Farbar Recovery Scan Tool (x64) Version: 22-02-2015 Ran by Kuba at 2015-02-28 11:59:47 Running from C:\Users\Kuba\Desktop\logi\nowe\nowe2 Boot Mode: Normal ================== Search Registry: "IEUpdate" =========== [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{5CE00E98-CCC3-4417-9A13-6D7D3AE52DA2}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{3A0A4102-54EA-44D9-BC20-6ED96C3C5B9E}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{D3644882-3784-4215-B6C5-89FB08F4AE64}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{53060DAE-6312-4FCE-8025-8649492E0CC7}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{5CE00E98-CCC3-4417-9A13-6D7D3AE52DA2}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{3A0A4102-54EA-44D9-BC20-6ED96C3C5B9E}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{D3644882-3784-4215-B6C5-89FB08F4AE64}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{53060DAE-6312-4FCE-8025-8649492E0CC7}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{5CE00E98-CCC3-4417-9A13-6D7D3AE52DA2}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{3A0A4102-54EA-44D9-BC20-6ED96C3C5B9E}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{D3644882-3784-4215-B6C5-89FB08F4AE64}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{53060DAE-6312-4FCE-8025-8649492E0CC7}"="v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe|Name=Narzędzie wiersza polecenia kolektora zdarzeń|" [HKEY_USERS\S-1-5-21-3839221274-3043303846-3843884880-1000\Control Panel\Desktop] "SCRNSAVE.EXE"=""C:\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe"" [HKEY_USERS\S-1-5-21-3839221274-3043303846-3843884880-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\97fd52bd_0] ""="{0.0.0.00000000}.{ad53ddd8-f0f5-4409-95e0-cdd8f1383f3c}|\Device\HarddiskVolume2\Users\Kuba\AppData\Roaming\Microsoft\Windows\IEUpdate\wecutil.exe%b{00000000-0000-0000-0000-000000000000}" ====== End Of Search ======