Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 10-09-2014 Ran by JAREK at 2014-09-11 06:02:41 Run:1 Running from C:\Users\JAREK\Desktop\Nowy folder Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: R1 F06DEFF2-5B9C-490D-910F-35D3A91196222; C:\Program Files\Settings Manager\systemk\systemkmgrc2.cfg [34192 2014-07-06] (Aztec Media Inc) R1 {01531192-f7ef-415f-a549-cfdb11836731}w; C:\Windows\System32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}w.sys [52512 2014-05-27] (StdLib) S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-03] (globalUpdate) [File not signed] S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-07-03] (globalUpdate) [File not signed] R2 IePluginService; C:\ProgramData\IePluginService\PluginService.exe [705136 2014-04-11] (Cherished Technololgy LIMITED) R2 RelevantKnowledge; C:\Program Files\RelevantKnowledge\rlservice.exe [186136 2013-08-17] (TMRG, Inc.) R2 SystemkService; C:\Program Files\Settings Manager\systemk\SystemkService.exe [3572240 2014-07-06] (Aztec Media Inc) Task: {070D3B6E-3D73-413B-B575-9AA5600202F4} - System32\Tasks\APSnotifierPP2 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: {1FC8ACD1-A495-48CD-AB74-4172D705EA47} - System32\Tasks\update => c:\Windows\update.exe [2014-06-24] () Task: {51C46059-4F18-4CB1-865D-00C51C98D33B} - System32\Tasks\bench-S-1-5-21-3503922415-40461195-2409546329-1000 => C:\Program Files\Bench\Updater\updater.exe [2014-03-27] () <==== ATTENTION Task: {70862824-6C14-4C90-BB91-6B854FF0F3BD} - System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-5 => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-5.exe [2014-07-03] (PlusHDv1.9) <==== ATTENTION Task: {73F80DE4-D653-44D4-A41D-6CF813D7E10D} - System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-1 => C:\Program Files\PlusHD-V1.9\PlusHD-V1.9-codedownloader.exe [2014-07-03] (PlusHDv1.9) <==== ATTENTION Task: {76756C18-03F0-4A1A-B25A-759EF5993E98} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-07-03] (globalUpdate) <==== ATTENTION Task: {78D571DD-1B2E-4ABD-8B64-08F9ACE1AA4C} - System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-2 => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-2.exe [2014-07-03] (PlusHDv1.9) <==== ATTENTION Task: {87A5A734-BAF2-4E92-89A7-14B1F99AA872} - System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-11 => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-11.exe [2014-07-03] (PlusHDv1.9) <==== ATTENTION Task: {89D4DCD7-2D0C-441B-A1C3-5B5F2D6089F2} - System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-3 => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-3.exe [2014-07-03] (PlusHDv1.9) <==== ATTENTION Task: {A708B0A6-16F0-4168-B8B6-E0F71053821A} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-07-03] (globalUpdate) <==== ATTENTION Task: {C97E974E-1138-4AF7-94C8-C3DDEF9B90C3} - System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-4 => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-4.exe [2014-07-03] (PlusHDv1.9) <==== ATTENTION Task: {CE7D8C9C-1786-4B13-BE75-D75159009748} - System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-5_user => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-5.exe [2014-07-03] (PlusHDv1.9) <==== ATTENTION Task: {E088F974-4E5B-4A00-BEC9-1333AC062E15} - System32\Tasks\APSnotifierPP3 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: {E7551CBC-8E39-466E-8AC3-E7C9804AE04E} - System32\Tasks\bench-sys => C:\Program Files\Bench\Updater\updater.exe [2014-03-27] () <==== ATTENTION Task: {F93C71B5-70B2-4696-845F-341F3952DD4F} - System32\Tasks\APSnotifierPP1 => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\bench-S-1-5-21-3503922415-40461195-2409546329-1000.job => C:\Program Files\Bench\Updater\updater.exe <==== ATTENTION Task: C:\Windows\Tasks\bench-sys.job => C:\Program Files\Bench\Updater\updater.exe <==== ATTENTION Task: C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-1.job => C:\Program Files\PlusHD-V1.9\PlusHD-V1.9-codedownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-11.job => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-11.exe <==== ATTENTION Task: C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-2.job => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-2.exe <==== ATTENTION Task: C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-3.job => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-3.exe <==== ATTENTION Task: C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-4.job => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-4.exe <==== ATTENTION Task: C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-5.job => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-5.exe <==== ATTENTION Task: C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-5_user.job => C:\Program Files\PlusHD-V1.9\e29193b0-b61f-4d86-ada8-6277dd849368-5.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION HKLM\...\Run: [Bench Settings Cleaner] => C:\Program Files\Bench\Proxy\cl.exe [55296 2014-07-15] () HKLM\...\Run: [fst_pl_107] => [X] HKLM\...\Run: [BService] => C:\Program Files\Bench\BService\1.1\bservice.exe [52736 2014-07-15] () HKLM\...\Run: [Wd] => C:\Program Files\Bench\Wd\wd.exe [92672 2014-07-15] () HKLM\...\Run: [Bench Communicator Watcher] => C:\Program Files\Bench\Proxy\pwdg.exe [127488 2014-07-15] () HKLM\...\RunOnce: [Discount Dragon-repairJob] => wscript.exe "C:\Users\JAREK\AppData\Local\Discount Dragon\repair.js" "Discount Dragon-repairJob" IFEO\bitguard.exe: [Debugger] tasklist.exe IFEO\bprotect.exe: [Debugger] tasklist.exe IFEO\bpsvc.exe: [Debugger] tasklist.exe IFEO\browserdefender.exe: [Debugger] tasklist.exe IFEO\browserprotect.exe: [Debugger] tasklist.exe IFEO\browsersafeguard.exe: [Debugger] tasklist.exe IFEO\dprotectsvc.exe: [Debugger] tasklist.exe IFEO\jumpflip: [Debugger] tasklist.exe IFEO\protectedsearch.exe: [Debugger] tasklist.exe IFEO\searchinstaller.exe: [Debugger] tasklist.exe IFEO\searchprotection.exe: [Debugger] tasklist.exe IFEO\searchprotector.exe: [Debugger] tasklist.exe IFEO\searchsettings.exe: [Debugger] tasklist.exe IFEO\searchsettings64.exe: [Debugger] tasklist.exe IFEO\snapdo.exe: [Debugger] tasklist.exe IFEO\stinst32.exe: [Debugger] tasklist.exe IFEO\stinst64.exe: [Debugger] tasklist.exe IFEO\umbrella.exe: [Debugger] tasklist.exe IFEO\utiljumpflip.exe: [Debugger] tasklist.exe IFEO\volaro: [Debugger] tasklist.exe IFEO\vonteera: [Debugger] tasklist.exe IFEO\websteroids.exe: [Debugger] tasklist.exe IFEO\websteroidsservice.exe: [Debugger] tasklist.exe HKLM\...\AppCertDlls: [x64] -> c:\program files\settings manager\systemk\x64\sysapcrt.dll HKLM\...\AppCertDlls: [x86] -> C:\Program Files\Settings Manager\systemk\sysapcrt.dll [489488 2014-07-06] () HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp&ts=1398854194&from=amt&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACC11826 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/web/?type=ds&ts=1398854194&from=amt&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACC11826&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp&ts=1398854194&from=amt&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACC11826 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/web/?type=ds&ts=1398854194&from=amt&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACC11826&q={searchTerms} StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/?type=sc&ts=1398854194&from=amt&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACC11826 SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1398854194&from=amt&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACC11826&q={searchTerms} SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1398854194&from=amt&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACC11826&q={searchTerms} SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = http://www.default-search.net/search?sid=476&aid=132&itype=a&ver=13277&tm=397&src=ds&p={searchTerms} SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTerms}&affID=113348&babsrc=SP_ss&mntrId=9eabdca4000000000000001e101f21c1 SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1398854194&from=amt&uid=ST1000LM024XHN-M101MBB_S2RQJ9ACC11826&q={searchTerms} SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://isearch.avg.com/search?cid={AE38E523-F8DD-46DD-8563-464FD2FB814A}&mid=01b5e4fde43447d3a786d15756fbc832-d75f75b540b66ca4692600629a241bc715a0d7af&lang=pl&ds=AVG&pr=fr&d=2013-05-01 09:07:51&v=15.3.0.11&pid=avg&sg=0&sap=dsp&q={searchTerms} SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = http://www.default-search.net/search?sid=476&aid=132&itype=a&ver=13277&tm=397&src=ds&p={searchTerms} BHO: PlusHD-V1.9 -> {11111111-1111-1111-1111-110511951170} -> C:\Program Files\PlusHD-V1.9\PlusHD-V1.9-bho.dll (PlusHDv1.9) BHO: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files\SupTab\SupTab.dll (Thinknice Co. Limited) BHO: AVG Safe Search -> {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} -> C:\Program Files\AVG\AVG2012\avgssie.dll No File BHO: Linkey -> {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} -> C:\Users\JAREK\AppData\Local\Linkey\IEExtension\iedll.dll (Aztec Media Inc) BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File BHO: Discount Dragon BHO -> {EA34C851-D481-49F5-A356-3A8B0A8F3B7E} -> C:\Program Files\Discount Dragon\FrameworkBHO.dll () Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll No File FF Plugin: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) FF Plugin: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) FF HKLM\...\Firefox\Extensions: [quick_start@gmail.com] - C:\Users\JAREK\AppData\Roaming\Mozilla\Firefox\Profiles\q8wugrkr.default\extensions\quick_start@gmail.com C:\Program Files\globalUpdate C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge C:\Users\Default\AppData\Roaming\TuneUp Software C:\Users\JAREK\AppData\Roaming\aps.uninstall.scan.results C:\Users\JAREK\AppData\Roaming\Babylon C:\Users\JAREK\AppData\Roaming\New Version Available C:\Users\JAREK\AppData\Roaming\OpenCandy C:\Users\JAREK\AppData\Roaming\SimilarAddon C:\Users\JAREK\AppData\Roaming\webssearches C:\Users\JAREK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discount Dragon C:\Windows\point.dll C:\Windows\update.exe C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup C:\Windows\System32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}w.sys Hosts: Folder: C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions CMD: type "C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Preferences" Reg: reg query "HKLM\SOFTWARE\Clients\StartMenuInternet\OperaStable\shell\open\command" /s Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BService" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\fst_pl_107" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\vProt" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Wd" /f Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f CMD: netsh advfirewall reset CMD: sc config "Internet w Cyfrowym Polsacie. RunOuc" start= demand ***************** Processes closed successfully. F06DEFF2-5B9C-490D-910F-35D3A91196222 => Unable to stop service F06DEFF2-5B9C-490D-910F-35D3A91196222 => Error deleting Service {01531192-f7ef-415f-a549-cfdb11836731}w => Service stopped successfully. {01531192-f7ef-415f-a549-cfdb11836731}w => Service deleted successfully. globalUpdate => Service deleted successfully. globalUpdatem => Service deleted successfully. IePluginService => Service deleted successfully. RelevantKnowledge => Service deleted successfully. SystemkService => Unable to stop service SystemkService => Error deleting Service "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{070D3B6E-3D73-413B-B575-9AA5600202F4}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{070D3B6E-3D73-413B-B575-9AA5600202F4}" => Key deleted successfully. C:\Windows\System32\Tasks\APSnotifierPP2 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP2" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1FC8ACD1-A495-48CD-AB74-4172D705EA47}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1FC8ACD1-A495-48CD-AB74-4172D705EA47}" => Key deleted successfully. C:\Windows\System32\Tasks\update => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\update" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{51C46059-4F18-4CB1-865D-00C51C98D33B}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{51C46059-4F18-4CB1-865D-00C51C98D33B}" => Key deleted successfully. C:\Windows\System32\Tasks\bench-S-1-5-21-3503922415-40461195-2409546329-1000 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\bench-S-1-5-21-3503922415-40461195-2409546329-1000" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{70862824-6C14-4C90-BB91-6B854FF0F3BD}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{70862824-6C14-4C90-BB91-6B854FF0F3BD}" => Key deleted successfully. C:\Windows\System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-5 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e29193b0-b61f-4d86-ada8-6277dd849368-5" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{73F80DE4-D653-44D4-A41D-6CF813D7E10D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{73F80DE4-D653-44D4-A41D-6CF813D7E10D}" => Key deleted successfully. C:\Windows\System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-1 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e29193b0-b61f-4d86-ada8-6277dd849368-1" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{76756C18-03F0-4A1A-B25A-759EF5993E98}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{76756C18-03F0-4A1A-B25A-759EF5993E98}" => Key deleted successfully. C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{78D571DD-1B2E-4ABD-8B64-08F9ACE1AA4C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{78D571DD-1B2E-4ABD-8B64-08F9ACE1AA4C}" => Key deleted successfully. C:\Windows\System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-2 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e29193b0-b61f-4d86-ada8-6277dd849368-2" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{87A5A734-BAF2-4E92-89A7-14B1F99AA872}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{87A5A734-BAF2-4E92-89A7-14B1F99AA872}" => Key deleted successfully. C:\Windows\System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-11 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e29193b0-b61f-4d86-ada8-6277dd849368-11" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{89D4DCD7-2D0C-441B-A1C3-5B5F2D6089F2}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89D4DCD7-2D0C-441B-A1C3-5B5F2D6089F2}" => Key deleted successfully. C:\Windows\System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-3 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e29193b0-b61f-4d86-ada8-6277dd849368-3" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A708B0A6-16F0-4168-B8B6-E0F71053821A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A708B0A6-16F0-4168-B8B6-E0F71053821A}" => Key deleted successfully. C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C97E974E-1138-4AF7-94C8-C3DDEF9B90C3}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C97E974E-1138-4AF7-94C8-C3DDEF9B90C3}" => Key deleted successfully. C:\Windows\System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-4 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e29193b0-b61f-4d86-ada8-6277dd849368-4" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CE7D8C9C-1786-4B13-BE75-D75159009748}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CE7D8C9C-1786-4B13-BE75-D75159009748}" => Key deleted successfully. C:\Windows\System32\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-5_user => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e29193b0-b61f-4d86-ada8-6277dd849368-5_user" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E088F974-4E5B-4A00-BEC9-1333AC062E15}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E088F974-4E5B-4A00-BEC9-1333AC062E15}" => Key deleted successfully. C:\Windows\System32\Tasks\APSnotifierPP3 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP3" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E7551CBC-8E39-466E-8AC3-E7C9804AE04E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E7551CBC-8E39-466E-8AC3-E7C9804AE04E}" => Key deleted successfully. C:\Windows\System32\Tasks\bench-sys => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\bench-sys" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F93C71B5-70B2-4696-845F-341F3952DD4F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F93C71B5-70B2-4696-845F-341F3952DD4F}" => Key deleted successfully. C:\Windows\System32\Tasks\APSnotifierPP1 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP1" => Key deleted successfully. C:\Windows\Tasks\APSnotifierPP1.job => Moved successfully. C:\Windows\Tasks\APSnotifierPP2.job => Moved successfully. C:\Windows\Tasks\APSnotifierPP3.job => Moved successfully. C:\Windows\Tasks\bench-S-1-5-21-3503922415-40461195-2409546329-1000.job => Moved successfully. C:\Windows\Tasks\bench-sys.job => Moved successfully. C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-1.job => Moved successfully. C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-11.job => Moved successfully. C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-2.job => Moved successfully. C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-3.job => Moved successfully. C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-4.job => Moved successfully. C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-5.job => Moved successfully. C:\Windows\Tasks\e29193b0-b61f-4d86-ada8-6277dd849368-5_user.job => Moved successfully. C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => Moved successfully. C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => Moved successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Bench Settings Cleaner => value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\fst_pl_107 => value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\BService => value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Wd => value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Bench Communicator Watcher => Value not found. HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Discount Dragon-repairJob => value deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bitguard.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bprotect.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\bpsvc.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browserdefender.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browserprotect.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\browsersafeguard.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\dprotectsvc.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\jumpflip" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\protectedsearch.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchinstaller.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchprotection.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchprotector.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchsettings.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\searchsettings64.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\snapdo.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\stinst32.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\stinst64.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\umbrella.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\utiljumpflip.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\volaro" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\vonteera" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\websteroids.exe" => Key deleted successfully. "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\websteroidsservice.exe" => Key deleted successfully. HKLM\System\CurrentControlSet\Control\Session Manager\AppCertDlls\\x64 => value deleted successfully. HKLM\System\CurrentControlSet\Control\Session Manager\AppCertDlls\\x86 => value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}" => Key deleted successfully. "HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}" => Key deleted successfully. "HKCR\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}" => Key deleted successfully. "HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}" => Key deleted successfully. "HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511951170}" => Key deleted successfully. "HKCR\CLSID\{11111111-1111-1111-1111-110511951170}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully. "HKCR\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}" => Key deleted successfully. "HKCR\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}" => Key deleted successfully. "HKCR\CLSID\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}" => Key deleted successfully. "HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA34C851-D481-49F5-A356-3A8B0A8F3B7E}" => Key deleted successfully. "HKCR\CLSID\{EA34C851-D481-49F5-A356-3A8B0A8F3B7E}" => Key deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => value deleted successfully. "HKCR\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}" => Key deleted successfully. "HKCR\PROTOCOLS\Handler\linkscanner" => Key deleted successfully. "HKCR\CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1}" => Key deleted successfully. "HKLM\Software\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10" => Key deleted successfully. C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll => Moved successfully. "HKLM\Software\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4" => Key deleted successfully. C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll not found. HKLM\Software\Mozilla\Firefox\Extensions\\quick_start@gmail.com => value deleted successfully. C:\Program Files\globalUpdate => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge => Moved successfully. C:\Users\Default\AppData\Roaming\TuneUp Software => Moved successfully. C:\Users\JAREK\AppData\Roaming\aps.uninstall.scan.results => Moved successfully. C:\Users\JAREK\AppData\Roaming\Babylon => Moved successfully. C:\Users\JAREK\AppData\Roaming\New Version Available => Moved successfully. C:\Users\JAREK\AppData\Roaming\OpenCandy => Moved successfully. C:\Users\JAREK\AppData\Roaming\SimilarAddon => Moved successfully. C:\Users\JAREK\AppData\Roaming\webssearches => Moved successfully. C:\Users\JAREK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discount Dragon => Moved successfully. C:\Windows\point.dll => Moved successfully. C:\Windows\update.exe => Moved successfully. C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup => Moved successfully. C:\Windows\System32\drivers\{01531192-f7ef-415f-a549-cfdb11836731}w.sys => Moved successfully. C:\Windows\System32\Drivers\etc\hosts => Moved successfully. Hosts was reset successfully. ========================= Folder: C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions ======================== 2014-08-22 12:01 - 2014-08-22 12:01 - 0000000 ____D () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj 2014-08-22 12:01 - 2014-08-22 12:01 - 0000000 ____D () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0 2014-08-22 12:01 - 2014-08-22 12:01 - 0001705 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\background.html 2014-08-22 12:01 - 2014-08-22 12:01 - 0000843 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\chromeCoreFilesIndex.txt 2014-08-22 12:01 - 2014-08-22 12:01 - 0001117 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\manifest.json 2014-08-22 12:01 - 2014-08-22 12:01 - 0000139 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\popup.html 2014-08-22 12:01 - 2014-09-11 05:55 - 0000572 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\Settings.json 2014-08-22 12:01 - 2014-08-22 12:01 - 0000000 ____D () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData 2014-08-22 12:01 - 2014-08-22 12:01 - 0001715 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\manifest.xml 2014-08-22 12:01 - 2014-08-22 12:01 - 0007058 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins.json 2014-08-22 12:01 - 2014-08-22 12:01 - 0000000 ____D () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins 2014-08-22 12:01 - 2014-08-22 12:01 - 0006794 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\1.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000897 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\104.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0006993 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\13.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0020752 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\14.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0079864 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\17.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0031088 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\177.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0014181 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\182.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0002739 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\183.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0007326 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\19.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000953 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\198.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000953 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\199.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0001537 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\207.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0003560 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\21.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0002052 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\213.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0008958 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\22.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0007155 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\246.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000493 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\267.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000536 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\28.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0094050 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\4.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0007574 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\47.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0002200 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\64.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0046247 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\72.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0003187 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\78.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000062 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\80.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0156822 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\91.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0003157 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\plugins\97.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000000 ____D () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\userCode 2014-08-22 12:01 - 2014-08-22 12:01 - 0000758 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\userCode\background.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000001 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\extensionData\userCode\extension.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000000 ____D () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\icons 2014-08-22 12:01 - 2014-08-22 12:01 - 0003997 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\icons\icon128.png 2014-08-22 12:01 - 2014-08-22 12:01 - 0001137 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\icons\icon16.png 2014-08-22 12:01 - 2014-08-22 12:01 - 0002245 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\icons\icon48.png 2014-08-22 12:01 - 2014-08-22 12:01 - 0000000 ____D () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\icons\actions 2014-08-22 12:01 - 2014-08-22 12:01 - 0001223 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\icons\actions\1.png 2014-08-22 12:01 - 2014-08-22 12:01 - 0000000 ____D () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js 2014-08-22 12:01 - 2014-08-22 12:01 - 0035062 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\background.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0008491 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\main.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000409 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\platformVersion.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000000 ____D () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\api 2014-08-22 12:01 - 2014-08-22 12:01 - 0011499 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\api\chrome.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0011743 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\api\cookie.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0003346 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\api\message.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0002039 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\api\monitor.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0001737 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\api\pageAction.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0002519 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\api\pageActionBG.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000000 ____D () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib 2014-08-22 12:01 - 2014-08-22 12:01 - 0006697 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\app_api.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0004729 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\bg_app_api.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000429 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\consts.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0005905 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\cookie_store.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0011366 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\crossriderAPI.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0002002 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\delegate.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0005757 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\events.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0006817 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\extensionDataStore.js 2014-08-22 12:01 - 2014-09-11 05:55 - 0001442 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\installer.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000765 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\logFile.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000944 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\logging.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000480 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\onBGDocumentLoad.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0005122 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\reports.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000903 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\storageWrapper.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0008451 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\updateManager.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0005092 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\util.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0002699 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\xhr.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000000 ____D () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\popupResource 2014-08-22 12:01 - 2014-08-22 12:01 - 0000040 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\popupResource\newPopup.js 2014-08-22 12:01 - 2014-08-22 12:01 - 0000045 _____ () C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Extensions\gjemcodhbmopadgellhifcheadcdnbnj\1.26.16_0\js\lib\popupResource\popup.js ====== End of Folder: ====== ========= type "C:\Users\JAREK\AppData\Roaming\Opera Software\Opera Stable\Preferences" ========= { "browser": { "clear_data": { "time_period": 4 }, "last_clear_browsing_data_time": "13053175462556776", "window_placement": { "height": 576, "left": 171, "maximized": true, "top": 96, "width": 1024 } }, "dns_prefetching": { "host_referral_list": [ 2 ], "startup_list": [ 1 ] }, "download": { "directory_upgrade": true }, "extensions": { "alerts": { "initialized": true }, "autoupdate": { "last_check": "13053175034804158", "next_check": "13053295368331468" }, "blacklistupdate": { "version": "2013.1203.1746.24" }, "install_signature": { "ids": null }, "known_disabled": [ ], "last_opera_version": "23.0.1522.77", "settings": { "bcibcaaakpeekhbnddgnajbmjdcemfkf": { "active_permissions": { "api": [ "addonsPrivate", "management" ], "manifest_permissions": [ ] }, "app_launcher_ordinal": "t", "content_settings": [ ], "creation_flags": 1, "events": [ ], "from_bookmark": false, "from_webstore": false, "incognito_content_settings": [ ], "incognito_preferences": { }, "install_time": "13053170607765443", "is_pending_third_party_install": false, "location": 5, "manifest": { "app": { "launch": { "web_url": "https://addons.opera.com/" }, "urls": [ "https://addons.opera.com/" ] }, "description": "Opera Addons Portal", "key": "MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDAbTKr4g11sfL12IByl8cC1NThF3SIMBhYJlyF4vYe0RhuAztV06xdKladCVB3msDBaKfZwPF/+tgBIly76R/X4XiFyNeD01Tb4XYy8iBohVh8/ZP8c93OVTZ+0pTGE10UUjqtBPtcs6q2kz5z9eZ4LLCl2RX6/Kf8h6vsjuigUQIDAQAB", "manifest_version": 2, "name": "Opera Addons Portal", "permissions": [ "addonsPrivate", "management" ], "version": "1" }, "page_ordinal": "n", "path": "C:\\Program Files\\Opera\\23.0.1522.77\\resources\\opera_addons", "preferences": { }, "regular_only_preferences": { }, "was_installed_by_default": false, "was_installed_by_oem": false }, "fmjgglhlikhebkngohcpcmhiooigdmki": { "active_permissions": { "api": [ "syncPrivate" ], "manifest_permissions": [ ] }, "app_launcher_ordinal": "w", "content_settings": [ ], "creation_flags": 1, "events": [ ], "from_bookmark": false, "from_webstore": false, "incognito_content_settings": [ ], "incognito_preferences": { }, "install_time": "13053170607765443", "is_pending_third_party_install": false, "location": 5, "manifest": { "app": { "launch": { "web_url": "https://auth.opera.com/account/login/result" }, "urls": [ "https://auth.opera.com/account/access-token", "https://auth-test.opera.com/account/access-token" ] }, "description": "Give special permissions to Sync login return URL", "key": "MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDQlD4x9NgYIjng4LxpWdiMPGBpyzKoEZkjfotGhxRnO9VX++GW1TLtJmndB4Z399RQo0f2mGqOQXb6SPtwmfPNj2k1ia9d6BjyDsy6ygBBxWmrNk+dtLNEmLtnYR+MeXsYyBSRV0TqizmTj8UaoKFGk6ozXETyAM6YaVnOK+64TQIDAQAB", "manifest_version": 2, "name": "Sync Login Flow", "permissions": [ "syncPrivate" ], "version": "1" }, "page_ordinal": "n", "path": "C:\\Program Files\\Opera\\23.0.1522.77\\resources\\sync_login", "preferences": { }, "regular_only_preferences": { }, "was_installed_by_default": false, "was_installed_by_oem": false }, "gjemcodhbmopadgellhifcheadcdnbnj": { "active_permissions": { "api": [ "contextMenus", "cookies", "storage", "tabs", "unlimitedStorage", "webNavigation", "webRequest", "webRequestBlocking" ], "explicit_host": [ "http://*/*", "https://*/*" ], "manifest_permissions": [ ], "scriptable_host": [ "http://*/*", "https://*/*" ] }, "creation_flags": 9, "from_webstore": true, "granted_permissions": { "api": [ "contextMenus", "cookies", "notifications", "storage", "tabs", "unlimitedStorage", "webNavigation", "webRequest", "webRequestBlocking" ], "explicit_host": [ "http://*/*", "https://*/*" ], "manifest_permissions": [ ], "scriptable_host": [ "http://*/*", "https://*/*" ] }, "install_time": "13053175423157690", "location": 1, "manifest": { "background": { "page": "background.html" }, "content_scripts": [ { "all_frames": true, "js": [ "js/platformVersion.js", "js/lib/consts.js", "js/lib/logging.js", "js/lib/reports.js", "js/lib/xhr.js", "js/api/cookie.js", "js/api/message.js", "js/api/pageAction.js", "js/lib/installer.js", "js/lib/app_api.js" ], "matches": [ "http://*/*", "https://*/*" ], "run_at": "document_start" } ], "content_security_policy": "script-src 'self' 'unsafe-eval'; object-src 'self'", "description": "Turn YouTube videos to High Definition by default", "icons": { "128": "icons/icon128.png", "16": "icons/icon16.png", "48": "icons/icon48.png" }, "key": "MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCyV3bM4KXfbqIbMkRqjDibKEKz2MWad69PMO2iIAKR6y3njYw0lyVa+6fwM2+dbirRCajsyF88gblbKLuX5j+djsPOdKskEcUSH5Wl+7ITZ0ROZncECbF6KQ30kjKjCZQ6t+dVGBwltw4kWwNzgEJoCaHhWyfOz3tWMcgbyPMMVwIDAQAB", "manifest_version": 2, "name": "PlusHD-V1.9", "permissions": [ "http://*/*", "https://*/*", "tabs", "cookies", "notifications", "contextMenus", "webNavigation", "webRequest", "webRequestBlocking", "unlimitedStorage", "storage" ], "update_url": "https://clients2.google.com/service/update2/crx", "version": "1.26.16", "web_accessible_resources": [ "Settings.json" ] }, "path": "gjemcodhbmopadgellhifcheadcdnbnj\\1.26.16_0", "state": 1 }, "imodfccolnjcdccplejdejgjfofdemag": { "blacklist": true } } }, "net": { "http_server_properties": { "servers": { "2229362.fls.doubleclick.net:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "3848762.fls.doubleclick.net:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "3879194.fls.doubleclick.net:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "3879194.fls.doubleclick.net:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "ad.doubleclick.net:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "ajax.googleapis.com:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "ajax.googleapis.com:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "analytics.twitter.com:443": { "supports_spdy": true }, "bid.g.doubleclick.net:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "cm.g.doubleclick.net:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "cm.g.doubleclick.net:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "fls.doubleclick.net:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "fls.doubleclick.net:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "fonts.googleapis.com:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "googleads.g.doubleclick.net:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "googleads.g.doubleclick.net:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "pagead2.googlesyndication.com:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "pubads.g.doubleclick.net:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "s.ytimg.com:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "s.ytimg.com:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "segment-pixel.invitemedia.com:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "ssl.google-analytics.com:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "twitter.com:443": { "supports_spdy": true }, "www.facebook.com:443": { "supports_spdy": true }, "www.google-analytics.com:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "www.google-analytics.com:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "www.google.com:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "www.google.com:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "www.google.pl:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "www.google.pl:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "www.googleadservices.com:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "www.googleadservices.com:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } }, "www.twitter.com:443": { "supports_spdy": true }, "www.youtube.com:443": { "alternate_protocol": { "port": 443, "protocol_str": "quic" }, "settings": { "4": 100 }, "supports_spdy": true }, "www.youtube.com:80": { "alternate_protocol": { "port": 80, "protocol_str": "quic" } } }, "version": 2 } }, "plugins": { "plugins_list": [ ] }, "profile": { "content_settings": { "clear_on_exit_migrated": true, "pattern_pairs": { }, "pref_version": 1 }, "created_by_version": "23.0.1522.77", "creation_timestamp": "13053170607765443", "per_host_zoom_levels": { } }, "savefile": { "default_directory": "C:\\Users\\JAREK\\Downloads" }, "statistics": { "collection_asked": true, "collection_enabled": false }, "sync": { "login_screen_reminder": 1 }, "turbo": { "client_id": "0cc38ed616bfc35243e6fa63942f2fcf0c297e1baefeb0523738378bdb736a54" } } ========= End of CMD: ========= ========= reg query "HKLM\SOFTWARE\Clients\StartMenuInternet\OperaStable\shell\open\command" /s ========= HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\OperaStable\shell\open\command (domy˜lny) REG_SZ "C:\Program Files\Opera\Launcher.exe" ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BService" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\fst_pl_107" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\vProt" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Wd" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= netsh advfirewall reset ========= Ok. ========= End of CMD: ========= ========= sc config "Internet w Cyfrowym Polsacie. RunOuc" start= demand ========= [SC] ChangeServiceConfig SUKCES ========= End of CMD: ========= The system needed a reboot. ==== End of Fixlog ====