X] S3 BHipsEx; \??\C:\Windows\System32\drivers\BHipsEx.sys [X] S1 Bnbase; System32\drivers\bnbasex.sys [X] S1 Bndef; \??\C:\Windows\System32\drivers\bndef.sys [X] S1 Bprotect; \??\C:\Windows\System32\drivers\Bprotect.sys [X] S3 dcdbas; \SystemRoot\System32\drivers\dcdbas32.sys [X] S3 DFUBTUSB; \SystemRoot\System32\Drivers\frmupgr.sys [X] S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X] S3 pccsmcfd; \SystemRoot\system32\DRIVERS\pccsmcfd.sys [X] C:\Program Files\Mozilla Firefox\plugins C:\Users\kokix_000\AppData\Local\70149b02515b3bb20dd492.47983420 C:\Users\kokix_000\AppData\Roaming\Baidu C:\Users\kokix_000\AppData\Roaming\UpdaterService EmptyTemp: ***************** Processes closed successfully. ========= type C:\Users\kokix_000\AppData\Roaming\Mozilla\Firefox\Profiles\ebfm7wye.default\user.js ========= user_pref("network.http.max-persistent-connections-per-server", 4); user_pref("content.max.tokenizing.time", 1800000); user_pref("content.notify.interval", 600000); user_pref("content.switch.threshold", 600000); user_pref("nglayout.initialpaint.delay", 600); user_pref("extentions.webcake.installId", "26111b9f-f7d9-43de-ad83-9f421b05ca3b"); user_pref("extentions.webcake.defaultEnableAppsList", "layers/banner,layers/inline,layers/search,layers/shopping,newOffers/wc"); ========= End of CMD: ========= ========= copy /y C:\Users\kokix_000\AppData\Roaming\Mozilla\Firefox\Profiles\ebfm7wye.default\prefs.js C:\Users\kokix_000\Desktop\prefs.js ========= 1 file(s) copied. ========= End of CMD: ========= Firefox DefaultSearchUrl deleted successfully. Firefox Keyword.URL deleted successfully. "HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf" => Key deleted successfully. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{18D32FD3-D9F5-493D-B8AC-EDED87B9D9F2}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{18D32FD3-D9F5-493D-B8AC-EDED87B9D9F2}" => Key deleted successfully. C:\Windows\System32\Tasks\FSSUpdaterService => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FSSUpdaterService" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3ABF479A-8C23-489C-8D63-C8BF0E9CFE31}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3ABF479A-8C23-489C-8D63-C8BF0E9CFE31}" => Key deleted successfully. C:\Windows\System32\Tasks\{FF348FC6-4D16-47B0-87EB-2224F9688F5E} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{FF348FC6-4D16-47B0-87EB-2224F9688F5E}" => Key deleted successfully. Bfilter => Service deleted successfully. Bfmon => Service deleted successfully. Bhbase => Service deleted successfully. BHipsEx => Service deleted successfully. Bnbase => Service deleted successfully. Bndef => Service deleted successfully. Bprotect => Service deleted successfully. dcdbas => Service deleted successfully. DFUBTUSB => Service deleted successfully. EagleXNt => Service deleted successfully. pccsmcfd => Service deleted successfully. C:\Program Files\Mozilla Firefox\plugins => Moved successfully. C:\Users\kokix_000\AppData\Local\70149b02515b3bb20dd492.47983420 => Moved successfully. C:\Users\kokix_000\AppData\Roaming\Baidu => Moved successfully. C:\Users\kokix_000\AppData\Roaming\UpdaterService => Moved successfully. EmptyTemp: => Removed 117.4 MB temporary data. The system needed a reboot. ==== End of Fixlog ====