Fix result of Farbar Recovery Scan Tool (x64) Version:15-10-2015 01 Ran by Anka (2015-10-16 14:01:19) Run:1 Running from C:\logi Loaded Profiles: Anka (Available Profiles: Anka & skaner & A takie tam) Boot Mode: Normal ============================================== fixlist content: ***************** CloseProcesses: CreateRestorePoint: R2 IhPul; C:\Users\Anka\AppData\Roaming\TSv\TSvr.exe [396944 2015-09-21] (tsvr.com) S1 yvupsowa; \??\C:\windows\system32\drivers\yvupsowa.sys [X] HKLM\...\Run: [] => [X] AppInit_DLLs: c:\progra~3\bitguard\271769~1.27\{c16c1~1\loader.dll => No File ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File GroupPolicy: Restriction - Chrome <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION CHR HKLM-x32\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [2012-05-31] FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.4.53 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll [2012-05-31] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.4.53 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll [2012-05-31] (RealNetworks, Inc.) FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext => not found FF HKLM-x32\...\Firefox\Extensions: [{97E22097-9A2F-45b1-8DAF-36AD648C7EF4}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1293323331-2248878722-2786800865-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = Toolbar: HKU\S-1-5-21-1293323331-2248878722-2786800865-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Task: {045B1CFA-948E-4404-972B-1C6E24002316} - \AdobeFlashPlayerUpdate 2 -> No File <==== ATTENTION Task: {1B7C2DC9-FA9E-4F81-A977-98E39C30282E} - \Digital Sites -> No File <==== ATTENTION Task: {2CD3B141-8C8E-4A86-A6BA-1885D68BD990} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1293323331-2248878722-2786800865-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {50F0318F-050C-472D-A634-E977276397BA} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1293323331-2248878722-2786800865-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {5C701DC2-27DB-4014-B5FC-C6D7E7011FE8} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1293323331-2248878722-2786800865-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: {717F2BC1-1952-49BD-8F35-D64400F0EC30} - \EPUpdater -> No File <==== ATTENTION Task: {7AF55485-618E-4FAC-84AE-1369F6589D6C} - System32\Tasks\ESET Windows 10 upgrade – Refresh settings => C:\Program Files\Common Files\AV\ESET NOD32 Antivirus 5.2\upgrade.exe [2015-09-09] (ESET) Task: {8070672E-1EAA-4C4F-BA4F-6798CDF464A2} - System32\Tasks\DSite => C:\Users\Anka\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {8ED6477D-F491-43C9-955C-FC3017D8145C} - System32\Tasks\{8D2F4E4B-F84A-4720-876D-AA0C27EEF9D1} => pcalua.exe -a "C:\Users\Anka\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AB8X7P0E\sa2ara04k_02_psb_pol.exe" -d C:\Users\Anka\Desktop Task: {B513EAA4-8F86-4B84-A0B7-7E86E35D8830} - System32\Tasks\RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe <==== ATTENTION Task: {B5CEB13E-7DC8-4F83-A007-88E55EFD48EC} - \AdobeFlashPlayerUpdate -> No File <==== ATTENTION Task: {BEE5FB7E-40E9-41EA-8CFA-4F4646E6ACF2} - System32\Tasks\{8AB905BF-733D-4F7F-B288-4BC343C9EE1A} => Firefox.exe hxxp://ui.skype.com/ui/0/6.1.0.129.272/pl/abandoninstall?page=tsProgressBar Task: {EA08777B-76B7-4E4A-87B0-28DBD7AF1265} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1293323331-2248878722-2786800865-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe Task: C:\windows\Tasks\DSite.job => C:\Users\Anka\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE <==== ATTENTION C:\Program Files (x86)\Real C:\Program Files (x86)\SFK C:\Program Files (x86)\WinZipper C:\ProgramData\Real C:\Users\A takie tam\AppData\Roaming\Real C:\Users\Anka\FLVPlayer C:\Users\Anka\AppData\Local\bdraw C:\Users\Anka\AppData\Local\screenSHU C:\Users\Anka\AppData\Roaming\MailUpdate C:\Users\Anka\AppData\Roaming\Real C:\Users\Anka\AppData\Roaming\StPrsSW C:\Users\Anka\AppData\Roaming\TSv C:\Users\Anka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\22find.lnk C:\Users\Anka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\FLV Player.lnk C:\Users\Anka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard C:\Users\Anka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player C:\Users\Anka\Desktop\FLV Player.lnk C:\Users\skaner\Desktop\Yetisports Arctic Adventures.lnk C:\windows\SysWOW64\pl.html HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\13374173.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\13374173.sys => ""="Driver" Reg: reg delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\bdraw" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PhilipsSongbirdLauncher" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\screenSHU" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TkBellExe" /f Reg: reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Strong Signal" /f Reg: reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {25DD98A4-32EE-496D-A121-AC92C551279D} /f Reg: reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {25DD98A4-32EE-496D-A121-AC92C551279D} /f EmptyTemp: ***************** Processes closed successfully. Error: (0) Failed to create a restore point. IhPul => service removed successfully yvupsowa => service removed successfully HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully "c:\progra~3\bitguard\271769~1.27\{c16c1~1\loader.dll" => Value data removed successfully. "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => key removed successfully HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found. C:\windows\system32\GroupPolicy\Machine => moved successfully C:\windows\system32\GroupPolicy\GPT.ini => moved successfully "HKLM\SOFTWARE\Policies\Google" => key removed successfully "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk" => key removed successfully C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx => moved successfully "HKLM\Software\Wow6432Node\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.4.53" => key removed successfully C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll => moved successfully "HKLM\Software\Wow6432Node\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.4.53" => key removed successfully C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll => moved successfully HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758} => value removed successfully HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{97E22097-9A2F-45b1-8DAF-36AD648C7EF4} => value removed successfully HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\eplgTb@eset.com => value removed successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{425ED333-6083-428a-92C9-0CFC28B9D1BF}" => key removed successfully HKCR\CLSID\{425ED333-6083-428a-92C9-0CFC28B9D1BF} => key not found. "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found. HKU\S-1-5-21-1293323331-2248878722-2786800865-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully HKU\S-1-5-21-1293323331-2248878722-2786800865-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value removed successfully HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{045B1CFA-948E-4404-972B-1C6E24002316}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{045B1CFA-948E-4404-972B-1C6E24002316}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate 2" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1B7C2DC9-FA9E-4F81-A977-98E39C30282E}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1B7C2DC9-FA9E-4F81-A977-98E39C30282E}" => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Digital Sites => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2CD3B141-8C8E-4A86-A6BA-1885D68BD990}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2CD3B141-8C8E-4A86-A6BA-1885D68BD990}" => key removed successfully C:\windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1293323331-2248878722-2786800865-1001 => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealUpgradeScheduledTaskS-1-5-21-1293323331-2248878722-2786800865-1001" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{50F0318F-050C-472D-A634-E977276397BA}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{50F0318F-050C-472D-A634-E977276397BA}" => key removed successfully C:\windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1293323331-2248878722-2786800865-1001 => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1293323331-2248878722-2786800865-1001" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5C701DC2-27DB-4014-B5FC-C6D7E7011FE8}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5C701DC2-27DB-4014-B5FC-C6D7E7011FE8}" => key removed successfully C:\windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1293323331-2248878722-2786800865-1001 => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealUpgradeLogonTaskS-1-5-21-1293323331-2248878722-2786800865-1001" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{717F2BC1-1952-49BD-8F35-D64400F0EC30}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{717F2BC1-1952-49BD-8F35-D64400F0EC30}" => key removed successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EPUpdater => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7AF55485-618E-4FAC-84AE-1369F6589D6C}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7AF55485-618E-4FAC-84AE-1369F6589D6C}" => key removed successfully C:\windows\System32\Tasks\ESET Windows 10 upgrade – Refresh settings => moved successfully HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ESET Windows 10 upgrade – Refresh settings => key not found. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8070672E-1EAA-4C4F-BA4F-6798CDF464A2}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8070672E-1EAA-4C4F-BA4F-6798CDF464A2}" => key removed successfully C:\windows\System32\Tasks\DSite => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DSite" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8ED6477D-F491-43C9-955C-FC3017D8145C}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8ED6477D-F491-43C9-955C-FC3017D8145C}" => key removed successfully C:\windows\System32\Tasks\{8D2F4E4B-F84A-4720-876D-AA0C27EEF9D1} => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{8D2F4E4B-F84A-4720-876D-AA0C27EEF9D1}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B513EAA4-8F86-4B84-A0B7-7E86E35D8830}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B513EAA4-8F86-4B84-A0B7-7E86E35D8830}" => key removed successfully C:\windows\System32\Tasks\RunAsStdUser => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RunAsStdUser" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B5CEB13E-7DC8-4F83-A007-88E55EFD48EC}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B5CEB13E-7DC8-4F83-A007-88E55EFD48EC}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeFlashPlayerUpdate" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BEE5FB7E-40E9-41EA-8CFA-4F4646E6ACF2}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BEE5FB7E-40E9-41EA-8CFA-4F4646E6ACF2}" => key removed successfully C:\windows\System32\Tasks\{8AB905BF-733D-4F7F-B288-4BC343C9EE1A} => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{8AB905BF-733D-4F7F-B288-4BC343C9EE1A}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EA08777B-76B7-4E4A-87B0-28DBD7AF1265}" => key removed successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EA08777B-76B7-4E4A-87B0-28DBD7AF1265}" => key removed successfully C:\windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1293323331-2248878722-2786800865-1001 => moved successfully "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RealPlayerRealUpgradeLogonTaskS-1-5-21-1293323331-2248878722-2786800865-1001" => key removed successfully C:\windows\Tasks\DSite.job => moved successfully C:\Program Files (x86)\Real => moved successfully C:\Program Files (x86)\SFK => moved successfully C:\Program Files (x86)\WinZipper => moved successfully C:\ProgramData\Real => moved successfully C:\Users\A takie tam\AppData\Roaming\Real => moved successfully C:\Users\Anka\FLVPlayer => moved successfully C:\Users\Anka\AppData\Local\bdraw => moved successfully C:\Users\Anka\AppData\Local\screenSHU => moved successfully C:\Users\Anka\AppData\Roaming\MailUpdate => moved successfully C:\Users\Anka\AppData\Roaming\Real => moved successfully C:\Users\Anka\AppData\Roaming\StPrsSW => moved successfully C:\Users\Anka\AppData\Roaming\TSv => moved successfully C:\Users\Anka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\22find.lnk => moved successfully C:\Users\Anka\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\FLV Player.lnk => moved successfully C:\Users\Anka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard => moved successfully C:\Users\Anka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player => moved successfully C:\Users\Anka\Desktop\FLV Player.lnk => moved successfully C:\Users\skaner\Desktop\Yetisports Arctic Adventures.lnk => moved successfully C:\windows\SysWOW64\pl.html => moved successfully "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\13374173.sys" => key removed successfully "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\13374173.sys" => key removed successfully ========= reg delete "HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\FLV Player" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\bdraw" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PhilipsSongbirdLauncher" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\screenSHU" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\TkBellExe" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg delete "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Strong Signal" /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {25DD98A4-32EE-496D-A121-AC92C551279D} /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= ========= reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes" /v DefaultScope /t REG_SZ /d {25DD98A4-32EE-496D-A121-AC92C551279D} /f ========= Operacja ukoäczona pomy˜lnie. ========= End of Reg: ========= EmptyTemp: => 990.6 MB temporary data Removed. The system needed a reboot. ==== End of Fixlog 14:01:46 ====