Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 29-04-2015 01 Ran by Damian at 2015-05-01 10:46:04 Run:1 Running from C:\Users\Damian\Downloads Loaded Profiles: Damian (Available profiles: Damian) Boot Mode: Normal ============================================== Content of fixlist: ***************** C:\ProgramData\{a2fb8fee-2190-6ab2-a2fb-b8fee2193fb8}\Setup.exe Startup: C:\Users\Damian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Setup.lnk [2015-04-30] ShortcutTarget: Setup.lnk -> C:\ProgramData\{a2fb8fee-2190-6ab2-a2fb-b8fee2193fb8}\Setup.exe () BHO: No Name -> {40d033aa-0b2e-4a9b-ac9c-7950f43ff57b} -> No File BHO: bestadblocker -> {8cc02f2a-da94-408c-83ed-0c41c3a37fc3} -> C:\Program Files (x86)\bestadblocker\p2TZhNHekki8yG.x64.dll [2015-04-30] () BHO: No Name -> {9ca8ab41-cc25-4502-9889-620107ab85f1} -> No File BHO: SalePlus -> {f7da9695-8d35-4e7b-b0c4-b0e20d80f537} -> C:\Program Files (x86)\SalePlus\5hF5ZdwxIGfXji.x64.dll [2015-04-30] () BHO-x32: bestadblocker -> {8cc02f2a-da94-408c-83ed-0c41c3a37fc3} -> C:\Program Files (x86)\bestadblocker\p2TZhNHekki8yG.dll [2015-04-30] () BHO-x32: SalePlus -> {f7da9695-8d35-4e7b-b0c4-b0e20d80f537} -> C:\Program Files (x86)\SalePlus\5hF5ZdwxIGfXji.dll [2015-04-30] () R2 46a69adc; c:\Program Files (x86)\IndepthGeneration\IndepthGeneration.dll [1629184 2015-04-30] () [File not signed] C:\Program Files (x86)\SalePlus C:\Program Files (x86)\bestadblocker C:\ProgramData\mmpcpeiocfndkpfkickinhifkkbgeopm C:\Program Files (x86)\SalePulus C:\Program Files (x86)\IndepthGeneration C:\ProgramData\5012284986389246348 C:\ProgramData\mjobklfbclpdmaiaimjjdpkpmhjnmnag Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f EmptyTemp: ***************** C:\ProgramData\{a2fb8fee-2190-6ab2-a2fb-b8fee2193fb8}\Setup.exe => Moved successfully. C:\Users\Damian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Setup.lnk => Moved successfully. C:\ProgramData\{a2fb8fee-2190-6ab2-a2fb-b8fee2193fb8}\Setup.exe not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{40d033aa-0b2e-4a9b-ac9c-7950f43ff57b} => Key not found. HKCR\CLSID\{40d033aa-0b2e-4a9b-ac9c-7950f43ff57b} => Key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8cc02f2a-da94-408c-83ed-0c41c3a37fc3} => Key not found. "HKCR\CLSID\{8cc02f2a-da94-408c-83ed-0c41c3a37fc3}" => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9ca8ab41-cc25-4502-9889-620107ab85f1} => Key not found. HKCR\CLSID\{9ca8ab41-cc25-4502-9889-620107ab85f1} => Key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f7da9695-8d35-4e7b-b0c4-b0e20d80f537} => Key not found. "HKCR\CLSID\{f7da9695-8d35-4e7b-b0c4-b0e20d80f537}" => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8cc02f2a-da94-408c-83ed-0c41c3a37fc3} => Key not found. "HKCR\Wow6432Node\CLSID\{8cc02f2a-da94-408c-83ed-0c41c3a37fc3}" => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{f7da9695-8d35-4e7b-b0c4-b0e20d80f537} => Key not found. "HKCR\Wow6432Node\CLSID\{f7da9695-8d35-4e7b-b0c4-b0e20d80f537}" => Key deleted successfully. 46a69adc => Service not found. "C:\Program Files (x86)\SalePlus" => File/Directory not found. "C:\Program Files (x86)\bestadblocker" => File/Directory not found. C:\ProgramData\mmpcpeiocfndkpfkickinhifkkbgeopm => Moved successfully. "C:\Program Files (x86)\SalePulus" => File/Directory not found. "C:\Program Files (x86)\IndepthGeneration" => File/Directory not found. C:\ProgramData\5012284986389246348 => Moved successfully. C:\ProgramData\mjobklfbclpdmaiaimjjdpkpmhjnmnag => Moved successfully. ========= reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= EmptyTemp: => Removed 234.9 MB temporary data. The system needed a reboot. ==== End of Fixlog 10:46:14 ====