Fix result of Farbar Recovery Scan Tool (x64) Version: 23.08.2018 Ran by SYSTEM (01-09-2018 13:37:00) Run:1 Running from E:\ Boot Mode: Recovery ============================================== fixlist content: ***************** IFEO\AcroRd32.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\AdAppMgr.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\ahc.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\bridge.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\extendscript toolkit.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\galaxyclient.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\golive.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\itunes.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\origin.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\originer.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\originuninstall.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\softwareupdate.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" IFEO\unins000.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" Startup: C:\Users\Aleph\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2018-08-15] ShortcutTarget: Dropbox.lnk -> (No File) BootExecute: autocheck autochk * sdnclean64.exe S1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdrivera.sys [0 2018-07-02] () <==== ATTENTION (zero byte File/Folder) S0 aswbidsh; C:\Windows\System32\drivers\aswbidsha.sys [0 2018-07-02] () <==== ATTENTION (zero byte File/Folder) S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [0 2018-07-02] () <==== ATTENTION (zero byte File/Folder) S0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [0 2018-07-02] () <==== ATTENTION (zero byte File/Folder) S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X] S3 iswSvc; no ImagePath S2 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] CMD: FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i" Reboot: ***************** "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\AcroRd32.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\AdAppMgr.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\ahc.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bridge.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\extendscript toolkit.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\galaxyclient.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\golive.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\itunes.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\origin.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\originer.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\originuninstall.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\softwareupdate.exe" => removed successfully "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\unins000.exe" => removed successfully C:\Users\Aleph\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk => moved successfully "ShortcutTarget: Dropbox.lnk -> (No File)" => not found HKLM\System\ControlSet001\Control\Session Manager\\BootExecute => value restored successfully "HKLM\System\ControlSet001\Services\aswbidsdriver" => removed successfully aswbidsdriver => service removed successfully "HKLM\System\ControlSet001\Services\aswbidsh" => removed successfully aswbidsh => service removed successfully "HKLM\System\ControlSet001\Services\aswHwid" => removed successfully aswHwid => service removed successfully "HKLM\System\ControlSet001\Services\aswRvrt" => removed successfully aswRvrt => service removed successfully "HKLM\System\ControlSet001\Services\BRDriver64_1_3_3_E02B25FC" => removed successfully BRDriver64_1_3_3_E02B25FC => service removed successfully "HKLM\System\ControlSet001\Services\iswSvc" => removed successfully iswSvc => service removed successfully "HKLM\System\ControlSet001\Services\VBoxAswDrv" => removed successfully VBoxAswDrv => service removed successfully "HKLM\System\ControlSet001\Services\xhunter1" => removed successfully xhunter1 => service removed successfully ========= FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i" ========= Failed to clear log Application. The request is not supported. Failed to clear log Internet Explorer. The request is not supported. Failed to clear log Microsoft-Windows-WMI-Activity/Trace. The request is not supported. Failed to clear log Security. The request is not supported. Failed to clear log System. The request is not supported. ========= End of CMD: ========= Reboot: => Error: This directive works only outside recovery mode. ==== End of Fixlog 13:37:02 ====