Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 11-03-2015 Ran by user at 2015-03-18 13:14:15 Run:1 Running from C:\Documents and Settings\user\Pulpit\naprawa system Loaded Profiles: user (Available profiles: user) Boot Mode: Normal ============================================== Content of fixlist: ***************** CloseProcesses: CreateRestorePoint: CHR HomePage: Default -> hxxp://www.wp.pl/ CHR StartupUrls: Default -> "hxxp://isearch.omiga-plus.com/?type=hp&ts=1421849315&from=cor&uid=FUJITSUXMHY2200BH_K429T832ADRBT832ADRBX" GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File Task: C:\WINDOWS\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe C:\Documents and Settings\All Users\Menu Start\Programy\PL-2303 USB-Serial Driver C:\Documents and Settings\user\Dane aplikacji\Mozilla C:\Documents and Settings\user\Moje dokumenty\CERTYFIKATY\Skrót do CRL-2003-11-11.lnk C:\Documents and Settings\user\Pulpit\Skrót do CryptoCard Suite.lnk C:\Documents and Settings\user\Pulpit\Skrót do HASPUserSetup.lnk C:\Documents and Settings\user\Pulpit\Skrót do Wykazy KIR S.A..lnk C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Adobe Reader 8.lnk C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\avast! Free Antivirus.lnk C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Menedżer CryptoCard Suite.lnk C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Menedżer komponentu technicznego.lnk C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Mozilla Firefox.lnk C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Nero StartSmart Essentials.lnk C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Skrót (2) do CryptoCard_Suite_1.20.0039_setup.exe.lnk C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Skrót do 20100728_Instrukcja_odnawiania_certyfikatów.lnk C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Skrót do zamówienie.lnk C:\Program Files\Dynamo Combo C:\Program Files\Mozilla Firefox Reg: reg delete HKCU\Software\Mozilla /f Reg: reg delete HKCU\Software\MozillaPlugins /f Reg: reg delete HKLM\SOFTWARE\Mozilla /f Reg: reg delete HKLM\SOFTWARE\mozilla.org /f Reg: reg delete HKLM\SOFTWARE\MozillaPlugins /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Reader Speed Launcher" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f EmptyTemp: ***************** Processes closed successfully. Restore point was successfully created. Chrome HomePage deleted successfully. Chrome StartupUrls deleted successfully. C:\WINDOWS\system32\GroupPolicy\Machine => Moved successfully. C:\WINDOWS\system32\GroupPolicy\GPT.ini => Moved successfully. "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => Key deleted successfully. HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => Key not found. C:\WINDOWS\Tasks\avast! Emergency Update.job => Moved successfully. C:\Documents and Settings\All Users\Menu Start\Programy\PL-2303 USB-Serial Driver => Moved successfully. C:\Documents and Settings\user\Dane aplikacji\Mozilla => Moved successfully. C:\Documents and Settings\user\Moje dokumenty\CERTYFIKATY\Skrót do CRL-2003-11-11.lnk => Moved successfully. C:\Documents and Settings\user\Pulpit\Skrót do CryptoCard Suite.lnk => Moved successfully. C:\Documents and Settings\user\Pulpit\Skrót do HASPUserSetup.lnk => Moved successfully. C:\Documents and Settings\user\Pulpit\Skrót do Wykazy KIR S.A..lnk => Moved successfully. C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Adobe Reader 8.lnk => Moved successfully. C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\avast! Free Antivirus.lnk => Moved successfully. C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Menedżer CryptoCard Suite.lnk => Moved successfully. C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Menedżer komponentu technicznego.lnk => Moved successfully. C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Mozilla Firefox.lnk => Moved successfully. C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Nero StartSmart Essentials.lnk => Moved successfully. C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Skrót (2) do CryptoCard_Suite_1.20.0039_setup.exe.lnk => Moved successfully. "C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Skrót do 20100728_Instrukcja_odnawiania_certyfikatów.lnk" => File/Directory not found. C:\Documents and Settings\user\Pulpit\Nieużywane skróty pulpitu\Skrót do zamówienie.lnk => Moved successfully. C:\Program Files\Dynamo Combo => Moved successfully. C:\Program Files\Mozilla Firefox => Moved successfully. ========= reg delete HKCU\Software\Mozilla /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete HKCU\Software\MozillaPlugins /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\Mozilla /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\mozilla.org /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete HKLM\SOFTWARE\MozillaPlugins /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Reader Speed Launcher" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SunJavaUpdateSched" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= ========= reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f ========= Operacja ukończona pomyślnie ========= End of Reg: ========= EmptyTemp: => Removed 524.7 MB temporary data. The system needed a reboot. ==== End of Fixlog 13:16:01 ====