Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 04-07-2013 Ran by Szymi at 2013-07-04 18:56:32 Run:1 Running from C:\Users\Szymi\Downloads Boot Mode: Normal ============================================== HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Value deleted successfully. HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Key not found. HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\Tiny download manager => Value deleted successfully. Winsock: Catalog5 entry 000000000001\\LibraryPath was set successfully to %SystemRoot%\system32\NLAapi.dll Winsock: Catalog5 entry 000000000008\\LibraryPath was set successfully to %SystemRoot%\System32\mswsock.dll Winsock: Catalog5-x64 entry 000000000001\\LibraryPath was set successfully to %SystemRoot%\system32\NLAapi.dll Winsock: Catalog5-x64 entry 000000000008\\LibraryPath was set successfully to %SystemRoot%\System32\mswsock.dll usb6xxxk => Service deleted successfully. ========= reg add "HKLM\SYSTEM\CurrentControlSet\Control\Session Manager" /v BootExecute /t REG_EXPAND_SZ /d "autocheck autochk *" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{11723D06-A64F-4511-A19E-3347DD9F4AD0} => Key not found. C:\Windows\System32\Tasks\ParetoLogic Registration3 not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ParetoLogic Registration3 => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{16649B9C-8DF4-4C59-AD87-576D5626DB59} => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16649B9C-8DF4-4C59-AD87-576D5626DB59} => Key deleted successfully. C:\Windows\System32\Tasks\YourFile Update => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YourFile Update => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4B323CBC-DF26-40CA-A356-44EE6200844F} => Key not found. C:\Windows\System32\Tasks\ParetoLogic Update Version3 Startup Task not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ParetoLogic Update Version3 Startup Task => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{59641C54-932B-4E5A-8EF3-EFF4218E8F4D} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{59641C54-932B-4E5A-8EF3-EFF4218E8F4D} => Key deleted successfully. C:\Windows\System32\Tasks\EasyBatteryManager => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EasyBatteryManager => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7006712D-D3EB-430C-9527-6499F7CC5D03} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7006712D-D3EB-430C-9527-6499F7CC5D03} => Key deleted successfully. C:\Windows\System32\Tasks\EasySpeedUpManager => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EasySpeedUpManager => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AFC8B635-6D67-4D55-AA4E-FC65851D69A0} => Key not found. C:\Windows\System32\Tasks\RegCure Pro not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RegCure Pro => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7DC0662-F3C0-4A3B-B9F1-C232B1605111} => Key not found. C:\Windows\System32\Tasks\ParetoLogic Update Version3 not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ParetoLogic Update Version3 => Key not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CAF471C0-A49F-41CE-9D2C-2C4C02B5E79E} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CAF471C0-A49F-41CE-9D2C-2C4C02B5E79E} => Key deleted successfully. C:\Windows\System32\Tasks\WifiManager => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WifiManager => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CCAFA887-4094-4409-9601-07FE736B9D21} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCAFA887-4094-4409-9601-07FE736B9D21} => Key deleted successfully. C:\Windows\System32\Tasks\SamsungSupportCenter => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SamsungSupportCenter => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E32BD0C3-E731-4BB4-88B0-B59AD4F61638} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E32BD0C3-E731-4BB4-88B0-B59AD4F61638} => Key deleted successfully. C:\Windows\System32\Tasks\SUPBackground => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SUPBackground => Key deleted successfully. C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job not found. C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job not found. C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job not found. C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job not found. C:\Windows\DeleteOnReboot.bat => Moved successfully. C:\Windows\System32\Drivers\89193606.sys => Moved successfully. C:\Program Files (x86)\Google => Moved successfully. C:\Users\Szymi\AppData\Local\Google => Moved successfully. C:\Program Files (x86)\Mozilla Firefox => Moved successfully. C:\Windows\SysWOW64\searchplugins => Moved successfully. C:\Windows\SysWOW64\Extensions => Moved successfully. C:\ProgramData\Kaspersky Lab => Moved successfully. ========= del /q "\\?\C:\Windows\System32\ " ========= ========= End of CMD: ========= ========= del /q C:\log.txt ========= ========= End of CMD: ========= ========= dir /s "C:\Program Files\Windows Defender" > C:\log.txt ========= Wolumin w stacji C nie ma etykiety. Numer seryjny woluminu: 4AA7-473A Katalog: C:\Program Files\Windows Defender 2011-09-22 00:44 . 2011-09-22 00:44 .. 2009-07-14 03:41 10ÿ752 MpAsDesc.dll 2009-07-14 03:41 571ÿ904 MpClient.dll 2009-07-14 03:39 190ÿ976 MpCmdRun.exe 2009-07-14 03:41 314ÿ880 MpCommu.dll 2009-07-14 03:29 52ÿ224 MpEvMsg.dll 2009-07-14 03:41 52ÿ224 MpOAV.dll 2009-07-14 03:41 200ÿ192 MpRTP.dll 2009-07-14 03:41 1ÿ011ÿ712 MpSvc.dll 2009-07-14 03:39 961ÿ024 MSASCui.exe 2010-11-20 15:27 60ÿ928 MsMpCom.dll 2009-07-14 03:29 4ÿ608 MsMpLics.dll 2009-07-14 03:41 487ÿ936 MsMpRes.dll 2011-03-10 01:32 pl-PL 12 plik(¢w) 3ÿ919ÿ360 bajt¢w Katalog: C:\Program Files\Windows Defender\pl-PL 2011-03-10 01:32 . 2011-03-10 01:32 .. 2011-03-10 01:31 41ÿ472 MpAsDesc.dll.mui 2011-03-10 01:31 17ÿ920 MpEvMsg.dll.mui 2011-03-10 01:31 53ÿ248 MsMpRes.dll.mui 3 plik(¢w) 112ÿ640 bajt¢w Razem wymienionych plik¢w: 15 plik(¢w) 4ÿ032ÿ000 bajt¢w 5 katalog(¢w) 63ÿ816ÿ359ÿ936 bajt¢w wolnych ========= End of CMD: ========= ==== End of Fixlog ====