Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja:12-12-2015 Uruchomiony przez Damian (2015-12-12 15:00:49) Run:1 Uruchomiony z C:\Users\Damian\Downloads\FRST Załadowane profile: Damian (Dostępne profile: Damian) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: R2 WdMan; C:\ProgramData\9WdM9\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego] ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\MOJE PROGRAMY\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Star Wars - The Old Republic.lnk -> C:\MOJE PROGRAMY\GRY\Star Wars-The Old Republic\launcher.exe (BioWare) -> hxxp://www.yoursites123.com/?type=sc&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\cdp.pl\Wiedźmin 2 Edycja Rozszerzona\Wiedźmin 2 Edycja Rozszerzona.lnk -> C:\MOJE PROGRAMY\GRY\The Witcher 2\Launcher.exe (CD Projekt RED) -> hxxp://www.yoursites123.com/?type=sc&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT ShortcutWithArgument: C:\Users\Damian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT ShortcutWithArgument: C:\Users\Damian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT ShortcutWithArgument: C:\Users\Damian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT ShortcutWithArgument: C:\Users\Damian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\MOJE PROGRAMY\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT ShortcutWithArgument: C:\Users\Damian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\5d696d521de238c3\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.yoursites123.com/?type=sc&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe hxxp://www.yoursites123.com/?type=sc&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT CHR HomePage: Default -> hxxp://www.yoursites123.com/?type=hp&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT CHR StartupUrls: Default -> "hxxp://www.yoursites123.com/?type=hp&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT" CHR DefaultSearchURL: Default -> hxxp://www.yoursites123.com/web/?type=ds&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT&q={searchTerms} HKU\S-1-5-21-1946394690-2169185729-783039975-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT HKU\S-1-5-21-1946394690-2169185729-783039975-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT HKU\S-1-5-21-1946394690-2169185729-783039975-1001\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.uk.msn.com/HPALL13/175 SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT&q={searchTerms} SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT&q={searchTerms} SearchScopes: HKU\S-1-5-21-1946394690-2169185729-783039975-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449854553&z=27b6f665231ca240bea9c28g3z3z4t6bdw5zdwcw1z&from=ient07021&uid=TOSHIBAXMQ01ABD075_331YT48UTXX331YT48UT&q={searchTerms} ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Brak pliku ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Brak pliku ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => Brak pliku ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => Brak pliku ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => Brak pliku ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => Brak pliku Task: {0A4AD910-57A4-42DA-A1EA-5381444E955C} - System32\Tasks\a2zLyrics-1-enabler => C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-enabler.exe <==== UWAGA Task: {19433B98-193A-43F1-8F28-89CE4EF2FE4F} - System32\Tasks\{19EA5E08-BE20-4D2C-B559-C0B4056848D9} => pcalua.exe -a "C:\Moje programy\ARC\Arc\ArcLauncher.exe" Task: {1FBE0AC9-DFC0-40C2-9F8D-A9B495A581B5} - System32\Tasks\a2zLyrics-1-codedownloader => C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-codedownloader.exe <==== UWAGA Task: {2340A46D-2DDA-41C3-9D6F-7B67BF3C81BC} - System32\Tasks\a2zLyrics-1-chromeinstaller => C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-chromeinstaller.exe <==== UWAGA Task: {3E28F3B5-AD26-4B4A-A5CF-86D5A861236F} - System32\Tasks\{471D7365-89FC-444E-A561-83FE84D4BA1F} => pcalua.exe -a "C:\Moje programy\GRY\Perfect World\Arc\ArcLauncher.exe" -d "C:\Moje programy\GRY\Perfect World\Arc" Task: {41FC95AC-AD6C-4C40-8F53-F15E054208CC} - System32\Tasks\{E9E77933-D9E0-4116-99B4-A5D3E68F7D8B} => pcalua.exe -a "C:\Moje programy\ARC\Arc\ArcLauncher.exe" -d C:\Users\Damian\Desktop Task: {55722322-E306-4C39-9001-9DA5EF0254F4} - System32\Tasks\{665920AB-4D95-4A17-9361-17AA0C1E06D1} => pcalua.exe -a E:\start.exe -d E:\ -c /s Task: {B33ABFDF-05D3-4702-8926-310BEEF5082F} - System32\Tasks\a2zLyrics-1-updater => C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-updater.exe <==== UWAGA Task: {BDBF377A-A20B-4CDA-A44B-E1D32F6B9088} - System32\Tasks\a2zLyrics-1-firefoxinstaller => C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-firefoxinstaller.exe <==== UWAGA Task: {C97F6C9C-4965-47B7-B8B4-145DA360030F} - System32\Tasks\{4AB81A8E-3AA6-45D4-BD2D-AF6ED5F505F3} => pcalua.exe -a "C:\Moje programy\GRY\SCDA\SCDALauncher.exe" -d "C:\Moje programy\GRY\SCDA" Task: C:\WINDOWS\Tasks\a2zLyrics-1-chromeinstaller.job => C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-chromeinstaller.exȅ/installcrx /agentregpath='a2zLyrics-1' /extensionfilepath C:\Program Files (x86)\a2zLyrics-1\41554.crx' /appid=41554 /srcid='000378' /subid='0' /zdata='0' /bic=5EF77779EAD040729587AA1F125DB40EIE /verifier=1f2ed37eeb5f7349fa2ce96ce7e0be7f /installerversion=1_28_153 /installerfullversion=1.28.153.3 /installationtime=1379924937 /statsdomain=hxxp:/stats.ourstatssrv.com /errorsdomain=hxxp:/errors.ourstatssrv.com <==== UWAGA Task: C:\WINDOWS\Tasks\a2zLyrics-1-codedownloader.job => C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-codedownloader.exeƮ/reinstallapp /agentregpath='a2zLyrics-1' /appid=41554 /srcid='000378' /subid='0' /zdata='0' /bic=5EF77779EAD040729587AA1F125DB40EIE /verifier=1f2ed37eeb5f7349fa2ce96ce7e0be7f /installerversion=1_28_153 /installerfullversion=1.28.153.3 /installationtime=1379924937 /statsdomain=hxxp:/stats.ourstatssrv.com /errorsdomain=hxxp:/errors.ourstatssrv.com /codedownloaddomain=hxxp:/app-static.crossrider.com <==== UWAGA Task: C:\WINDOWS\Tasks\a2zLyrics-1-enabler.job => C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-enabler.exeƃ/enablebho /agentregpath='a2zLyrics-1' /appid=41554 /srcid='000378' /subid='0' /zdata='0' /bic=5EF77779EAD040729587AA1F125DB40EIE /verifier=1f2ed37eeb5f7349fa2ce96ce7e0be7f /installerversion=1_28_153 /installationtime=1379924937 /statsdomain=hxxp:/stats.ourstatssrv.com /errorsdomain=hxxp:/errors.ourstatssrv.com <==== UWAGA Task: C:\WINDOWS\Tasks\a2zLyrics-1-firefoxinstaller.job => C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-firefoxinstaller.exe˨/installxpi /agentregpath='a2zLyrics-1' /extensionfilepath C:\Program Files (x86)\a2zLyrics-1\41554.xpi' /appid=41554 /srcid='000378' /subid='0' /zdata='0' /bic=5EF77779EAD040729587AA1F125DB40EIE /verifier=1f2ed37eeb5f7349fa2ce96ce7e0be7f /installerversion=1_28_153 /installerfullversion=1.28.153.3 /installationtime=1379924937 /statsdomain=hxxp:/stats.ourstatssrv.com /errorsdomain=hxxp:/errors.ourstatssrv.com /waitforbrowser=300 /extensionid=536c2ac1-a17c-4de1-a3f2-1b869a3be96c@2f6608a0-8c65-4bfe-8e2f-c65b5cc757cb.com /extensionversion=0.92 /prefsbranch=a536c2ac1a17c4de1a3f21b869a3be96c2f6608a08c654bfe8e2fc65b5cc757cbcom41554 /updateurl=hxxps:/w9u6a2p6.ssl.hwcdn.net/plugin/ff/update/41554.rdf <==== UWAGA Task: C:\WINDOWS\Tasks\a2zLyrics-1-updater.job => C:\Program Files (x86)\a2zLyrics-1\a2zLyrics-1-updater.exeǥ/runupdater /agentregpath='a2zLyrics-1' /appid=41554 /srcid='000378' /subid='0' /zdata='0' /bic=5EF77779EAD040729587AA1F125DB40EIE /verifier=1f2ed37eeb5f7349fa2ce96ce7e0be7f /installerversion=1_28_153 /installationtime=1379924937 /statsdomain=hxxp:/stats.ourstatssrv.com /errorsdomain=hxxp:/errors.ourstatssrv.com /monetizationdomain=hxxp:/stats.syncstatsdata.com /geoserviceurl=hxxp:/ipgeoapi.com/ /updatejsondomain=hxxp:/update.ourstatssrv.com <==== UWAGA DeleteKey: HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I DeleteKey: HKCU\Software\dobreprogramy DeleteKey: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 DeleteKey: HKLM\SOFTWARE\Wow6432Node\yoursites123Software DeleteKey: HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes DeleteKey: HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes DeleteKey: HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes RemoveDirectory: C:\AdwCleaner RemoveDirectory: C:\ProgramData\9WdM9 RemoveDirectory: C:\ProgramData\Microsoft\Windows\GameExplorer\{99F36FBA-8477-43D6-A933-EB11D377FF3B} CMD: del /q "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Neverwinter Nights 2\Moduły\Wrota Zachodu\Linki internetowe\Odwiedź witrynę pomocy technicznej Atari.lnk" CMD: del /q C:\Users\Damian\AppData\Roaming\Microsoft\Office\Niedawny\*.LNK CMD: netsh advfirewall reset EmptyTemp: ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. WdMan => serwis pomyślnie usunięto C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk => Skrót - argument pomyślnie usunięto. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Star Wars - The Old Republic.lnk => Skrót - argument pomyślnie usunięto. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk => Skrót - argument pomyślnie usunięto. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\cdp.pl\Wiedźmin 2 Edycja Rozszerzona\Wiedźmin 2 Edycja Rozszerzona.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Damian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Damian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Damian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Damian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Damian\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\5d696d521de238c3\Google Chrome.lnk => Skrót - argument pomyślnie usunięto. "HKLM\SOFTWARE\Policies\Google" => klucz pomyślnie usunięto HKLM\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command\\Default => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Wartość pomyślnie przywrócono Chrome HomePage => pomyślnie usunięto Chrome StartupUrls => pomyślnie usunięto Chrome DefaultSearchURL => pomyślnie usunięto HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono HKU\S-1-5-21-1946394690-2169185729-783039975-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKU\S-1-5-21-1946394690-2169185729-783039975-1001\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKU\S-1-5-21-1946394690-2169185729-783039975-1001\Software\Microsoft\Internet Explorer\Main\\First Home Page => Wartość pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => klucz pomyślnie usunięto HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => klucz nie znaleziono. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => klucz pomyślnie usunięto HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => klucz nie znaleziono. "HKU\S-1-5-21-1946394690-2169185729-783039975-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => klucz pomyślnie usunięto HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => klucz nie znaleziono. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => klucz pomyślnie usunięto HKCR\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => klucz nie znaleziono. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => klucz pomyślnie usunięto HKCR\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => klucz nie znaleziono. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => klucz pomyślnie usunięto HKCR\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => klucz nie znaleziono. "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive1" => klucz pomyślnie usunięto HKCR\Wow6432Node\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A} => klucz nie znaleziono. "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive2" => klucz pomyślnie usunięto HKCR\Wow6432Node\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => klucz nie znaleziono. "HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ SkyDrive3" => klucz pomyślnie usunięto HKCR\Wow6432Node\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524} => klucz nie znaleziono. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0A4AD910-57A4-42DA-A1EA-5381444E955C}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0A4AD910-57A4-42DA-A1EA-5381444E955C}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\a2zLyrics-1-enabler => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\a2zLyrics-1-enabler" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{19433B98-193A-43F1-8F28-89CE4EF2FE4F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{19433B98-193A-43F1-8F28-89CE4EF2FE4F}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\{19EA5E08-BE20-4D2C-B559-C0B4056848D9} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{19EA5E08-BE20-4D2C-B559-C0B4056848D9}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1FBE0AC9-DFC0-40C2-9F8D-A9B495A581B5}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1FBE0AC9-DFC0-40C2-9F8D-A9B495A581B5}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\a2zLyrics-1-codedownloader => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\a2zLyrics-1-codedownloader" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2340A46D-2DDA-41C3-9D6F-7B67BF3C81BC}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2340A46D-2DDA-41C3-9D6F-7B67BF3C81BC}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\a2zLyrics-1-chromeinstaller => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\a2zLyrics-1-chromeinstaller" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3E28F3B5-AD26-4B4A-A5CF-86D5A861236F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3E28F3B5-AD26-4B4A-A5CF-86D5A861236F}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\{471D7365-89FC-444E-A561-83FE84D4BA1F} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{471D7365-89FC-444E-A561-83FE84D4BA1F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{41FC95AC-AD6C-4C40-8F53-F15E054208CC}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{41FC95AC-AD6C-4C40-8F53-F15E054208CC}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\{E9E77933-D9E0-4116-99B4-A5D3E68F7D8B} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E9E77933-D9E0-4116-99B4-A5D3E68F7D8B}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{55722322-E306-4C39-9001-9DA5EF0254F4}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{55722322-E306-4C39-9001-9DA5EF0254F4}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\{665920AB-4D95-4A17-9361-17AA0C1E06D1} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{665920AB-4D95-4A17-9361-17AA0C1E06D1}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B33ABFDF-05D3-4702-8926-310BEEF5082F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B33ABFDF-05D3-4702-8926-310BEEF5082F}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\a2zLyrics-1-updater => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\a2zLyrics-1-updater" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BDBF377A-A20B-4CDA-A44B-E1D32F6B9088}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BDBF377A-A20B-4CDA-A44B-E1D32F6B9088}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\a2zLyrics-1-firefoxinstaller => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\a2zLyrics-1-firefoxinstaller" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C97F6C9C-4965-47B7-B8B4-145DA360030F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C97F6C9C-4965-47B7-B8B4-145DA360030F}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\{4AB81A8E-3AA6-45D4-BD2D-AF6ED5F505F3} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4AB81A8E-3AA6-45D4-BD2D-AF6ED5F505F3}" => klucz pomyślnie usunięto C:\WINDOWS\Tasks\a2zLyrics-1-chromeinstaller.job => pomyślnie przeniesiono C:\WINDOWS\Tasks\a2zLyrics-1-codedownloader.job => pomyślnie przeniesiono C:\WINDOWS\Tasks\a2zLyrics-1-enabler.job => pomyślnie przeniesiono C:\WINDOWS\Tasks\a2zLyrics-1-firefoxinstaller.job => pomyślnie przeniesiono C:\WINDOWS\Tasks\a2zLyrics-1-updater.job => pomyślnie przeniesiono HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I => klucz pomyślnie usunięto HKCU\Software\dobreprogramy => klucz pomyślnie usunięto HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 => niepowodzenie przy usuwaniu w pierwszym podejściu (ErrorCode: C0000121), zobacz kolejną linię. HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 => klucz pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\yoursites123Software => niepowodzenie przy usuwaniu w pierwszym podejściu (ErrorCode: C0000121), zobacz kolejną linię. HKLM\SOFTWARE\Wow6432Node\yoursites123Software => klucz pomyślnie usunięto HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes => klucz pomyślnie usunięto HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes => klucz pomyślnie usunięto HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes => klucz pomyślnie usunięto "C:\AdwCleaner" => pomyślnie usunięto. "C:\ProgramData\9WdM9" => pomyślnie usunięto. "C:\ProgramData\Microsoft\Windows\GameExplorer\{99F36FBA-8477-43D6-A933-EB11D377FF3B}" => pomyślnie usunięto. ========= del /q "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Neverwinter Nights 2\Moduły\Wrota Zachodu\Linki internetowe\Odwiedź witrynę pomocy technicznej Atari.lnk" ========= ========= Koniec CMD: ========= ========= del /q C:\Users\Damian\AppData\Roaming\Microsoft\Office\Niedawny\*.LNK ========= ========= Koniec CMD: ========= ========= netsh advfirewall reset ========= Ok. ========= Koniec CMD: ========= EmptyTemp: => 2.7 GB danych tymczasowych Usunięto. System wymagał restartu. ==== Koniec Fixlog 15:06:39 ====