Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 26-11-2014 01 Ran by dom at 2014-11-27 17:32:42 Run:1 Running from C:\Users\dom\Desktop\przegladarki\Palemoon_download Loaded Profile: dom (Available profiles: dom) Boot Mode: Safe Mode (with Networking) ============================================== Content of fixlist: ***************** CloseProcesses: CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{035FBE31-3755-450A-A775-5E6BBD43D344}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.21.135\psuser.dll No File CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.25.5\psuser.dll No File CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.23.9\psuser.dll No File CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocServer32 -> c:\Users\dom\AppData\Roaming\moters\mentste.dll () <==== ATTENTION CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{62A0D750-DED9-448C-B693-406B34BB0892}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.21.145\psuser.dll No File CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{6D7374DE-63AA-473C-8C02-60D9CDCD84C5}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.21.153\psuser.dll No File CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.24.15\psuser.dll No File CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{91EFB276-CEFE-48EC-BB3A-57795A7B4008}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.21.149\psuser.dll No File CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{A45426FB-E444-42B2-AA56-419F8FBEEC61}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.22.3\psuser.dll No File CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{A54D478D-4F70-4F72-9A74-17C9986E35AB}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.21.165\psuser.dll No File CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{EB06378B-ABB6-4B3C-9B40-D488DD8A6E93}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.22.5\psuser.dll No File CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.24.7\psuser.dll No File Task: {02962626-36C8-4834-A55F-886307C6BCBA} - System32\Tasks\{90A7A78F-2EC5-47B6-A71C-4B8517C360ED} => C:\TEMP\acro_rd_dir\P2K Easy Tool v3.7\P2K_Easy_Tool_v37.exe Task: {14915804-8F5B-4575-9BD8-A39919301955} - System32\Tasks\{32915F96-A3DA-456E-A10D-D61ADEE074B1} => C:\TEMP\acro_rd_dir\P2K Easy Tool v3.7\P2K_Easy_Tool_v37.exe Task: {1975FCAD-1A1D-414A-9BF1-54B5AB9CE630} - System32\Tasks\{E02C1615-A13A-4A06-8108-E53A1E26BA45} => C:\Users\dom\Desktop\przegladarki\Palemoon_download\FRST.exe [2014-11-26] (Farbar) Task: {2FACE3B0-B17C-41B4-8A4A-4492BBE11032} - System32\Tasks\{EC00D059-2320-4618-A44F-3650742E6660} => C:\Users\dom\Desktop\przegladarki\Palemoon_download\FRST.exe [2014-11-26] (Farbar) Task: {30F16754-2729-4E04-9CF0-96D950D71B42} - System32\Tasks\{6D67C421-E759-4F2E-B196-DF6E265467FF} => C:\TEMP\acro_rd_dir\P2K Easy Tool v3.7\P2K_Easy_Tool_v37.exe Task: {3B10BE4A-F6A4-4310-A766-2888C6E4C41F} - System32\Tasks\{4DE2A50C-DEA4-44F6-BF50-5967835718F4} => C:\Users\dom\Desktop\przegladarki\Palemoon_download\FRST.exe [2014-11-26] (Farbar) Task: {43446A14-561C-45AB-9A2B-9CEF78D49329} - System32\Tasks\{D17EFA07-E262-4CB7-9F38-052CB683B4D9} => C:\TEMP\acro_rd_dir\Motorola v3.23 Unlock_ALL MODEL(Via USB-COM PORT)\unlock\FlashBackup 2.61\PDSEditor.exe Task: {436CB643-FE90-4565-90E1-7C788C7907D5} - System32\Tasks\{49DA0E48-7F59-4BC3-887E-5EF1C9DA1348} => C:\TEMP\acro_rd_dir\Motorola v3.23 Unlock_ALL MODEL(Via USB-COM PORT)\unlock\Motorola_unlocker_2005\P2K_Easy_Tool_v39.exe Task: {48E17C3A-553A-45F9-9E68-FC5D263CD02B} - System32\Tasks\{C02ED746-8A91-47DC-9FFC-5BE1443599C2} => C:\TEMP\acro_rd_dir\P2K Easy Tool v3.7\P2K_Easy_Tool_v37.exe Task: {49E542C3-434B-431E-940F-5946D0299409} - System32\Tasks\{7988FE2F-9C1C-4FA5-83E2-EECD818CE45C} => C:\TEMP\acro_rd_dir\P2K Easy Tool v3.7\P2K_Easy_Tool_v37.exe Task: {5796D5E5-656F-4707-A24F-FA82ABD82F2E} - System32\Tasks\{6E6383E9-68C5-4FD9-B35F-8E8308BEF523} => C:\TEMP\acro_rd_dir\Motorola v3.23 Unlock_ALL MODEL(Via USB-COM PORT)\unlock\Motorola_unlocker_2005\Mot_unlocker.exe Task: {5D28D2E4-EC90-4D58-8832-B1778D952243} - System32\Tasks\{9BEEE590-7931-4BA5-844C-4C33C2F7A02C} => C:\TEMP\acro_rd_dir\P2K Easy Tool v3.7\P2K_Easy_Tool_v37.exe Task: {68F2E973-65BA-4617-8384-26040F3A5DCE} - System32\Tasks\{C6E2C7C1-9BDA-4C07-A826-33CC91A25B90} => C:\TEMP\acro_rd_dir\P2K Easy Tool v3.7\P2K_Easy_Tool_v37.exe Task: {6B53F591-8A71-4832-BA39-A368A268E114} - System32\Tasks\{B44EB6FE-548B-4CD7-AAF7-FAA783B54120} => C:\TEMP\acro_rd_dir\P2K Easy Tool v3.7\P2K_Easy_Tool_v37.exe Task: {7EE15068-C548-408B-9682-E55BDED70000} - System32\Tasks\{F9F4A78D-C932-44A4-945F-A04CB6D2431A} => C:\TEMP\acro_rd_dir\Motorola v3.23 Unlock_ALL MODEL(Via USB-COM PORT)\unlock\Motorola_unlocker_2005\Mot_unlocker.exe Task: {9701DF1D-04F0-4798-B7C2-DFE262D72DE2} - System32\Tasks\{86835054-A9B5-4DEE-8C9D-4889EF10967B} => C:\TEMP\acro_rd_dir\Motorola v3.23 Unlock_ALL MODEL(Via USB-COM PORT)\unlock\FlashBackup 2.61\FlashBackup.exe Task: {B9B7F717-C235-40DD-8250-5117810CB78A} - System32\Tasks\{37087575-A35A-47B0-BDA8-7BA4D0C13D5D} => C:\Users\dom\Desktop\przegladarki\Palemoon_download\FRST.exe [2014-11-26] (Farbar) Task: {CC94D82A-86A5-4A56-B841-BB0E5841B87E} - System32\Tasks\{464F30DB-D9C6-4785-84D1-8DE8D5C450B2} => C:\Users\dom\Desktop\przegladarki\Palemoon_download\FRST.exe [2014-11-26] (Farbar) Task: {E3319AB6-0AD3-409B-A148-12CD654AC312} - System32\Tasks\{50A9DA52-5256-48F2-810F-181C955BE81F} => C:\Users\dom\Desktop\przegladarki\Palemoon_download\FRST.exe [2014-11-26] (Farbar) HKU\S-1-5-21-3916604919-2912353607-3506189148-1000\...\Run: [] => [X] BootExecute: autocheck autochk * sdnclean.exe ShortcutWithArgument: C:\Users\dom\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.mystartsearch.com/?type=sc&ts=1416406979&from=amt&uid=SAMSUNGXHM500JI_S20CJD0SC36258 ProxyServer: [S-1-5-21-3916604919-2912353607-3506189148-1000] => localhost:8080 HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = StartMenuInternet: IEXPLORE.EXE - FF StartMenuInternet: FIREFOX.EXE - S3 dgderdrv; System32\drivers\dgderdrv.sys [X] S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [X] S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X] S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X] S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X] S3 motccgp; system32\DRIVERS\motccgp.sys [X] S3 motccgpfl; system32\DRIVERS\motccgpfl.sys [X] S3 MotDev; system32\DRIVERS\motodrv.sys [X] S3 motmodem; system32\DRIVERS\motmodem.sys [X] HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\70144062.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\70144062.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CLPSLS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service" C:\Program Files\mozilla firefox\plugins C:\Program Files\globalUpdate C:\Program Files\predm C:\ProgramData\Temp C:\ProgramData\Spybot - Search & Destroy C:\Users\dom\AppData\Roaming\.# C:\Users\dom\AppData\Roaming\moters C:\Users\dom\AppData\Roaming\QuickScan C:\Users\dom\AppData\Roaming\Wandoujia2 C:\Users\dom\AppData\Roaming\YourFileDownloader Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f CMD: type C:\Windows\System32\Tasks\{EFADC6C0-73EC-4DA0-98F2-A10461BD60B2} EmptyTemp: ***************** Processes closed successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{035FBE31-3755-450A-A775-5E6BBD43D344}" => Key deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}" => Key deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}" => Key deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}" => Key not found. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{62A0D750-DED9-448C-B693-406B34BB0892}" => Key deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{6D7374DE-63AA-473C-8C02-60D9CDCD84C5}" => Key deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}" => Key deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{91EFB276-CEFE-48EC-BB3A-57795A7B4008}" => Key deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{A45426FB-E444-42B2-AA56-419F8FBEEC61}" => Key deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{A54D478D-4F70-4F72-9A74-17C9986E35AB}" => Key deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{EB06378B-ABB6-4B3C-9B40-D488DD8A6E93}" => Key deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{02962626-36C8-4834-A55F-886307C6BCBA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{02962626-36C8-4834-A55F-886307C6BCBA}" => Key deleted successfully. C:\Windows\System32\Tasks\{90A7A78F-2EC5-47B6-A71C-4B8517C360ED} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{90A7A78F-2EC5-47B6-A71C-4B8517C360ED}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{14915804-8F5B-4575-9BD8-A39919301955}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{14915804-8F5B-4575-9BD8-A39919301955}" => Key deleted successfully. C:\Windows\System32\Tasks\{32915F96-A3DA-456E-A10D-D61ADEE074B1} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{32915F96-A3DA-456E-A10D-D61ADEE074B1}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1975FCAD-1A1D-414A-9BF1-54B5AB9CE630}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1975FCAD-1A1D-414A-9BF1-54B5AB9CE630}" => Key deleted successfully. C:\Windows\System32\Tasks\{E02C1615-A13A-4A06-8108-E53A1E26BA45} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E02C1615-A13A-4A06-8108-E53A1E26BA45}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2FACE3B0-B17C-41B4-8A4A-4492BBE11032}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2FACE3B0-B17C-41B4-8A4A-4492BBE11032}" => Key deleted successfully. C:\Windows\System32\Tasks\{EC00D059-2320-4618-A44F-3650742E6660} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{EC00D059-2320-4618-A44F-3650742E6660}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{30F16754-2729-4E04-9CF0-96D950D71B42}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{30F16754-2729-4E04-9CF0-96D950D71B42}" => Key deleted successfully. C:\Windows\System32\Tasks\{6D67C421-E759-4F2E-B196-DF6E265467FF} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6D67C421-E759-4F2E-B196-DF6E265467FF}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3B10BE4A-F6A4-4310-A766-2888C6E4C41F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3B10BE4A-F6A4-4310-A766-2888C6E4C41F}" => Key deleted successfully. C:\Windows\System32\Tasks\{4DE2A50C-DEA4-44F6-BF50-5967835718F4} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{4DE2A50C-DEA4-44F6-BF50-5967835718F4}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{43446A14-561C-45AB-9A2B-9CEF78D49329}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{43446A14-561C-45AB-9A2B-9CEF78D49329}" => Key deleted successfully. C:\Windows\System32\Tasks\{D17EFA07-E262-4CB7-9F38-052CB683B4D9} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{D17EFA07-E262-4CB7-9F38-052CB683B4D9}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{436CB643-FE90-4565-90E1-7C788C7907D5}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{436CB643-FE90-4565-90E1-7C788C7907D5}" => Key deleted successfully. C:\Windows\System32\Tasks\{49DA0E48-7F59-4BC3-887E-5EF1C9DA1348} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{49DA0E48-7F59-4BC3-887E-5EF1C9DA1348}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{48E17C3A-553A-45F9-9E68-FC5D263CD02B}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{48E17C3A-553A-45F9-9E68-FC5D263CD02B}" => Key deleted successfully. C:\Windows\System32\Tasks\{C02ED746-8A91-47DC-9FFC-5BE1443599C2} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C02ED746-8A91-47DC-9FFC-5BE1443599C2}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{49E542C3-434B-431E-940F-5946D0299409}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{49E542C3-434B-431E-940F-5946D0299409}" => Key deleted successfully. C:\Windows\System32\Tasks\{7988FE2F-9C1C-4FA5-83E2-EECD818CE45C} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7988FE2F-9C1C-4FA5-83E2-EECD818CE45C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5796D5E5-656F-4707-A24F-FA82ABD82F2E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5796D5E5-656F-4707-A24F-FA82ABD82F2E}" => Key deleted successfully. C:\Windows\System32\Tasks\{6E6383E9-68C5-4FD9-B35F-8E8308BEF523} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6E6383E9-68C5-4FD9-B35F-8E8308BEF523}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5D28D2E4-EC90-4D58-8832-B1778D952243}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5D28D2E4-EC90-4D58-8832-B1778D952243}" => Key deleted successfully. C:\Windows\System32\Tasks\{9BEEE590-7931-4BA5-844C-4C33C2F7A02C} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{9BEEE590-7931-4BA5-844C-4C33C2F7A02C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{68F2E973-65BA-4617-8384-26040F3A5DCE}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{68F2E973-65BA-4617-8384-26040F3A5DCE}" => Key deleted successfully. C:\Windows\System32\Tasks\{C6E2C7C1-9BDA-4C07-A826-33CC91A25B90} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C6E2C7C1-9BDA-4C07-A826-33CC91A25B90}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6B53F591-8A71-4832-BA39-A368A268E114}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6B53F591-8A71-4832-BA39-A368A268E114}" => Key deleted successfully. C:\Windows\System32\Tasks\{B44EB6FE-548B-4CD7-AAF7-FAA783B54120} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B44EB6FE-548B-4CD7-AAF7-FAA783B54120}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7EE15068-C548-408B-9682-E55BDED70000}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7EE15068-C548-408B-9682-E55BDED70000}" => Key deleted successfully. C:\Windows\System32\Tasks\{F9F4A78D-C932-44A4-945F-A04CB6D2431A} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F9F4A78D-C932-44A4-945F-A04CB6D2431A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9701DF1D-04F0-4798-B7C2-DFE262D72DE2}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9701DF1D-04F0-4798-B7C2-DFE262D72DE2}" => Key deleted successfully. C:\Windows\System32\Tasks\{86835054-A9B5-4DEE-8C9D-4889EF10967B} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{86835054-A9B5-4DEE-8C9D-4889EF10967B}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B9B7F717-C235-40DD-8250-5117810CB78A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9B7F717-C235-40DD-8250-5117810CB78A}" => Key deleted successfully. C:\Windows\System32\Tasks\{37087575-A35A-47B0-BDA8-7BA4D0C13D5D} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{37087575-A35A-47B0-BDA8-7BA4D0C13D5D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CC94D82A-86A5-4A56-B841-BB0E5841B87E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CC94D82A-86A5-4A56-B841-BB0E5841B87E}" => Key deleted successfully. C:\Windows\System32\Tasks\{464F30DB-D9C6-4785-84D1-8DE8D5C450B2} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{464F30DB-D9C6-4785-84D1-8DE8D5C450B2}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E3319AB6-0AD3-409B-A148-12CD654AC312}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E3319AB6-0AD3-409B-A148-12CD654AC312}" => Key deleted successfully. C:\Windows\System32\Tasks\{50A9DA52-5256-48F2-810F-181C955BE81F} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{50A9DA52-5256-48F2-810F-181C955BE81F}" => Key deleted successfully. HKU\S-1-5-21-3916604919-2912353607-3506189148-1000\Software\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully. HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => Value was restored successfully. C:\Users\dom\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk => Shortcut argument was removed successfully. HKU\S-1-5-21-3916604919-2912353607-3506189148-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value deleted successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Secondary Start Pages => value deleted successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command\\Default => Value was restored successfully. dgderdrv => Service deleted successfully. ewusbnet => Service deleted successfully. ew_hwusbdev => Service deleted successfully. huawei_enumerator => Service deleted successfully. hwdatacard => Service deleted successfully. motccgp => Service deleted successfully. motccgpfl => Service deleted successfully. MotDev => Service deleted successfully. motmodem => Service deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\70144062.sys" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS" => Key not found. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\MCODS" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\70144062.sys" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\CLPSLS" => Key not found. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\MCODS" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\MpfService" => Key deleted successfully. C:\Program Files\mozilla firefox\plugins => Moved successfully. C:\Program Files\globalUpdate => Moved successfully. C:\Program Files\predm => Moved successfully. C:\ProgramData\Temp => Moved successfully. C:\ProgramData\Spybot - Search & Destroy => Moved successfully. C:\Users\dom\AppData\Roaming\.# => Moved successfully. "C:\Users\dom\AppData\Roaming\moters" => File/Directory not found. C:\Users\dom\AppData\Roaming\QuickScan => Moved successfully. C:\Users\dom\AppData\Roaming\Wandoujia2 => Moved successfully. C:\Users\dom\AppData\Roaming\YourFileDownloader => Moved successfully. ========= reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= type C:\Windows\System32\Tasks\{EFADC6C0-73EC-4DA0-98F2-A10461BD60B2} ========= SkypeSetupLight true IgnoreNew false false true false false PT10M PT1H true false true true false false false 7 "c:\program files\pale moon\palemoon.exe" http://www.skype.com/go/downloading?source=lightinstaller&ver=6.21.0.104&LastError=12002 S-1-5-32-545 LeastPrivilege ========= End of CMD: ========= EmptyTemp: => Removed 869 MB temporary data. The system needed a reboot. ==== End of Fixlog ====