Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-07-2013 Ran by Szymi at 2013-07-04 18:56:32 Run:1 Running from C:\Users\Szymi\Downloads Boot Mode: Normal ============================================== HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Value deleted successfully. HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Key not found. HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Tiny download manager => Value deleted successfully. Winsock: Catalog5 entry 000000000001\\LibraryPath was set successfully to %SystemRoot%\system32\NLAapi.dll Winsock: Catalog5 entry 000000000008\\LibraryPath was set successfully to %SystemRoot%\System32\mswsock.dll Winsock: Catalog5-x64 entry 000000000001\\LibraryPath was set successfully to %SystemRoot%\system32\NLAapi.dll Winsock: Catalog5-x64 entry 000000000008\\LibraryPath was set successfully to %SystemRoot%\System32\mswsock.dll usb6xxxk => Service deleted successfully. ========= reg add "HKLM\SYSTEM\CurrentControlSet\Control\Session Manager" /v BootExecute /t REG_EXPAND_SZ /d "autocheck autochk *" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{11723D06-A64F-4511-A19E-3347DD9F4AD0} => Key not found. C:\Windows\System32\Tasks\ParetoLogic Registration3 not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ParetoLogic Registration3 => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{16649B9C-8DF4-4C59-AD87-576D5626DB59} => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16649B9C-8DF4-4C59-AD87-576D5626DB59} => Key deleted successfully. C:\Windows\System32\Tasks\YourFile Update => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YourFile Update => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4B323CBC-DF26-40CA-A356-44EE6200844F} => Key not found. C:\Windows\System32\Tasks\ParetoLogic Update Version3 Startup Task not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ParetoLogic Update Version3 Startup Task => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{59641C54-932B-4E5A-8EF3-EFF4218E8F4D} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{59641C54-932B-4E5A-8EF3-EFF4218E8F4D} => Key deleted successfully. C:\Windows\System32\Tasks\EasyBatteryManager => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EasyBatteryManager => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7006712D-D3EB-430C-9527-6499F7CC5D03} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7006712D-D3EB-430C-9527-6499F7CC5D03} => Key deleted successfully. C:\Windows\System32\Tasks\EasySpeedUpManager => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EasySpeedUpManager => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AFC8B635-6D67-4D55-AA4E-FC65851D69A0} => Key not found. C:\Windows\System32\Tasks\RegCure Pro not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RegCure Pro => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7DC0662-F3C0-4A3B-B9F1-C232B1605111} => Key not found. C:\Windows\System32\Tasks\ParetoLogic Update Version3 not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ParetoLogic Update Version3 => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CAF471C0-A49F-41CE-9D2C-2C4C02B5E79E} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CAF471C0-A49F-41CE-9D2C-2C4C02B5E79E} => Key deleted successfully. C:\Windows\System32\Tasks\WifiManager => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WifiManager => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CCAFA887-4094-4409-9601-07FE736B9D21} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCAFA887-4094-4409-9601-07FE736B9D21} => Key deleted successfully. C:\Windows\System32\Tasks\SamsungSupportCenter => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SamsungSupportCenter => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E32BD0C3-E731-4BB4-88B0-B59AD4F61638} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E32BD0C3-E731-4BB4-88B0-B59AD4F61638} => Key deleted successfully. C:\Windows\System32\Tasks\SUPBackground => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SUPBackground => Key deleted successfully. C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job not found. C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job not found. C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job not found. C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job not found. C:\Windows\DeleteOnReboot.bat => Moved successfully. C:\Windows\System32\Drivers\89193606.sys => Moved successfully. C:\Program Files (x86)\Google => Moved successfully. C:\Users\Szymi\AppData\Local\Google => Moved successfully. C:\Program Files (x86)\Mozilla Firefox => Moved successfully. C:\Windows\SysWOW64\searchplugins => Moved successfully. C:\Windows\SysWOW64\Extensions => Moved successfully. C:\ProgramData\Kaspersky Lab => Moved successfully. ========= del /q "\\?\C:\Windows\System32\ " ========= ========= End of CMD: ========= ========= del /q C:\log.txt ========= ========= End of CMD: ========= ========= dir /s "C:\Program Files\Windows Defender" > C:\log.txt ========= Wolumin w stacji C nie ma etykiety. Numer seryjny woluminu: 4AA7-473A Katalog: C:\Program Files\Windows Defender 2011-09-22 00:44