Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja:08-10-2015 Uruchomiony przez User (2015-10-10 03:39:45) Run:1 Uruchomiony z C:\Users\User\Downloads ZaÅ‚adowane profile: User (DostÄ™pne profile: User) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: GroupPolicy: Ograniczenia - Chrome <======= UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA FF Session Restore: -> - funkcja wÅ‚Ä…czona. FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [Brak pliku] FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [Brak pliku] FF Plugin HKU\S-1-5-21-3615056651-1230219370-3880529227-1000: @tnt2ghost.com/Plugin -> C:\Users\User\AppData\Local\TNT2\2.0.0.1702\npTNT2ghost.dll Brak pliku FF Plugin HKU\S-1-5-21-3615056651-1230219370-3880529227-1000: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll Brak pliku FF HKLM-x32\...\Firefox\Extensions: [{3DF4B26D-DB19-45DF-962A-6719D071245B}] - C:\Users\User\AppData\Local\Rich Media Player\BrowserExtensions\Firefox\{3DF4B26D-DB19-45DF-962A-6719D071245B} => nie znaleziono HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.wp.pl/?src01=dp220140815 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?trackid=sp-006 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?trackid=sp-006 HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxps://www.google.com/?trackid=sp-006 SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} SearchScopes: HKU\S-1-5-21-3615056651-1230219370-3880529227-1000 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} SearchScopes: HKU\S-1-5-21-3615056651-1230219370-3880529227-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3615056651-1230219370-3880529227-1000 -> {7816E55A-7441-47E3-B23F-ACD83F2CBFA0} URL = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=10809 SearchScopes: HKU\S-1-5-21-3615056651-1230219370-3880529227-1000 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms} Toolbar: HKLM - Brak nazwy - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Brak pliku Toolbar: HKU\S-1-5-21-3615056651-1230219370-3880529227-1000 -> Brak nazwy - {5C1D9348-90F2-4664-9264-71BCC1D36ECC} - Brak pliku ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => Brak pliku ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => Brak pliku ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => Brak pliku ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => Brak pliku CustomCLSID: HKU\S-1-5-21-3615056651-1230219370-3880529227-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\User\AppData Roaming\Dropbox\bin\Dropbox.exe /autoplay => Brak pliku Task: {05F131C4-BD4B-477A-9E74-71EEA9352506} - System32\Tasks\{309AF848-96CF-4072-8837-64299466F41C} => pcalua.exe -a "D:\Program Files (x86)\Uninstaller.exe" -d "D:\Program Files (x86)" Task: {0FC1EC10-D32A-4F82-A696-F893D9B50B20} - System32\Tasks\{B0FB388C-72E7-4D27-8046-5B4F488FAF4B} => Chrome.exe http://ui.skype.com/ui/0/6.18.0.105/pl/abandoninstall?source=lightinstaller&page=tsInstall Task: {32625A6D-E125-4742-8560-9A82AF1BE2BF} - System32\Tasks\{6589C010-B69B-4904-817C-4058F9063959} => Chrome.exe http://ui.skype.com/ui/0/6.14.0.104/pl/abandoninstall?page=tsProgressBar= Task: {598F8AAD-79D1-417B-BB56-1C285B28B19A} - System32\Tasks\{EE444E1C-F7B7-400F-ABBF-5B28098719A1} => Chrome.exe http://ui.skype.com/ui/0/6.21.60.104/pl/abandoninstall?page=tsMain Task: {5C646611-6A50-413A-8F9A-11037BCF46A1} - System32\Tasks\Opera scheduled Autoupdate 1440176387 => C:\Program Files (x86)\Opera\launcher.exe Task: {BE9C3A56-8AF1-44BB-8DBE-55D8BC241C51} - System32\Tasks\{E3B3DF5D-7A93-4CCE-A4CF-8F187B9B1FD5} => pcalua.exe -a E:\BlackOutSaigon_Setup.exe -d E:\ Task: {EF3D21F6-EAF3-47BC-B3BE-F1E4FA096A5D} - System32\Tasks\{6B4FC012-53A5-456B-8697-8CA61650EC3B} => pcalua.exe -a C:\Users\User\Downloads\steering.exe -d C:\Users\User\Downloads IFEO\volaro: [Debugger] tasklist.exe IFEO\vonteera: [Debugger] tasklist.exe HKLM-x32\...\Run: [] => [X] S3 EagleX64; \??\C:\Windows\system32 drivers\EagleX64.sys [X] S3 X6va013; \??\C:\Windows\SysWOW64\Drivers\X6va013 [X] S3 X6va014; \??\C:\Windows\SysWOW64\Drivers\X6va014 [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] C:\Program Files (x86)\Google C:\Program Files (x86)\Mozilla Firefox\cfg C:\Program Files (x86)\Mozilla Firefox\browser\defaults C:\Program Files (x86)\Mozilla Firefox\plugins C:\ProgramData\Microsoft\Windows\GameExplorer\{BBFD4729-4D5A-4634-AF95-BFD979C2AFF6} C:\ProgramData\Microsoft\Windows\GameExplorer\{DB00C6ED-9096-45A7-BDAF-970D726B61FB} C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossfire Europe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MaxPayne3 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Metin2 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rebellion C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reality Pump\Two Worlds\Two Worlds - Instrukcja PDF).lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TANK Ranger_NA C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Z8Games C:\Users\Public\Desktop\Diablo III.lnk C:\Users\Public\Desktop\Gameforge Live.lnk C:\Users\Public\Desktop\Opera.lnk C:\Users\User\AppData\Local\{*} C:\Users\User\AppData\Local\PMB Filer* C:\Users\User\AppData\Local proxy.log C:\Users\User\AppData\Local\Google C:\Users\User\AppData\Local\Microsoft\Windows\GameExplorer\{51A0839E-889A-4159-B2EB-49D1B00F8CDD} C:\Users\User\AppData\Local\Microsoft\Windows\GameExplorer\{59B711E4-9C12-4566-91AF-4133038ED630} C:\Users\User\AppData\Local\Microsoft\Windows\GameExplorer\{CA5850AD-5810-4B67-AB5B-64ECFCF3A0E1} C:\Users\User\AppData\Local\Microsoft\Windows\GameExplorer\{F0B605E4-0DB2-4328-8592-C297B1A97814} C:\Users\User\AppData\LocalLow\{6EB4A4C0-6036-4D2E-B010-20707C4B62E8} C:\Users\User\AppData\Roaming\Opera Software C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\b15f30ab853b7d31\Diablo III.lnk C:\Users\User\Desktop\Continue Rich Media Player Installation.lnk C:\Users\User\Desktop\visit www.nosteam.ro.lnk C:\Users\User\Desktop\zdjecia taty\348 — skrót.lnk C:\Users\User\Desktop\TH\Play The Forest.lnk C:\Users\User\Desktop\Pulpit\Euro Truck Simulator 2.lnk C:\Users\User\Desktop\Pulpit\Google Chrome.lnk C:\Users\User\Desktop\Pulpit\Merc Elite.lnk C:\Users\User\Desktop\Pulpit\Uruchom Wiedźmin 2.lnk C:\Users\User\Documents\Euro Truck Simulator 2\readme.rtf.lnk C:\Users\User\Downloads\*.exe.part C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 Folder: C:\Users\User\AppData\Local\CSO Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f Reg: reg delete HKCU\Software\Google /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Google /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Pando Media Booster" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\uTorrent" /f CMD: netsh advfirewall reset CMD: dir /a "C:\Program Files" CMD: dir /a "C:\Program Files (x86)" CMD: dir /a "C:\Program Files\Common Files" CMD: dir /a "C:\Program Files (x86)\Common Files" CMD: dir /a C:\ProgramData CMD: dir /a C:\Users\User\AppData\Local CMD: dir /a C:\Users\User\AppData\LocalLow CMD: dir /a C:\Users\User\AppData\Roaming Hosts: RemoveProxy: EmptyTemp: ***************** Procesy zostaÅ‚y pomyÅ›lnie zamkniÄ™te. Punkt przywracania zostaÅ‚ pomyÅ›lnie utworzony. C:\Windows\system32\GroupPolicy\Machine => pomyÅ›lnie przeniesiono C:\Windows\system32\GroupPolicy\GPT.ini => pomyÅ›lnie przeniesiono C:\Windows\SysWOW64\GroupPolicy\GPT.ini => pomyÅ›lnie przeniesiono "HKLM\SOFTWARE\Policies\Google" => klucz pomyÅ›lnie usuniÄ™to FF Session Restore: -> pomyÅ›lnie usuniÄ™to "HKLM\Software\MozillaPlugins\@esn/npbattlelog,version=2.5.1" => klucz pomyÅ›lnie usuniÄ™to "HKLM\Software\Wow6432Node\MozillaPlugins\@esn/npbattlelog,version=2.5.1" => klucz pomyÅ›lnie usuniÄ™to "HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\Software\MozillaPlugins\@tnt2ghost.com/Plugin" => klucz pomyÅ›lnie usuniÄ™to C:\Users\User\AppData\Local\TNT2\2.0.0.1702\npTNT2ghost.dll => nie znaleziono. "HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\Software\MozillaPlugins\ubisoft.com/uplaypc" => klucz pomyÅ›lnie usuniÄ™to C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll => nie znaleziono. HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{3DF4B26D-DB19-45DF-962A-6719D071245B} => Wartość pomyÅ›lnie usuniÄ™to HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyÅ›lnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyÅ›lnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyÅ›lnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyÅ›lnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyÅ›lnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyÅ›lnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyÅ›lnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyÅ›lnie przywrócono HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyÅ›lnie przywrócono HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyÅ›lnie przywrócono HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\Software\Microsoft\Internet Explorer\Main\\Search Bar => Wartość pomyÅ›lnie usuniÄ™to HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyÅ›lnie przywrócono "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" => klucz pomyÅ›lnie usuniÄ™to HKCR\Wow6432Node\CLSID\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} => klucz nie znaleziono. HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyÅ›lnie usuniÄ™to "HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => klucz pomyÅ›lnie usuniÄ™to HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => klucz nie znaleziono. "HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7816E55A-7441-47E3-B23F-ACD83F2CBFA0}" => klucz pomyÅ›lnie usuniÄ™to HKCR\CLSID\{7816E55A-7441-47E3-B23F-ACD83F2CBFA0} => klucz nie znaleziono. "HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" => klucz pomyÅ›lnie usuniÄ™to HKCR\CLSID\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} => klucz nie znaleziono. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => Wartość pomyÅ›lnie usuniÄ™to HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => klucz nie znaleziono. HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{5C1D9348-90F2-4664-9264-71BCC1D36ECC} => Wartość pomyÅ›lnie usuniÄ™to HKCR\CLSID\{5C1D9348-90F2-4664-9264-71BCC1D36ECC} => klucz nie znaleziono. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt1" => klucz pomyÅ›lnie usuniÄ™to HKCR\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => klucz nie znaleziono. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt2" => klucz pomyÅ›lnie usuniÄ™to HKCR\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => klucz nie znaleziono. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt3" => klucz pomyÅ›lnie usuniÄ™to HKCR\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => klucz nie znaleziono. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt4" => klucz pomyÅ›lnie usuniÄ™to HKCR\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => klucz nie znaleziono. "HKU\S-1-5-21-3615056651-1230219370-3880529227-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{05F131C4-BD4B-477A-9E74-71EEA9352506}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{05F131C4-BD4B-477A-9E74-71EEA9352506}" => klucz pomyÅ›lnie usuniÄ™to C:\Windows\System32\Tasks\{309AF848-96CF-4072-8837-64299466F41C} => pomyÅ›lnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{309AF848-96CF-4072-8837-64299466F41C}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0FC1EC10-D32A-4F82-A696-F893D9B50B20}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0FC1EC10-D32A-4F82-A696-F893D9B50B20}" => klucz pomyÅ›lnie usuniÄ™to C:\Windows\System32\Tasks\{B0FB388C-72E7-4D27-8046-5B4F488FAF4B} => pomyÅ›lnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B0FB388C-72E7-4D27-8046-5B4F488FAF4B}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{32625A6D-E125-4742-8560-9A82AF1BE2BF}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{32625A6D-E125-4742-8560-9A82AF1BE2BF}" => klucz pomyÅ›lnie usuniÄ™to C:\Windows\System32\Tasks\{6589C010-B69B-4904-817C-4058F9063959} => pomyÅ›lnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6589C010-B69B-4904-817C-4058F9063959}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{598F8AAD-79D1-417B-BB56-1C285B28B19A}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{598F8AAD-79D1-417B-BB56-1C285B28B19A}" => klucz pomyÅ›lnie usuniÄ™to C:\Windows\System32\Tasks\{EE444E1C-F7B7-400F-ABBF-5B28098719A1} => pomyÅ›lnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{EE444E1C-F7B7-400F-ABBF-5B28098719A1}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{5C646611-6A50-413A-8F9A-11037BCF46A1}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C646611-6A50-413A-8F9A-11037BCF46A1}" => klucz pomyÅ›lnie usuniÄ™to C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1440176387 => pomyÅ›lnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Opera scheduled Autoupdate 1440176387" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BE9C3A56-8AF1-44BB-8DBE-55D8BC241C51}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BE9C3A56-8AF1-44BB-8DBE-55D8BC241C51}" => klucz pomyÅ›lnie usuniÄ™to C:\Windows\System32\Tasks\{E3B3DF5D-7A93-4CCE-A4CF-8F187B9B1FD5} => pomyÅ›lnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E3B3DF5D-7A93-4CCE-A4CF-8F187B9B1FD5}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EF3D21F6-EAF3-47BC-B3BE-F1E4FA096A5D}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF3D21F6-EAF3-47BC-B3BE-F1E4FA096A5D}" => klucz pomyÅ›lnie usuniÄ™to C:\Windows\System32\Tasks\{6B4FC012-53A5-456B-8697-8CA61650EC3B} => pomyÅ›lnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6B4FC012-53A5-456B-8697-8CA61650EC3B}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\volaro" => klucz pomyÅ›lnie usuniÄ™to "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\vonteera" => klucz pomyÅ›lnie usuniÄ™to HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Wartość pomyÅ›lnie usuniÄ™to EagleX64 => serwis pomyÅ›lnie usuniÄ™to X6va013 => serwis pomyÅ›lnie usuniÄ™to X6va014 => serwis pomyÅ›lnie usuniÄ™to xhunter1 => serwis pomyÅ›lnie usuniÄ™to C:\Program Files (x86)\Google => pomyÅ›lnie przeniesiono C:\Program Files (x86)\Mozilla Firefox\cfg => pomyÅ›lnie przeniesiono C:\Program Files (x86)\Mozilla Firefox\browser\defaults => pomyÅ›lnie przeniesiono C:\Program Files (x86)\Mozilla Firefox\plugins => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\GameExplorer\{BBFD4729-4D5A-4634-AF95-BFD979C2AFF6} => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\GameExplorer\{DB00C6ED-9096-45A7-BDAF-970D726B61FB} => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossfire Europe => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MaxPayne3 => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Metin2 => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rebellion => pomyÅ›lnie przeniesiono "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reality Pump\Two Worlds\Two Worlds - Instrukcja PDF).lnk" => plik/folder nie znaleziono. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TANK Ranger_NA => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks => pomyÅ›lnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Z8Games => pomyÅ›lnie przeniesiono C:\Users\Public\Desktop\Diablo III.lnk => pomyÅ›lnie przeniesiono C:\Users\Public\Desktop\Gameforge Live.lnk => pomyÅ›lnie przeniesiono C:\Users\Public\Desktop\Opera.lnk => pomyÅ›lnie przeniesiono =========== "C:\Users\User\AppData\Local\{*}" ========== C:\Users\User\AppData\Local\{001DC673-1F7D-42B6-8C89-8FF0B73DAE60} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\{276A16E0-4BC8-487C-892B-59D6F5458933} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\{27BB257D-2F06-4598-8738-C90B96ED23DC} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\{5024534D-C205-4332-9087-878A206D7791} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\{66F82789-993F-4FD5-A578-23B1AD894C26} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\{8EF28445-4EB7-4204-A97E-010A89BA2893} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\{933A5778-FBE8-408B-B4C5-4EFCE28A477A} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\{A8C9F6F3-1C56-44B8-8A05-12404DD72C6A} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\{AE5308ED-49D7-4FB6-9B29-37848C897E0B} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\{B7D69EFC-91D0-4B00-9277-8D20103B8A26} => pomyÅ›lnie przeniesiono ========= Koniec -> "C:\Users\User\AppData\Local\{*}" ======== =========== "C:\Users\User\AppData\Local\PMB Filer*" ========== C:\Users\User\AppData\Local\PMB Filer耯pa => pomyÅ›lnie przeniesiono ========= Koniec -> "C:\Users\User\AppData\Local\PMB Filer*" ======== "C:\Users\User\AppData\Local proxy.log" => plik/folder nie znaleziono. C:\Users\User\AppData\Local\Google => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\Microsoft\Windows\GameExplorer\{51A0839E-889A-4159-B2EB-49D1B00F8CDD} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\Microsoft\Windows\GameExplorer\{59B711E4-9C12-4566-91AF-4133038ED630} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\Microsoft\Windows\GameExplorer\{CA5850AD-5810-4B67-AB5B-64ECFCF3A0E1} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Local\Microsoft\Windows\GameExplorer\{F0B605E4-0DB2-4328-8592-C297B1A97814} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\LocalLow\{6EB4A4C0-6036-4D2E-B010-20707C4B62E8} => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Roaming\Opera Software => pomyÅ›lnie przeniesiono C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\b15f30ab853b7d31\Diablo III.lnk => pomyÅ›lnie przeniesiono C:\Users\User\Desktop\Continue Rich Media Player Installation.lnk => pomyÅ›lnie przeniesiono C:\Users\User\Desktop\visit www.nosteam.ro.lnk => pomyÅ›lnie przeniesiono C:\Users\User\Desktop\zdjecia taty\348 — skrót.lnk => pomyÅ›lnie przeniesiono C:\Users\User\Desktop\TH\Play The Forest.lnk => pomyÅ›lnie przeniesiono C:\Users\User\Desktop\Pulpit\Euro Truck Simulator 2.lnk => pomyÅ›lnie przeniesiono C:\Users\User\Desktop\Pulpit\Google Chrome.lnk => pomyÅ›lnie przeniesiono C:\Users\User\Desktop\Pulpit\Merc Elite.lnk => pomyÅ›lnie przeniesiono C:\Users\User\Desktop\Pulpit\Uruchom Wiedźmin 2.lnk => pomyÅ›lnie przeniesiono C:\Users\User\Documents\Euro Truck Simulator 2\readme.rtf.lnk => pomyÅ›lnie przeniesiono =========== "C:\Users\User\Downloads\*.exe.part" ========== C:\Users\User\Downloads\TheForest_0.24b.exe.part => pomyÅ›lnie przeniesiono ========= Koniec -> "C:\Users\User\Downloads\*.exe.part" ======== C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 => pomyÅ›lnie przeniesiono ========================= Folder: C:\Users\User\AppData\Local\CSO ======================== 2014-10-14 15:53 - 2014-10-14 15:53 - 0422324 _____ () C:\Users\User\AppData\Local\CSO\10342234772 2014-10-16 11:54 - 2014-10-16 11:54 - 0096900 _____ () C:\Users\User\AppData\Local\CSO\1225026231 2014-11-05 12:16 - 2014-11-05 12:16 - 0874484 _____ () C:\Users\User\AppData\Local\CSO\13043062606 2014-10-14 10:10 - 2014-10-14 10:10 - 0071528 _____ () C:\Users\User\AppData\Local\CSO\13346621023 2014-10-14 10:02 - 2014-10-14 10:02 - 1213228 _____ () C:\Users\User\AppData\Local\CSO\1357121110 2015-09-14 07:18 - 2015-09-14 07:18 - 0294316 _____ () C:\Users\User\AppData\Local\CSO\13762237111 2014-10-14 15:53 - 2014-10-14 15:53 - 0848872 _____ () C:\Users\User\AppData\Local\CSO\14156455046 2014-10-14 09:59 - 2014-10-14 09:59 - 0413692 _____ () C:\Users\User\AppData\Local\CSO\17204765216 2014-10-14 10:16 - 2014-10-14 10:16 - 0110732 _____ () C:\Users\User\AppData\Local\CSO\17444464603 2014-10-14 11:46 - 2014-10-14 11:46 - 0210176 _____ () C:\Users\User\AppData\Local\CSO\2231727732 2014-11-04 11:41 - 2014-11-04 11:41 - 0243148 _____ () C:\Users\User\AppData\Local\CSO\22514262645 2014-10-14 11:49 - 2014-10-14 11:49 - 0938088 _____ () C:\Users\User\AppData\Local\CSO\23401727614 2014-10-15 22:32 - 2014-10-15 22:32 - 0419168 _____ () C:\Users\User\AppData\Local\CSO\26125523655 2014-11-10 23:25 - 2014-11-10 23:25 - 0389948 _____ () C:\Users\User\AppData\Local\CSO\26326371551 2014-10-14 09:57 - 2014-10-14 09:57 - 0009662 _____ () C:\Users\User\AppData\Local\CSO\27533302427 2014-10-14 09:57 - 2014-10-14 09:57 - 0029940 _____ () C:\Users\User\AppData\Local\CSO\31347072304 2014-10-14 12:20 - 2014-10-14 12:20 - 0087004 _____ () C:\Users\User\AppData\Local\CSO\31632042404 2015-07-09 20:41 - 2015-07-09 20:41 - 0498296 _____ () C:\Users\User\AppData\Local\CSO\3221442621 2014-10-14 10:16 - 2014-10-14 10:16 - 0110976 _____ () C:\Users\User\AppData\Local\CSO\32516503017 2014-10-14 09:57 - 2014-10-14 09:57 - 0242420 _____ () C:\Users\User\AppData\Local\CSO\3507245570 2014-11-01 19:57 - 2014-11-01 19:57 - 0783648 _____ () C:\Users\User\AppData\Local\CSO\3532334731 2014-10-14 10:00 - 2014-10-14 10:00 - 0032732 _____ () C:\Users\User\AppData\Local\CSO\3543535376 2014-10-17 10:44 - 2014-10-17 10:44 - 0083336 _____ () C:\Users\User\AppData\Local\CSO\36410270245 2014-10-14 09:57 - 2014-10-14 09:57 - 0030188 _____ () C:\Users\User\AppData\Local\CSO\37366675440 2014-10-14 11:49 - 2014-10-14 11:49 - 0399136 _____ () C:\Users\User\AppData\Local\CSO\37765003770 2014-10-14 09:57 - 2014-10-14 09:57 - 66933436 _____ () C:\Users\User\AppData\Local\CSO\5072673343 2014-10-14 09:59 - 2014-10-14 09:59 - 0099264 _____ () C:\Users\User\AppData\Local\CSO\546512302 2014-11-10 23:29 - 2014-11-10 23:29 - 0104688 _____ () C:\Users\User\AppData\Local\CSO\5653506506 2014-10-14 11:46 - 2014-10-14 11:46 - 0048380 _____ () C:\Users\User\AppData\Local\CSO\6266154421 2014-10-14 09:57 - 2014-10-14 09:57 - 3104708 _____ () C:\Users\User\AppData\Local\CSO\6774363127 ====== Koniec Folder: ====== ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete HKCU\Software\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Pando Media Booster" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\uTorrent" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= netsh advfirewall reset ========= Ok. ========= Koniec CMD: ========= ========= dir /a "C:\Program Files" ========= Wolumin w stacji C to Nowy Numer seryjny woluminu: B898-A0C7 Katalog: C:\Program Files 2015-08-21 19:09 . 2015-08-21 19:09 .. 2014-05-16 08:32 004 2013-08-23 16:15 ATI 2013-08-23 16:18 ATI Technologies 2013-08-23 18:03 AVAST Software 2013-12-09 15:59 CCleaner 2013-12-17 20:55 Common Files 2009-07-14 06:54 174 desktop.ini 2011-02-04 19:24 DVD Maker 2015-07-31 17:32 HP 2013-08-23 16:07 Intel 2011-02-04 19:20 Internet Explorer 2010-11-21 09:17 Microsoft Games 2013-08-23 16:27 Microsoft Office 2013-09-20 15:20 Microsoft Silverlight 2009-07-14 07:32 MSBuild 2013-08-23 16:06 Realtek 2009-07-14 07:32 Reference Assemblies 2009-07-14 07:09 Uninstall Information 2014-11-11 23:12 VID_0E8F&PID_0003 2011-02-04 19:24 Windows Defender 2011-02-04 19:24 Windows Journal 2011-02-04 19:24 Windows Mail 2011-02-04 19:24 Windows Media Player 2013-08-23 16:00 Windows NT 2011-02-04 19:24 Windows Photo Viewer 2010-11-21 05:31 Windows Portable Devices 2011-02-04 19:24 Windows Sidebar 2013-08-23 16:24 WinRAR 1 plik(¢w) 174 bajt¢w 29 katalog(¢w) 1ÿ533ÿ931ÿ520 bajt¢w wolnych ========= Koniec CMD: ========= ========= dir /a "C:\Program Files (x86)" ========= Wolumin w stacji C to Nowy Numer seryjny woluminu: B898-A0C7 Katalog: C:\Program Files (x86) 2015-10-10 03:39 . 2015-10-10 03:39 .. 2013-08-23 16:18 AMD APP 2013-08-24 00:48 AP Tuner 2015-07-18 19:08 Arc 2013-08-23 16:16 ATI Technologies 2015-06-26 19:07 Battlelog Web Plugins 2015-09-08 19:04 Common Files 2013-11-18 22:30 DAEMON Tools Lite 2009-07-14 06:54 174 desktop.ini 2013-08-25 12:28 Dzielenie i laczenie plikow 2015-08-21 19:00 eef728a2-ecac-4e4a-8968-bcfde9bc0b6e 2013-08-23 16:25 Elaborate Bytes 2015-07-31 17:33 Hewlett-Packard 2015-09-08 21:33 HP 2015-07-31 17:33 HP Photo Creations 2015-08-21 19:07 InstallShield Installation Information 2014-05-24 09:35 Intel 2011-02-04 19:20 Internet Explorer 2014-02-28 17:18 Java 2013-08-23 16:24 K-Lite Codec Pack 2013-08-23 16:28 Microsoft Office 2013-09-20 15:20 Microsoft Silverlight 2013-08-23 16:28 Microsoft Visual Studio 2013-08-23 16:27 Microsoft Visual Studio 8 2013-08-23 16:32 Microsoft Works 2013-09-04 00:36 Microsoft.NET 2015-10-10 03:39 Mozilla Firefox 2015-10-05 16:21 Mozilla Maintenance Service 2013-08-23 16:28 MSBuild 2014-12-27 19:50 NVIDIA Corporation 2014-10-14 08:56 Pando Networks 2013-08-23 18:40 QuickTime 2013-08-23 16:09 Realtek 2009-07-14 07:32 Reference Assemblies 2013-08-25 14:31 Rockstar Games 2015-01-29 17:30 Shards of War 2015-04-10 23:02 Skype 2013-08-23 16:06 Temp 2014-07-30 12:01 Ubisoft 2009-07-14 06:57 Uninstall Information 2014-11-11 23:12 VID_0E8F&PID_0003 2013-12-17 20:12 WEBZEN 2011-02-04 19:24 Windows Defender 2011-02-04 19:24 Windows Mail 2011-02-04 19:24 Windows Media Player 2009-07-14 07:32 Windows NT 2011-02-04 19:24 Windows Photo Viewer 2010-11-21 05:31 Windows Portable Devices 2011-02-04 19:24 Windows Sidebar 1 plik(¢w) 174 bajt¢w 49 katalog(¢w) 1ÿ533ÿ931ÿ520 bajt¢w wolnych ========= Koniec CMD: ========= ========= dir /a "C:\Program Files\Common Files" ========= Wolumin w stacji C to Nowy Numer seryjny woluminu: B898-A0C7 Katalog: C:\Program Files\Common Files 2013-12-17 20:55 . 2013-12-17 20:55 .. 2013-08-23 16:18 ATI Technologies 2013-12-17 20:55 INCA Shared 2013-08-23 16:28 Microsoft Shared 2009-07-14 05:20 Services 2009-07-14 05:20 SpeechEngines 2011-02-04 19:20 System 0 plik(¢w) 0 bajt¢w 8 katalog(¢w) 1ÿ533ÿ927ÿ424 bajt¢w wolnych ========= Koniec CMD: ========= ========= dir /a "C:\Program Files (x86)\Common Files" ========= Wolumin w stacji C to Nowy Numer seryjny woluminu: B898-A0C7 Katalog: C:\Program Files (x86)\Common Files 2015-09-08 19:04 . 2015-09-08 19:04 .. 2015-10-10 03:35 Adobe 2013-08-23 16:18 ATI Technologies 2014-08-26 11:53 Blizzard Entertainment 2013-08-23 16:28 DESIGNER 2014-05-10 23:12 EAInstaller 2014-02-01 12:41 InstallShield 2013-12-10 19:16 Java 2013-08-23 16:32 microsoft shared 2014-01-19 20:54 Overwolf 2013-08-23 16:06 postureAgent 2009-07-14 05:20 Services 2015-02-18 21:27 Skype 2009-07-14 05:20 SpeechEngines 2015-08-24 00:18 Steam 2013-08-23 16:30 System 2013-08-23 18:40 TechSmith Shared 0 plik(¢w) 0 bajt¢w 18 katalog(¢w) 1ÿ533ÿ927ÿ424 bajt¢w wolnych ========= Koniec CMD: ========= ========= dir /a C:\ProgramData ========= Wolumin w stacji C to Nowy Numer seryjny woluminu: B898-A0C7 Katalog: C:\ProgramData 2015-10-10 01:33 . 2015-10-10 01:33 .. 2015-10-10 03:35 Adobe 2015-07-31 17:32 57 Ament.ini 2009-07-14 07:08 Application Data [C:\ProgramData] 2013-08-23 16:20 ATI 2014-10-02 18:06 AVAST Software 2014-08-26 11:32 Battle.net 2014-08-26 11:35 Blizzard Entertainment 2015-01-29 17:35 boost_interprocess 2013-08-23 18:23 Common Files 2013-11-18 22:33 DAEMON Tools Lite 2013-08-23 16:00 Dane aplikacji [C:\ProgramData] 2014-06-23 15:11 Datamngr 2009-07-14 07:08 Desktop [C:\Users\Public\Desktop] 2009-07-14 07:08 Documents [C:\Users\Public\Documents] 2013-08-23 16:00 Dokumenty [C:\Users\Public\Documents] 2013-08-24 22:47 DSS 2013-08-27 23:37 EA Core 2013-08-28 13:32 EA Logs 2013-08-27 23:37 Electronic Arts 2009-07-14 07:08 Favorites [C:\Users\Public\Favorites] 2013-11-06 16:00 GG 2015-09-08 21:33 HP 2015-07-31 17:33 HP Photo Creations 2014-06-08 20:10 InstallMate 2014-05-24 17:02 Intel 2014-05-24 09:34 Intel(R) Update Manager 2014-02-08 16:24 LogMeIn 2013-08-26 17:46 Logs 2013-08-23 16:00 Menu Start [C:\ProgramData\Microsoft\Windows\Start Menu] 2013-09-20 15:20 Microsoft 2013-08-23 16:34 Microsoft Help 2013-08-23 16:23 Mozilla 2014-01-12 20:23 Nexon 2014-01-12 20:38 NexonEU 2013-12-21 16:45 266 ntuser.pol 2014-02-28 17:18 Oracle 2013-11-19 00:11 Orbit 2015-08-12 22:22 Origin 2015-02-07 17:38 Package Cache 2013-08-23 16:00 Pulpit [C:\Users\Public\Desktop] 2014-07-21 20:37 Riot Games 2013-08-25 14:32 Rockstar Games 2015-04-10 23:02 Skype 2009-07-14 07:08 Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu] 2013-08-23 17:58 Sun 2014-06-08 20:10 Supersoftware App 2013-08-23 16:00 Szablony [C:\ProgramData\Microsoft\Windows\Templates] 2013-08-23 18:40 TechSmith 2013-08-26 17:46 TEMP 2009-07-14 07:08 Templates [C:\ProgramData\Microsoft\Windows\Templates] 2013-08-23 18:23 TuneUp Software 2013-08-23 16:00 Ulubione [C:\Users\Public\Favorites] 2015-07-31 17:33 Visan 2013-12-17 20:29 WEBZEN 2013-08-23 18:23 {C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2 plik(¢w) 323 bajt¢w 55 katalog(¢w) 1ÿ533ÿ923ÿ328 bajt¢w wolnych ========= Koniec CMD: ========= ========= dir /a C:\Users\User\AppData\Local ========= Wolumin w stacji C to Nowy Numer seryjny woluminu: B898-A0C7 Katalog: C:\Users\User\AppData\Local 2015-10-10 03:39 . 2015-10-10 03:39 .. 2013-12-23 22:14 4A Games 2014-03-16 14:45 Adobe 2013-08-23 16:20 ATI 2015-02-14 23:35 Battle.net 2014-08-26 11:35 Blizzard Entertainment 2015-07-22 17:52 CEF 2013-09-05 19:34 Chromium 2015-02-13 21:56 CrashRpt 2013-11-18 17:02 CRE 2015-09-14 07:18 CSO 2013-08-23 16:01 Dane aplikacji [C:\Users\User\AppData\Local] 2014-06-08 20:11 5ÿ632 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-03-29 02:26 Diagnostics 2014-04-04 23:36 Electronic Arts 2014-05-10 23:14 Electronic_Arts_Inc 2014-12-14 18:21 ElevatedDiagnostics 2015-06-26 18:58 ESN 2014-11-28 21:25 Gameforge4d 2013-08-23 16:38 108ÿ840 GDIPFONTCACHEV1.DAT 2014-07-11 14:25 GG 2013-08-23 16:01 Historia [C:\Users\User\AppData\Local\Microsoft\Windows\History] 2015-09-01 16:47 HP 2015-10-10 01:53 8ÿ192ÿ657 IconCache.db 2014-06-23 15:11 koyotesoftmoviestoolbarha 2013-10-02 20:59 LogMeIn 2015-10-10 01:55 LogMeIn Hamachi 2013-08-23 16:41 Macromedia 2015-08-29 16:08 Microsoft 2015-04-27 19:26 Microsoft Help 2015-09-17 22:12 Mozilla 2015-10-09 20:24 NXEPassportClient 2015-04-18 16:50 openvr 2015-08-21 19:00 Opera Software 2013-08-27 23:36 Origin 2014-01-19 12:07 Overwolf 2014-12-27 01:24 PAYDAY 2013-08-23 16:24 Programs 2014-11-19 19:09 3 proxy.log 2013-11-27 14:59 PunkBuster 2013-08-23 18:48 Radiocom 2014-09-18 12:24 Red 5 Studios 2013-08-25 14:31 Rockstar Games 2014-01-03 20:04 SKIDROW 2014-01-31 23:34 Skype 2014-02-20 17:33 Skyrim 2014-01-03 20:05 SniperV2 2015-10-04 19:03 Spotify 2015-03-01 11:45 Steam 2013-08-23 18:43 TechSmith 2015-10-10 03:40 Temp 2013-08-23 16:01 Temporary Internet Files [C:\Users\User\AppData\Local\Microsoft\Windows\Temporary Internet Files] 2013-09-03 21:01 The Witcher 2 2014-04-20 12:18 Ubisoft Game Launcher 2013-08-28 19:09 Unity 2014-04-21 17:43 UWebKit 2014-06-29 19:59 UWebKit151 2014-02-01 12:52 VirtualStore 4 plik(¢w) 8ÿ307ÿ132 bajt¢w 55 katalog(¢w) 1ÿ533ÿ919ÿ232 bajt¢w wolnych ========= Koniec CMD: ========= ========= dir /a C:\Users\User\AppData\LocalLow ========= Wolumin w stacji C to Nowy Numer seryjny woluminu: B898-A0C7 Katalog: C:\Users\User\AppData\LocalLow 2015-10-10 03:39 . 2015-10-10 03:39 .. 2013-11-03 19:06 Adobe 2014-05-06 17:48 CanvasProc 2014-03-22 23:22 Heroes and Generals 2014-06-23 15:11 koyotesoftmoviestoolbarha 2013-09-20 15:20 Microsoft 2014-05-28 17:45 Protect 2015-08-17 20:49 SKS 2013-12-10 19:22 splitscreen 2013-08-23 17:57 Sun 2013-09-11 22:03 Unity 0 plik(¢w) 0 bajt¢w 12 katalog(¢w) 1ÿ533ÿ919ÿ232 bajt¢w wolnych ========= Koniec CMD: ========= ========= dir /a C:\Users\User\AppData\Roaming ========= Wolumin w stacji C to Nowy Numer seryjny woluminu: B898-A0C7 Katalog: C:\Users\User\AppData\Roaming 2015-10-10 03:39 . 2015-10-10 03:39 .. 2014-11-19 17:55 .huntedcowcache 2015-10-09 17:27 .minecraft 2015-10-09 17:26 .minecraftzyczu 2013-09-02 12:59 .mono 2015-05-23 22:46 .zyczujdk7 2013-08-23 18:18 0F1F1C2Y1H1P1C0I0T 2013-11-03 19:06 Adobe 2015-05-23 22:45 Arc 2013-08-23 16:20 ATI 2014-03-24 15:06 Audacity 2014-10-03 17:34 AVAST Software 2014-02-06 09:49 Awesomium 2014-08-26 11:40 Battle.net 2015-08-21 19:12 DAEMON Tools Lite 2014-07-11 14:25 GG 2015-09-11 21:36 HpUpdate 2013-08-23 16:01 Identities 2013-11-18 15:31 InstallShield 2013-11-09 15:36 Leadertech 2015-09-30 20:43 LolClient 2013-08-23 16:41 Macromedia 2010-11-21 09:16 Media Center Programs 2015-07-18 13:08 Media Player Classic 2014-12-11 19:21 Microsoft 2013-08-23 16:24 Mozilla 2014-05-11 00:04 Need for Speed World 2015-06-26 18:55 Origin 2013-08-23 18:48 Radiocom 2014-01-24 16:08 Riot Games 2014-03-27 21:05 Rockstar Games 2015-10-10 01:24 Skype 2015-08-24 00:15 SmartSteamEmu 2015-10-04 18:37 Spotify 2014-01-19 20:45 TERA 2015-09-21 20:56 TS3Client 2013-08-23 18:23 TuneUp Software 2013-08-28 23:11 Unity 2014-04-20 12:16 uTorrent 2013-08-24 06:26 vlc 2014-06-24 17:28 Wargaming.net 2013-08-23 18:27 WinRAR 0 plik(¢w) 0 bajt¢w 43 katalog(¢w) 1ÿ533ÿ919ÿ232 bajt¢w wolnych ========= Koniec CMD: ========= C:\Windows\System32\Drivers\etc\hosts => pomyÅ›lnie przeniesiono Hosts pomyÅ›lnie przywrócono. ========= RemoveProxy: ========= HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => Wartość pomyÅ›lnie usuniÄ™to HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => Wartość pomyÅ›lnie usuniÄ™to HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\\AutoConfigURL => Wartość pomyÅ›lnie usuniÄ™to HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wartość pomyÅ›lnie usuniÄ™to HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wartość pomyÅ›lnie usuniÄ™to HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wartość pomyÅ›lnie usuniÄ™to HKU\S-1-5-21-3615056651-1230219370-3880529227-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wartość pomyÅ›lnie usuniÄ™to ========= Koniec RemoveProxy: ========= EmptyTemp: => 1.3 GB danych tymczasowych UsuniÄ™to. System wymagaÅ‚ restartu.. ==== Koniec Fixlog 03:40:39 ====