Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 17-04-2014 01 Ran by Vision at 2014-04-19 13:48:30 Run:1 Running from D:\ Boot Mode: Normal ============================================== Content of fixlist: ***************** (Cherished Technololgy LIMITED) C:\Documents and Settings\All Users\Dane aplikacji\WPM\wprotectmanager.exe () c:\support\couponsupport.exe () C:\Documents and Settings\Vision\Dane aplikacji\defaulttab\defaulttab\dtupdate.exe (cake bake) C:\Program Files\Web Cake\WebCakeDesktop.Updater.exe () C:\Program Files\Mobogenie\DaemonProcess.exe () C:\Program Files\Mobogenie\MgAssist.exe R2 d93cc0a5; C:\Documents and Settings\All Users\Dane aplikacji\Assistant\AssistantSvc.dll [177488 2014-03-26] () S2 dealplylive; C:\Program Files\DealPlyLive\Update\DealPlyLive.exe [148000 2013-12-12] (DealPly Technologies Ltd) S3 dealplylivem; C:\Program Files\DealPlyLive\Update\DealPlyLive.exe [148000 2013-12-12] (DealPly Technologies Ltd) R2 DefaultTabUpdate; C:\Documents and Settings\Vision\Dane aplikacji\defaulttab\defaulttab\dtupdate.exe [107520 2013-11-04] () R4 MgAssistService; C:\Program Files\Mobogenie\MgAssist.exe [70848 2014-04-18] () R2 WebCakeUpdater; C:\Program Files\Web Cake\WebCakeDesktop.Updater.exe [51992 2013-08-02] (cake bake) R2 Wpm; C:\Documents and Settings\All Users\Dane aplikacji\WPM\wprotectmanager.exe [499856 2014-01-02] (Cherished Technololgy LIMITED) S2 WsysSvc; C:\Documents and Settings\All Users\Dane aplikacji\eSafe\eGdpSvc.exe [X] S3 AndNetDiag; system32\DRIVERS\lgandnetdiag.sys [X] S3 ANDNetModem; system32\DRIVERS\lgandnetmodem.sys [X] S3 andnetndis; system32\DRIVERS\lgandnetndis.sys [X] S3 catchme; \??\C:\DOCUME~1\Vision\USTAWI~1\Temp\catchme.sys [X] S3 IRENUM; system32\DRIVERS\irenum.sys [X] S3 usbbus; system32\DRIVERS\lgusbbus.sys [X] S3 UsbDiag; system32\DRIVERS\lgusbdiag.sys [X] S3 USBModem; system32\DRIVERS\lgusbmodem.sys [X] HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k HKLM\...\Run: [mobilegeni daemon] => C:\Program Files\Mobogenie\DaemonProcess.exe [748736 2014-04-18] () HKU\S-1-5-21-1757981266-2111687655-682003330-1003\...\Run: [NextLive] => C:\WINDOWS\system32\rundll32.exe "C:\Documents and Settings\Vision\Dane aplikacji\newnext.me\nengine.dll",EntryPoint -m l HKU\.DEFAULT\...\RunOnce: [Del697718] - cmd.exe /Q /D /c del "C:\WINDOWS\TEMP\0.del" HKU\.DEFAULT\...\RunOnce: [Del1131015] - cmd.exe /Q /D /c del "C:\WINDOWS\TEMP\0.del" HKU\.DEFAULT\...\RunOnce: [Del1304015] - cmd.exe /Q /D /c del "C:\WINDOWS\TEMP\0.del" HKU\.DEFAULT\...\RunOnce: [Del38866406] - cmd.exe /Q /D /c del "C:\WINDOWS\TEMP\0.del" HKU\.DEFAULT\...\RunOnce: [Del46286937] - cmd.exe /Q /D /c del "C:\WINDOWS\TEMP\0.del" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" Task: C:\WINDOWS\Tasks\couponsupport-S-649636217.job => c:\support\couponsupport.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\DealPlyLiveUpdateTaskMachineCore.job => C:\Program Files\DealPlyLive\Update\DealPlyLive.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\DealPlyLiveUpdateTaskMachineUA.job => C:\Program Files\DealPlyLive\Update\DealPlyLive.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\DTReg.job => C:\Documents and Settings\Vision\Dane aplikacji\defaulttab\defaulttab\DTReg.exe Task: C:\WINDOWS\Tasks\Plus-HD-4.9-chromeinstaller.job => C:\Program Files\Plus-HD-4.9\Plus-HD-4.9-chromeinstaller.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\Plus-HD-4.9-codedownloader.job => C:\Program Files\Plus-HD-4.9\Plus-HD-4.9-codedownloader.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\Plus-HD-4.9-enabler.job => C:\Program Files\Plus-HD-4.9\Plus-HD-4.9-enabler.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\Plus-HD-4.9-firefoxinstaller.job => C:\Program Files\Plus-HD-4.9\Plus-HD-4.9-firefoxinstaller.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\Plus-HD-4.9-updater.job => C:\Program Files\Plus-HD-4.9\Plus-HD-4.9-updater.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job => C:\Program Files\RegClean Pro\RegCleanPro.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job => C:\Program Files\RegClean Pro\RegCleanPro.exe <==== ATTENTION C:\WINDOWS\Tasks\At*.job ShortcutWithArgument: C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T ShortcutWithArgument: C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T ShortcutWithArgument: C:\Documents and Settings\Vision\Menu Start\Programy\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) -> hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T&ts=1375811090 ShortcutWithArgument: C:\Documents and Settings\Vision\Menu Start\Programy\Akcesoria\Narzędzia systemowe\Internet Explorer (bez dodatków).lnk -> C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) -> hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T&ts=1375811090 ShortcutWithArgument: C:\Documents and Settings\Vision\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T ShortcutWithArgument: C:\Documents and Settings\Vision\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Uruchom przeglądarkę Internet Explorer.lnk -> C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) -> hxxp://www.qvo6.com/?utm_source=b&utm_medium=cor&from=cor&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T&ts=1375811090 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.mysearchresults.com/?c=3524&t=01 HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://www.searchgol.com/?babsrc=HP_ss&mntrId=9C31D43D7E352E65&affID=119357&tsp=5018 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/?type=hp&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.delta-homes.com/?type=hp&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/?type=hp&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/web/?type=ds&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/web/?type=ds&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-homes.com/?type=hp&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T URLSearchHook: HKLM - Default Value = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} URLSearchHook: HKLM - SiteFinder - {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files\SiteFinder\SiteFinder.dll (Site Finder) SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.delta-homes.com/web/?type=ds&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T&q={searchTerms} SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.delta-homes.com/web/?type=ds&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T&q={searchTerms} SearchScopes: HKLM - {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = http://search.tb.ask.com/search/GGmain.jhtml?p2=^AYY^xdm067^YYA^pl&si=flvrunner&ptb=0CEC2D9D-C253-4C17-86AF-838D314B492F&ind=2013082115&n=77fd3203&psa=&st=sb&searchfor={searchTerms} SearchScopes: HKLM - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = http://search.delta-homes.com/web/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=ds&from=newgdp&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T&ts=1380233162&type=default&q={searchTerms} SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.delta-homes.com/web/?type=ds&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T&q={searchTerms} SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKCU - 553827E3D394476AB53D690392740B28 URL = http://search.delta-homes.com/web/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=ds&from=newgdp&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T&ts=1380233162&type=default&q={searchTerms} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.searchgol.com/?q={searchTerms}&babsrc=SP_ss&mntrId=9C31D43D7E352E65&affID=119357&tsp=5018 SearchScopes: HKCU - {15A5E16B-DC86-4277-B694-EDD037508938} URL = http://www.idg.pl?q={searchTerms} SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.delta-homes.com/web/?type=ds&ts=1388676594&from=wpm0102&uid=TOSHIBAXMQ01ABD050_X259C3R4TXXX259C3R4T&q={searchTerms} SearchScopes: HKCU - {54A1E7BB-CA67-46C5-85E9-6ADA3B2C19AA} URL = http://www.idg.pl?q={searchTerms} SearchScopes: HKCU - {75b4241f-171e-44a3-bf44-23613b6e3e03} URL = http://search.tb.ask.com/search/GGmain.jhtml?p2=^AYY^xdm067^YYA^pl&si=flvrunner&ptb=0CEC2D9D-C253-4C17-86AF-838D314B492F&ind=2013082115&n=77fd3203&psa=&st=sb&searchfor={searchTerms} SearchScopes: HKCU - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = SearchScopes: HKCU - {89383D8F-0E54-4FD8-B1D8-12FAAC097801} URL = http://www.mysearchresults.com/search?c=3524&t=01&q={searchTerms} SearchScopes: HKCU - {D7BCFF01-E62C-4C4E-840F-E65A0EFB0DED} URL = http://www.idg.pl?q={searchTerms} SearchScopes: HKCU - {D91B2B18-4420-49A2-AF37-7E8B2F2DF8E4} URL = http://www.idg.pl?q={searchTerms} SearchScopes: HKCU - {F420DFA1-E687-4ACB-8F69-387137D18705} URL = http://www.idg.pl?q={searchTerms} BHO: DoWenSaVe - {4BC58949-7F92-E476-8A98-CAB427051D0A} - C:\Documents and Settings\All Users\Dane aplikacji\DoWenSaVe\7Lj0.dll () BHO: SaiVeLots - {58F86BAC-1199-0275-89F0-A22D70D3A36A} - C:\Documents and Settings\All Users\Dane aplikacji\SaiVeLots\J.dll () BHO: SaveSense - {71e129ff-6c2a-4984-818c-7e2c998b8d99} - C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\SaveSense\SaveSenseIE.dll (SaveSense) BHO: DefaultTab Browser Helper - {7F6AFBF1-E065-4627-A2FD-810366367D01} - C:\Documents and Settings\Vision\Dane aplikacji\defaulttab\defaulttab\DefaultTabBHO.dll (Search Results LLC.) BHO: WatcHItoAdBllocKE - {99B3E000-0379-FA9D-D350-BB8863F2C19F} - C:\Documents and Settings\All Users\Dane aplikacji\WatcHItoAdBllocKE\uA8ZEZIH.dll () BHO: 50CoUponus - {DD2FE438-BA9A-9B3D-41C8-1A887EA8CE4E} - C:\Documents and Settings\All Users\Dane aplikacji\50CoUponus\eDG8.dll () Toolbar: HKLM - SiteFinder - {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files\SiteFinder\SiteFinder.dll (Site Finder) FF Plugin: @divx.com/DivX Plus Web Player Plug-In,version=1.0.0 - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll No File FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll No File FF Plugin: @tools.dpliveupdate.com/DealPlyLive Update;version=3 - C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll (DealPly Technologies Ltd) FF Plugin: @tools.dpliveupdate.com/DealPlyLive Update;version=9 - C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll (DealPly Technologies Ltd) FF HKLM\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION GroupPolicy: Group Policy on Chrome detected <======= ATTENTION Google Update Helper (Version: 1.3.23.0 - BonanzaDeals) Hidden <==== ATTENTION C:\Documents and Settings\All Users\Dane aplikacji\79c55f939eee2dda C:\Documents and Settings\All Users\Dane aplikacji\Accelewin C:\Documents and Settings\All Users\Dane aplikacji\afaeiihhpkjloahpgbnfhidhdpkbhdef C:\Documents and Settings\All Users\Dane aplikacji\Babylon C:\Documents and Settings\All Users\Dane aplikacji\BonanzaDealsLive C:\Documents and Settings\All Users\Dane aplikacji\DealPlyLive C:\Documents and Settings\All Users\Dane aplikacji\ehoodoihpgojeobepdmdkbkmkcodgana C:\Documents and Settings\All Users\Menu Start\Programy\RegClean Pro C:\Documents and Settings\NetworkService\Dane aplikacji\Allin1Convert_8h C:\Documents and Settings\NetworkService\Dane aplikacji\Delta C:\Documents and Settings\NetworkService\Dane aplikacji\DigitalSites C:\Documents and Settings\NetworkService\Dane aplikacji\MySearchDial C:\Documents and Settings\NetworkService\Dane aplikacji\SaveSense C:\Documents and Settings\NetworkService\Dane aplikacji\UpdateBonanza C:\Documents and Settings\Vision\.android C:\Documents and Settings\Vision\AppData C:\Documents and Settings\Vision\Dane aplikacji\*.exe C:\Documents and Settings\Vision\Dane aplikacji\Babylon C:\Documents and Settings\Vision\Dane aplikacji\download.am-data C:\Documents and Settings\Vision\Dane aplikacji\eDownload C:\Documents and Settings\Vision\Dane aplikacji\eIntaller C:\Documents and Settings\Vision\Dane aplikacji\File Scout C:\Documents and Settings\Vision\Dane aplikacji\newnext.me C:\Documents and Settings\Vision\Dane aplikacji\SimilarSites C:\Documents and Settings\Vision\Dane aplikacji\SwvUpdater C:\Documents and Settings\Vision\Dane aplikacji\Systweak C:\Documents and Settings\Vision\Dane aplikacji\WinZipper C:\Documents and Settings\Vision\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Mobogenie.lnk C:\Documents and Settings\Vision\Menu Start\Programy\DealPly C:\Documents and Settings\Vision\Menu Start\Programy\SaveSense C:\Documents and Settings\Vision\Menu Start\Programy\Severe Weather Alerts C:\Documents and Settings\Vision\Moje dokumenty\Mobogenie C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\mysearchdial-speeddial.crx C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\cache C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\BonanzaDealsLive C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\genienext C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\Facebook C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\Google C:\Program Files\Download.am C:\Program Files\mozilla firefox\plugins C:\Users C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension C:\WINDOWS\System32\roboot.exe Reg: reg delete HKCU\Software\Google /f Reg: reg delete HKLM\SOFTWARE\Google /f Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\Desktop\Components\0" /f Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284}" /f Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D}" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284}" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D}" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /f Reboot: ***************** [1596] C:\Documents and Settings\All Users\Dane aplikacji\WPM\wprotectmanager.exe => Process closed successfully. [204] c:\support\couponsupport.exe => Process closed successfully. [252] C:\Documents and Settings\Vision\Dane aplikacji\defaulttab\defaulttab\dtupdate.exe => Process closed successfully. [696] C:\Program Files\Web Cake\WebCakeDesktop.Updater.exe => Process closed successfully. [1440] C:\Program Files\Mobogenie\DaemonProcess.exe => Process closed successfully. [300] C:\Program Files\Mobogenie\MgAssist.exe => Process closed successfully. d93cc0a5 => Service stopped successfully. d93cc0a5 => Service deleted successfully. dealplylive => Service deleted successfully. dealplylivem => Service deleted successfully. DefaultTabUpdate => Service deleted successfully. MgAssistService => Service deleted successfully. WebCakeUpdater => Service deleted successfully. Wpm => Service deleted successfully. WsysSvc => Service not found. AndNetDiag => Service deleted successfully. ANDNetModem => Service deleted successfully. andnetndis => Service deleted successfully. catchme => Service deleted successfully. IRENUM => Service deleted successfully. usbbus => Service deleted successfully. UsbDiag => Service deleted successfully. USBModem => Service deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\KernelFaultCheck => Value deleted successfully. HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\mobilegeni daemon => Value deleted successfully. HKU\S-1-5-21-1757981266-2111687655-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Run\\NextLive => Value deleted successfully. HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Del697718 => Value deleted successfully. HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Del1131015 => Value deleted successfully. HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Del1304015 => Value deleted successfully. HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Del38866406 => Value deleted successfully. HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Del46286937 => Value deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => Key deleted successfully. HKLM\System\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => Key deleted successfully. C:\WINDOWS\Tasks\couponsupport-S-649636217.job => Moved successfully. C:\WINDOWS\Tasks\DealPlyLiveUpdateTaskMachineCore.job => Moved successfully. C:\WINDOWS\Tasks\DealPlyLiveUpdateTaskMachineUA.job => Moved successfully. C:\WINDOWS\Tasks\DTReg.job => Moved successfully. C:\WINDOWS\Tasks\Plus-HD-4.9-chromeinstaller.job => Moved successfully. C:\WINDOWS\Tasks\Plus-HD-4.9-codedownloader.job => Moved successfully. C:\WINDOWS\Tasks\Plus-HD-4.9-enabler.job => Moved successfully. C:\WINDOWS\Tasks\Plus-HD-4.9-firefoxinstaller.job => Moved successfully. C:\WINDOWS\Tasks\Plus-HD-4.9-updater.job => Moved successfully. C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job => Moved successfully. C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job => Moved successfully. C:\WINDOWS\Tasks\At*.job => Moved successfully. C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk => Shortcut argument was removed successfully. C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk => Shortcut argument was removed successfully. C:\Documents and Settings\Vision\Menu Start\Programy\Internet Explorer.lnk => Shortcut argument was removed successfully. C:\Documents and Settings\Vision\Menu Start\Programy\Akcesoria\Narzędzia systemowe\Internet Explorer (bez dodatków).lnk => Shortcut argument was removed successfully. C:\Documents and Settings\Vision\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk => Shortcut argument was removed successfully. C:\Documents and Settings\Vision\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Uruchom przeglądarkę Internet Explorer.lnk => Shortcut argument was removed successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\bProtector Start Page => Value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Secondary Start Pages => Value deleted successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\Microsoft\Internet Explorer\URLSearchHooks\\ => Value deleted successfully. HKLM\Software\Microsoft\Internet Explorer\URLSearchHooks\\{CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} => Value deleted successfully. HKCR\CLSID\{CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{75b4241f-171e-44a3-bf44-23613b6e3e03} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{75b4241f-171e-44a3-bf44-23613b6e3e03} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\bProtectorDefaultScope => Value deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\553827E3D394476AB53D690392740B28 => Key deleted successfully. HKCR\Wow6432Node\CLSID\553827E3D394476AB53D690392740B28 => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{15A5E16B-DC86-4277-B694-EDD037508938} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{15A5E16B-DC86-4277-B694-EDD037508938} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{54A1E7BB-CA67-46C5-85E9-6ADA3B2C19AA} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{54A1E7BB-CA67-46C5-85E9-6ADA3B2C19AA} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{75b4241f-171e-44a3-bf44-23613b6e3e03} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{75b4241f-171e-44a3-bf44-23613b6e3e03} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{89383D8F-0E54-4FD8-B1D8-12FAAC097801} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{89383D8F-0E54-4FD8-B1D8-12FAAC097801} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D7BCFF01-E62C-4C4E-840F-E65A0EFB0DED} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{D7BCFF01-E62C-4C4E-840F-E65A0EFB0DED} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D91B2B18-4420-49A2-AF37-7E8B2F2DF8E4} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{D91B2B18-4420-49A2-AF37-7E8B2F2DF8E4} => Key deleted successfully. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{F420DFA1-E687-4ACB-8F69-387137D18705} => Key deleted successfully. HKCR\Wow6432Node\CLSID\{F420DFA1-E687-4ACB-8F69-387137D18705} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4BC58949-7F92-E476-8A98-CAB427051D0A} => Key deleted successfully. HKCR\CLSID\{4BC58949-7F92-E476-8A98-CAB427051D0A} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{58F86BAC-1199-0275-89F0-A22D70D3A36A} => Key deleted successfully. HKCR\CLSID\{58F86BAC-1199-0275-89F0-A22D70D3A36A} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71e129ff-6c2a-4984-818c-7e2c998b8d99} => Key deleted successfully. HKCR\CLSID\{71e129ff-6c2a-4984-818c-7e2c998b8d99} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7F6AFBF1-E065-4627-A2FD-810366367D01} => Key deleted successfully. HKCR\CLSID\{7F6AFBF1-E065-4627-A2FD-810366367D01} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{99B3E000-0379-FA9D-D350-BB8863F2C19F} => Key deleted successfully. HKCR\CLSID\{99B3E000-0379-FA9D-D350-BB8863F2C19F} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DD2FE438-BA9A-9B3D-41C8-1A887EA8CE4E} => Key deleted successfully. HKCR\CLSID\{DD2FE438-BA9A-9B3D-41C8-1A887EA8CE4E} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} => Value deleted successfully. HKCR\CLSID\{CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} => Key deleted successfully. HKLM\Software\MozillaPlugins\@divx.com/DivX Plus Web Player Plug-In,version=1.0.0 => Key deleted successfully. C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll not found. HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0 => Key deleted successfully. C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll not found. HKLM\Software\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=3 => Key deleted successfully. C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll => Moved successfully. HKLM\Software\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=9 => Key deleted successfully. C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll not found. HKLM\Software\Mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b} => Value deleted successfully. HKLM\Software\Mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b} => Value deleted successfully. HKLM\SOFTWARE\Policies\Google => Key deleted successfully. C:\WINDOWS\system32\GroupPolicy\Machine => Moved successfully. C:\WINDOWS\system32\GroupPolicy\GPT.ini => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}\\SystemComponent => Value deleted successfully. C:\Documents and Settings\All Users\Dane aplikacji\79c55f939eee2dda => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\Accelewin => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\afaeiihhpkjloahpgbnfhidhdpkbhdef => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\Babylon => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\BonanzaDealsLive => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\DealPlyLive => Moved successfully. C:\Documents and Settings\All Users\Dane aplikacji\ehoodoihpgojeobepdmdkbkmkcodgana => Moved successfully. C:\Documents and Settings\All Users\Menu Start\Programy\RegClean Pro => Moved successfully. C:\Documents and Settings\NetworkService\Dane aplikacji\Allin1Convert_8h => Moved successfully. C:\Documents and Settings\NetworkService\Dane aplikacji\Delta => Moved successfully. C:\Documents and Settings\NetworkService\Dane aplikacji\DigitalSites => Moved successfully. C:\Documents and Settings\NetworkService\Dane aplikacji\MySearchDial => Moved successfully. C:\Documents and Settings\NetworkService\Dane aplikacji\SaveSense => Moved successfully. C:\Documents and Settings\NetworkService\Dane aplikacji\UpdateBonanza => Moved successfully. C:\Documents and Settings\Vision\.android => Moved successfully. C:\Documents and Settings\Vision\AppData => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\*.exe => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\Babylon => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\download.am-data => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\eDownload => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\eIntaller => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\File Scout => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\newnext.me => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\SimilarSites => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\SwvUpdater => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\Systweak => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\WinZipper => Moved successfully. C:\Documents and Settings\Vision\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Mobogenie.lnk => Moved successfully. C:\Documents and Settings\Vision\Menu Start\Programy\DealPly => Moved successfully. C:\Documents and Settings\Vision\Menu Start\Programy\SaveSense => Moved successfully. C:\Documents and Settings\Vision\Menu Start\Programy\Severe Weather Alerts => Moved successfully. C:\Documents and Settings\Vision\Moje dokumenty\Mobogenie => Moved successfully. C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\mysearchdial-speeddial.crx => Moved successfully. C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\cache => Moved successfully. C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\BonanzaDealsLive => Moved successfully. C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\genienext => Moved successfully. C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\Facebook => Moved successfully. C:\Documents and Settings\Vision\Ustawienia lokalne\Dane aplikacji\Google => Moved successfully. C:\Program Files\Download.am => Moved successfully. C:\Program Files\Mozilla Firefox\plugins => Moved successfully. C:\Users => Moved successfully. C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension => Moved successfully. C:\WINDOWS\System32\roboot.exe => Moved successfully. ========= reg delete HKCU\Software\Google /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Google /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKCU\Software\Microsoft\Internet Explorer\Desktop\Components\0" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284}" /f ========= Błąd: system nie może odnaleźć określonego klucza rejestru lub wartości. ========= End of Reg: ========= ========= reg delete "HKCU\Software\Microsoft\Internet Explorer\Extensions\{CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D}" /f ========= Błąd: system nie może odnaleźć określonego klucza rejestru lub wartości. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{1B4D240E-8BDE-4C8D-8B93-C74D2F8A8284}" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D}" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= The system needed a reboot. ==== End of Fixlog ====