Fix result of Farbar Recovery Scan Tool (x64) Version: 27-05-2015 Ran by User at 2015-05-27 19:35:57 Run:1 Running from C:\Users\User\Desktop Loaded Profiles: UpdatusUser & User (Available Profiles: UpdatusUser & User) Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: CreateRestorePoint: GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://do-search.com/?type=hp&ts=1432267648&z=b1709f83f48d67b21c27294g5z7c5o1ocqemfq5oaw&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://do-search.com/?type=hp&ts=1432267648&z=b1709f83f48d67b21c27294g5z7c5o1ocqemfq5oaw&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://do-search.com/web/?type=ds&ts=1432267648&z=b1709f83f48d67b21c27294g5z7c5o1ocqemfq5oaw&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://do-search.com/?type=hp&ts=1432267648&z=b1709f83f48d67b21c27294g5z7c5o1ocqemfq5oaw&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://do-search.com/?type=hp&ts=1432267648&z=b1709f83f48d67b21c27294g5z7c5o1ocqemfq5oaw&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://do-search.com/web/?type=ds&ts=1432267648&z=b1709f83f48d67b21c27294g5z7c5o1ocqemfq5oaw&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN&q={searchTerms} HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Internet Explorer\Main,Search Page = http://do-search.com/web/?type=ds&ts=1432267648&z=b1709f83f48d67b21c27294g5z7c5o1ocqemfq5oaw&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN&q={searchTerms} HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://do-search.com/?type=hp&ts=1432267648&z=b1709f83f48d67b21c27294g5z7c5o1ocqemfq5oaw&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://do-search.com/?type=hp&ts=1432267648&z=b1709f83f48d67b21c27294g5z7c5o1ocqemfq5oaw&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://do-search.com/web/?type=ds&ts=1432267648&z=b1709f83f48d67b21c27294g5z7c5o1ocqemfq5oaw&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN&q={searchTerms} URLSearchHook: [S-1-5-21-1705058009-1785825615-431387334-1001] ATTENTION ==> Default URLSearchHook is missing SearchScopes: HKU\S-1-5-21-1705058009-1785825615-431387334-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1705058009-1785825615-431387334-1002 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://do-search.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN&ts=1432267697&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-1705058009-1785825615-431387334-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://do-search.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN&ts=1432267697&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-1705058009-1785825615-431387334-1002 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://do-search.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN&ts=1432267697&type=default&q={searchTerms} SearchScopes: HKU\S-1-5-21-1705058009-1785825615-431387334-1002 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://do-search.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=ST1000LM014-SSHD-8GB_W382ACFNXXXXW382ACFN&ts=1432267697&type=default&q={searchTerms} BHO-x32: LuckyTab Class -> {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} -> C:\Program Files (x86)\XTab\SupTab.dll No File HKU\S-1-5-21-1705058009-1785825615-431387334-1002\...\Run: [Akamai NetSession Interface] => C:\Users\User\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.) HKLM-x32\...\Run: [EfficientStickyNotes] => [X] HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-1705058009-1785825615-431387334-1002\...\Policies\Explorer: [] HKU\S-1-5-21-1705058009-1785825615-431387334-1002\...\Policies\Explorer: [NoFolderOptions] 0 HKU\S-1-5-21-1705058009-1785825615-431387334-1002\...\Policies\Explorer: [NoControlPanel] 0 Task: {48C9E774-BA89-4B09-A2C0-31FEFAD7E1FA} - System32\Tasks\{46880199-C722-4B3D-8F90-53FBFBD25A57} => pcalua.exe -a "C:\GRY\Riot Games\League of Legends\lol.launcher.exe" -d "C:\GRY\Riot Games\League of Legends\" Task: {5701C1F1-29D7-4685-8CEA-375DF1523C78} - System32\Tasks\MdmUpdateTaskMachineCore => C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\mdm [2015-05-16] ( ) Task: {6C6FB0EC-9136-44D2-8334-ABB67FF0583E} - System32\Tasks\{7FE1C493-3202-45C5-B166-9A4AFE9D9F51} => pcalua.exe -a "C:\GRY\Riot Games\League of Legends\lol.launcher.exe" -d "C:\GRY\Riot Games\League of Legends\" Task: {AC44926E-C252-46DF-A0BB-30067F93EC06} - System32\Tasks\{48B8A1F3-F1D6-4CA3-8842-AA3F0E5F8715} => Chrome.exe http://ui.skype.com/ui/0/7.3.0.101/pl/abandoninstall?page=tsProgressBar HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\VDWFP => ""="Driver" C:\ProgramData\McAfee C:\ProgramData\Microsoft\Windows\Start Menu\Launcher L2 Exilium.lnk C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo Web Start.lnk C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Menu.lnk Folder: C:\Users\User\AppData\Roaming\Hightail for Lenovo CMD: netsh advfirewall reset Reg: reg delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WinRAR Packages" /f Reg: reg delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Winzip Packages" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. C:\WINDOWS\system32\GroupPolicy\Machine => Moved successfully. C:\WINDOWS\system32\GroupPolicy\GPT.ini => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => key Removed successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully Error setting Default URLSearchHook. HKU\S-1-5-21-1705058009-1785825615-431387334-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value not found. HKU\S-1-5-21-1705058009-1785825615-431387334-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value Removed successfully "HKU\S-1-5-21-1705058009-1785825615-431387334-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key Removed successfully HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. "HKU\S-1-5-21-1705058009-1785825615-431387334-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}" => key Removed successfully HKCR\CLSID\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} => key not found. "HKU\S-1-5-21-1705058009-1785825615-431387334-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}" => key Removed successfully HKCR\CLSID\{E733165D-CBCF-4FDA-883E-ADEF965B476C} => key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}" => key Removed successfully HKCR\Wow6432Node\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} => key not found. HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => value Removed successfully HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\EfficientStickyNotes => value Removed successfully HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoFolderOptions => value Removed successfully HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoControlPanel => value Removed successfully HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => value Removed successfully HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoFolderOptions => value Removed successfully HKU\S-1-5-21-1705058009-1785825615-431387334-1002\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoControlPanel => value Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{48C9E774-BA89-4B09-A2C0-31FEFAD7E1FA}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{48C9E774-BA89-4B09-A2C0-31FEFAD7E1FA}" => key Removed successfully C:\Windows\System32\Tasks\{46880199-C722-4B3D-8F90-53FBFBD25A57} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{46880199-C722-4B3D-8F90-53FBFBD25A57}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5701C1F1-29D7-4685-8CEA-375DF1523C78}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5701C1F1-29D7-4685-8CEA-375DF1523C78}" => key Removed successfully C:\Windows\System32\Tasks\MdmUpdateTaskMachineCore => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MdmUpdateTaskMachineCore" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6C6FB0EC-9136-44D2-8334-ABB67FF0583E}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6C6FB0EC-9136-44D2-8334-ABB67FF0583E}" => key Removed successfully C:\Windows\System32\Tasks\{7FE1C493-3202-45C5-B166-9A4AFE9D9F51} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7FE1C493-3202-45C5-B166-9A4AFE9D9F51}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AC44926E-C252-46DF-A0BB-30067F93EC06}" => key Removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC44926E-C252-46DF-A0BB-30067F93EC06}" => key Removed successfully C:\Windows\System32\Tasks\{48B8A1F3-F1D6-4CA3-8842-AA3F0E5F8715} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{48B8A1F3-F1D6-4CA3-8842-AA3F0E5F8715}" => key Removed successfully "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc" => key Removed successfully "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc" => key Removed successfully "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\VDWFP" => key Removed successfully C:\ProgramData\McAfee => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Launcher L2 Exilium.lnk => Moved successfully. C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo Web Start.lnk => Moved successfully. C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk => Moved successfully. C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Menu.lnk => Moved successfully. ========================= Folder: C:\Users\User\AppData\Roaming\Hightail for Lenovo ======================== 2015-01-20 14:32 - 2015-05-24 17:26 - 0019417 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\HT4LDesktop.log 2015-05-16 10:55 - 2015-05-19 15:39 - 0000000 ____D () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches 2015-05-16 10:55 - 2015-05-16 10:55 - 0023468 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\aes_helper.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0023052 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\alexkarnew.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0022970 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\alexkarold.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0020152 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\animecoin.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0008448 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\blake.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0016052 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\bmw.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0022968 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\ckolivas.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0003222 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\config.xml 2015-05-16 10:55 - 2015-05-16 10:55 - 0007879 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\cubehash.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0023129 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\darkcoin.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0005087 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\echo.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0033649 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\fugue.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0006849 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\fuguecoin.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0066145 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\groestl.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0007580 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\groestlcoin.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0014640 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\hamsi.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 2222839 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\hamsi_helper.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0007490 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\inkcoin.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0011051 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\jh.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0020037 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\keccak.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0640000 _____ (The cURL library, http://curl.haxx.se/) C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\libcurl.dll 2015-05-16 10:55 - 2015-05-16 10:55 - 1707520 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\libeay32.dll 2015-05-16 10:55 - 2015-05-16 10:55 - 0118784 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\libgcc_s_dw2-1.dll 2015-05-16 10:55 - 2015-05-16 10:55 - 0279955 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\libidn-11.dll 2015-05-16 10:55 - 2015-05-16 10:55 - 0013722 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\luffa.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0027233 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\marucoin.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 1514160 _____ ( ) C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\mdm 2015-05-16 10:55 - 2015-05-16 10:55 - 0015533 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\myriadcoin-groestl.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0004290 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\panama.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0021092 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\psw.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0094300 _____ (Open Source Software community LGPL) C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\pthreadGC2.dll 2015-05-16 10:55 - 2015-05-16 10:55 - 0020080 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\quarkcoin.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0015649 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\qubitcoin.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0020642 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\shavite.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0010768 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\sifcoin.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0055379 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\simd.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0008501 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\skein.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0368640 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\ssleay32.dll 2015-05-16 10:55 - 2015-05-16 10:55 - 3264591 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\steam.comp 2015-05-16 10:55 - 2015-05-16 10:55 - 0012349 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\twecoin.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0027978 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\x11mod.cl 2015-05-19 15:39 - 2015-05-19 15:39 - 8538627 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\x11modIntel(R) HD Graphics 4400glg2tc3392w256l4.bin 2015-05-16 10:55 - 2015-05-16 10:55 - 0037121 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\x13mod.cl 2015-05-16 10:55 - 2015-05-16 10:55 - 0113166 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\zlib1.dll 2015-05-16 10:55 - 2015-05-16 10:55 - 0022487 _____ () C:\Users\User\AppData\Roaming\Hightail for Lenovo\Caches\zuikkis.cl ====== End of Folder: ====== ========= netsh advfirewall reset ========= Ok. ========= End of CMD: ========= ========= reg delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WinRAR Packages" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Winzip Packages" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= EmptyTemp: => Removed 584 MB temporary data. The system needed a reboot. ==== End of Fixlog 19:36:28 ====