Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 13-12-2014 Ran by Rafal at 2014-12-16 12:31:59 Run:3 Running from C:\Users\Rafal\Downloads\Narzędzia Loaded Profile: Rafal (Available profiles: Rafal) Boot Mode: Normal ============================================== Content of fixlist: ***************** ProxyEnable: [.DEFAULT] => Internet Explorer proxy is enabled. ProxyServer: [.DEFAULT] => http=127.0.0.1:52001;https=127.0.0.1:52001 C:\Users\Rafal\AppData\Local\MyWinLockerInstaller.txt-20141215.log C:\Users\Rafal\AppData\Local\{896A7B57-E8EF-477D-922C-CC56D9E3FC67} C:\Users\Rafal\AppData\Local\cache C:\Users\Rafal\AppData\Local\com C:\Users\Rafal\AppData\Local\CyberLink C:\Users\Rafal\AppData\Local\EgisTec C:\Users\Rafal\AppData\Local\lptmp1219580059 C:\Users\Rafal\AppData\Local\lptmp695454848 C:\Users\Rafal\AppData\Local\PunkBuster C:\Users\Rafal\AppData\Local\Speedchecker C:\Users\Rafal\AppData\Local\VS Revo Group C:\Users\Rafal\AppData\LocalLow\Google C:\Users\Rafal\AppData\Roaming\*.log C:\Users\Rafal\AppData\Roaming\mswinaplic.dll C:\Users\Rafal\AppData\Roaming\CyberLink RemoveDirectory: C:\AdwCleaner RemoveDirectory: C:\FRST\Quarantine Reg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs" /v Tabs /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ***************** HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value deleted successfully. HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value deleted successfully. C:\Users\Rafal\AppData\Local\MyWinLockerInstaller.txt-20141215.log => Moved successfully. C:\Users\Rafal\AppData\Local\{896A7B57-E8EF-477D-922C-CC56D9E3FC67} => Moved successfully. C:\Users\Rafal\AppData\Local\cache => Moved successfully. C:\Users\Rafal\AppData\Local\com => Moved successfully. C:\Users\Rafal\AppData\Local\CyberLink => Moved successfully. C:\Users\Rafal\AppData\Local\EgisTec => Moved successfully. C:\Users\Rafal\AppData\Local\lptmp1219580059 => Moved successfully. C:\Users\Rafal\AppData\Local\lptmp695454848 => Moved successfully. C:\Users\Rafal\AppData\Local\PunkBuster => Moved successfully. C:\Users\Rafal\AppData\Local\Speedchecker => Moved successfully. C:\Users\Rafal\AppData\Local\VS Revo Group => Moved successfully. C:\Users\Rafal\AppData\LocalLow\Google => Moved successfully. C:\Users\Rafal\AppData\Roaming\*.log => Moved successfully. C:\Users\Rafal\AppData\Roaming\mswinaplic.dll => Moved successfully. C:\Users\Rafal\AppData\Roaming\CyberLink => Moved successfully. "C:\AdwCleaner" => Removed successfully. "C:\FRST\Quarantine" => Removed successfully. ========= reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs" /v Tabs /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ==== End of Fixlog ====