Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 16-08-2014 02 Ran by Mateusz at 2014-08-16 13:02:31 Run:1 Running from C:\Users\Mateusz\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** Task: {42842203-02CE-4B6A-ADC1-3D1586D7CB50} - \4926 No Task File <==== ATTENTION Task: {5DFB74F1-5CD0-4494-B80E-FA7500AF53E5} - \bench-S-1-5-21-1841456429-2228432396-3594831439-1000 No Task File <==== ATTENTION Task: {66FEA65F-3133-464A-A593-763196206230} - \{25D7B685-A87A-460A-8B60-EB4F1863B809} No Task File <==== ATTENTION Task: {6A625933-5740-458E-8A47-C742BFB99C9D} - \CreateChoiceProcessTask No Task File <==== ATTENTION Task: {9C8C2F66-9DFC-48C6-93B8-9E0A07862ED7} - \0 No Task File <==== ATTENTION Task: {A03F2792-22A1-48F0-93A7-9FF1EAFCD501} - \{CA852E14-A414-4AB2-9A8F-E1AD9FFA4EF0} No Task File <==== ATTENTION Task: {CD18019C-636A-4557-B9B8-22FE6CCA70FF} - \{D3373D4D-A889-4E2A-9019-BEE635598CA3} No Task File <==== ATTENTION Task: {DC1C19BC-B736-4F5C-A29E-245B207A1F35} - \SidebarExecute No Task File <==== ATTENTION Task: {F8A9CD81-1F76-45A0-BF0D-683DBBE455CA} - \{B7CF7FAF-627D-4239-8A17-32C97E4D4757} No Task File <==== ATTENTION Task: C:\Windows\Tasks\5f305138-793d-4d0e-a840-cac36a81fd52.job => C:\Program Files (x86)\V-9.1HD\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-4.exe Task: C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-1.job => C:\Program Files (x86)\V-9.1HD\V-9.1HD-codedownloader.exe Task: C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-11.job => C:\Program Files (x86)\V-9.1HD\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-11.exe Task: C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-2.job => C:\Program Files (x86)\V-9.1HD\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-2.exe Task: C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-3.job => C:\Program Files (x86)\V-9.1HD\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-3.exe Task: C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-4.job => C:\Program Files (x86)\V-9.1HD\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-4.exe Task: C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-5.job => C:\Program Files (x86)\V-9.1HD\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-5.exe Task: C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-5_user.job => C:\Program Files (x86)\V-9.1HD\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-5.exe Task: C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-6.job => C:\Program Files (x86)\V-9.1HD\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-6.exeä/grPxUUKH='V-9.1HD' /AjbzTQ=61776 /PiJcmBn='001257' /iasPmSAg='0' /iycQG='0' /XOWiBvcx=C197182728904ACB87C281B2A7331B05IE /XKIhegoll=ed71733863d193c8bb8bcf2206997832 /VUaGkA=1_34_07_29 /irgcdbQJ=1.34.7.29 /tplRxjn=1407654801 /dmGrKhRXP=http://stats.infostatsserv.com /aQltfO=http://errors.infostatsserv.com /ROWoeoEy=http://js.infostatsserv.com /qAnHlEsFh=ch /mthdyoTtM /cnINUIpoo=V-9.1HD /EpfUw16f8682c-a655-4858-990c-260db84bdd0d.dll /NtOyraVN0e181faf-d80e-4b19-9725-5d0dbc158278.dll /VDODr72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-64.exe Task: C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-7.job => C:\Program Files (x86)\V-9.1HD\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-7.exeý/ZwElNLdew /grPxUUKH='V-9.1HD' /AjbzTQ=61776 /PiJcmBn='001257' /iasPmSAg='0' /iycQG='0' /XOWiBvcx=C197182728904ACB87C281B2A7331B05IE /XKIhegoll=ed71733863d193c8bb8bcf2206997832 /VUaGkA=1_34_07_29 /irgcdbQJ=1.34.7.29 /tplRxjn=1407654801 /dmGrKhRXP=http://stats.infostatsserv.com /aQltfO=http://errors.infostatsserv.com /ROWoeoEy=http://js.infostatsserv.com /qAnHlEsFh=ch /mthdyoTtM /cnINUIpoo=V-9.1HD /EpfUw16f8682c-a655-4858-990c-260db84bdd0d.dll /NtOyraVN0e181faf-d80e-4b19-9725-5d0dbc158278.dll /VDODr72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-64.exe Task: C:\Windows\Tasks\AmiUpdXp.job => C:\Users\Mateusz\AppData\Local\22317\a30795.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\Windows\Tasks\LaunchSignup.job => C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe C:\Program Files (x86)\V-9.1HD C:\Program Files (x86)\MyPC Backup C:\Users\Mateusz\AppData\Local\22317 C:\Program Files (x86)\globalUpdate C:\ProgramData\load32.exe Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Peerinator\Claim money.lnk -> C:\Program Files (x86)\Peerinator\Peerinator_claim.url (No File) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Peerinator\Peerinator website.lnk -> C:\Program Files (x86)\Peerinator\Peerinator.url (No File) HKLM-x32\...\Run: [NT Kernel Service] => C:\ProgramData\load32.exe -rundll32 /SYSTEM32 "C:\Windows\System32\taskmgr.exe" "C:\Program Files\Microsoft\Windows" HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-1841456429-2228432396-3594831439-1000\...\CurrentVersion\Windows: [Load] C:\Users\Mateusz\AppData\Local\Temp\IXP002.TMP\abc.exe <===== ATTENTION HKU\S-1-5-21-1841456429-2228432396-3594831439-1000\...\Winlogon: [Shell] C:\ProgramData\load32.exe [494592 2014-02-05] () <==== ATTENTION IFEO\AvastSvc.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\AvastUI.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\avcenter.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\avconfig.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\avgcsrvx.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\avgidsagent.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\avgnt.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\avgrsx.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\avguard.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\avgui.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\avgwdsvc.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\avp.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\avscan.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\bdagent.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\ccuac.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\ComboFix.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\egui.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\hijackthis.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\instup.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\keyscrambler.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\mbam.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\mbamgui.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\mbampt.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\mbamscheduler.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\mbamservice.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\MpCmdRun.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\MSASCui.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\MsMpEng.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\msseces.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\rstrui.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\spybotsd.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\wireshark.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe IFEO\zlclient.exe: [Debugger] C:\Users\Mateusz\Documents\315load32.exe HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mysearchr...om/?c=2402&t=15 URLSearchHook: HKCU - (No Name) - {d43723ae-1ae1-4a25-a6a4-bf0929273cab} - No File SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.as...q={searchTerms} SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.as...q={searchTerms} SearchScopes: HKCU - URL http://search.condui...rchTerms}&SSPV= SearchScopes: HKCU - SuggestionsURL_JSON http://suggest.searc...x={searchTerms} SearchScopes: HKCU - {7EDAFAFD-9A93-4D34-9C82-C5638A11A600} URL = http://www.mysearchr...q={searchTerms} BHO: No Name -> {0124123D-61B4-456f-AF86-78C53A0790C5} -> No File BHO-x32: CouponDownloader -> {c817d3d8-b9da-521d-971d-2c0a747ea697} -> C:\Program Files\C78087A8-C960-4464-A618-3D351DF6C0D7\gohymlmtrh.dll () C:\Program Files\C78087A8-C960-4464-A618-3D351DF6C0D7 Toolbar: HKLM - No Name - {0124123D-61B4-456f-AF86-78C53A0790C5} - No File Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\omiga-plus.xml FF Extension: safE syavve - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\eieyp5yb@qhlxeooao-.edu [2013-06-23] FF Extension: V-9.1HD - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\EXONUDC1159428@DGG30572216.com [2014-08-10] FF Extension: rollApp File Opener - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\extension@rollapp.com [2014-03-30] FF Extension: Browse Safe - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\{1D10EB57-E111-EA32-C58F-B1EAAEAE1962} [2014-07-03] FF Extension: CouponDownloader - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\j004-efxyrmbzyotmaw@jetpack.xpi [2014-07-28] FF Extension: TrustedShopper - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\jid1-bKSXgRwy1UQeRA@jetpack.xpi CHR HKLM-x32\...\Chrome\Extension: [fdjkhamgopgokjmllcmpkiijndjeidcl] - C:\Users\Mateusz\AppData\Local\Temp\twsfiles\trustedshopper.crx [2014-02-25] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION S0 GDBehave; system32\drivers\GDBehave.sys [X] S1 GDMnIcpt; \??\C:\Windows\system32\drivers\MiniIcpt.sys [X] S3 GDPkIcpt; \??\C:\Windows\system32\drivers\PktIcpt.sys [X] S1 HookCentre; \??\C:\Windows\system32\drivers\HookCentre.sys [X] S3 OSFMount; \??\C:\Program Files (x86)\Counter-Strike Global Offensive\image\x64\OSFMount.sys [X] S3 Prot6Flt; system32\DRIVERS\Prot6Flt.sys [X] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] C:\Users\Mateusz\AppData\Local\UpdateChecker C:\Windows\Tasks\AmiUpdXp.job C:\Users\Mateusz\AppData\Roaming\trustedshopper C:\Users\Mateusz\AppData\Local\22317 C:\Program Files (x86)\C78087A8-C960-4464-A618-3D351DF6C0D7 C:\Program Files\C78087A8-C960-4464-A618-3D351DF6C0D7 C:\Windows\Tasks\5f305138-793d-4d0e-a840-cac36a81fd52.job C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-4.job C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-7.job C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-6.job C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-1.job C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-5_user.job C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-5.job C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-2.job C:\Program Files (x86)\V-9.1HD C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-11.job C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-3.job C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job C:\Users\Mateusz\Documents\315load32.exe C:\ProgramData\load32.exe C:\Program Files (x86)\MyFree Codec C:\ProgramData\load32.exe C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Update.Microsoft.com.url C:\Users\Mateusz\worldpainter_64_1.6.4.exe C:\NTKernel C:\Users\Mateusz\AppData\Local\Temp\0dekwqs3.dll C:\Users\Mateusz\AppData\Local\Temp\AppQWARE1Update.exe C:\Users\Mateusz\AppData\Local\Temp\AutoRun.exe C:\Users\Mateusz\AppData\Local\Temp\AutoRunGUI.dll C:\Users\Mateusz\AppData\Local\Temp\avguidx.dll C:\Users\Mateusz\AppData\Local\Temp\BackupSetup.exe C:\Users\Mateusz\AppData\Local\Temp\BingBarSetup-Partner.exe C:\Users\Mateusz\AppData\Local\Temp\comver.dll C:\Users\Mateusz\AppData\Local\Temp\down.4520.OptimizerProInstaller.exe C:\Users\Mateusz\AppData\Local\Temp\drm_dyndata_7400009.dll C:\Users\Mateusz\AppData\Local\Temp\DTLite4461-0327.exe C:\Users\Mateusz\AppData\Local\Temp\EAInstall.dll C:\Users\Mateusz\AppData\Local\Temp\eauninstall.exe C:\Users\Mateusz\AppData\Local\Temp\extension2162104652163574214.dll C:\Users\Mateusz\AppData\Local\Temp\extension991850632169683284.dll C:\Users\Mateusz\AppData\Local\Temp\GenericWndApi.dll C:\Users\Mateusz\AppData\Local\Temp\GLF2D7.tmp.dll C:\Users\Mateusz\AppData\Local\Temp\htmlayout.dll C:\Users\Mateusz\AppData\Local\Temp\i4jdel0.exe C:\Users\Mateusz\AppData\Local\Temp\incredibar_installer.exe C:\Users\Mateusz\AppData\Local\Temp\InstHelper.exe C:\Users\Mateusz\AppData\Local\Temp\ipl1B1E.tmp.exe C:\Users\Mateusz\AppData\Local\Temp\jansi-64-git-Bukkit-1.4.6-R0.1-22-gcdb3b44-b2577jnks.dll C:\Users\Mateusz\AppData\Local\Temp\jansi-64-git-Bukkit-1.4.7-R0.1-8-ged63bd5-b2608jnks.dll C:\Users\Mateusz\AppData\Local\Temp\jansi-64-git-MCPC-Plus-jenkins-MCPC-Plus-35.dll C:\Users\Mateusz\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe C:\Users\Mateusz\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe C:\Users\Mateusz\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe C:\Users\Mateusz\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\Mateusz\AppData\Local\Temp\MachineIdCreator.exe C:\Users\Mateusz\AppData\Local\Temp\ms.exe C:\Users\Mateusz\AppData\Local\Temp\MSNC40D.exe C:\Users\Mateusz\AppData\Local\Temp\nsc48CE.exe C:\Users\Mateusz\AppData\Local\Temp\nsc4D14.exe C:\Users\Mateusz\AppData\Local\Temp\nsg70FF.tmp.exe C:\Users\Mateusz\AppData\Local\Temp\nsmA4CD.exe C:\Users\Mateusz\AppData\Local\Temp\nsmA6A2.exe C:\Users\Mateusz\AppData\Local\Temp\nsrA1DF.exe C:\Users\Mateusz\AppData\Local\Temp\nstA595.exe C:\Users\Mateusz\AppData\Local\Temp\nswF8C2.tmp.exe C:\Users\Mateusz\AppData\Local\Temp\nsx4AD2.exe C:\Users\Mateusz\AppData\Local\Temp\oi_{1E1816B6-3F0C-4113-9D22-9AE1184F5EED}.exe C:\Users\Mateusz\AppData\Local\Temp\oi_{A40FFBAC-A9DB-4901-8F01-C5DF7072C2D4}.exe C:\Users\Mateusz\AppData\Local\Temp\Quarantine.exe C:\Users\Mateusz\AppData\Local\Temp\safeguard.exe C:\Users\Mateusz\AppData\Local\Temp\SevenZip-Installer.exe C:\Users\Mateusz\AppData\Local\Temp\sfamcc00001.dll C:\Users\Mateusz\AppData\Local\Temp\sfextra.dll C:\Users\Mateusz\AppData\Local\Temp\SkypeSetup.exe C:\Users\Mateusz\AppData\Local\Temp\skype_amd645696315381083818665.dll C:\Users\Mateusz\AppData\Local\Temp\smt_omiga-plus.exe C:\Users\Mateusz\AppData\Local\Temp\sonarinst.exe C:\Users\Mateusz\AppData\Local\Temp\speeditupfree-knowledge.exe C:\Users\Mateusz\AppData\Local\Temp\sqlite-3.7.2-sqlitejdbc.dll C:\Users\Mateusz\AppData\Local\Temp\SRLDetectionLibrary7029539903761097015.dll C:\Users\Mateusz\AppData\Local\Temp\swt-win32-3740.dll C:\Users\Mateusz\AppData\Local\Temp\tbAsha.dll C:\Users\Mateusz\AppData\Local\Temp\The Sims Life Stories_uninst.exe C:\Users\Mateusz\AppData\Local\Temp\tmp1825.exe C:\Users\Mateusz\AppData\Local\Temp\tmp6ECE.exe C:\Users\Mateusz\AppData\Local\Temp\tmp803D.exe C:\Users\Mateusz\AppData\Local\Temp\tmpAB14.exe C:\Users\Mateusz\AppData\Local\Temp\tmp_minecraft.exe C:\Users\Mateusz\AppData\Local\Temp\toolbar4061111.exe C:\Users\Mateusz\AppData\Local\Temp\Tsu8DA2AEAC.dll C:\Users\Mateusz\AppData\Local\Temp\TsuC4184E72.dll C:\Users\Mateusz\AppData\Local\Temp\uninst1.exe C:\Users\Mateusz\AppData\Local\Temp\uninstall6065615.exe C:\Users\Mateusz\AppData\Local\Temp\UninstallEADM.dll C:\Users\Mateusz\AppData\Local\Temp\utt423F.tmp.exe C:\Users\Mateusz\AppData\Local\Temp\windowsgadgetspack.exe C:\Users\Mateusz\AppData\Local\Temp\xmlUpdater.exe C:\Users\Mateusz\AppData\Local\Temp\_is2116.exe C:\Users\Mateusz\AppData\Local\Temp\_is4A67.exe C:\Users\Mateusz\AppData\Local\Temp\_is8E7A.exe Reg: reg query "HKCU\Software\Microsoft\Windows Script" /s Reg: reg query "HKCU\Software\Microsoft\Windows Script Host" /s Reg: reg query HKLM\SYSTEM\CurrentControlSet\Services\Schedule Reboot: ***************** "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{42842203-02CE-4B6A-ADC1-3D1586D7CB50}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{42842203-02CE-4B6A-ADC1-3D1586D7CB50}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4926" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5DFB74F1-5CD0-4494-B80E-FA7500AF53E5}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5DFB74F1-5CD0-4494-B80E-FA7500AF53E5}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\bench-S-1-5-21-1841456429-2228432396-3594831439-1000" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{66FEA65F-3133-464A-A593-763196206230}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{66FEA65F-3133-464A-A593-763196206230}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{25D7B685-A87A-460A-8B60-EB4F1863B809}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6A625933-5740-458E-8A47-C742BFB99C9D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6A625933-5740-458E-8A47-C742BFB99C9D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateChoiceProcessTask" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9C8C2F66-9DFC-48C6-93B8-9E0A07862ED7}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9C8C2F66-9DFC-48C6-93B8-9E0A07862ED7}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\0" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A03F2792-22A1-48F0-93A7-9FF1EAFCD501}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A03F2792-22A1-48F0-93A7-9FF1EAFCD501}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{CA852E14-A414-4AB2-9A8F-E1AD9FFA4EF0}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CD18019C-636A-4557-B9B8-22FE6CCA70FF}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CD18019C-636A-4557-B9B8-22FE6CCA70FF}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{D3373D4D-A889-4E2A-9019-BEE635598CA3}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DC1C19BC-B736-4F5C-A29E-245B207A1F35}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DC1C19BC-B736-4F5C-A29E-245B207A1F35}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SidebarExecute" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F8A9CD81-1F76-45A0-BF0D-683DBBE455CA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F8A9CD81-1F76-45A0-BF0D-683DBBE455CA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B7CF7FAF-627D-4239-8A17-32C97E4D4757}" => Key deleted successfully. C:\Windows\Tasks\5f305138-793d-4d0e-a840-cac36a81fd52.job not found. C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-1.job not found. C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-11.job not found. C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-2.job not found. C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-3.job not found. C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-4.job not found. C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-5.job not found. C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-5_user.job not found. C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-6.job not found. C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-7.job not found. C:\Windows\Tasks\AmiUpdXp.job => Moved successfully. C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => Moved successfully. C:\Windows\Tasks\LaunchSignup.job => Moved successfully. "C:\Program Files (x86)\V-9.1HD" => File/Directory not found. "C:\Program Files (x86)\MyPC Backup" => File/Directory not found. C:\Users\Mateusz\AppData\Local\22317 => Moved successfully. "C:\Program Files (x86)\globalUpdate" => File/Directory not found. "C:\ProgramData\load32.exe" => File/Directory not found. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Peerinator\Claim money.lnk -> C:\Program Files (x86)\Peerinator\Peerinator_claim.url (No File) => Error: No automatic fix found for this entry. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Peerinator\Peerinator website.lnk -> C:\Program Files (x86)\Peerinator\Peerinator.url (No File) => Error: No automatic fix found for this entry. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\NT Kernel Service => Value not found. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully. HKU\S-1-5-21-1841456429-2228432396-3594831439-1000\Software\Microsoft\Windows NT\CurrentVersion\Windows\\Load => Value was restored successfully. HKU\S-1-5-21-1841456429-2228432396-3594831439-1000\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell => value deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\AvastSvc.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\AvastUI.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\avcenter.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\avconfig.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\avgcsrvx.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\avgidsagent.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\avgnt.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\avgrsx.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\avguard.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\avgui.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\avgwdsvc.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\avp.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\avscan.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bdagent.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\ccuac.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\ComboFix.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\egui.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\hijackthis.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\instup.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\keyscrambler.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\mbam.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\mbamgui.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\mbampt.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\mbamscheduler.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\mbamservice.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\MpCmdRun.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\MSASCui.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\MsMpEng.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\msseces.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\rstrui.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\spybotsd.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\wireshark.exe" => Key not found. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\zlclient.exe" => Key not found. HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{d43723ae-1ae1-4a25-a6a4-bf0929273cab} => value deleted successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key deleted successfully. "HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2488}" => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\URL => value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\SuggestionsURL_JSON => value deleted successfully. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7EDAFAFD-9A93-4D34-9C82-C5638A11A600}" => Key deleted successfully. "HKCR\CLSID\{7EDAFAFD-9A93-4D34-9C82-C5638A11A600}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0124123D-61B4-456f-AF86-78C53A0790C5}" => Key deleted successfully. "HKCR\CLSID\{0124123D-61B4-456f-AF86-78C53A0790C5}" => Key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c817d3d8-b9da-521d-971d-2c0a747ea697}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{c817d3d8-b9da-521d-971d-2c0a747ea697}" => Key deleted successfully. C:\Program Files\C78087A8-C960-4464-A618-3D351DF6C0D7 => Moved successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{0124123D-61B4-456f-AF86-78C53A0790C5} => value deleted successfully. "HKCR\CLSID\{0124123D-61B4-456f-AF86-78C53A0790C5}" => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value deleted successfully. "HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA}" => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value deleted successfully. "HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}" => Key not found. C:\Program Files (x86)\mozilla firefox\browser\searchplugins\omiga-plus.xml => Moved successfully. C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\eieyp5yb@qhlxeooao-.edu => Moved successfully. C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\EXONUDC1159428@DGG30572216.com not found. C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\extension@rollapp.com => Moved successfully. C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\{1D10EB57-E111-EA32-C58F-B1EAAEAE1962} => Moved successfully. C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\j004-efxyrmbzyotmaw@jetpack.xpi => Moved successfully. FF Extension: TrustedShopper - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\61d7w39h.default\Extensions\jid1-bKSXgRwy1UQeRA@jetpack.xpi not found. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fdjkhamgopgokjmllcmpkiijndjeidcl" => Key deleted successfully. C:\Users\Mateusz\AppData\Local\Temp\twsfiles\trustedshopper.crx => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. GDBehave => Service deleted successfully. GDMnIcpt => Service deleted successfully. GDPkIcpt => Service deleted successfully. HookCentre => Service deleted successfully. OSFMount => Service deleted successfully. Prot6Flt => Service deleted successfully. Synth3dVsc => Service deleted successfully. tsusbhub => Service deleted successfully. VGPU => Service deleted successfully. "C:\Users\Mateusz\AppData\Local\UpdateChecker" => File/Directory not found. "C:\Windows\Tasks\AmiUpdXp.job" => File/Directory not found. C:\Users\Mateusz\AppData\Roaming\trustedshopper => Moved successfully. "C:\Users\Mateusz\AppData\Local\22317" => File/Directory not found. C:\Program Files (x86)\C78087A8-C960-4464-A618-3D351DF6C0D7 => Moved successfully. "C:\Program Files\C78087A8-C960-4464-A618-3D351DF6C0D7" => File/Directory not found. "C:\Windows\Tasks\5f305138-793d-4d0e-a840-cac36a81fd52.job" => File/Directory not found. "C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-4.job" => File/Directory not found. "C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-7.job" => File/Directory not found. "C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-6.job" => File/Directory not found. "C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-1.job" => File/Directory not found. "C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-5_user.job" => File/Directory not found. "C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-5.job" => File/Directory not found. "C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-2.job" => File/Directory not found. "C:\Program Files (x86)\V-9.1HD" => File/Directory not found. "C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-11.job" => File/Directory not found. "C:\Windows\Tasks\72408507-729f-4ef7-8cbd-4cdc6f4c5ae0-3.job" => File/Directory not found. "C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job" => File/Directory not found. "C:\Users\Mateusz\Documents\315load32.exe" => File/Directory not found. "C:\ProgramData\load32.exe" => File/Directory not found. C:\Program Files (x86)\MyFree Codec => Moved successfully. "C:\ProgramData\load32.exe" => File/Directory not found. C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Update.Microsoft.com.url => Moved successfully. C:\Users\Mateusz\worldpainter_64_1.6.4.exe => Moved successfully. C:\NTKernel => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\0dekwqs3.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\AppQWARE1Update.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\AutoRun.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\AutoRunGUI.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\avguidx.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\BackupSetup.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\BingBarSetup-Partner.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\comver.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\down.4520.OptimizerProInstaller.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\drm_dyndata_7400009.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\DTLite4461-0327.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\EAInstall.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\eauninstall.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\extension2162104652163574214.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\extension991850632169683284.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\GenericWndApi.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\GLF2D7.tmp.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\htmlayout.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\i4jdel0.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\incredibar_installer.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\InstHelper.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\ipl1B1E.tmp.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\jansi-64-git-Bukkit-1.4.6-R0.1-22-gcdb3b44-b2577jnks.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\jansi-64-git-Bukkit-1.4.7-R0.1-8-ged63bd5-b2608jnks.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\jansi-64-git-MCPC-Plus-jenkins-MCPC-Plus-35.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\MachineIdCreator.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\ms.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\MSNC40D.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\nsc48CE.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\nsc4D14.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\nsg70FF.tmp.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\nsmA4CD.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\nsmA6A2.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\nsrA1DF.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\nstA595.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\nswF8C2.tmp.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\nsx4AD2.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\oi_{1E1816B6-3F0C-4113-9D22-9AE1184F5EED}.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\oi_{A40FFBAC-A9DB-4901-8F01-C5DF7072C2D4}.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\Quarantine.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\safeguard.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\SevenZip-Installer.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\sfamcc00001.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\sfextra.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\SkypeSetup.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\skype_amd645696315381083818665.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\smt_omiga-plus.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\sonarinst.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\speeditupfree-knowledge.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\sqlite-3.7.2-sqlitejdbc.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\SRLDetectionLibrary7029539903761097015.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\swt-win32-3740.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\tbAsha.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\The Sims Life Stories_uninst.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\tmp1825.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\tmp6ECE.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\tmp803D.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\tmpAB14.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\tmp_minecraft.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\toolbar4061111.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\Tsu8DA2AEAC.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\TsuC4184E72.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\uninst1.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\uninstall6065615.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\UninstallEADM.dll => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\utt423F.tmp.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\windowsgadgetspack.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\xmlUpdater.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\_is2116.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\_is4A67.exe => Moved successfully. C:\Users\Mateusz\AppData\Local\Temp\_is8E7A.exe => Moved successfully. ========= reg query "HKCU\Software\Microsoft\Windows Script" /s ========= HKEY_CURRENT_USER\Software\Microsoft\Windows Script\Settings JITDebug REG_DWORD 0x0 ========= End of Reg: ========= ========= reg query "HKCU\Software\Microsoft\Windows Script Host" /s ========= HKEY_CURRENT_USER\Software\Microsoft\Windows Script Host\Settings Enabled REG_SZ 1 ========= End of Reg: ========= ========= reg query HKLM\SYSTEM\CurrentControlSet\Services\Schedule ========= HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule AtTaskMaxHours REG_DWORD 0x48 DisplayName REG_SZ @%SystemRoot%\system32\schedsvc.dll,-100 Group REG_SZ SchedulerGroup ImagePath REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs Description REG_SZ @%SystemRoot%\system32\schedsvc.dll,-101 ObjectName REG_SZ LocalSystem ErrorControl REG_DWORD 0x1 Start REG_DWORD 0x4 Type REG_DWORD 0x20 DependOnService REG_MULTI_SZ RPCSS\0EventLog ServiceSidType REG_DWORD 0x1 RequiredPrivileges REG_MULTI_SZ SeIncreaseQuotaPrivilege\0SeChangeNotifyPrivilege\0SeAuditPrivilege\0SeImpersonatePrivilege\0SeAssignPrimaryTokenPrivilege\0SeTcbPrivilege\0SeRestorePrivilege FailureActions REG_BINARY 80510100000000000000000003000000140000000100000060EA00000100000060EA00000000000000000000 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\Parameters HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\Security ========= End of Reg: ========= The system needed a reboot. ==== End of Fixlog ====