Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 03-01-2014 Ran by Smółko Anna at 2014-01-03 13:12:02 Run:1 Running from D:\Dokumenty\Czyszczenie Boot Mode: Normal ============================================== Content of fixlist: ***************** StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = FF SearchEngineOrder.1: Ask Search FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Smółko Anna\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File HKCU\...\Policies\Explorer: [GreyMSIAds] 0 HKCU\...\Policies\Explorer: [] Task: {1F1B35DE-5DF6-4305-97A6-7208FAC3AFB5} - System32\Tasks\{E515B51A-F57B-4A9C-B526-B5D373445358} => D:\Pobrane\LeagueofLegends.exe Task: {1F5731F8-0E68-4E25-B8C8-19F1A8C0E230} - System32\Tasks\{A82F500D-5910-49AF-B06C-6B981E016CC5} => D:\Pobrane\LeagueofLegends.exe Task: {215918CD-1B7F-46DC-851D-F0EA9B2792B7} - System32\Tasks\{4B12922E-2E18-4472-B810-E69575C74B75} => D:\Pobrane\LeagueofLegends.exe Task: {3CC4930E-1380-4F74-9574-181F67438C0A} - System32\Tasks\{4CB1FB93-3A6A-4E0E-AA7B-6CA43E5692E9} => D:\Pobrane\LeagueofLegends.exe Task: {5C65894E-5036-419C-A644-AD5227F3C426} - System32\Tasks\{10EE5904-3E72-4271-BCF0-7411BCDE8889} => D:\Pobrane\LeagueofLegends.exe Task: {70702582-F3A2-46DB-AA46-41DABED21166} - System32\Tasks\{89DC3D1B-7DE7-493C-91A4-BC19D6DF47CC} => D:\Pobrane\LeagueofLegends.exe Task: {ABFD158E-BDF2-4156-8181-78CB2C0D95BD} - System32\Tasks\{ABFDA00F-4D63-4679-A0D6-856ECFE8BAE2} => D:\Pobrane\LeagueofLegends.exe Task: {B6C16C7F-506D-42EB-9A8A-FDCE2F9E7922} - System32\Tasks\{61AAF6A6-2A4F-403C-BFD0-616D7884E3FD} => D:\Pobrane\LeagueofLegends.exe Task: {E0C80A53-72ED-45D1-9356-CEE13480B3BF} - System32\Tasks\{5C960295-0685-4F7F-9D20-139EED0760CA} => D:\Pobrane\LeagueofLegends.exe Task: {F78859A1-AA93-426B-8A84-1AB60354CBAC} - System32\Tasks\{27695E0E-C8AA-4A08-90B2-7AA17D5D1312} => D:\Pobrane\LeagueofLegends.exe C:\Users\Smółko Anna\.android C:\Users\Smółko Anna\daemonprocess.txt C:\Users\Smółko Anna\AppData\Local\cache C:\Users\Smółko Anna\AppData\Local\genienext C:\Users\Smółko Anna\AppData\Roaming\newnext.me Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ***************** HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. Firefox SearchEngineOrder.1 deleted successfully. HKLM\Software\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer => Key deleted successfully. C:\Windows\system32\Adobe\Director\np32dsw.dll not found. HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin => Key deleted successfully. C:\Users\Smółko Anna\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll not found. HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\GreyMSIAds => Value deleted successfully. HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => Value deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1F1B35DE-5DF6-4305-97A6-7208FAC3AFB5} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1F1B35DE-5DF6-4305-97A6-7208FAC3AFB5} => Key deleted successfully. C:\Windows\System32\Tasks\{E515B51A-F57B-4A9C-B526-B5D373445358} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E515B51A-F57B-4A9C-B526-B5D373445358} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1F5731F8-0E68-4E25-B8C8-19F1A8C0E230} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1F5731F8-0E68-4E25-B8C8-19F1A8C0E230} => Key deleted successfully. C:\Windows\System32\Tasks\{A82F500D-5910-49AF-B06C-6B981E016CC5} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{A82F500D-5910-49AF-B06C-6B981E016CC5} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{215918CD-1B7F-46DC-851D-F0EA9B2792B7} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{215918CD-1B7F-46DC-851D-F0EA9B2792B7} => Key deleted successfully. C:\Windows\System32\Tasks\{4B12922E-2E18-4472-B810-E69575C74B75} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4B12922E-2E18-4472-B810-E69575C74B75} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3CC4930E-1380-4F74-9574-181F67438C0A} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3CC4930E-1380-4F74-9574-181F67438C0A} => Key deleted successfully. C:\Windows\System32\Tasks\{4CB1FB93-3A6A-4E0E-AA7B-6CA43E5692E9} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4CB1FB93-3A6A-4E0E-AA7B-6CA43E5692E9} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5C65894E-5036-419C-A644-AD5227F3C426} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C65894E-5036-419C-A644-AD5227F3C426} => Key deleted successfully. C:\Windows\System32\Tasks\{10EE5904-3E72-4271-BCF0-7411BCDE8889} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{10EE5904-3E72-4271-BCF0-7411BCDE8889} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{70702582-F3A2-46DB-AA46-41DABED21166} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{70702582-F3A2-46DB-AA46-41DABED21166} => Key deleted successfully. C:\Windows\System32\Tasks\{89DC3D1B-7DE7-493C-91A4-BC19D6DF47CC} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{89DC3D1B-7DE7-493C-91A4-BC19D6DF47CC} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ABFD158E-BDF2-4156-8181-78CB2C0D95BD} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ABFD158E-BDF2-4156-8181-78CB2C0D95BD} => Key deleted successfully. C:\Windows\System32\Tasks\{ABFDA00F-4D63-4679-A0D6-856ECFE8BAE2} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{ABFDA00F-4D63-4679-A0D6-856ECFE8BAE2} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B6C16C7F-506D-42EB-9A8A-FDCE2F9E7922} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B6C16C7F-506D-42EB-9A8A-FDCE2F9E7922} => Key deleted successfully. C:\Windows\System32\Tasks\{61AAF6A6-2A4F-403C-BFD0-616D7884E3FD} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{61AAF6A6-2A4F-403C-BFD0-616D7884E3FD} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0C80A53-72ED-45D1-9356-CEE13480B3BF} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0C80A53-72ED-45D1-9356-CEE13480B3BF} => Key deleted successfully. C:\Windows\System32\Tasks\{5C960295-0685-4F7F-9D20-139EED0760CA} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{5C960295-0685-4F7F-9D20-139EED0760CA} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F78859A1-AA93-426B-8A84-1AB60354CBAC} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F78859A1-AA93-426B-8A84-1AB60354CBAC} => Key deleted successfully. C:\Windows\System32\Tasks\{27695E0E-C8AA-4A08-90B2-7AA17D5D1312} => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{27695E0E-C8AA-4A08-90B2-7AA17D5D1312} => Key deleted successfully. C:\Users\Smółko Anna\.android => Moved successfully. C:\Users\Smółko Anna\daemonprocess.txt => Moved successfully. C:\Users\Smółko Anna\AppData\Local\cache => Moved successfully. C:\Users\Smółko Anna\AppData\Local\genienext => Moved successfully. C:\Users\Smółko Anna\AppData\Roaming\newnext.me => Moved successfully. ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ==== End of Fixlog ====