Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja:31-12-2015 Uruchomiony przez Paula (2016-01-06 13:39:45) Run:1 Uruchomiony z E:\Paula\Downloads Załadowane profile: Paula (Dostępne profile: Paula) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: R2 WdMan; C:\ProgramData\1WdM1\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego] S2 PDIHWCTL; \??\C:\WINDOWS\system32\drivers\pdihwctl.sys [X] S1 wfdrvr_vw_1_10_0_28; system32\drivers\wfdrvr_vw_1_10_0_28.sys [X] ShortcutWithArgument: C:\Users\Paula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 ShortcutWithArgument: C:\Users\Paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 ShortcutWithArgument: C:\Users\Paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 ShortcutWithArgument: C:\Users\Paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} SearchScopes: HKU\S-1-5-21-1157153237-1038460167-4205843471-1001 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} SearchScopes: HKU\S-1-5-21-1157153237-1038460167-4205843471-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1157153237-1038460167-4205843471-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} SearchScopes: HKU\S-1-5-21-1157153237-1038460167-4205843471-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1448204421&z=119d25c6d07a82b7559d655gfz1zcbaoce7zfgeebo&from=cor&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403 FF HKLM-x32\...\Firefox\Extensions: [default_newtabff@gmail.com] - C:\Users\Paula\AppData\Roaming\Mozilla\Firefox\Profiles\ypp9sdkk.default\extensions\default_newtabff@gmail.com => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [yahooprotected@gmail.com] - C:\Users\Paula\AppData\Roaming\Mozilla\Firefox\Profiles\ypp9sdkk.default\extensions\yahooprotected@gmail.com => nie znaleziono CHR HomePage: Default -> search.ask.com/?gct=hp CHR StartupUrls: Default -> "hxxp://www.yoursites123.com/?type=hp&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403" CHR DefaultSearchURL: Default -> hxxp://www.yoursites123.com/web/?type=ds&ts=1449659037&z=69a6b343808de011cb6e9a4g0zfzdt9q6w1t5edc9m&from=ient07021&uid=ST1000LM024XHN-M101MBB_S2SMJ9AD719403&q={searchTerms} CHR DefaultSearchKeyword: Default -> yoursites123 CHR DefaultSuggestURL: Default -> hxxp://ssmsp.ask.com/query?sstype=prefix&li=ff&q={searchTerms} CHR HKLM\...\Chrome\Extension: [aaaaaiabcopkplhgaedhbloeejhhankf] - C:\ProgramData\AskPartnerNetwork\Toolbar\Shared\CRX\aaaaaiabcopkplhgaedhbloeejhhankf.crx [2015-11-13] CHR HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [aaaaaiabcopkplhgaedhbloeejhhankf] - C:\ProgramData\AskPartnerNetwork\Toolbar\Shared\CRX\aaaaaiabcopkplhgaedhbloeejhhankf.crx [2015-11-13] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-07-21] HKLM\...\Run: [HotKeysCmds] => C:\WINDOWS\system32\hkcmd.exe HKLM\...\Run: [Persistence] => C:\WINDOWS\system32\igfxpers.exe ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll Brak pliku ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll Brak pliku ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll Brak pliku ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll Brak pliku Task: {06B6A2B4-C7D2-4DF4-9EAA-0BF963E0E4A5} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe FirewallRules: [{9B83FB95-1F4F-4F4B-865E-754ED4DC11FA}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{2EBF6869-8907-44D6-96D9-AF8D29724EBF}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe DeleteKey: HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I DeleteKey: HKCU\Software\dobreprogramy DeleteKey: HKLM\SOFTWARE\Wow6432Node\Mozilla\Thunderbird DeleteKey: HKLM\SOFTWARE\Wow6432Node\yoursites123Software RemoveDirectory: C:\Program Files (x86)\AskPartnerNetwork RemoveDirectory: C:\Program Files (x86)\SFK RemoveDirectory: C:\ProgramData\1WdM1 RemoveDirectory: C:\ProgramData\FWMiniProF RemoveDirectory: C:\ProgramData\rWdMr RemoveDirectory: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picexa RemoveDirectory: C:\Users\Paula\AppData\Roaming\istartsurf RemoveDirectory: C:\Users\Paula\AppData\Roaming\Picexa Viewer RemoveDirectory: C:\Users\Paula\AppData\Roaming\Shortcut RemoveDirectory: C:\Users\Paula\AppData\Roaming\TSv C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat C:\Users\Paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Picexa.lnk C:\Users\Public\Desktop\Picexa.lnk C:\WINDOWS\SysWOW64\pl.html EmptyTemp: ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. WdMan => serwis pomyślnie usunięto PDIHWCTL => serwis pomyślnie usunięto wfdrvr_vw_1_10_0_28 => serwis pomyślnie usunięto C:\Users\Paula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk => Skrót - argument pomyślnie usunięto. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk => Skrót - argument pomyślnie usunięto. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk => Skrót - argument pomyślnie usunięto. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\Software\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\Software\Microsoft\Internet Explorer\Main\\Search Bar => Wartość pomyślnie usunięto HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie przywrócono "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => klucz pomyślnie usunięto HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => klucz nie znaleziono. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie przywrócono "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => klucz pomyślnie usunięto HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => klucz nie znaleziono. HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie usunięto "HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => klucz pomyślnie usunięto HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => klucz nie znaleziono. "HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => klucz pomyślnie usunięto HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => klucz nie znaleziono. "HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" => klucz pomyślnie usunięto HKCR\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} => klucz nie znaleziono. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\default_newtabff@gmail.com => Wartość pomyślnie usunięto HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\yahooprotected@gmail.com => Wartość pomyślnie usunięto Chrome HomePage => pomyślnie usunięto Chrome StartupUrls => pomyślnie usunięto Chrome DefaultSearchURL => pomyślnie usunięto Chrome DefaultSearchKeyword => pomyślnie usunięto Chrome DefaultSuggestURL => pomyślnie usunięto HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf => klucz nie znaleziono. "C:\ProgramData\AskPartnerNetwork\Toolbar\Shared\CRX\aaaaaiabcopkplhgaedhbloeejhhankf.crx" => nie znaleziono. "HKU\S-1-5-21-1157153237-1038460167-4205843471-1001\SOFTWARE\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd" => klucz pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf => klucz nie znaleziono. "C:\ProgramData\AskPartnerNetwork\Toolbar\Shared\CRX\aaaaaiabcopkplhgaedhbloeejhhankf.crx" => nie znaleziono. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck" => klucz pomyślnie usunięto Nie można przenieść "C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx" => Zaplanowany do przeniesienia przy restarcie. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\HotKeysCmds => Wartość pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Persistence => Wartość pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SugarSyncBackedUp" => klucz pomyślnie usunięto "HKCR\CLSID\{0C4A258A-3F3B-4FFF-80A7-9B3BEC139472}" => klucz pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SugarSyncPending" => klucz pomyślnie usunięto "HKCR\CLSID\{62CCD8E3-9C21-41E1-B55E-1E26DFC68511}" => klucz pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SugarSyncRoot" => klucz pomyślnie usunięto "HKCR\CLSID\{A759AFF6-5851-457D-A540-F4ECED148351}" => klucz pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\SugarSyncShared" => klucz pomyślnie usunięto "HKCR\CLSID\{1574C9EF-7D58-488F-B358-8B78C1538F51}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{06B6A2B4-C7D2-4DF4-9EAA-0BF963E0E4A5}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{06B6A2B4-C7D2-4DF4-9EAA-0BF963E0E4A5}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\Lenovo\Lenovo Customer Feedback Program => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Lenovo Customer Feedback Program" => klucz pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9B83FB95-1F4F-4F4B-865E-754ED4DC11FA} => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2EBF6869-8907-44D6-96D9-AF8D29724EBF} => Wartość pomyślnie usunięto HKCU\Software\1Q1F1S1C1P1E1C1F1N1C1T1H2UtF1E1I => klucz pomyślnie usunięto HKCU\Software\dobreprogramy => klucz pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Mozilla\Thunderbird => niepowodzenie przy usuwaniu w pierwszym podejściu (ErrorCode: C0000121), zobacz kolejną linię. HKLM\SOFTWARE\Wow6432Node\Mozilla\Thunderbird => klucz pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\yoursites123Software => niepowodzenie przy usuwaniu w pierwszym podejściu (ErrorCode: C0000121), zobacz kolejną linię. HKLM\SOFTWARE\Wow6432Node\yoursites123Software => klucz pomyślnie usunięto "C:\Program Files (x86)\AskPartnerNetwork" => nie znaleziono. "C:\Program Files (x86)\SFK" => nie znaleziono. "C:\ProgramData\1WdM1" => pomyślnie usunięto. "C:\ProgramData\FWMiniProF" => pomyślnie usunięto. "C:\ProgramData\rWdMr" => pomyślnie usunięto. "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picexa" => pomyślnie usunięto. "C:\Users\Paula\AppData\Roaming\istartsurf" => pomyślnie usunięto. "C:\Users\Paula\AppData\Roaming\Picexa Viewer" => pomyślnie usunięto. "C:\Users\Paula\AppData\Roaming\Shortcut" => pomyślnie usunięto. "C:\Users\Paula\AppData\Roaming\TSv" => nie znaleziono. C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat => pomyślnie przeniesiono C:\Users\Paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Picexa.lnk => pomyślnie przeniesiono "C:\Users\Public\Desktop\Picexa.lnk" => nie znaleziono. C:\WINDOWS\SysWOW64\pl.html => pomyślnie przeniesiono EmptyTemp: => 9.3 GB danych tymczasowych Usunięto. Rezultat przenoszenia plików przy restarcie (Tryb startu: Normal) (Data i godzina: 2016-01-06 13:42:48) "C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx" => Nie można przenieść ==== Koniec Fixlog 13:42:48 ====