Hey. Here it is:
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015
Ran by RoseCake at 2015-03-20 20:28:52 Run:1
Running from C:\Users\RoseCake\Desktop
Loaded Profiles: RoseCake (Available profiles: RoseCake)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
start
CloseProcesses:
CreateRestorePoint:
C:\Program Files (x86)\YouTube Download Pool\G2\youtubeserv.exe
HKU\S-1-5-21-3583772472-3013558980-347553230-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
C:\Program Files (x86)\Lavasoft\Web Companion
ShortcutTarget: 1AB24RN6.lnk -> C:\ProgramData\{4007dc82-6f9d-7ab4-4007-7dc826f97209}\1AB24RN6.exe (No File)
ProxyEnable: [S-1-5-21-3583772472-3013558980-347553230-1001] => Internet Explorer proxy is enabled.
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Toolbar: HKU\S-1-5-21-3583772472-3013558980-347553230-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-3583772472-3013558980-347553230-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
S3 Lavasoft Kernexplorer; No ImagePath
S3 RSUSBSTOR; System32\Drivers\RtsUStor.sys [X]
2015-03-16 17:53 - 2015-03-16 17:53 - 00003664 _____ () C:\windows\System32\Tasks\IE_ERR4WDR
C:\windows\System32\Tasks\IE_ERR4WDR
015-03-16 17:53 - 2015-03-16 17:53 - 00003640 _____ () C:\windows\System32\Tasks\HDNINSTSCHD
2015-03-16 17:53 - 2015-03-16 17:53 - 00003506 _____ () C:\windows\System32\Tasks\UPDTEXE4_WDR
2015-03-16 17:52 - 2015-03-16 17:56 - 00000000 ____D () C:\Program Files (x86)\Portable WeatherApp
C:\windows\System32\Tasks\HDNINSTSCHD
C:\windows\System32\Tasks\UPDTEXE4_WDR
C:\Program Files (x86)\Portable WeatherApp
2015-03-14 13:50 - 2015-03-19 07:31 - 00000000 ____D () C:\Program Files (x86)\Windows Network Accelerater
C:\Program Files (x86)\Windows Network Accelerater
2015-03-14 13:50 - 2015-03-14 13:50 - 00000000 ____D () C:\ProgramData\Windows VXM
2015-03-14 13:06 - 2015-03-14 14:07 - 00000000 ____D () C:\Program Files (x86)\Ninja Loader
2015-03-14 13:05 - 2015-03-14 13:05 - 00000000 ____D () C:\Users\RoseCake\Documents\DreamVideoSoft
2015-03-14 13:04 - 2015-03-16 21:55 - 00000000 ____D () C:\ProgramData\{b95cd953-ab35-e8d1-b95c-cd953ab3654e}
2015-03-14 13:04 - 2015-03-16 18:01 - 00000000 ____D () C:\ProgramData\Optimizer
2015-03-14 13:04 - 2015-03-14 13:04 - 00003116 _____ () C:\windows\System32\Tasks\{4549E9A6-25B5-4CFC-A8C0-17672EA6055F}
2015-03-14 13:04 - 2015-03-14 13:04 - 00000000 ____D () C:\Program Files (x86)\YouTube Download Pool
2015-03-14 12:55 - 2015-03-16 17:59 - 00001346 _____ () C:\windows\Tasks\TSZK.job
2015-03-14 12:42 - 2015-03-17 15:12 - 00000000 ____D () C:\Users\RoseCake\AppData\Local\C0918958-1426336956-E011-B5A7-00266CC682D8
2015-03-14 12:39 - 2015-03-17 15:11 - 00000000 ____D () C:\ProgramData\{4007dc82-6f9d-7ab4-4007-7dc826f97209}
2015-03-14 12:39 - 2015-03-16 19:00 - 00000000 ____D () C:\Users\RoseCake\AppData\Roaming\C0918958-1426351151-E011-B5A7-00266CC682D8
2015-03-14 12:38 - 2015-03-14 12:38 - 00000088 _____ () C:\Users\RoseCake\AppData\Local\dd8aabaa03142635a973ae46125b9ccc
2015-03-14 12:35 - 2015-03-17 15:11 - 00000000 ____D () C:\ProgramData\{05ef0d6c-1f36-5967-05ef-f0d6c1f335b0}
2015-03-14 12:34 - 2015-03-16 17:53 - 00000000 ____D () C:\Users\RoseCake\AppData\Roaming\C0918958-1426350886-E011-B5A7-00266CC682D8
2015-03-13 07:28 - 2015-03-13 07:29 - 02057008 _____ () C:\Users\RoseCake\Downloads\Adaware_Installer (1).exe
2015-03-09 17:30 - 2015-03-16 21:33 - 00000385 _____ () C:\Users\RoseCake\AppData\Roaming\TSZK
C:\Program Files (x86)\Lavasoft
C:\Users\RoseCake\AppData\Roaming\TSZK
2015-03-14 12:38 - 2015-03-14 12:38 - 0000088 _____ () C:\Users\RoseCake\AppData\Local\dd8aabaa03142635a973ae46125b9ccc
Task: {198C343B-CCED-42C5-8523-422F45BAF623} - System32\Tasks\IE_ERR4WDR => C:\Program Files (x86)\Portable WeatherApp\IEError.exe
Task: {55E9C570-885A-492F-8D54-69BF5882442C} - System32\Tasks\UPDTEXE4_WDR => C:\Program Files (x86)\Portable WeatherApp\updater.exe
Task: {7FAF9ECE-AD29-41FB-BA54-901BA7536554} - System32\Tasks\Ad-Aware Update (Weekly) => C:\Program Files (x86)\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: C:\windows\Tasks\TSZK.job => C:\Users\RoseCake\AppData\Roaming\TSZK.exe <==== ATTENTION
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\75718006.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\98483919.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\75718006.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\98483919.sys => ""="Driver"
CMD: bitsadmin /reset /allusers
CMD: netsh winsock reset catalog
CMD: ipconfig /flushdns
hosts:
Emptytemp:
end
*****************
Processes closed successfully.
Restore point was successfully created.
C:\Program Files (x86)\YouTube Download Pool\G2\youtubeserv.exe => Moved successfully.
HKU\S-1-5-21-3583772472-3013558980-347553230-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Web Companion => value deleted successfully.
"C:\Program Files (x86)\Lavasoft\Web Companion" => File/Directory not found.
C:\ProgramData\{4007dc82-6f9d-7ab4-4007-7dc826f97209}\1AB24RN6.exe not found.
HKU\S-1-5-21-3583772472-3013558980-347553230-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value deleted successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-21-3583772472-3013558980-347553230-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
HKU\S-1-5-21-3583772472-3013558980-347553230-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value deleted successfully.
HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Key not found.
Lavasoft Kernexplorer => Service deleted successfully.
RSUSBSTOR => Service deleted successfully.
C:\windows\System32\Tasks\IE_ERR4WDR => Moved successfully.
"C:\windows\System32\Tasks\IE_ERR4WDR" => File/Directory not found.
015-03-16 17:53 - 2015-03-16 17:53 - 00003640 _____ () C:\windows\System32\Tasks\HDNINSTSCHD => Error: No automatic fix found for this entry.
C:\windows\System32\Tasks\UPDTEXE4_WDR => Moved successfully.
C:\Program Files (x86)\Portable WeatherApp => Moved successfully.
C:\windows\System32\Tasks\HDNINSTSCHD => Moved successfully.
"C:\windows\System32\Tasks\UPDTEXE4_WDR" => File/Directory not found.
"C:\Program Files (x86)\Portable WeatherApp" => File/Directory not found.
C:\Program Files (x86)\Windows Network Accelerater => Moved successfully.
"C:\Program Files (x86)\Windows Network Accelerater" => File/Directory not found.
C:\ProgramData\Windows VXM => Moved successfully.
C:\Program Files (x86)\Ninja Loader => Moved successfully.
C:\Users\RoseCake\Documents\DreamVideoSoft => Moved successfully.
C:\ProgramData\{b95cd953-ab35-e8d1-b95c-cd953ab3654e} => Moved successfully.
C:\ProgramData\Optimizer => Moved successfully.
C:\windows\System32\Tasks\{4549E9A6-25B5-4CFC-A8C0-17672EA6055F} => Moved successfully.
C:\Program Files (x86)\YouTube Download Pool => Moved successfully.
C:\windows\Tasks\TSZK.job => Moved successfully.
C:\Users\RoseCake\AppData\Local\C0918958-1426336956-E011-B5A7-00266CC682D8 => Moved successfully.
C:\ProgramData\{4007dc82-6f9d-7ab4-4007-7dc826f97209} => Moved successfully.
C:\Users\RoseCake\AppData\Roaming\C0918958-1426351151-E011-B5A7-00266CC682D8 => Moved successfully.
C:\Users\RoseCake\AppData\Local\dd8aabaa03142635a973ae46125b9ccc => Moved successfully.
C:\ProgramData\{05ef0d6c-1f36-5967-05ef-f0d6c1f335b0} => Moved successfully.
C:\Users\RoseCake\AppData\Roaming\C0918958-1426350886-E011-B5A7-00266CC682D8 => Moved successfully.
C:\Users\RoseCake\Downloads\Adaware_Installer (1).exe => Moved successfully.
C:\Users\RoseCake\AppData\Roaming\TSZK => Moved successfully.
C:\Program Files (x86)\Lavasoft => Moved successfully.
"C:\Users\RoseCake\AppData\Roaming\TSZK" => File/Directory not found.
"C:\Users\RoseCake\AppData\Local\dd8aabaa03142635a973ae46125b9ccc" => File/Directory not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{198C343B-CCED-42C5-8523-422F45BAF623}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{198C343B-CCED-42C5-8523-422F45BAF623}" => Key deleted successfully.
C:\Windows\System32\Tasks\IE_ERR4WDR not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IE_ERR4WDR" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{55E9C570-885A-492F-8D54-69BF5882442C}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{55E9C570-885A-492F-8D54-69BF5882442C}" => Key deleted successfully.
C:\Windows\System32\Tasks\UPDTEXE4_WDR not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UPDTEXE4_WDR" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7FAF9ECE-AD29-41FB-BA54-901BA7536554}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7FAF9ECE-AD29-41FB-BA54-901BA7536554}" => Key deleted successfully.
C:\Windows\System32\Tasks\Ad-Aware Update (Weekly) => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Ad-Aware Update (Weekly)" => Key deleted successfully.
C:\windows\Tasks\TSZK.job not found.
"HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\75718006.sys" => Key deleted successfully.
"HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\98483919.sys" => Key deleted successfully.
"HKLM\System\CurrentControlSet\Control\SafeBoot\Network\75718006.sys" => Key deleted successfully.
"HKLM\System\CurrentControlSet\Control\SafeBoot\Network\98483919.sys" => Key deleted successfully.
========= bitsadmin /reset /allusers =========
BITSADMIN version 3.0 [ 7.5.7601 ]
BITS administration utility.
© Copyright 2000-2006 Microsoft Corp.
BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.
Unable to cancel {C44030AF-72A1-4FB2-B2D9-EEA37CAB7129}.
{BD32A4F6-AF7B-4B7A-B112-AD2F4BB664E7} canceled.
{C9DEA4D2-8AE8-4D81-8CB6-47594A3CCF35} canceled.
{D105BEDD-9E21-4CFF-8B4F-B29FE1A6495F} canceled.
{4FB45AF1-3266-4F93-BB97-B46BCC3B2C10} canceled.
{8714DCED-B7A0-4BA4-BC00-C84053ECEAFE} canceled.
{D346B9EA-0392-4AAD-9170-231829E2D7DF} canceled.
{3D579EEB-F4FB-49FC-BB91-A76940F06FF8} canceled.
{C51C303B-F07F-4D6C-AFCB-94790B5A2FDB} canceled.
{849D0545-9195-4765-95E6-C856E1CA4693} canceled.
{81A5A30C-8197-4763-94ED-01B1300F2486} canceled.
10 out of 11 jobs canceled.
========= End of CMD: =========
========= netsh winsock reset catalog =========
Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.
========= End of CMD: =========
========= ipconfig /flushdns =========
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
========= End of CMD: =========
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 98.5 MB temporary data.
The system needed a reboot.
==== End of Fixlog 20:31:25 ====
I don't want to seem redundant, but this will take care of the popup I've seen today about updating the browser I mentioned earlier, right? It didn't happen yet on this boot, so I so hope so! Thanks so much again. Love your quick replies.
D