Fix result of Farbar Recovery Scan Tool (x86) Version: 08-06-2015 Ran by Tu y yo at 2015-06-12 21:41:52 Run:1 Running from C:\Users\Tu y yo\Desktop Loaded Profiles: Tu y yo (Available Profiles: Tu y yo) Boot Mode: Normal ============================================== fixlist content: ***************** Start CloseProcesses: Startup: C:\Users\Tu y yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\274.lnk [2015-03-10] ShortcutTarget: 274.lnk -> C:\ProgramData\{4e3f110e-c102-9f6e-4e3f-f110ec10443b}\274.exe (No File) Startup: C:\Users\Tu y yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\dsixda_cygwin_install.zip.lnk [2015-05-13] ShortcutTarget: dsixda_cygwin_install.zip.lnk -> C:\ProgramData\{07dca450-270a-fbae-07dc-ca4502709140}\dsixda_cygwin_install.zip.exe (No File) Startup: C:\Users\Tu y yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Setup_11418.lnk [2015-03-06] ShortcutTarget: Setup_11418.lnk -> C:\ProgramData\{a8977123-2d6c-d6e7-a897-771232d6c48c}\Setup_11418.exe (No File) CHR HKLM\SOFTWARE\Policies\Google: Policy restriction SearchScopes: HKU\S-1-5-21-2803995656-3907551314-2027165841-1001 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = SearchScopes: HKU\S-1-5-21-2803995656-3907551314-2027165841-1001 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = CHR dev: Chrome dev build detected! S1 aknrhdev; \??\C:\WINDOWS\system32\drivers\aknrhdev.sys [X] S1 pcmnfaeq; \??\C:\WINDOWS\system32\drivers\pcmnfaeq.sys [X] Task: {0AC140D3-118D-4F34-B438-CD5433DBFA44} - System32\Tasks\ContradeMirror => c:\programdata\{b2bd79b5-b603-6faa-b2bd-d79b5b60e6d6}\4308891925316739666b.exe c:\programdata\{b2bd79b5-b603-6faa-b2bd-d79b5b60e6d6}\4308891925316739666b.exe 2015-06-11 19:07 - 2015-04-18 16:25 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2015-02-28 21:48 - 2015-02-28 21:48 - 0613067 _____ (CMI Limited) C:\Users\Tu y yo\AppData\Local\nslAA59.tmp 2015-02-28 22:43 - 2015-02-28 22:43 - 0628504 _____ (CMI Limited) C:\Users\Tu y yo\AppData\Local\nsrF4BC.tmp C:\Users\Tu y yo\AppData\Local\Temp\4308891925316739666b.exe C:\Users\Tu y yo\AppData\Local\Temp\7488.exe Task: {36461962-4392-484B-BC47-756DF442D5FB} - System32\Tasks\BLZYASW => C:\ProgramData\3e2a3a4b2e7d4a2ca793dd4127047b9e\3e2a3a4b2e7d4a2ca793dd4127047b9e.exe C:\ProgramData\3e2a3a4b2e7d4a2ca793dd4127047b9e\3e2a3a4b2e7d4a2ca793dd4127047b9e.exe Task: C:\WINDOWS\Tasks\ContradeMirror.job => c:\programdata\{b2bd79b5-b603-6faa-b2bd-d79b5b60e6d6}\4308891925316739666b.exe End ***************** Processes closed successfully. C:\Users\Tu y yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\274.lnk => moved successfully. C:\ProgramData\{4e3f110e-c102-9f6e-4e3f-f110ec10443b}\274.exe not found. C:\Users\Tu y yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\dsixda_cygwin_install.zip.lnk => moved successfully. C:\ProgramData\{07dca450-270a-fbae-07dc-ca4502709140}\dsixda_cygwin_install.zip.exe not found. C:\Users\Tu y yo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Setup_11418.lnk => moved successfully. C:\ProgramData\{a8977123-2d6c-d6e7-a897-771232d6c48c}\Setup_11418.exe not found. "HKLM\SOFTWARE\Policies\Google" => key removed successfully. "HKU\S-1-5-21-2803995656-3907551314-2027165841-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}" => key removed successfully. HKCR\CLSID\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} => key not found. "HKU\S-1-5-21-2803995656-3907551314-2027165841-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}" => key removed successfully. HKCR\CLSID\{E733165D-CBCF-4FDA-883E-ADEF965B476C} => key not found. CHR dev: Chrome dev build detected! => Error: No automatic fix found for this entry. aknrhdev => Service removed successfully. pcmnfaeq => Service removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0AC140D3-118D-4F34-B438-CD5433DBFA44}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0AC140D3-118D-4F34-B438-CD5433DBFA44}" => key removed successfully. C:\Windows\System32\Tasks\ContradeMirror => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ContradeMirror" => key removed successfully. "c:\programdata\{b2bd79b5-b603-6faa-b2bd-d79b5b60e6d6}\4308891925316739666b.exe" => File/Folder not found. C:\ProgramData\Spybot - Search & Destroy => moved successfully. C:\Users\Tu y yo\AppData\Local\nslAA59.tmp => moved successfully. C:\Users\Tu y yo\AppData\Local\nsrF4BC.tmp => moved successfully. C:\Users\Tu y yo\AppData\Local\Temp\4308891925316739666b.exe => moved successfully. C:\Users\Tu y yo\AppData\Local\Temp\7488.exe => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{36461962-4392-484B-BC47-756DF442D5FB}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{36461962-4392-484B-BC47-756DF442D5FB}" => key removed successfully. C:\Windows\System32\Tasks\BLZYASW => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BLZYASW" => key removed successfully. "C:\ProgramData\3e2a3a4b2e7d4a2ca793dd4127047b9e\3e2a3a4b2e7d4a2ca793dd4127047b9e.exe" => File/Folder not found. C:\WINDOWS\Tasks\ContradeMirror.job => moved successfully. The system needed a reboot. ==== End of Fixlog 21:42:00 ====