Fix result of Farbar Recovery
Scan Tool
(x64) Version: 20-05-2017
Ran by Tomi (21-05-2017 02:24:16) Run:1
Running from C:\Users\Tomi\Desktop
Loaded Profiles: Tomi (Available Profiles: Tomi)
Boot Mode: Normal
==============================================
fixlist content:
*****************
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32
Antivirus
\Mozilla Thunderbird => not found
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]
2015-11-13 14:51 - 2017-05-20 18:13 - 0000074 _____ () C:\Users\Tomi\AppData\Roaming\sp_data.sys
2017-01-25 02:53 - 2017-01-25 02:53 - 0000092 _____ () C:\Users\Tomi\AppData\Local\fusioncache.dat
2016-09-17 08:20 - 2016-09-17 08:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2017-01-26 03:19 - 2017-01-26 03:19 - 0000040 _____ () C:\ProgramData\ra3.ini
2014-10-29 07:25 - 2012-09-07 12:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS
2017-05-19 04:30 - 2016-11-11 11:13 - 1886344 _____
Microsoft
Corporation) C:\Users\Tomi\AppData\Local\Temp\dllnt_dump.dll
2017-01-25 02:53 - 2017-01-25 02:57 - 0204800 _____ (Sony DADC Austria AG) C:\Users\Tomi\AppData\Local\Temp\drm_dyndata_7370014.dll
2017-04-02 01:16 - 2009-06-08 13:29 - 0253952 _____ (Electronic Arts Inc.) C:\Users\Tomi\AppData\Local\Temp\eauninstall.exe
2017-01-04 09:17 - 2017-01-04 09:17 - 1112255 _____ () C:\Users\Tomi\AppData\Local\Temp\ubiAFD3.tmp.exe
2017-03-30 17:39 - 2017-03-30 17:39 - 14456872 _____ (Microsoft Corporation) C:\Users\Tomi\AppData\Local\Temp\vc_redist.x86.exe
Task: {03B39CDA-DE98-4C42-9482-C85EBCA73AFA} - \WPD\SqmUpload_S-1-5-21-2587465482-1460188549-1100274292-1001 -> No File <==== ATTENTION
Task: {06EF1C31-B747-4DFD-AAC0-F08C34D5AC98} -
McAfee
\McAfee Idle Detection Task -> No File <==== ATTENTION
Task: {08ADFBD5-EFA2-427C-B502-E26E30CEEDDF} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {3BCD67F6-2EFF-4EF5-8BD0-B7584A468F58} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {3E08E406-F783-4FF8-A5EF-6D46CC41B2BD} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {46C17FFC-512D-4C60-B641-895D9998F230} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {5D84CDE4-CD24-4255-BF05-0323D97D705A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {6378BF89-38A5-4536-8ABF-9D4658095BC9} -
Microsoft
\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {6611E6E9-32C9-4A33-BF15-9B00AB1A13EE} -
Microsoft
\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {AB4032B3-69C5-4742-83FF-75C3EA18D90A} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {C28C8CE7-4709-403D-BBA0-305022A099E9} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {D96E54D0-74F3-4C40-B67A-E6825D12E2F0} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {EB4B3ED5-DCB8-4A09-B55E-88D7C198EBC4} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {EFF34368-FEC4-404D-A9FD-242432A2995B} -
Microsoft
\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
*****************
HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\eplgTb@eset.com => value removed successfully
ibtsiva => Unable to stop service.
HKLM\System\CurrentControlSet\Services\ibtsiva => key removed successfully
ibtsiva => service removed successfully
C:\Users\Tomi\AppData\Roaming\sp_data.sys => moved successfully
C:\Users\Tomi\AppData\Local\fusioncache.dat => moved successfully
Could not move "C:\ProgramData\DP45977C.lfl" => Scheduled to move on reboot.
C:\ProgramData\ra3.ini => moved successfully
C:\ProgramData\SetStretch.VBS => moved successfully
C:\Users\Tomi\AppData\Local\Temp\dllnt_dump.dll => moved successfully
C:\Users\Tomi\AppData\Local\Temp\drm_dyndata_7370014.dll => moved successfully
C:\Users\Tomi\AppData\Local\Temp\eauninstall.exe => moved successfully
C:\Users\Tomi\AppData\Local\Temp\ubiAFD3.tmp.exe => moved successfully
C:\Users\Tomi\AppData\Local\Temp\vc_redist.x86.exe => moved successfully
HKLM\SOFTWARE
Microsoft
\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{03B39CDA-DE98-4C42-9482-C85EBCA73AFA} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{03B39CDA-DE98-4C42-9482-C85EBCA73AFA} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WPD\SqmUpload_S-1-5-21-2587465482-1460188549-1100274292-1001 => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{06EF1C31-B747-4DFD-AAC0-F08C34D5AC98} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{06EF1C31-B747-4DFD-AAC0-F08C34D5AC98} => key removed successfully
HKLM\SOFTWARE\Microsoft
Windows NT
\CurrentVersion\Schedule\TaskCache\Tree
McAfee
\McAfee Idle Detection Task => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{08ADFBD5-EFA2-427C-B502-E26E30CEEDDF} => key removed successfully
HKLM\SOFTWARE\Microsoft
Windows NT
\CurrentVersion\Schedule\TaskCache\Tasks\{08ADFBD5-EFA2-427C-B502-E26E30CEEDDF} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3BCD67F6-2EFF-4EF5-8BD0-B7584A468F58} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3BCD67F6-2EFF-4EF5-8BD0-B7584A468F58} => key removed successfully
HKLM\SOFTWARE
Microsoft
\Windows NT\CurrentVersion\Schedule\TaskCache\Tree
Microsoft
\Windows\Setup\GWXTriggers\Logon-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3E08E406-F783-4FF8-A5EF-6D46CC41B2BD} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3E08E406-F783-4FF8-A5EF-6D46CC41B2BD} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => key removed successfully
HKLM\SOFTWARE\Microsoft
Windows NT
\CurrentVersion\Schedule\TaskCache\Logon\{46C17FFC-512D-4C60-B641-895D9998F230} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{46C17FFC-512D-4C60-B641-895D9998F230} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5D84CDE4-CD24-4255-BF05-0323D97D705A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5D84CDE4-CD24-4255-BF05-0323D97D705A} => key removed successfully
HKLM\SOFTWARE\Microsoft
Windows NT
\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6378BF89-38A5-4536-8ABF-9D4658095BC9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6378BF89-38A5-4536-8ABF-9D4658095BC9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6611E6E9-32C9-4A33-BF15-9B00AB1A13EE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6611E6E9-32C9-4A33-BF15-9B00AB1A13EE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AB4032B3-69C5-4742-83FF-75C3EA18D90A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AB4032B3-69C5-4742-83FF-75C3EA18D90A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C28C8CE7-4709-403D-BBA0-305022A099E9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C28C8CE7-4709-403D-BBA0-305022A099E9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D96E54D0-74F3-4C40-B67A-E6825D12E2F0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D96E54D0-74F3-4C40-B67A-E6825D12E2F0} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EB4B3ED5-DCB8-4A09-B55E-88D7C198EBC4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EB4B3ED5-DCB8-4A09-B55E-88D7C198EBC4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EFF34368-FEC4-404D-A9FD-242432A2995B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EFF34368-FEC4-404D-A9FD-242432A2995B} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => key removed successfully
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 21-05-2017 02:25:43)
C:\ProgramData\DP45977C.lfl => Is moved successfully
==== End of Fixlog 02:25:44 ====