Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 02-10-2013 Ran by private at 2013-10-14 15:46:00 Run:1 Running from C:\Users\private\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.searchgol.com/?babsrc=HP_ss&mntrId=106E00FFAE90A036&affID=125032&tsp=5024 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://en.v9.com/?utm_source=b&utm_medium=update&from=update&uid=WDCXWD10EZEX-60ZF5A0_WD-WMC1S303103631036&ts=1369827968 HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www.delta-search.com/?affID=119816&tt=gc_&babsrc=HP_ss&mntrId=106E00FFAE90A036 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://en.v9.com/?utm_source=b&utm_medium=update&from=update&uid=WDCXWD10EZEX-60ZF5A0_WD-WMC1S303103631036&ts=1369827968 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://en.v9.com/?utm_source=b&utm_medium=update&from=update&uid=WDCXWD10EZEX-60ZF5A0_WD-WMC1S303103631036&ts=1369827968 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://en.v9.com/?utm_source=b&utm_medium=update&from=update&uid=WDCXWD10EZEX-60ZF5A0_WD-WMC1S303103631036&ts=1369827968 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://en.v9.com/?utm_source=b&utm_medium=update&from=update&uid=WDCXWD10EZEX-60ZF5A0_WD-WMC1S303103631036&ts=1369827968 StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://en.v9.com/?utm_source=b&utm_medium=update&from=update&uid=WDCXWD10EZEX-60ZF5A0_WD-WMC1S303103631036&ts=1369827968 SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=pbr&from=pbr&uid=WDCXWD10EZEX-60ZF5A0_WD-WMC1S303103631036&ts=4587568 SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=pbr&from=pbr&uid=WDCXWD10EZEX-60ZF5A0_WD-WMC1S303103631036&ts=4587568 SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=pbr&from=pbr&uid=WDCXWD10EZEX-60ZF5A0_WD-WMC1S303103631036&ts=4587568 SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=pbr&from=pbr&uid=WDCXWD10EZEX-60ZF5A0_WD-WMC1S303103631036&ts=4587568 SearchScopes: HKCU - DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTerms}&affID=119816&tt=gc_&babsrc=SP_ss_sps&mntrId=106E00FFAE90A036 SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTerms}&affID=119816&tt=gc_&babsrc=SP_ss_sps&mntrId=106E00FFAE90A036 BHO-x32: DealPly Shopping - {4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7} - No File FF Plugin-x32: @tools.bdupdater.com/BonanzaDealsLive Update;version=3 - C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals) FF Plugin-x32: @tools.bdupdater.com/BonanzaDealsLive Update;version=9 - C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll (BonanzaDeals) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\delta-homes.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\qvo6.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\v9.xml FF StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&from=newgdp&uid=WDCXWD10EZEX-60ZF5A0_WD-WMC1S303103631036&ts=1373384933 AppInit_DLLs-x32: c:\progra~3\browse~1\261519~1.190\{c16c1~1\browse~1.dll [ ] () Task: {193729B6-CB10-4AC7-9A94-0902ADE47245} - System32\Tasks\AdobeFlashPlayerUpdate 2 => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe Task: {26B24E6E-37A9-4F89-84DC-ECC294553CD5} - System32\Tasks\DealPlyUpdate => C:\Program Task: {604D1970-680E-473A-84FE-7E0B277C2143} - System32\Tasks\BonanzaDealsLiveUpdateTaskMachineCore => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe [2013-10-03] (BonanzaDeals) Task: {8C40C45D-472E-478C-9FF6-00149161C63E} - System32\Tasks\BonanzaDealsLiveUpdateTaskMachineUA => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe [2013-10-03] (BonanzaDeals) Task: {93965F96-4B14-47AB-9B68-ACB7D7517B24} - System32\Tasks\DealPly => C:\Users\private\AppData\Roaming\DealPly\UPDATE~1\UPDATE~1.EXE Task: {96BDE704-0118-4889-851C-0A5E6713991B} - System32\Tasks\CPU Grid Computing => C:\Windows\SysWOW64\dfrg\runner.exe [2013-09-19] () Task: {986EEFC2-133D-4926-8583-192CAFE7A453} - System32\Tasks\BonanzaDealsUpdate => C:\Program Task: {A5FE45EB-FECE-49E1-BAF9-CA4FA61BB50C} - System32\Tasks\Omiga Plus RunAsStdUser => C:\Program Files (x86)\Omiga Plus\omigaplus.exe Task: {AF121485-66C6-41D4-BBE2-E063361346D9} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe Task: {CE104CC6-5659-4D9A-AAAA-BA4FF44031CF} - System32\Tasks\DigitalSite => C:\Users\private\AppData\Roaming\DigitalSite\UpdateProc\UpdateTask.exe [2013-04-12] () Task: {D687AF5D-7E9A-4381-9887-BA732940E513} - System32\Tasks\AdobeFlashPlayerUpdate => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe Task: {E069ED27-9833-4D7E-9162-5FE634848831} - System32\Tasks\EPUpdater => C:\Users\private\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe Task: {FB26A949-A582-473E-B605-B4F7334F513B} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe Task: C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe Task: C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe Task: C:\Windows\Tasks\DigitalSite.job => C:\Users\private\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE S2 bonanzadealslive; C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe [148976 2013-10-03] (BonanzaDeals) S3 bonanzadealslivem; C:\Program Files (x86)\BonanzaDealsLive\Update\BonanzaDealsLive.exe [148976 2013-10-03] (BonanzaDeals) R2 Update WebConnect; C:\Program Files (x86)\WebConnect\updateWebConnect.exe [65320 2013-10-04] (WebConnect) R2 Util WebConnect; C:\Program Files (x86)\WebConnect\bin\utilWebConnect.exe [65320 2013-10-04] (WebConnect) S3 gdrv; \??\C:\Windows\gdrv.sys [x] S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [x] S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [x] C:\Windows\SysWOW64\dfrg C:\ProgramData\eSafe C:\Program Files (x86)\FreeTime C:\Users\private\AppData\Local\Babylon C:\Users\private\AppData\Local\Google\Chrome C:\Users\private\AppData\Roaming\BabSolution C:\Users\private\AppData\Roaming\Babylon C:\Users\private\AppData\Roaming\DealPly C:\Users\private\AppData\Roaming\Desk 365 C:\Users\private\AppData\Roaming\DigitalSite C:\Users\private\AppData\Roaming\eDownload C:\Users\private\AppData\Roaming\eIntaller C:\Users\private\AppData\Roaming\eUpdate C:\Users\private\AppData\Roaming\File Scout C:\Users\private\AppData\Roaming\Omiga Plus C:\Users\private\Downloads\FormatFactory(13295).exe Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Google\Chrome /f CMD: netsh advfirewall reset ***************** HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\bProtector Start Page => Value deleted successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key deleted successfully. HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\bProtectorDefaultScope => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key deleted successfully. HKCR\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7} => Key deleted successfully. HKLM\Software\Wow6432Node\MozillaPlugins\@tools.bdupdater.com/BonanzaDealsLive Update;version=3 => Key deleted successfully. C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll => Moved successfully. HKLM\Software\Wow6432Node\MozillaPlugins\@tools.bdupdater.com/BonanzaDealsLive Update;version=9 => Key deleted successfully. C:\Program Files (x86)\BonanzaDealsLive\Update\1.3.23.0\npGoogleUpdate3.dll not found. C:\Program Files (x86)\mozilla firefox\searchplugins\delta-homes.xml => Moved successfully. C:\Program Files (x86)\mozilla firefox\searchplugins\qvo6.xml => Moved successfully. C:\Program Files (x86)\mozilla firefox\searchplugins\v9.xml => Moved successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{193729B6-CB10-4AC7-9A94-0902ADE47245} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{193729B6-CB10-4AC7-9A94-0902ADE47245} => Key deleted successfully. C:\Windows\System32\Tasks\AdobeFlashPlayerUpdate 2 => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate 2 => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{26B24E6E-37A9-4F89-84DC-ECC294553CD5} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{26B24E6E-37A9-4F89-84DC-ECC294553CD5} => Key deleted successfully. C:\Windows\System32\Tasks\DealPlyUpdate => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyUpdate => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{604D1970-680E-473A-84FE-7E0B277C2143} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{604D1970-680E-473A-84FE-7E0B277C2143} => Key deleted successfully. C:\Windows\System32\Tasks\BonanzaDealsLiveUpdateTaskMachineCore => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BonanzaDealsLiveUpdateTaskMachineCore => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8C40C45D-472E-478C-9FF6-00149161C63E} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8C40C45D-472E-478C-9FF6-00149161C63E} => Key deleted successfully. C:\Windows\System32\Tasks\BonanzaDealsLiveUpdateTaskMachineUA => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BonanzaDealsLiveUpdateTaskMachineUA => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{93965F96-4B14-47AB-9B68-ACB7D7517B24} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{93965F96-4B14-47AB-9B68-ACB7D7517B24} => Key deleted successfully. C:\Windows\System32\Tasks\DealPly => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPly => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{96BDE704-0118-4889-851C-0A5E6713991B} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96BDE704-0118-4889-851C-0A5E6713991B} => Key deleted successfully. C:\Windows\System32\Tasks\CPU Grid Computing => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CPU Grid Computing => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{986EEFC2-133D-4926-8583-192CAFE7A453} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{986EEFC2-133D-4926-8583-192CAFE7A453} => Key deleted successfully. C:\Windows\System32\Tasks\BonanzaDealsUpdate => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BonanzaDealsUpdate => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A5FE45EB-FECE-49E1-BAF9-CA4FA61BB50C} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A5FE45EB-FECE-49E1-BAF9-CA4FA61BB50C} => Key deleted successfully. C:\Windows\System32\Tasks\Omiga Plus RunAsStdUser => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Omiga Plus RunAsStdUser => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AF121485-66C6-41D4-BBE2-E063361346D9} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AF121485-66C6-41D4-BBE2-E063361346D9} => Key deleted successfully. C:\Windows\System32\Tasks\Game_Booster_AutoUpdate => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Game_Booster_AutoUpdate => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CE104CC6-5659-4D9A-AAAA-BA4FF44031CF} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CE104CC6-5659-4D9A-AAAA-BA4FF44031CF} => Key deleted successfully. C:\Windows\System32\Tasks\DigitalSite => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DigitalSite => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D687AF5D-7E9A-4381-9887-BA732940E513} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D687AF5D-7E9A-4381-9887-BA732940E513} => Key deleted successfully. C:\Windows\System32\Tasks\AdobeFlashPlayerUpdate => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E069ED27-9833-4D7E-9162-5FE634848831} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E069ED27-9833-4D7E-9162-5FE634848831} => Key deleted successfully. C:\Windows\System32\Tasks\EPUpdater => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EPUpdater => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FB26A949-A582-473E-B605-B4F7334F513B} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FB26A949-A582-473E-B605-B4F7334F513B} => Key deleted successfully. C:\Windows\System32\Tasks\Desk 365 RunAsStdUser => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Desk 365 RunAsStdUser => Key deleted successfully. C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job => Moved successfully. C:\Windows\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job => Moved successfully. C:\Windows\Tasks\DigitalSite.job => Moved successfully. bonanzadealslive => Service deleted successfully. bonanzadealslivem => Service deleted successfully. Update WebConnect => Service deleted successfully. Util WebConnect => Service deleted successfully. gdrv => Service deleted successfully. nvvad_WaveExtensible => Service deleted successfully. WinRing0_1_2_0 => Service deleted successfully. C:\Windows\SysWOW64\dfrg => Moved successfully. C:\ProgramData\eSafe => Moved successfully. C:\Program Files (x86)\FreeTime => Moved successfully. C:\Users\private\AppData\Local\Babylon => Moved successfully. C:\Users\private\AppData\Local\Google\Chrome => Moved successfully. C:\Users\private\AppData\Roaming\BabSolution => Moved successfully. C:\Users\private\AppData\Roaming\Babylon => Moved successfully. "C:\Users\private\AppData\Roaming\DealPly" directory move: C:\Users\private\AppData\Roaming\DealPly\UpdateProc\config.dat => Moved successfully. Could not move "C:\Users\private\AppData\Roaming\DealPly" directory. => Scheduled to move on reboot. C:\Users\private\AppData\Roaming\Desk 365 => Moved successfully. "C:\Users\private\AppData\Roaming\DigitalSite" directory move: C:\Users\private\AppData\Roaming\DigitalSite\UpdateProc\config.dat => Moved successfully. C:\Users\private\AppData\Roaming\DigitalSite\UpdateProc\prod.dat => Moved successfully. C:\Users\private\AppData\Roaming\DigitalSite\UpdateProc\STTL.DAT => Moved successfully. C:\Users\private\AppData\Roaming\DigitalSite\UpdateProc\TTL.DAT => Moved successfully. C:\Users\private\AppData\Roaming\DigitalSite\UpdateProc\UpdateTask.exe => Moved successfully. Could not move "C:\Users\private\AppData\Roaming\DigitalSite" directory. => Scheduled to move on reboot. C:\Users\private\AppData\Roaming\eDownload => Moved successfully. C:\Users\private\AppData\Roaming\eIntaller => Moved successfully. C:\Users\private\AppData\Roaming\eUpdate => Moved successfully. C:\Users\private\AppData\Roaming\File Scout => Moved successfully. C:\Users\private\AppData\Roaming\Omiga Plus => Moved successfully. C:\Users\private\Downloads\FormatFactory(13295).exe => Moved successfully. ========= reg delete HKLM\SOFTWARE\Wow6432Node\Google\Chrome /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= netsh advfirewall reset ========= Ok. ========= End of CMD: ========= =========== Result of Scheduled Files to move =========== "C:\Users\private\AppData\Roaming\DealPly" => Directory could not move. "C:\Users\private\AppData\Roaming\DigitalSite" => Directory could not move. ==== End of Fixlog ====