Fix result of Farbar Recovery Scan Tool (x86) Version:02-08-2015 01 Ran by Właściciel (2015-08-06 17:41:43) Run:1 Running from C:\Documents and Settings\Właściciel\Moje dokumenty\Pobrane Loaded Profiles: Właściciel (Available Profiles: Właściciel) Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: HKU\S-1-5-19\...\RunOnce: [nltide_2] => regsvr32 /s /n /i:U shell32 HKU\S-1-5-20\...\RunOnce: [nltide_2] => regsvr32 /s /n /i:U shell32 HKU\S-1-5-18\...\RunOnce: [nltide_2] => regsvr32 /s /n /i:U shell32 KLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hp&ts=1438859261&z=a1cd5e9ce30332b11c809ffgez1c8bab7web1tam5q&from=face&uid=WDCXWD1600JD-55HBB0_WD-WCAL9353201032010X HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/web/?type=ds&ts=1438859261&z=a1cd5e9ce30332b11c809ffgez1c8bab7web1tam5q&from=face&uid=WDCXWD1600JD-55HBB0_WD-WCAL9353201032010X&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1438859261&z=a1cd5e9ce30332b11c809ffgez1c8bab7web1tam5q&from=face&uid=WDCXWD1600JD-55HBB0_WD-WCAL9353201032010X HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/web/?type=ds&ts=1438859261&z=a1cd5e9ce30332b11c809ffgez1c8bab7web1tam5q&from=face&uid=WDCXWD1600JD-55HBB0_WD-WCAL9353201032010X&q={searchTerms} HKU\S-1-5-21-854245398-1454471165-682003330-1003\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wp.pl/ HKU\S-1-5-21-854245398-1454471165-682003330-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hp&ts=1438859261&z=a1cd5e9ce30332b11c809ffgez1c8bab7web1tam5q&from=face&uid=WDCXWD1600JD-55HBB0_WD-WCAL9353201032010X SearchScopes: HKU\S-1-5-21-854245398-1454471165-682003330-1003 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = SearchScopes: HKU\S-1-5-21-854245398-1454471165-682003330-1003 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-854245398-1454471165-682003330-1003 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.istartsurf.com/web/?utm_source=b&utm_medium=face&utm_campaign=install_ie&utm_content=ds&from=face&uid=WDCXWD1600JD-55HBB0_WD-WCAL9353201032010X&ts=1438859326&type=default&q={searchTerms} Tcpip\Parameters: [DhcpNameServer] 192.168.8.1 192.168.8.1 StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1438859261&z=a1cd5e9ce30332b11c809ffgez1c8bab7web1tam5q&from=face&uid=WDCXWD1600JD-55HBB0_WD-WCAL9353201032010X FF NewTab: hxxp://www.istartsurf.com/newtab/?type=nt&ts=1438859261&z=a1cd5e9ce30332b11c809ffgez1c8bab7web1tam5q&from=face&uid=WDCXWD1600JD-55HBB0_WD-WCAL9353201032010X FF SelectedSearchEngine: istartsurf 4 IntelIde; No ImagePath U1 WS2IFSL; No ImagePath Task: C:\WINDOWS\Tasks\8f395291-838b-47df-8909-6b88c079a5fc-1-6.job => C:\Program Files\GoHD\8f395291-838b-47df-8909-6b88c079a5fc-1-6.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\8f395291-838b-47df-8909-6b88c079a5fc-1-7.job => C:\Program Files\GoHD\8f395291-838b-47df-8909-6b88c079a5fc-1-7.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\8f395291-838b-47df-8909-6b88c079a5fc-10_user.job => C:\Program Files\GoHD\8f395291-838b-47df-8909-6b88c079a5fc-10.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\8f395291-838b-47df-8909-6b88c079a5fc-4.job => C:\Program Files\GoHD\8f395291-838b-47df-8909-6b88c079a5fc-4.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\8f395291-838b-47df-8909-6b88c079a5fc-5.job => C:\Program Files\GoHD\8f395291-838b-47df-8909-6b88c079a5fc-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\AmiUpdXp.job => C:\Documents and Settings\Właściciel\Dane aplikacji\7260\Updater.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9}.job => 0x01050100BF0F0CD378322C4AB6C9306B50841CC346008601000000003C000500200000000014730F0000000000130400F0008021DF070800040006000E001C001100CB0000003E0043003A005C00500072006F006700720061006D002000460069006C00650073005C0043004F004D004F0044004F005C0043004F004D004F0044004F00200049006E007400650072006E00650074002000530065006300750072006900740079005C0063006600700063006F006E00660067002E00650078006500000038002D002D006C00610075006E00630068005300630068006500640075006C00650020007B00300046004200370037003600370034002D0037003900300035002D0034004600330034002D0041003300360032002D004300350041003900410032003600460038004300460039007D00000000001F0043004F004D004F0044004F00200053006500630075007200690074007900200053006F006C007500740069006F006E007300200049006E0063002E0000000000000008000000000000000000010030000000DF07080006000000000000000E002B0000000000000000000000000005000000010000000000000000000000 Task: C:\WINDOWS\Tasks\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-1-6.job => C:\Program Files\Shop and Save Up\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-1-6.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-1-7.job => C:\Program Files\Shop and Save Up\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-1-7.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-10_user.job => C:\Program Files\Shop and Save Up\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-10.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-4.job => C:\Program Files\Shop and Save Up\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-4.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-5.job => C:\Program Files\Shop and Save Up\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — co miesiąc.job => C:\WINDOWS\system32\xp_eos.exe Task: C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job => C:\Program Files\RCP\RegCleanPro.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job => C:\Program Files\RCP\RegCleanPro.exe <==== ATTENTION EmptyTemp: ***************** Processes closed successfully. HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\nltide_2 => value removed successfully. HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\nltide_2 => value removed successfully. HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\RunOnce\\nltide_2 => value removed successfully. HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully HKU\S-1-5-21-854245398-1454471165-682003330-1003\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKU\S-1-5-21-854245398-1454471165-682003330-1003\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully HKU\S-1-5-21-854245398-1454471165-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully. "HKU\S-1-5-21-854245398-1454471165-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully. HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. HKU\S-1-5-21-854245398-1454471165-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} => key not found. HKCR\CLSID\{E733165D-CBCF-4FDA-883E-ADEF965B476C} => key not found. HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\\DhcpNameServer => value removed successfully. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => value restored successfully Firefox newtab removed successfully. Firefox SelectedSearchEngine removed successfully. 4 IntelIde; No ImagePath => Error: No automatic fix found for this entry. WS2IFSL => service removed successfully. C:\WINDOWS\Tasks\8f395291-838b-47df-8909-6b88c079a5fc-1-6.job not found. C:\WINDOWS\Tasks\8f395291-838b-47df-8909-6b88c079a5fc-1-7.job not found. C:\WINDOWS\Tasks\8f395291-838b-47df-8909-6b88c079a5fc-10_user.job not found. C:\WINDOWS\Tasks\8f395291-838b-47df-8909-6b88c079a5fc-4.job not found. C:\WINDOWS\Tasks\8f395291-838b-47df-8909-6b88c079a5fc-5.job not found. C:\WINDOWS\Tasks\AmiUpdXp.job not found. C:\WINDOWS\Tasks\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9}.job not found. C:\WINDOWS\Tasks\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-1-6.job not found. C:\WINDOWS\Tasks\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-1-7.job not found. C:\WINDOWS\Tasks\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-10_user.job not found. C:\WINDOWS\Tasks\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-4.job not found. C:\WINDOWS\Tasks\dd6aa243-1fdd-44b7-b068-2f07cccdd84d-5.job not found. Could not move "C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — co miesiąc.job" => Scheduled to move on reboot. C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job not found. C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job not found. EmptyTemp: => 29.8 MB temporary data Removed. ==== End of Fixlog 17:41:51 ====