Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015 Ran by wmwb at 2015-03-18 14:01:31 Run:1 Running from C:\Users\wmwb\Desktop\naprawa Loaded Profiles: wmwb (Available profiles: wmwb) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: CreateRestorePoint: R1 {073f2b9a-2357-4614-b174-3fc1afffe941}Gw64; C:\Windows\System32\drivers\{073f2b9a-2357-4614-b174-3fc1afffe941}Gw64.sys [48784 2015-01-02] (StdLib) R1 {0fd1a45b-4ab9-492d-a4ec-94b4363a6dde}Gw64; C:\Windows\System32\drivers\{0fd1a45b-4ab9-492d-a4ec-94b4363a6dde}Gw64.sys [48784 2015-02-21] (StdLib) R1 {122141c3-e1a4-4af5-b3d7-650743f49ec0}Gw64; C:\Windows\System32\drivers\{122141c3-e1a4-4af5-b3d7-650743f49ec0}Gw64.sys [48784 2015-01-03] (StdLib) R1 {167ce4ee-11d0-42b8-9745-63dd8d0684e3}Gw64; C:\Windows\System32\drivers\{167ce4ee-11d0-42b8-9745-63dd8d0684e3}Gw64.sys [48784 2015-02-26] (StdLib) R1 {4291b504-d331-41fb-90ff-daaf14dd7f49}Gw64; C:\Windows\System32\drivers\{4291b504-d331-41fb-90ff-daaf14dd7f49}Gw64.sys [48784 2015-01-21] (StdLib) R1 {44219168-7340-43df-bbc2-89f0b26c112f}Gw64; C:\Windows\System32\drivers\{44219168-7340-43df-bbc2-89f0b26c112f}Gw64.sys [48784 2015-01-18] (StdLib) R1 {4b92b7b5-c723-48bb-89a7-6647fe734df9}Gw64; C:\Windows\System32\drivers\{4b92b7b5-c723-48bb-89a7-6647fe734df9}Gw64.sys [48784 2015-02-14] (StdLib) R1 {4f8c067a-e55a-4229-81e6-7be1491578a2}Gw64; C:\Windows\System32\drivers\{4f8c067a-e55a-4229-81e6-7be1491578a2}Gw64.sys [48784 2015-01-30] (StdLib) R1 {549b1cd8-769f-468a-ad93-f57bfc8402c2}Gw64; C:\Windows\System32\drivers\{549b1cd8-769f-468a-ad93-f57bfc8402c2}Gw64.sys [48784 2015-01-12] (StdLib) R1 {72074a89-563a-4402-894b-cfea7ec6858b}Gw64; C:\Windows\System32\drivers\{72074a89-563a-4402-894b-cfea7ec6858b}Gw64.sys [48784 2015-02-08] (StdLib) R1 {88dab020-0802-4f33-9294-5fccbb774bac}Gw64; C:\Windows\System32\drivers\{88dab020-0802-4f33-9294-5fccbb774bac}Gw64.sys [48784 2015-03-04] (StdLib) R1 {8dc666b5-f370-4f22-8558-6a137d48eead}Gw64; C:\Windows\System32\drivers\{8dc666b5-f370-4f22-8558-6a137d48eead}Gw64.sys [48784 2015-01-27] (StdLib) R1 {95282a5e-d707-43c0-b998-d6a934a963a8}Gw64; C:\Windows\System32\drivers\{95282a5e-d707-43c0-b998-d6a934a963a8}Gw64.sys [48784 2015-01-09] (StdLib) R1 {9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64; C:\Windows\System32\drivers\{9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64.sys [48784 2015-01-24] (StdLib) R1 {9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64; C:\Windows\System32\drivers\{9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64.sys [48784 2015-02-24] (StdLib) R1 {9e225977-4791-4356-911d-90b292281075}Gw64; C:\Windows\System32\drivers\{9e225977-4791-4356-911d-90b292281075}Gw64.sys [48784 2015-02-05] (StdLib) R1 {b40efc75-ad36-4607-9465-eb41963e9c42}Gw64; C:\Windows\System32\drivers\{b40efc75-ad36-4607-9465-eb41963e9c42}Gw64.sys [48784 2015-03-11] (StdLib) R1 {b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64; C:\Windows\System32\drivers\{b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64.sys [48784 2015-02-02] (StdLib) R1 {baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64; C:\Windows\System32\drivers\{baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64.sys [48784 2015-02-11] (StdLib) R1 {cad8ac99-1831-4a75-b758-e4235c95af75}Gw64; C:\Windows\System32\drivers\{cad8ac99-1831-4a75-b758-e4235c95af75}Gw64.sys [48784 2015-01-15] (StdLib) R1 {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64; C:\Windows\System32\drivers\{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64.sys [48784 2015-03-07] (StdLib) R1 {e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64; C:\Windows\System32\drivers\{e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64.sys [48784 2015-02-18] (StdLib) R1 {fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64; C:\Windows\System32\drivers\{fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64.sys [48784 2015-01-06] (StdLib) R1 {fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64; C:\Windows\System32\drivers\{fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64.sys [48784 2015-03-01] (StdLib) R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [473088 2015-01-02] (Fuyu LIMITED) [File not signed] Task: {28BCF69A-D284-4AB7-B65C-7B63A808A88F} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86) [2015-03-06] () Task: {2CDE56AD-EBCE-4DB0-BCD5-A95B72F8D95C} - System32\Tasks\{9ECECB05-7B12-467D-BFCA-C983A5F89578} => pcalua.exe -a C:\Users\wmwb\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=smt Task: {453EF625-BA6E-41E2-95EB-68E7C1C82AD8} - System32\Tasks\{1A121956-4EF8-42B7-A338-89ACD3E7615C} => pcalua.exe -a E:\SCDAAutorun.exe -d E:\ Task: {67928142-79E7-4C6A-9BC8-12912DFF0118} - System32\Tasks\{923DCEE0-CFFD-4948-BA5D-7B1BBB749043} => pcalua.exe -a "D:\Gry\Tom Clancy's Splinter Cell Double Agent\SCDALauncher.exe" -d "D:\Gry\Tom Clancy's Splinter Cell Double Agent" Task: {6FFC6B60-9DE2-4CF4-93D8-9EED6E9376AE} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86) [2015-03-06] () Task: {8BAA89C7-DF1C-433E-92CB-C26CECC2BB31} - System32\Tasks\{43C4A4C6-A304-4DD0-A613-630DE8E8D295} => pcalua.exe -a G:\setup.exe -d G:\ Task: {C954127B-E41B-4044-AC26-856E6A5CA68F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type=ds&ts=1420231685&from=smt&uid=ST1000LM024XHN-M101MBB_S32XJ9EF815245&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type=ds&ts=1420231685&from=smt&uid=ST1000LM024XHN-M101MBB_S32XJ9EF815245&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type=ds&ts=1420231685&from=smt&uid=ST1000LM024XHN-M101MBB_S32XJ9EF815245&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type=ds&ts=1420231685&from=smt&uid=ST1000LM024XHN-M101MBB_S32XJ9EF815245&q={searchTerms} HKU\S-1-5-21-756932068-276651508-3584652210-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://rts.dsrlte.com?affID=na SearchScopes: HKU\S-1-5-21-756932068-276651508-3584652210-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-756932068-276651508-3584652210-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-756932068-276651508-3584652210-1001 -> {5C352B6D-91C5-4867-9A45-3F645A2DEA91} URL = http://rts.dsrlte.com/?affID=na&q={searchTerms}&r=731 StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.mystartsearch.com/?type=sc&ts=1420231685&from=smt&uid=ST1000LM024XHN-M101MBB_S32XJ9EF815245 CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2014-12-26] HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" C:\Program Files (x86)\SourceApp C:\ProgramData\WindowsMangerProtect C:\Users\wmwb\AppData\Roaming\sp_data.sys C:\Users\wmwb\AppData\Roaming\Microsoft\Office\Niedawny\*.LNK C:\Windows\System32\drivers\{073f2b9a-2357-4614-b174-3fc1afffe941}Gw64.sys C:\Windows\System32\drivers\{0fd1a45b-4ab9-492d-a4ec-94b4363a6dde}Gw64.sys C:\Windows\System32\drivers\{122141c3-e1a4-4af5-b3d7-650743f49ec0}Gw64.sys C:\Windows\System32\drivers\{167ce4ee-11d0-42b8-9745-63dd8d0684e3}Gw64.sys C:\Windows\System32\drivers\{4291b504-d331-41fb-90ff-daaf14dd7f49}Gw64.sys C:\Windows\System32\drivers\{44219168-7340-43df-bbc2-89f0b26c112f}Gw64.sys C:\Windows\System32\drivers\{4b92b7b5-c723-48bb-89a7-6647fe734df9}Gw64.sys C:\Windows\System32\drivers\{4f8c067a-e55a-4229-81e6-7be1491578a2}Gw64.sys C:\Windows\System32\drivers\{549b1cd8-769f-468a-ad93-f57bfc8402c2}Gw64.sys C:\Windows\System32\drivers\{72074a89-563a-4402-894b-cfea7ec6858b}Gw64.sys C:\Windows\System32\drivers\{88dab020-0802-4f33-9294-5fccbb774bac}Gw64.sys C:\Windows\System32\drivers\{8dc666b5-f370-4f22-8558-6a137d48eead}Gw64.sys C:\Windows\System32\drivers\{95282a5e-d707-43c0-b998-d6a934a963a8}Gw64.sys C:\Windows\System32\drivers\{9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64.sys C:\Windows\System32\drivers\{9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64.sys C:\Windows\System32\drivers\{9e225977-4791-4356-911d-90b292281075}Gw64.sys C:\Windows\System32\drivers\{b40efc75-ad36-4607-9465-eb41963e9c42}Gw64.sys C:\Windows\System32\drivers\{b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64.sys C:\Windows\System32\drivers\{baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64.sys C:\Windows\System32\drivers\{cad8ac99-1831-4a75-b758-e4235c95af75}Gw64.sys C:\Windows\System32\drivers\{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64.sys C:\Windows\System32\drivers\{e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64.sys C:\Windows\System32\drivers\{fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64.sys C:\Windows\System32\drivers\{fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64.sys Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. {073f2b9a-2357-4614-b174-3fc1afffe941}Gw64 => Unable to stop service {073f2b9a-2357-4614-b174-3fc1afffe941}Gw64 => Service deleted successfully. {0fd1a45b-4ab9-492d-a4ec-94b4363a6dde}Gw64 => Unable to stop service {0fd1a45b-4ab9-492d-a4ec-94b4363a6dde}Gw64 => Service deleted successfully. {122141c3-e1a4-4af5-b3d7-650743f49ec0}Gw64 => Unable to stop service {122141c3-e1a4-4af5-b3d7-650743f49ec0}Gw64 => Service deleted successfully. {167ce4ee-11d0-42b8-9745-63dd8d0684e3}Gw64 => Unable to stop service {167ce4ee-11d0-42b8-9745-63dd8d0684e3}Gw64 => Service deleted successfully. {4291b504-d331-41fb-90ff-daaf14dd7f49}Gw64 => Unable to stop service {4291b504-d331-41fb-90ff-daaf14dd7f49}Gw64 => Service deleted successfully. {44219168-7340-43df-bbc2-89f0b26c112f}Gw64 => Unable to stop service {44219168-7340-43df-bbc2-89f0b26c112f}Gw64 => Service deleted successfully. {4b92b7b5-c723-48bb-89a7-6647fe734df9}Gw64 => Unable to stop service {4b92b7b5-c723-48bb-89a7-6647fe734df9}Gw64 => Service deleted successfully. {4f8c067a-e55a-4229-81e6-7be1491578a2}Gw64 => Unable to stop service {4f8c067a-e55a-4229-81e6-7be1491578a2}Gw64 => Service deleted successfully. {549b1cd8-769f-468a-ad93-f57bfc8402c2}Gw64 => Unable to stop service {549b1cd8-769f-468a-ad93-f57bfc8402c2}Gw64 => Service deleted successfully. {72074a89-563a-4402-894b-cfea7ec6858b}Gw64 => Unable to stop service {72074a89-563a-4402-894b-cfea7ec6858b}Gw64 => Service deleted successfully. {88dab020-0802-4f33-9294-5fccbb774bac}Gw64 => Unable to stop service {88dab020-0802-4f33-9294-5fccbb774bac}Gw64 => Service deleted successfully. {8dc666b5-f370-4f22-8558-6a137d48eead}Gw64 => Unable to stop service {8dc666b5-f370-4f22-8558-6a137d48eead}Gw64 => Service deleted successfully. {95282a5e-d707-43c0-b998-d6a934a963a8}Gw64 => Unable to stop service {95282a5e-d707-43c0-b998-d6a934a963a8}Gw64 => Service deleted successfully. {9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64 => Unable to stop service {9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64 => Service deleted successfully. {9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64 => Unable to stop service {9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64 => Service deleted successfully. {9e225977-4791-4356-911d-90b292281075}Gw64 => Unable to stop service {9e225977-4791-4356-911d-90b292281075}Gw64 => Service deleted successfully. {b40efc75-ad36-4607-9465-eb41963e9c42}Gw64 => Unable to stop service {b40efc75-ad36-4607-9465-eb41963e9c42}Gw64 => Service deleted successfully. {b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64 => Unable to stop service {b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64 => Service deleted successfully. {baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64 => Unable to stop service {baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64 => Service deleted successfully. {cad8ac99-1831-4a75-b758-e4235c95af75}Gw64 => Unable to stop service {cad8ac99-1831-4a75-b758-e4235c95af75}Gw64 => Service deleted successfully. {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64 => Unable to stop service {d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64 => Service deleted successfully. {e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64 => Unable to stop service {e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64 => Service deleted successfully. {fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64 => Unable to stop service {fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64 => Service deleted successfully. {fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64 => Unable to stop service {fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64 => Service deleted successfully. WindowsMangerProtect => Service deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{28BCF69A-D284-4AB7-B65C-7B63A808A88F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{28BCF69A-D284-4AB7-B65C-7B63A808A88F}" => Key deleted successfully. C:\Windows\System32\Tasks\ASUS Live Update1 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS Live Update1" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2CDE56AD-EBCE-4DB0-BCD5-A95B72F8D95C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2CDE56AD-EBCE-4DB0-BCD5-A95B72F8D95C}" => Key deleted successfully. C:\Windows\System32\Tasks\{9ECECB05-7B12-467D-BFCA-C983A5F89578} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{9ECECB05-7B12-467D-BFCA-C983A5F89578}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{453EF625-BA6E-41E2-95EB-68E7C1C82AD8}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{453EF625-BA6E-41E2-95EB-68E7C1C82AD8}" => Key deleted successfully. C:\Windows\System32\Tasks\{1A121956-4EF8-42B7-A338-89ACD3E7615C} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{1A121956-4EF8-42B7-A338-89ACD3E7615C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{67928142-79E7-4C6A-9BC8-12912DFF0118}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{67928142-79E7-4C6A-9BC8-12912DFF0118}" => Key deleted successfully. C:\Windows\System32\Tasks\{923DCEE0-CFFD-4948-BA5D-7B1BBB749043} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{923DCEE0-CFFD-4948-BA5D-7B1BBB749043}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6FFC6B60-9DE2-4CF4-93D8-9EED6E9376AE}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6FFC6B60-9DE2-4CF4-93D8-9EED6E9376AE}" => Key deleted successfully. C:\Windows\System32\Tasks\ASUS Live Update2 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS Live Update2" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8BAA89C7-DF1C-433E-92CB-C26CECC2BB31}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8BAA89C7-DF1C-433E-92CB-C26CECC2BB31}" => Key deleted successfully. C:\Windows\System32\Tasks\{43C4A4C6-A304-4DD0-A613-630DE8E8D295} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{43C4A4C6-A304-4DD0-A613-630DE8E8D295}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C954127B-E41B-4044-AC26-856E6A5CA68F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C954127B-E41B-4044-AC26-856E6A5CA68F}" => Key deleted successfully. C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => Key deleted successfully. C:\Windows\system32\GroupPolicy\Machine => Moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKU\S-1-5-21-756932068-276651508-3584652210-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKU\S-1-5-21-756932068-276651508-3584652210-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. "HKU\S-1-5-21-756932068-276651508-3584652210-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully. HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key not found. "HKU\S-1-5-21-756932068-276651508-3584652210-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{5C352B6D-91C5-4867-9A45-3F645A2DEA91}" => Key deleted successfully. HKCR\CLSID\{5C352B6D-91C5-4867-9A45-3F645A2DEA91} => Key not found. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck" => Key deleted successfully. Could not move "C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx" => Scheduled to move on reboot. HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoFolderOptions => value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoControlPanel => value deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc" => Key deleted successfully. "C:\Program Files (x86)\SourceApp" => File/Directory not found. C:\ProgramData\WindowsMangerProtect => Moved successfully. C:\Users\wmwb\AppData\Roaming\sp_data.sys => Moved successfully. C:\Users\wmwb\AppData\Roaming\Microsoft\Office\Niedawny\*.LNK => Moved successfully. C:\Windows\System32\drivers\{073f2b9a-2357-4614-b174-3fc1afffe941}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{0fd1a45b-4ab9-492d-a4ec-94b4363a6dde}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{122141c3-e1a4-4af5-b3d7-650743f49ec0}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{167ce4ee-11d0-42b8-9745-63dd8d0684e3}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{4291b504-d331-41fb-90ff-daaf14dd7f49}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{44219168-7340-43df-bbc2-89f0b26c112f}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{4b92b7b5-c723-48bb-89a7-6647fe734df9}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{4f8c067a-e55a-4229-81e6-7be1491578a2}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{549b1cd8-769f-468a-ad93-f57bfc8402c2}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{72074a89-563a-4402-894b-cfea7ec6858b}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{88dab020-0802-4f33-9294-5fccbb774bac}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{8dc666b5-f370-4f22-8558-6a137d48eead}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{95282a5e-d707-43c0-b998-d6a934a963a8}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{9a6c78f1-af36-4e4d-ba83-e044b750db48}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{9cea9dfd-6bad-4c3a-a43b-aaaff26c8d62}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{9e225977-4791-4356-911d-90b292281075}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{b40efc75-ad36-4607-9465-eb41963e9c42}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{b84422ed-9d09-458b-b9c8-bb808a96177d}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{baa74904-cbb6-4a19-900b-b8cb1e551476}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{cad8ac99-1831-4a75-b758-e4235c95af75}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{d9a4216a-aae1-4d14-ba35-ff234b3b627f}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{e9052879-c4b3-4ba3-adc5-316825a190f8}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{fc8decf5-c269-4b18-87f1-c395dfcbd88f}Gw64.sys => Moved successfully. C:\Windows\System32\drivers\{fd3f661e-765a-4fd3-bc9d-fa7f9541babe}Gw64.sys => Moved successfully. ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= EmptyTemp: => Removed 1.9 GB temporary data. => Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2015-03-18 14:06:45)<= "C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx" => File could not move. ==== End of Fixlog 14:06:46 ====