Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 18-02-2015 01 Ran by Łukasz at 2015-02-20 11:20:45 Run:1 Running from C:\Users\Łukasz\Downloads\Programs Loaded Profiles: Łukasz (Available profiles: Łukasz) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: CreateRestorePoint: S2 IHProtect Service; C:\Program Files\XTab\ProtectService.exe [X] S2 Nero BackItUp Scheduler 4.0; C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe [X] S2 Update Deal Keeper; "C:\Program Files\Deal Keeper\updateDealKeeper.exe" [X] S2 Update Greener Web; "C:\Program Files\Greener Web\updateGreenerWeb.exe" [X] S2 Util Deal Keeper; "C:\Program Files\Deal Keeper\bin\utilDealKeeper.exe" [X] S2 Util Greener Web; "C:\Program Files\Greener Web\bin\utilGreenerWeb.exe" [X] S2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -service [X] S3 AndNetDiag; system32\DRIVERS\lgandnetdiag.sys [X] S3 ANDNetModem; system32\DRIVERS\lgandnetmodem.sys [X] S3 mcdbus; system32\DRIVERS\mcdbus.sys [X] S4 nvvad_WaveExtensible; system32\drivers\nvvad32v.sys [X] Task: {02AB8756-DDB8-4945-AD31-367AEEA93B33} - System32\Tasks\{38D6A2A3-477B-4284-ADDE-E7D9131CA17F} => pcalua.exe -a L:\EASetup.exe -d L:\ Task: {14107CB2-68DD-46F5-9990-455870A2F57E} - System32\Tasks\{FCCEB828-4962-4A35-A312-61771EF7248F} => D:\Gry\Nowy folder\Barbie™ pamietniki - Szkolna tajemnica\Barbie™ pamietniki - Szkolna tajemnica\bin\game.exe Task: {1E01B910-D94A-4625-8467-6BCFAC56A8F9} - System32\Tasks\YourFileDownloader Installer Starter => C:\Users\UKASZ~1\AppData\Local\Temp\YourFileDownloaderYXePrKk2vY.exe <==== ATTENTION Task: {4198F49A-32FC-463A-905C-32BC31185A03} - System32\Tasks\{8CDF044C-2F72-4B93-B942-325D3E769E17} => pcalua.exe -a E:\INSTALKI\napiprojekt1.0.6.2_(www.programs.pl).exe -d E:\INSTALKI Task: {4D9A4CEF-49C3-4618-8129-891A4F91A0E7} - System32\Tasks\{D85B24FF-EFED-487D-B162-30019861385F} => D:\Gry\Nowy folder\Barbie™ pamietniki - Szkolna tajemnica\Barbie™ pamietniki - Szkolna tajemnica\bin\game.exe Task: {68A48222-B869-4AFE-8AD5-D5E01596AE76} - System32\Tasks\{3AE14ACE-6C29-4203-9070-C64AF4C3E051} => pcalua.exe -a C:\Users\Łukasz\Downloads\SweetIMSetup.exe -d C:\Users\Łukasz\Downloads Task: {72989AB1-6AB4-4514-A48E-B74A880EFE4A} - System32\Tasks\{A07877CF-48F7-42CD-B090-0D089C787A17} => pcalua.exe -a L:\DirectX\DXSETUP.exe -d L:\DirectX Task: {8B4E50A9-6D5B-446C-8F44-0A13DFEF8810} - System32\Tasks\{7E084364-49B9-4990-9205-0FBFFB0DDFAF} => pcalua.exe -a "C:\Program Files\sweetpacks bundle uninstaller\uninstaller.exe" -c "/appName=SweetIM Bundle by SweetPacks" Task: {A62B2E86-7667-4B89-B608-3C6CC2BF9231} - System32\Tasks\{44E64E34-1A4E-46F0-A046-6F4F0BF727E8} => pcalua.exe -a "L:\Support\Medal of Honor Airborne_code.exe" -d L:\Support Task: {A6EEC4BC-756B-4051-B24E-DE3052F9AE69} - System32\Tasks\{0F884208-93D5-41AB-B93D-4066CA60A93E} => pcalua.exe -a "C:\Program Files\InstallShield Installation Information\{E8AEA11B-E60A-455E-B008-E4E763604612}\setup.exe" -c -runfromtemp -l0x0009 -removeonly Task: {A7CE328B-09FA-4C63-AF5C-C023BF1F5B48} - System32\Tasks\{AF775F00-BF1F-4D15-8D7E-61675DA96870} => pcalua.exe -a K:\Fairlight\Installer.exe -d K:\Fairlight Task: {B383F663-2633-4D93-89F2-A2A1B661DB3E} - System32\Tasks\{CA75FFF7-0F10-40FD-83CC-3847566821BC} => pcalua.exe -a "C:\Program Files\ivo\Ivona_Demo-1.0\UsunIvonaDemoBeta.exe" Task: {B4ED14AC-916A-48C2-AA5D-4D58D5234BBB} - System32\Tasks\{B682EC5E-B853-4094-B0D7-FFF247E716D0} => pcalua.exe -a "D:\Gry\Nowy folder\Barbie™ pamietniki - Szkolna tajemnica\unins000.exe" Task: {C465E5DF-C812-4F8A-8C70-76A90E77CD00} - System32\Tasks\{F9333E56-50AD-4BDC-97BB-12F06E5DAEE7} => pcalua.exe -a "D:\Gry\Nowy folder\Barbie™ pamietniki - Szkolna tajemnica\unins000.exe" -d "D:\Gry\Nowy folder\Barbie™ pamietniki - Szkolna tajemnica" HKLM\...\Run: [ApnUpdater] => "C:\Program Files\Ask.com\Updater\Updater.exe" HKLM\...\Run: [] => [X] HKU\S-1-5-21-3215043942-3594844569-900473125-1000\...\Run: [Hoolapp Android] => C:\Users\Łukasz\AppData\Roaming\HoolappForAndroid\hoolapp.exe [0 2015-02-16] () HKU\S-1-5-21-3215043942-3594844569-900473125-1000\...\Run: [ChomikBox] => C:\Program Files\ChomikBox\chomikbox.exe HKU\S-1-5-21-3215043942-3594844569-900473125-1000\...\Run: [UpdateChecker] => C:\Program Files\SqueakyChocolate\UpdateChecker\UpdateCheckerApp.exe [7168 2013-08-25] (SqueakyChocolate, LLC) HKU\S-1-5-21-3215043942-3594844569-900473125-1000\...\Run: [Overwolf] => C:\Program Files\Overwolf\Overwolf.exe -silent HKU\S-1-5-21-3215043942-3594844569-900473125-1000\...\Run: [EpicScale] => [X] CustomCLSID: HKU\S-1-5-21-3215043942-3594844569-900473125-1000_Classes\CLSID\{1c492e6a-2803-5ed7-83e1-1b1d4d41eb39}\InprocServer32 -> D:\Gry\Nowy folder (3)\npuplaypc.dll No File HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/?type=hppp&ts=1424273368&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type=dspp&ts=1424273368&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hppp&ts=1424273368&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type=dspp&ts=1424273368&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&q={searchTerms} HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type=ds&ts=1424273314&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&q={searchTerms} HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/?type=hppp&ts=1424273368&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742 HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type=ds&ts=1424273314&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&q={searchTerms} URLSearchHook: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll No File SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type=dspp&ts=1424273368&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&q={searchTerms} SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type=dspp&ts=1424273368&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type=dspp&ts=1424273368&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.mystartsearch.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&ts=1424273410&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.mystartsearch.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&ts=1424273410&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.mystartsearch.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&ts=1424273410&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type=dspp&ts=1424273368&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> {48860B13-5AD1-4154-B4EC-E2336D125D45} URL = http://www.mystartsearch.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&ts=1424273410&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.mystartsearch.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&ts=1424273410&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = http://www.mystartsearch.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&ts=1424273410&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> {B224AA02-F7C8-3A2B-859F-560B80767E4A} URL = http://www.mystartsearch.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&ts=1424273410&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> {BB66CC2C-C777-412B-BA89-AB22B19CF40E} URL = http://www.mystartsearch.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&ts=1424273410&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.mystartsearch.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&ts=1424273410&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> {F2C54EB2-4410-4410-BA00-0B63335D73CE} URL = http://www.mystartsearch.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742&ts=1424273410&type=default&q={searchTerms} BHO: IVONA Reader -> {8664889D-ED18-4713-918F-E2BB69D8452B} -> No File BHO: Ask Toolbar -> {D4027C7F-154A-4066-A1AD-4243D8127440} -> No File Toolbar: HKLM - IVONA Reader - {8664889D-ED18-4713-918F-E2BB69D8452B} - No File Toolbar: HKLM - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Toolbar: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKU\S-1-5-21-3215043942-3594844569-900473125-1000 -> No Name - {32099AAC-C132-4136-9E9A-4E364A424E17} - No File StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1424273314&from=amt&uid=SAMSUNGXHD502HI_S1VZJ90S232742 FF Plugin HKU\S-1-5-21-3215043942-3594844569-900473125-1000: ubisoft.com/uplaypc -> D:\Gry\Nowy folder (3)\npuplaypc.dll No File FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\avg-secure-search.xm FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\mystartsearch.xml C:\Program Files\Ashampoo C:\Program Files\dumps C:\Program Files\predm C:\Program Files\XTab C:\ProgramData\APN C:\ProgramData\EpicScale C:\ProgramData\IHProtectUpDate C:\ProgramData\WindowsMangerProtect C:\ProgramData\Microsoft\Windows\Start Menu\Programs\File Association Manager C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MailShare\Pomoc.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MailShare\Usuń.lnk C:\Users\Łukasz\AppData\Local\APN C:\Users\Łukasz\AppData\Local\Google C:\Users\Łukasz\AppData\Local\Microsoft\Windows\GameExplorer\{D5ACB578-5420-4C19-B1F6-C7FF86479E0D} C:\Users\Łukasz\AppData\Local\Microsoft\Windows\GameExplorer\{7D474929-7F71-4B0A-B604-071CAE46C3D6} C:\Users\Łukasz\AppData\Local\Microsoft\Windows\GameExplorer\{70151653-A806-4B60-9857-56146A39F8B2} C:\Users\Łukasz\AppData\Local\Microsoft\Windows\GameExplorer\{019D8652-C8EB-4C48-AC36-B89C41D92B18} C:\Users\Łukasz\AppData\Roaming\00000000-1424277125-0000-0000-001FD0DFE546 C:\Users\Łukasz\AppData\Roaming\HoolappForAndroid C:\Users\Łukasz\AppData\Roaming\OpenCandy C:\Users\Łukasz\AppData\Roaming\Security Systems C:\Users\Łukasz\AppData\Roaming\Solvusoft C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\SendTo\IVONA Reader.lnk C:\Users\Łukasz\Desktop\hs_err_pid13848.log C:\Users\Public\Desktop\Your Software Deals.url C:\Windows\system32\temp.* Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f Reg: reg delete HKCU\Software\Google /f Reg: reg delete HKCU\Software\Mozilla\Seamonkey /f Reg: reg delete HKLM\SOFTWARE\Google /f Reg: reg delete HKLM\SOFTWARE\Mozilla\Thunderbird /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. IHProtect Service => Service deleted successfully. Nero BackItUp Scheduler 4.0 => Service deleted successfully. Update Deal Keeper => Service deleted successfully. Update Greener Web => Service deleted successfully. Util Deal Keeper => Service deleted successfully. Util Greener Web => Service deleted successfully. WindowsMangerProtect => Service deleted successfully. AndNetDiag => Service deleted successfully. ANDNetModem => Service deleted successfully. mcdbus => Service deleted successfully. nvvad_WaveExtensible => Service deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{02AB8756-DDB8-4945-AD31-367AEEA93B33}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{02AB8756-DDB8-4945-AD31-367AEEA93B33}" => Key deleted successfully. C:\Windows\System32\Tasks\{38D6A2A3-477B-4284-ADDE-E7D9131CA17F} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{38D6A2A3-477B-4284-ADDE-E7D9131CA17F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{14107CB2-68DD-46F5-9990-455870A2F57E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{14107CB2-68DD-46F5-9990-455870A2F57E}" => Key deleted successfully. C:\Windows\System32\Tasks\{FCCEB828-4962-4A35-A312-61771EF7248F} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{FCCEB828-4962-4A35-A312-61771EF7248F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1E01B910-D94A-4625-8467-6BCFAC56A8F9}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1E01B910-D94A-4625-8467-6BCFAC56A8F9}" => Key deleted successfully. C:\Windows\System32\Tasks\YourFileDownloader Installer Starter => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YourFileDownloader Installer Starter" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4198F49A-32FC-463A-905C-32BC31185A03}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4198F49A-32FC-463A-905C-32BC31185A03}" => Key deleted successfully. C:\Windows\System32\Tasks\{8CDF044C-2F72-4B93-B942-325D3E769E17} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{8CDF044C-2F72-4B93-B942-325D3E769E17}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4D9A4CEF-49C3-4618-8129-891A4F91A0E7}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4D9A4CEF-49C3-4618-8129-891A4F91A0E7}" => Key deleted successfully. C:\Windows\System32\Tasks\{D85B24FF-EFED-487D-B162-30019861385F} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{D85B24FF-EFED-487D-B162-30019861385F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{68A48222-B869-4AFE-8AD5-D5E01596AE76}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{68A48222-B869-4AFE-8AD5-D5E01596AE76}" => Key deleted successfully. C:\Windows\System32\Tasks\{3AE14ACE-6C29-4203-9070-C64AF4C3E051} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{3AE14ACE-6C29-4203-9070-C64AF4C3E051}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{72989AB1-6AB4-4514-A48E-B74A880EFE4A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{72989AB1-6AB4-4514-A48E-B74A880EFE4A}" => Key deleted successfully. C:\Windows\System32\Tasks\{A07877CF-48F7-42CD-B090-0D089C787A17} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{A07877CF-48F7-42CD-B090-0D089C787A17}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8B4E50A9-6D5B-446C-8F44-0A13DFEF8810}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8B4E50A9-6D5B-446C-8F44-0A13DFEF8810}" => Key deleted successfully. C:\Windows\System32\Tasks\{7E084364-49B9-4990-9205-0FBFFB0DDFAF} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7E084364-49B9-4990-9205-0FBFFB0DDFAF}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A62B2E86-7667-4B89-B608-3C6CC2BF9231}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A62B2E86-7667-4B89-B608-3C6CC2BF9231}" => Key deleted successfully. C:\Windows\System32\Tasks\{44E64E34-1A4E-46F0-A046-6F4F0BF727E8} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{44E64E34-1A4E-46F0-A046-6F4F0BF727E8}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A6EEC4BC-756B-4051-B24E-DE3052F9AE69}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A6EEC4BC-756B-4051-B24E-DE3052F9AE69}" => Key deleted successfully. C:\Windows\System32\Tasks\{0F884208-93D5-41AB-B93D-4066CA60A93E} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{0F884208-93D5-41AB-B93D-4066CA60A93E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A7CE328B-09FA-4C63-AF5C-C023BF1F5B48}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A7CE328B-09FA-4C63-AF5C-C023BF1F5B48}" => Key deleted successfully. C:\Windows\System32\Tasks\{AF775F00-BF1F-4D15-8D7E-61675DA96870} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{AF775F00-BF1F-4D15-8D7E-61675DA96870}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B383F663-2633-4D93-89F2-A2A1B661DB3E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B383F663-2633-4D93-89F2-A2A1B661DB3E}" => Key deleted successfully. C:\Windows\System32\Tasks\{CA75FFF7-0F10-40FD-83CC-3847566821BC} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{CA75FFF7-0F10-40FD-83CC-3847566821BC}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B4ED14AC-916A-48C2-AA5D-4D58D5234BBB}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B4ED14AC-916A-48C2-AA5D-4D58D5234BBB}" => Key deleted successfully. C:\Windows\System32\Tasks\{B682EC5E-B853-4094-B0D7-FFF247E716D0} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B682EC5E-B853-4094-B0D7-FFF247E716D0}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C465E5DF-C812-4F8A-8C70-76A90E77CD00}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C465E5DF-C812-4F8A-8C70-76A90E77CD00}" => Key deleted successfully. C:\Windows\System32\Tasks\{F9333E56-50AD-4BDC-97BB-12F06E5DAEE7} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F9333E56-50AD-4BDC-97BB-12F06E5DAEE7}" => Key deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater => value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Hoolapp Android => value deleted successfully. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Windows\CurrentVersion\Run\\ChomikBox => value deleted successfully. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Windows\CurrentVersion\Run\\UpdateChecker => Value not found. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Overwolf => value deleted successfully. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Windows\CurrentVersion\Run\\EpicScale => value deleted successfully. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000_Classes\CLSID\{1c492e6a-2803-5ed7-83e1-1b1d4d41eb39}" => Key deleted successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\Main\\Search Bar => value deleted successfully. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{00000000-6E41-4FD3-8538-502F5495E5FC} => value deleted successfully. "HKCR\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}" => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully. HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}" => Key deleted successfully. HKCR\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key not found. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}" => Key deleted successfully. HKCR\CLSID\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} => Key not found. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{48860B13-5AD1-4154-B4EC-E2336D125D45}" => Key deleted successfully. HKCR\CLSID\{48860B13-5AD1-4154-B4EC-E2336D125D45} => Key not found. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" => Key deleted successfully. HKCR\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => Key not found. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}" => Key deleted successfully. HKCR\CLSID\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} => Key not found. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B224AA02-F7C8-3A2B-859F-560B80767E4A}" => Key deleted successfully. HKCR\CLSID\{B224AA02-F7C8-3A2B-859F-560B80767E4A} => Key not found. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{BB66CC2C-C777-412B-BA89-AB22B19CF40E}" => Key deleted successfully. HKCR\CLSID\{BB66CC2C-C777-412B-BA89-AB22B19CF40E} => Key not found. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}" => Key deleted successfully. HKCR\CLSID\{E733165D-CBCF-4FDA-883E-ADEF965B476C} => Key not found. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{F2C54EB2-4410-4410-BA00-0B63335D73CE}" => Key deleted successfully. HKCR\CLSID\{F2C54EB2-4410-4410-BA00-0B63335D73CE} => Key not found. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8664889D-ED18-4713-918F-E2BB69D8452B}" => Key deleted successfully. "HKCR\CLSID\{8664889D-ED18-4713-918F-E2BB69D8452B}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}" => Key deleted successfully. "HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}" => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{8664889D-ED18-4713-918F-E2BB69D8452B} => value deleted successfully. HKCR\CLSID\{8664889D-ED18-4713-918F-E2BB69D8452B} => Key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} => value deleted successfully. HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key not found. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} => value deleted successfully. "HKCR\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}" => Key deleted successfully. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} => value deleted successfully. HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => Key not found. HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} => value deleted successfully. HKCR\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17} => Key not found. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. "HKU\S-1-5-21-3215043942-3594844569-900473125-1000\Software\MozillaPlugins\ubisoft.com/uplaypc" => Key deleted successfully. D:\Gry\Nowy folder (3)\npuplaypc.dll not found. "C:\Program Files\mozilla firefox\browser\searchplugins\avg-secure-search.xm" => not found. C:\Program Files\mozilla firefox\browser\searchplugins\mystartsearch.xml => Moved successfully. C:\Program Files\Ashampoo => Moved successfully. C:\Program Files\dumps => Moved successfully. C:\Program Files\predm => Moved successfully. C:\Program Files\XTab => Moved successfully. C:\ProgramData\APN => Moved successfully. C:\ProgramData\EpicScale => Moved successfully. C:\ProgramData\IHProtectUpDate => Moved successfully. C:\ProgramData\WindowsMangerProtect => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\File Association Manager => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MailShare\Pomoc.lnk => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MailShare\Usuń.lnk => Moved successfully. C:\Users\Łukasz\AppData\Local\APN => Moved successfully. C:\Users\Łukasz\AppData\Local\Google => Moved successfully. C:\Users\Łukasz\AppData\Local\Microsoft\Windows\GameExplorer\{D5ACB578-5420-4C19-B1F6-C7FF86479E0D} => Moved successfully. C:\Users\Łukasz\AppData\Local\Microsoft\Windows\GameExplorer\{7D474929-7F71-4B0A-B604-071CAE46C3D6} => Moved successfully. C:\Users\Łukasz\AppData\Local\Microsoft\Windows\GameExplorer\{70151653-A806-4B60-9857-56146A39F8B2} => Moved successfully. C:\Users\Łukasz\AppData\Local\Microsoft\Windows\GameExplorer\{019D8652-C8EB-4C48-AC36-B89C41D92B18} => Moved successfully. C:\Users\Łukasz\AppData\Roaming\00000000-1424277125-0000-0000-001FD0DFE546 => Moved successfully. C:\Users\Łukasz\AppData\Roaming\HoolappForAndroid => Moved successfully. C:\Users\Łukasz\AppData\Roaming\OpenCandy => Moved successfully. C:\Users\Łukasz\AppData\Roaming\Security Systems => Moved successfully. C:\Users\Łukasz\AppData\Roaming\Solvusoft => Moved successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\SendTo\IVONA Reader.lnk => Moved successfully. C:\Users\Łukasz\Desktop\hs_err_pid13848.log => Moved successfully. C:\Users\Public\Desktop\Your Software Deals.url => Moved successfully. C:\Windows\system32\temp.* => Moved successfully. ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKCU\Software\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKCU\Software\Mozilla\Seamonkey /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Mozilla\Thunderbird /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Bť¤D: System nie znalazˆ w rejestrze okre˜lonego klucza albo warto˜ci. ========= End of Reg: ========= EmptyTemp: => Removed 8.7 GB temporary data. The system needed a reboot. ==== End of Fixlog 11:25:36 ====