Fix result of Farbar Recovery Scan Tool (x64) Version: 25-05-2015 Ran by Przemek at 2015-05-26 09:56:08 Run:1 Running from C:\Users\Przemek\Downloads Loaded Profiles: Przemek (Available Profiles: Przemek) Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: CreateRestorePoint: R2 ba96e052; c:\Program Files (x86)\SystemPlus\SystemPlus.dll [1740288 2015-05-16] () [] Task: {6802F308-9549-452C-A953-0424C478371A} - System32\Tasks\Bidaily Synchronize Task[pr] => c:\programdata\{1d473b86-4251-4548-1d47-73b86425ee19}\ghabvdvd3.part08.rar.exe [2014-05-16] () <==== ATTENTION Task: C:\Windows\Tasks\Bidaily Synchronize Task[pr].job => c:\programdata\{1d473b86-4251-4548-1d47-73b86425ee19}\ghabvdvd3.part08.rar.exe <==== ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION C:\Program Files\Enigma Software Group C:\Program Files (x86)\Elex-tech C:\Program Files (x86)\PRiceMinUUs C:\Program Files (x86)\RaoobboaSaaver C:\Program Files (x86)\SystemPlus C:\Programdata\{1d473b86-4251-4548-1d47-73b86425ee19} C:\ProgramData\4208575645622143333 C:\Users\Przemek\AppData\Local\Temp.dat C:\Users\Przemek\AppData\Local\{4FE6EC70-3854-453C-BAE8-06CEA0D89136} C:\Users\Przemek\AppData\Local\Google C:\Users\Przemek\AppData\Roaming\sp_data.sys C:\Users\Przemek\AppData\Roaming\eCyber C:\Users\Przemek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Pełne czyszczenie śmieci.lnk C:\Users\Przemek\Downloads\SpyHunter-Installer.exe C:\Users\Przemek\Downloads\yet_another_cleaner_sk.exe C:\Users\Public\Desktop\ASUS\Entertainment\Game Park Console.lnk C:\Users\Public\Desktop\ASUS\Word processor\Adobe Reader X.lnk C:\Windows\system32\log Reg: reg delete HKCU\Software\Google /f Reg: reg delete HKLM\SOFTWARE\Google /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Google /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{ba96e052} /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{45606A90-3363-3A3B-1C15-C40E77F4DAA0} /f EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. ba96e052 => Service not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6802F308-9549-452C-A953-0424C478371A}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6802F308-9549-452C-A953-0424C478371A}" => key Removed successfully C:\Windows\System32\Tasks\Bidaily Synchronize Task[pr] => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bidaily Synchronize Task[pr]" => key Removed successfully C:\Windows\Tasks\Bidaily Synchronize Task[pr].job => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => key Removed successfully C:\Program Files\Enigma Software Group => Moved successfully. C:\Program Files (x86)\Elex-tech => Moved successfully. C:\Program Files (x86)\PRiceMinUUs => Moved successfully. C:\Program Files (x86)\RaoobboaSaaver => Moved successfully. "C:\Program Files (x86)\SystemPlus" => File/Folder not found. C:\Programdata\{1d473b86-4251-4548-1d47-73b86425ee19} => Moved successfully. C:\ProgramData\4208575645622143333 => Moved successfully. C:\Users\Przemek\AppData\Local\Temp.dat => Moved successfully. C:\Users\Przemek\AppData\Local\{4FE6EC70-3854-453C-BAE8-06CEA0D89136} => Moved successfully. C:\Users\Przemek\AppData\Local\Google => Moved successfully. C:\Users\Przemek\AppData\Roaming\sp_data.sys => Moved successfully. C:\Users\Przemek\AppData\Roaming\eCyber => Moved successfully. C:\Users\Przemek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Pełne czyszczenie śmieci.lnk => Moved successfully. C:\Users\Przemek\Downloads\SpyHunter-Installer.exe => Moved successfully. "C:\Users\Przemek\Downloads\yet_another_cleaner_sk.exe" => File/Folder not found. C:\Users\Public\Desktop\ASUS\Entertainment\Game Park Console.lnk => Moved successfully. C:\Users\Public\Desktop\ASUS\Word processor\Adobe Reader X.lnk => Moved successfully. C:\Windows\system32\log => Moved successfully. ========= reg delete HKCU\Software\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{ba96e052} /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{45606A90-3363-3A3B-1C15-C40E77F4DAA0} /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= EmptyTemp: => Removed 641.1 MB temporary data. The system needed a reboot. ==== End of Fixlog 09:57:20 ====