Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 29-04-2015 Ran by User at 2015-04-30 13:37:20 Run:1 Running from C:\Documents and Settings\User\Pulpit Loaded Profiles: User & UpdatusUser (Available profiles: User & UpdatusUser) Boot Mode: Normal ============================================== Content of fixlist: ***************** HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-1123561945-789336058-682003330-1004\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION URLSearchHook: [S-1-5-21-1123561945-789336058-682003330-1005] ATTENTION ==> Default URLSearchHook is missing. Reg: reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" /f Reg: reg delete "HKU\S-1-5-21-1123561945-789336058-682003330-1004\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f CHR StartupUrls: Default -> "hxxp://www.oursurfing.com/?type=hp&ts=1430260888&from=amt&uid=ST3200827AS_4ND2DS5AXXXX4ND2DS5A" CHR DefaultSearchKeyword: Default -> oursurfing CHR DefaultSearchURL: Default -> http://www.oursurfin...q={searchTerms} S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X] S3 cpuz130; \??\C:\DOCUME~1\User\USTAWI~1\Temp\cpuz130\cpuz_x32.sys [X] S3 EagleXNt; \??\C:\WINDOWS1\system32\drivers\EagleXNt.sys [X] S3 OSFMount; \??\C:\CS GO\Counter-Strike Global Offensive\image\x86\OSFMount.sys [X] EmptyTemp: ***************** "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully. "HKU\S-1-5-21-1123561945-789336058-682003330-1004\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully. Error setting Default URLSearchHook. ========= reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-21-1123561945-789336058-682003330-1004\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" ========= Permanently delete the registry key S-1-5-21-1123561945-789336058-682003330-1004\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} (Y/N)? Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= Chrome StartupUrls deleted successfully. Chrome DefaultSearchKeyword not detected. Chrome DefaultSearchURL not detected. VBoxNetFlt => Service deleted successfully. cpuz130 => Service deleted successfully. EagleXNt => Service deleted successfully. OSFMount => Service deleted successfully. EmptyTemp: => Removed 370.2 MB temporary data. The system needed a reboot. ==== End of Fixlog 13:37:40 ====