Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja:07-11-2015 Uruchomiony przez Jakub (2015-11-12 02:57:20) Run:1 Uruchomiony z C:\Users\Jakub\Downloads\FRTS Załadowane profile: UpdatusUser & Jakub (Dostępne profile: UpdatusUser & Jakub) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: S3 McComponentHostServiceSony; C:\Program Files (x86)\Sony\MSS\3.8.130\McCHSvc.exe [235216 2013-10-16] (McAfee, Inc.) S2 sbapifs; system32\DRIVERS\sbapifs.sys [X] Task: {019460D8-B19B-40B7-B842-077EA0ACB8CA} - System32\Tasks\{840C9D5B-53B4-4B56-8E2E-858A078FCA42} => pcalua.exe -a "C:\Program Files (x86)\SMRecorder\uninst.exe" Task: {318575CD-9B60-412F-909F-DFE2E55C9870} - System32\Tasks\ggQzCxMgxBiMEWDIy => C:\Users\Jakub\AppData\Roaming\ggQzCxMgxBiMEWDIy.exe <==== UWAGA Task: {675FB88B-B10D-46C7-85E2-1BEDCD2DD6F0} - System32\Tasks\Sony Corporation\VAIO Control Center\NetworkSetting\NetworkSetting Logon Start => C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient Task: {752D2124-798C-45B1-892F-34EA1F27B5D2} - System32\Tasks\{8251F3EA-288E-42B0-9684-35ACD4D7B518} => pcalua.exe -a C:\Users\Jakub\AppData\Local\9BB10050-1447280559-11E2-A8A4-3C0771764B39\Uninstall.exe Task: {89DC8B76-0FD1-468B-9887-87BE0BB2F195} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2053194998-3405878221-685674103-1002Core => C:\Users\Jakub\AppData\Local\Google\Update\GoogleUpdate.exe Task: {977ABFC5-EDE2-426E-9D45-C3D7A6659954} - System32\Tasks\{1CD37C89-F870-4092-B42D-EC63EF276F21} => Firefox.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=6.13.0.104&LastError=12002 Task: {B4EEBB56-C0CF-4085-A8CC-8E8009629BBD} - System32\Tasks\Touch Builder => Rundll32.exe "C:\Users\Jakub\AppData\Local\Touch Builder\xBin\TouchBuilder.dll",#3 <==== UWAGA Task: {B9853A46-5480-4D70-A2D9-09ED646F0EA8} - System32\Tasks\Sony Corporation\VAIO Care\UpdateContacts => %ProgramData%\Sony Corporation\VAIO Care\UpdateContacts.exe Task: {C7871011-B2FA-42DA-9FC1-F4DB83532442} - System32\Tasks\n0MqUdXPr9LlfCUYNu0d10 => C:\Users\Jakub\AppData\Roaming\n0MqUdXPr9LlfCUYNu0d10.exe <==== UWAGA Task: {EC872F2F-084B-45C6-8840-B5238FBE55BC} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2053194998-3405878221-685674103-1002UA => C:\Users\Jakub\AppData\Local\Google\Update\GoogleUpdate.exe Task: {EFD0663C-6BB5-4471-8614-12706D79648F} - System32\Tasks\{1E8A2FC3-87F1-405A-B863-FD586D5D7088} => pcalua.exe -a C:\Users\Jakub\AppData\Roaming\sweet-page\UninstallManager.exe -c -ptid=cor Task: C:\WINDOWS\Tasks\ggQzCxMgxBiMEWDIy.job => C:\Users\Jakub\AppData\Roaming\ggQzCxMgxBiMEWDIy.exe <==== UWAGA Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2053194998-3405878221-685674103-1002Core.job => C:\Users\Jakub\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2053194998-3405878221-685674103-1002UA.job => C:\Users\Jakub\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\n0MqUdXPr9LlfCUYNu0d10.job => C:\Users\Jakub\AppData\Roaming\n0MqUdXPr9LlfCUYNu0d10.exe <==== UWAGA HKU\S-1-5-21-2053194998-3405878221-685674103-1002\...\Run: [ALLPlayer WiFi Remote] => C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe HKU\S-1-5-21-2053194998-3405878221-685674103-1002\...\Run: [Google Update] => "C:\Users\Jakub\AppData\Local\Google\Update\GoogleUpdate.exe" /c HKU\S-1-5-21-2053194998-3405878221-685674103-1002\...\Run: [ChomikBox] => C:\Program Files (x86)\ChomikBox\chomikbox.exe ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Jakub\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll Brak pliku ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Jakub\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll Brak pliku ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Jakub\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll Brak pliku ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Jakub\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll Brak pliku ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Jakub\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll Brak pliku ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Jakub\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll Brak pliku CustomCLSID: HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Jakub\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Jakub\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{9E506282-69D3-5ABA-9C1D-15994B37F4AC}\InprocServer32 -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{9E506282-69D3-5ABA-9C1D-15994B37F4AD}\InprocServer32 -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Jakub\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll => Brak pli (dane wartości zawierają 2 znaków więcej). CustomCLSID: HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Jakub\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll => Brak pli (dane wartości zawierają 2 znaków więcej). CustomCLSID: HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Jakub\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Jakub\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Jakub\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll => Brak pli (dane wartości zawierają 2 znaków więcej). CustomCLSID: HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Jakub\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll => Brak pliku GroupPolicy: Ograniczenia - Chrome <======= UWAGA HKU\S-1-5-21-2053194998-3405878221-685674103-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130917278024481883&GUID=45E76245-E4E9-4DBF-8456-707494D2EDB3 URLSearchHook: HKLM-x32 -> Domyślne = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} StartMenuInternet: IEXPLORE.EXE - iexplore.exe StartMenuInternet: FIREFOX.EXE - firefox.exe CMD: type "C:\Program Files (x86)\mozilla firefox\defaults\pref\!B47960E2D889DD55984943B04E3AA048B479.js" FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\!B47960E2D889DD55984943B04E3AA048B479.js [2015-11-11] FF Plugin-x32: @mcafee.com/McAfeeMssPlugin -> C:\Program Files (x86)\Sony\MSS\3.8.130\npMcAfeeMss.dll [Brak pliku] FF Plugin HKU\S-1-5-21-2053194998-3405878221-685674103-1002: @tools.google.com/Google Update;version=3 -> C:\Users\Jakub\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [Brak pliku] FF Plugin HKU\S-1-5-21-2053194998-3405878221-685674103-1002: @tools.google.com/Google Update;version=9 -> C:\Users\Jakub\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll [Brak pliku] FF Plugin HKU\S-1-5-21-2053194998-3405878221-685674103-1002: intel.com/AppUpx64 -> C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll [Brak pliku] C:\Program Files (x86)\Sony\MSS C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7\PhotoFiltre 7 information.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7\PhotoMasque information.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7\Uninstall PhotoFiltre 7.lnk C:\Users\Jakub\AppData\Roaming\ggQzCxMgxBiMEWDIy C:\Users\Jakub\AppData\Roaming\n0MqUdXPr9LlfCUYNu0d10 C:\Users\Jakub\AppData\Roaming\Mozilla\plugins C:\Users\Jakub\AppData\Roaming\Opera Software C:\Users\Jakub\AppData\Roaming\SoftOrbits C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\SendTo\Android (ALLPlayer Pilot).lnk C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SkyDrive.lnk C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stronghold 3.lnk C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenIV C:\Users\Jakub\Desktop\Kuba\Steam.lnk C:\Users\Jakub\Desktop\Kuba\Projekty\PROGRAMY\AIMP3.lnk C:\Users\Jakub\Desktop\Kuba\Projekty\PROGRAMY\Cool Edit Pro 2.1.lnk C:\Users\Jakub\Desktop\Kuba\Projekty\PROGRAMY\energyXT 2.5.lnk C:\Users\Jakub\Music\muzyka1\ASIO4ALL v2 Instruction Manual.lnk C:\Users\Jakub\Music\muzyka1\Audacity.lnk C:\Users\Jakub\Music\muzyka1\energyXT 2.5.lnk C:\Users\Jakub\Music\muzyka1\Samplitude Pro X Download Version.lnk C:\Users\Public\QiYi C:\Users\UpdatusUser\Desktop\*.lnk C:\WINDOWS\system32\Drivers\etc\hp.bak C:\WINDOWS\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 C:\WINDOWS\SysWOW64\REN*.tmp Folder: C:\results Folder: C:\Update Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f Reg: reg delete HKCU\Software\Google /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Google /f Reg: reg delete HKU\S-1-5-21-2053194998-3405878221-685674103-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /f Reg: reg delete HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v Steam /f Reg: reg delete HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v "DAEMON Tools Lite" /f Reg: reg delete HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v "ALLPlayer WiFi Remote" /f Reg: reg delete HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v "Google Update" /f Reg: reg delete "HKU\S-1-5-21-2053194998-3405878221-685674103-1001\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-21-2053194998-3405878221-685674103-1001\Software\Microsoft\Windows\CurrentVersion\Run" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f CMD: netsh advfirewall reset EmptyTemp: ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. McComponentHostServiceSony => serwis pomyślnie usunięto sbapifs => serwis pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{019460D8-B19B-40B7-B842-077EA0ACB8CA}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{019460D8-B19B-40B7-B842-077EA0ACB8CA}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\{840C9D5B-53B4-4B56-8E2E-858A078FCA42} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{840C9D5B-53B4-4B56-8E2E-858A078FCA42}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{318575CD-9B60-412F-909F-DFE2E55C9870}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{318575CD-9B60-412F-909F-DFE2E55C9870}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\ggQzCxMgxBiMEWDIy => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ggQzCxMgxBiMEWDIy" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{675FB88B-B10D-46C7-85E2-1BEDCD2DD6F0}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{675FB88B-B10D-46C7-85E2-1BEDCD2DD6F0}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\Sony Corporation\VAIO Control Center\NetworkSetting\NetworkSetting Logon Start => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Sony Corporation\VAIO Control Center\NetworkSetting\NetworkSetting Logon Start" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{752D2124-798C-45B1-892F-34EA1F27B5D2}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{752D2124-798C-45B1-892F-34EA1F27B5D2}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\{8251F3EA-288E-42B0-9684-35ACD4D7B518} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{8251F3EA-288E-42B0-9684-35ACD4D7B518}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{89DC8B76-0FD1-468B-9887-87BE0BB2F195}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89DC8B76-0FD1-468B-9887-87BE0BB2F195}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2053194998-3405878221-685674103-1002Core => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-2053194998-3405878221-685674103-1002Core" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{977ABFC5-EDE2-426E-9D45-C3D7A6659954}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{977ABFC5-EDE2-426E-9D45-C3D7A6659954}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\{1CD37C89-F870-4092-B42D-EC63EF276F21} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{1CD37C89-F870-4092-B42D-EC63EF276F21}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B4EEBB56-C0CF-4085-A8CC-8E8009629BBD}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B4EEBB56-C0CF-4085-A8CC-8E8009629BBD}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\Touch Builder => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Touch Builder" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B9853A46-5480-4D70-A2D9-09ED646F0EA8}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9853A46-5480-4D70-A2D9-09ED646F0EA8}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\Sony Corporation\VAIO Care\UpdateContacts => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Sony Corporation\VAIO Care\UpdateContacts" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C7871011-B2FA-42DA-9FC1-F4DB83532442}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C7871011-B2FA-42DA-9FC1-F4DB83532442}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\n0MqUdXPr9LlfCUYNu0d10 => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\n0MqUdXPr9LlfCUYNu0d10" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EC872F2F-084B-45C6-8840-B5238FBE55BC}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EC872F2F-084B-45C6-8840-B5238FBE55BC}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2053194998-3405878221-685674103-1002UA => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-2053194998-3405878221-685674103-1002UA" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EFD0663C-6BB5-4471-8614-12706D79648F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EFD0663C-6BB5-4471-8614-12706D79648F}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\{1E8A2FC3-87F1-405A-B863-FD586D5D7088} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{1E8A2FC3-87F1-405A-B863-FD586D5D7088}" => klucz pomyślnie usunięto C:\WINDOWS\Tasks\ggQzCxMgxBiMEWDIy.job => pomyślnie przeniesiono C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2053194998-3405878221-685674103-1002Core.job => pomyślnie przeniesiono C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2053194998-3405878221-685674103-1002UA.job => pomyślnie przeniesiono C:\WINDOWS\Tasks\n0MqUdXPr9LlfCUYNu0d10.job => pomyślnie przeniesiono HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Windows\CurrentVersion\Run\\ALLPlayer WiFi Remote => Wartość pomyślnie usunięto HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Windows\CurrentVersion\Run\\Google Update => Wartość pomyślnie usunięto HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Windows\CurrentVersion\Run\\ChomikBox => Wartość pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => klucz pomyślnie usunięto "HKCR\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" => klucz pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => klucz pomyślnie usunięto "HKCR\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}" => klucz pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => klucz pomyślnie usunięto "HKCR\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}" => klucz pomyślnie usunięto "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => klucz pomyślnie usunięto "HKCR\Wow6432Node\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}" => klucz pomyślnie usunięto "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => klucz pomyślnie usunięto HKCR\Wow6432Node\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => klucz nie znaleziono. "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => klucz pomyślnie usunięto HKCR\Wow6432Node\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => klucz nie znaleziono. "HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}" => klucz pomyślnie usunięto "HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}" => klucz pomyślnie usunięto "HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{9E506282-69D3-5ABA-9C1D-15994B37F4AC}" => klucz pomyślnie usunięto "HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{9E506282-69D3-5ABA-9C1D-15994B37F4AD}" => klucz pomyślnie usunięto HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => klucz nie znaleziono. HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => klucz nie znaleziono. "HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}" => klucz pomyślnie usunięto "HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}" => klucz pomyślnie usunięto HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => klucz nie znaleziono. "HKU\S-1-5-21-2053194998-3405878221-685674103-1002_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}" => klucz pomyślnie usunięto C:\WINDOWS\system32\GroupPolicy\Machine => pomyślnie przeniesiono C:\WINDOWS\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono "HKU\S-1-5-21-2053194998-3405878221-685674103-1002\SOFTWARE\Policies\Microsoft\Internet Explorer" => klucz pomyślnie usunięto HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\ => Wartość pomyślnie usunięto HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command\\Default => Wartość pomyślnie przywrócono ========= type "C:\Program Files (x86)\mozilla firefox\defaults\pref\!B47960E2D889DD55984943B04E3AA048B479.js" ========= pref("general.config.filename", "B47960E2D889DD55984943B04E3AA048B479"); ========= Koniec CMD: ========= C:\Program Files (x86)\mozilla firefox\defaults\pref\!B47960E2D889DD55984943B04E3AA048B479.js => pomyślnie przeniesiono "HKLM\Software\Wow6432Node\MozillaPlugins\@mcafee.com/McAfeeMssPlugin" => klucz pomyślnie usunięto "HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\MozillaPlugins\@tools.google.com/Google Update;version=3" => klucz pomyślnie usunięto C:\Users\Jakub\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll => nie znaleziono. "HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\MozillaPlugins\@tools.google.com/Google Update;version=9" => klucz pomyślnie usunięto C:\Users\Jakub\AppData\Local\Google\Update\1.3.28.15\npGoogleUpdate3.dll => nie znaleziono. "HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\MozillaPlugins\intel.com/AppUpx64" => klucz pomyślnie usunięto C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll => nie znaleziono. C:\Program Files (x86)\Sony\MSS => pomyślnie przeniesiono C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7\PhotoFiltre 7 information.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7\PhotoMasque information.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7\Uninstall PhotoFiltre 7.lnk => pomyślnie przeniesiono C:\Users\Jakub\AppData\Roaming\ggQzCxMgxBiMEWDIy => pomyślnie przeniesiono C:\Users\Jakub\AppData\Roaming\n0MqUdXPr9LlfCUYNu0d10 => pomyślnie przeniesiono "C:\Users\Jakub\AppData\Roaming\Mozilla\plugins" => nie znaleziono. C:\Users\Jakub\AppData\Roaming\Opera Software => pomyślnie przeniesiono C:\Users\Jakub\AppData\Roaming\SoftOrbits => pomyślnie przeniesiono C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\SendTo\Android (ALLPlayer Pilot).lnk => pomyślnie przeniesiono C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SkyDrive.lnk => pomyślnie przeniesiono C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stronghold 3.lnk => pomyślnie przeniesiono C:\Users\Jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenIV => pomyślnie przeniesiono C:\Users\Jakub\Desktop\Kuba\Steam.lnk => pomyślnie przeniesiono C:\Users\Jakub\Desktop\Kuba\Projekty\PROGRAMY\AIMP3.lnk => pomyślnie przeniesiono C:\Users\Jakub\Desktop\Kuba\Projekty\PROGRAMY\Cool Edit Pro 2.1.lnk => pomyślnie przeniesiono C:\Users\Jakub\Desktop\Kuba\Projekty\PROGRAMY\energyXT 2.5.lnk => pomyślnie przeniesiono C:\Users\Jakub\Music\muzyka1\ASIO4ALL v2 Instruction Manual.lnk => pomyślnie przeniesiono C:\Users\Jakub\Music\muzyka1\Audacity.lnk => pomyślnie przeniesiono C:\Users\Jakub\Music\muzyka1\energyXT 2.5.lnk => pomyślnie przeniesiono C:\Users\Jakub\Music\muzyka1\Samplitude Pro X Download Version.lnk => pomyślnie przeniesiono C:\Users\Public\QiYi => pomyślnie przeniesiono =========== "C:\Users\UpdatusUser\Desktop\*.lnk" ========== C:\Users\UpdatusUser\Desktop\Guitar Pro 5.lnk => pomyślnie przeniesiono ========= Koniec -> "C:\Users\UpdatusUser\Desktop\*.lnk" ======== C:\WINDOWS\system32\Drivers\etc\hp.bak => pomyślnie przeniesiono C:\WINDOWS\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 => pomyślnie przeniesiono =========== "C:\WINDOWS\SysWOW64\REN*.tmp" ========== C:\WINDOWS\SysWOW64\RENDAC4.tmp => pomyślnie przeniesiono ========= Koniec -> "C:\WINDOWS\SysWOW64\REN*.tmp" ======== ========================= Folder: C:\results ======================== 2015-11-04 12:35 - 2015-11-04 12:35 - 0532246 _____ () C:\results\CV Nr.1.pdf ====== Koniec Folder: ====== ========================= Folder: C:\Update ======================== 2014-10-31 22:08 - 2014-11-07 22:26 - 0000000 ____D () C:\Update\EP0000321308 ====== Koniec Folder: ====== ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete HKCU\Software\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete HKU\S-1-5-21-2053194998-3405878221-685674103-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /f ========= ERROR: The system was unable to find the specified registry key or value. ========= Koniec Reg: ========= ========= reg delete HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v Steam /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v "DAEMON Tools Lite" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v "ALLPlayer WiFi Remote" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete HKU\S-1-5-21-2053194998-3405878221-685674103-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v "Google Update" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete "HKU\S-1-5-21-2053194998-3405878221-685674103-1001\Software\Microsoft\Internet Explorer\Main" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= Koniec Reg: ========= ========= reg delete "HKU\S-1-5-21-2053194998-3405878221-685674103-1001\Software\Microsoft\Windows\CurrentVersion\Run" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= Koniec Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= netsh advfirewall reset ========= Ok. ========= Koniec CMD: ========= EmptyTemp: => 940.4 MB danych tymczasowych Usunięto. System wymagał restartu. ==== Koniec Fixlog 03:00:38 ====