Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 20-10-2014 Ran by Łukasz at 2014-10-20 11:06:50 Run:1 Running from C:\Users\Łukasz\Desktop\diagnostyka Loaded Profile: Łukasz (Available profiles: Łukasz) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: R2 FastPlayerUpdaterService; C:\Program Files (x86)\FastPlayer\FastPlayerUpdaterService.exe [11776 2014-09-30] () [File not signed] R2 PanService; C:\Program Files (x86)\PANDORA.TV\PanService\PandoraService.exe [625816 2012-06-22] (Pandora.TV) R2 Update Lampy Lighty; C:\Program Files (x86)\Lampy Lighty\updateLampyLighty.exe [524024 2014-10-19] () R2 Util Lampy Lighty; C:\Program Files (x86)\Lampy Lighty\bin\utilLampyLighty.exe [524024 2014-10-19] () R2 VideoDownloadConverter_4zService; C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbarsvc.exe [42504 2012-10-13] (COMPANYVERS_NAME) R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [488960 2014-10-17] (Fuyu LIMITED) [File not signed] R1 {51d6ab57-418a-4317-9cb9-5efc59c6e41c}Gw64; C:\Windows\System32\drivers\{51d6ab57-418a-4317-9cb9-5efc59c6e41c}Gw64.sys [48792 2014-10-17] (StdLib) U2 wuaserv; No ImagePath HKLM-x32\...\Run: [DATAMNGR] => C:\PROGRA~2\IMESHA~1\Mediabar\Datamngr\DATAMN~1.EXE HKLM-x32\...\Run: [VideoDownloadConverter Search Scope Monitor] => C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zSrchMn.exe [42536 2012-10-13] (MindSpark) HKLM-x32\...\Run: [VideoDownloadConverter_4z Browser Plugin Loader] => C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe [30096 2012-10-13] (VER_COMPANY_NAME) HKU\S-1-5-19\...\RunOnce: [] => [X] HKU\S-1-5-20\...\RunOnce: [] => [X] HKU\S-1-5-21-4094350964-3357100401-1563204816-1000\...\Run: [Easy Speed PC] => C:\Program Files (x86)\Probit Software\Easy Speed PC\ESPCLauncher.exe [148272 2013-03-18] (Probit Software LTD) HKU\S-1-5-21-4094350964-3357100401-1563204816-1000\...\Run: [EasySpeedCheck] => C:\Program Files (x86)\Easy Speed Check\easyspeedcheck.exe [194200 2014-05-12] (Probit Software LTD) HKU\S-1-5-21-4094350964-3357100401-1563204816-1000\...\Policies\system: [EnableLUA] 1 HKU\S-1-5-21-4094350964-3357100401-1563204816-1000\...\Policies\Explorer: [NofolderOptions] 0 HKU\S-1-5-18\...\RunOnce: [] => [X] AppInit_DLLs: C:\PROGRA~2\IMESHA~1\Mediabar\Datamngr\x64\datamngr.dll => C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\x64\datamngr.dll [2314152 2012-09-11] (iMesh, Inc) AppInit_DLLs: C:\PROGRA~2\IMESHA~1\Mediabar\Datamngr\x64\IEBHO.dll => C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\x64\IEBHO.dll [1528744 2012-09-11] (iMesh, Inc) AppInit_DLLs-x32: c:\progra~2\imesha~1\mediabar\datamngr\datamngr.dll => c:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\datamngr.dll [1745872 2012-09-11] (iMesh, Inc) AppInit_DLLs-x32: c:\progra~2\imesha~1\mediabar\datamngr\iebho.dll => c:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\IEBHO.dll [1185192 2012-09-11] (iMesh, Inc) ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://isearch.omiga-plus.com/?type=sc&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB ShortcutWithArgument: C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://isearch.omiga-plus.com/?type=sc&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB ShortcutWithArgument: C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://isearch.omiga-plus.com/?type=sc&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB ShortcutWithArgument: C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://isearch.omiga-plus.com/?type=sc&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB ShortcutWithArgument: C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://isearch.omiga-plus.com/?type=sc&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB ShortcutWithArgument: C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://isearch.omiga-plus.com/?type=sc&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB ShortcutWithArgument: C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://isearch.omiga-plus.com/?type=sc&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB ShortcutWithArgument: C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://isearch.omiga-plus.com/?type=sc&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type=ds&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type=ds&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://isearch.omiga-plus.com/?type=hp&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://isearch.omiga-plus.com/?type=hp&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://isearch.omiga-plus.com/web/?type=ds&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB&q={searchTerms} URLSearchHook: HKLM-x32 - Icy Tower Toolbar - {ff65fdbc-5683-4dfd-9113-1fcb5b0a3447} - C:\Program Files (x86)\Icy_Tower\prxtbIcy_.dll (Conduit Ltd.) URLSearchHook: HKCU - Icy Tower Toolbar - {ff65fdbc-5683-4dfd-9113-1fcb5b0a3447} - C:\Program Files (x86)\Icy_Tower\prxtbIcy_.dll (Conduit Ltd.) URLSearchHook: HKCU - (No Name) - {93a3111f-4f74-4ed8-895e-d9708497629e} - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll (MindSpark) StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://isearch.omiga-plus.com/?type=sc&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB&q={searchTerms} SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB&q={searchTerms} SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD21} URL = http://dts.search-results.com/sr?src=ieb&gct=ds&appid=1157&systemid=1&apn_dtid=IME001&apn_ptnrs=AG1&o=APN10653&apn_uid=5040467200314360&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB&q={searchTerms} SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB&q={searchTerms} SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD21} URL = http://dts.search-results.com/sr?src=ieb&gct=ds&appid=1157&systemid=1&apn_dtid=IME001&apn_ptnrs=AG1&o=APN10653&apn_uid=5040467200314360&q={searchTerms} SearchScopes: HKCU - DefaultScope {C2DA7494-EBA0-407D-B0C6-024CDC66B9B5} URL = http://www.google.com/search?hl=pl&q={searchTerms}&rlz= SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://isearch.omiga-plus.com/web/?type=ds&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB&q={searchTerms} SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.google.com/search?q={sear SearchScopes: HKCU - {80E7B103-ACBA-460D-839A-74825AEDF16B} URL = SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD21} URL = http://dts.search-results.com/sr?src=ieb&gct=ds&appid=1157&systemid=1&apn_dtid=IME001&apn_ptnrs=AG1&o=APN10653&apn_uid=5040467200314360&q={searchTerms} BHO: DataMngr -> {BE7A24F5-69CB-4708-B77B-B1EDA6043B95} -> C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\x64\BrowserConnection.dll (iMesh, Inc) BHO-x32: Toolbar BHO -> {312f84fb-8970-4fd3-bddb-7012eac4afc9} -> C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll (MindSpark) BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\SupTab\SupTab.dll (Thinknice Co. Limited) BHO-x32: Lampy Lighty -> {4b71a46a-05c6-4df1-84fe-26ce347bf5ce} -> C:\Program Files (x86)\Lampy Lighty\LampyLightybho.dll (Lampy Lighty) BHO-x32: DataMngr -> {BE7A24F5-69CB-4708-B77B-B1EDA6043B95} -> C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\BrowserConnection.dll (iMesh, Inc) BHO-x32: Search-Results Toolbar -> {bff6b2ca-366c-4a90-b685-d87776deb0d2} -> C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\SRTOOL~1\searchresultsDx.dll (APN LLC) BHO-x32: Search Assistant BHO -> {c547c6c2-561b-4169-a2a5-20ba771ca93b} -> C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll (MindSpark) BHO-x32: Icy Tower Toolbar -> {ff65fdbc-5683-4dfd-9113-1fcb5b0a3447} -> C:\Program Files (x86)\Icy_Tower\prxtbIcy_.dll (Conduit Ltd.) Toolbar: HKLM-x32 - Icy Tower Toolbar - {ff65fdbc-5683-4dfd-9113-1fcb5b0a3447} - C:\Program Files (x86)\Icy_Tower\prxtbIcy_.dll (Conduit Ltd.) Toolbar: HKLM-x32 - Search-Results Toolbar - {bff6b2ca-366c-4a90-b685-d87776deb0d2} - C:\Program Files (x86)\iMesh Applications\Mediabar\Datamngr\SRTOOL~1\searchresultsDx.dll (APN LLC) Toolbar: HKLM-x32 - VideoDownloadConverter - {48586425-6bb7-4f51-8dc6-38c88e3ebb58} - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll (MindSpark) FF Plugin-x32: @VideoDownloadConverter_4z.com/Plugin -> C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll (MindSpark) FF HKLM-x32\...\Firefox\Extensions: [{27182e60-b5f3-411c-b545-b44205977502}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\firefoxextension\SearchHelperExtension FF HKLM-x32\...\Firefox\Extensions: [{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e}] - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DMExtension FF HKLM-x32\...\Firefox\Extensions: [4zffxtbr@VideoDownloadConverter_4z.com] - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin CHR StartupUrls: Default -> "hxxp://isearch.omiga-plus.com/?type=hp&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB" CHR DefaultSearchKeyword: Default -> ask.com CHR HKCU\...\Chrome\Extension: [gaiilaahiahdejapggenmdmafpmbipje] - C:\Program Files (x86)\DealPly\DealPly.crx [] CHR HKLM-x32\...\Chrome\Extension: [gaiilaahiahdejapggenmdmafpmbipje] - C:\Program Files (x86)\DealPly\DealPly.crx [] CHR StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://isearch.omiga-plus.com/?type=sc&ts=1413572921&from=tugs&uid=TOSHIBAXMK5076GSXN_31CMD0ZJBXX31CMD0ZJB Task: {07E67830-A3E5-41F7-BDF9-ED22866F694B} - System32\Tasks\Norton 360\Norton Error Analyzer => C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\SymErr.exe Task: {89B6B398-725C-4C86-852E-98F9AD65F312} - System32\Tasks\Norton 360\Norton Error Processor => C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\SymErr.exe Task: {974DF0F3-336E-47A7-97C6-B6411D3EECBE} - System32\Tasks\DealPlyUpdate => C:\Program Files (x86)\DealPly\DealPlyUpdate.exe [2012-07-23] (DealPly) <==== ATTENTION Task: {EE64FCE0-39DE-448C-A8A5-51D3AF081C82} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton 360\Engine\20.5.0.28\WSCStub.exe C:\ProgramData\374311380 C:\ProgramData\Norton C:\ProgramData\TEMP C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastPlayer C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Download Converter C:\Users\Łukasz\AppData\Local\com C:\Users\Łukasz\AppData\Local\Genesis_10171904 C:\Users\Łukasz\AppData\Local\Google\Chrome\User Data\Default\Preferences C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iMesh.lnk C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy Speed PC.lnk C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy Speed PC on the Web.lnk C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Help.lnk C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Uninstall.lnk C:\Windows\System32\drivers\{51d6ab57-418a-4317-9cb9-5efc59c6e41c}Gw64.sys C:\Windows\System32\Tasks\Norton 360 Reg: reg delete "HKCU\Software\Microsoft\Internet Explorer\Search" /f Reg: reg delete "HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main" /v "Start Page" /f Reg: reg delete "HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main" /v "Start Page" /f Reg: reg delete "HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main" /v "Start Page" /f ***************** Processes closed successfully. FastPlayerUpdaterService => Service stopped successfully. FastPlayerUpdaterService => Service deleted successfully. PanService => Service deleted successfully. Update Lampy Lighty => Service deleted successfully. Util Lampy Lighty => Service deleted successfully. VideoDownloadConverter_4zService => Service deleted successfully. WindowsMangerProtect => Service deleted successfully. {51d6ab57-418a-4317-9cb9-5efc59c6e41c}Gw64 => Service stopped successfully. {51d6ab57-418a-4317-9cb9-5efc59c6e41c}Gw64 => Service deleted successfully. wuaserv => Service deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\DATAMNGR => value deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\VideoDownloadConverter Search Scope Monitor => value deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\VideoDownloadConverter_4z Browser Plugin Loader => value deleted successfully. HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\ => value deleted successfully. HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\ => value deleted successfully. HKU\S-1-5-21-4094350964-3357100401-1563204816-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Easy Speed PC => value deleted successfully. HKU\S-1-5-21-4094350964-3357100401-1563204816-1000\Software\Microsoft\Windows\CurrentVersion\Run\\EasySpeedCheck => value deleted successfully. HKU\S-1-5-21-4094350964-3357100401-1563204816-1000\Software\Microsoft\Windows\CurrentVersion\Policies\system\\EnableLUA => value deleted successfully. HKU\S-1-5-21-4094350964-3357100401-1563204816-1000\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NofolderOptions => value deleted successfully. HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce\\ => value deleted successfully. "C:\PROGRA~2\IMESHA~1\Mediabar\Datamngr\x64\datamngr.dll" => Value Data removed successfully. "C:\PROGRA~2\IMESHA~1\Mediabar\Datamngr\x64\IEBHO.dll" => Value Data removed successfully. "c:\progra~2\imesha~1\mediabar\datamngr\datamngr.dll" => Value Data removed successfully. "c:\progra~2\imesha~1\mediabar\datamngr\iebho.dll" => Value Data removed successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk => Shortcut argument was removed successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk => Shortcut argument was removed successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk => Shortcut argument was restored successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk => Shortcut argument was removed successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk => Shortcut argument was removed successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk => Shortcut argument was removed successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk => Shortcut argument was removed successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Internet Explorer.lnk => Shortcut argument was removed successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Search Bar => value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\URLSearchHooks\\{ff65fdbc-5683-4dfd-9113-1fcb5b0a3447} => value deleted successfully. "HKCR\Wow6432Node\CLSID\{ff65fdbc-5683-4dfd-9113-1fcb5b0a3447}" => Key deleted successfully. HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{ff65fdbc-5683-4dfd-9113-1fcb5b0a3447} => value deleted successfully. HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{93a3111f-4f74-4ed8-895e-d9708497629e} => value deleted successfully. "HKCR\Wow6432Node\CLSID\{93a3111f-4f74-4ed8-895e-d9708497629e}" => Key deleted successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully. "HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}" => Key deleted successfully. "HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}" => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}" => Key not found. HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. "HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" => Key deleted successfully. "HKCR\CLSID\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{80E7B103-ACBA-460D-839A-74825AEDF16B}" => Key deleted successfully. "HKCR\CLSID\{80E7B103-ACBA-460D-839A-74825AEDF16B}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}" => Key deleted successfully. "HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BE7A24F5-69CB-4708-B77B-B1EDA6043B95}" => Key deleted successfully. "HKCR\CLSID\{BE7A24F5-69CB-4708-B77B-B1EDA6043B95}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{312f84fb-8970-4fd3-bddb-7012eac4afc9}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{312f84fb-8970-4fd3-bddb-7012eac4afc9}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4b71a46a-05c6-4df1-84fe-26ce347bf5ce}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{4b71a46a-05c6-4df1-84fe-26ce347bf5ce}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BE7A24F5-69CB-4708-B77B-B1EDA6043B95}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{BE7A24F5-69CB-4708-B77B-B1EDA6043B95}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bff6b2ca-366c-4a90-b685-d87776deb0d2}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{bff6b2ca-366c-4a90-b685-d87776deb0d2}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c547c6c2-561b-4169-a2a5-20ba771ca93b}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{c547c6c2-561b-4169-a2a5-20ba771ca93b}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ff65fdbc-5683-4dfd-9113-1fcb5b0a3447}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{ff65fdbc-5683-4dfd-9113-1fcb5b0a3447}" => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{ff65fdbc-5683-4dfd-9113-1fcb5b0a3447} => value deleted successfully. "HKCR\Wow6432Node\CLSID\{ff65fdbc-5683-4dfd-9113-1fcb5b0a3447}" => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{bff6b2ca-366c-4a90-b685-d87776deb0d2} => value deleted successfully. "HKCR\Wow6432Node\CLSID\{bff6b2ca-366c-4a90-b685-d87776deb0d2}" => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{48586425-6bb7-4f51-8dc6-38c88e3ebb58} => value deleted successfully. "HKCR\Wow6432Node\CLSID\{48586425-6bb7-4f51-8dc6-38c88e3ebb58}" => Key deleted successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@VideoDownloadConverter_4z.com/Plugin" => Key deleted successfully. C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll => Moved successfully. HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{27182e60-b5f3-411c-b545-b44205977502} => value deleted successfully. HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{3252b9ae-c69a-4eaf-9502-dc9c1f6c009e} => value deleted successfully. HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\4zffxtbr@VideoDownloadConverter_4z.com => value deleted successfully. Chrome StartupUrls deleted successfully. Chrome DefaultSearchKeyword deleted successfully. "HKCU\SOFTWARE\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje" => Key deleted successfully. "C:\Program Files (x86)\DealPly\DealPly.crx" => File/Directory not found. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gaiilaahiahdejapggenmdmafpmbipje" => Key deleted successfully. "C:\Program Files (x86)\DealPly\DealPly.crx" => File/Directory not found. HKLM\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command\\Default => Value was restored successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{07E67830-A3E5-41F7-BDF9-ED22866F694B}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{07E67830-A3E5-41F7-BDF9-ED22866F694B}" => Key deleted successfully. C:\Windows\System32\Tasks\Norton 360\Norton Error Analyzer => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton 360\Norton Error Analyzer" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{89B6B398-725C-4C86-852E-98F9AD65F312}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89B6B398-725C-4C86-852E-98F9AD65F312}" => Key deleted successfully. C:\Windows\System32\Tasks\Norton 360\Norton Error Processor => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton 360\Norton Error Processor" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{974DF0F3-336E-47A7-97C6-B6411D3EECBE}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{974DF0F3-336E-47A7-97C6-B6411D3EECBE}" => Key deleted successfully. C:\Windows\System32\Tasks\DealPlyUpdate => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyUpdate" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EE64FCE0-39DE-448C-A8A5-51D3AF081C82}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EE64FCE0-39DE-448C-A8A5-51D3AF081C82}" => Key deleted successfully. C:\Windows\System32\Tasks\Norton WSC Integration => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton WSC Integration" => Key deleted successfully. C:\ProgramData\374311380 => Moved successfully. C:\ProgramData\Norton => Moved successfully. C:\ProgramData\TEMP => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastPlayer => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Download Converter => Moved successfully. C:\Users\Łukasz\AppData\Local\com => Moved successfully. C:\Users\Łukasz\AppData\Local\Genesis_10171904 => Moved successfully. C:\Users\Łukasz\AppData\Local\Google\Chrome\User Data\Default\Preferences => Moved successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iMesh.lnk => Moved successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy Speed PC.lnk => Moved successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy Speed PC on the Web.lnk => Moved successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Help.lnk => Moved successfully. C:\Users\Łukasz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Uninstall.lnk => Moved successfully. C:\Windows\System32\drivers\{51d6ab57-418a-4317-9cb9-5efc59c6e41c}Gw64.sys => Moved successfully. C:\Windows\System32\Tasks\Norton 360 => Moved successfully. ========= reg delete "HKCU\Software\Microsoft\Internet Explorer\Search" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main" /v "Start Page" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main" /v "Start Page" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main" /v "Start Page" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= The system needed a reboot. ==== End of Fixlog ====