Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 22-02-2015 Ran by dom at 2015-02-23 16:48:22 Run:1 Running from C:\Users\dom\Desktop\przegladarki\Palemoon_download Loaded Profiles: dom (Available profiles: dom) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: CreateRestorePoint: S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2015-02-11] () [File not signed] S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2015-02-11] () [File not signed] Task: {167C7DCC-40CC-4044-847F-A2DCACEB8FC4} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2015-02-11] () <==== ATTENTION Task: {3F3F6A48-C96A-42B5-9287-99BE565F0227} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2015-02-11] () <==== ATTENTION Task: {4A3BEC92-28D1-4FB1-8F7C-32F645F0F166} - System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-7 => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-7.exe <==== ATTENTION Task: {4ABF7B68-E47C-42A7-B17B-E118CECAA02F} - System32\Tasks\{7A6855CF-5C51-48F1-9B0C-95F6FB0419E0} => pcalua.exe -a "C:\Program Files\LG Electronics\LG Bluetooth Drivers\UninstallShld.exe" -d C:\windows\system32 -c C:\Program Files\LG Electronics\LG Bluetooth Drivers Task: {908C4B04-C417-4F67-B90F-ACFEB2417BCF} - System32\Tasks\{AA9ED550-E13D-497F-A98F-82B7833D76CC} => pcalua.exe -a C:\Users\dom\Desktop\Mozilla_download\smwin143pl.exe -d C:\Users\dom\Desktop\Mozilla_download Task: {AD55637F-0184-4561-817B-B71CD03FF25F} - System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-5 => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-5.exe <==== ATTENTION Task: {AE17D2CA-3C71-47AA-BDB9-8C3EBE2DCDA1} - System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-1-7 => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-1-7.exe <==== ATTENTION Task: {B0B9B7E9-922E-4FD3-A2CA-01722770C7D5} - System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-5_user => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-5.exe <==== ATTENTION Task: {D2D9C35F-8E1F-410D-9674-2B105B14FCD8} - System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-1-6 => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-1-6.exe <==== ATTENTION Task: {DC3D3C6D-E066-4C36-8A24-22F0FADBD808} - System32\Tasks\WEEQSH => C:\Users\dom\AppData\Roaming\WEEQSH.exe [2015-02-11] () <==== ATTENTION Task: {E3B0B2AA-F165-4636-BCD8-750D3D907899} - System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-4 => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-4.exe <==== ATTENTION Task: {F80DF942-3F79-4A20-81F1-0F74B988938E} - System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-6 => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-6.exe <==== ATTENTION Task: {F9B6BD70-BB60-46B3-B529-A546AB89FF5F} - System32\Tasks\STQBARY => C:\Users\dom\AppData\Roaming\STQBARY.exe [2015-02-11] () <==== ATTENTION Task: C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-1-6.job => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-1-6.exe <==== ATTENTION Task: C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-1-7.job => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-1-7.exe <==== ATTENTION Task: C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-4.job => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-4.exe <==== ATTENTION Task: C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-5.job => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-5.exe <==== ATTENTION Task: C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-5_user.job => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-5.exe <==== ATTENTION Task: C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-6.job => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-6.exe <==== ATTENTION Task: C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-7.job => C:\Program Files\HQCinema Pro 2.1V11.02\c601038f-a537-4972-84fb-172f9c9caf85-7.exe <==== ATTENTION Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\windows\Tasks\STQBARY.job => C:\Users\dom\AppData\Roaming\STQBARY.exe <==== ATTENTION Task: C:\windows\Tasks\WEEQSH.job => C:\Users\dom\AppData\Roaming\WEEQSH.exe <==== ATTENTION CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\dom\AppData\Local\Google\Update\1.3.25.11\psuser.dll No File CustomCLSID: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5}\localserver32 -> c:\Temp\bfea\temp\Minecrafr Force Op Hack v3.51.exe No File GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type=ds&ts=1423640401&from=wpc&uid=SAMSUNGXHM500JI_S20CJD0SC36258&q={searchTerms} SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type=ds&ts=1423640401&from=wpc&uid=SAMSUNGXHM500JI_S20CJD0SC36258&q={searchTerms} SearchScopes: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type=ds&ts=1423640401&from=wpc&uid=SAMSUNGXHM500JI_S20CJD0SC36258&q={searchTerms} SearchScopes: HKU\S-1-5-21-3916604919-2912353607-3506189148-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.mystartsearch.com/web/?type=ds&ts=1423640401&from=wpc&uid=SAMSUNGXHM500JI_S20CJD0SC36258&q={searchTerms} FF Plugin: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll () FF Plugin: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll () FF HKLM\...\Firefox\Extensions: [{00ADD29A-66F4-4f22-BCC0-4C1D29DA647B}] - C:\Program Files\LG Electronics\LG PC Suite IV\LinkAir\{00ADD29A-66F4-4f22-BCC0-4C1D29DA647B} FF HKLM\...\Firefox\Extensions: [{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}] - c:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF HKLM\...\Firefox\Extensions: [fftoolbar2014@etech.com] - C:\Users\dom\AppData\Roaming\Mozilla\Firefox\Profiles\af9g5q5i.default-1416422001587\extensions\fftoolbar2014@etech.com AlternateDataStreams: C:\windows\system32\charmap.exe:$CmdTcID AlternateDataStreams: C:\windows\system32\mf.dll:$CmdTcID AlternateDataStreams: C:\windows\system32\mferror.dll:$CmdTcID AlternateDataStreams: C:\windows\system32\mfpmp.exe:$CmdTcID AlternateDataStreams: C:\windows\system32\mfps.dll:$CmdTcID AlternateDataStreams: C:\windows\system32\rrinstaller.exe:$CmdTcID AlternateDataStreams: C:\windows\system32\tzres.dll:$CmdTcID AlternateDataStreams: C:\windows\system32\WSManHTTPConfig.exe:$CmdTcID AlternateDataStreams: C:\windows\system32\WSManMigrationPlugin.dll:$CmdTcID AlternateDataStreams: C:\windows\system32\WsmAuto.dll:$CmdTcID AlternateDataStreams: C:\windows\system32\WsmSvc.dll:$CmdTcID AlternateDataStreams: C:\windows\system32\WsmWmiPl.dll:$CmdTcID AlternateDataStreams: C:\windows\system32\Drivers\tdx.sys:$CmdTcID C:\Program Files\1694585a-6eec-4f75-943f-2bb665d17916 C:\Program Files\globalUpdate C:\Program Files\Google C:\Program Files\RelayDefender C:\Program Files\UniDeals C:\Program Files\UUniDeals i C:\ProgramData\{*}.log C:\ProgramData\{18840fa2-3035-e0c7-1884-40fa23033e88} C:\ProgramData\{d50be457-e101-4565-d50b-be457e10915f} C:\ProgramData\308de2eb00001a67 C:\ProgramData\3686347444293087203 C:\ProgramData\njcdehncliogiphpkldcgfdgfhlnianj C:\Users\dom\AppData\Local\70149b02515b3bb20dd492.47983420 C:\Users\dom\AppData\Local\nso53E3.tmp C:\Users\dom\AppData\Local\globalUpdate C:\Users\dom\AppData\Local\Google C:\Users\dom\AppData\Roaming\STQBARY C:\Users\dom\AppData\Roaming\STQBARY.exe C:\Users\dom\AppData\Roaming\WEEQSH C:\Users\dom\AppData\Roaming\WEEQSH.exe C:\Users\dom\AppData\Roaming\EZDownloader C:\Users\dom\AppData\Roaming\GoldenGate C:\Users\dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage C:\Users\dom\AppData\Roaming\VOPackage C:\Users\dom\AppData\Roaming\TheSettlersOnline111 C:\Users\dom\Downloads\Minecraft Force Op.zip C:\Users\dom\Downloads\Minecraft Force Op C:\Users\dom\Desktop\stary_pulpit\sony\*.lnk C:\Users\dom\Desktop\stary_pulpit\canon\Canon MP550 series Podrecznik ekranowy.lnk C:\Users\dom\Desktop\stary_pulpit\canon\Rejestracja uzytkownika drukarki Canon MP550 series.LNK C:\Users\dom\Downloads\*_Sciagnij.pl.exe C:\Users\dom\Documents\Optimizer Pro Reg: reg delete HKCU\Software\Google /f Reg: reg delete HKLM\SOFTWARE\Google /f EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. globalUpdate => Service deleted successfully. globalUpdatem => Service deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{167C7DCC-40CC-4044-847F-A2DCACEB8FC4}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{167C7DCC-40CC-4044-847F-A2DCACEB8FC4}" => Key deleted successfully. C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineCore" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3F3F6A48-C96A-42B5-9287-99BE565F0227}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3F3F6A48-C96A-42B5-9287-99BE565F0227}" => Key deleted successfully. C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\globalUpdateUpdateTaskMachineUA" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4A3BEC92-28D1-4FB1-8F7C-32F645F0F166}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4A3BEC92-28D1-4FB1-8F7C-32F645F0F166}" => Key deleted successfully. C:\Windows\System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-7 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c601038f-a537-4972-84fb-172f9c9caf85-7" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4ABF7B68-E47C-42A7-B17B-E118CECAA02F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4ABF7B68-E47C-42A7-B17B-E118CECAA02F}" => Key deleted successfully. C:\Windows\System32\Tasks\{7A6855CF-5C51-48F1-9B0C-95F6FB0419E0} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7A6855CF-5C51-48F1-9B0C-95F6FB0419E0}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{908C4B04-C417-4F67-B90F-ACFEB2417BCF}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{908C4B04-C417-4F67-B90F-ACFEB2417BCF}" => Key deleted successfully. C:\Windows\System32\Tasks\{AA9ED550-E13D-497F-A98F-82B7833D76CC} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{AA9ED550-E13D-497F-A98F-82B7833D76CC}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AD55637F-0184-4561-817B-B71CD03FF25F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AD55637F-0184-4561-817B-B71CD03FF25F}" => Key deleted successfully. C:\Windows\System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-5 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c601038f-a537-4972-84fb-172f9c9caf85-5" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AE17D2CA-3C71-47AA-BDB9-8C3EBE2DCDA1}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AE17D2CA-3C71-47AA-BDB9-8C3EBE2DCDA1}" => Key deleted successfully. C:\Windows\System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-1-7 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c601038f-a537-4972-84fb-172f9c9caf85-1-7" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B0B9B7E9-922E-4FD3-A2CA-01722770C7D5}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B0B9B7E9-922E-4FD3-A2CA-01722770C7D5}" => Key deleted successfully. C:\Windows\System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-5_user => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c601038f-a537-4972-84fb-172f9c9caf85-5_user" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D2D9C35F-8E1F-410D-9674-2B105B14FCD8}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D2D9C35F-8E1F-410D-9674-2B105B14FCD8}" => Key deleted successfully. C:\Windows\System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-1-6 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c601038f-a537-4972-84fb-172f9c9caf85-1-6" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DC3D3C6D-E066-4C36-8A24-22F0FADBD808}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DC3D3C6D-E066-4C36-8A24-22F0FADBD808}" => Key deleted successfully. C:\Windows\System32\Tasks\WEEQSH => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WEEQSH" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E3B0B2AA-F165-4636-BCD8-750D3D907899}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E3B0B2AA-F165-4636-BCD8-750D3D907899}" => Key deleted successfully. C:\Windows\System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-4 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c601038f-a537-4972-84fb-172f9c9caf85-4" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F80DF942-3F79-4A20-81F1-0F74B988938E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F80DF942-3F79-4A20-81F1-0F74B988938E}" => Key deleted successfully. C:\Windows\System32\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-6 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\c601038f-a537-4972-84fb-172f9c9caf85-6" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F9B6BD70-BB60-46B3-B529-A546AB89FF5F}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F9B6BD70-BB60-46B3-B529-A546AB89FF5F}" => Key deleted successfully. C:\Windows\System32\Tasks\STQBARY => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\STQBARY" => Key deleted successfully. C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-1-6.job => Moved successfully. C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-1-7.job => Moved successfully. C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-4.job => Moved successfully. C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-5.job => Moved successfully. C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-5_user.job => Moved successfully. C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-6.job => Moved successfully. C:\windows\Tasks\c601038f-a537-4972-84fb-172f9c9caf85-7.job => Moved successfully. C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job => Moved successfully. C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job => Moved successfully. C:\windows\Tasks\STQBARY.job => Moved successfully. C:\windows\Tasks\WEEQSH.job => Moved successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}" => Key deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000_Classes\CLSID\{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5}" => Key deleted successfully. C:\windows\system32\GroupPolicy\Machine => Moved successfully. C:\windows\system32\GroupPolicy\GPT.ini => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found. HKU\S-1-5-21-3916604919-2912353607-3506189148-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. "HKU\S-1-5-21-3916604919-2912353607-3506189148-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => Key deleted successfully. HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => Key not found. "HKLM\Software\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10" => Key deleted successfully. C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll => Moved successfully. "HKLM\Software\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4" => Key deleted successfully. C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll not found. HKLM\Software\Mozilla\Firefox\Extensions\\{00ADD29A-66F4-4f22-BCC0-4C1D29DA647B} => value deleted successfully. HKLM\Software\Mozilla\Firefox\Extensions\\{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2} => value deleted successfully. HKLM\Software\Mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758} => value deleted successfully. HKLM\Software\Mozilla\Firefox\Extensions\\fftoolbar2014@etech.com => value deleted successfully. C:\windows\system32\charmap.exe => ":$CmdTcID" ADS removed successfully. C:\windows\system32\mf.dll => ":$CmdTcID" ADS removed successfully. C:\windows\system32\mferror.dll => ":$CmdTcID" ADS removed successfully. C:\windows\system32\mfpmp.exe => ":$CmdTcID" ADS removed successfully. C:\windows\system32\mfps.dll => ":$CmdTcID" ADS removed successfully. C:\windows\system32\rrinstaller.exe => ":$CmdTcID" ADS removed successfully. C:\windows\system32\tzres.dll => ":$CmdTcID" ADS removed successfully. C:\windows\system32\WSManHTTPConfig.exe => ":$CmdTcID" ADS removed successfully. C:\windows\system32\WSManMigrationPlugin.dll => ":$CmdTcID" ADS removed successfully. C:\windows\system32\WsmAuto.dll => ":$CmdTcID" ADS removed successfully. C:\windows\system32\WsmSvc.dll => ":$CmdTcID" ADS removed successfully. C:\windows\system32\WsmWmiPl.dll => ":$CmdTcID" ADS removed successfully. C:\windows\system32\Drivers\tdx.sys => ":$CmdTcID" ADS removed successfully. C:\Program Files\1694585a-6eec-4f75-943f-2bb665d17916 => Moved successfully. C:\Program Files\globalUpdate => Moved successfully. C:\Program Files\Google => Moved successfully. C:\Program Files\RelayDefender => Moved successfully. C:\Program Files\UniDeals => Moved successfully. C:\Program Files\UUniDeals i => Moved successfully. C:\ProgramData\{*}.log => Moved successfully. C:\ProgramData\{18840fa2-3035-e0c7-1884-40fa23033e88} => Moved successfully. C:\ProgramData\{d50be457-e101-4565-d50b-be457e10915f} => Moved successfully. C:\ProgramData\308de2eb00001a67 => Moved successfully. C:\ProgramData\3686347444293087203 => Moved successfully. C:\ProgramData\njcdehncliogiphpkldcgfdgfhlnianj => Moved successfully. C:\Users\dom\AppData\Local\70149b02515b3bb20dd492.47983420 => Moved successfully. C:\Users\dom\AppData\Local\nso53E3.tmp => Moved successfully. C:\Users\dom\AppData\Local\globalUpdate => Moved successfully. C:\Users\dom\AppData\Local\Google => Moved successfully. C:\Users\dom\AppData\Roaming\STQBARY => Moved successfully. C:\Users\dom\AppData\Roaming\STQBARY.exe => Moved successfully. C:\Users\dom\AppData\Roaming\WEEQSH => Moved successfully. C:\Users\dom\AppData\Roaming\WEEQSH.exe => Moved successfully. C:\Users\dom\AppData\Roaming\EZDownloader => Moved successfully. C:\Users\dom\AppData\Roaming\GoldenGate => Moved successfully. "C:\Users\dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage" => File/Directory not found. "C:\Users\dom\AppData\Roaming\VOPackage" => File/Directory not found. C:\Users\dom\AppData\Roaming\TheSettlersOnline111 => Moved successfully. C:\Users\dom\Downloads\Minecraft Force Op.zip => Moved successfully. C:\Users\dom\Downloads\Minecraft Force Op => Moved successfully. C:\Users\dom\Desktop\stary_pulpit\sony\*.lnk => Moved successfully. "C:\Users\dom\Desktop\stary_pulpit\canon\Canon MP550 series Podrecznik ekranowy.lnk" => File/Directory not found. "C:\Users\dom\Desktop\stary_pulpit\canon\Rejestracja uzytkownika drukarki Canon MP550 series.LNK" => File/Directory not found. C:\Users\dom\Downloads\*_Sciagnij.pl.exe => Moved successfully. C:\Users\dom\Documents\Optimizer Pro => Moved successfully. ========= reg delete HKCU\Software\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= EmptyTemp: => Removed 165.8 MB temporary data. The system needed a reboot. ==== End of Fixlog 16:49:45 ====