Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 15-04-2015 01 Ran by eafae at 2015-04-15 14:54:36 Run:2 Running from C:\Users\eafae\Desktop\frst Loaded Profiles: eafae & UpdatusUser (Available profiles: eafae & UpdatusUser) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: CreateRestorePoint: HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.luckysearches.com/web/?type=dspp&ts=1427988844&from=adc&uid=SAMSUNGXHD642JJ_S1AFJ90SC00179&q={searchTerms} HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\Software\Microsoft\Internet Explorer\Main,Start Page = HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.luckysearches.com/web/?type=dspp&ts=1427988844&from=adc&uid=SAMSUNGXHD642JJ_S1AFJ90SC00179&q={searchTerms} SearchScopes: HKLM -> DefaultScope {E921F400-D383-4B1B-9DE6-FCFCACFC1173} URL = SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.luckysearches.com/web/?type=ds&ts=1427988833&from=adc&uid=SAMSUNGXHD642JJ_S1AFJ90SC00179&q={searchTerms} SearchScopes: HKLM -> {E921F400-D383-4B1B-9DE6-FCFCACFC1173} URL = SearchScopes: HKLM-x32 -> DefaultScope {E921F400-D383-4B1B-9DE6-FCFCACFC1173} URL = SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.luckysearches.com/web/?type=dspp&ts=1427988844&from=adc&uid=SAMSUNGXHD642JJ_S1AFJ90SC00179&q={searchTerms} SearchScopes: HKLM-x32 -> {E921F400-D383-4B1B-9DE6-FCFCACFC1173} URL = SearchScopes: HKU\S-1-5-21-4040340981-3488949422-2698820681-1001 -> DefaultScope {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.luckysearches.com/web/?utm_source=b&utm_medium=adc&utm_campaign=install_ie&utm_content=ds&from=adc&uid=SAMSUNGXHD642JJ_S1AFJ90SC00179&ts=1427988860&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-4040340981-3488949422-2698820681-1001 -> {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.luckysearches.com/web/?utm_source=b&utm_medium=adc&utm_campaign=install_ie&utm_content=ds&from=adc&uid=SAMSUNGXHD642JJ_S1AFJ90SC00179&ts=1427988860&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-4040340981-3488949422-2698820681-1001 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.luckysearches.com/web/?utm_source=b&utm_medium=adc&utm_campaign=install_ie&utm_content=ds&from=adc&uid=SAMSUNGXHD642JJ_S1AFJ90SC00179&ts=1427988860&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-4040340981-3488949422-2698820681-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.luckysearches.com/web/?utm_source=b&utm_medium=adc&utm_campaign=install_ie&utm_content=ds&from=adc&uid=SAMSUNGXHD642JJ_S1AFJ90SC00179&ts=1427988860&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-4040340981-3488949422-2698820681-1001 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.luckysearches.com/web/?utm_source=b&utm_medium=adc&utm_campaign=install_ie&utm_content=ds&from=adc&uid=SAMSUNGXHD642JJ_S1AFJ90SC00179&ts=1427988860&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-4040340981-3488949422-2698820681-1001 -> {E921F400-D383-4B1B-9DE6-FCFCACFC1173} URL = SearchScopes: HKU\S-1-5-21-4040340981-3488949422-2698820681-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.luckysearches.com/?type=sc&ts=1427988803&from=adc&uid=SAMSUNGXHD642JJ_S1AFJ90SC00179 BHO: CuoupEExteNosiuon -> {5c772b28-da63-44d0-b7cc-573ad8eda1b7} -> C:\Program Files (x86)\CuoupEExteNosiuon\lqBsXcvnwpcQTE.x64.dll [2015-04-09] () BHO: youtubeadblocker -> {9957d186-7af3-4b08-8c82-6e0c8d0bdcf8} -> C:\Program Files (x86)\youtubeadblocker\WaXJH7oEyTFcZB.x64.dll [2015-04-01] () BHO: NNewSaver -> {9a26cc8c-a13b-4be9-a36a-08bf087fb8fa} -> C:\Program Files (x86)\NNewSaver\4LrzUq6ZnIdi5F.x64.dll [2015-04-09] () BHO: SAlePluiss -> {e99ade3a-fb0b-42bd-9cde-1292e99c2e7d} -> C:\Program Files (x86)\SAlePluiss\HD9xIdQ6jgaAV5.x64.dll [2015-04-01] () BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll [2015-03-16] (Thinknice Co. Limited) BHO-x32: CuoupEExteNosiuon -> {5c772b28-da63-44d0-b7cc-573ad8eda1b7} -> C:\Program Files (x86)\CuoupEExteNosiuon\lqBsXcvnwpcQTE.dll [2015-04-09] () BHO-x32: youtubeadblocker -> {9957d186-7af3-4b08-8c82-6e0c8d0bdcf8} -> C:\Program Files (x86)\youtubeadblocker\WaXJH7oEyTFcZB.dll [2015-04-01] () BHO-x32: NNewSaver -> {9a26cc8c-a13b-4be9-a36a-08bf087fb8fa} -> C:\Program Files (x86)\NNewSaver\4LrzUq6ZnIdi5F.dll [2015-04-09] () BHO-x32: SAlePluiss -> {e99ade3a-fb0b-42bd-9cde-1292e99c2e7d} -> C:\Program Files (x86)\SAlePluiss\HD9xIdQ6jgaAV5.dll [2015-04-01] () ShellIconOverlayIdentifiers: [ExplorerEx] -> {E056AFDD-03E9-4D73-8D33-8FCCBCA73438} => C:\Users\eafae\AppData\Roaming\Macwebtoise\explorerEx64.dll () Startup: C:\Users\eafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk Startup: C:\Users\eafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tasktr__7214_il109297.lnk Startup: C:\Users\eafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Test Drive Unlimited Gold [R.G Mechanics].lnk HKLM\...\Run: [InstallerLauncher] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-41 (the data entry has 36 more characters). Task: {FC273C64-5B20-4D74-9DAF-2836C7690E46} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe [2014-11-25] (MyPC Backup) <==== ATTENTION R2 82379c5f; c:\Program Files (x86)\SoftwareAssist\SoftwareAssist.dll [1625088 2015-04-02] () [File not signed] R2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [53832 2014-11-25] (Just Develop It) <==== ATTENTION R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158816 2015-03-16] (XTab system) R2 Sed; C:\Users\eafae\AppData\Roaming\ntsvc\ntsvc.exe [944184 2015-04-10] (Navigation Co., Ltd.) C:\Program Files\Bitdefender C:\Program Files\Common Files\Bitdefender C:\Program Files (x86)\CuoupEExteNosiuon C:\Program Files (x86)\Faster Chrome Pro C:\Program Files (x86)\MyPC Backup C:\Program Files (x86)\NNewSaver C:\Program Files (x86)\Opera C:\Program Files (x86)\RandoomPPricce C:\Program Files (x86)\SAlePluiss c:\Program Files (x86)\SoftwareAssist C:\Program Files (x86)\SystemMuscle C:\Program Files (x86)\UPCleaner C:\Program Files (x86)\XTab C:\Program Files (x86)\youtubeadblocker C:\ProgramData\1427396291.bdinstall.bin C:\ProgramData\{539d1ce0-9635-66e0-539d-d1ce09637382} C:\ProgramData\{a1ea5d08-0bb3-7f0c-a1ea-a5d080bb7420} C:\ProgramData\{bd984814-05cc-fe2a-bd98-8481405c2050} C:\ProgramData\{c5210046-4efe-624a-c521-100464ef0119} C:\ProgramData\BDLogging C:\ProgramData\eopfohhlindknnblhjplpohnmlecckii C:\ProgramData\IHProtectUpDate C:\ProgramData\okclledcblofbigbcaahjbfpegbgbfda C:\ProgramData\TheAdBlock C:\ProgramData\WindowsMangerProtect C:\Users\eafae\AppData\Local\Temp-log.txt C:\Users\eafae\AppData\Local\macasoft C:\Users\eafae\AppData\Local\Opera Software C:\Users\eafae\AppData\Roaming\EZDownloader C:\Users\eafae\AppData\Roaming\Macwebtoise C:\Users\eafae\AppData\Roaming\ntsvc C:\Users\eafae\AppData\Roaming\Opera Software C:\Users\eafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup C:\Users\eafae\AppData\Roaming\QuickScan C:\Users\eafae\Desktop\MiniGet Smart Downloader.lnk C:\Users\eafae\Desktop\MyPC Backup.lnk C:\Users\eafae\Desktop\Sync Folder.lnk C:\Users\eafae\Downloads\Bnd_200_262_201533_1844.exe C:\Users\eafae\Downloads\ex.exe C:\Users\eafae\Downloads\Fallout 3 PC full game DLC nosTEAM_10924_i47627008_il345.exe C:\Users\eafae\Downloads\kurulum.exe C:\Users\eafae\Downloads\somont.exe C:\Users\eafae\Downloads\tasktr__7214_il109297.exe C:\Users\eafae\Downloads\Test Drive Unlimited Gold [R.G Mechanics].exe C:\Users\eafae\Downloads\Test Drive Unlimited Gold [R.G Mechanics]_10924_i48843529_il345.exe C:\Users\eafae\Downloads\Test-Drive-Unlimited---crack.rar C:\Users\eafae\Downloads\test_drive_unlimited_pl_patch_vistapl.zip C:\Users\eafae\Downloads\test_drive_u.rar C:\Users\eafae\Downloads\TEST.DRIVE.UNLIMITED.V1.66A.ALL.HATRED.NOCD.ZIP C:\Windows\system32\bdsandboxuh.dll C:\Windows\system32\bdsandboxuiskin.dll C:\Windows\system32\Drivers\avchv.sys C:\Windows\system32\Drivers\bdelam.sys C:\Windows\system32\Drivers\bdsandbox.sys C:\Windows\system32\Drivers\bdvedisk.sys C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf C:\Windows\SysWOW64\bdsandboxuiskin32.dll Folder: C:\Windows\system32\GroupPolicy Folder: C:\Windows\SysWOW64\GroupPolicy Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder /v "Worms Armageddon 3.7.0.0 [WinXP-7-8] [cd version].lnk" /f EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E921F400-D383-4B1B-9DE6-FCFCACFC1173}" => Key deleted successfully. HKCR\CLSID\{E921F400-D383-4B1B-9DE6-FCFCACFC1173} => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E921F400-D383-4B1B-9DE6-FCFCACFC1173}" => Key deleted successfully. HKCR\Wow6432Node\CLSID\{E921F400-D383-4B1B-9DE6-FCFCACFC1173} => Key not found. HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. "HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}" => Key deleted successfully. HKCR\CLSID\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} => Key not found. "HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}" => Key deleted successfully. HKCR\CLSID\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} => Key not found. "HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found. "HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}" => Key deleted successfully. HKCR\CLSID\{E733165D-CBCF-4FDA-883E-ADEF965B476C} => Key not found. "HKU\S-1-5-21-4040340981-3488949422-2698820681-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E921F400-D383-4B1B-9DE6-FCFCACFC1173}" => Key deleted successfully. HKCR\CLSID\{E921F400-D383-4B1B-9DE6-FCFCACFC1173} => Key not found. HKU\S-1-5-21-4040340981-3488949422-2698820681-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value not found. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5c772b28-da63-44d0-b7cc-573ad8eda1b7} => Key not found. "HKCR\CLSID\{5c772b28-da63-44d0-b7cc-573ad8eda1b7}" => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9957d186-7af3-4b08-8c82-6e0c8d0bdcf8} => Key not found. "HKCR\CLSID\{9957d186-7af3-4b08-8c82-6e0c8d0bdcf8}" => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9a26cc8c-a13b-4be9-a36a-08bf087fb8fa} => Key not found. "HKCR\CLSID\{9a26cc8c-a13b-4be9-a36a-08bf087fb8fa}" => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e99ade3a-fb0b-42bd-9cde-1292e99c2e7d} => Key not found. "HKCR\CLSID\{e99ade3a-fb0b-42bd-9cde-1292e99c2e7d}" => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} => Key not found. "HKCR\Wow6432Node\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5c772b28-da63-44d0-b7cc-573ad8eda1b7} => Key not found. "HKCR\Wow6432Node\CLSID\{5c772b28-da63-44d0-b7cc-573ad8eda1b7}" => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9957d186-7af3-4b08-8c82-6e0c8d0bdcf8} => Key not found. "HKCR\Wow6432Node\CLSID\{9957d186-7af3-4b08-8c82-6e0c8d0bdcf8}" => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9a26cc8c-a13b-4be9-a36a-08bf087fb8fa} => Key not found. "HKCR\Wow6432Node\CLSID\{9a26cc8c-a13b-4be9-a36a-08bf087fb8fa}" => Key deleted successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e99ade3a-fb0b-42bd-9cde-1292e99c2e7d} => Key not found. "HKCR\Wow6432Node\CLSID\{e99ade3a-fb0b-42bd-9cde-1292e99c2e7d}" => Key deleted successfully. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ExplorerEx" => Key deleted successfully. "HKCR\CLSID\{E056AFDD-03E9-4D73-8D33-8FCCBCA73438}" => Key deleted successfully. C:\Users\eafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk not found. C:\Users\eafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tasktr__7214_il109297.lnk => Moved successfully. C:\Users\eafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Test Drive Unlimited Gold [R.G Mechanics].lnk => Moved successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\InstallerLauncher => value deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FC273C64-5B20-4D74-9DAF-2836C7690E46}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FC273C64-5B20-4D74-9DAF-2836C7690E46}" => Key deleted successfully. C:\Windows\System32\Tasks\LaunchSignup => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LaunchSignup" => Key deleted successfully. 82379c5f => Service not found. BackupStack => Service not found. IHProtect Service => Service deleted successfully. Sed => Service deleted successfully. C:\Program Files\Bitdefender => Moved successfully. C:\Program Files\Common Files\Bitdefender => Moved successfully. "C:\Program Files (x86)\CuoupEExteNosiuon" => File/Directory not found. "C:\Program Files (x86)\Faster Chrome Pro" => File/Directory not found. "C:\Program Files (x86)\MyPC Backup" => File/Directory not found. "C:\Program Files (x86)\NNewSaver" => File/Directory not found. C:\Program Files (x86)\Opera => Moved successfully. "C:\Program Files (x86)\RandoomPPricce" => File/Directory not found. C:\Program Files (x86)\SAlePluiss => Moved successfully. "c:\Program Files (x86)\SoftwareAssist" => File/Directory not found. C:\Program Files (x86)\SystemMuscle => Moved successfully. C:\Program Files (x86)\UPCleaner => Moved successfully. C:\Program Files (x86)\XTab => Moved successfully. "C:\Program Files (x86)\youtubeadblocker" => File/Directory not found. C:\ProgramData\1427396291.bdinstall.bin => Moved successfully. C:\ProgramData\{539d1ce0-9635-66e0-539d-d1ce09637382} => Moved successfully. C:\ProgramData\{a1ea5d08-0bb3-7f0c-a1ea-a5d080bb7420} => Moved successfully. C:\ProgramData\{bd984814-05cc-fe2a-bd98-8481405c2050} => Moved successfully. C:\ProgramData\{c5210046-4efe-624a-c521-100464ef0119} => Moved successfully. C:\ProgramData\BDLogging => Moved successfully. C:\ProgramData\eopfohhlindknnblhjplpohnmlecckii => Moved successfully. C:\ProgramData\IHProtectUpDate => Moved successfully. C:\ProgramData\okclledcblofbigbcaahjbfpegbgbfda => Moved successfully. C:\ProgramData\TheAdBlock => Moved successfully. C:\ProgramData\WindowsMangerProtect => Moved successfully. C:\Users\eafae\AppData\Local\Temp-log.txt => Moved successfully. C:\Users\eafae\AppData\Local\macasoft => Moved successfully. C:\Users\eafae\AppData\Local\Opera Software => Moved successfully. C:\Users\eafae\AppData\Roaming\EZDownloader => Moved successfully. C:\Users\eafae\AppData\Roaming\Macwebtoise => Moved successfully. C:\Users\eafae\AppData\Roaming\ntsvc => Moved successfully. C:\Users\eafae\AppData\Roaming\Opera Software => Moved successfully. "C:\Users\eafae\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup" => File/Directory not found. C:\Users\eafae\AppData\Roaming\QuickScan => Moved successfully. C:\Users\eafae\Desktop\MiniGet Smart Downloader.lnk => Moved successfully. "C:\Users\eafae\Desktop\MyPC Backup.lnk" => File/Directory not found. "C:\Users\eafae\Desktop\Sync Folder.lnk" => File/Directory not found. C:\Users\eafae\Downloads\Bnd_200_262_201533_1844.exe => Moved successfully. C:\Users\eafae\Downloads\ex.exe => Moved successfully. C:\Users\eafae\Downloads\Fallout 3 PC full game DLC nosTEAM_10924_i47627008_il345.exe => Moved successfully. C:\Users\eafae\Downloads\kurulum.exe => Moved successfully. C:\Users\eafae\Downloads\somont.exe => Moved successfully. C:\Users\eafae\Downloads\tasktr__7214_il109297.exe => Moved successfully. C:\Users\eafae\Downloads\Test Drive Unlimited Gold [R.G Mechanics].exe => Moved successfully. C:\Users\eafae\Downloads\Test Drive Unlimited Gold [R.G Mechanics]_10924_i48843529_il345.exe => Moved successfully. C:\Users\eafae\Downloads\Test-Drive-Unlimited---crack.rar => Moved successfully. C:\Users\eafae\Downloads\test_drive_unlimited_pl_patch_vistapl.zip => Moved successfully. C:\Users\eafae\Downloads\test_drive_u.rar => Moved successfully. C:\Users\eafae\Downloads\TEST.DRIVE.UNLIMITED.V1.66A.ALL.HATRED.NOCD.ZIP => Moved successfully. C:\Windows\system32\bdsandboxuh.dll => Moved successfully. C:\Windows\system32\bdsandboxuiskin.dll => Moved successfully. C:\Windows\system32\Drivers\avchv.sys => Moved successfully. C:\Windows\system32\Drivers\bdelam.sys => Moved successfully. C:\Windows\system32\Drivers\bdsandbox.sys => Moved successfully. C:\Windows\system32\Drivers\bdvedisk.sys => Moved successfully. C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf => Moved successfully. C:\Windows\SysWOW64\bdsandboxuiskin32.dll => Moved successfully. ========================= Folder: C:\Windows\system32\GroupPolicy ======================== 2015-04-02 17:35 - 2015-04-02 17:35 - 0000000 ____D () C:\Windows\system32\GroupPolicy\User ====== End of Folder: ====== ========================= Folder: C:\Windows\SysWOW64\GroupPolicy ======================== ====== End of Folder: ====== ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder /v "Worms Armageddon 3.7.0.0 [WinXP-7-8] [cd version].lnk" /f ========= Operacja ukonczona pomyslnie. ========= End of Reg: ========= EmptyTemp: => Removed 452.6 MB temporary data. The system needed a reboot. ==== End of Fixlog 14:55:45 ====