Fix result of Farbar Recovery Scan Tool (x86) Version:17-08-2015 Ran by Administrator (2015-08-18 23:45:55) Run:1 Running from C:\Users\Administrator\Desktop Loaded Profiles: Administrator (Available Profiles: Administrator) Boot Mode: Normal ============================================== fixlist content: ***************** Task: {16E72671-61F1-4E81-9C2B-0CC10BE16BC9} - \Advanced-System Protector_startup -> No File <==== ATTENTION Task: {2928C2F9-EC75-4CE8-AF28-A05AA4AB1F9E} - \PhraseProfessor Auto Updater 1.10.0.21 Pending Update -> No File <==== ATTENTION Task: {2CE75BC5-A788-47F2-B473-6C02891CEE11} - \PhraseProfessor Auto Updater 1.10.0.21 Core -> No File <==== ATTENTION Task: {2D656894-BD7F-45CC-925D-7F30C9D77EBC} - \Microsoft\Windows\WindowsCalendar\Reminders - Administrator -> No File <==== ATTENTION Task: {3F422672-4928-4108-8716-A1BB53EAA0FB} - \globalUpdateUpdateTaskMachineCore -> No File <==== ATTENTION Task: {4FF4F082-9069-463B-BAA4-1EC38A9AF614} - System32\Tasks\zNNNHgS7E3WsX => C:\Users\Administrator\AppData\Roaming\zNNNHgS7E3WsX.exe <==== ATTENTION Task: {798D130B-1A21-4CEC-816C-DEA517C566E6} - \globalUpdateUpdateTaskMachineUA -> No File <==== ATTENTION Task: {93924823-74DA-45CB-933C-DD6A41D7911B} - \SmartWeb Upgrade Trigger Task -> No File <==== ATTENTION C:\Users\Administrator\AppData\Roaming\zNNNHgS7E3WsX.exe GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-2511829651-333839240-3277264240-500\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION SearchScopes: HKU\S-1-5-21-2511829651-333839240-3277264240-500 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X] EmptyTemp: ***************** "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{16E72671-61F1-4E81-9C2B-0CC10BE16BC9}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16E72671-61F1-4E81-9C2B-0CC10BE16BC9}" => key removed successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Advanced-System Protector_startup => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2928C2F9-EC75-4CE8-AF28-A05AA4AB1F9E}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2928C2F9-EC75-4CE8-AF28-A05AA4AB1F9E}" => key removed successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PhraseProfessor Auto Updater 1.10.0.21 Pending Update => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2CE75BC5-A788-47F2-B473-6C02891CEE11}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2CE75BC5-A788-47F2-B473-6C02891CEE11}" => key removed successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PhraseProfessor Auto Updater 1.10.0.21 Core => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2D656894-BD7F-45CC-925D-7F30C9D77EBC}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2D656894-BD7F-45CC-925D-7F30C9D77EBC}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsCalendar\Reminders - Administrator" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3F422672-4928-4108-8716-A1BB53EAA0FB}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3F422672-4928-4108-8716-A1BB53EAA0FB}" => key removed successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4FF4F082-9069-463B-BAA4-1EC38A9AF614}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4FF4F082-9069-463B-BAA4-1EC38A9AF614}" => key removed successfully. C:\Windows\System32\Tasks\zNNNHgS7E3WsX => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\zNNNHgS7E3WsX" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{798D130B-1A21-4CEC-816C-DEA517C566E6}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{798D130B-1A21-4CEC-816C-DEA517C566E6}" => key removed successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{93924823-74DA-45CB-933C-DD6A41D7911B}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{93924823-74DA-45CB-933C-DD6A41D7911B}" => key removed successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SmartWeb Upgrade Trigger Task => key not found. "C:\Users\Administrator\AppData\Roaming\zNNNHgS7E3WsX.exe" => File/Folder not found. C:\Windows\system32\GroupPolicy\Machine => moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully. "HKLM\SOFTWARE\Policies\Google" => key removed successfully. "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully. "HKU\S-1-5-21-2511829651-333839240-3277264240-500\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully. HKU\S-1-5-21-2511829651-333839240-3277264240-500\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully. blbdrive => service removed successfully. EmptyTemp: => 50 MB temporary data Removed. The system needed a reboot. ==== End of Fixlog 23:46:16 ====