Fix result of Farbar Recovery Scan Tool (x64) Version:17-08-2015 Ran by Part (2015-08-18 22:41:20) Run:1 Running from C:\Users\Part\Desktop Loaded Profiles: Part & UpdatusUser (Available Profiles: Part & UpdatusUser) Boot Mode: Normal ============================================== fixlist content: ***************** CustomCLSID: HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Part\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Part\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Part\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Part\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Part\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Part\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Part\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File Task: {B4019F47-1BEA-4F23-8BDA-5ACD145473A8} - System32\Tasks\{DD7E4D10-2B67-4988-89BE-8FA27BD96D59} => pcalua.exe -a C:\Users\Part\Desktop\Setup.exe -d C:\Users\Part\Desktop FirewallRules: [{543F3638-59A6-439A-A8EE-861141CB3682}] => (Allow) C:\Users\Part\AppData\Local\TNT2\2.0.0.2000\TNT2User.exe SearchScopes: HKU\S-1-5-21-2165405877-3821843396-3701388017-1000 -> {CE7E8A1C-6C85-431B-83C7-D36E3E92F81F} URL = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=11467 BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll No File Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Toolbar: HKU\S-1-5-21-2165405877-3821843396-3701388017-1000 -> No Name - {00011268-E188-40DF-A514-835FCD78B1BF} - No File Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll No File FF NewTab: FF DefaultSearchEngine: eShield Safe Web FF SelectedSearchEngine: eShield Safe Web FF Homepage: hxxp://services.eshield.com/general/newhometab.php?hometab=home&partner=11467&guid={6E39E77A-A197-432C-B601-CE722C7A16FD}&i= FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File] CHR Extension: (eShield) - C:\Users\Part\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkmjljdbbgogihjcapfhgkonfmccbffp [2015-08-18] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] EmptyTemp: ***************** "HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}" => key removed successfully "HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}" => key removed successfully "HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}" => key removed successfully "HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}" => key removed successfully "HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}" => key removed successfully "HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}" => key removed successfully "HKU\S-1-5-21-2165405877-3821843396-3701388017-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B4019F47-1BEA-4F23-8BDA-5ACD145473A8}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B4019F47-1BEA-4F23-8BDA-5ACD145473A8}" => key removed successfully C:\Windows\System32\Tasks\{DD7E4D10-2B67-4988-89BE-8FA27BD96D59} => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{DD7E4D10-2B67-4988-89BE-8FA27BD96D59}" => key removed successfully HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{543F3638-59A6-439A-A8EE-861141CB3682} => value removed successfully "HKU\S-1-5-21-2165405877-3821843396-3701388017-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CE7E8A1C-6C85-431B-83C7-D36E3E92F81F}" => key removed successfully HKCR\CLSID\{CE7E8A1C-6C85-431B-83C7-D36E3E92F81F} => key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => key removed successfully "HKCR\Wow6432Node\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => key removed successfully HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value removed successfully HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value removed successfully HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => key not found. HKU\S-1-5-21-2165405877-3821843396-3701388017-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{00011268-E188-40DF-A514-835FCD78B1BF} => value removed successfully HKCR\CLSID\{00011268-E188-40DF-A514-835FCD78B1BF} => key not found. "HKCR\PROTOCOLS\Handler\skype-ie-addon-data" => key removed successfully HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8} => key not found. Firefox "newtab" removed successfully Firefox DefaultSearchEngine removed successfully Firefox SelectedSearchEngine removed successfully Firefox "homepage" removed successfully "HKLM\Software\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin" => key removed successfully C:\Users\Part\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkmjljdbbgogihjcapfhgkonfmccbffp => moved successfully. EagleX64 => service removed successfully EmptyTemp: => 21.9 MB temporary data Removed. The system needed a reboot.. ==== End of Fixlog 22:41:26 ====