Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 25-02-2015 01 Ran by Kamil at 2015-02-27 09:56:38 Run:1 Running from C:\Users\Kamil\Desktop\logi Loaded Profiles: Kamil (Available profiles: Kamil & zawias) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: CreateRestorePoint: R1 {a3f28269-ad17-41a8-b032-3e0313ef8979}w64; C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w64.sys [61120 2014-06-11] (StdLib) R1 {b99c8534-7800-48fa-bd71-519a46cdc7e1}w64; C:\Windows\System32\drivers\{b99c8534-7800-48fa-bd71-519a46cdc7e1}w64.sys [61120 2014-05-13] (StdLib) S3 AthBTPort; \SystemRoot\system32\DRIVERS\btath_flt.sys [X] S3 BTATH_A2DP; \SystemRoot\system32\drivers\btath_a2dp.sys [X] S3 btath_avdt; \SystemRoot\system32\drivers\btath_avdt.sys [X] S3 BTATH_HCRP; \SystemRoot\System32\drivers\btath_hcrp.sys [X] S3 BTATH_HID; \SystemRoot\system32\DRIVERS\btath_hid.sys [X] S3 BTATH_LWFLT; \SystemRoot\system32\DRIVERS\btath_lwflt.sys [X] S3 BTATH_RCP; \SystemRoot\System32\drivers\btath_rcp.sys [X] S3 BtFilter; \SystemRoot\system32\DRIVERS\btfilter.sys [X] Task: {06C1997B-657F-4E02-955D-C99DA523DDA9} - \3904021f-e269-4d64-88b3-1d7db1b5d60f-2 No Task File <==== ATTENTION Task: {169E5C83-F109-4182-A689-0831568E35EB} - \3904021f-e269-4d64-88b3-1d7db1b5d60f-3 No Task File <==== ATTENTION Task: {18D4D069-20E8-4EC3-97E1-164A0CFD82CE} - System32\Tasks\update-S-1-5-21-1577275202-546194520-1271563289-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2014-11-28] () Task: {1A77AE6A-2B4B-4283-8171-B99600056D38} - \SaveSense No Task File <==== ATTENTION Task: {2CB378FC-2F05-424E-BBCC-53F7F804FDDD} - \3904021f-e269-4d64-88b3-1d7db1b5d60f-5 No Task File <==== ATTENTION Task: {381392FD-5027-4D31-A9BD-DB4A388F87A3} - \BonanzaDealsLiveUpdateTaskMachineUA No Task File <==== ATTENTION Task: {3A2DB3A1-72AD-4B23-85F0-3920A3BB7B1D} - \3904021f-e269-4d64-88b3-1d7db1b5d60f-6 No Task File <==== ATTENTION Task: {41B8C1B7-68A1-4587-A021-2474A713D155} - System32\Tasks\{16B21B81-7998-4950-95AD-83796F23D103} => pcalua.exe -a "C:\Program Files\PowerISO\PowerISO.exe" -d "C:\Users\Kamil\Desktop\Age Of Empires 3 Incl Expansion and keys\AoE III Images" -c "C:\Users\Kamil\Desktop\Age Of Empires 3 Incl Expansion and keys\AoE III Images\rld-aoe-cd1.uif" Task: {42C939A3-AC9B-459B-B3B4-653A39A70CA9} - \APSnotifierPP2 No Task File <==== ATTENTION Task: {57ADF43F-6F37-48D3-9DD1-CEC50A9D36EE} - \BlockAndSurf Update No Task File <==== ATTENTION Task: {800D1580-37A8-420B-8E18-A1D9D8556F5E} - \BonanzaDealsUpdate No Task File <==== ATTENTION Task: {8F3C20D3-5FF2-42C9-83F0-27232068EFD9} - \3904021f-e269-4d64-88b3-1d7db1b5d60f-7 No Task File <==== ATTENTION Task: {8F945C8C-8026-4F20-92C9-BC8A133E452D} - \BrowserProtect No Task File <==== ATTENTION Task: {915EDB9C-EBAB-437B-BB36-942EF6BB629A} - \APSnotifierPP1 No Task File <==== ATTENTION Task: {9CD57351-3406-495D-9A18-1290EE668D04} - \BlockAndSurf_wd No Task File <==== ATTENTION Task: {A317467D-4BD8-43C4-A1E4-0FA68AB71057} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2014-11-28] () Task: {D1DA9F10-E940-47EC-AC76-AF97DC1F5B7E} - \3904021f-e269-4d64-88b3-1d7db1b5d60f-1 No Task File <==== ATTENTION Task: {D63234B7-72D5-4BBD-A6A8-4D409D3D1046} - \BonanzaDealsLiveUpdateTaskMachineCore No Task File <==== ATTENTION Task: {D9D59809-ADCE-403D-9855-4C4D5B01BB4E} - \3904021f-e269-4d64-88b3-1d7db1b5d60f-4 No Task File <==== ATTENTION Task: {F0D6B61F-CB21-4C37-9732-79A213B6E817} - \APSnotifierPP3 No Task File <==== ATTENTION Task: C:\WINDOWS\Tasks\bench-Updater removing.job => !©¤ÄGÚC˛¸ŢI›ě»FŇ< ˙˙˙˙Ś/verysilentWORKGROUP\ZAWIAS$This will uninstall Updater.0Ď1Ţ Ąń <==== ATTENTION Task: C:\WINDOWS\Tasks\update-S-1-5-21-1577275202-546194520-1271563289-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe HKLM-x32\...\Run: [fst_pl_30] => [X] HKLM-x32\...\Run: [GPUTemp] => "C:\Users\Kamil\AppData\Local\Temp\GPUTemp.exe" <===== ATTENTION HKLM-x32\...\RunOnce: [SpUninstallCleanUp] => REG delete HKEY_LOCAL_MACHINE\Software\SearchProtect /f HKU\S-1-5-21-1577275202-546194520-1271563289-1001\...\Run: [ALLUpdate] => "C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe" "sleep" HKU\S-1-5-21-1577275202-546194520-1271563289-1001\...\Run: [Viber] => "C:\Users\Kamil\AppData\Local\Viber\Viber.exe" AppInit_DLLs: Files C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program => Files C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program File Not Found AppInit_DLLs-x32: c:\progra~3\107860~1\bitacd1.tmp => c:\ProgramData\1078601655\BITACD1.tmp [4125696 2014-05-22] () GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/web/?type=ds&ts=1413643846&from=ild&uid=WDCXWD7500BPVT-35HXZT3_WD-WX61A72E9441E9441&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/web/?type=ds&ts=1413643846&from=ild&uid=WDCXWD7500BPVT-35HXZT3_WD-WX61A72E9441E9441&q={searchTerms} HKU\S-1-5-21-1577275202-546194520-1271563289-1001\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1409177520&from=cor&uid=WDCXWD7500BPVT-35HXZT3_WD-WX61A72E9441E9441&q={searchTerms} HKU\S-1-5-21-1577275202-546194520-1271563289-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1409177520&from=cor&uid=WDCXWD7500BPVT-35HXZT3_WD-WX61A72E9441E9441&q={searchTerms} SearchScopes: HKLM -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = SearchScopes: HKU\S-1-5-21-1577275202-546194520-1271563289-1001 -> DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&ctid=CT3321459&octid=EB_ORIGINAL_CTID&ISID=M9BA9C948-F955-4336-93F2-2A1DC3A90EB3&SearchSource=58&CUI=&UM=6&UP=SP90554668-25C6-4135-86F0-FBE1B131C98F&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-1577275202-546194520-1271563289-1001 -> {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://www.trovi.com/Results.aspx?gd=&ctid=CT3321459&octid=EB_ORIGINAL_CTID&ISID=M9BA9C948-F955-4336-93F2-2A1DC3A90EB3&SearchSource=58&CUI=&UM=6&UP=SP90554668-25C6-4135-86F0-FBE1B131C98F&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-1577275202-546194520-1271563289-1001 -> {255F6B65-DB46-4392-A798-6749D0F7F98F} URL = BHO: SNT -> {3D30C04E-BEC8-8F6D-960E-8F29DC4E3C19} -> C:\Program Files (x86)\SNT\8u3cH5.x64.dll No File BHO: SNT -> {87177281-2792-D7F4-A6CC-187392CB1983} -> C:\Program Files (x86)\SNT\b5i.x64.dll No File BHO-x32: SNT -> {3D30C04E-BEC8-8F6D-960E-8F29DC4E3C19} -> C:\Program Files (x86)\SNT\8u3cH5.dll No File BHO-x32: SNT -> {87177281-2792-D7F4-A6CC-187392CB1983} -> C:\Program Files (x86)\SNT\b5i.dll No File BHO-x32: IplexToALLPlayer -> {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} -> C:\Program Files (x86)\ALLPlayer\Iplex\IplexToALLPlayer.dll No File C:\Program Files (x86)\ALLPlayer C:\Program Files (x86)\Mozilla Firefox C:\Program Files (x86)\Skillbrains C:\ProgramData\1078601655 C:\ProgramData\ALLPlayer C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer C:\Users\Kamil\AppData\Roaming\msconfig.ini C:\Users\Kamil\AppData\Local\proxy.log C:\Users\Kamil\AppData\Local\updater.log C:\Users\Kamil\AppData\Local\Mozilla C:\Users\Kamil\AppData\Local\Google\Chrome\User Data\Default\Preferences C:\Users\Kamil\AppData\Local\Opera Software C:\Users\Kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\ALLPlayer V5.0.lnk C:\Users\Kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\StormFall.lnk C:\Users\Kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WorldofTanks.lnk C:\Users\Kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormFall C:\Users\Kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofTanks C:\Users\Kamil\AppData\Roaming\Mozilla C:\Users\Kamil\AppData\Roaming\Opera Software C:\Users\Kamil\Desktop\Continue*.lnk C:\Users\Kamil\Documents\Viber.lnk C:\Users\Kamil\Downloads\Whats App PC.exe C:\Users\zawias\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk C:\Users\zawias\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\User Guide.lnk C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w64.sys C:\Windows\System32\drivers\{b99c8534-7800-48fa-bd71-519a46cdc7e1}w64.sys Reg: reg delete HKCU\Software\Mozilla /f Reg: reg delete HKCU\Software\MozillaPlugins /f Reg: reg delete HKLM\SOFTWARE\Mozilla /f Reg: reg delete HKLM\SOFTWARE\MozillaPlugins /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Mozilla /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\mozilla.org /f Reg: reg delete HKLM\SOFTWARE\Wow6432Node\MozillaPlugins /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. {a3f28269-ad17-41a8-b032-3e0313ef8979}w64 => Unable to stop service {a3f28269-ad17-41a8-b032-3e0313ef8979}w64 => Service deleted successfully. {b99c8534-7800-48fa-bd71-519a46cdc7e1}w64 => Unable to stop service {b99c8534-7800-48fa-bd71-519a46cdc7e1}w64 => Service deleted successfully. AthBTPort => Service deleted successfully. BTATH_A2DP => Service deleted successfully. btath_avdt => Service deleted successfully. BTATH_HCRP => Service deleted successfully. BTATH_HID => Service deleted successfully. BTATH_LWFLT => Service deleted successfully. BTATH_RCP => Service deleted successfully. BtFilter => Service deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{06C1997B-657F-4E02-955D-C99DA523DDA9}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{06C1997B-657F-4E02-955D-C99DA523DDA9}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3904021f-e269-4d64-88b3-1d7db1b5d60f-2" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{169E5C83-F109-4182-A689-0831568E35EB}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{169E5C83-F109-4182-A689-0831568E35EB}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3904021f-e269-4d64-88b3-1d7db1b5d60f-3" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{18D4D069-20E8-4EC3-97E1-164A0CFD82CE}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{18D4D069-20E8-4EC3-97E1-164A0CFD82CE}" => Key deleted successfully. C:\Windows\System32\Tasks\update-S-1-5-21-1577275202-546194520-1271563289-1001 => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\update-S-1-5-21-1577275202-546194520-1271563289-1001" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1A77AE6A-2B4B-4283-8171-B99600056D38}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1A77AE6A-2B4B-4283-8171-B99600056D38}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SaveSense" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{2CB378FC-2F05-424E-BBCC-53F7F804FDDD}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2CB378FC-2F05-424E-BBCC-53F7F804FDDD}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3904021f-e269-4d64-88b3-1d7db1b5d60f-5" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{381392FD-5027-4D31-A9BD-DB4A388F87A3}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{381392FD-5027-4D31-A9BD-DB4A388F87A3}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BonanzaDealsLiveUpdateTaskMachineUA" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3A2DB3A1-72AD-4B23-85F0-3920A3BB7B1D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3A2DB3A1-72AD-4B23-85F0-3920A3BB7B1D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3904021f-e269-4d64-88b3-1d7db1b5d60f-6" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{41B8C1B7-68A1-4587-A021-2474A713D155}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{41B8C1B7-68A1-4587-A021-2474A713D155}" => Key deleted successfully. C:\Windows\System32\Tasks\{16B21B81-7998-4950-95AD-83796F23D103} => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{16B21B81-7998-4950-95AD-83796F23D103}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{42C939A3-AC9B-459B-B3B4-653A39A70CA9}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{42C939A3-AC9B-459B-B3B4-653A39A70CA9}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP2" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{57ADF43F-6F37-48D3-9DD1-CEC50A9D36EE}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{57ADF43F-6F37-48D3-9DD1-CEC50A9D36EE}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BlockAndSurf Update" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{800D1580-37A8-420B-8E18-A1D9D8556F5E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{800D1580-37A8-420B-8E18-A1D9D8556F5E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BonanzaDealsUpdate" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8F3C20D3-5FF2-42C9-83F0-27232068EFD9}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8F3C20D3-5FF2-42C9-83F0-27232068EFD9}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3904021f-e269-4d64-88b3-1d7db1b5d60f-7" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8F945C8C-8026-4F20-92C9-BC8A133E452D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8F945C8C-8026-4F20-92C9-BC8A133E452D}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BrowserProtect" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{915EDB9C-EBAB-437B-BB36-942EF6BB629A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{915EDB9C-EBAB-437B-BB36-942EF6BB629A}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP1" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9CD57351-3406-495D-9A18-1290EE668D04}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9CD57351-3406-495D-9A18-1290EE668D04}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BlockAndSurf_wd" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A317467D-4BD8-43C4-A1E4-0FA68AB71057}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A317467D-4BD8-43C4-A1E4-0FA68AB71057}" => Key deleted successfully. C:\Windows\System32\Tasks\update-sys => Moved successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\update-sys" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D1DA9F10-E940-47EC-AC76-AF97DC1F5B7E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D1DA9F10-E940-47EC-AC76-AF97DC1F5B7E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3904021f-e269-4d64-88b3-1d7db1b5d60f-1" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D63234B7-72D5-4BBD-A6A8-4D409D3D1046}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D63234B7-72D5-4BBD-A6A8-4D409D3D1046}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BonanzaDealsLiveUpdateTaskMachineCore" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D9D59809-ADCE-403D-9855-4C4D5B01BB4E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D9D59809-ADCE-403D-9855-4C4D5B01BB4E}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\3904021f-e269-4d64-88b3-1d7db1b5d60f-4" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F0D6B61F-CB21-4C37-9732-79A213B6E817}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0D6B61F-CB21-4C37-9732-79A213B6E817}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\APSnotifierPP3" => Key deleted successfully. C:\WINDOWS\Tasks\bench-Updater removing.job => Moved successfully. ˙˙˙˙Ś/verysilentWORKGROUP\ZAWIAS$This will uninstall Updater.0Ď1Ţ Ąń <==== ATTENTION => Error: No automatic fix found for this entry. C:\WINDOWS\Tasks\update-S-1-5-21-1577275202-546194520-1271563289-1001.job => Moved successfully. C:\WINDOWS\Tasks\update-sys.job => Moved successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\fst_pl_30 => value deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\GPUTemp => value deleted successfully. HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\SpUninstallCleanUp => Value not found. HKU\S-1-5-21-1577275202-546194520-1271563289-1001\Software\Microsoft\Windows\CurrentVersion\Run\\ALLUpdate => value deleted successfully. HKU\S-1-5-21-1577275202-546194520-1271563289-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Viber => value deleted successfully. "Files C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program C:\Program" => Value Data removed successfully. "c:\progra~3\107860~1\bitacd1.tmp" => Value Data removed successfully. C:\WINDOWS\system32\GroupPolicy\Machine => Moved successfully. C:\WINDOWS\system32\GroupPolicy\GPT.ini => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. HKU\S-1-5-21-1577275202-546194520-1271563289-1001\Software\Microsoft\Internet Explorer\Main\\Search Page => Value was restored successfully. HKU\S-1-5-21-1577275202-546194520-1271563289-1001\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Value was restored successfully. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}" => Key deleted successfully. HKCR\CLSID\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} => Key not found. HKU\S-1-5-21-1577275202-546194520-1271563289-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully. "HKU\S-1-5-21-1577275202-546194520-1271563289-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}" => Key deleted successfully. HKCR\CLSID\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} => Key not found. "HKU\S-1-5-21-1577275202-546194520-1271563289-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{255F6B65-DB46-4392-A798-6749D0F7F98F}" => Key deleted successfully. HKCR\CLSID\{255F6B65-DB46-4392-A798-6749D0F7F98F} => Key not found. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3D30C04E-BEC8-8F6D-960E-8F29DC4E3C19}" => Key deleted successfully. "HKCR\CLSID\{3D30C04E-BEC8-8F6D-960E-8F29DC4E3C19}" => Key deleted successfully. "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{87177281-2792-D7F4-A6CC-187392CB1983}" => Key deleted successfully. "HKCR\CLSID\{87177281-2792-D7F4-A6CC-187392CB1983}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3D30C04E-BEC8-8F6D-960E-8F29DC4E3C19}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{3D30C04E-BEC8-8F6D-960E-8F29DC4E3C19}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{87177281-2792-D7F4-A6CC-187392CB1983}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{87177281-2792-D7F4-A6CC-187392CB1983}" => Key deleted successfully. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF925EF3-7A87-44E4-9CAF-8D7B280BF616}" => Key deleted successfully. "HKCR\Wow6432Node\CLSID\{DF925EF3-7A87-44E4-9CAF-8D7B280BF616}" => Key deleted successfully. C:\Program Files (x86)\ALLPlayer => Moved successfully. C:\Program Files (x86)\Mozilla Firefox => Moved successfully. C:\Program Files (x86)\Skillbrains => Moved successfully. C:\ProgramData\1078601655 => Moved successfully. C:\ProgramData\ALLPlayer => Moved successfully. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer => Moved successfully. C:\Users\Kamil\AppData\Roaming\msconfig.ini => Moved successfully. C:\Users\Kamil\AppData\Local\proxy.log => Moved successfully. C:\Users\Kamil\AppData\Local\updater.log => Moved successfully. C:\Users\Kamil\AppData\Local\Mozilla => Moved successfully. C:\Users\Kamil\AppData\Local\Google\Chrome\User Data\Default\Preferences => Moved successfully. C:\Users\Kamil\AppData\Local\Opera Software => Moved successfully. C:\Users\Kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\ALLPlayer V5.0.lnk => Moved successfully. C:\Users\Kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\StormFall.lnk => Moved successfully. C:\Users\Kamil\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WorldofTanks.lnk => Moved successfully. C:\Users\Kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StormFall => Moved successfully. C:\Users\Kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofTanks => Moved successfully. C:\Users\Kamil\AppData\Roaming\Mozilla => Moved successfully. C:\Users\Kamil\AppData\Roaming\Opera Software => Moved successfully. C:\Users\Kamil\Desktop\Continue*.lnk => Moved successfully. C:\Users\Kamil\Documents\Viber.lnk => Moved successfully. C:\Users\Kamil\Downloads\Whats App PC.exe => Moved successfully. C:\Users\zawias\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk => Moved successfully. C:\Users\zawias\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\User Guide.lnk => Moved successfully. C:\Windows\System32\drivers\{a3f28269-ad17-41a8-b032-3e0313ef8979}w64.sys => Moved successfully. C:\Windows\System32\drivers\{b99c8534-7800-48fa-bd71-519a46cdc7e1}w64.sys => Moved successfully. ========= reg delete HKCU\Software\Mozilla /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKCU\Software\MozillaPlugins /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Mozilla /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\MozillaPlugins /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\Mozilla /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\mozilla.org /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Wow6432Node\MozillaPlugins /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= ERROR: The system was unable to find the specified registry key or value. ========= End of Reg: ========= EmptyTemp: => Removed 2.7 GB temporary data. The system needed a reboot. ==== End of Fixlog 09:57:55 ====