Fix result of Farbar Recovery Scan Tool (x64) Version:21-06-2015 01 Ran by nand at 2015-06-21 14:24:21 Run:3 Running from C:\Users\nand\Downloads Loaded Profiles: nand (Available Profiles: nand) Boot Mode: Normal ============================================== fixlist content: ***************** CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll No File CustomCLSID: HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll No File Task: {206BD9BA-3369-4EEA-9418-432E9ED4A72A} - \globalUpdateUpdateTaskMachineCore No Task File <==== ATTENTION Task: {C9035508-4077-43DB-A39B-AB0CFB809E62} - \globalUpdateUpdateTaskMachineUA No Task File <==== ATTENTION Task: C:\Windows\Tasks\Bidaily Synchronize Task[973b].job => c:\programdata\{a57a407d-0a1c-410c-a57a-a407d0a101f4}\f1_2014_pc_-_-_game (1).exe <==== ATTENTION c:\programdata\{a57a407d-0a1c-410c-a57a-a407d0a101f4} C:\Program Files (x86)\Rising C:\program files (x86)\common files\baidu HKLM\...\Run: [baidusdTray] => "C:\Program Files (x86)\Baidu\BaiduSd\3.0.0.4605\baidusdTray.exe" -stmd=3 C:\Program Files (x86)\Baidu HKU\S-1-5-21-740415962-4211020823-285711137-1000\...\Run: [Akamai NetSession Interface] => "C:\Users\nand\AppData\Local\Akamai\netsession_win.exe" C:\Users\nand\AppData\Local\Akamai\netsession_win.exe CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION HKU\S-1-5-21-740415962-4211020823-285711137-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION BHO: PriceMinus -> {5AB30FD9-2AD4-49A7-AE9A-E5F4441922E5} -> C:\Program Files (x86)\PriceMinus\IiNVnZnl4GaN8a.x64.dll No File BHO: bestadblocker -> {741C982F-4669-4217-86C1-686B4BCED847} -> C:\Program Files (x86)\bestadblocker\VuxJtDGlvspgrC.x64.dll [2015-06-19] () C:\Program Files (x86)\PriceMinus C:\Program Files (x86)\bestadblocker Locked "BFE" service could not be unlocked. <===== ATTENTION U4 BaiduHips; C:\Program Files (x86)\Common Files\Baidu\BaiduHips\1.2.0.751\BaiduHips.exe [X] U4 RsRavMon; "C:\Program Files (x86)\Rising\RAV\ravmond.exe" [X] U1 bd0001; C:\Windows\System32\DRIVERS\bd0001.sys [202576 2015-04-08] (Baidu) U4 BDDefense; C:\Windows\System32\drivers\BDDefense.sys [103240 2015-04-08] (Baidu) U1 bd0002; system32\DRIVERS\bd0002.sys [X] U3 blzblk; \??\C:\Windows\system32\drivers\blzblk.sys [X] U4 sysmon; system32\DRIVERS\sysmon.sys [X] C:\Program Files (x86)\2db321c8-69b7-4dd1-acf8-4d551cdaf0f7 C:\Windows\system32\Drivers\bd0001.sys C:\Windows\system32\Drivers\BDDefense.sys C:\ProgramData\Baidu C:\ProgramData\Rising :\Windows\system32\Drivers\rsndisp.sys EmptyTemp: ***************** HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98} => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008} => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{206BD9BA-3369-4EEA-9418-432E9ED4A72A}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{206BD9BA-3369-4EEA-9418-432E9ED4A72A}" => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C9035508-4077-43DB-A39B-AB0CFB809E62}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C9035508-4077-43DB-A39B-AB0CFB809E62}" => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA => key not found. C:\Windows\Tasks\Bidaily Synchronize Task[973b].job not found. "c:\programdata\{a57a407d-0a1c-410c-a57a-a407d0a101f4}" => File/Folder not found. "C:\Program Files (x86)\Rising" => File/Folder not found. "C:\program files (x86)\common files\baidu" => File/Folder not found. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\baidusdTray => value removed successfully C:\Program Files (x86)\Baidu => moved successfully. HKU\S-1-5-21-740415962-4211020823-285711137-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => value not found. "C:\Users\nand\AppData\Local\Akamai\netsession_win.exe" => File/Folder not found. HKLM\SOFTWARE\Policies\Google => key not found. HKU\S-1-5-21-740415962-4211020823-285711137-1000\SOFTWARE\Policies\Microsoft\Internet Explorer => key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5AB30FD9-2AD4-49A7-AE9A-E5F4441922E5} => key not found. HKCR\CLSID\{5AB30FD9-2AD4-49A7-AE9A-E5F4441922E5} => key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{741C982F-4669-4217-86C1-686B4BCED847} => key not found. HKCR\CLSID\{741C982F-4669-4217-86C1-686B4BCED847} => key not found. "C:\Program Files (x86)\PriceMinus" => File/Folder not found. "C:\Program Files (x86)\bestadblocker" => File/Folder not found. Locked "BFE" service could not be unlocked. <===== ATTENTION => Error: No automatic fix found for this entry. BaiduHips => Service removed successfully RsRavMon => Service removed successfully bd0001 => Unable to stop service. bd0001 => Service removed successfully BDDefense => Service removed successfully bd0002 => Service removed successfully blzblk => Service removed successfully sysmon => Service removed successfully C:\Program Files (x86)\2db321c8-69b7-4dd1-acf8-4d551cdaf0f7 => moved successfully. C:\Windows\system32\Drivers\bd0001.sys => moved successfully. C:\Windows\system32\Drivers\BDDefense.sys => moved successfully. C:\ProgramData\Baidu => moved successfully. C:\ProgramData\Rising => moved successfully. :\Windows\system32\Drivers\rsndisp.sys => Error: No automatic fix found for this entry. EmptyTemp: => 54.5 MB temporary data Removed. The system needed a reboot.. ==== End of Fixlog 14:24:30 ====