Advertisement
Guest User

Untitled

a guest
May 27th, 2016
252
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 5.01 KB | None | 0 0
  1. Fix result of Farbar Recovery Scan Tool (x64) Version:25-05-2016 01
  2. Ran by Asher (2016-05-27 16:58:59) Run:1
  3. Running from C:\Users\Asher\Desktop
  4. Loaded Profiles: Asher (Available Profiles: Asher)
  5. Boot Mode: Normal
  6. ==============================================
  7.  
  8. fixlist content:
  9. *****************
  10. start
  11. CreateRestorePoint:
  12. CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
  13. ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => No File
  14. AppInit_DLLs-x32: ￿ȉ慖⁤ => No File
  15. HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\...\Run: [LowRiskFileTypes] => .exe
  16. HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\...\Run: [WindowHost] => C:\Users\Asher\WindowHost\WindowHost.exe [12800 2016-05-04] (Microsoft)
  17. HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\...\Run: [WSecurity] => C:\Users\Asher\z15-Windows\WSecurity.exe [504320 2016-05-05] (Microsoft)
  18. HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\...\MountPoints2: {de16adc7-71be-11e3-8e32-806e6f6e6963} - D:\Run.exe
  19. HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\...\Run: [Dropbox Update] => C:\Users\Asher\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-17] (Dropbox, Inc.)
  20. HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\...\Run: [AdobeBridge] => [X]
  21. HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Users\Asher\Documents\DCSCMIN\IMDCSC.exe
  22. HKLM\...\Run: [WINCOMDGR] => "C:\Program Files (x86)\browseextension\wincom_DGR.exe"
  23. S2 winzipersvc; C:\Program Files (x86)\WinZipper\winzipersvc.exe [X] <==== ATTENTION
  24. Task: {CDABA79E-F24A-44E2-BF7E-9A89DFB2E01C} - System32\Tasks\Browser Updater Task(Core) => C:\Program Files (x86)\QQBrowser\Update\CE5D008F42E46D5AEEEACB733278BDE4\Update\BrowserUpdate.exe​ [2016-04-25] (Tencent) <==== ATTENTION
  25. Task: {ED2C7209-EB50-4EE2-A180-AC86FEC5DB38} - System32\Tasks\{BA083669-37CF-41E3-B59C-B9FF0680D5CE} => pcalua.exe -a "C:\Users\Asher\Desktop\Downloads\vcs_cnt (1).exe" -d C:\Users\Asher\Desktop\Downloads
  26. MSCONFIG\startupreg: Roamingpayload.jar => C:\Users\Asher\Roamingpayload.jar
  27. CloseProcesses:
  28. EmptyTemp:
  29. Hosts:
  30. *****************
  31.  
  32. Restore point was successfully created.
  33. "HKLM\SOFTWARE\Policies\Google" => key removed successfully
  34. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\GDriveSharedOverlay" => key removed successfully
  35. HKCR\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => key not found.
  36. "￿ȉ慖⁤" => Value data removed successfully.
  37. HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\Software\Microsoft\Windows\CurrentVersion\Run\\LowRiskFileTypes => value removed successfully
  38. HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\Software\Microsoft\Windows\CurrentVersion\Run\\WindowHost => value removed successfully
  39. HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\Software\Microsoft\Windows\CurrentVersion\Run\\WSecurity => value removed successfully
  40. "HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{de16adc7-71be-11e3-8e32-806e6f6e6963}" => key removed successfully
  41. HKCR\CLSID\{de16adc7-71be-11e3-8e32-806e6f6e6963} => key not found.
  42. HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Dropbox Update => value removed successfully
  43. HKU\S-1-5-21-4141800521-2421496077-3257765511-1000\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value removed successfully
  44. HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Userinit => value restored successfully
  45. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\WINCOMDGR => value removed successfully
  46. winzipersvc => service removed successfully
  47. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CDABA79E-F24A-44E2-BF7E-9A89DFB2E01C}" => key removed successfully
  48. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CDABA79E-F24A-44E2-BF7E-9A89DFB2E01C}" => key removed successfully
  49. C:\Windows\System32\Tasks\Browser Updater Task(Core) => moved successfully
  50. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Browser Updater Task(Core)" => key removed successfully
  51. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ED2C7209-EB50-4EE2-A180-AC86FEC5DB38}" => key removed successfully
  52. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ED2C7209-EB50-4EE2-A180-AC86FEC5DB38}" => key removed successfully
  53. C:\Windows\System32\Tasks\{BA083669-37CF-41E3-B59C-B9FF0680D5CE} => moved successfully
  54. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BA083669-37CF-41E3-B59C-B9FF0680D5CE}" => key removed successfully
  55. MSCONFIG\startupreg: Roamingpayload.jar => C:\Users\Asher\Roamingpayload.jar => Error: No automatic fix found for this entry.
  56. Processes closed successfully.
  57. C:\Windows\System32\Drivers\etc\hosts => moved successfully
  58. Hosts restored successfully.
  59. EmptyTemp: => 12.5 GB temporary data Removed.
  60.  
  61.  
  62. The system needed a reboot.
  63.  
  64. ==== End of Fixlog 17:13:05 ====
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement