Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 15-01-2015 Ran by Wujo at 2015-01-15 19:17:34 Run:2 Running from F:\Zawirusowania konkretne\frst Loaded Profiles: Wujo (Available profiles: Wujo) Boot Mode: Normal ============================================== Content of fixlist: ***************** HKU\S-1-5-21-3326234350-4050991087-374296464-1000\...\Policies\Explorer\Run: [Wistron] => C:\Users\Wujo\AppData\Roaming\CAD8B9\CAD8B9.exe C:\Program Files\AdTrustMedia C:\Program Files\Google C:\Program Files (x86)\1ClickDownload C:\Program Files (x86)\AdBlocknWatchu C:\Program Files (x86)\ExxsTriaSaviungs C:\Program Files (x86)\Zealot Software C:\ProgramData\AdBlocknWatchu C:\ProgramData\Adtrustmedia C:\ProgramData\c2d6b65770b43203 C:\ProgramData\COMODO C:\ProgramData\DAEMON Tools Lite C:\ProgramData\ExxsTriaSaviungs C:\ProgramData\Gadu-Gadu 10 C:\ProgramData\Google C:\ProgramData\InstallMate C:\ProgramData\Kaspersky Lab Setup Files C:\ProgramData\McAfee C:\ProgramData\Mozilla C:\ProgramData\savensshaeRe C:\ProgramData\SoftSafe C:\ProgramData\Uniblue C:\Users\Wujo\AppData\Local\AdTrustMedia C:\Users\Wujo\AppData\Local\ChomikBox C:\Users\Wujo\AppData\Local\Chromium C:\Users\Wujo\AppData\Local\Lollipop C:\Users\Wujo\AppData\Local\Opera C:\Users\Wujo\AppData\Local\Opera Software C:\Users\Wujo\AppData\Local\The Witcher C:\Users\Wujo\AppData\Local\The Witcher 2 C:\Users\Wujo\AppData\Local\Torch C:\Users\Wujo\AppData\Local\womble C:\Users\Wujo\AppData\LocalLow\Google C:\Users\Wujo\AppData\LocalLow\SimplyTech C:\Users\Wujo\AppData\LocalLow\Temp C:\Users\Wujo\AppData\Roaming\*.dat C:\Users\Wujo\AppData\Roaming\mcp.ico C:\Users\Wujo\AppData\Roaming\LiveSupport.exe_log.TXT.itqjnld C:\Users\Wujo\AppData\Roaming\regsvr32.exe_log.TXT.itqjnld C:\Users\Wujo\AppData\Roaming\EurekaLog C:\Users\Wujo\AppData\Roaming\Gadu-Gadu 10 C:\Users\Wujo\AppData\Roaming\GoforFiles C:\Users\Wujo\AppData\Roaming\Google C:\Users\Wujo\AppData\Roaming\IrfanView C:\Users\Wujo\AppData\Roaming\Opera C:\Users\Wujo\AppData\Roaming\Opera Software C:\Users\Wujo\AppData\Roaming\Softland C:\Users\Wujo\AppData\Roaming\uTorrent C:\Users\Wujo\AppData\Roaming\YourFileDownloader CMD: for /d %f in (C:\Users\Wujo\AppData\Local\{*}) do rd /s /q "%f" CMD: for /d %f in (C:\Users\Wujo\AppData\LocalLow\{*}) do rd /s /q "%f" ***************** HKU\S-1-5-21-3326234350-4050991087-374296464-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Wistron => Value not found. C:\Program Files\AdTrustMedia => Moved successfully. C:\Program Files\Google => Moved successfully. C:\Program Files (x86)\1ClickDownload => Moved successfully. C:\Program Files (x86)\AdBlocknWatchu => Moved successfully. C:\Program Files (x86)\ExxsTriaSaviungs => Moved successfully. C:\Program Files (x86)\Zealot Software => Moved successfully. C:\ProgramData\AdBlocknWatchu => Moved successfully. C:\ProgramData\Adtrustmedia => Moved successfully. C:\ProgramData\c2d6b65770b43203 => Moved successfully. C:\ProgramData\COMODO => Moved successfully. C:\ProgramData\DAEMON Tools Lite => Moved successfully. C:\ProgramData\ExxsTriaSaviungs => Moved successfully. C:\ProgramData\Gadu-Gadu 10 => Moved successfully. C:\ProgramData\Google => Moved successfully. C:\ProgramData\InstallMate => Moved successfully. C:\ProgramData\Kaspersky Lab Setup Files => Moved successfully. C:\ProgramData\McAfee => Moved successfully. C:\ProgramData\Mozilla => Moved successfully. C:\ProgramData\savensshaeRe => Moved successfully. C:\ProgramData\SoftSafe => Moved successfully. C:\ProgramData\Uniblue => Moved successfully. C:\Users\Wujo\AppData\Local\AdTrustMedia => Moved successfully. C:\Users\Wujo\AppData\Local\ChomikBox => Moved successfully. C:\Users\Wujo\AppData\Local\Chromium => Moved successfully. C:\Users\Wujo\AppData\Local\Lollipop => Moved successfully. C:\Users\Wujo\AppData\Local\Opera => Moved successfully. C:\Users\Wujo\AppData\Local\Opera Software => Moved successfully. C:\Users\Wujo\AppData\Local\The Witcher => Moved successfully. C:\Users\Wujo\AppData\Local\The Witcher 2 => Moved successfully. C:\Users\Wujo\AppData\Local\Torch => Moved successfully. C:\Users\Wujo\AppData\Local\womble => Moved successfully. C:\Users\Wujo\AppData\LocalLow\Google => Moved successfully. C:\Users\Wujo\AppData\LocalLow\SimplyTech => Moved successfully. C:\Users\Wujo\AppData\LocalLow\Temp => Moved successfully. C:\Users\Wujo\AppData\Roaming\*.dat => Moved successfully. C:\Users\Wujo\AppData\Roaming\mcp.ico => Moved successfully. C:\Users\Wujo\AppData\Roaming\LiveSupport.exe_log.TXT.itqjnld => Moved successfully. C:\Users\Wujo\AppData\Roaming\regsvr32.exe_log.TXT.itqjnld => Moved successfully. C:\Users\Wujo\AppData\Roaming\EurekaLog => Moved successfully. C:\Users\Wujo\AppData\Roaming\Gadu-Gadu 10 => Moved successfully. C:\Users\Wujo\AppData\Roaming\GoforFiles => Moved successfully. C:\Users\Wujo\AppData\Roaming\Google => Moved successfully. C:\Users\Wujo\AppData\Roaming\IrfanView => Moved successfully. C:\Users\Wujo\AppData\Roaming\Opera => Moved successfully. C:\Users\Wujo\AppData\Roaming\Opera Software => Moved successfully. C:\Users\Wujo\AppData\Roaming\Softland => Moved successfully. C:\Users\Wujo\AppData\Roaming\uTorrent => Moved successfully. C:\Users\Wujo\AppData\Roaming\YourFileDownloader => Moved successfully. ========= for /d %f in (C:\Users\Wujo\AppData\Local\{*}) do rd /s /q "%f" ========= ========= End of CMD: ========= ========= for /d %f in (C:\Users\Wujo\AppData\LocalLow\{*}) do rd /s /q "%f" ========= ========= End of CMD: ========= ==== End of Fixlog 19:17:44 ====