x-kom hosting

pojawiające sie reklamy przy otwieraniu stron www

oktawan75
utworzono
utworzono

Witam

Jak przeglądam strony www to wyświetlaja mi sie reklamy tematyzcnie pasujace do danego portalu. Po za tym dwa razy zdarzylo mi sie ze zresetowal mi sie komputer przy uruchaminaiu systemu . A po trzecie trace łączność z siecią bezprzewodową, byc moze trzeba zaktualizować sterownik do karty sieciowej .

Załączam logi z otl . Jezeli potrzeba logów z innych programów proszę dać znać. Dziękuje. Nie moge załączyć załączników ( limit załączników wyczerpany) Co to oznacza?

 

OTL logfile created on: 2015-02-26 13:39:14 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\HP\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17633)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
6,00 Gb Total Physical Memory | 3,97 Gb Available Physical Memory | 66,17% Memory free
12,00 Gb Paging File | 9,57 Gb Available in Paging File | 79,79% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 195,21 Gb Total Space | 43,92 Gb Free Space | 22,50% Space Free | Partition Type: NTFS
Drive D: | 270,45 Gb Total Space | 23,90 Gb Free Space | 8,84% Space Free | Partition Type: NTFS
 
Computer Name: HP-KOMPUTER | User Name: HP | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
[color=#E56717]========== Processes (SafeList) ==========[/color]
 
PRC - [2015-02-26 13:32:35 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\HP\Downloads\OTL.exe
PRC - [2015-02-26 13:13:17 | 000,123,624 | ---- | M] () -- C:\ProgramData\369116b8-dbeb-4541-87d3-4725ded56029\maintainer.exe
PRC - [2015-02-25 14:34:12 | 000,388,856 | ---- | M] () -- C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce\updater.exe
PRC - [2015-02-25 14:34:04 | 000,581,368 | ---- | M] () -- C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugincontainer.exe
PRC - [2015-02-17 19:13:01 | 005,260,864 | ---- | M] (GG Network S.A.) -- C:\Users\HP\AppData\Local\GG\Application\ggdrive\ggdrive.exe
PRC - [2015-02-17 19:13:01 | 004,023,872 | ---- | M] (GG Network S.A.) -- C:\Users\HP\AppData\Local\GG\Application\gghub.exe
PRC - [2015-02-17 19:13:01 | 000,118,336 | ---- | M] (GG Network S.A.) -- C:\Users\HP\AppData\Local\GG\Application\ggapp.exe
PRC - [2015-02-17 19:12:59 | 000,301,120 | ---- | M] (GG Network S.A.) -- C:\Users\HP\AppData\Local\GG\Application\xulrunner\gghub.exe
PRC - [2015-02-07 15:59:14 | 000,487,056 | ---- | M] (SysTool PasSame LIMITED) -- C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
PRC - [2015-02-06 11:24:47 | 000,187,168 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
PRC - [2015-01-26 20:05:50 | 000,338,032 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2015-01-23 14:32:58 | 001,749,792 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe
PRC - [2015-01-22 07:49:38 | 001,680,472 | ---- | M] (BitTorrent Inc.) -- C:\Users\HP\AppData\Roaming\BitTorrent\BitTorrent.exe
PRC - [2015-01-16 09:45:12 | 000,673,968 | ---- | M] (XTab system) -- C:\Program Files (x86)\XTab\HPNotify.exe
PRC - [2015-01-16 09:45:12 | 000,158,896 | ---- | M] (XTab system) -- C:\Program Files (x86)\XTab\ProtectService.exe
PRC - [2015-01-16 09:45:10 | 000,048,304 | ---- | M] (SearchProtect) -- C:\Program Files (x86)\XTab\cmdshell.exe
PRC - [2014-12-19 08:48:18 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2014-11-04 13:19:48 | 000,815,392 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe
PRC - [2014-10-20 21:03:02 | 003,436,320 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Smart Defrag 3\SmartDefrag.exe
PRC - [2014-08-19 21:14:00 | 001,796,056 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
PRC - [2013-11-15 04:10:00 | 003,105,144 | ---- | M] (WIBU-SYSTEMS AG) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
PRC - [2007-02-12 14:50:40 | 000,020,480 | ---- | M] () -- C:\Windows\FixCamera.exe
 
 
[color=#E56717]========== Modules (No Company Name) ==========[/color]
 
MOD - [2015-02-17 19:13:01 | 000,122,432 | ---- | M] () -- C:\Users\HP\AppData\Local\GG\Application\ggdrive\ZLIB1.dll
MOD - [2015-02-17 19:12:58 | 003,715,648 | ---- | M] () -- C:\Users\HP\AppData\Local\GG\Application\xulrunner\mozjs.dll
MOD - [2015-01-26 20:05:49 | 003,925,104 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2014-09-29 12:02:24 | 016,361,120 | ---- | M] () -- C:\Users\HP\AppData\Local\GG\Application\FMSBWChecker\Adobe AIR\Versions\1.0\Resources\NPSWF32.dll
MOD - [2014-06-04 15:17:12 | 000,892,288 | ---- | M] () -- C:\Program Files (x86)\IObit\Smart Defrag 3\webres.dll
MOD - [2013-01-15 18:48:26 | 000,348,992 | ---- | M] () -- C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl
MOD - [2013-01-15 18:48:26 | 000,348,992 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\madExcept_.bpl
MOD - [2013-01-15 18:48:26 | 000,051,008 | ---- | M] () -- C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl
MOD - [2013-01-15 18:48:26 | 000,051,008 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\madDisAsm_.bpl
MOD - [2013-01-15 18:48:24 | 000,183,616 | ---- | M] () -- C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl
MOD - [2013-01-15 18:48:24 | 000,183,616 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\madBasic_.bpl
MOD - [2007-02-12 14:50:40 | 000,020,480 | ---- | M] () -- C:\Windows\FixCamera.exe
 
 
[color=#E56717]========== Services (SafeList) ==========[/color]
 
SRV:[b]64bit:[/b] - [2015-01-30 03:15:10 | 000,366,512 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:[b]64bit:[/b] - [2015-01-30 03:15:10 | 000,023,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:[b]64bit:[/b] - [2015-01-12 03:34:30 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2014-08-18 08:09:38 | 000,291,032 | ---- | M] (Realtek Semiconductor) [Auto | Running] -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe -- (RtkAudioService)
SRV:[b]64bit:[/b] - [2013-05-27 06:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2015-02-26 13:13:17 | 000,123,624 | ---- | M] () [Auto | Running] -- C:\ProgramData\369116b8-dbeb-4541-87d3-4725ded56029\maintainer.exe -- (MaintainerSvc4.19.7305058)
SRV - [2015-02-25 14:34:12 | 000,388,856 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce\updater.exe -- (Update Mgr StrongSignal)
SRV - [2015-02-25 14:34:04 | 000,581,368 | ---- | M] () [Auto | Running] -- C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce\plugincontainer.exe -- (Service Mgr StrongSignal)
SRV - [2015-02-07 15:59:45 | 000,267,440 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2015-02-07 15:59:14 | 000,487,056 | ---- | M] (SysTool PasSame LIMITED) [Auto | Running] -- C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe -- (WindowsMangerProtect)
SRV - [2015-01-26 20:05:49 | 000,114,800 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2015-01-16 15:30:48 | 002,724,128 | ---- | M] (IObit) [Auto | Stopped] -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe -- (LiveUpdateSvc)
SRV - [2015-01-16 09:45:12 | 000,158,896 | ---- | M] (XTab system) [Auto | Running] -- C:\Program Files (x86)\XTab\ProtectService.exe -- (IHProtect Service)
SRV - [2014-12-19 08:48:18 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014-12-11 10:30:48 | 000,315,496 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2014-11-04 13:19:48 | 000,815,392 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe -- (AdvancedSystemCareService8)
SRV - [2014-04-11 23:08:08 | 000,103,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2014-03-20 23:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2013-11-15 04:10:00 | 003,105,144 | ---- | M] (WIBU-SYSTEMS AG) [Auto | Running] -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe -- (CodeMeter.exe)
SRV - [2010-02-19 12:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
 
 
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
 
DRV:[b]64bit:[/b] - [2014-12-18 16:03:37 | 000,283,064 | ---- | M] (Disc Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:[b]64bit:[/b] - [2014-12-18 05:33:56 | 000,048,784 | ---- | M] (StdLib) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\{71066d58-1f99-4a2c-b52e-9880d384e03a}Gw64.sys -- ({71066d58-1f99-4a2c-b52e-9880d384e03a}Gw64)
DRV:[b]64bit:[/b] - [2014-12-12 15:56:39 | 000,111,696 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NIWinCDEmu.sys -- (NIWinCDEmu)
DRV:[b]64bit:[/b] - [2014-11-15 14:46:08 | 000,124,560 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:[b]64bit:[/b] - [2014-10-20 07:13:01 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2014-10-20 07:13:01 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2014-10-20 07:13:01 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2014-07-16 04:06:16 | 000,941,784 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2014-06-04 15:17:14 | 000,021,184 | ---- | M] (IObit) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SmartDefragDriver.sys -- (SmartDefragDriver)
DRV:[b]64bit:[/b] - [2014-03-19 01:24:44 | 000,040,728 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV:[b]64bit:[/b] - [2014-03-19 01:24:38 | 000,076,568 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:[b]64bit:[/b] - [2012-07-06 18:50:36 | 000,060,928 | ---- | M] (GenesysLogic) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\GeneStor.sys -- (GeneStor)
DRV:[b]64bit:[/b] - [2012-05-20 18:47:38 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2012-05-20 18:30:20 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2012-05-20 18:30:20 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2011-10-17 12:55:32 | 000,559,384 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2011-10-05 06:55:02 | 000,729,152 | ---- | M] (Ralink Technology, Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\netr7364.sys -- (netr7364)
DRV:[b]64bit:[/b] - [2010-11-21 04:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010-03-24 05:34:50 | 001,756,672 | ---- | M] (Hauppauge Computer Works) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HCW85BDA.sys -- (HCW85BDA)
DRV:[b]64bit:[/b] - [2009-12-30 10:21:26 | 000,031,800 | ---- | M] (VS Revo Group) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\revoflt.sys -- (Revoflt)
DRV:[b]64bit:[/b] - [2009-09-23 09:23:02 | 006,180,832 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2009-07-27 12:44:48 | 000,392,712 | ---- | M] (Avid Technology, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MAudioDelta.sys -- (DELTAII)
DRV:[b]64bit:[/b] - [2009-07-14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-06-10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2007-04-26 11:00:16 | 010,642,048 | ---- | M] (Sonix Co. Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\snp325.sys -- (SNP325)
DRV - [2015-01-21 09:17:04 | 000,026,528 | ---- | M] (REALiX(tm)) [Kernel | System | Running] -- C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS -- (HWiNFO32)
DRV - [2009-07-14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
 
 
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== Internet Explorer ==========[/color]
 
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
 
 
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
 
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
 
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.interia.pl/#utm_source=instalki&utm_medium=installer&utm_campaign=instalki
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\..\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}: "URL" = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\..\SearchScopes\{26A836B3-F652-465B-A046-5BBDBF849977}: "URL" = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://istart.webssearches.com/web/?type=ds&ts=1415020080&from=exp&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\..\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}: "URL" = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
IE - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
[color=#E56717]========== FireFox ==========[/color]
 
FF - prefs.js..browser.search.defaultenginename: "key-find"
FF - prefs.js..browser.search.isUS: false
FF - prefs.js..browser.search.searchengine.alias: "key-find"
FF - prefs.js..browser.search.searchengine.desc: "this is my first firefox searchEngine"
FF - prefs.js..browser.search.searchengine.iconURL: "http://www.key-find.com/favicon.ico"
FF - prefs.js..browser.search.searchengine.name: "key-find"
FF - prefs.js..browser.search.searchengine.ptid: "cor"
FF - prefs.js..browser.search.searchengine.uid: "WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612"
FF - prefs.js..browser.search.searchengine.url: "http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "key-find"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.interia.pl/#utm_source=instalki&utm_medium=installer&utm_campaign=instalki"
FF - prefs.js..extensions.enabledAddons: faststartff%40gmail.com:4.3.0
FF - prefs.js..extensions.enabledAddons: fftoolbar2014%40etech.com:1.0.0.1025
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:35.0.1
 
 
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.72.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.72.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeExManDetect: C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fftoolbar2014@etech.com: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\p2ilq1eq.default\extensions\fftoolbar2014@etech.com [2015-02-07 15:58:32 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\faststartff@gmail.com: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\p2ilq1eq.default\extensions\faststartff@gmail.com [2015-02-07 15:58:50 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 35.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 35.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 35.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 35.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
 
[2014-09-24 15:15:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\HP\AppData\Roaming\mozilla\Extensions
[2015-02-07 15:58:50 | 000,000,000 | ---D | M] (No name found) -- C:\Users\HP\AppData\Roaming\mozilla\Firefox\Profiles\p2ilq1eq.default\extensions
[2014-12-18 17:31:33 | 000,000,000 | ---D | M] (Ads Removal) -- C:\Users\HP\AppData\Roaming\mozilla\Firefox\Profiles\p2ilq1eq.default\extensions\adremoveext@adremoveext.net
[2015-02-07 15:58:50 | 000,000,000 | ---D | M] ("Fast Start") -- C:\Users\HP\AppData\Roaming\mozilla\Firefox\Profiles\p2ilq1eq.default\extensions\faststartff@gmail.com
[2015-02-07 15:58:32 | 000,000,000 | ---D | M] (FF Toolbar) -- C:\Users\HP\AppData\Roaming\mozilla\Firefox\Profiles\p2ilq1eq.default\extensions\fftoolbar2014@etech.com
[2015-02-06 11:24:48 | 000,000,000 | ---D | M] (Advanced SystemCare Surfing Protection) -- C:\Users\HP\AppData\Roaming\mozilla\Firefox\Profiles\p2ilq1eq.default\extensions\iobitascsurfingprotection@iobit.com
[2015-02-06 21:26:36 | 000,005,775 | ---- | M] () (No name found) -- C:\Users\HP\AppData\Roaming\mozilla\firefox\profiles\p2ilq1eq.default\extensions\{629ac51d-702d-4c48-8a56-6d6a5061a41f}.xpi
[2015-02-26 09:46:05 | 000,000,466 | ---- | M] () -- C:\Users\HP\AppData\Roaming\mozilla\firefox\profiles\p2ilq1eq.default\searchplugins\key-find.xml
[2014-11-02 15:28:48 | 000,008,141 | ---- | M] () -- C:\Users\HP\AppData\Roaming\mozilla\firefox\profiles\p2ilq1eq.default\searchplugins\yahoo_ff.xml
[2015-01-26 20:05:45 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
[2015-01-26 20:05:50 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
 
O1 HOSTS File: ([2009-06-10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (ExplorerWnd Helper) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (IETabPage Class) - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files (x86)\XTab\SupTab.dll (Thinknice Co. Limited)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Advanced SystemCare Surfing Protection) - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\PROGRA~2\IObit\SURFIN~1\BROWER~1\ASCPLU~1.DLL (IObit)
O2 - BHO: (Strong Signal) - {c723a437-2eaf-466d-a95b-3fa0966bf88c} - C:\Program Files (x86)\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll ()
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:[b]64bit:[/b] - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [FixCamera] C:\Windows\FixCamera.exe ()
O4 - HKU\.DEFAULT..\Run: [Advanced SystemCare 8] C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe (IObit)
O4 - HKU\S-1-5-18..\Run: [Advanced SystemCare 8] C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe (IObit)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000..\Run: [AdobeBridge]  File not found
O4 - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000..\Run: [BitTorrent] C:\Users\HP\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc.)
O4 - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O4 - HKU\S-1-5-21-2678803215-1104970107-3132042215-1000..\Run: [GG] C:\Users\HP\AppData\Local\GG\Application\gghub.exe (GG Network S.A.)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:[b]64bit:[/b] - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 File not found
O8:[b]64bit:[/b] - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000 File not found
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 217.113.224.135 217.113.224.36
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E6876AC2-6391-4D49-BAF7-E223A5CB9BBD}: DhcpNameServer = 217.113.224.135 217.113.224.36
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E8F510C0-1806-487B-B242-BB9EAA017366}: NameServer = 194.204.152.34
O18:[b]64bit:[/b] - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
 
[2015-02-12 16:36:02 | 006,041,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2015-02-12 16:36:02 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2015-02-12 16:36:02 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2015-02-11 21:15:28 | 000,950,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perftrack.dll
[2015-02-11 21:15:28 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powertracker.dll
[2015-02-11 21:15:14 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2015-02-11 21:15:14 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2015-02-11 21:15:14 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2015-02-11 21:15:14 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2015-02-11 21:15:14 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2015-02-11 21:15:13 | 000,718,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2015-02-11 21:15:13 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2015-02-11 21:15:13 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2015-02-11 21:15:13 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2015-02-11 21:15:13 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2015-02-11 21:15:11 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2015-02-11 21:15:11 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2015-02-11 21:15:11 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2015-02-11 21:15:11 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2015-02-11 21:15:10 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2015-02-11 21:15:10 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2015-02-11 21:15:10 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2015-02-11 21:15:10 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2015-02-11 21:15:09 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2015-02-11 21:15:09 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2015-02-11 21:15:09 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2015-02-11 21:15:08 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2015-02-11 21:15:07 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2015-02-11 21:15:07 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2015-02-11 21:15:06 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2015-02-11 21:15:06 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2015-02-11 21:15:06 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2015-02-11 21:15:05 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2015-02-11 21:15:05 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2015-02-11 21:15:04 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2015-02-11 21:15:03 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2015-02-11 21:15:03 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2015-02-11 20:34:20 | 001,480,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2015-02-11 20:34:20 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2015-02-11 20:31:27 | 005,554,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2015-02-11 20:31:26 | 003,972,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2015-02-11 20:31:26 | 003,917,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2015-02-11 20:31:25 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2015-02-11 20:31:25 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2015-02-11 20:31:25 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll
[2015-02-11 19:40:28 | 001,239,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aitstatic.exe
[2015-02-11 19:40:28 | 001,098,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2015-02-11 19:40:28 | 000,894,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
[2015-02-11 19:40:28 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
[2015-02-11 19:40:28 | 000,609,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2015-02-11 19:40:28 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
[2015-02-11 19:40:27 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2015-02-11 19:40:27 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
[2015-02-11 19:39:00 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2015-02-11 19:36:12 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2015-02-11 19:36:05 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2015-02-11 19:36:05 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
[2015-02-11 19:36:05 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
[2015-02-11 19:36:04 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
[2015-02-11 19:36:04 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
[2015-02-11 19:36:04 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2015-02-11 19:36:04 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
[2015-02-11 19:36:04 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
[2015-02-11 19:36:04 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
[2015-02-11 19:36:04 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
[2015-02-11 19:36:04 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2015-02-11 19:36:04 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2015-02-11 19:33:26 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2015-02-11 19:28:08 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll
[2015-02-11 19:28:08 | 000,308,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
[2015-02-10 19:19:28 | 000,000,000 | ---D | C] -- C:\Users\HP\AppData\Roaming\chc
[2015-02-10 19:19:28 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Adobe
[2015-02-10 19:19:27 | 000,000,000 | ---D | C] -- C:\Users\HP\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2015-02-09 18:20:31 | 000,000,000 | ---D | C] -- C:\Users\HP\AppData\Roaming\NVIDIA
[2015-02-09 14:41:54 | 000,000,000 | ---D | C] -- C:\Ciocia Czesia
[2015-02-07 15:59:33 | 000,000,000 | ---D | C] -- C:\ProgramData\IHProtectUpDate
[2015-02-07 15:59:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\XTab
[2015-02-07 15:59:14 | 000,000,000 | ---D | C] -- C:\ProgramData\WindowsMangerProtect
[2015-02-07 15:59:06 | 000,000,000 | ---D | C] -- C:\Users\HP\AppData\Roaming\key-find
[2015-02-07 15:58:23 | 000,000,000 | ---D | C] -- C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce
[2015-02-07 15:58:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\0780f478-67ce-4ec3-98db-39a65f4618ce
[2015-02-07 15:58:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Strong Signal
[2015-02-06 11:24:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
[2015-01-29 09:45:52 | 000,000,000 | ---D | C] -- C:\ProgramData\{580B8E22-2CB8-4C43-AE50-9338E581C6FA}
[1 C:\Users\HP\*.tmp files -> C:\Users\HP\*.tmp -> ]
 
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
 
[2015-02-26 13:26:00 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2678803215-1104970107-3132042215-1001UA.job
[2015-02-26 13:26:00 | 000,001,014 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2678803215-1104970107-3132042215-1001Core.job
[2015-02-26 13:14:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2015-02-26 09:49:22 | 000,028,352 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015-02-26 09:49:22 | 000,028,352 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015-02-26 09:45:49 | 000,001,702 | ---- | M] () -- C:\Users\HP\Documents\cc_20150226_094541.reg
[2015-02-26 09:42:19 | 000,000,000 | -H-- | M] () -- C:\ProgramData\cm-lock
[2015-02-26 09:42:05 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2015-02-26 09:42:01 | 536,317,951 | -HS- | M] () -- C:\hiberfil.sys
[2015-02-26 09:41:03 | 000,000,000 | -H-- | M] () -- C:\asc_rdflag
[2015-02-26 09:34:43 | 000,002,185 | ---- | M] () -- C:\Users\Public\Desktop\Advanced SystemCare 8.lnk
[2015-02-25 20:41:25 | 001,668,226 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2015-02-25 20:41:25 | 000,739,694 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2015-02-25 20:41:25 | 000,653,526 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2015-02-25 20:41:25 | 000,155,268 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2015-02-25 20:41:25 | 000,121,398 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2015-02-14 10:46:51 | 000,000,220 | ---- | M] () -- C:\Users\HP\Documents\cc_20150214_104647.reg
[2015-02-12 13:11:52 | 004,989,856 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2015-02-11 21:54:25 | 000,001,912 | ---- | M] () -- C:\Windows\epplauncher.mif
[2015-02-09 13:43:41 | 000,003,104 | ---- | M] () -- C:\Users\HP\Documents\cc_20150209_134333.reg
[2015-02-07 15:59:45 | 000,701,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2015-02-07 15:59:45 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2015-02-07 15:21:33 | 000,001,522 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Application Manager.lnk
[2015-02-06 11:24:50 | 000,001,232 | ---- | M] () -- C:\Users\Public\Desktop\IObit Uninstaller.lnk
[2015-02-04 04:16:29 | 000,609,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2015-02-04 04:16:20 | 000,762,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
[2015-02-04 04:16:16 | 000,414,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
[2015-02-04 04:16:14 | 000,894,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
[2015-02-04 04:16:13 | 000,227,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2015-02-04 04:16:13 | 000,192,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
[2015-02-04 04:13:28 | 001,098,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2015-01-30 08:08:56 | 000,668,296 | ---- | M] () -- C:\Users\HP\Documents\Ndg6tY_marzena6.jpg
[2015-01-28 08:44:37 | 000,000,398 | ---- | M] () -- C:\Users\HP\Documents\cc_20150128_084430.reg
[2015-01-28 00:36:21 | 001,239,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aitstatic.exe
[1 C:\Users\HP\*.tmp files -> C:\Users\HP\*.tmp -> ]
 
[color=#E56717]========== Files Created - No Company Name ==========[/color]
 
[2015-02-26 09:45:47 | 000,001,702 | ---- | C] () -- C:\Users\HP\Documents\cc_20150226_094541.reg
[2015-02-26 09:42:19 | 000,000,000 | -H-- | C] () -- C:\ProgramData\cm-lock
[2015-02-26 09:41:03 | 000,000,000 | -H-- | C] () -- C:\asc_rdflag
[2015-02-14 10:46:49 | 000,000,220 | ---- | C] () -- C:\Users\HP\Documents\cc_20150214_104647.reg
[2015-02-09 13:43:37 | 000,003,104 | ---- | C] () -- C:\Users\HP\Documents\cc_20150209_134333.reg
[2015-02-07 15:21:33 | 000,001,534 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
[2015-02-07 15:21:33 | 000,001,522 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Application Manager.lnk
[2015-01-30 08:08:55 | 000,668,296 | ---- | C] () -- C:\Users\HP\Documents\Ndg6tY_marzena6.jpg
[2015-01-28 08:44:35 | 000,000,398 | ---- | C] () -- C:\Users\HP\Documents\cc_20150128_084430.reg
[2014-11-20 15:00:11 | 000,020,480 | ---- | C] () -- C:\Windows\FixCamera.exe
[2014-11-20 14:59:57 | 000,057,344 | ---- | C] ( ) -- C:\Windows\SysWow64\vsnp325.dll
[2014-11-20 14:59:57 | 000,053,248 | ---- | C] ( ) -- C:\Windows\SysWow64\csnp325.dll
[2014-11-03 16:27:20 | 000,000,266 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2014-10-28 16:55:28 | 000,002,560 | ---- | C] () -- C:\Windows\_MSRSTRT.EXE
[2014-09-25 11:58:38 | 001,640,128 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
 
[color=#E56717]========== ZeroAccess Check ==========[/color]
 
[2009-07-14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014-06-25 03:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014-06-25 02:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-21 04:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
[color=#E56717]========== LOP Check ==========[/color]
 
[2014-11-27 19:43:02 | 000,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\IObit
[2014-11-27 19:43:02 | 000,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\IObit
[2014-10-21 17:00:55 | 000,000,000 | ---D | M] -- C:\Users\Marzena\AppData\Roaming\Ashampoo
[2014-11-07 12:54:33 | 000,000,000 | ---D | M] -- C:\Users\Marzena\AppData\Roaming\GHISLER
[2014-11-27 19:42:47 | 000,000,000 | ---D | M] -- C:\Users\Marzena\AppData\Roaming\IObit
[2014-10-21 16:33:59 | 000,000,000 | ---D | M] -- C:\Users\Marzena\AppData\Roaming\OpenOffice
[2014-10-21 15:52:48 | 000,000,000 | ---D | M] -- C:\Users\Marzena\AppData\Roaming\ProductData
[2014-10-22 16:49:15 | 000,000,000 | ---D | M] -- C:\Users\Marzena\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
 
[color=#E56717]========== Purity Check ==========[/color]
 
 
 
[color=#E56717]========== Alternate Data Streams ==========[/color]
 
@Alternate Data Stream - 116 bytes -> C:\ProgramData\TEMP:56E2E879

< End of report >
 

 

OTL Extras logfile created on: 2015-02-26 13:39:14 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\HP\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17633)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
6,00 Gb Total Physical Memory | 3,97 Gb Available Physical Memory | 66,17% Memory free
12,00 Gb Paging File | 9,57 Gb Available in Paging File | 79,79% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 195,21 Gb Total Space | 43,92 Gb Free Space | 22,50% Space Free | Partition Type: NTFS
Drive D: | 270,45 Gb Total Space | 23,90 Gb Free Space | 8,84% Space Free | Partition Type: NTFS
 
Computer Name: HP-KOMPUTER | User Name: HP | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
[color=#E56717]========== Extra Registry (SafeList) ==========[/color]
 
 
[color=#E56717]========== File Associations ==========[/color]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
 
[HKEY_USERS\S-1-5-21-2678803215-1104970107-3132042215-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
[color=#E56717]========== Shell Spawning ==========[/color]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
 
[color=#E56717]========== Security Center Settings ==========[/color]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
[color=#E56717]========== Firewall Settings ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[color=#E56717]========== Authorized Applications List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe" = C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server -- (WIBU-SYSTEMS AG)
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe" = C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server -- (WIBU-SYSTEMS AG)
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe" = C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server -- (WIBU-SYSTEMS AG)
"C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe" = C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe:*:Enabled:CodeMeter Runtime Server -- (WIBU-SYSTEMS AG)
 
 
[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{06ADB66A-8111-4B96-975F-61C5E12BCACA}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{0AFAE2F3-032F-47CE-9991-604EE18AC7E6}" = rport=139 | protocol=6 | dir=out | app=system |
"{0E9A6FF7-7CC6-4609-BD20-12D8657C1A78}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{20726B10-DC13-4AD9-9E5F-75D96CABC12E}" = rport=137 | protocol=17 | dir=out | app=system |
"{2300E436-0C33-4F2D-A8A7-75D20714AE1A}" = lport=137 | protocol=17 | dir=in | app=system |
"{25225F08-B69B-4962-A202-41A2F4E9A87D}" = lport=2869 | protocol=6 | dir=in | app=system |
"{3577376E-130B-4BD7-86FB-34283631F6B0}" = lport=139 | protocol=6 | dir=in | app=system |
"{39460BD2-F03F-475C-A211-901618984413}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{418FE5BA-2915-4F09-B3F4-18BEFC8F95CE}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{4203C554-BBD4-4699-9D63-CDFBA79F0BFE}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{427BB79C-3E57-4C8E-9637-C0C8BB275DB7}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{43117FA9-0DAC-465A-A704-E692888288E2}" = rport=445 | protocol=6 | dir=out | app=system |
"{4B286EDF-2C6F-4A63-9BF9-10D17F96352A}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{53E7DE14-CA4A-482B-8D1F-F4A6191CA909}" = lport=138 | protocol=17 | dir=in | app=system |
"{55817D81-23F6-4A31-801C-ECF31C2A4AFB}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{5D04B119-97D1-47D8-B5C4-2A987973F7DE}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{6B4284CB-8453-4F58-AA47-F85D66D456CF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{7702A74C-ABBE-452D-95F6-17927862BDC3}" = rport=10243 | protocol=6 | dir=out | app=system |
"{813EB61A-C6A6-4B51-84BF-FA5016470F67}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{820B4D6B-1A7F-42A3-A465-DC57794A6E38}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{8D0A05C4-D909-4048-88D9-42A81292FF24}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{95A6B99E-714E-480E-836B-7027028A9E93}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\outlook.exe |
"{97FC6100-A214-464D-9D2C-B4D1090425A8}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{A77135B5-002F-430D-BD35-6F3D6129287D}" = lport=445 | protocol=6 | dir=in | app=system |
"{B706673C-449F-4226-A4B0-883CF0C7837A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{B76B18BA-D35B-47E5-A806-82DD631556AA}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{C6F18CF4-9F2F-4266-B47A-D001D4E742D1}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{D877716B-0EDC-484D-BBB7-F82A23C91F0F}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{D937C5CB-C4D4-42BC-B639-81C19554E2F4}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{D9D3749D-5FA0-4C74-A7A5-0BDF343B5A3A}" = lport=10243 | protocol=6 | dir=in | app=system |
"{F019A79B-361E-4392-9B65-20532E57DB66}" = rport=138 | protocol=17 | dir=out | app=system |
"{F5F911C7-7114-4E04-BF04-8528FBFC58D5}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
 
[color=#E56717]========== Vista Active Application Exception List ==========[/color]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0C25ADE9-0552-41F2-98A2-246B466C795A}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{1F1AFA78-DD0A-4762-B5A5-D69025198D34}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{200CA327-0FDF-42F2-ADE3-ADFDD8765417}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{29FCAA90-E69D-4422-9C4B-F3EF76AB327A}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{3CD7D23C-1CD5-4BF3-A0ED-F1F6BB9B9B4F}" = protocol=6 | dir=in | app=c:\program files (x86)\codemeter\runtime\bin\codemeter.exe |
"{48F613CB-3204-498B-86BD-58F1A15A844B}" = protocol=17 | dir=in | app=c:\program files (x86)\codemeter\runtime\bin\codemeter.exe |
"{495E6BF1-BAF5-42C0-B8C5-675F661FA31C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{4A828C81-DD1E-4683-9B77-590DD2E12795}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{54F61C2D-6F34-4E9A-BFA5-475C876ED475}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{5D537FB1-99EA-44B3-8C12-6D18F6162FE5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{63C4ADDD-D115-490A-9139-136B2A4E8B19}" = protocol=17 | dir=in | app=c:\users\hp\downloads\nexus_2_content_folder_free_download_downloader.exe |
"{6A4C93D2-08A1-4C95-9B7A-FACDF4AA25E7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{6F5A14AC-7B4B-4051-8EF6-6633A50D57C9}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{7570A2F0-1C4A-415F-8D75-1B2F1714D697}" = protocol=6 | dir=in | app=c:\users\hp\appdata\roaming\bittorrent\bittorrent.exe |
"{7E32385F-CB01-45E7-BA8F-D279AB547F02}" = protocol=6 | dir=out | app=system |
"{81D66C6C-714C-417C-84DD-AF1B6FAA31CC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{83D6254F-2B4D-4A11-9849-E63B6E6194B8}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"{84249FCE-3ABB-46D8-B85D-FAAD86A907D8}" = protocol=6 | dir=in | app=c:\users\hp\downloads\nexus_2_content_folder_free_download_downloader.exe |
"{91D6527C-4CD3-4C3D-9B07-24AC3F1F8C9E}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{9E26B444-8973-4118-8415-8A0D52BD2D6F}" = dir=in | app=c:\program files (x86)\codemeter\runtime\bin\codemeter.exe |
"{A499369F-10F4-4D91-96B1-F497C9E237FD}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"{A60FF727-F354-4AE0-AEF1-BB2C2D4F4B50}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{A829CAFE-AD51-4A0D-B2EE-2485594098C4}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{B46C9032-3A40-4FB1-9D4B-846A8019E524}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{C3B3CE96-0D22-45EF-86E0-EDD8C3CCC73E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{D6DD30C4-6A6B-4DBD-A2F5-C26EFF7EFBFE}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{DB8FF24C-7A82-402A-A775-85D861B7361C}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{DEA9A38D-9E4D-42C0-958C-458383CABAE7}" = protocol=17 | dir=in | app=c:\users\hp\appdata\roaming\bittorrent\bittorrent.exe |
"{E44D41A9-948B-41A0-9AEC-1348647DCA49}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{FCC8DCA5-72F1-4FB3-AF44-43EF58BD570C}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
 
[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{066FDD1D-8B90-4DD0-8971-52C1F12B7935}" = Authorizer Ignition Key Support
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{26784146-6E05-3FF9-9335-786C7C0FB5BE}" = Microsoft .NET Framework 4.5.2
"{26A24AE4-039D-4CA4-87B4-2F06417072FF}" = Java 7 Update 72 (64-bit)
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1" = Revo Uninstaller Pro 3.1.2
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.2
"{996D32B6-F629-4764-894B-CB24D9C19051}" = Microsoft Security Client
"{9CE5F7AE-9D50-4BE6-A32A-00E6914BDB71}" = M-Audio Delta Driver 6.0.2 (x64)
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 340.52
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 340.52
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 15.3.33
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{F6762963-9AE5-4bc6-A70F-2D749F6AC02F}_is1" = Authorizer 2.6.0
"Cakewalk Studio Instruments_is1" = Studio Instruments 1.0
"CCleaner" = CCleaner
"CPUID CPU-Z_is1" = CPUID CPU-Z 1.70
"Curve_is1" = Cableguys Curve 2.1.4
"HDMI" = Intel(R) Graphics Media Accelerator Driver
"Microsoft Security Client" = Microsoft Security Essentials
"Reason7.1_64_is1" = Reason 7.1.0
"Totalcmd64" = Total Commander 64-bit (Remove or Repair)
"X Codec Pack" = X Codec Pack
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 7.0
"{26A24AE4-039D-4CA4-87B4-2F83218031F0}" = Java 8 Update 31
"{3AAA7A11-67C1-40E5-9A32-2AE2841D7D35}" = Reason Ignition Key Support
"{4869414E-7AEA-4C8E-BE1C-8D40977FD517}" = Adobe Illustrator CS6
"{490BF87E-1F75-4453-BF55-9F540543A3CA}" = Steinberg Drum Loop Expansion 01
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A19D6AC-ADE0-4A07-80FF-9C9812C45557}" = Steinberg Cubase 5
"{4D454CF8-12FD-464D-B57B-B46FE27B78BB}" = Steinberg LoopMash Content
"{532B917B-8235-4FA5-BE36-643A8BB053A5}" = Steinberg REVerence Content 01
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7BBAEC47-1CC0-4CB8-ADB4-531B78DBD1DD}" = Adobe AIR
"{7f51bdb9-ee21-49ee-94d6-90afc321780e}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005
"{865D9ED1-EAC2-436D-AFA7-0B750EB5AAAB}" = Steinberg HALionOne Studio Drum Set
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{9CC96D78-9E1D-46E0-AF4D-3EB440CD4619}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{0C8AB602-A234-45AB-B355-4C863C1D2FA8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{01CC3B2D-70DB-49DC-839A-A923D2A39EA4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{91B33C97-91F8-FFB3-581B-BC952C901685}_is1" = Ashampoo Burning Studio FREE v.1.14.5
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{947C5345-DAF2-4516-97E1-5BC72F1FE3B6}_is1" = Acoustica Basic Edition 6.0
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{AC76BA86-0804-1033-1959-001802114130}" = Adobe Refresh Manager
"{AC76BA86-7AD7-1045-7B44-AB0000000001}" = Adobe Reader XI (11.0.10) - Polish
"{AC997F93-0757-4ED4-A701-F40C2D654D09}" = Steinberg HALionOne GM Drum Set
"{AF37176A-78CA-545B-34EF-8B6A21514DD1}" = Adobe Help Manager
"{B455E95A-B804-439F-B533-336B1635AE97}" = NVIDIA PhysX
"{B5373BA3-BAD7-4EAC-A9D2-B66B41B82C57}" = OpenOffice 4.1.1
"{BD86F1AC-B594-46E4-85DC-1258AC9E2232}" = Steinberg Groove Agent ONE Content
"{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}" = PDF Settings CS6
"{ce085a78-074e-4823-8dc1-8a721b94b76d}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D23CBFDA-C46B-4920-BA70-FC7878A3F05A}" = Steinberg HALionOne Studio Set
"{D82CDA0D-C182-42C8-8FF2-5649C98D6003}" = Steinberg HALionOne Pro Set
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{E22AD5D3-EB60-4A8F-835C-6C10E369DCE2}" = Steinberg HALionOne Expression Set
"{E70E7159-93B1-470D-9FBD-D8E9EF34B538}" = Steinberg HALionOne
"{F057965A-D974-4C64-ADB1-4381CD4B8956}" = Steinberg HALionOne GM Set
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F3AFD063-8BAD-485E-B641-E7F5A2C5AE71}" = Steinberg HALionOne Additional Content Set 01
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 16 ActiveX
"Adobe Flash Player NPAPI" = Adobe Flash Player 16 NPAPI
"Advanced SystemCare 8_is1" = Advanced SystemCare 8
"ALSong_is1" = ALSong
"ALUpdate_is1" = ALTools Update
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Help Manager
"DAEMON Tools Lite" = DAEMON Tools Lite
"discoDSP Discovery v2.7_is1" = discoDSP Discovery v2.7
"Driver Booster_is1" = Driver Booster 2.1
"ENTERPRISE" = Microsoft Office Enterprise 2007
"GMedia Music impOSCar VSTi v1.0.0.1" = GMedia Music impOSCar VSTi v1.0.0.1
"Hauptwerk" = Hauptwerk
"IObit Surfing Protection_is1" = Surfing Protection
"IObitUninstall" = IObit Uninstaller
"key-find uninstall" = key-find uninstall
"Korg Legacy Collection v1.0.0.2" = Korg Legacy Collection v1.0.0.2
"Line 6 Uninstaller" = Line 6 Uninstaller
"Mozilla Firefox 35.0.1 (x86 pl)" = Mozilla Firefox 35.0.1 (x86 pl)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Native Instruments Absynth 4" = Native Instruments Absynth 4
"Picasa 3" = Picasa 3
"Proteus VX" = Proteus VX
"Smart Defrag 3_is1" = Smart Defrag 3
"Strong Signal" = Strong Signal
"SyncroSoft Emu" = SyncroSoft Emu (Remove only)
"Syncrosoft's License Control" = Syncrosoft's License Control
"Tone2 Gladiator Retail_is1" = Gladiator v1.2.2.0
 
[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
 
[HKEY_USERS\S-1-5-21-2678803215-1104970107-3132042215-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"BitTorrent" = BitTorrent
"GG" = GG
"OpenFM" = OpenFM
 
[color=#E56717]========== Last 20 Event Log Errors ==========[/color]
 
[ Application Events ]
Error - 2015-02-25 08:42:34 | Computer Name = HP-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: plugin-container.exe, wersja: 35.0.1.5500,
 sygnatura czasowa: 0x54c1f9f3  Nazwa modułu powodującego błąd: mozalloc.dll, wersja:
 35.0.1.5500, sygnatura czasowa: 0x54c1f224  Kod wyjątku: 0x80000003  Przesunięcie błędu:
 0x00001425  Identyfikator procesu powodującego błąd: 0x1264  Godzina uruchomienia aplikacji
 powodującej błąd: 0x01d050f33a513ee8  Ścieżka aplikacji powodującej błąd: C:\Program
 Files (x86)\Mozilla Firefox\plugin-container.exe  Ścieżka modułu powodującego błąd:
 C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll  Identyfikator raportu: c4b1b468-bceb-11e4-b208-001e8c8ab27a
 
Error - 2015-02-25 10:27:11 | Computer Name = HP-Komputer | Source = WinMgmt | ID = 10
Description =
 
Error - 2015-02-25 13:27:00 | Computer Name = HP-Komputer | Source = SideBySide | ID = 16842832
Description = Nie można wygenerować kontekstu aktywacji dla „c:\program files\CCleaner\CCleaner.exe”.
 Błąd w pliku manifestu lub w pliku zasad „” w wierszu .  Wersja składnika wymagana
 przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna.
Składniki
 powodujące konflikt:  Składnik 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Składnik
 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
 
Error - 2015-02-25 15:49:12 | Computer Name = HP-Komputer | Source = AdvancedSystemCareService8 | ID = 0
Description =
 
Error - 2015-02-25 15:49:12 | Computer Name = HP-Komputer | Source = AdvancedSystemCareService8 | ID = 0
Description =
 
Error - 2015-02-26 02:59:49 | Computer Name = HP-Komputer | Source = WinMgmt | ID = 10
Description =
 
Error - 2015-02-26 04:40:02 | Computer Name = HP-Komputer | Source = AdvancedSystemCareService8 | ID = 0
Description =
 
Error - 2015-02-26 04:40:02 | Computer Name = HP-Komputer | Source = AdvancedSystemCareService8 | ID = 0
Description =
 
Error - 2015-02-26 04:43:51 | Computer Name = HP-Komputer | Source = WinMgmt | ID = 10
Description =
 
Error - 2015-02-26 05:07:44 | Computer Name = HP-Komputer | Source = SideBySide | ID = 16842832
Description = Nie można wygenerować kontekstu aktywacji dla „c:\program files\CCleaner\CCleaner.exe”.
 Błąd w pliku manifestu lub w pliku zasad „” w wierszu .  Wersja składnika wymagana
 przez aplikację powoduje konflikt z inną wersją składnika, która jest już aktywna.
Składniki
 powodujące konflikt:  Składnik 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Składnik
 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
 
[ System Events ]
Error - 2015-02-25 02:46:27 | Computer Name = HP-Komputer | Source = Service Control Manager | ID = 7006
Description = Wywołanie ScRegSetValueExW dla Start nie powiodło się i wystąpił następujący
 błąd:   %%5.
 
Error - 2015-02-25 02:46:29 | Computer Name = HP-Komputer | Source = Service Control Manager | ID = 7006
Description = Wywołanie ScRegSetValueExW dla FailureCommand nie powiodło się i wystąpił
 następujący błąd:   %%5.
 
Error - 2015-02-25 07:58:18 | Computer Name = HP-Komputer | Source = EventLog | ID = 6008
Description = Poprzednie zamknięcie systemu przy 09:03:41 na ?2015-?02-?25 było
nieoczekiwane.
 
Error - 2015-02-25 08:08:46 | Computer Name = HP-Komputer | Source = Service Control Manager | ID = 7006
Description = Wywołanie ScRegSetValueExW dla Start nie powiodło się i wystąpił następujący
 błąd:   %%5.
 
Error - 2015-02-25 08:08:49 | Computer Name = HP-Komputer | Source = Service Control Manager | ID = 7006
Description = Wywołanie ScRegSetValueExW dla FailureCommand nie powiodło się i wystąpił
 następujący błąd:   %%5.
 
Error - 2015-02-25 10:25:36 | Computer Name = HP-Komputer | Source = EventLog | ID = 6008
Description = Poprzednie zamknięcie systemu przy 13:45:57 na ?2015-?02-?25 było
nieoczekiwane.
 
Error - 2015-02-25 15:38:32 | Computer Name = HP-Komputer | Source = Disk | ID = 262155
Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1.
 
Error - 2015-02-25 15:38:32 | Computer Name = HP-Komputer | Source = Disk | ID = 262155
Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1.
 
Error - 2015-02-25 15:38:33 | Computer Name = HP-Komputer | Source = Disk | ID = 262155
Description = Sterownik wykrył błąd kontrolera na \Device\Harddisk1\DR1.
 
Error - 2015-02-26 04:41:56 | Computer Name = HP-Komputer | Source = volmgr | ID = 262190
Description = Inicjowanie zrzutu awaryjnego nie powiodło się!
 
 
< End of report >
 

oktawan75
komentarz
komentarz (edytowane)

http://www.wklejto.pl/222896

 

http://www.wklejto.pl/222897

 

Mam nadzieje, że te linki będą działać.

 A dlaczego nie moge załączać na forum plików?

Zayfi
komentarz
komentarz

Otwórz notatnik i wklej

CloseProcesses:
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLMSOFTWAREPoliciesGoogle: Policy restriction <======= ATTENTION
HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Start Page = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Search Page = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Default_Search_URL = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Search Page = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.interia.pl/#utm_source=instalki&utm_medium=installer&utm_campaign=instalki
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1415020080&from=exp&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {26A836B3-F652-465B-A046-5BBDBF849977} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1415020080&from=exp&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
FF DefaultSearchEngine: key-find
FF SelectedSearchEngine: key-find
FF SearchPlugin: C:UsersHPAppDataRoamingMozillaFirefoxProfilesp2ilq1eq.defaultsearchpluginskey-find.xml
FF SearchPlugin: C:UsersHPAppDataRoamingMozillaFirefoxProfilesp2ilq1eq.defaultsearchpluginsyahoo_ff.xml
R2 WindowsMangerProtect; C:ProgramDataWindowsMangerProtectProtectWindowsManager.exe [487056 2015-02-07] (SysTool PasSame LIMITED)
R2 Update Mgr StrongSignal; C:Program Files (x86)Common Files�780f478-67ce-4ec3-98db-39a65f4618ceupdater.exe [388856 2015-02-26] ()
R1 {71066d58-1f99-4a2c-b52e-9880d384e03a}Gw64; C:WindowsSystem32drivers{71066d58-1f99-4a2c-b52e-9880d384e03a}Gw64.sys [48784 2014-12-18] (StdLib)
C:ProgramData369116b8-dbeb-4541-87d3-4725ded56029
Task: {0423924E-7FD2-41EC-B6B5-7E7682D9917C} - System32TasksASC8_SkipUac_HP => C:Program Files (x86)IObitAdvanced SystemCare 8ASC.exe [2015-01-27] (IObit)
Task: {0CB2853A-CABE-479B-8238-6769A9AD6737} - System32Tasks{D6CEA690-4634-4522-B00F-922D7C95B866} => pcalua.exe -a 
Task: {7A3CEFA6-27E3-4806-BF3C-6E0D5B9579BE} - System32Tasks{1A95E3FA-7B95-449D-8285-6FB6D65D1290} => pcalua.exe -a 
Task: {BB7ADE68-EDCD-408D-BB9D-5922B2DCB2D4} - System32TasksLuckyTab => C:Program Files (x86)LuckyTabLuckyTab.exe <==== ATTENTION
EmptyTemp:

plik zapisz jako fixlist.txt i umieść w C:UsersHPDownloads. Uruchom FRST i kliknij w Fix. Przedstaw raport filog.txt.

 

 

2. Z panelu programów odinstaluj

Advanced SystemCare 8 
Strong Signal
IObit Uninstaller
key-find uninstall

3. Wykonaj nowy skan FRST, zaznacz opcję Shortcut. Powstaną dwa raporty.

oktawan75
komentarz
komentarz

Otwórz notatnik i wklej

CloseProcesses:
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLMSOFTWAREPoliciesGoogle: Policy restriction <======= ATTENTION
HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Start Page = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Search Page = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Default_Search_URL = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Search Page = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.interia.pl/#utm_source=instalki&utm_medium=installer&utm_campaign=instalki
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://www.key-find.com/?type=hp&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1415020080&from=exp&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {26A836B3-F652-465B-A046-5BBDBF849977} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1415020080&from=exp&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
FF DefaultSearchEngine: key-find
FF SelectedSearchEngine: key-find
FF SearchPlugin: C:UsersHPAppDataRoamingMozillaFirefoxProfilesp2ilq1eq.defaultsearchpluginskey-find.xml
FF SearchPlugin: C:UsersHPAppDataRoamingMozillaFirefoxProfilesp2ilq1eq.defaultsearchpluginsyahoo_ff.xml
R2 WindowsMangerProtect; C:ProgramDataWindowsMangerProtectProtectWindowsManager.exe [487056 2015-02-07] (SysTool PasSame LIMITED)
R2 Update Mgr StrongSignal; C:Program Files (x86)Common Files�780f478-67ce-4ec3-98db-39a65f4618ceupdater.exe [388856 2015-02-26] ()
R1 {71066d58-1f99-4a2c-b52e-9880d384e03a}Gw64; C:WindowsSystem32drivers{71066d58-1f99-4a2c-b52e-9880d384e03a}Gw64.sys [48784 2014-12-18] (StdLib)
C:ProgramData369116b8-dbeb-4541-87d3-4725ded56029
Task: {0423924E-7FD2-41EC-B6B5-7E7682D9917C} - System32TasksASC8_SkipUac_HP => C:Program Files (x86)IObitAdvanced SystemCare 8ASC.exe [2015-01-27] (IObit)
Task: {0CB2853A-CABE-479B-8238-6769A9AD6737} - System32Tasks{D6CEA690-4634-4522-B00F-922D7C95B866} => pcalua.exe -a 
Task: {7A3CEFA6-27E3-4806-BF3C-6E0D5B9579BE} - System32Tasks{1A95E3FA-7B95-449D-8285-6FB6D65D1290} => pcalua.exe -a 
Task: {BB7ADE68-EDCD-408D-BB9D-5922B2DCB2D4} - System32TasksLuckyTab => C:Program Files (x86)LuckyTabLuckyTab.exe <==== ATTENTION
EmptyTemp:

plik zapisz jako fixlist.txt i umieść w C:UsersHPDownloads. Uruchom FRST i kliknij w Fix. Przedstaw raport filog.txt.

 

 

2. Z panelu programów odinstaluj

Advanced SystemCare 8 
Strong Signal
IObit Uninstaller
key-find uninstall

3. Wykonaj nowy skan FRST, zaznacz opcję Shortcut. Powstaną dwa raporty.

 

Jutro załącze logi
 


Jutro załącze logi
 

 

 

http://www.wklejto.pl/222937

 

http://www.wklejto.pl/222938

 

http://www.wklejto.pl/222939

 

http://www.wklejto.pl/222940    --  fixlog.txt

Zayfi
komentarz
komentarz

Otwórz notatnik i wklej

CloseProcesses:
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Search Page = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKLMSoftwareWow6432NodeMicrosoftInternet ExplorerMain,Default_Search_URL = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Search Page = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.interia.pl/#utm_source=instalki&utm_medium=installer&utm_campaign=instalki
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Search Bar = http://www.google.com/ie
HKUS-1-5-21-2678803215-1104970107-3132042215-1000SoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1415020080&from=exp&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {26A836B3-F652-465B-A046-5BBDBF849977} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1415020080&from=exp&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKUS-1-5-21-2678803215-1104970107-3132042215-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:Program Files (x86)IObitIObit UninstallerUninstallExplorer64.dll No File
FF DefaultSearchEngine: key-find
FF SelectedSearchEngine: key-find
FF Homepage: hxxp://www.interia.pl/#utm_source=instalki&utm_medium=installer&utm_campaign=instalki
FF SearchPlugin: C:UsersHPAppDataRoamingMozillaFirefoxProfilesp2ilq1eq.defaultsearchpluginskey-find.xml
FF SearchPlugin: C:UsersHPAppDataRoamingMozillaFirefoxProfilesp2ilq1eq.defaultsearchpluginsyahoo_ff.xml
FF SearchPlugin: C:Program Files (x86)mozilla firefoxbrowsersearchpluginswebssearches.xml
FF Extension: Ads Removal - C:UsersHPAppDataRoamingMozillaFirefoxProfilesp2ilq1eq.defaultExtensionsadremoveext@adremoveext.net [2014-11-20]
FF Extension: FF Toolbar - C:UsersHPAppDataRoamingMozillaFirefoxProfilesp2ilq1eq.defaultExtensionsfftoolbar2014@etech.com [2015-02-07]
FF Extension: Advanced SystemCare Surfing Protection - C:UsersHPAppDataRoamingMozillaFirefoxProfilesp2ilq1eq.defaultExtensionsiobitascsurfingprotection@iobit.com [2015-02-06]
C:ProgramData369116b8-dbeb-4541-87d3-4725ded56029

plik zapisz jako fixlist.txt i umieść w C:UsersHPDownloads. Uruchom FRST i kliknij w Fix. Przedstaw raport fixlog.txt.

oktawan75
komentarz
komentarz

http://www.wklejto.pl/222998   --  fixlog.txt

Zayfi
komentarz
komentarz

Otwórz notatnik i wklej

Reg: reg delete "HKU\S-1-5-18\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-19\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete "HKU\S-1-5-20\Software\Microsoft\Internet Explorer\SearchScopes" /f
Reg: reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\mountpoints2 /f
Reboot:

plik zapisz jako fixlist.txt i umieść w C:UsersHPDownloads. Uruchom FRST i kliknij w Fix. Przedstaw raport fixlog.txt.

 

Wykonaj nowy skan FRST. Nic nie zaznaczaj niech leci na ustawieniach domyślnych.

Zayfi
komentarz
komentarz

Spakuj wszystkie logi do zipa i wyślij tu

 

http://www.speedyshare.com/

Zayfi
komentarz
komentarz

Chciałem ostatnie raporty a nie wszystko.

 

Otwórz notatnik i wklej:

HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\...\Run: [AdobeBridge] => [X]
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.interia.pl/#utm_source=instalki&utm_medium=installer&utm_campaign=instalki
HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKU\S-1-5-21-2678803215-1104970107-3132042215-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.key-find.com/web/?type=ds&ts=1423321112&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2678803215-1104970107-3132042215-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1415020080&from=exp&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2678803215-1104970107-3132042215-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2678803215-1104970107-3132042215-1000 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2678803215-1104970107-3132042215-1000 -> {26A836B3-F652-465B-A046-5BBDBF849977} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2678803215-1104970107-3132042215-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1415020080&from=exp&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2678803215-1104970107-3132042215-1000 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2678803215-1104970107-3132042215-1000 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://www.key-find.com/web/?utm_source=b&utm_medium=cor&utm_campaign=install_ie&utm_content=ds&from=cor&uid=WDCXWD5000AACS-00ZUB0_WD-WCASU420761207612&ts=1423321172&type=default&q={searchTerms}
FF SearchPlugin: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\p2ilq1eq.default\searchplugins\key-find.xml
FF SearchPlugin: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\p2ilq1eq.default\searchplugins\yahoo_ff.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\webssearches.xml
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\p2ilq1eq.default\Extensions\iobitascsurfingprotection@iobit.com [2015-02-06]
Reboot:

plik zapisz jako fixlist.txt i umieść w C:\Users\HP\Downloads.  Uruchom FRST i kliknij w Fix. Przedstaw raport fixlog.txt.

oktawan75
komentarz
komentarz
Zayfi
komentarz
komentarz

Zrób nowy skan FRST i wstaw raport.

Zayfi
komentarz
komentarz

Otwórz notatnik i wklej

CHR HKLMSOFTWAREPoliciesGoogle: Policy restriction <======= ATTENTION
BHO-x32: No Name -> {c723a437-2eaf-466d-a95b-3fa0966bf88c} ->  No File
FF DefaultSearchEngine: key-find
FF SelectedSearchEngine: key-find
C:UsersHPAppDataRoamingMozillaFirefoxProfilesp2ilq1eq.defaultsearchpluginskey-find.xml
Reboot:

plik zapisz jako fixlist.txt i umieść w C:\Users\HP\Downloads.  Uruchom FRST i kliknij w Fix. Przedstaw raport fixlog.txt.

 

Zdaj relacje czy problemy ustąpiły.

oktawan75
komentarz
komentarz (edytowane)

http://speedy.sh/MZbg9/no-fixlist.jpg

 

http://speedy.sh/juCRd/zagiety-rog.jpg

 

http://speedy.sh/bQYSE/brak-odpowiedzi.jpg

 

http://speedy.sh/rMNnx/reklamy.jpg

 

 

Dzisiaj mam problem z wykonaniem raportu fixlog.txt. Przedstawiam screen. Pozostale pojawiajace sie problemy to zaginający sie róg gdy na niego najade oraz podczas przewijania sie paska brak odpowiedzi przegladarki na jakies 30sek. Reklamy pokazuja się np. na portalu z ogloszeniami (wczesniej tego nie mialem, wyżej załączone screeny) Komunikat odnosnie skryptu juz teraz sie nie pojawia

 

http://speedy.sh/q7xZJ/powered-by-strong-sygnal.jpg

 

I jeszcze cos takiego sie pojawia gdy robię WSTECZ JAKIEJS STRONY..

Zayfi
komentarz
komentarz

Zresetuj firefoxa

 

z menu Pomoc > informacje dla pomocy > odświerz program firefox

oktawan75
komentarz
komentarz

Zresetowanie pomogło, komputer chodzi o wiele szybciej, zginął zagięty róg i inne problemy. Jedynie za pierwszym razem pojawil mi się przy przewijaniu paska, jak wchodze na swój post komunikat: program nie odpowiada ale działo sie to tak tylko jak jestem w swoim poście (moze jest on za dlugi?) i po tym pojawil sie komunikat skrypt nie odpowiada ale za kolejnym razem juz tak nie było. Popracuję i poczekam do jutra zobaczymy jak to będzie wyglądało. Fixlog z FRST nie chcial sie wykonać tak jak pisałem w poprzedniej odpowiedzi. Z góry dzieki za pomoc. Czy wskazane jest częste resetowanie ustawień firefoxa?

Zayfi
komentarz
komentarz
Czy wskazane jest częste resetowanie ustawień firefoxa?

 

Nie. To jest ostateczna mozliwość. Stosujemy wtedy kiedy inne opcje zawodzą.

 

Teraz czynności końcowe.

 

Przez Shift+Delete skasuj folder C:\FRST i sam program.

2. uruchom Adwcleaner i kliknij Odinstaluj

 

3. Uruchom OTL i kliknij Sprzatanie.

 

4. Wyczyść foldery przywracania systemu

 

http://www.fixitpc.pl/topic/5-dezynfekcja-kroki-finalizujace-temat/page__p__42415#entry42415

oktawan75
komentarz
komentarz

Dziekuje za wszelkie rady a co do adwcleanerra to mam zainstalowac przeskanowac i odinstalowac?

Zayfi
komentarz
komentarz
a co do adwcleanerra to mam zainstalowac przeskanowac i odinstalowac?

 

i

 

2. uruchom Adwcleaner i kliknij Odinstaluj

 

oktawan75
komentarz
komentarz

ja rozumiem co napisales tylko co da zainstalowanie i za chwile odinstalowanie go? tak prywatnie chcialem wiedziec:)

Zayfi
komentarz
komentarz

jak go nie instalowałes to nie wykonujesz punktu nr2

oktawan75
komentarz
komentarz

Dziekuję za wszystkie rady, zamykam temat ...  i pozdrawiam

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.