Fix result of Farbar Recovery Scan Tool (x64) Version:13-08-2015 Ran by SA-LON (2015-08-14 22:59:23) Run:1 Running from C:\Users\SA-LON\Desktop Loaded Profiles: UpdatusUser & SA-LON (Available Profiles: UpdatusUser & SA-LON) Boot Mode: Normal ============================================== fixlist content: ***************** Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f HKLM-x32\...\Run: [LManager] => [X] HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [mobilegeni daemon] => C:\Program Files (x86)\Mobogenie\DaemonProcess.exe Task: {0142719B-5323-438B-9B55-3573AFCD8146} - System32\Tasks\Plus-HD-4.9-updater => C:\Program Files (x86)\Plus-HD-4.9\Plus-HD-4.9-updater.exe <==== ATTENTION Task: {0C74C2B8-A518-47C3-9F18-4919A54EBADF} - System32\Tasks\SaveSenseLiveUpdateTaskMachineCore => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe <==== ATTENTION Task: {14843987-9F3C-466D-89F4-C449E13DFED0} - System32\Tasks\EPUpdater => C:\Users\SA-LON\AppData\Roaming\BabSolution\Shared\BabMaint.exe [2013-08-04] () <==== ATTENTION Task: {476017F6-0BF0-4C38-AC76-D1F20981D9F4} - System32\Tasks\Plus-HD-4.9-chromeinstaller => C:\Program Files (x86)\Plus-HD-4.9\Plus-HD-4.9-chromeinstaller.exe <==== ATTENTION Task: {55A22B5F-C522-4AB6-9F78-0F98C180ABA4} - System32\Tasks\Plus-HD-4.9-enabler => C:\Program Files (x86)\Plus-HD-4.9\Plus-HD-4.9-enabler.exe <==== ATTENTION Task: {5B6C4260-138E-4F93-A638-486AA51D8D80} - System32\Tasks\Digital Sites => C:\Users\SA-LON\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {75CC911A-886E-4495-AB36-DDE0C71EB1D2} - System32\Tasks\Plus-HD-4.9-codedownloader => C:\Program Files (x86)\Plus-HD-4.9\Plus-HD-4.9-codedownloader.exe <==== ATTENTION Task: {978C0D1D-4DF7-48A0-B2AD-BDFEF5AB161D} - System32\Tasks\SaveSense => C:\Users\SA-LON\AppData\Roaming\SAVESE~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {C71BF457-B5B0-475F-9C46-CFBDC6D36DF4} - System32\Tasks\DSite => C:\Users\SA-LON\AppData\Roaming\DSite\UpdateProc\UpdateTask.exe [2013-09-10] () <==== ATTENTION Task: {D2CA7618-6810-4E11-928C-CA5642E972B0} - System32\Tasks\SaveSenseLiveUpdateTaskMachineUA => C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe <==== ATTENTION Task: {F25AE16D-9915-4BFF-8210-448FC40C151E} - System32\Tasks\Plus-HD-4.9-firefoxinstaller => C:\Program Files (x86)\Plus-HD-4.9\Plus-HD-4.9-firefoxinstaller.exe <==== ATTENTION C:\Program Files (x86)\Plus-HD-4.9 C:\Program Files (x86)\SaveSenseLive C:\Users\SA-LON\AppData\Roaming\BabSolution C:\Users\SA-LON\AppData\Roaming\DIGITA~1 C:\Users\SA-LON\AppData\Roaming\DSite C:\Users\SA-LON\AppData\Roaming\SAVESE~1 Reg: reg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 /v "mobilegeni daemon" /f Reg: reg delete HKU\S-1-5-21-920499613-3925150131-2784725071-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v NextLive /f C:\Program Files (x86)\Mobogenie HKU\S-1-5-21-920499613-3925150131-2784725071-1002\...\Run: [NextLive] => C:\Windows\SysWOW64\rundll32.exe "C:\Users\SA-LON\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l C:\Users\SA-LON\AppData\Roaming\newnext.me EmptyTemp: ***************** ========= reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\LManager => value removed successfully HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mobilegeni daemon => value not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0142719B-5323-438B-9B55-3573AFCD8146} => key not found. C:\Windows\System32\Tasks\Plus-HD-4.9-updater not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-4.9-updater => key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0C74C2B8-A518-47C3-9F18-4919A54EBADF} => key not found. C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineCore not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SaveSenseLiveUpdateTaskMachineCore => key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{14843987-9F3C-466D-89F4-C449E13DFED0} => key not found. C:\Windows\System32\Tasks\EPUpdater not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EPUpdater => key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{476017F6-0BF0-4C38-AC76-D1F20981D9F4} => key not found. C:\Windows\System32\Tasks\Plus-HD-4.9-chromeinstaller not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-4.9-chromeinstaller => key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{55A22B5F-C522-4AB6-9F78-0F98C180ABA4} => key not found. C:\Windows\System32\Tasks\Plus-HD-4.9-enabler not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-4.9-enabler => key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5B6C4260-138E-4F93-A638-486AA51D8D80} => key not found. C:\Windows\System32\Tasks\Digital Sites not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Digital Sites => key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75CC911A-886E-4495-AB36-DDE0C71EB1D2} => key not found. C:\Windows\System32\Tasks\Plus-HD-4.9-codedownloader not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-4.9-codedownloader => key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{978C0D1D-4DF7-48A0-B2AD-BDFEF5AB161D} => key not found. C:\Windows\System32\Tasks\SaveSense not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SaveSense => key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C71BF457-B5B0-475F-9C46-CFBDC6D36DF4} => key not found. C:\Windows\System32\Tasks\DSite not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DSite => key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D2CA7618-6810-4E11-928C-CA5642E972B0} => key not found. C:\Windows\System32\Tasks\SaveSenseLiveUpdateTaskMachineUA not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SaveSenseLiveUpdateTaskMachineUA => key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F25AE16D-9915-4BFF-8210-448FC40C151E} => key not found. C:\Windows\System32\Tasks\Plus-HD-4.9-firefoxinstaller not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-4.9-firefoxinstaller => key not found. "C:\Program Files (x86)\Plus-HD-4.9" => File/Folder not found. "C:\Program Files (x86)\SaveSenseLive" => File/Folder not found. "C:\Users\SA-LON\AppData\Roaming\BabSolution" => File/Folder not found. "C:\Users\SA-LON\AppData\Roaming\DIGITA~1" => File/Folder not found. "C:\Users\SA-LON\AppData\Roaming\DSite" => File/Folder not found. "C:\Users\SA-LON\AppData\Roaming\SAVESE~1" => File/Folder not found. ========= reg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 /v "mobilegeni daemon" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKU\S-1-5-21-920499613-3925150131-2784725071-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v NextLive /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= "C:\Program Files (x86)\Mobogenie" => File/Folder not found. HKU\S-1-5-21-920499613-3925150131-2784725071-1002\Software\Microsoft\Windows\CurrentVersion\Run\\NextLive => value not found. "C:\Users\SA-LON\AppData\Roaming\newnext.me" => File/Folder not found. EmptyTemp: => 710.8 MB temporary data Removed. The system needed a reboot.. ==== End of Fixlog 22:59:55 ====