Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 19-01-2015 Ran by Niiesmiertelny at 2015-01-19 21:19:48 Run:4 Running from D:\Programy\Kasowanie blednych lokow wirusówOTL FRST Loaded Profiles: Niiesmiertelny (Available profiles: Niiesmiertelny) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: C:\Program Files\Enigma Software Group C:\Program Files\Java C:\Program Files\Common Files\ShopperPro C:\Program Files (x86)\Ahead C:\Program Files (x86)\Halycon Media C:\Program Files (x86)\INTERIAPL C:\Program Files (x86)\Java C:\Program Files (x86)\Mplayer C:\Program Files (x86)\NetMeter C:\Program Files (x86)\Opera C:\Program Files (x86)\QuickTime C:\Program Files (x86)\SweetPacks C:\Program Files (x86)\top_netinfo C:\ProgramData\Microsoft\Windows\Start Menu\Programs\(Default) C:\Users\Niiesmiertelny\AppData\Local\Ares C:\Users\Niiesmiertelny\AppData\Local\Facebook C:\Users\Niiesmiertelny\AppData\Local\Opera Software C:\Users\Niiesmiertelny\AppData\Local\WMTools Downloaded Files C:\Users\Niiesmiertelny\AppData\LocalLow\Sun C:\Users\Niiesmiertelny\AppData\LocalLow\Temp Tcpip\Parameters: [DhcpNameServer] 81.162.208.2 208.67.222.222 Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ares" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f CMD: dir /a C:\ProgramData EmptyTemp: ***************** Processes closed successfully. C:\Program Files\Enigma Software Group => Moved successfully. "C:\Program Files\Java" => File/Directory not found. C:\Program Files\Common Files\ShopperPro => Moved successfully. C:\Program Files (x86)\Ahead => Moved successfully. C:\Program Files (x86)\Halycon Media => Moved successfully. C:\Program Files (x86)\INTERIAPL => Moved successfully. "C:\Program Files (x86)\Java" => File/Directory not found. C:\Program Files (x86)\Mplayer => Moved successfully. C:\Program Files (x86)\NetMeter => Moved successfully. C:\Program Files (x86)\Opera => Moved successfully. C:\Program Files (x86)\QuickTime => Moved successfully. C:\Program Files (x86)\SweetPacks => Moved successfully. C:\Program Files (x86)\top_netinfo => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\(Default) => Moved successfully. C:\Users\Niiesmiertelny\AppData\Local\Ares => Moved successfully. C:\Users\Niiesmiertelny\AppData\Local\Facebook => Moved successfully. C:\Users\Niiesmiertelny\AppData\Local\Opera Software => Moved successfully. C:\Users\Niiesmiertelny\AppData\Local\WMTools Downloaded Files => Moved successfully. C:\Users\Niiesmiertelny\AppData\LocalLow\Sun => Moved successfully. C:\Users\Niiesmiertelny\AppData\LocalLow\Temp => Moved successfully. HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\\DhcpNameServer => value deleted successfully. ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ares" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= dir /a C:\ProgramData ========= Wolumin w stacji C nie ma etykiety. Numer seryjny woluminu: FC9C-0241 Katalog: C:\ProgramData 2015-01-12 18:34 . 2015-01-12 18:34 .. 2013-02-27 14:15 Adobe 2013-10-12 19:46 57 Ament.ini 2009-07-14 06:08 Application Data [C:\ProgramData] 2014-03-28 12:22 AVAST Software 2012-12-13 15:25 Common Files 2013-01-14 20:34 DAEMON Tools Lite 2012-09-25 18:44 Dane aplikacji [C:\ProgramData] 2014-02-18 19:06 DataCardService 2009-07-14 06:08 Desktop [C:\Users\Public\Desktop] 2009-07-14 06:08 Documents [C:\Users\Public\Documents] 2012-09-25 18:44 Dokumenty [C:\Users\Public\Documents] 2012-12-10 21:26 eMule 2009-07-14 06:08 Favorites [C:\Users\Public\Favorites] 2013-01-13 14:30 Gadu-Gadu 10 2014-11-30 14:22 GG 2014-12-08 11:10 GridinSoft 2013-10-12 19:48 HP 2013-10-12 19:50 HP Photo Creations 2013-02-25 17:15 InstallMate 2012-12-09 18:02 LogiShrd 2012-12-09 18:02 Logitech 2012-09-29 18:03 McAfee 2015-01-17 18:35 McAfee Security Scan 2012-09-25 18:44 Menu Start [C:\ProgramData\Microsoft\Windows\Start Menu] 2014-02-28 18:37 Microsoft 2013-05-02 20:55 Microsoft Help 2014-11-02 11:27 16 mntemp 2014-02-18 14:06 Mobile Partner 2012-09-27 18:27 Mozilla 2014-04-05 16:48 Nero 2015-01-19 21:03 NVIDIA 2014-02-19 14:43 NVIDIA Corporation 2013-10-03 12:42 OpenFM 2014-06-09 18:35 Oracle 2013-03-06 21:15 Package Cache 2012-09-25 18:44 Pulpit [C:\Users\Public\Desktop] 2013-03-06 21:11 Real 2013-02-07 17:15 RealHideIP 2014-11-01 13:43 Seyarch-iNewyTabb 2014-10-23 13:58 Skype 2009-07-14 06:08 Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu] 2014-03-05 17:19 Steam 2012-09-27 18:42 Sun 2014-12-08 12:40 SUPERAntiSpyware.com 2012-09-25 18:44 Szablony [C:\ProgramData\Microsoft\Windows\Templates] 2013-02-26 09:25 TechSmith 2009-07-14 06:08 Templates [C:\ProgramData\Microsoft\Windows\Templates] 2013-01-17 08:30 TuneUp Software 2012-09-25 18:44 Ulubione [C:\Users\Public\Favorites] 2013-10-12 19:50 Visan 2013-01-17 08:30 {C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2 plik(¢w) 73 bajt¢w 51 katalog(¢w) 15ÿ805ÿ116ÿ416 bajt¢w wolnych ========= End of CMD: ========= EmptyTemp: => Removed 476.6 MB temporary data. The system needed a reboot. ==== End of Fixlog 21:21:00 ====