Fix result of Farbar Recovery Scan Tool (x64) Version:06-08-2015 Ran by Konrad (2015-08-07 01:21:05) Run:1 Running from C:\Users\Konrad\Desktop\frst Loaded Profiles: Konrad (Available Profiles: Konrad) Boot Mode: Normal ============================================== fixlist content: ***************** Task: {02A7F9B3-3962-41EE-9693-2FA9414BDEC4} - System32\Tasks\SoundBoom => c:\programdata\{2a814667-1389-5f07-2a81-14667138199c}\2297785771801901994b.exe <==== ATTENTION c:\programdata\{2a814667-1389-5f07-2a81-14667138199c} Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f HKU\S-1-5-21-1079949116-4080506166-1513378825-1001\...\Run: [AdobeBridge] => [X] GroupPolicy: Group Policy on Chrome detected <======= ATTENTION GroupPolicyScripts: Group Policy detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION S3 atillk64; \??\C:\Program Files (x86)\AMD\System Monitor\atillk64.sys [X] S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X] S3 GPUZ; \??\C:\Windows\TEMP\GPUZ.sys [X] 2015-07-16 21:40 - 2015-08-02 21:11 - 00000009 _____ C:\Users\Konrad\AppData\Roaming\update.dat 2015-07-16 21:40 - 2015-07-17 11:39 - 00000000 _RSHD C:\Users\Konrad\AppData\Roaming\taskmgr EmptyTemp: ***************** "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{02A7F9B3-3962-41EE-9693-2FA9414BDEC4}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{02A7F9B3-3962-41EE-9693-2FA9414BDEC4}" => key removed successfully C:\Windows\System32\Tasks\SoundBoom => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SoundBoom" => key removed successfully "c:\programdata\{2a814667-1389-5f07-2a81-14667138199c}" => File/Folder not found. ========= reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= HKU\S-1-5-21-1079949116-4080506166-1513378825-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value removed successfully C:\Windows\system32\GroupPolicy\Machine => moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully. C:\Windows\SysWOW64\GroupPolicy\GPT.ini => moved successfully. "C:\Windows\system32\GroupPolicy\Machine" => File/Folder not found. "HKLM\SOFTWARE\Policies\Google" => key removed successfully atillk64 => service removed successfully cpuz136 => service removed successfully GPUZ => service removed successfully C:\Users\Konrad\AppData\Roaming\update.dat => moved successfully. C:\Users\Konrad\AppData\Roaming\taskmgr => moved successfully. EmptyTemp: => 3.6 GB temporary data Removed. The system needed a reboot.. ==== End of Fixlog 01:22:02 ====