Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 24-04-2014 Ran by Jimm at 2014-04-23 23:39:59 Run:1 Running from C:\Users\Jimm\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.yahoo....r=spigot-yhp-ie HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://start.sweetpa...2-001D7D712AE9} SearchScopes: HKLM-x32 - DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://start.sweetpa...2-001D7D712AE9} SearchScopes: HKLM-x32 - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://start.sweetpa...2-001D7D712AE9} SearchScopes: HKCU - 4A389731133043988A5144530C988955 URL = http://findwide.com/...k={searchTerms} SearchScopes: HKCU - {9BD16A75-4FE3-4D9E-98B1-7BB7B4CFF5F7} URL = http://search.yahoo....petb&type=10412 SearchScopes: HKCU - {EB2D07C0-8D22-4C33-9318-0BC6440C08C9} URL = http://search.yahoo....petb&type=10412 BHO-x32: No Name - {2C4BA31C-0C15-11E2-90C7-9BFCBEB168B3} - No File BHO-x32: No Name - {5F815AD7-A955-4943-91C4-7A96C2932399} - No File Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKCU - No Name - {F142D35A-1AFB-460E-9671-71E67936835E} - No File Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Toolbar: HKCU - No Name - {840A66C8-5ED4-4A12-A05B-9FE1F7616078} - No File Toolbar: HKCU - No Name - {8AAB0C13-5A8E-4B8E-B975-592363D21461} - No File FF HKLM\...\Firefox\Extensions: [{7D4F1959-3F72-49d5-8E59-F02F8AA6815D}] - C:\Program Files\Updater By SweetPacks\Firefox C:\Program Files\Updater By SweetPacks CHR HKLM-x32\...\Chrome\Extension: [hbcennhacfaagdopikcegfcobcadeocj] - C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx [2013-10-14] CHR HKLM-x32\...\Chrome\Extension: [icdlfehblmklkikfigmjhbmmpmkmpooj] - C:\Program Files (x86)\Common Files\Spigot\GC\ErrorAssistant_1.3.crx [2013-12-27] CHR HKLM-x32\...\Chrome\Extension: [mhkaekfpcppmmioggniknbnbdbcigpkk] - C:\Program Files (x86)\Common Files\Spigot\GC\coupons_2.4.crx [2013-04-26] CHR HKLM-x32\...\Chrome\Extension: [pfndaklgolladniicklehhancnlgocpp] - C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx [2012-11-22] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION C:\Program Files (x86)\Common Files\Spigot S1 lsnfd; system32\drivers\lsnfd.sys [X] C:\Users\Jimm\AppData\Roaming\BlueSprig C:\Users\Jimm\AppData\Local\resmon.resmoncfg C:\Program Files (x86)\Vtools Task: {DD84089E-66E3-46F9-BA1E-223B8E9F4DCD} - System32\Tasks\schedule!2844174011 => C:\ProgramData\BetterSoft\EasylifeGadget Updater\EasylifeGadget Updater.exe <==== ATTENTION Task: {E1537D91-4214-492A-AE86-EFE09F6EB9ED} - System32\Tasks\DSite => C:\Users\Jimm\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: C:\Windows\Tasks\DSite.job => C:\Users\Jimm\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE <==== ATTENTION C:\ProgramData\BetterSoft C:\Users\Jimm\AppData\Roaming\DSite ***************** HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{EEE6C360-6118-11DC-9C72-001320C79847} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\4A389731133043988A5144530C988955 => Key deleted successfully. HKCR\CLSID\4A389731133043988A5144530C988955 => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BD16A75-4FE3-4D9E-98B1-7BB7B4CFF5F7} => Key deleted successfully. HKCR\CLSID\{9BD16A75-4FE3-4D9E-98B1-7BB7B4CFF5F7} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EB2D07C0-8D22-4C33-9318-0BC6440C08C9} => Key deleted successfully. HKCR\CLSID\{EB2D07C0-8D22-4C33-9318-0BC6440C08C9} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2C4BA31C-0C15-11E2-90C7-9BFCBEB168B3} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{2C4BA31C-0C15-11E2-90C7-9BFCBEB168B3} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5F815AD7-A955-4943-91C4-7A96C2932399} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{5F815AD7-A955-4943-91C4-7A96C2932399} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{ae07101b-46d4-4a98-af68-0333ea26e113} => Value deleted successfully. HKCR\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113} => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{ae07101b-46d4-4a98-af68-0333ea26e113} => Value deleted successfully. HKCR\Wow6432Node\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113} => Key deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{F142D35A-1AFB-460E-9671-71E67936835E} => Value deleted successfully. HKCR\CLSID\{F142D35A-1AFB-460E-9671-71E67936835E} => Key deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => Value deleted successfully. HKCR\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => Key deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{840A66C8-5ED4-4A12-A05B-9FE1F7616078} => Value deleted successfully. HKCR\CLSID\{840A66C8-5ED4-4A12-A05B-9FE1F7616078} => Key deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{8AAB0C13-5A8E-4B8E-B975-592363D21461} => Value deleted successfully. HKCR\CLSID\{8AAB0C13-5A8E-4B8E-B975-592363D21461} => Key deleted successfully. HKLM\Software\Mozilla\Firefox\Extensions\\{7D4F1959-3F72-49d5-8E59-F02F8AA6815D} => Value deleted successfully. "C:\Program Files\Updater By SweetPacks" => File/Directory not found. HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\hbcennhacfaagdopikcegfcobcadeocj => Key deleted successfully. C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx => Moved successfully. HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\icdlfehblmklkikfigmjhbmmpmkmpooj => Key deleted successfully. C:\Program Files (x86)\Common Files\Spigot\GC\ErrorAssistant_1.3.crx => Moved successfully. HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk => Key deleted successfully. C:\Program Files (x86)\Common Files\Spigot\GC\coupons_2.4.crx => Moved successfully. HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pfndaklgolladniicklehhancnlgocpp => Key deleted successfully. C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx => Moved successfully. HKLM\SOFTWARE\Policies\Google => Key deleted successfully. HKCU\SOFTWARE\Policies\Google => Key deleted successfully. C:\Program Files (x86)\Common Files\Spigot => Moved successfully. lsnfd => Service deleted successfully. C:\Users\Jimm\AppData\Roaming\BlueSprig => Moved successfully. C:\Users\Jimm\AppData\Local\resmon.resmoncfg => Moved successfully. C:\Program Files (x86)\Vtools => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DD84089E-66E3-46F9-BA1E-223B8E9F4DCD} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DD84089E-66E3-46F9-BA1E-223B8E9F4DCD} => Key deleted successfully. C:\Windows\System32\Tasks\schedule!2844174011 => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\schedule!2844174011 => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E1537D91-4214-492A-AE86-EFE09F6EB9ED} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E1537D91-4214-492A-AE86-EFE09F6EB9ED} => Key deleted successfully. C:\Windows\System32\Tasks\DSite => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DSite => Key deleted successfully. C:\Windows\Tasks\DSite.job => Moved successfully. "C:\ProgramData\BetterSoft" => File/Directory not found. C:\Users\Jimm\AppData\Roaming\DSite => Moved successfully. ==== End of Fixlog ====