Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 31-01-2015 01 Ran by Karolina at 2015-01-31 20:00:48 Run:2 Running from C:\Users\Karolina\Downloads Loaded Profiles: Karolina (Available profiles: Karolina) Boot Mode: Normal ============================================== Content of fixlist: ***************** CHR HomePage: Default -> https://mysearch.avg.com?cid={FB4215A1-B731-4501-A2D6-AD1838594A26}&mid=8bd0cd6fdd0d47d0af0f59e75b65a113-bc3ae82cd2758b5f87515caab2e724511db09901&lang=pl&ds=gm011&coid=avgtbdisgm&cmpid=&pr=sa&d=2014-02-16 19:20:35&v=18.1.9.799&pid=safeguard&sg=&sap=hp CHR StartupUrls: Default -> "https://mysearch.avg.com?cid={FB4215A1-B731-4501-A2D6-AD1838594A26}&mid=8bd0cd6fdd0d47d0af0f59e75b65a113-bc3ae82cd2758b5f87515caab2e724511db09901&lang=pl&ds=gm011&coid=avgtbdisgm&cmpid=&pr=sa&d=2014-02-16 19:20:35&v=18.1.9.799&pid=safeguard&sg=&sap=hp" BHO-x32: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File C:\Program Files\PDFCreator C:\Program Files (x86)\GUT8C39.tmp C:\Program Files (x86)\GUTFE13.tmp C:\Program Files (x86)\Acer GameZone C:\Program Files (x86)\AVG SafeGuard toolbar C:\Program Files (x86)\AVG Security Toolbar C:\Program Files (x86)\BearShare Applications C:\Program Files (x86)\Common Files\CyberLink C:\Program Files (x86)\Common Files\Oberon Media C:\Program Files (x86)\FoxTabFLVPlayer C:\Program Files (x86)\FoxTabMusicConverter C:\Program Files (x86)\GUM8C38.tmp C:\Program Files (x86)\GUMFE12.tmp C:\Program Files (x86)\Java C:\Program Files (x86)\McAfee C:\Program Files (x86)\Mega Browse C:\Program Files (x86)\Mozilla Firefox.bak C:\Program Files (x86)\RightSurf C:\Program Files (x86)\SAGEM C:\Program Files (x86)\SecurityXploded C:\Program Files (x86)\SweetPacks C:\Program Files (x86)\Temp C:\Program Files (x86)\WebConnect C:\Program Files (x86)\weBsave C:\Program Files (x86)\YoutubeAdblocker C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} C:\ProgramData\10166 C:\ProgramData\AirportMania C:\ProgramData\Alwil Software C:\ProgramData\Ask C:\ProgramData\AVAST Software C:\ProgramData\AVG2014 C:\ProgramData\Avg_Update_0814tb C:\ProgramData\Avg_Update_1214tb C:\ProgramData\Babylon C:\ProgramData\CyberLink C:\ProgramData\DSearchLink C:\ProgramData\f5c5bc419f8d1d48 C:\ProgramData\Gadu-Gadu 10 C:\ProgramData\IBUpdaterService C:\ProgramData\InstallMate C:\ProgramData\McAfee C:\ProgramData\OpenFM C:\ProgramData\Oracle C:\ProgramData\Partner C:\ProgramData\Sun C:\ProgramData\tmp C:\ProgramData\Tlen.pl C:\ProgramData\TuneUp Software C:\ProgramData\weBsave C:\ProgramData\YoutubeAdblocker C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games C:\Users\Karolina\AppData\Local\{A608761E-4E7B-4A49-A5B2-5908951116F6} C:\Users\Karolina\AppData\Local\avgchrome C:\Users\Karolina\AppData\Local\BearShare C:\Users\Karolina\AppData\Local\Comodo C:\Users\Karolina\AppData\Local\Cyberlink C:\Users\Karolina\AppData\Local\Torch C:\Users\Karolina\AppData\LocalLow\Sun C:\Users\Karolina\AppData\Roaming\7go.ico C:\Users\Karolina\AppData\Roaming\speedanalysis.ico C:\Users\Karolina\AppData\Roaming\AnvSoft C:\Users\Karolina\AppData\Roaming\BESTplayer C:\Users\Karolina\AppData\Roaming\BitTorrent C:\Users\Karolina\AppData\Roaming\CyberLink C:\Users\Karolina\AppData\Roaming\Torreador C:\Users\Karolina\AppData\Roaming\Torrius C:\Users\Karolina\AppData\Roaming\TuneUp Software C:\Users\Karolina\Desktop\VIDEO_TS\AVG 2014.lnk C:\Windows\System32\Tasks\Adobe Acrobat Update Task CMD: for /d %f in (C:\Users\Karolina\AppData\Local\{*}) do rd /s /q "%f" Reg: reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {6A1806CD-94D4-4689-BA73-E35EA1EA9990} /f ***************** Chrome HomePage deleted successfully. Chrome StartupUrls deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}" => Key deleted successfully. HKCR\Wow6432Node\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} => Key not found. C:\Program Files\PDFCreator => Moved successfully. C:\Program Files (x86)\GUT8C39.tmp => Moved successfully. C:\Program Files (x86)\GUTFE13.tmp => Moved successfully. C:\Program Files (x86)\Acer GameZone => Moved successfully. C:\Program Files (x86)\AVG SafeGuard toolbar => Moved successfully. C:\Program Files (x86)\AVG Security Toolbar => Moved successfully. C:\Program Files (x86)\BearShare Applications => Moved successfully. C:\Program Files (x86)\Common Files\CyberLink => Moved successfully. C:\Program Files (x86)\Common Files\Oberon Media => Moved successfully. C:\Program Files (x86)\FoxTabFLVPlayer => Moved successfully. C:\Program Files (x86)\FoxTabMusicConverter => Moved successfully. C:\Program Files (x86)\GUM8C38.tmp => Moved successfully. C:\Program Files (x86)\GUMFE12.tmp => Moved successfully. C:\Program Files (x86)\Java => Moved successfully. C:\Program Files (x86)\McAfee => Moved successfully. C:\Program Files (x86)\Mega Browse => Moved successfully. "C:\Program Files (x86)\Mozilla Firefox.bak" => File/Directory not found. C:\Program Files (x86)\RightSurf => Moved successfully. C:\Program Files (x86)\SAGEM => Moved successfully. C:\Program Files (x86)\SecurityXploded => Moved successfully. C:\Program Files (x86)\SweetPacks => Moved successfully. C:\Program Files (x86)\Temp => Moved successfully. C:\Program Files (x86)\WebConnect => Moved successfully. C:\Program Files (x86)\weBsave => Moved successfully. C:\Program Files (x86)\YoutubeAdblocker => Moved successfully. C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} => Moved successfully. C:\ProgramData\10166 => Moved successfully. C:\ProgramData\AirportMania => Moved successfully. C:\ProgramData\Alwil Software => Moved successfully. C:\ProgramData\Ask => Moved successfully. C:\ProgramData\AVAST Software => Moved successfully. C:\ProgramData\AVG2014 => Moved successfully. C:\ProgramData\Avg_Update_0814tb => Moved successfully. C:\ProgramData\Avg_Update_1214tb => Moved successfully. C:\ProgramData\Babylon => Moved successfully. C:\ProgramData\CyberLink => Moved successfully. C:\ProgramData\DSearchLink => Moved successfully. C:\ProgramData\f5c5bc419f8d1d48 => Moved successfully. C:\ProgramData\Gadu-Gadu 10 => Moved successfully. C:\ProgramData\IBUpdaterService => Moved successfully. C:\ProgramData\InstallMate => Moved successfully. C:\ProgramData\McAfee => Moved successfully. C:\ProgramData\OpenFM => Moved successfully. C:\ProgramData\Oracle => Moved successfully. C:\ProgramData\Partner => Moved successfully. C:\ProgramData\Sun => Moved successfully. C:\ProgramData\tmp => Moved successfully. C:\ProgramData\Tlen.pl => Moved successfully. C:\ProgramData\TuneUp Software => Moved successfully. C:\ProgramData\weBsave => Moved successfully. C:\ProgramData\YoutubeAdblocker => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games => Moved successfully. C:\Users\Karolina\AppData\Local\{A608761E-4E7B-4A49-A5B2-5908951116F6} => Moved successfully. C:\Users\Karolina\AppData\Local\avgchrome => Moved successfully. C:\Users\Karolina\AppData\Local\BearShare => Moved successfully. C:\Users\Karolina\AppData\Local\Comodo => Moved successfully. C:\Users\Karolina\AppData\Local\Cyberlink => Moved successfully. C:\Users\Karolina\AppData\Local\Torch => Moved successfully. C:\Users\Karolina\AppData\LocalLow\Sun => Moved successfully. C:\Users\Karolina\AppData\Roaming\7go.ico => Moved successfully. C:\Users\Karolina\AppData\Roaming\speedanalysis.ico => Moved successfully. C:\Users\Karolina\AppData\Roaming\AnvSoft => Moved successfully. C:\Users\Karolina\AppData\Roaming\BESTplayer => Moved successfully. C:\Users\Karolina\AppData\Roaming\BitTorrent => Moved successfully. C:\Users\Karolina\AppData\Roaming\CyberLink => Moved successfully. C:\Users\Karolina\AppData\Roaming\Torreador => Moved successfully. C:\Users\Karolina\AppData\Roaming\Torrius => Moved successfully. C:\Users\Karolina\AppData\Roaming\TuneUp Software => Moved successfully. C:\Users\Karolina\Desktop\VIDEO_TS\AVG 2014.lnk => Moved successfully. C:\Windows\System32\Tasks\Adobe Acrobat Update Task => Moved successfully. ========= for /d %f in (C:\Users\Karolina\AppData\Local\{*}) do rd /s /q "%f" ========= ========= End of CMD: ========= ========= reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {6A1806CD-94D4-4689-BA73-E35EA1EA9990} /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ==== End of Fixlog 20:01:22 ====