Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 02-11-2014 Ran by admin at 2014-11-03 17:08:40 Run:7 Running from C:\Users\admin\Desktop Loaded Profile: admin (Available profiles: admin & nauczyciel & vice & Administrator) Boot Mode: Normal ============================================== Content of fixlist: ***************** Reg: reg query "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System" /s Reg: reg query "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon" Reg: reg query "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\SpecialAccounts" /s ***************** ========= reg query "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System" /s ========= HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System ConsentPromptBehaviorAdmin REG_DWORD 0x2 ConsentPromptBehaviorUser REG_DWORD 0x1 EnableInstallerDetection REG_DWORD 0x1 EnableLUA REG_DWORD 0x1 EnableSecureUIAPaths REG_DWORD 0x1 EnableVirtualization REG_DWORD 0x1 PromptOnSecureDesktop REG_DWORD 0x1 ValidateAdminCodeSignatures REG_DWORD 0x0 dontdisplaylastusername REG_DWORD 0x0 legalnoticecaption REG_SZ legalnoticetext REG_SZ scforceoption REG_DWORD 0x0 shutdownwithoutlogon REG_DWORD 0x1 undockwithoutlogon REG_DWORD 0x1 FilterAdministratorToken REG_DWORD 0x0 EnableUIADesktopToggle REG_DWORD 0x0 HideFastUserSwitching REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\UIPI HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\UIPI\Clipboard HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\UIPI\Clipboard\ExceptionFormats CF_TEXT REG_DWORD 0x1 CF_BITMAP REG_DWORD 0x2 CF_OEMTEXT REG_DWORD 0x7 CF_DIB REG_DWORD 0x8 CF_PALETTE REG_DWORD 0x9 CF_UNICODETEXT REG_DWORD 0xd CF_DIBV5 REG_DWORD 0x11 ========= End of Reg: ========= ========= reg query "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon" ========= HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ReportBootOk REG_SZ 1 Shell REG_SZ explorer.exe Userinit REG_SZ C:\Windows\system32\userinit.exe, VmApplet REG_SZ rundll32 shell32,Control_RunDLL "sysdm.cpl" AutoRestartShell REG_DWORD 0x1 LegalNoticeCaption REG_SZ LegalNoticeText REG_SZ PowerdownAfterShutdown REG_SZ 0 ShutdownWithoutLogon REG_SZ 0 cachedlogonscount REG_SZ 10 forceunlocklogon REG_DWORD 0x0 passwordexpirywarning REG_DWORD 0xe Background REG_SZ 0 0 0 DebugServerCommand REG_SZ no WinStationsDisabled REG_SZ 0 DisableCAD REG_DWORD 0x1 scremoveoption REG_SZ 0 ShutdownFlags REG_DWORD 0x27 AutoAdminLogon REG_SZ 0 DefaultUserName REG_SZ admin DefaultDomainName REG_SZ V-DYREKCJA LogonType REG_DWORD 0x1 AllowMultipleTSSessions REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\GPExtensions HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\SpecialAccounts HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\AutoLogonChecked ========= End of Reg: ========= ========= reg query "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\SpecialAccounts" /s ========= HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\SpecialAccounts\UserList Administrator REG_DWORD 0x1 ========= End of Reg: ========= ==== End of Fixlog ====