Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 30-11-2014 Ran by ania at 2014-12-01 15:32:41 Run:1 Running from J:\ Loaded Profile: ania (Available profiles: macio & ania & Administrator) Boot Mode: Safe Mode (minimal) ============================================== Content of fixlist: ***************** CloseProcesses: S1 {1b466f6c-dc3a-43cc-be85-cf3645641e49}t; C:\WINDOWS\System32\drivers\{1b466f6c-dc3a-43cc-be85-cf3645641e49}t.sys [55872 2014-10-22] (StdLib) S1 {2d11e69f-33c6-44c6-ac04-bb1b36bd5d05}t; C:\WINDOWS\System32\drivers\{2d11e69f-33c6-44c6-ac04-bb1b36bd5d05}t.sys [55872 2014-11-22] (StdLib) S1 {2e099d13-43b4-4786-97b8-180d8e368316}t; C:\WINDOWS\System32\drivers\{2e099d13-43b4-4786-97b8-180d8e368316}t.sys [55872 2014-11-28] (StdLib) S1 {2ed6f06d-c282-422a-bd97-39d8f3b7bfbe}t; C:\WINDOWS\System32\drivers\{2ed6f06d-c282-422a-bd97-39d8f3b7bfbe}t.sys [55872 2014-11-30] (StdLib) S1 {3bcd1a06-f942-43b2-83f3-1b446001ad4c}t; C:\WINDOWS\System32\drivers\{3bcd1a06-f942-43b2-83f3-1b446001ad4c}t.sys [55872 2014-11-03] (StdLib) S1 {4658e599-44ac-4503-ad88-1bb24d581e6b}t; C:\WINDOWS\System32\drivers\{4658e599-44ac-4503-ad88-1bb24d581e6b}t.sys [55872 2014-11-26] (StdLib) S1 {487feb77-84bf-4620-9b7d-e3091f0d8c1a}t; C:\WINDOWS\System32\drivers\{487feb77-84bf-4620-9b7d-e3091f0d8c1a}t.sys [55872 2014-11-25] (StdLib) S1 {5f8e00a8-575d-48e6-8d65-64af80d8d3c1}t; C:\WINDOWS\System32\drivers\{5f8e00a8-575d-48e6-8d65-64af80d8d3c1}t.sys [55872 2014-10-29] (StdLib) S1 {66ebe552-c0b3-42d2-8572-ea4c8b37cf9e}t; C:\WINDOWS\System32\drivers\{66ebe552-c0b3-42d2-8572-ea4c8b37cf9e}t.sys [55872 2014-11-29] (StdLib) S1 {69344dc5-97c6-446f-ab93-78620f9ce080}t; C:\WINDOWS\System32\drivers\{69344dc5-97c6-446f-ab93-78620f9ce080}t.sys [55872 2014-11-16] (StdLib) S1 {ac0ddd40-091b-4a3f-89cd-5279f84da3bc}t; C:\WINDOWS\System32\drivers\{ac0ddd40-091b-4a3f-89cd-5279f84da3bc}t.sys [55872 2014-11-19] (StdLib) S1 {af16652c-3cdd-4795-b89b-2d9cf16806d6}Gt; C:\WINDOWS\System32\drivers\{af16652c-3cdd-4795-b89b-2d9cf16806d6}Gt.sys [55872 2014-10-07] (StdLib) S1 {af16652c-3cdd-4795-b89b-2d9cf16806d6}t; C:\WINDOWS\System32\drivers\{af16652c-3cdd-4795-b89b-2d9cf16806d6}t.sys [55872 2014-10-20] (StdLib) S1 {b6bca5b8-0633-4bd4-aff8-a8eac231017e}t; C:\WINDOWS\System32\drivers\{b6bca5b8-0633-4bd4-aff8-a8eac231017e}t.sys [55872 2014-11-12] (StdLib) S1 {c1080099-5e1a-43c5-80f0-41cd67821448}t; C:\WINDOWS\System32\drivers\{c1080099-5e1a-43c5-80f0-41cd67821448}t.sys [55872 2014-11-27] (StdLib) S1 {cc1c7882-de6a-4305-8b39-485dcaa147b6}t; C:\WINDOWS\System32\drivers\{cc1c7882-de6a-4305-8b39-485dcaa147b6}t.sys [55872 2014-11-13] (StdLib) S1 {d0e4096d-22f7-4d51-86f7-85e4dcb81f43}t; C:\WINDOWS\System32\drivers\{d0e4096d-22f7-4d51-86f7-85e4dcb81f43}t.sys [55872 2014-10-25] (StdLib) S1 {f7ba53d8-c3df-4a43-84a3-af76826da955}t; C:\WINDOWS\System32\drivers\{f7ba53d8-c3df-4a43-84a3-af76826da955}t.sys [55872 2014-10-31] (StdLib) S1 {f8625ba0-c2d7-40f8-b773-382964b0698d}t; C:\WINDOWS\System32\drivers\{f8625ba0-c2d7-40f8-b773-382964b0698d}t.sys [55872 2014-11-07] (StdLib) S2 APNMCP; C:\Program Files\AskPartnerNetwork\Toolbar\apnmcp.exe [166296 2014-10-30] (APN LLC.) S2 MaintainerSvc3.93.1720192; C:\Documents and Settings\All Users\Dane aplikacji\cab4fbb2-1ac7-44d2-9b7d-0c921d8827f4\maintainer.exe [123680 2014-11-30] () S2 Update allgenius; C:\Program Files\allgenius\updateallgenius.exe [526112 2014-11-30] () S2 Util allgenius; C:\Program Files\allgenius\bin\utilallgenius.exe [526112 2014-11-30] () S0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [436792 2011-10-07] (Duplex Secure Ltd.) S1 StarOpen; C:\WINDOWS\system32\Drivers\StarOpen.sys [5632 2006-07-24] () [File not signed] S3 ASFWHide; \??\C:\DOCUME~1\macio\USTAWI~1\Temp\ASFWHide [X] S3 LVUSBSta; system32\DRIVERS\LVUSBSta.sys [X] S3 MarkFun_NT; \??\C:\Program Files\Gigabyte\Face_wizard\markfun.w32 [X] S3 PID_0928; system32\DRIVERS\LV561AV.SYS [X] S3 ucenkpec; No ImagePath U3 Winsock - Google Desktop Search Backup Before First Install; No ImagePath U3 Winsock - Google Desktop Search Backup Before Last Install; No ImagePath HKLM\...\Run: [ApnTBMon] => C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2039192 2014-11-24] (APN) HKLM\...\Run: [TkBellExe] => C:\Program Files\Common Files\Real\Update_OB\realsched.exe [185896 2008-09-04] (RealNetworks, Inc.) HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) BootExecute: autocheck autochk * C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /syncC:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restartSmartDefragBootTime.exe GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ShortcutWithArgument: C:\Documents and Settings\All Users\Pulpit\Opera.lnk -> C:\Program Files\Opera\opera.exe (Opera Software) -> hxxp://www.mystartsearch.com/?type=sc&ts=1415003126&from=smt&uid=ST3500418AS_6VM2QEKCXXXX6VM2QEKC ShortcutWithArgument: C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.mystartsearch.com/?type=sc&ts=1415003126&from=smt&uid=ST3500418AS_6VM2QEKCXXXX6VM2QEKC ShortcutWithArgument: C:\Documents and Settings\All Users\Menu Start\Programy\Opera.lnk -> C:\Program Files\Opera\opera.exe (Opera Software) -> hxxp://www.mystartsearch.com/?type=sc&ts=1415003126&from=smt&uid=ST3500418AS_6VM2QEKCXXXX6VM2QEKC HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hp&ts=1415003126&from=smt&uid=ST3500418AS_6VM2QEKCXXXX6VM2QEKC HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hp&ts=1415003126&from=smt&uid=ST3500418AS_6VM2QEKCXXXX6VM2QEKC URLSearchHook: HKU\S-1-5-21-343818398-823518204-725345543-1004 - SearchHook Class - {D8278076-BC68-4484-9233-6E7F1628B56C} - C:\Program Files\AskPartnerNetwork\Toolbar\searchhook.dll (APN LLC.) URLSearchHook: HKU\S-1-5-21-343818398-823518204-725345543-1004 - (No Name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "http://rts.dsrlte.com/?m=tab&affID=na" <======= ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1415003126&from=smt&uid=ST3500418AS_6VM2QEKCXXXX6VM2QEKC SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type=ds&ts=1415003126&from=smt&uid=ST3500418AS_6VM2QEKCXXXX6VM2QEKC&q={searchTerms} SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type=ds&ts=1415003126&from=smt&uid=ST3500418AS_6VM2QEKCXXXX6VM2QEKC&q={searchTerms} SearchScopes: HKU\S-1-5-21-343818398-823518204-725345543-1004 -> {9877429D-11F8-4E95-BF19-FCEDF718F3A7} URL = http://www.search.ask.com/web?tpid=ORJ-ST-SPE&o=APN11461&pf=V7&p2=^BE7^OSJ000^YY^PL&gct=sb&itbv=12.18.0.81&apn_uid=B99E999C-BAB2-48FF-98B9-AC7D90990771&apn_ptnrs=BE7&apn_dtid=^OSJ000^YY^PL&apn_dbr=Opera.exe_0_12.17.1863.0&doi=2014-10-28&trgb=IE&q={searchTerms}&psv=&pt=tb SearchScopes: HKU\S-1-5-21-343818398-823518204-725345543-1004 -> {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = http://mystart.incredibar.com/?a=6OyZQHDG3O&loc=skw&search={searchTerms} BHO: Shopping App by Ask -> {4F524A2D-5354-2D53-5045-7A786E7484D7} -> C:\Program Files\AskPartnerNetwork\Toolbar\ORJ-ST-SPE\Passport.dll (APN LLC.) BHO: allgenius 1.0.0.4 -> {963e8e8b-052d-46d7-abe6-6728f612ae99} -> C:\Program Files\allgenius\allgeniusBHO.dll (allgenius) BHO: allgenius -> {b69e6465-8844-4d10-8a6f-22d056e4c2bf} -> C:\Program Files\allgenius\allgeniusbho.dll (allgenius) Toolbar: HKLM - No Name - {a0b1221c-a3ff-4f7c-a393-dc63af5301e9} - No File Toolbar: HKLM - Shopping App by Ask - {4F524A2D-5354-2D53-5045-7A786E7484D7} - C:\Program Files\AskPartnerNetwork\Toolbar\ORJ-ST-SPE\Passport.dll (APN LLC.) Toolbar: HKU\S-1-5-21-343818398-823518204-725345543-1004 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKU\S-1-5-21-343818398-823518204-725345543-1004 -> No Name - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File Toolbar: HKU\S-1-5-21-343818398-823518204-725345543-1004 -> No Name - {51A86BB3-6602-4C85-92A5-130EE4864F13} - No File Toolbar: HKU\S-1-5-21-343818398-823518204-725345543-1004 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Toolbar: HKU\S-1-5-21-343818398-823518204-725345543-1004 -> No Name - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - No File Toolbar: HKU\S-1-5-21-343818398-823518204-725345543-1004 -> No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKU\S-1-5-21-343818398-823518204-725345543-1004 -> No Name - {A0B1221C-A3FF-4F7C-A393-DC63AF5301E9} - No File ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File DPF: {68282C51-9459-467B-95BF-3C0E89627E55} DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.8.0/jinstall-1_8_0_25-windows-i586.cab DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab DPF: {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_12-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab DPF: {CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab DPF: {CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_45-windows-i586.cab DPF: {CAFEEFAC-0018-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.8.0/jinstall-1_8_0_25-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab FF Plugin: yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1 -> C:\Program Files\Yahoo!\Common\npyaxmpb.dll No File FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\Program Files\Real\RealPlayer\browserrecord FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension FF HKLM\...\Firefox\Extensions: [{1E73965B-8B48-48be-9C8D-68B920ABC1C4}] - C:\Program Files\AVG\AVG10\Firefox4 FF HKLM\...\Firefox\Extensions: [faststartff@gmail.com] - C:\Documents and Settings\macio\Dane aplikacji\Mozilla\Firefox\Profiles\wd1c8wso.default\extensions\faststartff@gmail.com FF StartMenuInternet: FIREFOX.EXE - C:\Program Files\Mozilla Firefox\firefox.exe http://www.mystartsearch.com/?type=sc&ts=1415003126&from=smt&uid=ST3500418AS_6VM2QEKCXXXX6VM2QEKC C:\Documents and Settings\All Users\Dane aplikacji\uxxadbmu.rlu C:\Documents and Settings\All Users\Dane aplikacji\188F1432-103A-4ffb-80F1-36B633C5C9E1 C:\Documents and Settings\All Users\Dane aplikacji\ashampoo C:\Documents and Settings\All Users\Dane aplikacji\AVG C:\Documents and Settings\All Users\Dane aplikacji\AVG10 C:\Documents and Settings\All Users\Dane aplikacji\Badoo C:\Documents and Settings\All Users\Dane aplikacji\cab4fbb2-1ac7-44d2-9b7d-0c921d8827f4 C:\Documents and Settings\All Users\Dane aplikacji\Common Files C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 C:\Documents and Settings\All Users\Dane aplikacji\GG C:\Documents and Settings\All Users\Dane aplikacji\Grisoft C:\Documents and Settings\All Users\Dane aplikacji\install_clap C:\Documents and Settings\All Users\Dane aplikacji\MFAData C:\Documents and Settings\All Users\Dane aplikacji\OpenFM C:\Documents and Settings\All Users\Dane aplikacji\TEMP C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl C:\Documents and Settings\All Users\Dane aplikacji\tmp C:\Documents and Settings\All Users\Dane aplikacji\TuneUp Software C:\Documents and Settings\All Users\Dane aplikacji\Ulead Systems C:\Documents and Settings\All Users\Menu Start\Programy\Gadu-Gadu 10.lnk C:\Documents and Settings\All Users\Menu Start\Programy\Skype.lnk C:\Documents and Settings\All Users\Menu Start\Programy\Switch Sound File Converter.lnk C:\Documents and Settings\All Users\Menu Start\Programy\Canon Utilities C:\Documents and Settings\All Users\Menu Start\Programy\Alcohol 120% C:\Documents and Settings\All Users\Menu Start\Programy\Audio Related Programs C:\Documents and Settings\All Users\Menu Start\Programy\Java C:\Documents and Settings\All Users\Menu Start\Programy\NCH Software Suite C:\Documents and Settings\All Users\Menu Start\Programy\Ski Jump International C:\Documents and Settings\ania\Dane aplikacji\AutoUpdate C:\Documents and Settings\ania\Dane aplikacji\AVG C:\Documents and Settings\ania\Dane aplikacji\AVG10 C:\Documents and Settings\ania\Dane aplikacji\Pay-By-Ads C:\Documents and Settings\ania\Dane aplikacji\TuneUp Software C:\Documents and Settings\ania\Dane aplikacji\VSRevoGroup C:\Documents and Settings\ania\Pulpit\Nieużywane skróty pulpitu C:\Documents and Settings\Default User\Dane aplikacji\TuneUp Software C:\Documents and Settings\LocalService\Dane aplikacji\AVG C:\Documents and Settings\LocalService\Dane aplikacji\Systweak C:\Documents and Settings\LocalService\Dane aplikacji\TuneUp Software C:\Program Files\*.tmp C:\Program Files\globalUpdate C:\Program Files\Mozilla Firefox\extensions C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension C:\WINDOWS\system32\*.tmp C:\WINDOWS\System32\roboot.exe C:\WINDOWS\System32\unrar.dll C:\WINDOWS\System32\drivers\{1b466f6c-dc3a-43cc-be85-cf3645641e49}t.sys C:\WINDOWS\System32\drivers\{2d11e69f-33c6-44c6-ac04-bb1b36bd5d05}t.sys C:\WINDOWS\System32\drivers\{2e099d13-43b4-4786-97b8-180d8e368316}t.sys C:\WINDOWS\System32\drivers\{2ed6f06d-c282-422a-bd97-39d8f3b7bfbe}t.sys C:\WINDOWS\System32\drivers\{3bcd1a06-f942-43b2-83f3-1b446001ad4c}t.sys C:\WINDOWS\System32\drivers\{4658e599-44ac-4503-ad88-1bb24d581e6b}t.sys C:\WINDOWS\System32\drivers\{487feb77-84bf-4620-9b7d-e3091f0d8c1a}t.sys C:\WINDOWS\System32\drivers\{5f8e00a8-575d-48e6-8d65-64af80d8d3c1}t.sys C:\WINDOWS\System32\drivers\{66ebe552-c0b3-42d2-8572-ea4c8b37cf9e}t.sys C:\WINDOWS\System32\drivers\{69344dc5-97c6-446f-ab93-78620f9ce080}t.sys C:\WINDOWS\System32\drivers\{ac0ddd40-091b-4a3f-89cd-5279f84da3bc}t.sys C:\WINDOWS\System32\drivers\{af16652c-3cdd-4795-b89b-2d9cf16806d6}Gt.sys C:\WINDOWS\System32\drivers\{af16652c-3cdd-4795-b89b-2d9cf16806d6}t.sys C:\WINDOWS\System32\drivers\{b6bca5b8-0633-4bd4-aff8-a8eac231017e}t.sys C:\WINDOWS\System32\drivers\{c1080099-5e1a-43c5-80f0-41cd67821448}t.sys C:\WINDOWS\System32\drivers\{cc1c7882-de6a-4305-8b39-485dcaa147b6}t.sys C:\WINDOWS\System32\drivers\{d0e4096d-22f7-4d51-86f7-85e4dcb81f43}t.sys C:\WINDOWS\System32\drivers\{f7ba53d8-c3df-4a43-84a3-af76826da955}t.sys C:\WINDOWS\System32\drivers\{f8625ba0-c2d7-40f8-b773-382964b0698d}t.sys C:\WINDOWS\System32\Drivers\sptd.sys C:\WINDOWS\system32\Drivers\StarOpen.sys Hosts: CMD: netsh firewall reset Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\MenuExt\Translate this web page with Babylon" /f Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\MenuExt\Translate with Babylon" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\MenuExt\Translate this web page with Babylon" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\MenuExt\Translate with Babylon" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Mozilla Firefox 4.0.1 (x86 pl)" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg query HKLM\SYSTEM\CurrentControlSet\Control\Class\{4D36E967-E325-11CE-BFC1-08002BE10318} Reg: reg query HKLM\SYSTEM\CurrentControlSet\Control\Class\{71A27CDD-812A-11D0-BEC7-08002BE2092F} EmptyTemp: ***************** Processes closed successfully. {1b466f6c-dc3a-43cc-be85-cf3645641e49}t => Service deleted successfully. {2d11e69f-33c6-44c6-ac04-bb1b36bd5d05}t => Service deleted successfully. {2e099d13-43b4-4786-97b8-180d8e368316}t => Service deleted successfully. {2ed6f06d-c282-422a-bd97-39d8f3b7bfbe}t => Service deleted successfully. {3bcd1a06-f942-43b2-83f3-1b446001ad4c}t => Service deleted successfully. {4658e599-44ac-4503-ad88-1bb24d581e6b}t => Service deleted successfully. {487feb77-84bf-4620-9b7d-e3091f0d8c1a}t => Service deleted successfully. {5f8e00a8-575d-48e6-8d65-64af80d8d3c1}t => Service deleted successfully. {66ebe552-c0b3-42d2-8572-ea4c8b37cf9e}t => Service deleted successfully. {69344dc5-97c6-446f-ab93-78620f9ce080}t => Service deleted successfully. {ac0ddd40-091b-4a3f-89cd-5279f84da3bc}t => Service deleted successfully. {af16652c-3cdd-4795-b89b-2d9cf16806d6}Gt => Service deleted successfully. {af16652c-3cdd-4795-b89b-2d9cf16806d6}t => Service deleted successfully. {b6bca5b8-0633-4bd4-aff8-a8eac231017e}t => Service deleted successfully. {c1080099-5e1a-43c5-80f0-41cd67821448}t => Service deleted successfully. {cc1c7882-de6a-4305-8b39-485dcaa147b6}t => Service deleted successfully. {d0e4096d-22f7-4d51-86f7-85e4dcb81f43}t => Service deleted successfully. {f7ba53d8-c3df-4a43-84a3-af76826da955}t => Service deleted successfully. {f8625ba0-c2d7-40f8-b773-382964b0698d}t => Service deleted successfully. APNMCP => Service deleted successfully. MaintainerSvc3.93.1720192 => Service deleted successfully. Update allgenius => Service deleted successfully. Util allgenius => Service deleted successfully. sptd => Service deleted successfully. StarOpen => Service deleted successfully. ASFWHide => Service deleted successfully. LVUSBSta => Service deleted successfully. MarkFun_NT => Service deleted successfully. PID_0928 => Service deleted successfully. ucenkpec => Service deleted successfully. Winsock - Google Desktop Search Backup Before First Install => Service deleted successfully. Winsock - Google Desktop Search Backup Before Last Install => Service deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ApnTBMon => value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\TkBellExe => value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully. HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => Value was restored successfully. C:\WINDOWS\system32\GroupPolicy\Machine => Moved successfully. C:\WINDOWS\system32\GroupPolicy\GPT.ini => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. C:\Documents and Settings\All Users\Pulpit\Opera.lnk => Shortcut argument was removed successfully. C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk => Shortcut argument was removed successfully. C:\Documents and Settings\All Users\Menu Start\Programy\Opera.lnk => Shortcut argument was removed successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKU\S-1-5-21-343818398-823518204-725345543-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\{D8278076-BC68-4484-9233-6E7F1628B56C} => value deleted successfully. "HKCR\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}" => Key deleted successfully. HKU\S-1-5-21-343818398-823518204-725345543-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} => value deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs\\Tabs => Value was restored successfully. "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. "HKU\S-1-5-21-343818398-823518204-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9877429D-11F8-4E95-BF19-FCEDF718F3A7}" => Key deleted successfully. "HKCR\CLSID\{9877429D-11F8-4E95-BF19-FCEDF718F3A7}" => Key not found. "HKU\S-1-5-21-343818398-823518204-725345543-1004\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}" => Key deleted successfully. "HKCR\CLSID\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4F524A2D-5354-2D53-5045-7A786E7484D7}" => Key deleted successfully. "HKCR\CLSID\{4F524A2D-5354-2D53-5045-7A786E7484D7}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{963e8e8b-052d-46d7-abe6-6728f612ae99}" => Key deleted successfully. "HKCR\CLSID\{963e8e8b-052d-46d7-abe6-6728f612ae99}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b69e6465-8844-4d10-8a6f-22d056e4c2bf}" => Key deleted successfully. "HKCR\CLSID\{b69e6465-8844-4d10-8a6f-22d056e4c2bf}" => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{a0b1221c-a3ff-4f7c-a393-dc63af5301e9} => value deleted successfully. "HKCR\CLSID\{a0b1221c-a3ff-4f7c-a393-dc63af5301e9}" => Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{4F524A2D-5354-2D53-5045-7A786E7484D7} => value deleted successfully. "HKCR\CLSID\{4F524A2D-5354-2D53-5045-7A786E7484D7}" => Key not found. HKU\S-1-5-21-343818398-823518204-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value deleted successfully. "HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}" => Key not found. HKU\S-1-5-21-343818398-823518204-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} => value deleted successfully. "HKCR\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}" => Key not found. HKU\S-1-5-21-343818398-823518204-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{51A86BB3-6602-4C85-92A5-130EE4864F13} => value deleted successfully. "HKCR\CLSID\{51A86BB3-6602-4C85-92A5-130EE4864F13}" => Key not found. HKU\S-1-5-21-343818398-823518204-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => value deleted successfully. "HKCR\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}" => Key not found. HKU\S-1-5-21-343818398-823518204-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{31CF9EBE-5755-4A1D-AC25-2834D952D9B4} => value deleted successfully. "HKCR\CLSID\{31CF9EBE-5755-4A1D-AC25-2834D952D9B4}" => Key not found. HKU\S-1-5-21-343818398-823518204-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} => value deleted successfully. "HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}" => Key not found. HKU\S-1-5-21-343818398-823518204-725345543-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{A0B1221C-A3FF-4F7C-A393-DC63AF5301E9} => value deleted successfully. "HKCR\CLSID\{A0B1221C-A3FF-4F7C-A393-DC63AF5301E9}" => Key not found. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt1"" => Key deleted successfully. "HKCR\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" => Key not found. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt2"" => Key deleted successfully. "HKCR\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" => Key not found. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt3"" => Key deleted successfully. "HKCR\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}" => Key not found. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt4"" => Key deleted successfully. "HKCR\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}" => Key not found. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt5"" => Key deleted successfully. "HKCR\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" => Key not found. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt6"" => Key deleted successfully. "HKCR\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}" => Key not found. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt7"" => Key deleted successfully. "HKCR\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" => Key not found. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt8"" => Key deleted successfully. "HKCR\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}" => Key not found. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{68282C51-9459-467B-95BF-3C0E89627E55}" => Key deleted successfully. "HKCR\CLSID\{68282C51-9459-467B-95BF-3C0E89627E55}" => Key not found. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}" => Key deleted successfully. "HKCR\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}" => Key deleted successfully. "HKCR\CLSID\{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}" => Key not found. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}" => Key deleted successfully. "HKCR\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}" => Key deleted successfully. "HKCR\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}" => Key deleted successfully. "HKCR\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}" => Key deleted successfully. "HKCR\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}" => Key deleted successfully. "HKCR\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}" => Key deleted successfully. "HKCR\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA}" => Key deleted successfully. "HKCR\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0018-0000-0025-ABCDEFFEDCBA}" => Key deleted successfully. "HKCR\CLSID\{CAFEEFAC-0018-0000-0025-ABCDEFFEDCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}" => Key deleted successfully. "HKCR\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{D27CDB6E-AE6D-11CF-96B8-444553540000}" => Key deleted successfully.