Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 09-11-2014 Ran by BB1 at 2014-11-09 15:30:14 Run:3 Running from C:\FRST Loaded Profile: BB1 (Available profiles: BB1) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: Task: {14D2B892-88B0-4AB2-9548-6FFE26E4EB81} - System32\Tasks\{DC3DBF1C-8AE9-47B3-BBF2-41161E14A24D} => C:\Program Files\Skype\Phone\Skype.exe Task: {1BF5E031-4433-4672-B35F-17FA0E9D9915} - \1c4a65ae-d51e-4630-92af-803b13515a45-1 No Task File <==== ATTENTION Task: {27A30AB0-53FE-452B-9CB0-E8018E93B82D} - \globalUpdateUpdateTaskMachineUA No Task File <==== ATTENTION Task: {3E770B73-6CC7-4549-ADD2-3D8BD205F401} - \1c4a65ae-d51e-4630-92af-803b13515a45-4 No Task File <==== ATTENTION Task: {502924F9-EA64-4348-BA63-781CEEBF3E0A} - \1c4a65ae-d51e-4630-92af-803b13515a45-2 No Task File <==== ATTENTION Task: {5F21142F-7ECC-42FB-82E0-8E894346CCFC} - System32\Tasks\Registration Trigger IBM Lotus Symphony Task => C:\Program Files\IBM\Lotus\Symphony\framework\rcp\rcplauncher.exe Task: {6AF669B9-0E78-4F73-AE1B-D6F028EE8EDB} - \1c4a65ae-d51e-4630-92af-803b13515a45-5_user No Task File <==== ATTENTION Task: {6BAD32B9-A9F9-4187-815A-5791F926BCBA} - \1c4a65ae-d51e-4630-92af-803b13515a45-7 No Task File <==== ATTENTION Task: {89A25111-7886-4259-BE6F-8D3E7405B218} - \1c4a65ae-d51e-4630-92af-803b13515a45-6 No Task File <==== ATTENTION Task: {A74D61EC-82DB-400F-9313-C77F5125C511} - \globalUpdateUpdateTaskMachineCore No Task File <==== ATTENTION Task: {C8BC0BCE-5515-4555-9365-C8B7C25E02DC} - \1c4a65ae-d51e-4630-92af-803b13515a45-11 No Task File <==== ATTENTION Task: {FBE663AB-601A-478E-8E5F-88108CBCA15C} - \1c4a65ae-d51e-4630-92af-803b13515a45-5 No Task File <==== ATTENTION S2 Update EnterDigital; "C:\Program Files\EnterDigital\updateEnterDigital.exe" [X] S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] S1 MpKsl4f5e237f; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E8AECBA2-57A7-4ACF-908E-D0E25DA5E810}\MpKsl4f5e237f.sys [X] HKU\S-1-5-21-1579964985-3426180906-2269987189-1000\Software\Classes\.exe: exefile => <===== ATTENTION! HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.wp.pl/?src01=dp220141107 URLSearchHook: HKCU - (No Name) - {c2db4fe6-8409-45ce-8010-189a7b5cce86} - No File SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = SearchScopes: HKLM - {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} URL = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&query={searchTerms}&invocationType=tb50winampie7 SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = https://isearch.avg.com/search?cid={7B39E381-AF5D-4251-9093-EDED203DC7C1}&mid=547ed8b60b5e47d09317d1569676c6ce-cd057674818d3d359bd7fb4b61be906e948a228e&lang=pl&ds=xn011&pr=sa&d=2012-10-13 19:29:17&v=13.0.0.7&sap=dsp&q={searchTerms} SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = SearchScopes: HKCU - {EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C} URL = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=2685&query={searchTerms}&invocationType=tb50winampie7 BHO: No Name -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> No File Toolbar: HKCU - No Name - {3041D03E-FD4B-44E0-B742-2D9B88305F98} - No File Toolbar: HKCU - No Name - {C2DB4FE6-8409-45CE-8010-189A7B5CCE86} - No File CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension FF HKLM\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG Secure Search\FireFoxExt\13.0.0.7 C:\Program Files\dealpeak C:\Program Files\Enigma Software Group C:\Program Files\globalUpdate C:\Program Files\Google C:\Program Files\Mozilla Firefox\extensions C:\Program Files\Mozilla Firefox\plugins C:\Program Files\MyFree Codec C:\Program Files\Yawtix C:\ProgramData\af605e765fe8a99d C:\ProgramData\dfed7653-07f4-44f2-abaa-a70c946c17c3 C:\ProgramData\AVG Secure Search C:\Users\BB1\AppData\Local\Google C:\Users\BB1\AppData\Roaming\systweak C:\Users\BB1\Desktop\Continue Firefox installation.lnk C:\Users\BB1\Desktop\Continue XviD installation.lnk C:\Users\BB1\Downloads\SpyHunter-installer.exe C:\Windows\455F074C814E4520B69B5584BD90400C.TMP C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension Reg: reg delete HKCU\Software\Google /f Reg: reg delete HKLM\SOFTWARE\Google /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f CMD: dir /a "C:\Program Files" CMD: dir /a C:\ProgramData CMD: dir /a C:\Users\BB1\AppData\Local CMD: dir /a C:\Users\BB1\AppData\LocalLow CMD: dir /a C:\Users\BB1\AppData\Roaming EmptyTemp: ***************** Processes closed successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{14D2B892-88B0-4AB2-9548-6FFE26E4EB81}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{14D2B892-88B0-4AB2-9548-6FFE26E4EB81}" => Key deleted successfully. C:\Windows\System32\Tasks\{DC3DBF1C-8AE9-47B3-BBF2-41161E14A24D} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{DC3DBF1C-8AE9-47B3-BBF2-41161E14A24D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1BF5E031-4433-4672-B35F-17FA0E9D9915}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1BF5E031-4433-4672-B35F-17FA0E9D9915}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1c4a65ae-d51e-4630-92af-803b13515a45-1" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{27A30AB0-53FE-452B-9CB0-E8018E93B82D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{27A30AB0-53FE-452B-9CB0-E8018E93B82D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3E770B73-6CC7-4549-ADD2-3D8BD205F401}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3E770B73-6CC7-4549-ADD2-3D8BD205F401}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1c4a65ae-d51e-4630-92af-803b13515a45-4" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{502924F9-EA64-4348-BA63-781CEEBF3E0A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{502924F9-EA64-4348-BA63-781CEEBF3E0A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1c4a65ae-d51e-4630-92af-803b13515a45-2" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5F21142F-7ECC-42FB-82E0-8E894346CCFC}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F21142F-7ECC-42FB-82E0-8E894346CCFC}" => Key deleted successfully. C:\Windows\System32\Tasks\Registration Trigger IBM Lotus Symphony Task => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Registration Trigger IBM Lotus Symphony Task" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6AF669B9-0E78-4F73-AE1B-D6F028EE8EDB}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AF669B9-0E78-4F73-AE1B-D6F028EE8EDB}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1c4a65ae-d51e-4630-92af-803b13515a45-5_user" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6BAD32B9-A9F9-4187-815A-5791F926BCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6BAD32B9-A9F9-4187-815A-5791F926BCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1c4a65ae-d51e-4630-92af-803b13515a45-7" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{89A25111-7886-4259-BE6F-8D3E7405B218}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89A25111-7886-4259-BE6F-8D3E7405B218}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1c4a65ae-d51e-4630-92af-803b13515a45-6" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A74D61EC-82DB-400F-9313-C77F5125C511}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A74D61EC-82DB-400F-9313-C77F5125C511}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C8BC0BCE-5515-4555-9365-C8B7C25E02DC}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C8BC0BCE-5515-4555-9365-C8B7C25E02DC}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1c4a65ae-d51e-4630-92af-803b13515a45-11" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FBE663AB-601A-478E-8E5F-88108CBCA15C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FBE663AB-601A-478E-8E5F-88108CBCA15C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\1c4a65ae-d51e-4630-92af-803b13515a45-5" => Key deleted successfully. Update EnterDigital => Service deleted successfully. esgiguard => Service deleted successfully. MpKsl4f5e237f => Service not found. "HKU\S-1-5-21-1579964985-3426180906-2269987189-1000\Software\Classes\.exe" => Key deleted successfully. HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{c2db4fe6-8409-45ce-8010-189a7b5cce86} => value deleted successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}" => Key deleted successfully. "HKCR\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}" => Key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}" => Key deleted successfully. "HKCR\CLSID\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}" => Key deleted successfully. "HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}" => Key deleted successfully. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}" => Key deleted successfully. "HKCR\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b}" => Key not found. "HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}" => Key deleted successfully. "HKCR\CLSID\{EEE7E0A3-AE64-4dc8-84D1-F5D7BAF2DB0C}" => Key not found. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}" => Key deleted successfully. "HKCR\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}" => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{3041D03E-FD4B-44E0-B742-2D9B88305F98} => value deleted successfully. "HKCR\CLSID\{3041D03E-FD4B-44E0-B742-2D9B88305F98}" => Key not found. HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{C2DB4FE6-8409-45CE-8010-189A7B5CCE86} => value deleted successfully. "HKCR\CLSID\{C2DB4FE6-8409-45CE-8010-189A7B5CCE86}" => Key not found. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. HKLM\Software\Mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b} => value deleted successfully. HKLM\Software\Mozilla\Firefox\Extensions\\avg@toolbar => value deleted successfully. C:\Program Files\dealpeak => Moved successfully. C:\Program Files\Enigma Software Group => Moved successfully. C:\Program Files\globalUpdate => Moved successfully. C:\Program Files\Google => Moved successfully. C:\Program Files\Mozilla Firefox\extensions => Moved successfully. C:\Program Files\Mozilla Firefox\plugins => Moved successfully. C:\Program Files\MyFree Codec => Moved successfully. C:\Program Files\Yawtix => Moved successfully. C:\ProgramData\af605e765fe8a99d => Moved successfully. C:\ProgramData\dfed7653-07f4-44f2-abaa-a70c946c17c3 => Moved successfully. C:\ProgramData\AVG Secure Search => Moved successfully. C:\Users\BB1\AppData\Local\Google => Moved successfully. C:\Users\BB1\AppData\Roaming\systweak => Moved successfully. C:\Users\BB1\Desktop\Continue Firefox installation.lnk => Moved successfully. C:\Users\BB1\Desktop\Continue XviD installation.lnk => Moved successfully. C:\Users\BB1\Downloads\SpyHunter-installer.exe => Moved successfully. C:\Windows\455F074C814E4520B69B5584BD90400C.TMP => Moved successfully. C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension => Moved successfully. ========= reg delete HKCU\Software\Google /f ========= Operacja ukoÅ„czona pomyÅ›lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Google /f ========= Operacja ukoÅ„czona pomyÅ›lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoÅ„czona pomyÅ›lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoÅ„czona pomyÅ›lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoÅ„czona pomyÅ›lnie. ========= End of Reg: ========= ========= dir /a "C:\Program Files" ========= Wolumin w stacji C to System Numer seryjny woluminu: B84C-D9A8 Katalog: C:\Program Files 2014-11-09 15:32 . 2014-11-09 15:32 .. 2009-07-02 18:49 7-Zip 2010-06-20 00:40 Abdio 2014-11-06 22:33 Adobe 2009-07-02 07:45 ALLPlayer 2011-02-19 13:34 AnvSoft 2012-10-13 18:29 AVG Secure Search 2014-06-22 01:43 CCleaner 2014-11-07 13:12 Common Files 2014-06-13 11:13 COMODO 2009-07-27 15:11 174 desktop.ini 2010-10-11 19:24 Eventim 2012-10-13 15:21 Exact Audio Copy 2014-02-12 20:54 File Recovery 2009-07-02 19:21 Foxit Software 2009-07-02 07:31 FreeCommander 2009-07-01 21:45 GIGABYTE 2011-12-18 01:25 GimPhoto 1.4.3 2014-07-25 14:44 GOFIN 2009-08-23 22:28 gs 2014-03-14 22:06 Hewlett-Packard 2014-04-04 18:27 HP 2009-07-02 07:35 IBM 2014-11-06 23:01 InstallShield Installation Information 2009-07-01 21:45 Intel 2011-06-16 10:59 Internet Explorer 2011-03-15 22:20 IrfanView 2014-11-08 19:51 Malwarebytes Anti-Malware 2013-10-25 23:43 MarkAny 2006-11-02 13:37 Microsoft Games 2014-04-09 23:57 Microsoft Office 2014-09-11 11:17 Microsoft Security Client 2014-07-28 00:30 Microsoft Silverlight 2009-10-29 09:16 Microsoft Works 2010-12-18 03:01 Microsoft.NET 2010-08-13 12:53 Movie Maker 2014-11-09 15:32 Mozilla Firefox 2014-11-08 13:11 Mozilla Maintenance Service 2009-07-02 19:21 Mozilla Thunderbird 2006-11-02 13:37 MSBuild 2014-07-13 20:26 MyPhoneExplorer 2009-07-02 07:45 NAPI-PROJEKT 2010-12-04 16:06 NCH Software 2009-11-08 23:54 NCH Swift Sound 2014-06-22 01:46 PDFCreator 2009-07-01 21:53 Realtek 2006-11-02 13:37 Reference Assemblies 2013-10-25 23:46 Samsung 2009-07-02 07:45 SlowView 2009-07-27 13:25 Trend Micro 2010-12-05 02:37 UnH Solutions 2006-11-02 14:01 Uninstall Information 2009-08-23 21:13 Visualizer Photo Resize 2012-11-21 10:17 VS Revo Group 2014-06-12 01:13 Winamp 2009-07-27 15:02 Windows Calendar 2009-07-27 15:02 Windows Collaboration 2009-07-27 15:01 Windows Defender 2009-07-27 15:02 Windows Journal 2011-06-16 10:07 Windows Mail 2010-10-19 19:56 Windows Media Player 2009-07-01 21:30 Windows NT 2009-07-27 15:02 Windows Photo Gallery 2009-07-27 15:02 Windows Sidebar 2010-11-20 23:52 WinRAR 2014-11-07 02:38 Xvid 1 plik(ów) 174 bajtów 66 katalog(ów) 2 096 128 000 bajtów wolnych ========= End of CMD: ========= ========= dir /a C:\ProgramData ========= Wolumin w stacji C to System Numer seryjny woluminu: B84C-D9A8 Katalog: C:\ProgramData 2014-11-09 15:32 . 2014-11-09 15:32 .. 2012-11-21 10:24 Adobe 2014-03-14 21:59 57 Ament.ini 2006-11-02 14:02 Application Data [C:\ProgramData] 2010-09-24 21:54 Canneverbe Limited 2012-10-13 15:40 Common Files 2009-07-01 21:30 Dane aplikacji [C:\ProgramData] 2006-11-02 14:02 Desktop [C:\Users\Public\Desktop] 2006-11-02 14:02 Documents [C:\Users\Public\Documents] 2009-07-01 21:30 Dokumenty [C:\Users\Public\Documents] 2013-08-20 21:22 DVD Shrink 2009-12-07 19:04 56 ezsidmv.dat 2013-03-26 22:46 f-secure 2006-11-02 14:02 Favorites [C:\Users\Public\Favorites] 2009-10-04 19:55 Hewlett-Packard 2014-04-04 18:36 HP 2009-10-04 19:42 HP Product Assistant 2009-10-04 20:08 825 hpzinstall.log 2014-11-08 19:51 Malwarebytes 2009-11-23 16:36 McAfee 2009-07-01 21:30 Menu Start [C:\ProgramData\Microsoft\Windows\Start Menu] 2014-06-13 11:53 Microsoft 2014-10-17 10:08 Microsoft Help 2012-05-05 21:18 Mozilla 2010-12-12 21:35 NCH Software 2009-11-08 23:55 NCH Swift Sound 2013-11-07 22:35 Oracle 2014-06-12 00:53 PDF Architect 2 2009-07-06 13:58 PENTAGRAM 2009-07-01 21:30 Pulpit [C:\Users\Public\Desktop] 2013-10-25 23:33 Samsung 2013-10-13 09:30 Skype 2006-11-02 14:02 Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu] 2013-11-07 22:13 Sun 2009-07-01 21:30 Szablony [C:\ProgramData\Microsoft\Windows\Templates] 2006-11-02 14:02 Templates [C:\ProgramData\Microsoft\Windows\Templates] 2009-07-01 21:30 Ulubione [C:\Users\Public\Favorites] 2009-10-04 20:05 WEBREG 2009-12-01 20:56 WindowsSearch 3 plik(ów) 938 bajtów 37 katalog(ów) 2 096 123 904 bajtów wolnych ========= End of CMD: ========= ========= dir /a C:\Users\BB1\AppData\Local ========= Wolumin w stacji C to System Numer seryjny woluminu: B84C-D9A8 Katalog: C:\Users\BB1\AppData\Local 2014-11-09 15:32 . 2014-11-09 15:32 .. 2014-11-06 23:44 Adobe 2009-08-11 21:38 Apps 2012-10-13 18:29 AVG Secure Search 2010-10-28 00:53 COMODO 2009-07-01 21:47 680 d3d9caps.dat 2009-07-01 21:33 Dane aplikacji [C:\Users\BB1\AppData\Local] 2014-11-07 02:41 25 088 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-10-25 23:46 Downloaded Installations 2010-02-25 12:21 59 464 GDIPFONTCACHEV1.DAT 2014-07-13 20:24 globalUpdate 2009-07-01 21:33 Historia [C:\Users\BB1\AppData\Local\Microsoft\Windows\History] 2014-03-14 22:43 HP 2014-11-09 12:53 2 676 456 IconCache.db 2012-11-21 09:37 Macromedia 2012-11-21 09:37 Microsoft 2009-07-01 22:39 Microsoft Games 2010-01-06 14:54 Microsoft Help 2009-07-02 08:58 Mozilla 2013-10-25 23:41 Samsung 2014-11-09 15:32 Temp 2009-07-01 21:33 Temporary Internet Files [C:\Users\BB1\AppData\Local\Microsoft\Windows\Temporary Internet Files] 2009-07-02 17:18 Thunderbird 2009-10-04 20:02 VirtualStore 4 plik(ów) 2 761 688 bajtów 21 katalog(ów) 2 096 123 904 bajtów wolnych ========= End of CMD: ========= ========= dir /a C:\Users\BB1\AppData\LocalLow ========= Wolumin w stacji C to System Numer seryjny woluminu: B84C-D9A8 Katalog: C:\Users\BB1\AppData\LocalLow 2014-06-11 20:34 . 2014-06-11 20:34 .. 2011-06-06 23:34 Adobe 2012-10-13 18:29 AVG Secure Search 2009-07-01 21:33 6 desktop.ini 2012-07-25 17:20 LastPass 2012-11-21 09:37 Microsoft 2009-07-27 15:35 Sun 2010-12-04 16:09 Temp 1 plik(ów) 6 bajtów 8 katalog(ów) 2 096 123 904 bajtów wolnych ========= End of CMD: ========= ========= dir /a C:\Users\BB1\AppData\Roaming ========= Wolumin w stacji C to System Numer seryjny woluminu: B84C-D9A8 Katalog: C:\Users\BB1\AppData\Roaming 2014-11-09 15:32 . 2014-11-09 15:32 .. 2012-10-13 15:40 AccurateRip 2010-07-27 19:05 Adobe 2011-02-19 13:34 AnvSoft 2010-09-24 21:54 Canneverbe Limited 2012-10-13 15:21 EAC 2009-07-02 19:21 Foxit 2012-07-31 19:31 Foxit Software 2009-08-23 21:06 FreeCommander 2014-07-25 14:51 GofinDruki 2014-06-22 14:09 gtk-2.0 2009-10-04 20:02 HP 2009-07-01 21:33 Identities 2009-07-01 21:53 InstallShield 2013-07-13 13:57 IrfanView 2009-07-01 23:16 Macromedia 2011-06-09 21:29 Malwarebytes 2006-11-02 13:37 Media Center Programs 2013-02-08 00:31 Microsoft 2009-07-02 17:18 Mozilla 2014-09-04 20:22 MyPhoneExplorer 2010-12-04 16:07 NCH Software 2009-11-08 23:53 NCH Swift Sound 2014-06-12 01:17 PDF Architect 2 2014-06-12 00:52 pdfforge 2009-08-23 21:54 PStill 2013-10-25 23:41 Samsung 2013-10-13 09:30 Skype 2010-12-14 00:08 skypePM 2009-07-02 17:19 Talkback 2009-07-02 17:18 Thunderbird 2014-11-09 00:17 VSRevoGroup 2012-12-05 21:40 Winamp 2010-05-19 22:31 WinRAR 0 plik(ów) 0 bajtów 35 katalog(ów) 2 096 119 808 bajtów wolnych ========= End of CMD: ========= EmptyTemp: => Removed 489 MB temporary data. The system needed a reboot. ==== End of Fixlog ====