Fix result of Farbar Recovery Scan Tool (x64) Version:11-07-2015 Ran by Piotr at 2015-07-11 19:51:29 Run:1 Running from C:\Users\Piotr\Desktop Loaded Profiles: Piotr (Available Profiles: Piotr & UpdatusUser) Boot Mode: Normal ============================================== fixlist content: ***************** CustomCLSID: HKU\S-1-5-21-937016041-3120781582-518176832-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Piotr\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll No File Task: {30DD190C-8669-40CD-A5A6-540774E3061A} - System32\Tasks\Installer_sense => C:\Users\Piotr\AppData\Local\Installer\Installsense_27251\ins_postInst.exe <==== ATTENTION Task: {8D34E344-EBBE-4B8B-9602-370E0461276B} - System32\Tasks\Installer_iwebar => C:\Users\Piotr\AppData\Local\Installer\Installiwebar_27251\ins_postInst.exe <==== ATTENTION Task: {CB49E92B-65D4-49F0-BA42-63D1A43C9D8B} - System32\Tasks\{D27A4CB7-5D45-4DD3-A1A0-6A8900B49665} => pcalua.exe -a C:\Users\Piotr\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=smt C:\Users\Piotr\AppData\Roaming\mystartsearch Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} StartMenuInternet: Google Chrome.6GMBEWATBMHSQEFHAYPHSUHGDI - C:\Users\Piotr\AppData\Local\Google\Chrome\Application\chrome.exe S2 Update SourceApp; "C:\Program Files (x86)\SourceApp\updateSourceApp.exe" [X] C:\Users\Piotr\Desktop\SpyHunter-Installer.exe EmptyTemp: ***************** "HKU\S-1-5-21-937016041-3120781582-518176832-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{30DD190C-8669-40CD-A5A6-540774E3061A}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{30DD190C-8669-40CD-A5A6-540774E3061A}" => key removed successfully C:\Windows\System32\Tasks\Installer_sense => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Installer_sense" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8D34E344-EBBE-4B8B-9602-370E0461276B}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D34E344-EBBE-4B8B-9602-370E0461276B}" => key removed successfully C:\Windows\System32\Tasks\Installer_iwebar => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Installer_iwebar" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CB49E92B-65D4-49F0-BA42-63D1A43C9D8B}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CB49E92B-65D4-49F0-BA42-63D1A43C9D8B}" => key removed successfully C:\Windows\System32\Tasks\{D27A4CB7-5D45-4DD3-A1A0-6A8900B49665} => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{D27A4CB7-5D45-4DD3-A1A0-6A8900B49665}" => key removed successfully "C:\Users\Piotr\AppData\Roaming\mystartsearch" => File/Folder not found. ========= reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= "C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}" => File/Folder not found. HKLM\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command\\Default => value restored successfully Update SourceApp => Service removed successfully C:\Users\Piotr\Desktop\SpyHunter-Installer.exe => moved successfully. EmptyTemp: => 1008.6 MB temporary data Removed. The system needed a reboot.. ==== End of Fixlog 19:51:39 ====