Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-02-2015 02 Ran by Ewa at 2015-02-12 23:56:42 Run:1 Running from D:\czyszczenie Loaded Profiles: UpdatusUser & Ewa (Available profiles: UpdatusUser & Ewa) Boot Mode: Normal ============================================== Content of fixlist: ***************** CreateRestorePoint: S2 SPBIUpd; C:\Program Files\Common Files\ShopperPro\spbiu.exe [2346880 2014-08-25] (ShopperPro) S3 gobi3kserial; \SystemRoot\system32\DRIVERS\gobi3kserial.sys [X] U0 sr; No ImagePath Task: {12350FB1-F33A-470A-B583-CD93B5169EC3} - System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-7 => C:\Program Files (x86)\iWebar\iWebar-nova.exe <==== ATTENTION Task: {1CBD6430-EE47-47DF-8ABB-DF7CF4B949E7} - \f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-7 No Task File <==== ATTENTION Task: {1EC174B4-72EB-41AF-89CF-A6963546E34D} - \fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-6 No Task File <==== ATTENTION Task: {1FBB3D45-8C7B-4445-965C-9D18BB53773F} - System32\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-1 => C:\Program Files (x86)\Sense\Sense-codedownloader.exe <==== ATTENTION Task: {24B701CB-C50D-46DD-933A-43853FB6D075} - \58190bb1-7aef-4912-950a-963a46bafae2 No Task File <==== ATTENTION Task: {2FB814CB-3DC1-452B-9549-7AFD64CF9E1C} - System32\Tasks\SPBIW_UpdateTask_Time_323132313931313135312d6c5b5a345b4132452d5a346c => Wscript.exe //B "C:\ProgramData\ShopperPro\spbihe.js" spbiu.exe /invoke /f:check_services /l:0 <==== ATTENTION Task: {30CD6C54-B85E-405C-A9E0-9DC3E2E6FFD6} - System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-5 => C:\Program Files (x86)\iWebar\4bd3ec58-c42f-443e-8edb-0a5b2d035380-5.exe <==== ATTENTION Task: {32E628D9-C8BC-4033-B20A-EE4B1668E5F5} - System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-6 => C:\Program Files (x86)\iWebar\iWebar-nova.exe <==== ATTENTION Task: {36ABF8B5-8FAE-4E5C-8C41-CDCD8D1E401A} - System32\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-3 => C:\Program Files (x86)\Sense\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-3.exe <==== ATTENTION Task: {402325E8-4870-4B2B-BEEA-3E18AEAC6DA1} - \VeriBrowse Update No Task File <==== ATTENTION Task: {420BC218-3A91-4736-A65D-261D01CE7BDF} - \f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-2 No Task File <==== ATTENTION Task: {45ED9750-4649-4088-9EC0-433CD9CFB3FA} - System32\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-2 => C:\Program Files (x86)\Sense\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-2.exe <==== ATTENTION Task: {461AC0B9-4254-426A-9A7F-D619FB691CF6} - System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-4 => C:\Program Files (x86)\iWebar\4bd3ec58-c42f-443e-8edb-0a5b2d035380-4.exe <==== ATTENTION Task: {5047A519-2C43-4DFB-BB65-9FE7A23AC422} - \f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-11 No Task File <==== ATTENTION Task: {571F4961-0B79-45E5-A9D2-C4FB87A92456} - \VeriBrowse_wd No Task File <==== ATTENTION Task: {5AEA5C41-4ED9-4BDB-89E0-2662022EE183} - \fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-7 No Task File <==== ATTENTION Task: {5B7D364E-8E6B-4CFA-B1BA-1CD0AEA2D1E3} - System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-2 => C:\Program Files (x86)\iWebar\4bd3ec58-c42f-443e-8edb-0a5b2d035380-2.exe <==== ATTENTION Task: {65CCD407-0B34-4FEE-824E-47E6AF4DA880} - \{F637104A-6CC3-45BD-A310-2668EBF45323} No Task File <==== ATTENTION Task: {67E83C4F-DDF7-4EF9-96C6-A6F3852835D5} - System32\Tasks\Norton Identity Safe\Norton Error Analyzer => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\SymErr.exe Task: {816A897E-2790-4DE9-9790-DC7069F253A1} - \JCWLUB No Task File <==== ATTENTION Task: {82459B22-E08C-4092-B08C-1FEC72B5E962} - System32\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-5 => C:\Program Files (x86)\Sense\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-5.exe <==== ATTENTION Task: {86D29002-0D21-42B5-91BB-F9FC782D6C60} - \SGDVIPS No Task File <==== ATTENTION Task: {9555D4DA-7C9D-4F7C-A235-8F635005D54C} - \f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-3 No Task File <==== ATTENTION Task: {9BEFDC80-2434-4B55-AECC-8B5C95DEF47D} - System32\Tasks\YTAUpdate => C:\PROGRA~2\YOUTUB~1\Updater.exe <==== ATTENTION Task: {9C580F5D-835E-4D40-AB49-EC86EE0B0DBF} - System32\Tasks\Norton Identity Safe\Norton Error Processor => C:\Program Files (x86)\Norton Identity Safe\Engine\2013.3.0.26\SymErr.exe Task: {9F5FD23B-8FB9-4AA8-992F-6127C68D06DF} - \f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-4 No Task File <==== ATTENTION Task: {ADB63BFF-C898-43C8-A21D-CF107E06AD2F} - System32\Tasks\{BA308ECB-A757-434E-874A-EE13FBCB1A55} => pcalua.exe -a C:\Users\Ewa\AppData\Roaming\sweet-page\UninstallManager.exe -c -ptid=cor Task: {B08E3E71-F600-4B35-B907-0179A78AC679} - System32\Tasks\{9951A34F-A21C-462D-A3DA-DBE7A49D6C6D} => pcalua.exe -a "C:\Program Files (x86)\Linkey\uninstall.exe" Task: {B168F218-B930-496F-BAFB-B328C3F33F3A} - \f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-5 No Task File <==== ATTENTION Task: {BEFE3280-A343-4874-A725-67AA3B7730CC} - \f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-5_user No Task File <==== ATTENTION Task: {C16906BD-4A7D-47D0-912F-8B7A7A2DAC0E} - System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-1 => C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe <==== ATTENTION Task: {DFA9FE22-B39C-4048-AC3C-6D95203C25A0} - System32\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-4 => C:\Program Files (x86)\Sense\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-4.exe <==== ATTENTION Task: {E867158A-E802-40E9-BC0A-B04110E058B1} - System32\Tasks\{B9370387-B187-410A-99C6-CBA32ED98C09} => pcalua.exe -a E:\Autorun.exe -d E:\ Task: {E9A373BC-DA72-4E38-BD9D-DA0D7F071579} - \f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-6 No Task File <==== ATTENTION Task: {EA92488D-B2F1-4615-9149-FFCEB2536081} - \93655049-c0b7-4419-850b-cd1147cf527c No Task File <==== ATTENTION Task: {EB766ECE-745E-478A-B0A2-73882B66FEF4} - \f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-1 No Task File <==== ATTENTION Task: {EC7DA5C1-337A-4078-A4EC-7A37C5566466} - System32\Tasks\{BE9BFBFE-1F42-4661-8D81-2EAAC5485616} => pcalua.exe -a "C:\Users\Ewa\AppData\Roaming\0F1F1C2Y1H1P1C0I0T\Windows Live Mail Packages\uninstaller.exe" -c /Uninstall /NM="Windows Live Mail Packages" /AN="0F1F1C2Y1H1P1C0I0T" /MBN="Windows Live Mail Packages" Task: {F78ADDD2-D0FA-4CC6-8CED-5E3A74575920} - System32\Tasks\{03AC0B2E-FE94-46FE-B5AE-940BF0817022} => pcalua.exe -a "C:\Program Files (x86)\Windows Live\Installer\wlarp.exe" Task: {FEAAAF52-087E-427A-B95F-23CF7F13D9A9} - \f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-9 No Task File <==== ATTENTION Task: C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-1.job => C:\Program Files (x86)\iWebar\iWebar-codedownloader.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-2.job => C:\Program Files (x86)\iWebar\4bd3ec58-c42f-443e-8edb-0a5b2d035380-2.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-4.job => C:\Program Files (x86)\iWebar\4bd3ec58-c42f-443e-8edb-0a5b2d035380-4.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-5.job => C:\Program Files (x86)\iWebar\4bd3ec58-c42f-443e-8edb-0a5b2d035380-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-6.job => C:\Program Files (x86)\iWebar\iWebar-nova.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-7.job => C:\Program Files (x86)\iWebar\iWebar-nova.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\58190bb1-7aef-4912-950a-963a46bafae2.job => C:\Program Files (x86)\CinPl2.3c\58190bb1-7aef-4912-950a-963a46bafae2.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\93655049-c0b7-4419-850b-cd1147cf527c.job => C:\Program Files (x86)\CinPl2.3c\93655049-c0b7-4419-850b-cd1147cf527c.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-1.job => C:\Program Files (x86)\CinPl2.3c\CinPl2.3c-codedownloader.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-11.job => C:\Program Files (x86)\CinPl2.3c\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-11.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-2.job => C:\Program Files (x86)\CinPl2.3c\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-2.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-3.job => C:\Program Files (x86)\CinPl2.3c\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-3.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-4.job => C:\Program Files (x86)\CinPl2.3c\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-4.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-5.job => C:\Program Files (x86)\CinPl2.3c\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-5_user.job => C:\Program Files (x86)\CinPl2.3c\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-6.job => C:\Program Files (x86)\CinPl2.3c\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-6.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-7.job => C:\Program Files (x86)\CinPl2.3c\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-7.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-9.job => C:\Program Files (x86)\CinPl2.3c\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-9.exe?/errorsdomain='http://errors.loadgenclientservice.com/utility.gif' /appid=63441 /srcid='002065' /subid='0' /zdata='0' /bic=77ACCD1E35FF4D09BB35F3754B26560BIE /verifier=f02e1bfcadf0b464966fafdbda8253cf /installerversion=1_35_09_03 /installationtime=1410028560 /dodecode=false /filesstring=' "f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-3.exe" : "10", "aee4a39d-0e91-4b82-8bb8-795f061b77b0.crx" : "17", "f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-11.exe" : "23", "f5db5b5a-84f5-4f02-9b56-df6b81aed2b0.crx" : "22", "1293297481.mxaddon" : "18", "aa5d426a-0301-4985-bd3a-b117aab116c2.crx" : "19", "f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-7.exe" : "13", "f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-6.exe" : "14", "aee4a39d-0e91-4b82-8bb8-795f061b77b0.dll" : "15", "f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-64.exe" : "24", "a791f5c3-bbbc-4c3b-941d-66642821299b.dll" : "25", "f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-4.exe" : "12", "f5db5b5a-84f5-4f02-9b56-df6b81aed2b0.xpi" : "20", "CinPl2.3c-codedownloader.exe" : "1", "CinPl2.3c-bho.dll" : "6", "CinPl2.3c-bho64.dll" : "7", "CinPl2.3c-bg.exe" : "8", "f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-2.exe" : "9", "f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-1.job => C:\Program Files (x86)\Sense\Sense-codedownloader.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-2.job => C:\Program Files (x86)\Sense\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-2.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-3.job => C:\Program Files (x86)\Sense\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-3.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-4.job => C:\Program Files (x86)\Sense\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-4.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-5.job => C:\Program Files (x86)\Sense\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-6.job => C:\Program Files (x86)\Sense\Sense-nova.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-7.job => C:\Program Files (x86)\Sense\Sense-nova.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\JCWLUB.job => C:\Users\Ewa\AppData\Roaming\JCWLUB.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\SGDVIPS.job => C:\Users\Ewa\AppData\Roaming\SGDVIPS.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\VeriBrowse Update.job => C:\Program Files (x86)\VeriBrowse-soft\VeriBrowsef28.exe Task: C:\WINDOWS\Tasks\VeriBrowse_wd.job => C:\Program Files (x86)\VeriBrowse-soft\VeriBrowseD.exe HKLM-x32\...\Run: [mobilegeni daemon] => C:\Program Files (x86)\Mobogenie\DaemonProcess.exe HKLM-x32\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.871\jsdrv.exe HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\...\Run: [PriceMeterW] => "C:\Users\Ewa\AppData\Local\PriceMeter\pricemeterw.exe" HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\...\Run: [SPDriver] => C:\Program Files (x86)\ShopperPro\JSDriver\1.37.0.871\jsdrv.exe HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\...\Run: [GoobzoYouTubeAccelerator] => "C:\Program Files (x86)\YouTube Accelerator\YouTubeAccelerator.exe" /startup AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => C:\PROGRA~2\SupTab\SEARCH~2.DLL File Not Found AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => "C:\PROGRA~2\SupTab\SEARCH~1.DLL" File Not Found BootExecute: autocheck autochk * HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.wp.pl/?src01=dp220140906 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.wp.pl/?src01=dp220140906 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1400312599&from=cor&uid=HitachiXHTS727550A9E364_120828J3300080H93UMAX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1400312599&from=cor&uid=HitachiXHTS727550A9E364_120828J3300080H93UMAX&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1400312599&from=cor&uid=HitachiXHTS727550A9E364_120828J3300080H93UMAX&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1400312599&from=cor&uid=HitachiXHTS727550A9E364_120828J3300080H93UMAX&q={searchTerms} HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/web/?type=ds&ts=1402600598&from=wpm0612&uid=HitachiXHTS727550A9E364_120828J3300080H93UMAX&q={searchTerms} HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Internet Explorer\Main,Start Page = www.wp.pl/?src01=dp220140906 HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://vaioportal.sony.eu HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://vaioportal.sony.eu HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/web/?type=ds&ts=1402600598&from=wpm0612&uid=HitachiXHTS727550A9E364_120828J3300080H93UMAX&q={searchTerms} SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL = http://www.default-search.net/search?sid=492&aid=157&itype=a&ver=12791&tm=372&src=ds&p={searchTerms} SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL = http://www.default-search.net/search?sid=492&aid=157&itype=a&ver=12791&tm=372&src=ds&p={searchTerms} SearchScopes: HKU\S-1-5-21-2479230823-2040690117-1165275600-1002 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} URL = http://www.default-search.net/search?sid=492&aid=157&itype=a&ver=12791&tm=372&src=ds&p={searchTerms} BHO: iWebar -> {11111111-1111-1111-1111-110311551110} -> C:\Program Files (x86)\iWebar\iWebar-bho64.dll No File BHO: Sense -> {11111111-1111-1111-1111-110411821192} -> C:\Program Files (x86)\Sense\Sense-bho64.dll No File BHO: Linkey -> {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} -> No File BHO: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro64.dll No File BHO: YTAHelper -> {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} -> C:\ProgramData\YTAHelper\YTAHelper64.dll No File BHO-x32: VeriBrowse -> {04D383F6-41EB-7C53-2985-B56EF7EFED2E} -> C:\Program Files (x86)\VeriBrowse-soft\170.dll () BHO-x32: iWebar -> {11111111-1111-1111-1111-110311551110} -> C:\Program Files (x86)\iWebar\iWebar-bho.dll No File BHO-x32: Sense -> {11111111-1111-1111-1111-110411821192} -> C:\Program Files (x86)\Sense\Sense-bho.dll No File BHO-x32: No Name -> {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} -> No File BHO-x32: Shopper Pro -> {A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C} -> C:\ProgramData\ShopperPro\ShopperPro.dll No File BHO-x32: YTAHelper -> {FCE3FA8B-BA81-467C-81D8-E43C00D1BC71} -> C:\ProgramData\YTAHelper\YTAHelper.dll No File Toolbar: HKU\S-1-5-21-2479230823-2040690117-1165275600-1001 -> No Name - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - No File Toolbar: HKU\S-1-5-21-2479230823-2040690117-1165275600-1002 -> No Name - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - No File Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll No File Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll No File StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.delta-homes.com/?type=sc&ts=1402600598&from=wpm0612&uid=HitachiXHTS727550A9E364_120828J3300080H93UMAX CustomCLSID: HKU\S-1-5-21-2479230823-2040690117-1165275600-1002_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Ewa\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll No File FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File FF Plugin-x32: @tools.updatepm.com/PriceMeterLiveUpdate Update;version=3 -> C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll No File FF Plugin-x32: @tools.updatepm.com/PriceMeterLiveUpdate Update;version=9 -> C:\Program Files (x86)\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll No File FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\default-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\delta-homes.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\qone8.xml FF HKLM-x32\...\Firefox\Extensions: [quick_start@gmail.com] - C:\Users\Ewa\AppData\Roaming\Mozilla\Firefox\Profiles\zx1k2kg9.default\extensions\quick_start@gmail.com FF HKLM-x32\...\Firefox\Extensions: [quiknowledge@quiknowledge.com] - C:\Program Files (x86)\Mozilla Firefox\extensions\quiknowledge@quiknowledge.com FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\...\Firefox\Extensions: [{4CB72F0B-E81D-608B-FC79-DF5F250B0E83}] - C:\Program Files (x86)\VeriBrowse-soft\170.xpi CHR StartupUrls: Default -> "www.wp.pl/?src01=dp220140906", "https://www.google.pl/" CHR HKLM-x32\...\Chrome\Extension: [ainbkicbloikcngphmjfpjdemblcojdd] - C:\Users\Ewa\AppData\Local\Google\Chrome\User Data\Default\Extensions\slidebar.crx [Not Found] CHR HKLM-x32\...\Chrome\Extension: [fdjkhamgopgokjmllcmpkiijndjeidcl] - C:\Users\Ewa\AppData\Local\Temp\twsfiles\trustedshopper.crx [Not Found] CHR HKLM-x32\...\Chrome\Extension: [fjbbjfdilbioabojmcplalojlmdngbjl] - C:\Users\Ewa\AppData\Local\Temp\swlfiles\smileyswelovetoolbar.crx [2014-03-29] CHR HKLM-x32\...\Chrome\Extension: [ogfjmhfnldnajmfaofeiaepghjenbgjo] - C:\Users\Ewa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ep.crx [Not Found] CHR HKLM-x32\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\Ewa\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx [Not Found] C:\Program Files\Common Files\ShopperPro C:\Program Files (x86)\CinPl2.3c C:\Program Files (x86)\globalUpdate C:\Program Files (x86)\iWebar C:\Program Files (x86)\Java C:\Program Files (x86)\Mobogenie C:\Program Files (x86)\PriceMeterLiveUpdate C:\Program Files (x86)\Sense C:\Program Files (x86)\VeriBrowse-soft C:\Program Files (x86)\YouTube Accelerator C:\ProgramData\*.tmp C:\ProgramData\UpdaterLog.txt C:\ProgramData\ShopperPro C:\ProgramData\Temp C:\ProgramData\YTAHelper C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WorldUnlock Calculator\ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Accelerator C:\Users\Ewa\AppData\Local\Google\Chrome\User Data\Default\Preferences C:\Users\Ewa\AppData\Local\PriceMeter C:\Users\Ewa\AppData\Roaming\JCWLUB C:\Users\Ewa\AppData\Roaming\SGDVIPS C:\Users\Ewa\AppData\Roaming\systweak C:\Users\Ewa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WorldofTanks.lnk C:\Users\Ewa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie C:\Users\Ewa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PriceMeter C:\Users\Ewa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofTanks551 C:\Users\Ewa\Desktop\Thumbs.db C:\Users\Ewa\Desktop\Artur\Artur\Baldur's Gate.lnk C:\Users\Ewa\Desktop\Artur\dARIA\Daria\*.lnk C:\Users\Ewa\Downloads\EvercareExpert*.exe C:\Users\Ewa\Downloads\Niepotwierdzony*.crdownload C:\Users\Ewa\Downloads\Thumbs.db C:\Users\Ewa\Downloads\UnityWebPlayer*.exe C:\Users\Ewa\Downloads\UserConfig*.txt C:\Users\UpdatusUser\Desktop\EVEREST Corporate Edition.lnk C:\Windows\System32\Tasks\Norton Identity Safe DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton Identity Safe CMD: for /d %f in (C:\Users\Ewa\AppData\Local\{*}) do rd /s /q "%f" CMD: netsh winsock reset Reg: reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f Reg: reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v GoobzoYouTubeAccelerator /f Reg: reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Windows\CurrentVersion\Policies /f Reg: reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f Reg: reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Windows\CurrentVersion\Run /f Reg: reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Windows\CurrentVersion\Policies /f Reg: reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall /f Reg: reg delete "HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f CMD: dir /a "C:\Program Files" CMD: dir /a "C:\Program Files (x86)" CMD: dir /a "C:\Program Files\Common Files" CMD: dir /a "C:\Program Files (x86)\Common Files" CMD: dir /a C:\ProgramData CMD: dir /a C:\Users\Ewa\AppData\Local CMD: dir /a C:\Users\Ewa\AppData\LocalLow CMD: dir /a C:\Users\Ewa\AppData\Roaming EmptyTemp: ***************** Restore point was successfully created. SPBIUpd => Service deleted successfully. gobi3kserial => Service deleted successfully. sr => Service deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{12350FB1-F33A-470A-B583-CD93B5169EC3}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{12350FB1-F33A-470A-B583-CD93B5169EC3}" => Key deleted successfully. C:\Windows\System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-7 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4bd3ec58-c42f-443e-8edb-0a5b2d035380-7" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1CBD6430-EE47-47DF-8ABB-DF7CF4B949E7}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1CBD6430-EE47-47DF-8ABB-DF7CF4B949E7}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-7" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1EC174B4-72EB-41AF-89CF-A6963546E34D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1EC174B4-72EB-41AF-89CF-A6963546E34D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-6" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1FBB3D45-8C7B-4445-965C-9D18BB53773F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1FBB3D45-8C7B-4445-965C-9D18BB53773F}" => Key deleted successfully. C:\Windows\System32\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-1 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-1" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{24B701CB-C50D-46DD-933A-43853FB6D075}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{24B701CB-C50D-46DD-933A-43853FB6D075}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\58190bb1-7aef-4912-950a-963a46bafae2" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2FB814CB-3DC1-452B-9549-7AFD64CF9E1C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2FB814CB-3DC1-452B-9549-7AFD64CF9E1C}" => Key deleted successfully. C:\Windows\System32\Tasks\SPBIW_UpdateTask_Time_323132313931313135312d6c5b5a345b4132452d5a346c => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SPBIW_UpdateTask_Time_323132313931313135312d6c5b5a345b4132452d5a346c" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{30CD6C54-B85E-405C-A9E0-9DC3E2E6FFD6}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{30CD6C54-B85E-405C-A9E0-9DC3E2E6FFD6}" => Key deleted successfully. C:\Windows\System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-5 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4bd3ec58-c42f-443e-8edb-0a5b2d035380-5" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{32E628D9-C8BC-4033-B20A-EE4B1668E5F5}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{32E628D9-C8BC-4033-B20A-EE4B1668E5F5}" => Key deleted successfully. C:\Windows\System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-6 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4bd3ec58-c42f-443e-8edb-0a5b2d035380-6" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{36ABF8B5-8FAE-4E5C-8C41-CDCD8D1E401A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{36ABF8B5-8FAE-4E5C-8C41-CDCD8D1E401A}" => Key deleted successfully. C:\Windows\System32\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-3 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-3" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{402325E8-4870-4B2B-BEEA-3E18AEAC6DA1}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{402325E8-4870-4B2B-BEEA-3E18AEAC6DA1}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\VeriBrowse Update" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{420BC218-3A91-4736-A65D-261D01CE7BDF}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{420BC218-3A91-4736-A65D-261D01CE7BDF}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-2" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{45ED9750-4649-4088-9EC0-433CD9CFB3FA}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{45ED9750-4649-4088-9EC0-433CD9CFB3FA}" => Key deleted successfully. C:\Windows\System32\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-2 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-2" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{461AC0B9-4254-426A-9A7F-D619FB691CF6}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{461AC0B9-4254-426A-9A7F-D619FB691CF6}" => Key deleted successfully. C:\Windows\System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-4 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4bd3ec58-c42f-443e-8edb-0a5b2d035380-4" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5047A519-2C43-4DFB-BB65-9FE7A23AC422}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5047A519-2C43-4DFB-BB65-9FE7A23AC422}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-11" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{571F4961-0B79-45E5-A9D2-C4FB87A92456}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{571F4961-0B79-45E5-A9D2-C4FB87A92456}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\VeriBrowse_wd" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5AEA5C41-4ED9-4BDB-89E0-2662022EE183}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5AEA5C41-4ED9-4BDB-89E0-2662022EE183}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-7" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5B7D364E-8E6B-4CFA-B1BA-1CD0AEA2D1E3}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5B7D364E-8E6B-4CFA-B1BA-1CD0AEA2D1E3}" => Key deleted successfully. C:\Windows\System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-2 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4bd3ec58-c42f-443e-8edb-0a5b2d035380-2" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{65CCD407-0B34-4FEE-824E-47E6AF4DA880}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65CCD407-0B34-4FEE-824E-47E6AF4DA880}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F637104A-6CC3-45BD-A310-2668EBF45323}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{67E83C4F-DDF7-4EF9-96C6-A6F3852835D5}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{67E83C4F-DDF7-4EF9-96C6-A6F3852835D5}" => Key deleted successfully. C:\Windows\System32\Tasks\Norton Identity Safe\Norton Error Analyzer => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton Identity Safe\Norton Error Analyzer" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{816A897E-2790-4DE9-9790-DC7069F253A1}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{816A897E-2790-4DE9-9790-DC7069F253A1}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\JCWLUB" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{82459B22-E08C-4092-B08C-1FEC72B5E962}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{82459B22-E08C-4092-B08C-1FEC72B5E962}" => Key deleted successfully. C:\Windows\System32\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-5 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-5" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{86D29002-0D21-42B5-91BB-F9FC782D6C60}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{86D29002-0D21-42B5-91BB-F9FC782D6C60}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SGDVIPS" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9555D4DA-7C9D-4F7C-A235-8F635005D54C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9555D4DA-7C9D-4F7C-A235-8F635005D54C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-3" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9BEFDC80-2434-4B55-AECC-8B5C95DEF47D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9BEFDC80-2434-4B55-AECC-8B5C95DEF47D}" => Key deleted successfully. C:\Windows\System32\Tasks\YTAUpdate => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\YTAUpdate" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9C580F5D-835E-4D40-AB49-EC86EE0B0DBF}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9C580F5D-835E-4D40-AB49-EC86EE0B0DBF}" => Key deleted successfully. C:\Windows\System32\Tasks\Norton Identity Safe\Norton Error Processor => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton Identity Safe\Norton Error Processor" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9F5FD23B-8FB9-4AA8-992F-6127C68D06DF}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9F5FD23B-8FB9-4AA8-992F-6127C68D06DF}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-4" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ADB63BFF-C898-43C8-A21D-CF107E06AD2F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ADB63BFF-C898-43C8-A21D-CF107E06AD2F}" => Key deleted successfully. C:\Windows\System32\Tasks\{BA308ECB-A757-434E-874A-EE13FBCB1A55} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BA308ECB-A757-434E-874A-EE13FBCB1A55}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B08E3E71-F600-4B35-B907-0179A78AC679}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B08E3E71-F600-4B35-B907-0179A78AC679}" => Key deleted successfully. C:\Windows\System32\Tasks\{9951A34F-A21C-462D-A3DA-DBE7A49D6C6D} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{9951A34F-A21C-462D-A3DA-DBE7A49D6C6D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B168F218-B930-496F-BAFB-B328C3F33F3A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B168F218-B930-496F-BAFB-B328C3F33F3A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-5" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BEFE3280-A343-4874-A725-67AA3B7730CC}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BEFE3280-A343-4874-A725-67AA3B7730CC}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-5_user" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C16906BD-4A7D-47D0-912F-8B7A7A2DAC0E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C16906BD-4A7D-47D0-912F-8B7A7A2DAC0E}" => Key deleted successfully. C:\Windows\System32\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-1 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\4bd3ec58-c42f-443e-8edb-0a5b2d035380-1" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DFA9FE22-B39C-4048-AC3C-6D95203C25A0}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DFA9FE22-B39C-4048-AC3C-6D95203C25A0}" => Key deleted successfully. C:\Windows\System32\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-4 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-4" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E867158A-E802-40E9-BC0A-B04110E058B1}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E867158A-E802-40E9-BC0A-B04110E058B1}" => Key deleted successfully. C:\Windows\System32\Tasks\{B9370387-B187-410A-99C6-CBA32ED98C09} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B9370387-B187-410A-99C6-CBA32ED98C09}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E9A373BC-DA72-4E38-BD9D-DA0D7F071579}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E9A373BC-DA72-4E38-BD9D-DA0D7F071579}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-6" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EA92488D-B2F1-4615-9149-FFCEB2536081}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EA92488D-B2F1-4615-9149-FFCEB2536081}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\93655049-c0b7-4419-850b-cd1147cf527c" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EB766ECE-745E-478A-B0A2-73882B66FEF4}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EB766ECE-745E-478A-B0A2-73882B66FEF4}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-1" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EC7DA5C1-337A-4078-A4EC-7A37C5566466}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EC7DA5C1-337A-4078-A4EC-7A37C5566466}" => Key deleted successfully. C:\Windows\System32\Tasks\{BE9BFBFE-1F42-4661-8D81-2EAAC5485616} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BE9BFBFE-1F42-4661-8D81-2EAAC5485616}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F78ADDD2-D0FA-4CC6-8CED-5E3A74575920}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F78ADDD2-D0FA-4CC6-8CED-5E3A74575920}" => Key deleted successfully. C:\Windows\System32\Tasks\{03AC0B2E-FE94-46FE-B5AE-940BF0817022} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{03AC0B2E-FE94-46FE-B5AE-940BF0817022}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FEAAAF52-087E-427A-B95F-23CF7F13D9A9}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FEAAAF52-087E-427A-B95F-23CF7F13D9A9}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-9" => Key deleted successfully. C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-1.job => Moved successfully. C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-2.job => Moved successfully. C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-4.job => Moved successfully. C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-5.job => Moved successfully. C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-6.job => Moved successfully. C:\WINDOWS\Tasks\4bd3ec58-c42f-443e-8edb-0a5b2d035380-7.job => Moved successfully. C:\WINDOWS\Tasks\58190bb1-7aef-4912-950a-963a46bafae2.job => Moved successfully. C:\WINDOWS\Tasks\93655049-c0b7-4419-850b-cd1147cf527c.job => Moved successfully. C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-1.job => Moved successfully. C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-11.job => Moved successfully. C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-2.job => Moved successfully. C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-3.job => Moved successfully. C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-4.job => Moved successfully. C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-5.job => Moved successfully. C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-5_user.job => Moved successfully. C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-6.job => Moved successfully. C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-7.job => Moved successfully. C:\WINDOWS\Tasks\f5db5b5a-84f5-4f02-9b56-df6b81aed2b0-9.job => Moved successfully. C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-1.job => Moved successfully. C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-2.job => Moved successfully. C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-3.job => Moved successfully. C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-4.job => Moved successfully. C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-5.job => Moved successfully. C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-6.job => Moved successfully. C:\WINDOWS\Tasks\fbe97edd-eb2f-44c5-b8f7-f44c01ece1de-7.job => Moved successfully. C:\WINDOWS\Tasks\JCWLUB.job => Moved successfully. C:\WINDOWS\Tasks\SGDVIPS.job => Moved successfully. C:\WINDOWS\Tasks\VeriBrowse Update.job => Moved successfully. C:\WINDOWS\Tasks\VeriBrowse_wd.job => Moved successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mobilegeni daemon => value deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SPDriver => value deleted successfully. HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Windows\CurrentVersion\Run\\PriceMeterW => value deleted successfully. HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Windows\CurrentVersion\Run\\SPDriver => value deleted successfully. HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Windows\CurrentVersion\Run\\GoobzoYouTubeAccelerator => value deleted successfully. "C:\PROGRA~2\SupTab\SEARCH~2.DLL" => Value Data removed successfully. "C:\PROGRA~2\SupTab\SEARCH~1.DLL" => Value Data removed successfully. HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Internet Explorer\Main\\Secondary Start Pages => value deleted successfully. HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Internet Explorer\Main\\Default_Secondary_Page_URL => value deleted successfully. HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} => Key could not be deleted. HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} => Key not found. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} => Key could not be deleted. HKCR\Wow6432Node\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} => Key not found. HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} => Key could not be deleted. HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492} => Key not found. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}" => Key deleted successfully. "HKCR\CLSID\{11111111-1111-1111-1111-110311551110}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}" => Key deleted successfully. "HKCR\CLSID\{11111111-1111-1111-1111-110411821192}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}" => Key deleted successfully. "HKCR\CLSID\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}" => Key deleted successfully. "HKCR\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}" => Key deleted successfully. "HKCR\CLSID\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{04D383F6-41EB-7C53-2985-B56EF7EFED2E}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{04D383F6-41EB-7C53-2985-B56EF7EFED2E}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110311551110}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{11111111-1111-1111-1111-110311551110}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110411821192}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{11111111-1111-1111-1111-110411821192}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}" => Key deleted successfully. HKCR\Wow6432Node\CLSID\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} => Key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{FCE3FA8B-BA81-467C-81D8-E43C00D1BC71}" => Key deleted successfully. HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{A13C2648-91D4-4BF3-BC6D-0079707C4389} => value deleted successfully. HKCR\CLSID\{A13C2648-91D4-4BF3-BC6D-0079707C4389} => Key not found. HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{A13C2648-91D4-4BF3-BC6D-0079707C4389} => value deleted successfully. HKCR\CLSID\{A13C2648-91D4-4BF3-BC6D-0079707C4389} => Key not found. "HKCR\PROTOCOLS\Handler\livecall" => Key deleted successfully. HKCR\CLSID\{828030A1-22C1-4009-854F-8E305202313F} => Key not found. "HKCR\PROTOCOLS\Handler\msnim" => Key deleted successfully. HKCR\CLSID\{828030A1-22C1-4009-854F-8E305202313F} => Key not found. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Value was restored successfully. "HKU\S-1-5-21-2479230823-2040690117-1165275600-1002_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}" => Key deleted successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10" => Key deleted successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4" => Key deleted successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@tools.updatepm.com/PriceMeterLiveUpdate Update;version=3" => Key deleted successfully. "HKLM\Software\Wow6432Node\MozillaPlugins\@tools.updatepm.com/PriceMeterLiveUpdate Update;version=9" => Key deleted successfully. C:\Program Files (x86)\mozilla firefox\browser\searchplugins\default-search.xml => Moved successfully. C:\Program Files (x86)\mozilla firefox\browser\searchplugins\delta-homes.xml => Moved successfully. C:\Program Files (x86)\mozilla firefox\browser\searchplugins\qone8.xml => Moved successfully. HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\quick_start@gmail.com => value deleted successfully. HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\quiknowledge@quiknowledge.com => value deleted successfully. HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\msktbird@mcafee.com => value deleted successfully. HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Mozilla\Firefox\Extensions\\{4CB72F0B-E81D-608B-FC79-DF5F250B0E83} => value deleted successfully. Chrome StartupUrls deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ainbkicbloikcngphmjfpjdemblcojdd" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fdjkhamgopgokjmllcmpkiijndjeidcl" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fjbbjfdilbioabojmcplalojlmdngbjl" => Key deleted successfully. C:\Users\Ewa\AppData\Local\Temp\swlfiles\smileyswelovetoolbar.crx => Moved successfully. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma" => Key deleted successfully. C:\Program Files\Common Files\ShopperPro => Moved successfully. C:\Program Files (x86)\CinPl2.3c => Moved successfully. "C:\Program Files (x86)\globalUpdate" => File/Directory not found. "C:\Program Files (x86)\iWebar" => File/Directory not found. C:\Program Files (x86)\Java => Moved successfully. "C:\Program Files (x86)\Mobogenie" => File/Directory not found. C:\Program Files (x86)\PriceMeterLiveUpdate => Moved successfully. "C:\Program Files (x86)\Sense" => File/Directory not found. C:\Program Files (x86)\VeriBrowse-soft => Moved successfully. C:\Program Files (x86)\YouTube Accelerator => Moved successfully. C:\ProgramData\*.tmp => Moved successfully. C:\ProgramData\UpdaterLog.txt => Moved successfully. C:\ProgramData\ShopperPro => Moved successfully. C:\ProgramData\Temp => Moved successfully. "C:\ProgramData\YTAHelper" => File/Directory not found. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WorldUnlock Calculator => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YouTube Accelerator => Moved successfully. C:\Users\Ewa\AppData\Local\Google\Chrome\User Data\Default\Preferences => Moved successfully. "C:\Users\Ewa\AppData\Local\PriceMeter" => File/Directory not found. C:\Users\Ewa\AppData\Roaming\JCWLUB => Moved successfully. C:\Users\Ewa\AppData\Roaming\SGDVIPS => Moved successfully. C:\Users\Ewa\AppData\Roaming\systweak => Moved successfully. C:\Users\Ewa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WorldofTanks.lnk => Moved successfully. C:\Users\Ewa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie => Moved successfully. C:\Users\Ewa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PriceMeter => Moved successfully. C:\Users\Ewa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofTanks551 => Moved successfully. C:\Users\Ewa\Desktop\Thumbs.db => Moved successfully. C:\Users\Ewa\Desktop\Artur\Artur\Baldur's Gate.lnk => Moved successfully. C:\Users\Ewa\Desktop\Artur\dARIA\Daria\*.lnk => Moved successfully. C:\Users\Ewa\Downloads\EvercareExpert*.exe => Moved successfully. C:\Users\Ewa\Downloads\Niepotwierdzony*.crdownload => Moved successfully. C:\Users\Ewa\Downloads\Thumbs.db => Moved successfully. C:\Users\Ewa\Downloads\UnityWebPlayer*.exe => Moved successfully. C:\Users\Ewa\Downloads\UserConfig*.txt => Moved successfully. C:\Users\UpdatusUser\Desktop\EVEREST Corporate Edition.lnk => Moved successfully. C:\Windows\System32\Tasks\Norton Identity Safe => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Norton Identity Safe => Key Deleted successfully. ========= for /d %f in (C:\Users\Ewa\AppData\Local\{*}) do rd /s /q "%f" ========= ========= End of CMD: ========= ========= netsh winsock reset ========= Sucessfully reset the Winsock Catalog. You must restart the computer in order to complete the reset. ========= End of CMD: ========= ========= reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run /v GoobzoYouTubeAccelerator /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1002\Software\Microsoft\Windows\CurrentVersion\Policies /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Windows\CurrentVersion\Run /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Windows\CurrentVersion\Policies /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-21-2479230823-2040690117-1165275600-1001\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: Odmowa dost©pu. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: Odmowa dost©pu. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: Odmowa dost©pu. ========= End of Reg: ========= ========= dir /a "C:\Program Files" ========= Volume in drive C is SYS Volume Serial Number is E40C-4D5B Directory of C:\Program Files 2015-02-12 17:49 . 2015-02-12 17:49 .. 2013-10-26 12:27 AuthenTec 2012-10-19 15:23 AuthenTec TrueSuite 2015-02-12 23:58 Common Files 2013-08-22 16:35 174 desktop.ini 2012-10-19 14:37 Fingerprint Sensor 2013-10-27 16:35 Intel 2012-10-19 16:06 Intel Corporation 2014-12-16 22:28 Internet Explorer 2013-10-02 16:37 Lexmark 3600-4600 Series 2013-09-28 09:22 McAfeeEx 2012-10-19 15:18 microsoft 2013-09-28 08:48 Microsoft Analysis Services 2013-09-28 08:53 Microsoft Office 2014-07-27 16:29 Microsoft Silverlight 2013-09-28 08:53 Microsoft SQL Server Compact Edition 2013-09-28 08:53 Microsoft Sync Framework 2013-09-28 08:54 Microsoft Synchronization Services 2013-10-26 13:22 MSBuild 2013-10-30 12:31 NVIDIA Corporation 2014-08-31 11:16 PCDApp 2013-10-26 12:27 Realtek 2013-10-26 13:22 Reference Assemblies 2014-06-01 12:36 SAMSUNG 2014-12-31 12:40 Sony 2013-10-26 12:26 Synaptics 2012-07-26 08:22 Uninstall Information 2015-02-04 18:32 Windows Defender 2014-09-16 17:48 Windows Journal 2014-05-11 17:14 Windows Live 2013-10-26 12:36 Windows Mail 2014-04-24 13:42 Windows Media Player 2014-04-24 13:42 Windows Multimedia Platform 2013-10-26 12:49 Windows NT 2013-10-26 12:36 Windows Photo Viewer 2014-04-24 13:42 Windows Portable Devices 2013-10-26 12:36 Windows Sidebar 2015-02-11 21:21 WindowsApps 2013-08-22 16:36 WindowsPowerShell 2013-09-28 09:46 WinRAR 1 File(s) 174 bytes 40 Dir(s) 100ÿ470ÿ386ÿ688 bytes free ========= End of CMD: ========= ========= dir /a "C:\Program Files (x86)" ========= Volume in drive C is SYS Volume Serial Number is E40C-4D5B Directory of C:\Program Files (x86) 2015-02-12 23:58 . 2015-02-12 23:58 .. 2013-10-13 19:27 Adobe 2013-11-23 20:11 ALLMediaServer 2013-11-23 20:11 ALLPlayer 2013-10-21 21:19 Apple Software Update 2014-12-14 21:13 Battle.net 2012-10-19 14:45 Cisco 2015-02-12 17:49 Common Files 2013-09-28 09:57 Corel 2012-10-19 15:22 CyberLink 2013-08-22 16:34 174 desktop.ini 2012-10-19 14:34 Dolby Home Theater v4 2015-01-16 08:52 e-file 2015-02-12 23:35 Elex-tech 2014-03-20 13:44 Evercare 2014-08-05 15:51 Google 2015-02-04 18:31 Hearthstone 2015-01-22 08:24 InstallShield Installation Information 2012-10-19 15:14 Intel 2012-10-19 15:13 Intel Corporation 2014-12-16 22:28 Internet Explorer 2014-05-16 17:51 Lavalys 2013-12-23 20:44 Lexmark 3600-4600 Series 2013-10-02 16:37 Lexmark Toolbar 2014-08-31 10:13 Microsoft 2013-09-28 08:48 Microsoft Analysis Services 2013-09-28 08:48 Microsoft Office 2014-07-27 16:29 Microsoft Silverlight 2014-05-11 17:15 Microsoft SQL Server Compact Edition 2013-09-28 08:50 Microsoft Visual Studio 8 2013-10-26 12:37 Microsoft.NET 2015-02-12 21:39 Mozilla Firefox 2015-02-12 23:52 Mozilla Maintenance Service 2013-10-26 12:40 MSBuild 2013-11-23 19:55 NapiProjekt 2013-09-28 09:49 Nero 2014-03-26 07:50 NortonInstaller 2013-10-26 12:37 NVIDIA Corporation 2014-01-27 15:50 OneClickInternet 2014-05-11 15:17 Opera 2012-10-19 14:41 Realtek 2013-10-26 13:22 Reference Assemblies 2013-11-09 20:00 ReflexiveArcade 2014-08-31 11:07 RegClean Pro 2014-08-25 15:31 Samsung 2014-08-07 18:13 Skype 2015-02-08 20:19 Sony 2015-02-08 20:18 Sony Media Go Install 2014-08-31 10:55 Systweak Support Dock 2014-05-16 19:29 Temp 2014-08-31 10:53 VideoLAN 2014-05-25 10:51 WildTangent Games 2014-05-25 12:06 Winamp 2014-11-21 17:31 Windows Defender 2014-05-11 17:29 Windows Live 2013-10-26 12:37 Windows Mail 2014-04-24 13:42 Windows Media Player 2014-04-24 13:42 Windows Multimedia Platform 2013-08-22 16:36 Windows NT 2013-10-26 12:37 Windows Photo Viewer 2014-04-24 13:42 Windows Portable Devices 2013-10-26 12:37 Windows Sidebar 2013-08-22 16:36 WindowsPowerShell 2014-12-22 18:55 World of Warcraft 1 File(s) 174 bytes 64 Dir(s) 100ÿ470ÿ382ÿ592 bytes free ========= End of CMD: ========= ========= dir /a "C:\Program Files\Common Files" ========= Volume in drive C is SYS Volume Serial Number is E40C-4D5B Directory of C:\Program Files\Common Files 2015-02-12 23:58 . 2015-02-12 23:58 .. 2012-10-19 15:23 AuthenTec 2014-05-14 08:32 DESIGNER 2012-10-19 14:45 Intel 2013-10-26 12:36 microsoft shared 2013-08-22 16:36 Services 2014-05-03 10:19 Sony Shared 2013-09-30 05:00 System 0 File(s) 0 bytes 9 Dir(s) 100ÿ470ÿ382ÿ592 bytes free ========= End of CMD: ========= ========= dir /a "C:\Program Files (x86)\Common Files" ========= Volume in drive C is SYS Volume Serial Number is E40C-4D5B Directory of C:\Program Files (x86)\Common Files 2015-02-12 17:49 . 2015-02-12 17:49 .. 2013-10-13 19:27 Adobe 2012-10-19 15:23 AuthenTec 2015-01-22 21:06 Blizzard Entertainment 2012-10-19 15:22 CyberLink 2012-10-19 14:32 InstallShield 2013-10-27 16:34 Intel 2013-09-28 10:51 mcafee 2013-10-26 12:37 Microsoft Shared 2013-09-28 09:49 Nero 2012-10-19 14:40 postureAgent 2013-09-28 09:58 Protexis 2013-08-22 16:36 Services 2014-05-11 17:28 Skype 2015-02-08 20:20 Sony Shared 2014-03-26 07:47 Symantec Shared 2013-09-30 05:00 System 2013-09-28 11:21 Windows Live 0 File(s) 0 bytes 19 Dir(s) 100ÿ470ÿ378ÿ496 bytes free ========= End of CMD: ========= ========= dir /a C:\ProgramData ========= Volume in drive C is SYS Volume Serial Number is E40C-4D5B Directory of C:\ProgramData 2015-02-12 23:58 . 2015-02-12 23:58 .. 2013-10-17 11:12 Adobe 2013-11-23 20:11 ALLPlayer 2013-10-21 21:19 Apple 2013-10-21 21:20 Apple Computer 2013-08-22 15:45 Application Data [C:\ProgramData] 2013-11-09 20:02 Arcade Lab 2013-11-23 20:01 AVG 2014-04-21 15:31 Battle.net 2015-01-22 21:06 Blizzard Entertainment 2014-04-16 14:00 BlueStacks 2013-11-23 19:58 Common Files 2013-09-28 10:09 Corel 2013-10-14 06:56 CyberLink 2014-09-06 19:35 DAEMON Tools Lite 2013-10-26 12:49 Dane aplikacji [C:\ProgramData] 2013-08-22 15:45 Desktop [C:\Users\Public\Desktop] 2013-08-22 15:45 Documents [C:\Users\Public\Documents] 2013-10-26 12:49 Dokumenty [C:\Users\Public\Documents] 2012-10-19 15:23 Downloaded Installations 2012-10-19 14:34 0 DP45977C.lfl 2013-10-02 17:16 Ezprint 2014-03-04 18:43 504 FastPics.log 2013-09-27 09:28 Hewlett-Packard 2014-05-11 15:07 IM 2014-05-11 15:06 IncrediMail 2012-10-19 15:21 install_clap 2012-10-19 16:06 Intel 2012-10-19 14:45 Intel.sav 2012-10-19 15:14 Internet Content Filter 2013-10-09 19:50 iolo 2013-10-02 18:32 IsolatedStorage 2015-02-10 17:32 936 lxdxDiagnostics.log 2015-02-10 17:32 Lx_cats 2013-09-29 13:27 McAfee 2013-10-26 12:49 Menu Start [C:\ProgramData\Microsoft\Windows\Start Menu] 2014-12-16 22:28 Microsoft 2014-12-16 18:26 Microsoft Help 2014-05-11 14:35 Microsoft OneDrive 2013-09-27 07:44 Mozilla 2012-10-19 15:58 MS_Games 2014-03-02 09:01 Nero 2014-03-26 07:50 Norton 2014-03-26 07:47 NortonInstaller 2015-02-11 20:58 262ÿ144 ntuser.dat 2015-02-11 20:58 8ÿ192 ntuser.dat.LOG1 2015-02-11 20:58 8ÿ192 ntuser.dat.LOG2 2015-02-11 20:58 65ÿ536 ntuser.dat{e5759d5a-b226-11e4-84cb-c8f733011d68}.TM.blf 2015-02-11 20:58 524ÿ288 ntuser.dat{e5759d5a-b226-11e4-84cb-c8f733011d68}.TMContainer00000000000000000001.regtrans-ms 2015-02-11 20:58 524ÿ288 ntuser.dat{e5759d5a-b226-11e4-84cb-c8f733011d68}.TMContainer00000000000000000002.regtrans-ms 2013-10-30 18:25 NVIDIA 2012-10-19 14:39 NVIDIA Corporation 2014-10-17 07:00 Oracle 2015-02-08 20:18 Package Cache 2014-02-19 18:15 PITy 2013-10-26 12:37 PRICache 2014-06-08 11:26 PriceMeterLiveUpdate 2015-02-04 18:31 Protexis 2013-10-26 12:49 Pulpit [C:\Users\Public\Desktop] 2013-12-25 14:08 RadiantViewer 2013-09-30 05:02 regid.1991-06.com.microsoft 2012-10-19 14:45 Roaming 2014-06-01 12:35 Samsung 2014-05-11 17:28 Skype 2014-05-03 22:44 Sony 2015-02-08 20:19 Sony Corporation 2013-08-22 15:45 Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu] 2012-10-19 14:53 Sun 2013-10-26 12:49 Szablony [C:\ProgramData\Microsoft\Windows\Templates] 2013-08-22 15:45 Templates [C:\ProgramData\Microsoft\Windows\Templates] 2013-10-04 12:09 TrueSuite 2014-05-25 10:52 WildTangent 2012-10-19 15:24 wwan 2013-11-23 19:58 {01BD4FC9-2F86-4706-A62E-774BB7E9D308} 9 File(s) 1ÿ394ÿ080 bytes 66 Dir(s) 100ÿ470ÿ370ÿ304 bytes free ========= End of CMD: ========= ========= dir /a C:\Users\Ewa\AppData\Local ========= Volume in drive C is SYS Volume Serial Number is E40C-4D5B Directory of C:\Users\Ewa\AppData\Local 2015-02-12 23:58 . 2015-02-12 23:58 .. 2014-07-03 11:37 Adobe 2013-11-23 20:11 ALLMediaServer 2013-10-21 21:19 Apple 2013-10-21 21:21 Apple Computer 2014-05-04 18:39 Apps 2013-09-28 21:57 AuthenTec 2015-02-01 13:07 Battle.net 2014-04-21 16:00 Blizzard 2014-04-21 15:33 Blizzard Entertainment 2014-08-01 11:56 cache 2013-10-14 21:40 Chronicles of Albian 2014-05-17 08:49 Comodo 2013-09-28 10:00 Corel PaintShop Pro 2015-02-12 23:57 CrashDumps 2013-10-14 06:56 Cyberlink 2013-10-26 12:33 Dane aplikacji [C:\Users\Ewa\AppData\Local] 2014-05-25 10:35 Deployment 2015-02-12 18:53 Diagnostics 2015-02-12 23:51 ElevatedDiagnostics 2014-05-04 18:44 EmieSiteList 2014-05-04 18:44 EmieUserList 2014-07-02 13:43 Facebook 2014-05-25 10:47 GG 2014-08-05 15:51 Google 2013-10-26 12:33 Historia [C:\Users\Ewa\AppData\Local\Microsoft\Windows\History] 2015-02-12 18:29 191ÿ425 IconCache.db 2014-05-11 15:14 IM 2014-09-06 19:37 Installer 2013-12-08 16:38 Intel_Corporation 2013-10-03 05:33 Macromedia 2014-08-31 11:09 Microsoft 2014-01-08 18:55 Microsoft Help 2013-10-21 21:12 Mozilla 2014-05-11 15:17 Opera Software 2015-01-23 09:32 Packages 2013-09-26 19:33 Power2Go8 2013-11-23 19:54 Programs 2014-05-04 20:12 PunkBuster 2013-12-25 14:08 RadiantViewer 2014-05-11 17:29 Skype 2015-02-08 20:25 Sony 2013-09-26 19:37 Sony Corporation 2015-02-12 23:58 Temp 2013-10-26 12:33 Temporary Internet Files [C:\Users\Ewa\AppData\Local\Microsoft\Windows\INetCache] 2015-01-20 01:03 Unity 2013-10-27 16:11 VirtualStore 2013-11-06 22:01 Wild Tangent 2014-05-24 12:47 Windows Live 2014-05-11 17:22 Windows Live Writer 2014-06-08 11:25 WorldofTanks 2013-10-02 18:32 _ 1 File(s) 191ÿ425 bytes 52 Dir(s) 100ÿ470ÿ370ÿ304 bytes free ========= End of CMD: ========= ========= dir /a C:\Users\Ewa\AppData\LocalLow ========= Volume in drive C is SYS Volume Serial Number is E40C-4D5B Directory of C:\Users\Ewa\AppData\LocalLow 2015-01-10 12:16 . 2015-01-10 12:16 .. 2013-10-13 20:31 Adobe 2015-02-12 18:30 AuthenTec 2015-01-15 19:18 EmieBrowserModeList 2014-05-11 09:28 EmieSiteList 2014-05-11 09:28 EmieUserList 2014-09-06 19:37 Goobzo 2014-05-11 17:12 Microsoft 2014-05-24 06:15 smileyswelove 2013-10-25 21:47 Sun 2014-05-22 07:12 trustedshopper 2014-01-19 22:19 Unity 0 File(s) 0 bytes 13 Dir(s) 100ÿ470ÿ366ÿ208 bytes free ========= End of CMD: ========= ========= dir /a C:\Users\Ewa\AppData\Roaming ========= Volume in drive C is SYS Volume Serial Number is E40C-4D5B Directory of C:\Users\Ewa\AppData\Roaming 2015-02-12 23:58 . 2015-02-12 23:58 .. 2013-10-13 21:07 8floor 2014-12-19 14:53 Adobe 2013-10-22 20:55 Apple Computer 2014-12-15 10:16 ASP 2013-11-23 20:00 AVG 2015-02-04 18:31 Battle.net 2013-10-13 17:45 BESTplayer 2015-01-28 02:06 BitTorrent 2014-10-09 17:10 CAD-KAS 2015-01-16 08:53 com.efile.epity2014 2013-09-28 10:00 Corel 2014-03-02 08:52 CyberLink 2014-09-06 19:35 DAEMON Tools Lite 2015-02-12 23:34 eCyber 2015-02-12 23:35 Elex-tech 2015-01-16 08:52 fillUp 2014-01-08 21:18 GG 2013-10-26 12:53 Identities 2013-09-26 19:32 Intel 2014-08-25 15:52 Intelli-studio 2014-05-17 11:22 iolo 2013-10-02 18:32 IsolatedStorage 2013-11-09 20:24 JaiboGames 2013-09-26 19:36 Macromedia 2014-08-23 18:43 Microsoft 2013-09-27 07:45 Mozilla 2013-11-23 19:56 NapiProjekt 2013-09-28 09:53 Nero 2014-05-09 07:33 NVIDIA 2013-10-26 10:06 OneClickInternet 2014-05-11 15:17 Opera Software 2014-05-11 06:58 Oracle 2014-06-11 19:30 QuickScan 2014-06-01 12:35 Samsung 2013-09-26 20:08 Sierra Wireless 2014-05-17 12:24 Skype 2014-05-24 06:15 smileyswelove 2015-02-08 20:24 Sony 2013-10-14 06:45 Sony Corporation 2014-05-22 07:12 trustedshopper 2013-09-28 10:00 Ulead Systems 2014-01-19 22:20 Unity 2014-08-31 10:26 198 WB.CFG 2013-10-27 09:48 6 WBPU-TTL.DAT 2014-05-25 10:51 WildTangent 2013-10-24 19:55 Windows Live Writer 2013-09-28 09:47 WinRAR 2014-05-17 08:43 WorldofTanks 2 File(s) 204 bytes 48 Dir(s) 100ÿ470ÿ366ÿ208 bytes free ========= End of CMD: ========= EmptyTemp: => Removed 4.3 GB temporary data. The system needed a reboot. ==== End of Fixlog 00:05:04 ====