Fix result of Farbar Recovery Scan Tool (x86) Version:06-08-2015 Ran by admin (2015-08-07 18:26:54) Run:1 Running from C:\Users\admin\Downloads Loaded Profiles: admin (Available Profiles: admin) Boot Mode: Normal ============================================== fixlist content: ***************** start CloseProcesses: CreateRestorePoint: (Ask) C:\Program Files\Ask.com\Updater\Updater.exe HKLM\...\Run: [] => [X] HKLM\...\Run: [ApnUpdater] => C:\Program Files\Ask.com\Updater\Updater.exe [1644680 2013-02-08] (Ask) CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION HKU\S-1-5-21-166088249-2872553327-2155955436-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION URLSearchHook: HKU\S-1-5-21-166088249-2872553327-2155955436-1000 - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) SearchScopes: HKU\.DEFAULT -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKU\S-1-5-21-166088249-2872553327-2155955436-1000 -> {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=crm&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYFR&apn_uid=DEF950A7-B4CB-4F4E-9A22-0E1769FF8256&apn_sauid=2E94E20D-EBE3-4203-B6DA-36D34F896406 S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] 2015-03-15 15:11 - 2015-03-15 15:11 - 6103040 _____ () C:\Program Files\GUT1D31.tmp 2012-12-09 12:15 - 2012-12-09 12:15 - 4106240 _____ () C:\Program Files\GUT29BF.tmp 2013-05-12 10:23 - 2013-05-12 10:23 - 4167680 _____ () C:\Program Files\GUT8324.tmp 2012-08-01 14:44 - 2012-08-01 14:44 - 4024320 _____ () C:\Program Files\GUTE688.tmp 2013-10-17 18:30 - 2013-10-17 18:30 - 50053120 _____ () C:\Program Files\GUTFC9.tmp Ask Toolbar (HKLM\...\{86D4B82A-ABED-442A-BE86-96357B70F4FE}) (Version: 1.15.15.0 - Ask.com) <==== ATTENTION Ask Toolbar Updater (HKU\S-1-5-21-166088249-2872553327-2155955436-1000\...\{79A765E1-C399-405B-85AF-466F52E918B0}) (Version: 1.2.4.36191 - Ask.com) <==== ATTENTION Task: {888D2659-838A-4B94-A415-61EA35669182} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files\Ask.com\UpdateTask.exe [2013-02-08] () <==== ATTENTION Task: C:\Windows\Tasks\Scheduled scanning task.job => 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mptyTemp: end ***************** Processes closed successfully. Restore point was successfully created. C:\Program Files\Ask.com\Updater\Updater.exe C:\Program Files\Ask.com\Updater\Updater.exe => No running process found HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater => value removed successfully. "HKLM\SOFTWARE\Policies\Google" => key removed successfully. "HKU\S-1-5-21-166088249-2872553327-2155955436-1000\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully. HKU\S-1-5-21-166088249-2872553327-2155955436-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{00000000-6E41-4FD3-8538-502F5495E5FC} => value removed successfully. "HKCR\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}" => key removed successfully. "HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" => key removed successfully. HKCR\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => key not found. "HKU\S-1-5-21-166088249-2872553327-2155955436-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}" => key removed successfully. HKCR\CLSID\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} => key not found. NwlnkFlt => service removed successfully. NwlnkFwd => service removed successfully. C:\Program Files\GUT1D31.tmp => moved successfully. C:\Program Files\GUT29BF.tmp => moved successfully. C:\Program Files\GUT8324.tmp => moved successfully. C:\Program Files\GUTE688.tmp => moved successfully. C:\Program Files\GUTFC9.tmp => moved successfully. Ask Toolbar (HKLM\...\{86D4B82A-ABED-442A-BE86-96357B70F4FE}) (Version: 1.15.15.0 - Ask.com) <==== ATTENTION => Error: No automatic fix found for this entry. Ask Toolbar Updater (HKU\S-1-5-21-166088249-2872553327-2155955436-1000\...\{79A765E1-C399-405B-85AF-466F52E918B0}) (Version: 1.2.4.36191 - Ask.com) <==== ATTENTION => Error: No automatic fix found for this entry. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{888D2659-838A-4B94-A415-61EA35669182}" => key removed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{888D2659-838A-4B94-A415-61EA35669182}" => key removed successfully. C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar => moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Scheduled Update for Ask Toolbar" => key removed successfully. C:\Windows\Tasks\Scheduled scanning task.job => moved successfully. EmptyTemp: => 3.4 GB temporary data Removed. The system needed a reboot. ==== End of Fixlog 18:33:07 ====