Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja:09-12-2015 Uruchomiony przez Marcin (2015-12-10 23:27:04) Run:1 Uruchomiony z D:\downloaded Załadowane profile: Marcin (Dostępne profile: Marcin & UpdatusUser) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: R2 IhPul; C:\Users\Marcin\AppData\Roaming\TSv\TSvr.exe [580752 2015-12-08] (tsvr.com) R2 SSFK; C:\Program Files (x86)\SFK\SSFK.exe [170144 2015-11-27] (TODO: <公司名>) R2 WdMan; C:\ProgramData\SWdMS\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego] S2 TBPanel; Brak ImagePath S4 sptd; System32\Drivers\sptd.sys [X] ShortcutWithArgument: C:\Users\Marcin\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 <==== UWAGA ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.omniboxes.com/?type=sc&ts=1447136116&z=6381d760cad6b18b89efae8gcz5z4mbgfc1qcg3g3m&from=wpm07163&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 <==== UWAGA ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.omniboxes.com/?type=sc&ts=1447136116&z=6381d760cad6b18b89efae8gcz5z4mbgfc1qcg3g3m&from=wpm07163&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 <==== UWAGA ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 <==== UWAGA ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.omniboxes.com/?type=sc&ts=1447136116&z=6381d760cad6b18b89efae8gcz5z4mbgfc1qcg3g3m&from=wpm07163&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 <==== UWAGA ShortcutWithArgument: C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox (2).lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.yoursites123.com/?type=sc&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 <==== UWAGA ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.yoursites123.com/?type=sc&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 <==== UWAGA CHR HomePage: Default -> hxxp://www.yoursites123.com/?type=hp&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 CHR StartupUrls: Default -> "hxxp://www.yoursites123.com/?type=hp&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253" CHR DefaultSearchURL: Default -> hxxp://www.yoursites123.com/web/?type=ds&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253&q={searchTerms} CHR DefaultSearchKeyword: Default -> yoursites123 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.omniboxes.com/web/?type=ds&ts=1447136116&z=6381d760cad6b18b89efae8gcz5z4mbgfc1qcg3g3m&from=wpm07163&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.omniboxes.com/web/?type=ds&ts=1447136116&z=6381d760cad6b18b89efae8gcz5z4mbgfc1qcg3g3m&from=wpm07163&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.omniboxes.com/web/?type=ds&ts=1447136116&z=6381d760cad6b18b89efae8gcz5z4mbgfc1qcg3g3m&from=wpm07163&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.omniboxes.com/web/?type=ds&ts=1447136116&z=6381d760cad6b18b89efae8gcz5z4mbgfc1qcg3g3m&from=wpm07163&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253&q={searchTerms} HKU\S-1-5-21-783910324-3587200081-1645618152-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 HKU\S-1-5-21-783910324-3587200081-1645618152-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.omniboxes.com/web/?type=ds&ts=1448351647&z=b0424a5fa841dca3a0a899dgczez7b4c2w9gaq9z0t&from=ient07031&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253&q={searchTerms} HKU\S-1-5-21-783910324-3587200081-1645618152-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yoursites123.com/?type=hp&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKU\S-1-5-21-783910324-3587200081-1645618152-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKU\S-1-5-21-783910324-3587200081-1645618152-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1445799323&z=0350992d013489d4ca88de5g5z6z9wcm8t1tfe6m3g&from=cor&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://www.yoursites123.com/?type=sc&ts=1449644527&z=2a4c148a5c3dd69c919c8ccgaz3z5teqczfz1w7ocb&from=ient07021&uid=WDCXWD5000AAKS-00A7B2_WD-WCASZ028825388253 FF HKLM-x32\...\Firefox\Extensions: [defsearchp@gmail.com] - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\trp6l1v0.default\extensions\defsearchp@gmail.com FF HKLM-x32\...\Firefox\Extensions: [deskCutv2@gmail.com] - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\trp6l1v0.default\extensions\deskCutv2@gmail.com => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [default_newtabff@gmail.com] - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\trp6l1v0.default\extensions\default_newtabff@gmail.com FF HKLM-x32\...\Firefox\Extensions: [yahooprotected@gmail.com] - C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\trp6l1v0.default\extensions\yahooprotected@gmail.com HKU\S-1-5-21-783910324-3587200081-1645618152-1000\...\Run: [AdobeBridge] => [X] BootExecute: autocheck autochk * lsdelete Task: {0730D217-84E4-4D1A-AAF8-67CC1E444B46} - System32\Tasks\e-pity2013_kwiecien => C:\Program Files (x86)\e-pity2013\Assets\signxml.exe Task: {1A875333-9F1C-4A6B-929E-AD835FD19B03} - System32\Tasks\e-pity2013_styczen => C:\Program Files (x86)\e-pity2013\Assets\signxml.exe Task: {3099429E-146B-4237-8884-043496B23777} - System32\Tasks\{5ADAAAD2-826B-4360-9936-1F8FC9D6CB94} => pcalua.exe -a "D:\downloaded\Firefox Setup 3.5.2.exe" -d D:\downloaded Task: {8185E9D9-3F14-4E4F-B463-D3330988B2C9} - System32\Tasks\{80B52C98-AF62-4CF9-8BD4-8472A535D106} => pcalua.exe -a "D:\downloaded\QuickTimeInstaller (1).exe" -d D:\downloaded Task: {926FAB81-9338-4DDD-9DF3-E17E41A1E135} - System32\Tasks\Origin => C:\Users\Marcin\AppData\Roaming\Origin\update.vbe [2013-09-14] () <==== UWAGA Task: {BB923080-3E54-44A1-987F-B5EAECD48ED7} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo) Task: {E0C48729-1B09-4A4A-9711-6F3FD6E1C054} - System32\Tasks\{A651A07A-7B58-4043-900E-D0DC605F2839} => pcalua.exe -a D:\downloaded\jre-6u25-windows-i586-iftw.exe -d D:\downloaded Task: {F6E40269-4841-4ECF-B23C-13A30E7F0A22} - System32\Tasks\{BBECB86D-9273-4248-A35C-4A824E96D8BB} => pcalua.exe -a C:\Users\Marcin\Downloads\QuickTimeInstaller.exe -d C:\Users\Marcin\Downloads DeleteKey: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 DeleteKey: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Reader Speed Launcher DeleteKey: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesHelper DeleteKey: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesPDLR DeleteKey: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesTrayAgent DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo DeleteKey: HKLM\SOFTWARE\Wow6432Node\yoursites123Software C:\Program Files (x86)\Lenovo C:\Program Files (x86)\Mozilla Firefox\plugins C:\Program Files (x86)\Picexa C:\Program Files (x86)\SFK C:\Program Files (x86)\WinZipper C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat C:\ProgramData\ywchkrhdsxpmnal C:\ProgramData\nWMiniPron C:\ProgramData\SWdMS C:\ProgramData\ZWdMZ C:\ProgramData\vWMiniProv C:\ProgramData\XWMiniProX C:\Users\Marcin\AppData\Local\Lenovo C:\Users\Marcin\AppData\Roaming\Origin\update.vbe C:\Users\Marcin\AppData\Roaming\TSv C:\Users\UpdatusUser\Desktop\SopCast.lnk C:\Windows\temp023423.vbe C:\Windows\System32\Tasks\Lenovo CMD: netsh advfirewall reset EmptyTemp: ***************** Procesy zostały pomyślnie zamknięte. IhPul => Usługa pomyślnie zatrzymana. IhPul => serwis pomyślnie usunięto SSFK => serwis pomyślnie usunięto WdMan => serwis pomyślnie usunięto TBPanel => serwis pomyślnie usunięto sptd => serwis pomyślnie usunięto C:\Users\Marcin\Desktop\Mozilla Firefox.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Marcin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk => Skrót - argument pomyślnie przywrócono C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Marcin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox (2).lnk => Skrót - argument pomyślnie usunięto. C:\Users\Public\Desktop\Google Chrome.lnk => Skrót - argument pomyślnie usunięto. Chrome HomePage => pomyślnie usunięto Chrome StartupUrls => pomyślnie usunięto Chrome DefaultSearchURL => pomyślnie usunięto Chrome DefaultSearchKeyword => pomyślnie usunięto HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono HKU\S-1-5-21-783910324-3587200081-1645618152-1000\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKU\S-1-5-21-783910324-3587200081-1645618152-1000\Software\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono HKU\S-1-5-21-783910324-3587200081-1645618152-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie przywrócono "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => klucz pomyślnie usunięto HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => klucz nie znaleziono. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie przywrócono "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => klucz pomyślnie usunięto HKCR\Wow6432Node\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => klucz nie znaleziono. HKU\S-1-5-21-783910324-3587200081-1645618152-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie usunięto "HKU\S-1-5-21-783910324-3587200081-1645618152-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}" => klucz pomyślnie usunięto HKCR\CLSID\{33BB0A4E-99AF-4226-BDF6-49120163DE86} => klucz nie znaleziono. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command\\Default => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\defsearchp@gmail.com => Wartość pomyślnie usunięto HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\deskCutv2@gmail.com => Wartość pomyślnie usunięto HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\default_newtabff@gmail.com => Wartość pomyślnie usunięto HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\yahooprotected@gmail.com => Wartość pomyślnie usunięto HKU\S-1-5-21-783910324-3587200081-1645618152-1000\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => Wartość pomyślnie usunięto hklm\System\CurrentControlSet\Control\Session Manager\\BootExecute => Wartość pomyślnie przywrócono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0730D217-84E4-4D1A-AAF8-67CC1E444B46}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0730D217-84E4-4D1A-AAF8-67CC1E444B46}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\e-pity2013_kwiecien => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e-pity2013_kwiecien" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1A875333-9F1C-4A6B-929E-AD835FD19B03}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1A875333-9F1C-4A6B-929E-AD835FD19B03}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\e-pity2013_styczen => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e-pity2013_styczen" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3099429E-146B-4237-8884-043496B23777}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3099429E-146B-4237-8884-043496B23777}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{5ADAAAD2-826B-4360-9936-1F8FC9D6CB94} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{5ADAAAD2-826B-4360-9936-1F8FC9D6CB94}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8185E9D9-3F14-4E4F-B463-D3330988B2C9}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8185E9D9-3F14-4E4F-B463-D3330988B2C9}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{80B52C98-AF62-4CF9-8BD4-8472A535D106} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{80B52C98-AF62-4CF9-8BD4-8472A535D106}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{926FAB81-9338-4DDD-9DF3-E17E41A1E135}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{926FAB81-9338-4DDD-9DF3-E17E41A1E135}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\Origin => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Origin" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BB923080-3E54-44A1-987F-B5EAECD48ED7}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BB923080-3E54-44A1-987F-B5EAECD48ED7}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Lenovo Customer Feedback Program 64" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0C48729-1B09-4A4A-9711-6F3FD6E1C054}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0C48729-1B09-4A4A-9711-6F3FD6E1C054}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{A651A07A-7B58-4043-900E-D0DC605F2839} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{A651A07A-7B58-4043-900E-D0DC605F2839}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F6E40269-4841-4ECF-B23C-13A30E7F0A22}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F6E40269-4841-4ECF-B23C-13A30E7F0A22}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{BBECB86D-9273-4248-A35C-4A824E96D8BB} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BBECB86D-9273-4248-A35C-4A824E96D8BB}" => klucz pomyślnie usunięto HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 => niepowodzenie przy usuwaniu w pierwszym podejściu (ErrorCode: C0000121), zobacz kolejną linię. HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Adobe Reader Speed Launcher => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesHelper => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesPDLR => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesTrayAgent => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo => klucz pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\yoursites123Software => niepowodzenie przy usuwaniu w pierwszym podejściu (ErrorCode: C0000121), zobacz kolejną linię. HKLM\SOFTWARE\Wow6432Node\yoursites123Software => klucz pomyślnie usunięto C:\Program Files (x86)\Lenovo => pomyślnie przeniesiono C:\Program Files (x86)\Mozilla Firefox\plugins => pomyślnie przeniesiono "C:\Program Files (x86)\Picexa" => nie znaleziono. C:\Program Files (x86)\SFK => pomyślnie przeniesiono C:\Program Files (x86)\WinZipper => pomyślnie przeniesiono C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat => pomyślnie przeniesiono C:\ProgramData\ywchkrhdsxpmnal => pomyślnie przeniesiono C:\ProgramData\nWMiniPron => pomyślnie przeniesiono C:\ProgramData\SWdMS => pomyślnie przeniesiono C:\ProgramData\ZWdMZ => pomyślnie przeniesiono C:\ProgramData\vWMiniProv => pomyślnie przeniesiono C:\ProgramData\XWMiniProX => pomyślnie przeniesiono C:\Users\Marcin\AppData\Local\Lenovo => pomyślnie przeniesiono C:\Users\Marcin\AppData\Roaming\Origin\update.vbe => pomyślnie przeniesiono C:\Users\Marcin\AppData\Roaming\TSv => pomyślnie przeniesiono C:\Users\UpdatusUser\Desktop\SopCast.lnk => pomyślnie przeniesiono C:\Windows\temp023423.vbe => pomyślnie przeniesiono C:\Windows\System32\Tasks\Lenovo => pomyślnie przeniesiono ========= netsh advfirewall reset ========= Ok. ========= Koniec CMD: ========= EmptyTemp: => 2.5 GB danych tymczasowych Usunięto. System wymagał restartu. ==== Koniec Fixlog 23:51:02 ====