Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 13-03-2014 01 Ran by RONDEAU at 2014-03-26 22:11:22 Run:1 Running from C:\Users\RONDEAU\Bluetooth Software\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** start (Microsoft Corp.) C:\Program Files\Microsoft\BingDesktop\BingDesktopUpdater.exe HKLM\...\Run: [] - [X] HKLM\...\Run: [BingDesktop] - C:\Program Files\Microsoft\BingDesktop\BingDesktop.exe [2353880 2013-11-01] (Microsoft Corp.) HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\...\MountPoints2: {813edea7-442e-11e0-994f-002354a12c83} - H:\Startme.exe HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\...\MountPoints2: {b7e8140b-0031-11e3-8b4b-002354a12c83} - H:\Setup.exe HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\...\MountPoints2: {bbe7ca54-567b-11df-8f3f-002354a12c83} - U3ROM/flyhigh.exe HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\...\MountPoints2: {bbe7ca63-567b-11df-8f3f-002354a12c83} - U3ROM/flyhigh.exe HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\...\MountPoints2: {bbe7ca6b-567b-11df-8f3f-002354a12c83} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe system.vbe HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\...\MountPoints2: {ec14eac8-c1b2-11dd-a968-806e6f6e6963} - E:\oosetupv7.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = FF NewTab: chrome://quick_start/content/index.html FF DefaultSearchEngine: Ask.com FF SearchEngineOrder.1: Ask.com FF SelectedSearchEngine: Ask.com FF HKLM\...\Firefox\Extensions: [quick_start@gmail.com] - C:\Users\RONDEAU\AppData\Roaming\Mozilla\Firefox\Profiles\o9c59crw.default\extensions\quick_start@gmail.com C:\Users\RONDEAU\AppData\Roaming\Mozilla\Firefox\Profiles\o9c59crw.default\extensions\quick_start@gmail.com CHR HKLM\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\RONDEAU\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx [2013-03-08] C:\Users\RONDEAU\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx R2 BingDesktopUpdate; C:\Program Files\Microsoft\BingDesktop\BingDesktopUpdater.exe [173272 2013-11-01] (Microsoft Corp.) C:\Program Files\Microsoft\BingDesktop S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] C:\Program Files\Enigma Software Group 2014-03-22 14:43 - 2014-03-22 14:43 - 00000000 ___DC () C:\ProgramData\{7F66490B-6C2B-46B6-8BA2-867BC3B4F5EB} C:\Users\RONDEAU\7z920 sevenzip.exe C:\Users\RONDEAU\album photo.exe C:\Users\RONDEAU\FreeMind-Windows-Installer-0.8.1-max.exe C:\Users\RONDEAU\QuickTimeInstaller.exe Reg: reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7D095455-D971-4D4C-9EFD-9AF6A6584F3A}" /f AlternateDataStreams: C:\ProgramData\Temp:0FF263E8 AlternateDataStreams: C:\ProgramData\Temp:373E1720 AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1 cmd: ipconfig /flushdns end ***************** C:\Program Files\Microsoft\BingDesktop\BingDesktopUpdater.exe => No running process found HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\BingDesktop => Value not found. HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{813edea7-442e-11e0-994f-002354a12c83} => Key deleted successfully. HKCR\CLSID\{813edea7-442e-11e0-994f-002354a12c83} => Key not found. HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b7e8140b-0031-11e3-8b4b-002354a12c83} => Key deleted successfully. HKCR\CLSID\{b7e8140b-0031-11e3-8b4b-002354a12c83} => Key not found. HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bbe7ca54-567b-11df-8f3f-002354a12c83} => Key deleted successfully. HKCR\CLSID\{bbe7ca54-567b-11df-8f3f-002354a12c83} => Key not found. HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bbe7ca63-567b-11df-8f3f-002354a12c83} => Key deleted successfully. HKCR\CLSID\{bbe7ca63-567b-11df-8f3f-002354a12c83} => Key not found. HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bbe7ca6b-567b-11df-8f3f-002354a12c83} => Key deleted successfully. HKCR\CLSID\{bbe7ca6b-567b-11df-8f3f-002354a12c83} => Key not found. HKU\S-1-5-21-1479064021-3229367824-3524447455-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ec14eac8-c1b2-11dd-a968-806e6f6e6963} => Key deleted successfully. HKCR\CLSID\{ec14eac8-c1b2-11dd-a968-806e6f6e6963} => Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{67A2568C-7A0A-4EED-AECC-B5405DE63B64} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{67A2568C-7A0A-4EED-AECC-B5405DE63B64} => Key not found. Firefox newtab deleted successfully. Firefox DefaultSearchEngine deleted successfully. Firefox SearchEngineOrder.1 deleted successfully. Firefox SelectedSearchEngine deleted successfully. HKLM\Software\Mozilla\Firefox\Extensions\\quick_start@gmail.com => Value deleted successfully. "C:\Users\RONDEAU\AppData\Roaming\Mozilla\Firefox\Profiles\o9c59crw.default\extensions\quick_start@gmail.com" => File/Directory not found. HKLM\SOFTWARE\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma => Key deleted successfully. "C:\Users\RONDEAU\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx" => File/Directory not found. "C:\Users\RONDEAU\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx" => File/Directory not found. BingDesktopUpdate => Service not found. "C:\Program Files\Microsoft\BingDesktop" => File/Directory not found. esgiguard => Service deleted successfully. C:\Program Files\Enigma Software Group => Moved successfully. C:\ProgramData\{7F66490B-6C2B-46B6-8BA2-867BC3B4F5EB} => Moved successfully. C:\Users\RONDEAU\7z920 sevenzip.exe => Moved successfully. C:\Users\RONDEAU\album photo.exe => Moved successfully. C:\Users\RONDEAU\FreeMind-Windows-Installer-0.8.1-max.exe => Moved successfully. C:\Users\RONDEAU\QuickTimeInstaller.exe => Moved successfully. ========= reg delete "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7D095455-D971-4D4C-9EFD-9AF6A6584F3A}" /f ========= Erreurÿ: Erreurÿ: le systÅ me n'a pas trouv‚ la cl‚ ou la valeur de Registre sp‚cifi‚e. ========= End of Reg: ========= C:\ProgramData\Temp => ":0FF263E8" ADS removed successfully. C:\ProgramData\Temp => ":373E1720" ADS removed successfully. C:\ProgramData\Temp => ":D1B5B4F1" ADS removed successfully. ========= ipconfig /flushdns ========= Configuration IP de Windows Cache de r‚solution DNS vid‚. ========= End of CMD: ========= ==== End of Fixlog ====