﻿Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 09-05-2015
Ran by Kacper at 2015-05-12 21:14:08 Run:1
Running from C:\Users\Kacper\Downloads
Loaded Profiles: Kacper (Available profiles: Kacper)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
C:\Users\Kacper\Desktop\Continue Eraser installation.lnk
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
Toolbar: HKU\S-1-5-21-3543108252-308360466-193487373-1001 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Reg: reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
OPR Extension: (browse pulse) - C:\Users\Kacper\AppData\Roaming\Opera Software\Opera Stable\Extensions\cjegghfgfmnjndljbfkfkenodcocgiaf [2015-05-01]
C:\Users\Kacper\AppData\Roaming\Opera Software\Opera Stable\Extensions\cjegghfgfmnjndljbfkfkenodcocgiaf
S3 cleanhlp; \??\C:\Program Files (x86)\Ashampoo\Ashampoo Anti-Virus\cleanhlp64.sys [X]
S3 ETDSMBus; \SystemRoot\System32\drivers\ETDSMBus.sys [X]
S3 getbus; \??\C:\Users\Kacper\AppData\Local\Temp\getbus.sys [X]
S3 SBIOSIO; \??\C:\Users\Kacper\AppData\Local\Temp\__Samsung_Update\SBIOSIO64.sys [X]
C:\Users\Kacper\Downloads\Eraser(12852)-dp.exe
C:\Users\Kacper\Downloads\SpyHunter-installer.exe
C:\Program Files\Enigma Software Group
C:\ProgramData\boost_interprocess
C:\ProgramData\MakeMarkerFile.exe
C:\Users\EasySurvey\EasySurvey.exe
EmptyTemp:
*****************

C:\Users\Kacper\Desktop\Continue Eraser installation.lnk => Moved successfully.
C:\windows\system32\GroupPolicy\Machine => Moved successfully.
C:\windows\system32\GroupPolicy\GPT.ini => Moved successfully.
"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
HKU\S-1-5-21-3543108252-308360466-193487373-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => value deleted successfully.
HKCR\CLSID\{47833539-D0C5-4125-9FA8-0819E2EAAC93} => Key not found. 

========= reg delete "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\SearchScopes" /f =========

Operacja ukoäczona pomylnie.


========= End of Reg: =========


========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f =========

Operacja ukoäczona pomylnie.


========= End of Reg: =========


========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f =========

Operacja ukoäczona pomylnie.


========= End of Reg: =========

C:\Users\Kacper\AppData\Roaming\Opera Software\Opera Stable\Extensions\cjegghfgfmnjndljbfkfkenodcocgiaf => Moved successfully.
"C:\Users\Kacper\AppData\Roaming\Opera Software\Opera Stable\Extensions\cjegghfgfmnjndljbfkfkenodcocgiaf" => File/Directory not found.
cleanhlp => Service deleted successfully.
ETDSMBus => Service deleted successfully.
getbus => Service deleted successfully.
SBIOSIO => Service deleted successfully.
C:\Users\Kacper\Downloads\Eraser(12852)-dp.exe => Moved successfully.
C:\Users\Kacper\Downloads\SpyHunter-installer.exe => Moved successfully.
C:\Program Files\Enigma Software Group => Moved successfully.

"C:\ProgramData\boost_interprocess" directory move:

Could not move "C:\ProgramData\boost_interprocess" directory. => Scheduled to move on reboot.

C:\ProgramData\MakeMarkerFile.exe => Moved successfully.
C:\Users\EasySurvey\EasySurvey.exe => Moved successfully.
EmptyTemp: => Removed 218.3 MB temporary data.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-05-12 21:15:26)<=

C:\ProgramData\boost_interprocess => Is moved successfully.

==== End of Fixlog 21:15:26 ====