Skocz do zawartości
  • 👋 Witaj na MPCForum!

    Przeglądasz forum jako gość, co oznacza, że wiele świetnych funkcji jest jeszcze przed Tobą! 😎

    • Pełny dostęp do działów i ukrytych treści
    • Możliwość pisania i odpowiadania w tematach
    • System prywatnych wiadomości
    • Zbieranie reputacji i rozwijanie swojego profilu
    • Członkostwo w jednej z największych społeczności graczy

    👉 Dołączenie zajmie Ci mniej niż minutę – a zyskasz znacznie więcej!

    Zarejestruj się teraz
  • 0

Komputer muli.


WielkiBananPL

Pytanie

Opublikowano

Mój komputer od jakiś 5 dni chodzi jak ślimak.

Czyściłem go CCleanerem, skanowałem avastem, czyściłem go od środka, usuwałem błedy hijackthisem a nawet czyściłem dysk lokalny.

W czym problem?
- zacinki przeglądarki (podczas oglądania filmów, przeglądania np. facebook'a)
- mam nową kartę graficzną i nie mogę do niej zainstalować panelu ATI Radeon'a
- komputer od czasu do czasu sam z dupy się wyłącza (temperatury do 80 stopni, lecz niedawno były mniejsze) - od 5 dni...
- gdy przeglądam film na komputerze, zacina się i dźwiek nie jest w tym samym czasie
- ogólnie chodzi jak zamuł - nigdy tak nie było...

Specyfikacje komputera:
AMD Athlon x2 5200+
Radeon 4850 512mb (256bit)
RAM 2.5GB
Modecom feel 400w (wiem, wiem..)
Windows 7


Zastanawiam się nad formatem, ale nie mogę zbootować pendrive, także walczę do końca i myślę, że mi pomożecie.
 

3 odpowiedzi na to pytanie

Rekomendowane odpowiedzi

Opublikowano

Addition:


Additional scan result of Farbar Recovery Scan Tool (x86) Version: 13-06-2015
Ran by ubu dubu at 2015-06-18 14:42:15
Running from C:\Users\ubu dubu\Downloads
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2269880116-4238015692-3965371448-500 - Administrator - Disabled)
Gość (S-1-5-21-2269880116-4238015692-3965371448-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2269880116-4238015692-3965371448-1002 - Limited - Enabled)
ubu dubu (S-1-5-21-2269880116-4238015692-3965371448-1011 - Administrator - Enabled) => C:\Users\ubu dubu

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AdBlocker Manger (HKLM\...\{37476589-E48E-439E-A706-56189E2ED4C4}_is1) (Version:  - AdBlocker Manger) <==== ATTENTION
Avast Free Antivirus (HKLM\...\Avast) (Version: 10.2.2218 - AVAST Software)
AVG 2015 (Version: 15.0.4260 - AVG Technologies) Hidden
AVG 2015 (Version: 15.0.5645 - AVG Technologies) Hidden
BitComet 1.38 (HKLM\...\BitComet) (Version: 1.38 - CometNetwork)
CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform)
Counter-Strike (HKLM\...\Steam App 10) (Version:  - Valve)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version:  - Valve)
Fraps (remove only) (HKLM\...\Fraps) (Version:  - )
GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team)
Google Chrome (HKLM\...\{6A21C1E8-DAC1-3C18-BCDC-2DBB4B352AD8}) (Version: 66.77.16508 - Google, Inc.)
History Calendar (HKLM\...\{5A1D3F9E-73B5-95EC-1233-6646E1358965}) (Version:  - "") <==== ATTENTION
League of Legends (HKLM\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (Version: 3.0.1 - Riot Games) Hidden
LS-USBMX1/2/3 Steering... (HKLM\...\{CC7F0FAA-9768-4CE2-B133-72C66492EC06}) (Version: 1.00.0000 - GASIA)
Metin2-Balmora (Version: 3.0.1 - Balmora.pl) Hidden
Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 38.0.5 (x86 pl) (HKLM\...\Mozilla Firefox 38.0.5 (x86 pl)) (Version: 38.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 38.0.5 - Mozilla)
Skype Click to Call (HKLM\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation)
Skype™ 7.5 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.5.102 - Skype Technologies S.A.)
SO_Sustainer 1.80 (HKLM\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{3f17c95f}) (Version:  - Certified Publisher) <==== ATTENTION
Steam (HKLM\...\Steam) (Version:  - Valve Corporation)
SystemUp (HKLM\...\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{6bde9d27}) (Version:  - Software Publisher) <==== ATTENTION
The Witcher: Enhanced Edition (HKLM\...\Steam App 20900) (Version:  - CD PROJEKT RED)
Vegas Pro 10.0 (HKLM\...\{AE3A67EE-0C5D-11E0-BC1D-0013D3D69929}) (Version: 10.0.466 - Sony)
WinRAR 5.20 (32-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Restore Points =========================


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-09-30 15:22 - 2014-12-31 14:06 - 00001360 ___RA C:\Windows\system32\Drivers\etc\hosts
127.0.0.1                   thislineskipsanyemptylines
127.0.0.1                   mirillis.com
127.0.0.1                   www.mirillis.com
127.0.0.1                   serwer2.paka-service.com
127.0.0.1                   ns386119.ovh.net
127.0.0.1                   mirillis.pl
127.0.0.1 mirillis.com
127.0.0.1 ns386119.ovh.net
127.0.0.1 mirillis.pl
127.0.0.1 www.mirillis.com
127.0.0.1 serwer2.paka-service.com
127.0.0.1                   thislineskipsanyemptylines
127.0.0.1                   thislineskipsanyemptylines


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0D83C685-0E64-4FE7-A4CE-49ECF63B0FB3} - System32\Tasks\{F0A43C4D-7526-47DF-920A-473C342F1738} => pcalua.exe -a C:\Users\Kacper\Downloads\dotnetfx30SP1setup.exe -d C:\Users\Kacper\Downloads
Task: {3316293C-2A26-4C5C-B169-1C40B894633A} - System32\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-4 => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-4.exe <==== ATTENTION
Task: {336EE6A6-79DC-44FB-B40F-362071172D68} - System32\Tasks\DealPlyLiveUpdateTaskMachineUA => C:\Program Files\DealPlyLive\Update\DealPlyLive.exe <==== ATTENTION
Task: {52E099E7-15C4-4F8C-8CB6-B1B72056DED3} - System32\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-5_user => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-5.exe <==== ATTENTION
Task: {645A5CCB-E1B9-4BB0-BE4A-8290DA8A0AA9} - System32\Tasks\Razer_Game_Booster_AutoUpdate => C:\Program Files\Razer\Razer Game Booster\AutoUpdate.exe
Task: {6C79BF29-29E4-455B-A4A3-0F22592B7C8C} - System32\Tasks\EPUpdater => C:\Users\Kacper\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe <==== ATTENTION
Task: {77BDA421-5557-4E15-8A0C-288CF4D2EC2B} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-06-18] (Avast Software s.r.o.)
Task: {797175DD-610D-4600-ADAB-D524AAE2D36C} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: {83862281-8C7F-4F46-A0F8-058809D5EF75} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: {855C72C5-D878-4AAA-921C-E69B821C919C} - System32\Tasks\{812C3AA0-4B2E-4F3D-8D62-077926C35D2E} => pcalua.exe -a C:\Users\Kacper\Downloads\Wirecast_for_YouTube_4.3.exe -d C:\Users\Kacper\Downloads
Task: {8F21A657-B3EA-4313-988A-94F0D44D20C8} - System32\Tasks\FoxTab => C:\Users\Kacper\AppData\Roaming\FoxTab\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: {8F33763F-93BB-421E-96A9-A6263A0EB5B3} - System32\Tasks\{2B82A31A-4CA5-4765-B7C8-F088CCA13EA3} => pcalua.exe -a I:\launcher.exe -d I:\
Task: {90C01596-CB90-4306-9901-C48FF0E87FF6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: {A7A2332B-9FDC-41CE-876B-A919846A4A47} - System32\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-2 => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-2.exe <==== ATTENTION
Task: {ADBFAC7C-4A55-4198-8B6F-7FEC5B6E0267} - System32\Tasks\Optimizer Pro Schedule => C:\Program Files\Optimizer Pro\OptProLauncher.exe <==== ATTENTION
Task: {AE008043-F5D7-491B-A5C7-630298F30851} - System32\Tasks\{10D935BD-97C3-4EE1-BDB5-DE5844401A90} => pcalua.exe -a "C:\Program Files\AMX Mod X\Installer.exe" -d "C:\Program Files\AMX Mod X"
Task: {B3B0E48E-A157-4C04-B6B3-AFE3756EFEF1} - System32\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-1 => C:\Program Files\PHD-V1.4\PHD-V1.4-codedownloader.exe <==== ATTENTION
Task: {B3E2D8E4-DED4-4251-B55E-83AED172EB05} - System32\Tasks\{114A6B86-C78D-4861-954C-088C3403DA20} => pcalua.exe -a "C:\Users\ubu dubu\Downloads\ultimatevicecity_www.INSTALKI.pl.exe" -d "C:\Users\ubu dubu\Downloads"
Task: {C837A2AB-15C5-4AD0-A47B-D0CE3428730E} - System32\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-3 => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-3.exe <==== ATTENTION
Task: {D0FAD6B9-3074-439C-85BD-7208BAFECE9D} - System32\Tasks\QtraxPlayer => 3415208859.portal.qtrax.com
Task: {D19598B7-B501-4293-A410-907C2727783F} - System32\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-5 => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-5.exe <==== ATTENTION
Task: {D563A3E9-02F8-4B2F-9094-999BC641BEBA} - System32\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-11 => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-11.exe <==== ATTENTION
Task: {D5D29349-529D-48B5-985E-1AE303F6A8B3} - System32\Tasks\{7E0158B4-DB6B-479A-BA1B-1EE4A2630707} => C:\FIFA\FIFA 14\Game\fifa14.exe
Task: {DBF49655-DDE5-444C-8628-C4EAA9BF88B7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-08-21] (Piriform Ltd)
Task: {E82B8945-B965-4D0D-899F-BCF055889727} - System32\Tasks\{88F91EB5-E213-4B5B-83D8-E56B1FCB35FE} => pcalua.exe -a C:\Users\Kacper\AppData\Local\Temp\IXP675.TMP\QuickTimeInstallerAdmin.exe -d C:\Windows\system32 -c /evt E648 /pid 4596 /mon 972 984 /alt "C:\Users\Kacper\AppData\Local\Temp\IXP675.TMP\AppleSoftwareUpdate.msi" REBOOT=ReallySuppress
Task: {E9F92879-6CCC-42CD-A5E1-0FEF91F18368} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2013-06-02] ()
Task: {EB4253D1-312D-4C32-B864-270D5F7A33FE} - System32\Tasks\{B10B63AE-CA32-45F6-BEBC-47505F6D2156} => pcalua.exe -a C:\Users\Kacper\Downloads\dxwebsetup(1).exe -d C:\Users\Kacper\Downloads
Task: {F291D0F4-4E57-46CC-ABC9-3B463EB44ED2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: {F5A8C67C-C4C4-405A-BD80-1CA0DA6B650D} - System32\Tasks\{B666E564-0839-4064-BE55-2B73B73377DA} => pcalua.exe -a "C:\Users\ubu dubu\Downloads\HijackThis_2.0.4.exe" -d "C:\Users\ubu dubu\Downloads"
Task: {FCC381E8-652C-4FC9-8FD9-3C72A5BAD63C} - System32\Tasks\DealPlyLiveUpdateTaskMachineCore => C:\Program Files\DealPlyLive\Update\DealPlyLive.exe <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job => C:\Program Files\DealPlyLive\Update\DealPlyLive.exe <==== ATTENTION
Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job => C:\Program Files\DealPlyLive\Update\DealPlyLive.exe <==== ATTENTION
Task: C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-1.job => C:\Program Files\PHD-V1.4\PHD-V1.4-codedownloader.exeL/YsHijX /stxUVB=task /cVaJrsxGU='PHD-V1.4' /rEhSVmGi=58362 /WDAmvhcFA='001660' /ZZCSA='0' /BzRPlo='0' /fvSPebLz=BB45DCC255714C418129030965A010FEIE /SeqCKvP=0956a36b7741092bfa0f967371989d9d /nEEbv=1_34_07_01 /XRnMuiu=1.34.7.1 /tbpiZjKf=1406399627 /gvuSmd=http:/stats.genstatsnet.com /IbKOff=http:/errors.genstatsnet.com /mQjzgfFHD=http:/js.genstatsnet.com /jGPsA=ff /VfXeAPNUs='PHD-V1.4' /adudxwoxi=http:/js.clientdemocloud.com /qKxvgqHi /UtzYxBGai='{asw:[2, 4, 0]}' /EOeVwrgAC='http:/update.genstatsnet.com/ie_code_agent_updates/{CAMP_ID}/update.jso <==== ATTENTION
Task: C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-11.job => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-11.exe <==== ATTENTION
Task: C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-2.job => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-2.exeĺ/tvwYOOPO /cVaJrsxGU='PHD-V1.4' /rEhSVmGi=58362 /WDAmvhcFA='001660' /ZZCSA='0' /BzRPlo='0' /fvSPebLz=BB45DCC255714C418129030965A010FEIE /SeqCKvP=0956a36b7741092bfa0f967371989d9d /nEEbv=1_34_07_01 /tbpiZjKf=1406399627 /gvuSmd=http:/stats.genstatsnet.com /IbKOff=http:/errors.genstatsnet.com /nAybIxQQ=11111111-1111-1111-1111-110511831162 /jGPsA=ff /LAAdem /qKxvgqHi /EOeVwrgAC='http:/update.genstatsnet.com/ie_enable_agent_updates/{CAMP_ID}/update.jso <==== ATTENTION
Task: C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-3.job => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-3.exe <==== ATTENTION
Task: C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-4.job => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-4.exeš/opqpsEAa /cVaJrsxGU='PHD-V1.4' /hNFFULjC C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5.xpi' /rEhSVmGi=58362 /WDAmvhcFA='001660' /ZZCSA='0' /BzRPlo='0' /fvSPebLz=BB45DCC255714C418129030965A010FEIE /SeqCKvP=0956a36b7741092bfa0f967371989d9d /nEEbv=1_34_07_01 /XRnMuiu=1.34.7.1 /tbpiZjKf=1406399627 /gvuSmd=http:/stats.genstatsnet.com /IbKOff=http:/errors.genstatsnet.com /gtHFBaWfp=300 /TugnA=508d4e2f-a469-421d-a294-135dbb84fe1b@f7b17943-cc9e-4d4a-b223-0bd1e7cfc871.com /gHVnhQxhQ=0.95 /xkrGx=a508d4e2fa469421da294135dbb84fe1bf7b17943cc9e4d4ab2230bd1e7cfc871com58362 /WMhqd=https:/w9u6a2p6.ssl.hwcdn.net/plugin/ff/update/58362.rdf /oyTjj='PHD-V1.4' /btOke='Turn YouTube videos to High Definition by default' /NVIXHHIps='PHD' /jGPsA=ff /UtzYxBGai='{asw:[2, 4, 0]}' /qKxvgqHi /rbwbnF /MdrbH /EOeVwrgAC='http:/update.genstatsnet.com/ff_agent_updates/{CAMP_ID}/update.jso <==== ATTENTION
Task: C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-5.job => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-5.exe    /cNvnpT /cVaJrsxGU='PHD-V1.4' /rEhSVmGi=58362 /WDAmvhcFA='001660' /ZZCSA='0' /BzRPlo='0' /fvSPebLz=BB45DCC255714C418129030965A010FEIE /SeqCKvP=0956a36b7741092bfa0f967371989d9d /nEEbv=1_34_07_01 /tbpiZjKf=1406399627 /gvuSmd=http:/stats.genstatsnet.com /IbKOff=http:/errors.genstatsnet.com /OHQaM=http:/ipgeoapi.com/ /RyxBzou=http:/update.genstatsnet.com /GEaoC=2 /aJqNMWAtq=http:/logs.genstatsnet.com /EOeVwrgAC='http:/update.genstatsnet.com/updater_agent_updates/{CAMP_ID}/update.jso <==== ATTENTION
Task: C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-5_user.job => C:\Program Files\PHD-V1.4\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-5.exe/cNvnpT /cVaJrsxGU='PHD-V1.4' /rEhSVmGi=58362 /WDAmvhcFA='001660' /ZZCSA='0' /BzRPlo='0' /fvSPebLz=BB45DCC255714C418129030965A010FEIE /SeqCKvP=0956a36b7741092bfa0f967371989d9d /nEEbv=1_34_07_01 /tbpiZjKf=1406399627 /gvuSmd=http:/stats.genstatsnet.com /IbKOff=http:/errors.genstatsnet.com /OHQaM=http:/ipgeoapi.com/ /RyxBzou=http:/update.genstatsnet.com /GEaoC=2 /aJqNMWAtq=http:/logs.genstatsnet.com /EOeVwrgAC='http:/update.genstatsnet.com/updater_agent_updates/{CAMP_ID}/update.jso <==== ATTENTION
Task: C:\Windows\Tasks\FoxTab.job => C:\Users\Kacper\AppData\Roaming\FoxTab\UPDATE~1\UPDATE~1.EXE <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

2015-06-12 12:29 - 2015-06-12 12:29 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-06-12 12:29 - 2015-06-12 12:29 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-06-17 22:43 - 2015-06-17 22:43 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15061702\algo.dll
2015-06-18 14:34 - 2015-06-18 14:34 - 02952704 _____ () C:\Program Files\AVAST Software\Avast\defs\15061800\algo.dll
2015-06-16 13:39 - 2015-06-16 13:39 - 01658880 _____ () c:\Program Files\SystemUp\SystemUp.dll
2015-06-12 12:29 - 2015-06-12 12:29 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-07-26 20:40 - 2014-08-09 22:46 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2269880116-4238015692-3965371448-1011\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.1.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^ubu dubu^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Microsoft_Band.vbs => C:\Windows\pss\Microsoft_Band.vbs.Startup
MSCONFIG\startupfolder: C:^Users^ubu dubu^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^PowerStrip.lnk => C:\Windows\pss\PowerStrip.lnk.Startup
MSCONFIG\startupfolder: C:^Users^ubu dubu^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tibia 10.76.lnk => C:\Windows\pss\Tibia 10.76.lnk.Startup
MSCONFIG\startupreg: 20131224 => C:\Program Files\AVAST Software\Avast\setup\emupdate\8525325d-6b90-4c92-849f-4a09a9d710d0.exe /check
MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\ubu dubu\AppData\Local\Akamai\netsession_win.exe"
MSCONFIG\startupreg: ApnTBMon => "C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
MSCONFIG\startupreg: APSDaemon => "C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: AVG_UI => "C:\Program Files\AVG\AVG2015\avgui.exe" /TRAYONLY
MSCONFIG\startupreg: BitComet => "C:\Program Files\BitComet\BitComet.exe" /tray
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: Del15800654 => cmd.exe /Q /D /c del "C:\Users\Kacper\AppData\Local\Temp\0.del"
MSCONFIG\startupreg: EADM => "E:\Origin\Origin.exe" -AutoStart
MSCONFIG\startupreg: EasyTuneVPro => C:\Program Files\Gigabyte\ET5Pro\ETcall.exe
MSCONFIG\startupreg: Facebook Update => "C:\Users\ubu dubu\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
MSCONFIG\startupreg: GameBooster => C:\Program Files\Mz Ultimate Tools\Mz Game Accelerator\gamebooster.exe
MSCONFIG\startupreg: GG => "C:\Users\Kacper\AppData\Local\GG\Application\gghub.exe"
MSCONFIG\startupreg: GrooveMonitor => "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
MSCONFIG\startupreg: IPLA! => C:\Program Files\ipla\ipla.exe /autorun
MSCONFIG\startupreg: LiveSupport => "C:\Program Files\LiveSupport\LiveSupport.exe" /noshow /log
MSCONFIG\startupreg: LogMeIn Hamachi Ui => "D:\hamachi-2-ui.exe" --auto-start
MSCONFIG\startupreg: ManyCam => "C:\Program Files\ManyCam\Bin\ManyCam.exe" /silent
MSCONFIG\startupreg: mobilegeni daemon => C:\Program Files\Mobogenie\DaemonProcess.exe
MSCONFIG\startupreg: NeroCheck => C:\Windows\system32\NeroCheck.exe
MSCONFIG\startupreg: NextLive => C:\Windows\system32\rundll32.exe "C:\Users\Kacper.Kacper-Komputer\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
MSCONFIG\startupreg: NvBackend => "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"
MSCONFIG\startupreg: Optimizer Pro => C:\Program Files\Optimizer Pro\OptProLauncher.exe
MSCONFIG\startupreg: PAC207_Monitor => C:\Windows\PixArt\PAC207\Monitor.exe
MSCONFIG\startupreg: PriceFountain => wscript /E:vbscript /B "C:\Users\UBUDUB~1\AppData\Roaming\PriceFountain\UpdateProc\bkup.dat"
MSCONFIG\startupreg: pricefountainw.exe => C:\Users\ubu dubu\AppData\Local\PriceFountain\pricefountainw.exe HKEY_CURRENT_USER Software\PriceFountain
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: RGSC => C:\Program Files\Rockstar Games Social Club\RGSCLauncher.exe /silent
MSCONFIG\startupreg: screenSHU => "C:\Program Files\screenSHU\screenSHU.exe" --hidden
MSCONFIG\startupreg: Search Protection => C:\ProgramData\Search Protection\SearchProtection.exe
MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
MSCONFIG\startupreg: StartCCC => "E:\amd\ATI.ACE\Core-Static\x86\CLIStart.exe" MSRun
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: vProt => "C:\Program Files\AVG Web TuneUp\vprot.exe"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{873C00E5-1C7D-4E6F-B169-A929FB631DBD}] => (Allow) E:\Steam\Steam.exe
FirewallRules: [{557A2FB1-6E83-4651-BB37-D20E189934F7}] => (Allow) E:\Steam\Steam.exe
FirewallRules: [{412A922F-D378-4AF8-A0A0-DFA3CFA1F8D1}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{E9006B71-9F83-4968-A31E-7A62521475C2}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{6FB8C9F2-B388-492E-89E8-5449C5822604}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{B75007EA-5F7D-4C75-88D3-D66DDB5FD1D8}] => (Allow) LPort=80
FirewallRules: [{C4503D3C-FCC4-46A3-B29E-8C655766E37A}] => (Allow) LPort=80
FirewallRules: [{DE98BB49-60B3-448C-B0E1-9B16ABF2B153}] => (Allow) LPort=443
FirewallRules: [{D8A8189E-A08E-4A0B-A2B8-4125AC77EC51}] => (Allow) LPort=443
FirewallRules: [{8A707FA7-5C7E-47E5-8C88-F42029907D8F}] => (Allow) LPort=20010
FirewallRules: [{CF954D54-7453-4328-901F-DCCFB9081A6B}] => (Allow) LPort=20010
FirewallRules: [{AFC39930-4D31-4A07-858C-F7BD8A57CA67}] => (Allow) LPort=3478
FirewallRules: [{EF2D3EE4-DC0A-4844-A248-149A0442C431}] => (Allow) LPort=3478
FirewallRules: [{0630501E-B7E5-4646-8A2F-ED9680725C14}] => (Allow) LPort=7850
FirewallRules: [{2CDC802C-AE90-438D-9492-41B1F8A94C2F}] => (Allow) LPort=7850
FirewallRules: [{868B8445-EC58-40D1-9295-1F047936689C}] => (Allow) LPort=27022
FirewallRules: [{08BCC1F4-ADD9-4FE7-AF56-02C1AF24D48F}] => (Allow) LPort=27022
FirewallRules: [{D32417AC-0AF9-43B0-A6EF-6857458638E3}] => (Allow) LPort=6881
FirewallRules: [{74E2379C-E61E-40A0-B6D1-26DAD540E3D3}] => (Allow) LPort=6881
FirewallRules: [{83398779-3BAE-4821-871C-FE5700A52121}] => (Allow) LPort=33333
FirewallRules: [{9551E250-69C8-416B-ACDA-A02429753AB8}] => (Allow) LPort=33333
FirewallRules: [{0A98E4F8-FE27-47CF-BAAD-CB7EAC26B49A}] => (Allow) LPort=20443
FirewallRules: [{51528B48-7A46-42F4-8A06-51832A6BC209}] => (Allow) LPort=20443
FirewallRules: [{BBA2CD7D-2B22-40EC-8D96-C20EE9970622}] => (Allow) LPort=8090
FirewallRules: [{9B8413CE-D35B-453B-B09E-69A2E7298411}] => (Allow) LPort=8090
FirewallRules: [{F670329A-7674-4AE2-8097-7D0F7209B6C6}] => (Allow) LPort=22999
FirewallRules: [{91A74B47-DED0-42E0-A720-E8A89A8C170B}] => (Allow) LPort=22999
FirewallRules: [{FC7A467B-F0B8-4C8E-BBA3-300624EDBA34}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{26575C78-86E7-46BF-98F8-7F831B0259AC}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{8C3B22C1-E2D8-427B-88C8-82A22C5A9713}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{F0DA6A14-8E18-440C-8668-430546FFEB83}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{001189F5-DC2D-4922-AB88-7BB901FF92DD}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{23EF5902-8227-4848-B3EB-694D94435149}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{3168C82F-B98F-4C4E-985B-72E3DCC02026}] => (Allow) E:\Steam\bin\steamwebhelper.exe
FirewallRules: [{5D66BAFC-761A-4DFC-BE05-1AE1D6EA7E81}] => (Allow) E:\Steam\bin\steamwebhelper.exe
FirewallRules: [{2BD03CCF-BDCE-4C30-96E5-F889532C6968}] => (Allow) E:\Steam\SteamApps\common\Half-Life\hl.exe
FirewallRules: [{B39203FA-DD78-4E5F-9BFF-EB108B55B06D}] => (Allow) E:\Steam\SteamApps\common\Half-Life\hl.exe
FirewallRules: [{AC4FF402-DA24-4F82-A82C-5957C3C8692F}] => (Allow) E:\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{D42BD9FF-20F1-40E7-B7E7-FAEF7703F85D}] => (Allow) E:\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{32D5B85F-520C-4B5D-AD33-053D66E4CA99}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{AD7B5C62-D163-4AFC-A851-965E9AF9EEA2}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe
FirewallRules: [{112DBE3A-9091-4F94-A9E1-B6F6439A1687}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [{B086BE1F-483B-43F7-9851-341B23DB5637}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{DA40CA63-0087-468F-860A-75F5465FA566}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{CF4EF57A-1294-44E3-921C-71E074DED9C5}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [{7A9B9E53-3371-4483-B276-AE99261F76AD}] => (Allow) C:\Program Files\BitComet\BitComet.exe
FirewallRules: [{DA1F22AF-06A9-4BAB-A4FB-B7CFEBF6A524}] => (Allow) C:\Program Files\BitComet\BitComet.exe

==================== Faulty Device Manager Devices =============

Name: ccnfd_1_10_0_2
Description: ccnfd_1_10_0_2
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: ccnfd_1_10_0_2
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: wafd_1_10_0_18
Description: wafd_1_10_0_18
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: wafd_1_10_0_18
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (06/18/2015 02:33:02 PM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000.

Error: (06/18/2015 02:33:02 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu:
0x800401F9

Error: (06/18/2015 01:50:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nazwa aplikacji powodującej błąd: UNetbootin(12993)-dp.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x2a425e19
Nazwa modułu powodującego błąd: jscript9.dll, wersja: 10.0.9200.16686, sygnatura czasowa: 0x5205977a
Kod wyjątku: 0xc0000005
Przesunięcie błędu: 0x000f35e2
Identyfikator procesu powodującego błąd: 0x13e0
Godzina uruchomienia aplikacji powodującej błąd: 0xUNetbootin(12993)-dp.exe0
Ścieżka aplikacji powodującej błąd: UNetbootin(12993)-dp.exe1
Ścieżka modułu powodującego błąd: UNetbootin(12993)-dp.exe2
Identyfikator raportu: UNetbootin(12993)-dp.exe3

Error: (06/18/2015 00:55:49 PM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000.

Error: (06/18/2015 00:55:49 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu:
0x800401F9

Error: (06/18/2015 00:25:17 PM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000.

Error: (06/18/2015 00:25:17 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu:
0x800401F9

Error: (06/18/2015 11:22:44 AM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000.

Error: (06/18/2015 11:22:44 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu:
0x800401F9

Error: (06/18/2015 10:56:50 AM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000.


System errors:
=============
Error: (06/18/2015 02:35:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu:
%%2

Error: (06/18/2015 02:33:29 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego:
Avgldx86
ccnfd_1_10_0_2
cdrom
wafd_1_10_0_18

Error: (06/18/2015 02:32:53 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 14:19:29 na ‎2015-‎06-‎18 było nieoczekiwane.

Error: (06/18/2015 00:58:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu:
%%2

Error: (06/18/2015 00:56:10 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego:
Avgldx86
ccnfd_1_10_0_2
cdrom
wafd_1_10_0_18

Error: (06/18/2015 00:27:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu:
%%2

Error: (06/18/2015 00:25:42 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego:
Avgldx86
ccnfd_1_10_0_2
cdrom
wafd_1_10_0_18

Error: (06/18/2015 11:25:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Nie można uruchomić usługi Usługa Google Update (gupdate) z powodu następującego błędu:
%%2

Error: (06/18/2015 11:23:11 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Nie można załadować następujących sterowników startu rozruchowego lub systemowego:
Avgldx86
ccnfd_1_10_0_2
cdrom
wafd_1_10_0_18

Error: (06/18/2015 11:22:38 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Poprzednie zamknięcie systemu przy 11:20:32 na ‎2015-‎06-‎18 było nieoczekiwane.


Microsoft Office:
=========================
Error: (06/18/2015 02:33:02 PM) (Source: Winlogon) (EventID: 4103) (User: )
Description: 0x000000000x00000001

Error: (06/18/2015 02:33:02 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: 0x800401F9

Error: (06/18/2015 01:50:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: UNetbootin(12993)-dp.exe0.0.0.02a425e19jscript9.dll10.0.9200.166865205977ac0000005000f35e213e001d0a9bce1d978c0C:\Users\ubu dubu\Downloads\UNetbootin(12993)-dp.exeC:\Windows\System32\jscript9.dll2826f000-15b0-11e5-800f-001fd043a1f2

Error: (06/18/2015 00:55:49 PM) (Source: Winlogon) (EventID: 4103) (User: )
Description: 0x000000000x00000001

Error: (06/18/2015 00:55:49 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: 0x800401F9

Error: (06/18/2015 00:25:17 PM) (Source: Winlogon) (EventID: 4103) (User: )
Description: 0x000000000x00000001

Error: (06/18/2015 00:25:17 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: 0x800401F9

Error: (06/18/2015 11:22:44 AM) (Source: Winlogon) (EventID: 4103) (User: )
Description: 0x000000000x00000001

Error: (06/18/2015 11:22:44 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: 0x800401F9

Error: (06/18/2015 10:56:50 AM) (Source: Winlogon) (EventID: 4103) (User: )
Description: 0x000000000x00000001


==================== Memory info ===========================

Processor: AMD Athlon 64 X2 Dual Core Processor 5200+
Percentage of memory in use: 39%
Total physical RAM: 2559.55 MB
Available physical RAM: 1550.82 MB
Total Pagefile: 5117.4 MB
Available Pagefile: 3775.26 MB
Total Virtual: 2115.88 MB
Available Virtual: 1944.82 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:78.03 GB) (Free:49.67 GB) NTFS
Drive d: (Muzyka) (Fixed) (Total:19.53 GB) (Free:14.99 GB) NTFS
Drive e: (Gry i programy) (Fixed) (Total:367.97 GB) (Free:308.21 GB) NTFS
Drive g: (Windows_7_Ultimate_32_Bit) (Removable) (Total:7.23 GB) (Free:4.88 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.6 GB) (Disk ID: 00000001)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=78 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=387.5 GB) - (Type=OF Extended)

========================================================
Disk: 1 (Size: 7.2 GB) (Disk ID: 00462D77)
Partition 1: (Active) - (Size=7.2 GB) - (Type=07 NTFS)

==================== End of log ============================



FRST

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-06-2015
Ran by ubu dubu (administrator) on KACPER-KOMPUTER on 18-06-2015 14:40:11
Running from C:\Users\ubu dubu\Downloads
Loaded Profiles: ubu dubu (Available Profiles: ubu dubu)
Platform: Microsoft Windows 7 Ultimate  Service Pack 1 (X86) OS Language: Polski (Polska)
Internet Explorer Version 10 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
() C:\Windows\System32\PnkBstrA.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-06-12] (Avast Software s.r.o.)
HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKU\S-1-5-21-2269880116-4238015692-3965371448-1011\...\Run: [skype] => C:\Program Files\Skype\Phone\Skype.exe [28785280 2015-06-02] (Skype Technologies S.A.)
HKU\S-1-5-21-2269880116-4238015692-3965371448-1011\...\MountPoints2: {08ba5924-14d1-11e4-b227-001fd043a1f2} - F:\setup\rsrc\Autorun.exe
HKU\S-1-5-21-2269880116-4238015692-3965371448-1011\...\MountPoints2: {29ab9f29-db00-11e2-93c3-00241d10a970} - G:\Startme.exe
HKU\S-1-5-21-2269880116-4238015692-3965371448-1011\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKU\S-1-5-18\...\RunOnce: [sPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2013-06-04] (Microsoft Corporation)
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
AppInit_DLLs: c:\progra~1\suptab\search~1.dll => c:\progra~1\suptab\search~1.dll File not found
AppInit_DLLs:  c:\progra~1\so_boo~1\assist~1.dll => c:\progra~1\so_boo~1\assist~1.dll File not found
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-06-12] (Avast Software s.r.o.)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hppp&ts=1434045676&from=xtab&uid=6546D4F2CEB24f32A1DA17477DDB4903
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1396442789&from=cor&uid=395049983_397234_14831EA1&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hppp&ts=1434045676&from=xtab&uid=6546D4F2CEB24f32A1DA17477DDB4903
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1396442789&from=cor&uid=395049983_397234_14831EA1&q={searchTerms}
HKU\S-1-5-21-2269880116-4238015692-3965371448-1011\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/web/?type=ds&ts=1434045619&z=049001a06aa7fc7f9ad1760g9z6c9zfe6z3wcq2ode&from=ient06110&uid=395049983_397234_14831EA1&q={searchTerms}
HKU\S-1-5-21-2269880116-4238015692-3965371448-1011\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/?type=hppp&ts=1434045676&from=xtab&uid=6546D4F2CEB24f32A1DA17477DDB4903
HKU\S-1-5-21-2269880116-4238015692-3965371448-1011\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/?type=hppp&ts=1434045676&from=xtab&uid=6546D4F2CEB24f32A1DA17477DDB4903
HKU\S-1-5-21-2269880116-4238015692-3965371448-1011\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie
HKU\S-1-5-21-2269880116-4238015692-3965371448-1011\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/web/?type=ds&ts=1434045619&z=049001a06aa7fc7f9ad1760g9z6c9zfe6z3wcq2ode&from=ient06110&uid=395049983_397234_14831EA1&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.sweet-page.com/web/?type=ds&ts=1396442789&from=cor&uid=395049983_397234_14831EA1&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2269880116-4238015692-3965371448-1011 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.istartsurf.com/web/?type=dspp&ts=1434045676&from=xtab&uid=6546D4F2CEB24f32A1DA17477DDB4903&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2269880116-4238015692-3965371448-1011 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2269880116-4238015692-3965371448-1011 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2269880116-4238015692-3965371448-1011 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://www.istartsurf.com/web/?type=dspp&ts=1434045676&from=xtab&uid=6546D4F2CEB24f32A1DA17477DDB4903&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2269880116-4238015692-3965371448-1011 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2269880116-4238015692-3965371448-1011 -> {CCCA5D22-6CFD-41F2-B8B1-E821FC2662E6} URL = http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2269880116-4238015692-3965371448-1011 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}
BHO: BitComet Helper -> {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} -> C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll [2013-11-29] (BitComet)
BHO: AlolCheaapPraicce -> {69F3BD00-3751-4C8D-8A4A-BD99B2C8E4C6} -> C:\Program Files\AlolCheaapPraicce\blq6b5SGdJP0pW.dll [2015-06-16] ()
BHO: AllCheaipPrice -> {841F5361-3F67-4950-B531-8AB662AB7467} -> C:\Program Files\AllCheaipPrice\3UZzxdVoGxjxZz.dll [2015-06-16] ()
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-06-12] (Avast Software s.r.o.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of  Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.dosearches.com/?utm_source=b&utm_medium=cor&utm_campaign=rg&utm_content=sc&from=cor&uid=395049983_397234_14831EA1&ts=1383929781

FireFox:
========
FF ProfilePath: C:\Users\ubu dubu\AppData\Roaming\Mozilla\Firefox\Profiles\gqmmib32.default
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files\Battlelog Web Plugins\2.6.2\npbattlelog.dll No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2014-07-14] (Nexon)
FF Plugin: @pandonetworks.com/PandoWebPlugin -> C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File
FF Plugin: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll No File
FF Plugin: @tools.dpliveupdate.com/DealPlyLive Update;version=3 -> C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll No File
FF Plugin: @tools.dpliveupdate.com/DealPlyLive Update;version=9 -> C:\Program Files\DealPlyLive\Update\1.3.23.0\npGoogleUpdate3.dll No File
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-06-17] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-06-17] (Google Inc.)
FF Extension: BitComet Video Downloader - C:\Users\ubu dubu\AppData\Roaming\Mozilla\Firefox\Profiles\gqmmib32.default\Extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB} [2015-06-18]
FF HKLM\...\Firefox\Extensions: [{190bc294-c8e5-471c-9466-3eb945b09542}] - C:\Program Files\Mozilla Firefox\extensions\{190bc294-c8e5-471c-9466-3eb945b09542}
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Users\ubu dubu\AppData\Roaming\Mozilla\Firefox\Profiles\7ppvrm21.default\extensions\[email protected]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Users\ubu dubu\AppData\Roaming\Mozilla\Firefox\Profiles\7ppvrm21.default\extensions\[email protected]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-06-12]

Chrome:
=======
CHR Profile: C:\Users\ubu dubu\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Docs) - C:\Users\ubu dubu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-17]
CHR Extension: (No Name) - C:\Users\ubu dubu\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-14]
CHR Extension: (No Name) - C:\Users\ubu dubu\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-06-14]
CHR Extension: (No Name) - C:\Users\ubu dubu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-14]
CHR HKLM\...\Chrome\Extension: [aaaaojmikegpiepcfdkkjaplodkpfmlo] - C:\Users\Kacper\AppData\Local\APN\GoogleCRXs\apnorjtoolbar.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [dghncoeocefmhkhiphdgikkamjeglbfh] - C:\Program Files\mystarttb\chrome-newtab-search.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [dhigneefebkcagnpnpbibganpmfgebnk] - https://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-06-12]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-06-12]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 6bde9d27; c:\Program Files\SystemUp\SystemUp.dll [1658880 2015-06-16] () [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-06-12] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3207800 2015-06-12] (Avast Software)
S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe [1296728 2013-11-29] (www.BitComet.com)
R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2014-08-09] ()
S3 WatAdminSvc; C:\Windows\system32\Wat\WatAdminSvc.exe [1343400 2013-06-02] () [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S2 gupdate; "C:\Program Files\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files\Google\Update\GoogleUpdate.exe" /medsvc [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24144 2015-06-12] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [74976 2015-06-12] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81728 2015-06-12] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49904 2015-06-12] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [787760 2015-06-12] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427992 2015-06-12] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [106912 2015-06-12] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [209048 2015-06-12] ()
S3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW73.sys [77312 2013-09-24] (Advanced Micro Devices) [File not signed]
R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [121624 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [208152 2014-12-08] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [154904 2014-11-18] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [21272 2014-06-18] (AVG Technologies CZ, s.r.o.)
S1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [192792 2014-08-28] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [230680 2014-07-18] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [98584 2014-10-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27416 2014-06-18] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [200984 2014-10-10] (AVG Technologies CZ, s.r.o.)
S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2015-02-16] (LogMeIn, Inc.)
S3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [34432 2012-10-11] (ManyCam LLC)
S3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv.sys [22656 2013-01-31] (ManyCam LLC)
S3 PAC207; C:\Windows\System32\DRIVERS\PFC027.SYS [618112 2008-02-13] (PixArt Imaging Inc.)
R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [26624 2011-12-15] (The OpenVPN Project)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [220752 2015-06-12] (Avast Software)
S1 ccnfd_1_10_0_2; system32\drivers\ccnfd_1_10_0_2.sys [X]
S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X]
U5 GVTDrv; C:\Windows\system32\Drivers\GVTDrv.sys [24944 2015-02-21] ()
S4 nvlddmkm; system32\DRIVERS\nvlddmkm.sys [X]
S4 nvvad_WaveExtensible; system32\drivers\nvvad32v.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 vtany; \??\C:\Windows\vtany.sys [X]
S1 wafd_1_10_0_18; system32\drivers\wafd_1_10_0_18.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files\Razer\Razer Game Booster\Driver\WinRing0.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-18 14:40 - 2015-06-18 14:41 - 00017086 _____ C:\Users\ubu dubu\Downloads\FRST.txt
2015-06-18 14:39 - 2015-06-18 14:40 - 00000000 ____D C:\FRST
2015-06-18 14:39 - 2015-06-18 14:39 - 01148416 _____ (Farbar) C:\Users\ubu dubu\Downloads\FRST.exe
2015-06-18 13:49 - 2015-06-18 13:49 - 00713312 _____ (Internet ) C:\Users\ubu dubu\Downloads\UNetbootin(12993)-dp.exe
2015-06-18 13:46 - 2015-06-18 13:46 - 01310502 _____ (pendrivelinux.com) C:\Users\ubu dubu\Downloads\YUMI-2.0.1.8.exe
2015-06-18 13:46 - 2015-06-18 13:46 - 00713312 _____ (Internet ) C:\Users\ubu dubu\Downloads\YUMI(36349)-dp.exe
2015-06-18 13:23 - 2015-06-18 13:23 - 00000000 ____D C:\Users\ubu dubu\Downloads\Novicorp%20WinToFlash%20Lite%20%5BThe%20Bootable%20USB%20Creator%5D%200.9.0025%20beta%20Portable
2015-06-18 13:17 - 2015-06-18 13:17 - 31456321 _____ C:\Users\ubu dubu\Downloads\Novicorp%20WinToFlash%20Lite%20%5BThe%20Bootable%20USB%20Creator%5D%200.9.0025%20beta%20Portable.zip
2015-06-18 13:16 - 2015-06-18 13:16 - 00713312 _____ (Internet ) C:\Users\ubu dubu\Downloads\WinToFlash(45524)-dp.exe
2015-06-18 12:07 - 2015-06-18 12:07 - 00827816 _____ (Akeo Consulting (http://akeo.ie)) C:\Users\ubu dubu\Downloads\rufus-2.2.exe
2015-06-18 12:06 - 2015-06-18 12:06 - 00713312 _____ (Internet ) C:\Users\ubu dubu\Downloads\Rufus(41921)-dp.exe
2015-06-18 10:11 - 2015-06-18 12:08 - 00000000 ____D C:\Users\ubu dubu\AppData\Roaming\BitComet
2015-06-18 10:11 - 2015-06-18 10:11 - 08636392 _____ C:\Users\ubu dubu\Downloads\BitComet_1.38_x86_setup.exe
2015-06-18 10:11 - 2015-06-18 10:11 - 00000929 _____ C:\Users\Public\Desktop\BitComet.lnk
2015-06-18 10:11 - 2015-06-18 10:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitComet
2015-06-18 10:11 - 2015-06-18 10:11 - 00000000 ____D C:\Program Files\BitComet
2015-06-17 21:44 - 2015-06-17 21:44 - 00000000 ____D C:\Users\ubu dubu\AppData\Roaming\LolClient
2015-06-17 14:37 - 2015-06-17 14:54 - 16469589 _____ C:\Users\ubu dubu\Desktop\Untitled.wmv
2015-06-17 14:34 - 2015-06-17 14:34 - 00013240 _____ C:\Users\ubu dubu\Desktop\Untitled.veg
2015-06-17 14:28 - 2015-06-17 14:28 - 00115192 _____ C:\Users\ubu dubu\AppData\Local\GDIPFONTCACHEV1.DAT
2015-06-17 14:04 - 2015-06-17 14:04 - 00000020 _____ C:\Users\ubu dubu\AppData\Roaming\appdataFr2.bin
2015-06-17 14:01 - 2015-06-18 14:33 - 00001032 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-06-17 14:01 - 2015-06-18 14:06 - 00001036 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-06-17 14:01 - 2015-06-17 14:01 - 00002095 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-06-17 14:01 - 2015-06-17 14:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-06-16 14:01 - 2015-06-16 14:01 - 00000000 ____D C:\Program Files\History Calendar
2015-06-16 14:01 - 2015-06-16 14:01 - 00000000 ____D C:\Program Files\AllCheaipPrice
2015-06-16 14:00 - 2015-06-16 14:00 - 00000000 ____D C:\Program Files\AlolCheaapPraicce
2015-06-16 14:00 - 2015-06-16 14:00 - 00000000 ____D C:\Program Files\AllCheapPriicue
2015-06-16 13:39 - 2015-06-16 13:39 - 00000000 ____D C:\Program Files\SystemUp
2015-06-16 13:35 - 2015-06-18 14:32 - 00000560 _____ C:\Windows\setupact.log
2015-06-16 13:35 - 2015-06-18 11:22 - 00001278 _____ C:\Windows\PFRO.log
2015-06-16 13:35 - 2015-06-16 13:36 - 00432344 _____ C:\Windows\system32\FNTCACHE.DAT
2015-06-16 13:35 - 2015-06-16 13:35 - 00000000 _____ C:\Windows\setuperr.log
2015-06-15 18:48 - 2015-06-15 18:49 - 00000000 ____D C:\Users\ubu dubu\AppData\Roaming\Mozilla
2015-06-15 18:48 - 2015-06-15 18:48 - 00001081 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-06-15 18:48 - 2015-06-15 18:48 - 00001069 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-06-15 18:48 - 2015-06-15 18:48 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-06-15 18:46 - 2015-06-15 18:46 - 00000000 ____D C:\Users\ubu dubu\AppData\Roaming\Adobe
2015-06-15 15:16 - 2015-06-15 15:16 - 00056926 _____ C:\Windows\system32\CCCInstall_201506151516185308.log
2015-06-15 15:02 - 2015-06-15 15:10 - 109291464 _____ (Advanced Micro Devices, Inc.) C:\Users\ubu dubu\Downloads\13-9-legacy_vista_win7_32_dd_ccc_whql.exe
2015-06-14 16:54 - 2015-06-15 18:48 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-06-14 16:46 - 2015-06-16 13:39 - 00000000 ____D C:\ProgramData\e51ce15200000482
2015-06-14 16:41 - 2015-06-14 16:41 - 00000201 _____ C:\Users\ubu dubu\Desktop\The Witcher Enhanced Edition.url
2015-06-14 16:05 - 2015-06-14 16:11 - 00000000 ___RD C:\Program Files\Skype
2015-06-14 16:05 - 2015-06-14 16:05 - 00002687 _____ C:\Users\Public\Desktop\Skype.lnk
2015-06-14 16:05 - 2015-06-14 16:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-06-14 16:05 - 2015-06-14 16:05 - 00000000 ____D C:\Program Files\Common Files\Skype
2015-06-14 15:47 - 2015-06-18 14:34 - 00000000 ____D C:\Users\ubu dubu\AppData\Roaming\Skype
2015-06-14 14:39 - 2015-06-14 14:40 - 00002562 _____ C:\Windows\diagwrn.xml
2015-06-14 14:39 - 2015-06-14 14:40 - 00001908 _____ C:\Windows\diagerr.xml
2015-06-14 14:23 - 2015-06-14 14:23 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2015-06-14 14:22 - 2015-06-14 16:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2015-06-13 11:13 - 2015-06-18 14:36 - 00085791 _____ C:\Windows\WindowsUpdate.log
2015-06-12 16:26 - 2015-06-14 16:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2015-06-12 13:03 - 2015-06-12 13:03 - 00000000 ____D C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-06-12 13:03 - 2015-06-12 13:03 - 00000000 ____D C:\Program Files\WinRAR
2015-06-12 12:30 - 2015-06-12 12:31 - 00000000 ____D C:\Windows\system32\vbox
2015-06-12 12:30 - 2015-06-12 12:30 - 00002039 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-06-12 12:30 - 2015-06-12 12:30 - 00000000 ____D C:\Users\ubu dubu\AppData\Roaming\AVAST Software
2015-06-12 12:30 - 2015-06-12 12:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-06-12 12:29 - 2015-06-12 12:29 - 00787760 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-06-12 12:29 - 2015-06-12 12:29 - 00427992 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-06-12 12:29 - 2015-06-12 12:29 - 00291312 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-06-12 12:29 - 2015-06-12 12:29 - 00209048 _____ C:\Windows\system32\Drivers\aswVmm.sys
2015-06-12 12:29 - 2015-06-12 12:29 - 00106912 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys
2015-06-12 12:29 - 2015-06-12 12:29 - 00081728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys
2015-06-12 12:29 - 2015-06-12 12:29 - 00074976 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-06-12 12:29 - 2015-06-12 12:29 - 00049904 _____ C:\Windows\system32\Drivers\aswRvrt.sys
2015-06-12 12:29 - 2015-06-12 12:29 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
2015-06-12 12:29 - 2015-06-12 12:29 - 00024144 _____ C:\Windows\system32\Drivers\aswHwid.sys
2015-06-12 12:26 - 2015-06-12 12:26 - 00000000 ____D C:\Program Files\AVAST Software
2015-06-12 12:23 - 2015-06-12 12:23 - 00000000 _____ C:\Users\ubu dubu\AppData\Local\Temp.dat
2015-06-12 12:19 - 2015-06-12 12:19 - 00000024 _____ C:\Users\ubu dubu\AppData\Roaming\appdataFr25.bin
2015-06-12 10:41 - 2015-06-11 21:41 - 00002305 _____ C:\Users\ubu dubu\AppData\Roaming\PStrip.bak
2015-06-11 21:40 - 2015-06-12 12:20 - 00006976 _____ C:\Users\ubu dubu\AppData\Roaming\PStrip.ini
2015-06-11 20:01 - 2015-06-11 20:01 - 00000000 ____D C:\ProgramData\IHProtectUpDate
2015-06-08 22:47 - 2015-06-08 22:47 - 00057059 _____ C:\Windows\system32\CCCInstall_201506082247352242.log
2015-06-08 19:00 - 2015-06-08 19:00 - 00000000 ____D C:\Users\ubu dubu\AppData\Local\ATI
2015-06-08 19:00 - 2015-06-08 19:00 - 00000000 ____D C:\Users\ubu dubu\AppData\Local\AMD
2015-06-08 18:59 - 2015-06-08 18:59 - 00062118 _____ C:\Windows\system32\CCCInstall_201506081859581614.log
2015-06-08 18:58 - 2015-06-08 22:46 - 00000000 ____D C:\ProgramData\AMD
2015-06-08 17:43 - 2015-06-08 17:43 - 00000000 _____ C:\Windows\ativpsrm.bin
2015-05-23 19:14 - 2015-05-23 19:14 - 01700352 _____ (Microsoft Corporation) C:\Windows\system32\gdiplus.dll
2015-05-23 19:14 - 2015-05-23 19:14 - 01060864 _____ (Microsoft Corporation) C:\Windows\system32\mfc71.dll
2015-05-23 19:14 - 2015-05-23 19:14 - 00000000 ____D C:\ProgramData\RDRM

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-18 14:39 - 2014-07-26 20:34 - 00000884 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-06-18 14:34 - 2014-07-26 20:34 - 00003438 _____ C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-11.job
2015-06-18 14:34 - 2014-07-26 20:34 - 00002190 _____ C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-4.job
2015-06-18 14:34 - 2014-07-26 20:34 - 00001492 _____ C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-1.job
2015-06-18 14:34 - 2014-07-26 20:34 - 00001404 _____ C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-5_user.job
2015-06-18 14:34 - 2014-07-26 20:34 - 00001388 _____ C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-5.job
2015-06-18 14:34 - 2014-07-26 20:34 - 00001316 _____ C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-2.job
2015-06-18 14:33 - 2014-07-26 20:33 - 00002412 _____ C:\Windows\Tasks\e45b0a1a-9ba8-49b2-9360-d03dce7d97e5-3.job
2015-06-18 14:33 - 2014-07-26 20:33 - 00000880 _____ C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-06-18 14:33 - 2013-08-10 12:55 - 00000890 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job
2015-06-18 14:33 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-06-18 14:20 - 2014-06-14 17:37 - 00000544 __RSH C:\ProgramData\ntuser.pol
2015-06-18 14:12 - 2013-11-08 19:12 - 00000292 _____ C:\Windows\Tasks\FoxTab.job
2015-06-18 14:00 - 2013-08-10 12:55 - 00000894 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job
2015-06-18 12:51 - 2009-07-14 06:34 - 00013904 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-06-18 12:51 - 2009-07-14 06:34 - 00013904 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-06-17 14:01 - 2014-12-24 19:11 - 00000000 ____D C:\Program Files\Google
2015-06-16 14:01 - 2015-01-24 19:15 - 00000000 ____D C:\ProgramData\17436124895213680639
2015-06-15 15:16 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2015-06-14 16:45 - 2013-06-01 12:33 - 00000000 ____D C:\Program Files\Notepad++
2015-06-14 16:44 - 2014-09-27 18:32 - 00000000 ____D C:\Users\ubu dubu\AppData\Local\Google
2015-06-14 16:43 - 2014-12-22 22:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Goat Simulator
2015-06-14 16:43 - 2014-12-12 15:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer
2015-06-14 16:43 - 2014-05-07 18:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2015-06-14 16:43 - 2013-07-23 18:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2015-06-14 16:33 - 2013-12-30 18:05 - 00000000 ____D C:\ProgramData\Origin
2015-06-14 16:31 - 2014-12-22 14:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-06-14 16:05 - 2013-05-31 18:15 - 00000000 ____D C:\ProgramData\Skype
2015-06-14 16:01 - 2014-08-16 16:40 - 00000000 ____D C:\Windows\pss
2015-06-14 14:26 - 2013-12-19 21:20 - 00000000 ____D C:\ProgramData\Oracle
2015-06-14 14:21 - 2014-01-30 13:02 - 00000000 ____D C:\Users\ubu dubu\AppData\Local\Adobe
2015-06-14 13:31 - 2013-05-31 18:15 - 01666088 _____ C:\Windows\system32\PerfStringBackup.INI
2015-06-14 13:31 - 2009-07-14 10:07 - 00738970 _____ C:\Windows\system32\perfh015.dat
2015-06-14 13:31 - 2009-07-14 10:07 - 00155080 _____ C:\Windows\system32\perfc015.dat
2015-06-12 14:45 - 2015-01-24 19:14 - 00000000 ____D C:\ProgramData\{cf09d201-03a8-9466-cf09-9d20103a4804}
2015-06-12 13:03 - 2013-05-31 18:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-06-12 12:25 - 2013-12-19 21:05 - 00000000 ____D C:\ProgramData\AVAST Software
2015-06-12 12:24 - 2014-06-14 17:37 - 00000000 ____D C:\ProgramData\f1f98f362e8e77ff
2015-06-12 12:23 - 2013-08-26 20:54 - 00000000 ____D C:\ProgramData\MFAData
2015-06-12 11:39 - 2015-01-12 19:39 - 00000085 _____ C:\Users\ubu dubu\AppData\Roaming\WB.CFG
2015-06-11 20:00 - 2014-04-02 14:47 - 00000000 ____D C:\ProgramData\IePluginService
2015-06-11 20:00 - 2013-12-31 09:44 - 00001705 _____ C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-06-09 13:49 - 2009-07-14 06:53 - 00032604 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-06-08 18:25 - 2013-08-26 17:33 - 00000000 ____D C:\ProgramData\NVIDIA
2015-06-08 18:25 - 2013-08-26 17:32 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-06-08 18:25 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Help
2015-06-07 20:30 - 2014-04-24 19:06 - 00000000 ____D C:\Users\ubu dubu\AppData\Local\screenSHU
2015-06-06 16:20 - 2014-08-11 21:03 - 00000000 ____D C:\Program Files\Common Files\Steam
2015-06-05 09:49 - 2015-05-17 11:28 - 00000000 ____D C:\Program Files\ExstraSavinngs
2015-06-05 09:48 - 2015-05-17 15:29 - 00000000 ____D C:\ProgramData\STOPzilla!

==================== Files in the root of some directories =======

2015-06-17 14:04 - 2015-06-17 14:04 - 0000020 _____ () C:\Users\ubu dubu\AppData\Roaming\appdataFr2.bin
2015-06-12 12:19 - 2015-06-12 12:19 - 0000024 _____ () C:\Users\ubu dubu\AppData\Roaming\appdataFr25.bin
2014-07-26 20:35 - 2014-07-28 21:51 - 0000414 _____ () C:\Users\ubu dubu\AppData\Roaming\LiveSupport.exe_log.txt
2014-07-24 19:44 - 2014-07-26 20:40 - 0022328 _____ () C:\Users\ubu dubu\AppData\Roaming\PnkBstrK.sys
2015-06-12 10:41 - 2015-06-11 21:41 - 0002305 _____ () C:\Users\ubu dubu\AppData\Roaming\PStrip.bak
2015-06-11 21:40 - 2015-06-12 12:20 - 0006976 _____ () C:\Users\ubu dubu\AppData\Roaming\PStrip.ini
2014-07-26 20:35 - 2014-07-28 22:06 - 0000086 _____ () C:\Users\ubu dubu\AppData\Roaming\regsvr32.exe_log.txt
2015-01-12 19:39 - 2015-06-12 11:39 - 0000085 _____ () C:\Users\ubu dubu\AppData\Roaming\WB.CFG
2015-05-18 18:49 - 2015-05-18 18:49 - 0004571 _____ () C:\Users\ubu dubu\AppData\Local\recently-used.xbel
2014-07-20 20:46 - 2015-02-21 23:17 - 0007597 _____ () C:\Users\ubu dubu\AppData\Local\Resmon.ResmonCfg
2015-06-05 09:51 - 2015-06-05 09:52 - 0004700 _____ () C:\Users\ubu dubu\AppData\Local\Temp-log.txt
2015-06-12 12:23 - 2015-06-12 12:23 - 0000000 _____ () C:\Users\ubu dubu\AppData\Local\Temp.dat

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll
[2013-06-03 14:22] - [2010-11-20 14:21] - 0811520 ____A (Microsoft Corporation) 8626F0C30D4E3564FFDD25C90F4426F1

C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-26 14:10

==================== End of log ============================



Shortcut


Users shortcut scan result (x86) Version: 13-06-2015
Ran by ubu dubu at 2015-06-18 14:43:27
Running from C:\Users\ubu dubu\Downloads
Boot Mode: Normal
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)



Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk -> C:\Program Files\GIMP 2\bin\gimp-2.8.exe (Spencer Kimball, Peter Mattis and the GIMP Development Team)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk -> C:\Program Files\DVD Maker\DVDMaker.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\Program Files\WinRAR\CoNowego.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam.lnk -> E:\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Vegas Pro 10.0\Vegas Pro 10.0 Readme.lnk -> E:\sonyvegas\Readme\Vegas_readme.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Vegas Pro 10.0\Vegas Pro 10.0.lnk -> E:\sonyvegas\vegas100.exe (Sony Creative Software Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Vegas Pro 10.0\Video Capture 6.0 Readme.lnk -> E:\sonyvegas\Readme\Videocapture_readme.htm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk -> C:\Windows\System32\recdisc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk -> C:\Windows\System32\msra.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps\Fraps.lnk -> E:\Fraps\fraps.exe (Beepa P/L)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps\Uninstall.lnk -> E:\Fraps\uninstall.exe (Beepa Pty Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\Uninstall CCleaner.lnk -> C:\Program Files\CCleaner\uninst.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitComet\BitComet.lnk -> C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitComet\HomePage.lnk -> C:\Program Files\BitComet\BitComet.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitComet\Uninstall.lnk -> C:\Program Files\BitComet\uninst.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software\Avast Free Antivirus.lnk -> C:\Program Files\AVAST Software\Avast\avastui.exe (Avast Software s.r.o.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Print Management.lnk -> C:\Windows\System32\printmanagement.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk -> C:\Windows\System32\displayswitch.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\NetworkProjection.lnk -> C:\Windows\System32\NetProj.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk -> C:\Windows\System32\mobsync.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk -> C:\Windows\System32\rstrui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk -> C:\Windows\System32\migwiz\PostMig.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\FIFA\Links\Desktop.lnk -> C:\Users\ubu dubu\Desktop ()
Shortcut: C:\Users\FIFA\Links\Downloads.lnk -> C:\Users\ubu dubu\Downloads ()
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\FIFA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Public\Desktop\Avast Free Antivirus.lnk -> C:\Program Files\AVAST Software\Avast\avastui.exe (Avast Software s.r.o.)
Shortcut: C:\Users\Public\Desktop\BitComet.lnk -> C:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
Shortcut: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Public\Desktop\Skype.lnk -> C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe ()
Shortcut: C:\Users\Public\Desktop\Steam.lnk -> E:\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\Users\ubu dubu\Links\Desktop.lnk -> C:\Users\ubu dubu\Desktop ()
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Co nowego w ostatniej wersji.lnk -> C:\Program Files\WinRAR\CoNowego.txt ()
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Podręcznik RARa dla konsoli.lnk -> C:\Program Files\WinRAR\Rar.txt ()
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Pomoc WinRARa.lnk -> C:\Program Files\WinRAR\WinRAR.chm ()
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files\WinRAR\WinRAR.exe (Alexander Roshal)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam\Steam.lnk -> E:\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Fraps.lnk -> E:\Fraps\fraps.exe (Beepa P/L)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\League of Legends.lnk -> E:\League of Legends\lol.launcher.exe ()
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Steam.lnk -> E:\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)


ShortcutWithArgument: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1434045619&z=049001a06aa7fc7f9ad1760g9z6c9zfe6z3wcq2ode&from=ient06110&uid=395049983_397234_14831EA1
ShortcutWithArgument: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1434045619&z=049001a06aa7fc7f9ad1760g9z6c9zfe6z3wcq2ode&from=ient06110&uid=395049983_397234_14831EA1
ShortcutWithArgument: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.delta-homes.com/?type=sc&ts=1434045619&z=049001a06aa7fc7f9ad1760g9z6c9zfe6z3wcq2ode&from=ient06110&uid=395049983_397234_14831EA1


ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) -> /showgadgets
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.BackupAndRestore
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Security Configuration Management.lnk -> C:\Windows\System32\secpol.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) -> -NoExit -ImportSystemModules
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) -> /open
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\FIFA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
ShortcutWithArgument: C:\Users\FIFA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\FIFA\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\FIFA\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
ShortcutWithArgument: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
ShortcutWithArgument: C:\Users\ubu dubu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\70f62c6a7f1739bd\pinned.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %systemRoot%\system32\shell32.dll,Options_RunDLL 1


InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam Support Center.url -> hxxp://support.steampowered.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy\Speccy Homepage.url -> hxxp://www.piriform.com/speccy
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon\넥슨.url -> hxxp://www.nexon.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2\Strona Euro Truck Simulator 2.url -> hxxp://www.eurotrucksimulator2.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2\Strona SCS Software.url -> hxxp://www.scssoft.com
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> hxxp://www.piriform.com/ccleaner
InternetURL: C:\Users\FIFA\Favorites\Links for Polska\Bezpieczeństwo w trybie online.url -> hxxp://go.microsoft.com/fwlink/?LinkId=142211
InternetURL: C:\Users\FIFA\Favorites\Links for Polska\Bezpieczny Internet.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129626
InternetURL: C:\Users\FIFA\Favorites\Links for Polska\Kultura.pl.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129625
InternetURL: C:\Users\FIFA\Favorites\Links for Polska\Pogodynka.pl — oficjalny serwis pogodowy IMGW.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129624
InternetURL: C:\Users\FIFA\Favorites\Links for Polska\Polska.pl.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129622
InternetURL: C:\Users\FIFA\Favorites\Links\Galeria obiektów Web Slice.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\ubu dubu\Favorites\Links for Polska\Bezpieczeństwo w trybie online.url -> hxxp://go.microsoft.com/fwlink/?LinkId=142211
InternetURL: C:\Users\ubu dubu\Favorites\Links for Polska\Bezpieczny Internet.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129626
InternetURL: C:\Users\ubu dubu\Favorites\Links for Polska\Kultura.pl.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129625
InternetURL: C:\Users\ubu dubu\Favorites\Links for Polska\Pogodynka.pl — oficjalny serwis pogodowy IMGW.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129624
InternetURL: C:\Users\ubu dubu\Favorites\Links for Polska\Polska.pl.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129622
InternetURL: C:\Users\ubu dubu\Favorites\Links\Galeria obiektów Web Slice.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
InternetURL: C:\Users\ubu dubu\Favorites\Links\Sugerowane witryny.url -> https://ieonline.microsoft.com/#ieslice
InternetURL: C:\Users\ubu dubu\Downloads\Novicorp%20WinToFlash%20Lite%20%5BThe%20Bootable%20USB%20Creator%5D%200.9.0025%20beta%20Portable\WinToFlash [The Bootable USB Creator] Website.url -> hxxp://go.novicorp.com/forwardlink/?linkid=10
InternetURL: C:\Users\ubu dubu\Downloads\Novicorp%20WinToFlash%20Lite%20%5BThe%20Bootable%20USB%20Creator%5D%200.9.0025%20beta%20Portable\ValueAdd\Novicorp\WinToFlash [The Bootable USB Creator] Website.url -> hxxp://go.novicorp.com/forwardlink/?linkid=10
InternetURL: C:\Users\ubu dubu\Desktop\Counter-Strike Global Offensive.url -> steam://rungameid/730
InternetURL: C:\Users\ubu dubu\Desktop\The Witcher Enhanced Edition.url -> steam://rungameid/20900

==================== End of log =============================

 

Zarchiwizowany

Ten temat przebywa obecnie w archiwum. Dodawanie nowych odpowiedzi zostało zablokowane.

×
×
  • Dodaj nową pozycję...