Fix result of Farbar Recovery Scan Tool (x64) Version: 17-10-2016 Ran by Adrian (21-10-2016 20:39:31) Run:1 Running from C:\Users\Adrian\Desktop\frst Loaded Profiles: Adrian (Available Profiles: Adrian) Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: CreateRestorePoint: GroupPolicy: Restriction <======= ATTENTION HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\02494708.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\29158755.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\02494708.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\29158755.sys => ""="Driver" S3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2015-11-04] (Disc Soft Ltd) S3 TesSafe; C:\Windows\system32\TesSafe.sys [1101024 2016-06-03] (TENCENT) S3 VBoxNetFlt; \SystemRoot\system32\DRIVERS\VBoxNetFlt.sys [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] MSCONFIG\Services: Disc Soft Lite Bus Service => 3 MSCONFIG\Services: BstHdAndroidSvc => 3 MSCONFIG\Services: BstHdLogRotatorSvc => 3 MSCONFIG\Services: BstHdUpdaterSvc => 3 MSCONFIG\Services: Droid4XService => 2 MSCONFIG\Services: SbieSvc => 2 MSCONFIG\Services: Service KMSELDI => 2 MSCONFIG\Services: TeamViewer => 2 HKLM\...\StartupApproved\Run32: => "Aeria Ignite" HKLM\...\StartupApproved\Run32: => "BlueStacks Agent" HKLM\...\StartupApproved\Run32: => "EaseUS EPM tray" HKLM\...\StartupApproved\Run32: => "ISCT Tray" HKLM\...\StartupApproved\Run32: => "VX1000" HKLM\...\StartupApproved\Run32: => "EaseUS Cleanup" HKU\S-1-5-21-2425397994-473716014-1509793327-1001\...\StartupApproved\StartupFolder: => "CurseClientStartup.ccip" HKU\S-1-5-21-2425397994-473716014-1509793327-1001\...\StartupApproved\StartupFolder: => "AudioSwitch.lnk" HKU\S-1-5-21-2425397994-473716014-1509793327-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKU\S-1-5-21-2425397994-473716014-1509793327-1001\...\StartupApproved\Run: => "FlashGet 3" HKU\S-1-5-21-2425397994-473716014-1509793327-1001\...\StartupApproved\Run: => "Akamai NetSession Interface" HKU\S-1-5-21-2425397994-473716014-1509793327-1001\...\StartupApproved\Run: => "SandboxieControl" HKU\S-1-5-21-2425397994-473716014-1509793327-1001\...\StartupApproved\Run: => "GalaxyClient" HKU\S-1-5-21-2425397994-473716014-1509793327-1001\...\StartupApproved\Run: => "FlashPlayerUpdate" C:\ProgramData\Microsoft\Windows\Start Menu\Black Desert Online.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Extras\AutoItX\VBScript Examples.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Desert Online C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberStep, Inc C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dark Souls III C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA\BioWare\Star Wars - The Old Republic\View License.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grand Theft Auto V\Play Grand Theft Auto V.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NARUTO SHIPPUDEN Ultimate Ninja STORM 4 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SQUARE ENIX\FINAL FANTASY XIV - A Realm Reborn C:\Users\Adrian\AppData\Local\FluxSoftware C:\Users\Adrian\AppData\Roaming\DAEMON Tools Lite C:\Users\Adrian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\BlueStacks.lnk C:\Users\Adrian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\b15f30ab853b7d31\Diablo III.lnk C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\qhrxejcq.default\searchplugins C:\Windows\system32\TesSafe.sys C:\Windows\System32\drivers\dtlitescsibus.sys CMD: netsh advfirewall reset EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. C:\Windows\system32\GroupPolicy\Machine => moved successfully C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully "HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\02494708.sys" => key removed successfully "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\29158755.sys" => key removed successfully "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\02494708.sys" => key removed successfully "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\29158755.sys" => key removed successfully dtlitescsibus => service removed successfully TesSafe => service removed successfully VBoxNetFlt => service removed successfully xhunter1 => service removed successfully "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Disc Soft Lite Bus Service" => key removed successfully HKLM\System\CurrentControlSet\Services\Disc Soft Lite Bus Service => key not found. "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\BstHdAndroidSvc" => key removed successfully HKLM\System\CurrentControlSet\Services\BstHdAndroidSvc => key not found. "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\BstHdLogRotatorSvc" => key removed successfully HKLM\System\CurrentControlSet\Services\BstHdLogRotatorSvc => key not found. "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\BstHdUpdaterSvc" => key removed successfully HKLM\System\CurrentControlSet\Services\BstHdUpdaterSvc => key not found. "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Droid4XService" => key removed successfully HKLM\System\CurrentControlSet\Services\Droid4XService => key not found. "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\SbieSvc" => key removed successfully HKLM\System\CurrentControlSet\Services\SbieSvc => key not found. "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Service KMSELDI" => key removed successfully HKLM\System\CurrentControlSet\Services\Service KMSELDI => key not found. "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\TeamViewer" => key removed successfully HKLM\System\CurrentControlSet\Services\TeamViewer => key not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\\Aeria Ignite => value removed successfully HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Aeria Ignite => value not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\\BlueStacks Agent => value removed successfully HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\BlueStacks Agent => value not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\\EaseUS EPM tray => value removed successfully HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\EaseUS EPM tray => value not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\\ISCT Tray => value removed successfully HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ISCT Tray => value not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\\VX1000 => value removed successfully HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\VX1000 => value not found. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32\\EaseUS Cleanup => value removed successfully HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\EaseUS Cleanup => value not found. C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip => not found. HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\CurseClientStartup.ccip => value removed successfully C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AudioSwitch.lnk => not found. HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\AudioSwitch.lnk => value removed successfully HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\DAEMON Tools Lite Automount => value removed successfully HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite Automount => value not found. HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\FlashGet 3 => value removed successfully HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\FlashGet 3 => value not found. HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Akamai NetSession Interface => value removed successfully HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => value removed successfully HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\SandboxieControl => value removed successfully HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\SandboxieControl => value not found. HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\GalaxyClient => value removed successfully HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\GalaxyClient => value not found. HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\FlashPlayerUpdate => value removed successfully HKU\S-1-5-21-2425397994-473716014-1509793327-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\FlashPlayerUpdate => value not found. C:\ProgramData\Microsoft\Windows\Start Menu\Black Desert Online.lnk => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3\Extras\AutoItX\VBScript Examples.lnk => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Desert Online => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberStep, Inc => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dark Souls III => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA\BioWare\Star Wars - The Old Republic\View License.lnk => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grand Theft Auto V\Play Grand Theft Auto V.lnk => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NARUTO SHIPPUDEN Ultimate Ninja STORM 4 => moved successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SQUARE ENIX\FINAL FANTASY XIV - A Realm Reborn => moved successfully C:\Users\Adrian\AppData\Local\FluxSoftware => moved successfully C:\Users\Adrian\AppData\Roaming\DAEMON Tools Lite => moved successfully C:\Users\Adrian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\BlueStacks.lnk => moved successfully C:\Users\Adrian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\b15f30ab853b7d31\Diablo III.lnk => moved successfully C:\Users\Adrian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames => moved successfully C:\Users\Adrian\AppData\Roaming\Mozilla\Firefox\Profiles\qhrxejcq.default\searchplugins => moved successfully C:\Windows\system32\TesSafe.sys => moved successfully C:\Windows\System32\drivers\dtlitescsibus.sys => moved successfully ========= netsh advfirewall reset ========= Ok. ========= End of CMD: ========= =========== EmptyTemp: ========== BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 70627151 B Java, Flash, Steam htmlcache => 244522447 B Windows/system/drivers => 1734403 B Edge => 0 B Chrome => 58901448 B Firefox => 432547792 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 128 B systemprofile32 => 128 B LocalService => 58134 B NetworkService => 0 B Adrian => 181949934 B RecycleBin => 12264364315 B EmptyTemp: => 12.3 GB temporary data Removed. ================================ The system needed a reboot. ==== End of Fixlog 20:41:02 ====