Fix result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01 Ran by Alicja at 2015-07-02 14:19:31 Run:1 Running from C:\Users\Alicja\Downloads Loaded Profiles: Alicja (Available Profiles: Alicja) Boot Mode: Normal ============================================== fixlist content: ***************** ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File Task: {4143BCA8-C235-477D-8EA3-9A979EBBD909} - System32\Tasks\{B5024A63-5535-4CA9-86D5-5121842A3072} => pcalua.exe -a "C:\Program Files (x86)\Xilisoft\Video Converter Ultimate 6\Uninstall.exe" Task: {4E2A56E8-2FF6-47D9-8E56-8CAE7E62772D} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe Task: {B5ACB932-810A-4CD9-B9AF-BF244352F0BE} - System32\Tasks\{3EAF8A8D-B7DE-4FB1-AF80-FD1549F4CAE9} => pcalua.exe -a "C:\Program Files (x86)\Essential Data Tools\AnyReader\UninsHs.exe" -c /u0={AEB8F226-C238-4636-A289-E540B725B5BB} C:\ProgramData\wmzddnmb.cix C:\ProgramData\TEMP C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Recovery ***************** "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => key removed successfully HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4143BCA8-C235-477D-8EA3-9A979EBBD909}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4143BCA8-C235-477D-8EA3-9A979EBBD909}" => key removed successfully C:\Windows\System32\Tasks\{B5024A63-5535-4CA9-86D5-5121842A3072} => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B5024A63-5535-4CA9-86D5-5121842A3072}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{4E2A56E8-2FF6-47D9-8E56-8CAE7E62772D}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4E2A56E8-2FF6-47D9-8E56-8CAE7E62772D}" => key removed successfully C:\Windows\System32\Tasks\AutoKMS => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B5ACB932-810A-4CD9-B9AF-BF244352F0BE}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B5ACB932-810A-4CD9-B9AF-BF244352F0BE}" => key removed successfully C:\Windows\System32\Tasks\{3EAF8A8D-B7DE-4FB1-AF80-FD1549F4CAE9} => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{3EAF8A8D-B7DE-4FB1-AF80-FD1549F4CAE9}" => key removed successfully C:\ProgramData\wmzddnmb.cix => moved successfully. C:\ProgramData\TEMP => moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Recovery => moved successfully. ==== End of Fixlog 14:19:32 ====