Fix result of Farbar Recovery Scan Tool (x64) Version: 30-09-2016 Ran by Pati (03-10-2016 22:08:22) Run:2 Running from D:\zz NAPRAWA Loaded Profiles: Pati (Available Profiles: Pati) Boot Mode: Normal ============================================== fixlist content: ***************** DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking RemoveDirectory: C:\FRST\Quarantine RemoveDirectory: C:\Program Files\KMSpico RemoveDirectory: C:\Program Files (x86)\{516D9F5A-D8E3-485A-838A-AE688ED07E5C} RemoveDirectory: C:\Program Files (x86)\Bvafivagh RemoveDirectory: C:\Program Files (x86)\Crecult RemoveDirectory: C:\Program Files (x86)\Crecult_ RemoveDirectory: C:\Program Files (x86)\Spybot - Search & Destroy 2 RemoveDirectory: C:\Program Files (x86)\ynl265E RemoveDirectory: C:\ProgramData\Oracle RemoveDirectory: C:\ProgramData\Sun RemoveDirectory: C:\ProgramData\Spybot - Search & Destroy RemoveDirectory: C:\ProgramData\tmp RemoveDirectory: C:\Users\Pati\AppData\Local\aJDnMEZEGRf4Xn RemoveDirectory: C:\Users\Pati\AppData\Local\CEF RemoveDirectory: C:\Users\Pati\AppData\Local\fwoshdrauspliition RemoveDirectory: C:\Users\Pati\AppData\Local\IRsoft RemoveDirectory: C:\Users\Pati\AppData\Local\tumilyfutakcurerk RemoveDirectory: C:\Users\Pati\AppData\Local\TyDJsmUFtOiZIvu RemoveDirectory: C:\Users\Pati\AppData\Local\Udmedia RemoveDirectory: C:\Users\Pati\AppData\Local\webkit RemoveDirectory: C:\Users\Pati\AppData\Local\Google\Chrome\User Data\Default RemoveDirectory: C:\Users\Pati\AppData\Local\Google\Chrome\User Data\qudachmupishplalily RemoveDirectory: C:\Users\Pati\AppData\LocalLow\Sun RemoveDirectory: C:\Users\Pati\AppData\Roaming\Mozilla ListPermissions: C:\Users\Pati\Cookies ***************** HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking => could not remove at first attempt (ErrorCode: C0000121), see next line. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking => key removed successfully "C:\FRST\Quarantine" => removed successfully. "C:\Program Files\KMSpico" => removed successfully. "C:\Program Files (x86)\{516D9F5A-D8E3-485A-838A-AE688ED07E5C}" => removed successfully. "C:\Program Files (x86)\Bvafivagh" => removed successfully. "C:\Program Files (x86)\Crecult" => removed successfully. "C:\Program Files (x86)\Crecult_" => removed successfully. "C:\Program Files (x86)\Spybot - Search & Destroy 2" => removed successfully. "C:\Program Files (x86)\ynl265E" => removed successfully. "C:\ProgramData\Oracle" => removed successfully. "C:\ProgramData\Sun" => removed successfully. "C:\ProgramData\Spybot - Search & Destroy" => removed successfully. "C:\ProgramData\tmp" => removed successfully. "C:\Users\Pati\AppData\Local\aJDnMEZEGRf4Xn" => removed successfully. "C:\Users\Pati\AppData\Local\CEF" => removed successfully. "C:\Users\Pati\AppData\Local\fwoshdrauspliition" => removed successfully. "C:\Users\Pati\AppData\Local\IRsoft" => removed successfully. "C:\Users\Pati\AppData\Local\tumilyfutakcurerk" => removed successfully. "C:\Users\Pati\AppData\Local\TyDJsmUFtOiZIvu" => removed successfully. "C:\Users\Pati\AppData\Local\Udmedia" => removed successfully. "C:\Users\Pati\AppData\Local\webkit" => removed successfully. "C:\Users\Pati\AppData\Local\Google\Chrome\User Data\Default" => removed successfully. "C:\Users\Pati\AppData\Local\Google\Chrome\User Data\qudachmupishplalily" => removed successfully. "C:\Users\Pati\AppData\LocalLow\Sun" => removed successfully. "C:\Users\Pati\AppData\Roaming\Mozilla" => removed successfully. =================================== permissions of "C:\Users\Pati\Cookies": Owner: NT AUTHORITY\SYSTEM DACL(AI): EVERYONE DENY LIST (NI) NT AUTHORITY\SYSTEM ALLOW FULL (OI-CI-I) BUILTIN\Administrators ALLOW FULL (OI-CI-I) PAT-KOMPUTER\Pati ALLOW FULL (OI-CI-I) =================================== ==== End of Fixlog 22:11:20 ====