Fix result of Farbar Recovery Scan Tool (x64) Version: 23-02-2017 01 Ran by louisa-jeaninne (23-02-2017 20:54:14) Run:1 Running from C:\Users\louisa-jeaninne\Desktop Loaded Profiles: louisa-jeaninne (Available Profiles: louisa-jeaninne) Boot Mode: Normal ============================================== fixlist content: ***************** start CreateRestorePoint: CloseProcesses: HKU\S-1-5-18\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe CHR StartupUrls: Default -> "hxxp://www.jigsawplanet.com/","hxxp://www.mylucky123.com/?type=hp&ts=1476777238&z=b1292b6b19f427a99b6aeaagbz3m2q2m0m7m0obz2g&from=amule1017&uid=SAMSUNGXMZ7LN256HCHP-000H1_S1ZPNX0H716508" R2 ed2kidle; C:\Program Files (x86)\walalala co\aMuleCustom\ed2k.exe [236544 2016-09-12] (hxxp://www.amule.org/) [File not signed] R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] S3 dbx; system32\DRIVERS\dbx.sys [X] C:\Program Files (x86)\walalala co C:\Users\louisa-jeaninne\AppData\Local\Temp\INST01.dll C:\Users\louisa-jeaninne\AppData\Local\Temp\INST011.dll FirewallRules: [{681F0A43-BD3A-454C-9095-81D5C2BCABA7}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe FirewallRules: [{3E788BE3-8AE7-487E-87B7-065D8956A2FA}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe EmptyTemp: Reboot: end ***************** Restore point was successfully created. Processes closed successfully. HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\\SUPERAntiSpyware => value removed successfully Chrome StartupUrls => removed successfully ed2kidle => service not found. ibtsiva => Service stopped successfully. HKLM\System\CurrentControlSet\Services\ibtsiva => key removed successfully ibtsiva => service removed successfully HKLM\System\CurrentControlSet\Services\dbx => key removed successfully dbx => service removed successfully "C:\Program Files (x86)\walalala co" => not found. C:\Users\louisa-jeaninne\AppData\Local\Temp\INST01.dll => moved successfully C:\Users\louisa-jeaninne\AppData\Local\Temp\INST011.dll => moved successfully HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{681F0A43-BD3A-454C-9095-81D5C2BCABA7} => value removed successfully HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3E788BE3-8AE7-487E-87B7-065D8956A2FA} => value removed successfully =========== EmptyTemp: ========== BITS transfer queue => 15004956 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 28797829 B Java, Flash, Steam htmlcache => 904 B Windows/system/drivers => 24014523 B Edge => 24536 B Chrome => 2709865 B Firefox => 0 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 82481458 B LocalService => 0 B NetworkService => 128 B louisa-jeaninne => 35219176 B RecycleBin => 5587464 B EmptyTemp: => 184.9 MB temporary data Removed. ================================ The system needed a reboot. ==== End of Fixlog 20:55:00 ====