Fix result of Farbar Recovery Scan Tool (x64) Version: 25-05-2015 Ran by Zbyszek at 2015-05-27 07:33:48 Run:1 Running from C:\Users\Zbyszek\Desktop Loaded Profiles: Zbyszek (Available Profiles: Jarosław & Zbyszek) Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: CreateRestorePoint: Startup: C:\Users\Jarosław\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TornTvDownloader.lnk [2014-08-23] ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => No File GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION CHR HKLM\...\Chrome\Extension: [noajmlkipclmeolfcnflkjhijkigpfjh] - C:\Users\Jarosław\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh.crx [2014-12-23] CHR HKLM-x32\...\Chrome\Extension: [noajmlkipclmeolfcnflkjhijkigpfjh] - C:\Users\Jarosław\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh.crx [2014-12-23] ShortcutWithArgument: C:\Users\Jarosław\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1419329847&from=wpm12233&uid=SAMSUNGXHD103SJ_S246J9KB517050 ShortcutWithArgument: C:\Users\Jarosław\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1419329847&from=wpm12233&uid=SAMSUNGXHD103SJ_S246J9KB517050 ShortcutWithArgument: C:\Users\Jarosław\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.delta-homes.com/?type=sc&ts=1419329847&from=wpm12233&uid=SAMSUNGXHD103SJ_S246J9KB517050 ShortcutWithArgument: C:\Users\Jarosław\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1419329847&from=wpm12233&uid=SAMSUNGXHD103SJ_S246J9KB517050 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://istart.webssearches.com/?type=hp&ts=1408800404&from=ild&uid=SAMSUNGXHD103SJ_S246J9KB517050 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://istart.webssearches.com/?type=hp&ts=1408800404&from=ild&uid=SAMSUNGXHD103SJ_S246J9KB517050 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/web/?type=ds&ts=1408800404&from=ild&uid=SAMSUNGXHD103SJ_S246J9KB517050&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/web/?type=ds&ts=1408800404&from=ild&uid=SAMSUNGXHD103SJ_S246J9KB517050&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp&ts=1408800404&from=ild&uid=SAMSUNGXHD103SJ_S246J9KB517050 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp&ts=1408800404&from=ild&uid=SAMSUNGXHD103SJ_S246J9KB517050 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/web/?type=ds&ts=1408800404&from=ild&uid=SAMSUNGXHD103SJ_S246J9KB517050&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/web/?type=ds&ts=1408800404&from=ild&uid=SAMSUNGXHD103SJ_S246J9KB517050&q={searchTerms} URLSearchHook: HKU\S-1-5-21-2702069576-3377963828-517850969-1005 - SearchMe Toolbar - {B9C767DD-F66A-40B4-8F12-4199A9A4393C} - No File SearchScopes: HKLM -> DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1408800404&from=ild&uid=SAMSUNGXHD103SJ_S246J9KB517050&q={searchTerms} SearchScopes: HKLM -> {8CDE19E6-71C2-4B46-89B7-35F6A18C571A} URL = http://us.yhs4.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ir_15_21¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dpl%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1QzuyDtD0EyDyEzytA0Czy0F0FtAzz0ByBtAtN0D0Tzu0StCtBtAyDtN1L2XzutAtFtCtDtFtBtFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StD0AyC0A0C0D0C0FtGyCtCyCtCtGzztB0FtDtGyByEzy0BtGtAyE0ByC0B0B0EyDzyyBtA0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2Szy0BtD0AtCtD0E0AtGtDtD0EtAtGyE0D0E0BtGzz0FyE0FtG0CtCtDzz0FzyyEtBtAzztC0C2QtN0A0LzutB%26cr%3D758467066%26a%3Dwny_ir_15_21%26os%3DWindows 8.1 Pro&p={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1431343765&from=zzgbkk123&uid=samsungxhd103sj_s246j9kb517050&z=0d4816498545a7bea6c093fgbz8cbg6cdz9cdmdmdm&q={searchTerms} SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1408800404&from=ild&uid=SAMSUNGXHD103SJ_S246J9KB517050&q={searchTerms} SearchScopes: HKLM-x32 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://www.v9.com/web?type=ds&ts=1431343765&from=zzgbkk123&uid=samsungxhd103sj_s246j9kb517050&z=0d4816498545a7bea6c093fgbz8cbg6cdz9cdmdmdm&q={searchTerms} SearchScopes: HKU\S-1-5-21-2702069576-3377963828-517850969-1005 -> DefaultScope {AD89B854-D8E3-4BAF-95D4-768B02086866} URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=888596&p={searchTerms} SearchScopes: HKU\S-1-5-21-2702069576-3377963828-517850969-1005 -> {AD89B854-D8E3-4BAF-95D4-768B02086866} URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=888596&p={searchTerms} Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Task: {26795CAE-2FF6-4DE7-A258-4852BE051BDD} - System32\Tasks\Chromium => C:\Users\Jarosław\AppData\Local\Chromium\Application\uninstall.exe [2015-05-20] () Task: {7CF25556-C851-4EEA-9300-EE7522984659} - System32\Tasks\BitGuard => Sc.exe start BitGuard <==== ATTENTION Task: {93400E6A-EFFC-462A-B438-67A14DC11A46} - \Optimize Start Menu Cache Files-S-1-5-21-2702069576-3377963828-517850969-1002 No Task File <==== ATTENTION Task: {E6078781-991A-412C-806D-BD8B26527FDA} - \Optimize Start Menu Cache Files-S-1-5-21-2702069576-3377963828-517850969-1009 No Task File <==== ATTENTION Task: {F841D911-66B2-4527-83FB-37761447B924} - System32\Tasks\MdmUpdateTaskMachineCore => C:\Users\Jarosław\AppData\Roaming\Toadwater JTWC\Caches\mdm [2015-04-21] () Task: C:\WINDOWS\Tasks\Chromium.job => C:\Users\JAROSA~1\AppData\Local\Chromium\APPLIC~1\UNINST~1.EXE S1 iSafeKrnlMon; \??\C:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [X] C:\Program Files (x86)\Elex-tech C:\Program Files (x86)\Mozilla Firefox C:\Program Files (x86)\PragmaEngine C:\ProgramData\14440415289341703812 C:\ProgramData\freedealsapp C:\ProgramData\Mozilla C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Cleaner 3 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PANDORATV C:\Users\Jarosław\AppData\Local\Gameo C:\Users\Jarosław\AppData\Local\Chromium C:\Users\Jarosław\AppData\Roaming\appdataFr3.bin C:\Users\Jarosław\AppData\Roaming\appdataFr25.bin C:\Users\Jarosław\AppData\Roaming\Elex-tech C:\Users\Jarosław\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Play Games Online.url C:\Users\Jarosław\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com C:\Users\Jarosław\Desktop\*(*)-dp*.exe C:\Users\Jarosław\Downloads\*(*)-dp*.exe C:\Users\Zbyszek\AppData\Local\Google\Chrome\User Data\Default\Preferences C:\Users\Zbyszek\AppData\Local\Mozilla C:\Users\Zbyszek\AppData\Roaming\appdataFr3.bin C:\Users\Zbyszek\AppData\Roaming\appdataFr25.bin C:\Users\Zbyszek\AppData\Roaming\Mozilla C:\Users\Zbyszek\Desktop\Driver Cleaner 3.lnk C:\Users\Zbyszek\Desktop\*(*)-dp*.exe C:\Users\Zbyszek\Downloads\*(*)-dp*.exe C:\WINDOWS\system32\Drivers\iSafeKrnlBoot.sys C:\WINDOWS\system32\Drivers\iSafeNetFilter.sys C:\WINDOWS\system32\log RemoveDirectory: C:\Users\jar3k_000 CMD: netsh advfirewall reset Reg: reg delete HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I /f Reg: reg delete HKCU\Software\dobreprogramy /f Reg: reg delete HKCU\Software\Mozilla /f Reg: reg delete HKLM\SOFTWARE\Mozilla /f Reg: reg delete HKLM\SOFTWARE\MozillaPlugins /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Mozilla /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\mozilla.org /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\MozillaPlugins /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. C:\Users\Jarosław\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TornTvDownloader.lnk => Moved successfully. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\GDriveSharedOverlay" => key Removed successfully HKCR\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => key not found. C:\WINDOWS\system32\GroupPolicy\Machine => Moved successfully. C:\WINDOWS\system32\GroupPolicy\GPT.ini => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => key Removed successfully "HKLM\SOFTWARE\Google\Chrome\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh" => key Removed successfully C:\Users\Jarosław\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh.crx => Moved successfully. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh" => key Removed successfully "C:\Users\Jarosław\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh.crx" => File/Folder not found. C:\Users\Jarosław\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk => Shortcut argument Removed successfully. C:\Users\Jarosław\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk => Shortcut argument Removed successfully. C:\Users\Jarosław\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk => Shortcut argument Removed successfully. C:\Users\Jarosław\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk => Shortcut argument Removed successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully HKU\S-1-5-21-2702069576-3377963828-517850969-1005\Software\Microsoft\Internet Explorer\URLSearchHooks\\{B9C767DD-F66A-40B4-8F12-4199A9A4393C} => value Removed successfully "HKCR\CLSID\{B9C767DD-F66A-40B4-8F12-4199A9A4393C}" => key Removed successfully HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146}" => key Removed successfully HKCR\CLSID\{2f23ab71-4ac6-41f2-a955-ea576e553146} => key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => key Removed successfully HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A}" => key Removed successfully HKCR\CLSID\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A} => key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => key Removed successfully HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{425ED333-6083-428a-92C9-0CFC28B9D1BF}" => key Removed successfully HKCR\Wow6432Node\CLSID\{425ED333-6083-428a-92C9-0CFC28B9D1BF} => key not found. HKU\S-1-5-21-2702069576-3377963828-517850969-1005\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value Removed successfully "HKU\S-1-5-21-2702069576-3377963828-517850969-1005\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AD89B854-D8E3-4BAF-95D4-768B02086866}" => key Removed successfully HKCR\CLSID\{AD89B854-D8E3-4BAF-95D4-768B02086866} => key not found. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value Removed successfully "HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}" => key Removed successfully HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value Removed successfully HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{26795CAE-2FF6-4DE7-A258-4852BE051BDD}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{26795CAE-2FF6-4DE7-A258-4852BE051BDD}" => key Removed successfully C:\Windows\System32\Tasks\Chromium => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Chromium" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7CF25556-C851-4EEA-9300-EE7522984659}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7CF25556-C851-4EEA-9300-EE7522984659}" => key Removed successfully C:\Windows\System32\Tasks\BitGuard => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BitGuard" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{93400E6A-EFFC-462A-B438-67A14DC11A46}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{93400E6A-EFFC-462A-B438-67A14DC11A46}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Optimize Start Menu Cache Files-S-1-5-21-2702069576-3377963828-517850969-1002" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E6078781-991A-412C-806D-BD8B26527FDA}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E6078781-991A-412C-806D-BD8B26527FDA}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Optimize Start Menu Cache Files-S-1-5-21-2702069576-3377963828-517850969-1009" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F841D911-66B2-4527-83FB-37761447B924}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F841D911-66B2-4527-83FB-37761447B924}" => key Removed successfully C:\Windows\System32\Tasks\MdmUpdateTaskMachineCore => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MdmUpdateTaskMachineCore" => key Removed successfully C:\WINDOWS\Tasks\Chromium.job => Moved successfully. iSafeKrnlMon => Service Removed successfully C:\Program Files (x86)\Elex-tech => Moved successfully. "C:\Program Files (x86)\Mozilla Firefox" => File/Folder not found. "C:\Program Files (x86)\PragmaEngine" => File/Folder not found. C:\ProgramData\14440415289341703812 => Moved successfully. C:\ProgramData\freedealsapp => Moved successfully. C:\ProgramData\Mozilla => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Cleaner 3 => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PANDORATV => Moved successfully. C:\Users\Jarosław\AppData\Local\Gameo => Moved successfully. C:\Users\Jarosław\AppData\Local\Chromium => Moved successfully. C:\Users\Jarosław\AppData\Roaming\appdataFr3.bin => Moved successfully. C:\Users\Jarosław\AppData\Roaming\appdataFr25.bin => Moved successfully. C:\Users\Jarosław\AppData\Roaming\Elex-tech => Moved successfully. C:\Users\Jarosław\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Play Games Online.url => Moved successfully. C:\Users\Jarosław\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com => Moved successfully. "C:\Users\Jarosław\Desktop\*(*)-dp*.exe" => File/Folder not found. "C:\Users\Jarosław\Downloads\*(*)-dp*.exe" => File/Folder not found. C:\Users\Zbyszek\AppData\Local\Google\Chrome\User Data\Default\Preferences => Moved successfully. C:\Users\Zbyszek\AppData\Local\Mozilla => Moved successfully. C:\Users\Zbyszek\AppData\Roaming\appdataFr3.bin => Moved successfully. C:\Users\Zbyszek\AppData\Roaming\appdataFr25.bin => Moved successfully. C:\Users\Zbyszek\AppData\Roaming\Mozilla => Moved successfully. C:\Users\Zbyszek\Desktop\Driver Cleaner 3.lnk => Moved successfully. C:\Users\Zbyszek\Desktop\*(*)-dp*.exe => Moved successfully. "C:\Users\Zbyszek\Downloads\*(*)-dp*.exe" => File/Folder not found. C:\WINDOWS\system32\Drivers\iSafeKrnlBoot.sys => Moved successfully. C:\WINDOWS\system32\Drivers\iSafeNetFilter.sys => Moved successfully. C:\WINDOWS\system32\log => Moved successfully. "C:\Users\jar3k_000" => Removed successfully. ========= netsh advfirewall reset ========= Ok. ========= End of CMD: ========= ========= reg delete HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKCU\Software\dobreprogramy /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKCU\Software\Mozilla /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Mozilla /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\MozillaPlugins /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\Mozilla /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\mozilla.org /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\MozillaPlugins /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= EmptyTemp: => Removed 203 MB temporary data. The system needed a reboot. ==== End of Fixlog 07:34:47 ====