Advertisement
Guest User

Untitled

a guest
Sep 24th, 2015
111
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 12.88 KB | None | 0 0
  1. Fix result of Farbar Recovery Scan Tool (x64) Version:23-09-2015
  2. Ran by Chaz (2015-09-24 07:35:39) Run:1
  3. Running from C:\Users\Chaz\Downloads
  4. Loaded Profiles: Chaz (Available Profiles: Chaz)
  5. Boot Mode: Normal
  6. ==============================================
  7.  
  8. fixlist content:
  9. *****************
  10. Start
  11. CreateRestorePoint:
  12. File: TiltWheelMouse.exe
  13. File: C:\Windows\System32\DRIVERS\t_mouse.sys
  14. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\...\MountPoints2: {3337a7f2-22e8-11e4-a19e-10c37b6b1de4} - E:\LaunchU3.exe -a
  15. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\...\MountPoints2: {4020498b-9fd9-11e3-bc53-806e6f6e6963} - D:\ASRSetup.exe
  16. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\...\MountPoints2: {91678e7b-1d47-11e4-b703-806e6f6e6963} - D:\.\Bin\ASSETUP.exe
  17. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\...\MountPoints2: {bf38f1f1-8123-11e4-bffe-10c37b6b1de4} - G:\SETUP.EXE
  18. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {3337a7f2-22e8-11e4-a19e-10c37b6b1de4} - E:\LaunchU3.exe -a
  19. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {4020498b-9fd9-11e3-bc53-806e6f6e6963} - D:\ASRSetup.exe
  20. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {91678e7b-1d47-11e4-b703-806e6f6e6963} - D:\.\Bin\ASSETUP.exe
  21. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {bf38f1f1-8123-11e4-bffe-10c37b6b1de4} - G:\SETUP.EXE
  22. AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => No File
  23. SearchScopes: HKU\S-1-5-21-1615470529-4013084047-1740189228-1000 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3324790&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP79445224-322E-4489-91E4-818CB0FE7D40&q={searchTerms}&SSPV=
  24. SearchScopes: HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3324790&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP79445224-322E-4489-91E4-818CB0FE7D40&q={searchTerms}&SSPV=
  25. Toolbar: HKU\S-1-5-21-1615470529-4013084047-1740189228-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
  26. Toolbar: HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
  27. FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
  28. FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\3.1.0\\npsitesafety.dll [No File]
  29. FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
  30. FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
  31. FF HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\...\Firefox\Extensions: [{8492baab-62ca-4e2c-983b-dfef7cae8082}] - C:\Program Files (x86)\PassShow\154.xpi
  32. FF HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Firefox\Extensions: [{8492baab-62ca-4e2c-983b-dfef7cae8082}] - C:\Program Files (x86)\PassShow\154.xpi
  33. CHR HomePage: Default -> hxxps://mysearch.avg.com?cid={8DF674E6-6623-47A7-867C-F62406776D5A}&mid=5cdd95e0063b47d281166d16b2015874-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=en&ds=AVG&coid=avgtbavg&pr=fr&d=2014-07-21 13:29:47&v=3.1.0.7&pid=wtu&sg=&sap=hp
  34. CHR StartupUrls: Default -> "hxxps://mysearch.avg.com?cid={8DF674E6-6623-47A7-867C-F62406776D5A}&mid=5cdd95e0063b47d281166d16b2015874-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=en&ds=AVG&coid=avgtbavg&pr=fr&d=2014-07-21 13:29:47&v=3.1.0.7&pid=wtu&sg=&sap=hp"
  35. CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.99\ppGoogleNaClPluginChrome.dll => No File
  36. CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.99\pdf.dll => No File
  37. CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll => No File
  38. CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll => No File
  39. CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll => No File
  40. CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll => No File
  41. CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
  42. CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll => No File
  43. S3 AxtuDrv; no ImagePath
  44. S3 cthda; no ImagePath
  45. S3 cthdb; no ImagePath
  46. S3 MBfilt; no ImagePath
  47. Task: {6543AEE7-343E-48D2-8E19-EB7430D4570F} - System32\Tasks\SpeedUpMyPC Maintenance => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe [2015-09-10] (Uniblue Systems Limited) <==== ATTENTION
  48. Task: {B5A0B15C-531A-401F-B7F2-198CCEE41B0E} - \LaunchPreSignup -> No File <==== ATTENTION
  49. Task: {B75CD175-3E13-4FFA-96A6-94491401009F} - System32\Tasks\SpeedUpMyPC Startup => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe [2015-09-10] (Uniblue Systems Limited) <==== ATTENTION
  50. Task: C:\Windows\Tasks\SpeedUpMyPC Maintenance.job => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe <==== ATTENTION
  51. Task: C:\Windows\Tasks\SpeedUpMyPC Startup.job => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\speedupmypc.exe <==== ATTENTION
  52. C:\Program Files (x86)\Uniblue
  53. CMD: netsh advfirewall reset
  54. CMD: netsh advfirewall set allprofiles state on
  55. EmptyTemp:
  56. End
  57. *****************
  58.  
  59. Restore point was successfully created.
  60.  
  61. ========================= File: TiltWheelMouse.exe ========================
  62.  
  63. File is digitally signed
  64. MD5: DB367E8C8F46C26A05BA982715CC0DB5
  65. Creation and modification date: 2012-12-19 09:42 - 2012-12-19 09:42
  66. Size: 0241152
  67. Attributes: ----A
  68. Company Name: Pixart Imaging Inc
  69. Internal Name: pximouse.exe
  70. Original Name: pximouse.exe
  71. Product: pximouse
  72. Description: pximouse
  73. File Version: 1.0.0.2
  74. Product Version: 1.0.0.2
  75. Copyright: Copyright (c) 2009 Pixart Imaging Inc. All rights reserved.
  76.  
  77. ====== End of File: ======
  78.  
  79.  
  80. ========================= File: C:\Windows\System32\DRIVERS\t_mouse.sys ========================
  81.  
  82. File is digitally signed
  83. MD5: A070ABB9D85582B2BECADBE6FCD12350
  84. Creation and modification date: 2012-12-19 09:42 - 2012-12-19 09:42
  85. Size: 0006144
  86. Attributes: ----A
  87. Company Name:
  88. Internal Name:
  89. Original Name:
  90. Product:
  91. Description:
  92. File Version:
  93. Product Version:
  94. Copyright:
  95.  
  96. ====== End of File: ======
  97.  
  98. "HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3337a7f2-22e8-11e4-a19e-10c37b6b1de4}" => key removed successfully
  99. HKCR\CLSID\{3337a7f2-22e8-11e4-a19e-10c37b6b1de4} => key not found.
  100. "HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4020498b-9fd9-11e3-bc53-806e6f6e6963}" => key removed successfully
  101. HKCR\CLSID\{4020498b-9fd9-11e3-bc53-806e6f6e6963} => key not found.
  102. "HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{91678e7b-1d47-11e4-b703-806e6f6e6963}" => key removed successfully
  103. HKCR\CLSID\{91678e7b-1d47-11e4-b703-806e6f6e6963} => key not found.
  104. "HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bf38f1f1-8123-11e4-bffe-10c37b6b1de4}" => key removed successfully
  105. HKCR\CLSID\{bf38f1f1-8123-11e4-bffe-10c37b6b1de4} => key not found.
  106. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4} => key not found.
  107. HKCR\CLSID\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4} => key not found.
  108. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4} => key not found.
  109. HKCR\CLSID\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4} => key not found.
  110. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4} => key not found.
  111. HKCR\CLSID\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4} => key not found.
  112. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4} => key not found.
  113. HKCR\CLSID\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4} => key not found.
  114. "C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll" => Value data not found.
  115. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\URL => value removed successfully
  116. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\URL => value not found.
  117. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value removed successfully
  118. HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => key not found.
  119. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\Toolbar: HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value not found.
  120. HKCR\CLSID\Toolbar: HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => key not found.
  121. "HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
  122. HKLM\Software\Wow6432Node\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin => key not found.
  123. "HKLM\Software\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin" => key removed successfully
  124. "HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
  125. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000\Software\Mozilla\Firefox\Extensions\\{8492baab-62ca-4e2c-983b-dfef7cae8082} => value removed successfully
  126. HKU\S-1-5-21-1615470529-4013084047-1740189228-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Mozilla\Firefox\Extensions\\{8492baab-62ca-4e2c-983b-dfef7cae8082} => value not found.
  127. Chrome HomePage removed successfully
  128. Chrome StartupUrls removed successfully
  129. C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.99\ppGoogleNaClPluginChrome.dll => not found.
  130. C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.99\pdf.dll => not found.
  131. C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll => not found.
  132. C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll => not found.
  133. C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll => not found.
  134. C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll => not found.
  135. C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll => moved successfully
  136. c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll => not found.
  137. AxtuDrv => service removed successfully
  138. cthda => service removed successfully
  139. cthdb => service removed successfully
  140. MBfilt => service removed successfully
  141. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6543AEE7-343E-48D2-8E19-EB7430D4570F} => key not found.
  142. C:\Windows\System32\Tasks\SpeedUpMyPC Maintenance => not found.
  143. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SpeedUpMyPC Maintenance => key not found.
  144. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B5A0B15C-531A-401F-B7F2-198CCEE41B0E}" => key removed successfully
  145. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B5A0B15C-531A-401F-B7F2-198CCEE41B0E}" => key removed successfully
  146. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LaunchPreSignup => key not found.
  147. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B75CD175-3E13-4FFA-96A6-94491401009F} => key not found.
  148. C:\Windows\System32\Tasks\SpeedUpMyPC Startup => not found.
  149. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SpeedUpMyPC Startup => key not found.
  150. C:\Windows\Tasks\SpeedUpMyPC Maintenance.job => not found.
  151. C:\Windows\Tasks\SpeedUpMyPC Startup.job => not found.
  152. "C:\Program Files (x86)\Uniblue" => File/Folder not found.
  153.  
  154. ========= netsh advfirewall reset =========
  155.  
  156. Ok.
  157.  
  158.  
  159. ========= End of CMD: =========
  160.  
  161.  
  162. ========= netsh advfirewall set allprofiles state on =========
  163.  
  164. Ok.
  165.  
  166.  
  167. ========= End of CMD: =========
  168.  
  169. EmptyTemp: => 900.9 MB temporary data Removed.
  170.  
  171.  
  172. The system needed a reboot..
  173.  
  174. ==== End of Fixlog 07:36:09 ====
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement