Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 16-05-2015 02
Ran by Lauer at 2015-05-18 21:41:13 Run:1
Running from C:\Users\Lauer\Desktop
Loaded Profiles: Lauer (Available profiles: Lauer)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
CreateRestorePoint:
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472992 2013-03-21] (Adobe Systems Incorporated)
HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-830763086-240639371-535563832-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKLM -> {AD60C704-063D-4B46-B90A-9ED773C300F3} URL =
http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {AD60C704-063D-4B46-B90A-9ED773C300F3} URL =
http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-830763086-240639371-535563832-1001 -> firmy.cz-191936 URL =
http://www.firmy.cz/phr/{searchTerms}
SearchScopes: HKU\S-1-5-21-830763086-240639371-535563832-1001 -> mapy.cz-191936 URL =
http://www.mapy.cz/?sourceid=quicksearch_6826&query={searchTerms}
SearchScopes: HKU\S-1-5-21-830763086-240639371-535563832-1001 -> videa.seznam.cz-191936 URL =
http://videa.seznam.cz/?q={searchTerms}
SearchScopes: HKU\S-1-5-21-830763086-240639371-535563832-1001 -> zbozi.cz-191936 URL =
http://www.zbozi.cz/?sourceid=quicksearch_6826&q={searchTerms}
SearchScopes: HKU\S-1-5-21-830763086-240639371-535563832-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL =
http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-830763086-240639371-535563832-1001 -> {AD60C704-063D-4B46-B90A-9ED773C300F3} URL =
http://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin HKU\S-1-5-21-830763086-240639371-535563832-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Lauer\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll No File
FF Plugin HKU\S-1-5-21-830763086-240639371-535563832-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Lauer\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll No File
FF Extension: No Name - C:\Users\Lauer\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru [Not Found]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14]
2015-04-28 17:17 - 2015-01-08 19:01 - 00003836 _____ () C:\windows\System32\Tasks\Opera scheduled Autoupdate 1420736467
CustomCLSID: HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Lauer\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Lauer\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Lauer\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Lauer\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Lauer\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Lauer\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Lauer\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
Task: {47C4C9D6-DB86-4D7A-A1A7-0411D685758E} - \Hewlett-Packard\HP Support Assistant\First Boot No Task File <==== ATTENTION
Task: {489C7AAB-E296-440C-967C-EC831799058A} - System32\Tasks\{D53CF538-685B-44BC-8C38-5BBD7A1BBFB6} => Chrome.exe
http://ui.skype.com/ui/0/6.18.80.106/cs ... rogressBar
Task: {5E7F9B3B-CC9E-4898-8EBC-D952CC49705A} - System32\Tasks\{C0B6209D-4D09-4D6E-ABAE-416298B849CD} => Chrome.exe
http://ui.skype.com/ui/0/6.18.80.106/cs ... rogressBar
Task: {6CBACDB7-7037-4DB7-83E8-6AE6F075C350} - System32\Tasks\{90E549FB-40D8-4991-910A-A5ADB181836C} => C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE [2015-03-18] (Microsoft Corporation)
Task: {82B256F9-4DD4-4C71-A288-F03E923FA12F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-830763086-240639371-535563832-1001UA1ce7f0cee57efaf => C:\Users\Lauer\AppData\Local\Google\Update\GoogleUpdate.exe
Task: {881DA221-F4C4-454F-913B-0996BCD3EEA8} - System32\Tasks\{6ACA18A4-1C92-42C7-9DAD-26ED4C30AAAE} => pcalua.exe -a E:\setup_vmc_lite.exe -d E:\ -c /checkApplicationPresence
Task: {883AD7DF-0274-4091-874D-3EBB612CB9B8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-04-23] (Piriform Ltd)
Task: {8AB24AAE-35EE-415B-BDDA-B15543D31F89} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-830763086-240639371-535563832-1001Core => C:\Users\Lauer\AppData\Local\Google\Update\GoogleUpdate.exe
Task: {C3EABC56-C63E-48FB-BAF2-C768162AEA62} - System32\Tasks\{83667905-4BD3-460E-A485-6694352AA55E} => Chrome.exe
http://ui.skype.com/ui/0/6.18.80.106/cs ... rogressBar
*****************
Processes closed successfully.
Restore point was successfully created.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => value deleted successfully.
HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE => value deleted successfully.
HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE => value deleted successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKU\S-1-5-21-830763086-240639371-535563832-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AD60C704-063D-4B46-B90A-9ED773C300F3}" => Key deleted successfully.
HKCR\CLSID\{AD60C704-063D-4B46-B90A-9ED773C300F3} => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{AD60C704-063D-4B46-B90A-9ED773C300F3}" => Key deleted successfully.
HKCR\Wow6432Node\CLSID\{AD60C704-063D-4B46-B90A-9ED773C300F3} => Key not found.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-830763086-240639371-535563832-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\firmy.cz-191936" => Key deleted successfully.
HKCR\CLSID\firmy.cz-191936 => Key not found.
"HKU\S-1-5-21-830763086-240639371-535563832-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\mapy.cz-191936" => Key deleted successfully.
HKCR\CLSID\mapy.cz-191936 => Key not found.
"HKU\S-1-5-21-830763086-240639371-535563832-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\videa.seznam.cz-191936" => Key deleted successfully.
HKCR\CLSID\videa.seznam.cz-191936 => Key not found.
"HKU\S-1-5-21-830763086-240639371-535563832-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\zbozi.cz-191936" => Key deleted successfully.
HKCR\CLSID\zbozi.cz-191936 => Key not found.
"HKU\S-1-5-21-830763086-240639371-535563832-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}" => Key deleted successfully.
HKCR\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => Key not found.
"HKU\S-1-5-21-830763086-240639371-535563832-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AD60C704-063D-4B46-B90A-9ED773C300F3}" => Key deleted successfully.
HKCR\CLSID\{AD60C704-063D-4B46-B90A-9ED773C300F3} => Key not found.
"HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKU\S-1-5-21-830763086-240639371-535563832-1001\Software\MozillaPlugins\@tools.google.com/Google Update;version=3" => Key deleted successfully.
C:\Users\Lauer\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll not found.
"HKU\S-1-5-21-830763086-240639371-535563832-1001\Software\MozillaPlugins\@tools.google.com/Google Update;version=9" => Key deleted successfully.
C:\Users\Lauer\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll not found.
C:\Users\Lauer\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru not found.
C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} not found.
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl" => Key deleted successfully.
C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx => Moved successfully.
C:\windows\System32\Tasks\Opera scheduled Autoupdate 1420736467 => Moved successfully.
"HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}" => Key deleted successfully.
"HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}" => Key deleted successfully.
"HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}" => Key deleted successfully.
"HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}" => Key deleted successfully.
"HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}" => Key deleted successfully.
"HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}" => Key deleted successfully.
"HKU\S-1-5-21-830763086-240639371-535563832-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{47C4C9D6-DB86-4D7A-A1A7-0411D685758E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{47C4C9D6-DB86-4D7A-A1A7-0411D685758E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Hewlett-Packard\HP Support Assistant\First Boot" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{489C7AAB-E296-440C-967C-EC831799058A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{489C7AAB-E296-440C-967C-EC831799058A}" => Key deleted successfully.
C:\Windows\System32\Tasks\{D53CF538-685B-44BC-8C38-5BBD7A1BBFB6} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{D53CF538-685B-44BC-8C38-5BBD7A1BBFB6}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5E7F9B3B-CC9E-4898-8EBC-D952CC49705A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5E7F9B3B-CC9E-4898-8EBC-D952CC49705A}" => Key deleted successfully.
C:\Windows\System32\Tasks\{C0B6209D-4D09-4D6E-ABAE-416298B849CD} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C0B6209D-4D09-4D6E-ABAE-416298B849CD}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6CBACDB7-7037-4DB7-83E8-6AE6F075C350}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6CBACDB7-7037-4DB7-83E8-6AE6F075C350}" => Key deleted successfully.
C:\Windows\System32\Tasks\{90E549FB-40D8-4991-910A-A5ADB181836C} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{90E549FB-40D8-4991-910A-A5ADB181836C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{82B256F9-4DD4-4C71-A288-F03E923FA12F}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{82B256F9-4DD4-4C71-A288-F03E923FA12F}" => Key deleted successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-830763086-240639371-535563832-1001UA1ce7f0cee57efaf => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-830763086-240639371-535563832-1001UA1ce7f0cee57efaf" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{881DA221-F4C4-454F-913B-0996BCD3EEA8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{881DA221-F4C4-454F-913B-0996BCD3EEA8}" => Key deleted successfully.
C:\Windows\System32\Tasks\{6ACA18A4-1C92-42C7-9DAD-26ED4C30AAAE} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6ACA18A4-1C92-42C7-9DAD-26ED4C30AAAE}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{883AD7DF-0274-4091-874D-3EBB612CB9B8}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{883AD7DF-0274-4091-874D-3EBB612CB9B8}" => Key deleted successfully.
C:\Windows\System32\Tasks\CCleanerSkipUAC => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8AB24AAE-35EE-415B-BDDA-B15543D31F89}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8AB24AAE-35EE-415B-BDDA-B15543D31F89}" => Key deleted successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-830763086-240639371-535563832-1001Core => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-830763086-240639371-535563832-1001Core" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C3EABC56-C63E-48FB-BAF2-C768162AEA62}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C3EABC56-C63E-48FB-BAF2-C768162AEA62}" => Key deleted successfully.
C:\Windows\System32\Tasks\{83667905-4BD3-460E-A485-6694352AA55E} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{83667905-4BD3-460E-A485-6694352AA55E}" => Key deleted successfully.
The system needed a reboot.
==== End of Fixlog 21:43:54 ====