Fix result of Farbar Recovery Scan Tool (x64) Version: 16-05.2019
Ran by Karam (18-05-2019 01:14:15) Run:1
Running from C:\Users\Karam\Desktop
Loaded Profiles: Karam (Available Profiles: Karam)
Boot Mode: Normal
==============================================
fixlist content:
*****************
HKLM-x32\...\Run: [chrome] => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --headless --disable-gpu --remote-debugging-port=9222 hxxp://mi-de-ner-nis3.info/cdn-37.html?t=0.4
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {0EE3BE16-5A42-4419-B8BA-9680A80DBB10} - System32\Tasks\FastDataX Task => C:\PROGRA~2\FASTDA~1\FASTDA~1.EXE
Tcpip\Parameters: [NameServer] 82.163.142.9 95.211.158.137
Tcpip\..\Interfaces\{4C64E1C4-3495-4D7A-8109-C961B000B025}: [NameServer] 82.163.142.9 95.211.158.137
Tcpip\..\Interfaces\{532E43E3-D068-40CA-A3F9-1384E66BABDE}: [NameServer] 82.163.142.9 95.211.158.137
Tcpip\..\Interfaces\{532E43E3-D068-40CA-A3F9-1384E66BABDE}: [DhcpNameServer] 82.163.142.9
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\636559140.js [2017-04-27] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\636559140.cfg [2017-04-27] <==== ATTENTION
Shortcut: C:\Users\Karam\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Intеrnеt Eхрlorer.lnk -> C:\Users\Karam\AppData\Roaming\Browsers\exe.erolpxei.bat (No File) <==== Cyrillic
Shortcut: C:\Users\Karam\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Мozillа Firеfoх.lnk -> C:\Users\Karam\AppData\Roaming\Browsers\exe.xoferif.bat ()
Shortcut: C:\Users\Karam\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzillа Firеfoх.lnk -> C:\Users\Karam\AppData\Roaming\Browsers\exe.xoferif.bat ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Аvast SаfеZоnе Browsеr.lnk -> C:\Users\Karam\AppData\Roaming\Browsers\exe.rehcnual.bat ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Моzillа Firеfоx.lnk -> C:\Users\Karam\AppData\Roaming\Browsers\exe.xoferif.bat ()
C:\Users\Karam\AppData\Roaming\Browsers
C:\ProgramData\{3ef26ccf-212c-1}
C:\PROGRA~2\FASTDA~1
EmptyTemp:
*****************
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\chrome" => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0EE3BE16-5A42-4419-B8BA-9680A80DBB10}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0EE3BE16-5A42-4419-B8BA-9680A80DBB10}" => removed successfully
C:\WINDOWS\System32\Tasks\FastDataX Task => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FastDataX Task" => removed successfully
"HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\\NameServer" => removed successfully
"HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{4C64E1C4-3495-4D7A-8109-C961B000B025}\\NameServer" => removed successfully
"HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{532E43E3-D068-40CA-A3F9-1384E66BABDE}\\NameServer" => removed successfully
"HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{532E43E3-D068-40CA-A3F9-1384E66BABDE}\\DhcpNameServer" => removed successfully
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
C:\Program Files (x86)\mozilla firefox\defaults\pref\636559140.js => moved successfully
C:\Program Files (x86)\mozilla firefox\636559140.cfg => moved successfully
C:\Users\Karam\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Intеrnеt Eхрlorer.lnk => moved successfully
C:\Users\Karam\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Мozillа Firеfoх.lnk => moved successfully
C:\Users\Karam\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzillа Firеfoх.lnk => moved successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Аvast SаfеZоnе Browsеr.lnk => moved successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Моzillа Firеfоx.lnk => moved successfully
C:\Users\Karam\AppData\Roaming\Browsers => moved successfully
C:\ProgramData\{3ef26ccf-212c-1} => moved successfully
"C:\PROGRA~2\FASTDA~1" => not found
=========== EmptyTemp: ==========
BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 16142581 B
Java, Flash, Steam htmlcache => 3409 B
Windows/system/drivers => 1299544632 B
Edge => 0 B
Chrome => 121913892 B
Firefox => 431771183 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 7676402 B
systemprofile32 => 336682503 B
LocalService => 1450820 B
NetworkService => 607262 B
Karam => 1470921471 B
RecycleBin => 0 B
EmptyTemp: => 3.4 GB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 01:14:51 ====