Skocz do zawartości


Zdjęcie

x na ekranie czerwony


  • Zaloguj się, aby dodać odpowiedź
7 odpowiedzi w tym temacie

#1 arturek32

arturek32

    Obserwator

  • 6 postów

Napisano 14 04 2015 - 01:27

jak usunąć   x na ekranie     czy da  się     czy  format  jedynie 

 

https://lh5.googleusercontent.com/-MuBnVNnIL8I/VSxQY-H_06I/AAAAAAAABaA/7AsukeH0vXs/w162-h198-no/Przechwytywanie.JPG

 

 

a po 2  prześladują mnie  chińskie znaki na mozilli  u góry        ,,,,,,,,,,,,,, 



Użytkownik arturek32 edytował ten post 14 04 2015 - 01:30

  • 0

#2 Mateusz321

Mateusz321

    Początkujący

  • 30 postów

Napisano 14 04 2015 - 09:51

Instalowałeś coś? Sprawdź w zainstalowanych programach czy nie ma czegoś, możesz skorzystać z programu Revo Uninstaller.

Sprawdź komputer programem antywirusowym i malwarebytes anti-malware.

Wrzuć logi z programu FRST:

/Zak%C5%82adanie-tematu-og%C3%B3lne-raporty-systemowe-t55253/



  • 0

#3 arturek32

arturek32

    Obserwator

  • 6 postów

Napisano 14 04 2015 - 16:48

Instalowałeś coś? Sprawdź w zainstalowanych programach czy nie ma czegoś, możesz skorzystać z programu Revo Uninstaller.

Sprawdź komputer programem antywirusowym i malwarebytes anti-malware.

Wrzuć logi z programu FRST:

/Zak%C5%82adanie-tematu-og%C3%B3lne-raporty-systemowe-t55253/

ostatnio grę    ściągałem z  netu      może    to     TmNationsForever ale

i instalowałem jakieś   programy  anty wirusowe  spy hunter ale usunąłem     


Użytkownik arturek32 edytował ten post 14 04 2015 - 16:50

  • 0

#4 Mateusz321

Mateusz321

    Początkujący

  • 30 postów

Napisano 14 04 2015 - 17:16

Wklej logi FRST


  • 0

#5 arturek32

arturek32

    Obserwator

  • 6 postów

Napisano 14 04 2015 - 17:32

Instalowałeś coś? Sprawdź w zainstalowanych programach czy nie ma czegoś, możesz skorzystać z programu Revo Uninstaller.

Sprawdź komputer programem antywirusowym i malwarebytes anti-malware.

Wrzuć logi z programu FRST:

/Zak%C5%82adanie-tematu-og%C3%B3lne-raporty-systemowe-t55253/

 zrobiłem  skan    programem ep0fq9md

 wyszło mi coś takiego

 

 

https://lh4.googleusercontent.com/--QRFPbSg1oA/VS0yqQBdudI/AAAAAAAABa8/XCFkHJMk9p0/w496-h146-no/rapport.JPG


  • 0

#6 arturek32

arturek32

    Obserwator

  • 6 postów

Napisano 14 04 2015 - 17:35

ostatnio grę    ściągałem z  netu      może    to     TmNationsForever ale

i instalowałem jakieś   programy  anty wirusowe  spy hunter ale usunąłem     

zrobiłem  skan  tym programem ep0fq9md  wyszło  coś takiego ?????

 

https://lh4.googleusercontent.com/--QRFPbSg1oA/VS0yqQBdudI/AAAAAAAABa8/XCFkHJMk9p0/w496-h146-no/rapport.JPG


  • 0

#7 arturek32

arturek32

    Obserwator

  • 6 postów

Napisano 14 04 2015 - 17:38

Wklej logi FRST

 1  raport

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-04-2015
Ran by Artur at 2015-04-14 16:58:23
Running from C:\Users\Artur\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)


==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

 clear.fi SDK - MVP 2 (x32 Version: 2.0.1505 - CyberLink Corp.) Hidden
 clear.fi SDK- Movie 2 (x32 Version: 2.0.1502 - CyberLink Corp.) Hidden
Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.100 - NTI Corporation)
Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}) (Version: 1.5.2624.00 - CyberLink Corp.)
Acer Crystal Eye Webcam (x32 Version: 1.5.2624.00 - CyberLink Corp.) Hidden
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3010 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3508 - Acer Incorporated)
Acer Games (HKLM-x32\...\WildTangent acer Master Uninstall) (Version: 1.0.2.5 - WildTangent)
Acer Instant Update Service (HKLM\...\{4E8D1AAE-509F-46DE-AAB4-CE9BCABA2D35}) (Version: 1.00.3001 - Acer Incorporated)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.04.3506 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 20.11.1107.1418 - Acer Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.6.0.19120 - Adobe Systems Incorporated)
Adobe Flash Player 11 ActiveX 64-bit (HKLM\...\Adobe Flash Player ActiveX) (Version: 11.2.202.222 - Adobe Systems Incorporated)
Adobe Reader X (10.1.0) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.0 - Adobe Systems Incorporated)
Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden
AMD Catalyst Install Manager (HKLM\...\{CBD4E655-EFE1-D727-4E9D-6367F8E8FC7C}) (Version: 3.0.864.0 - Advanced Micro Devices, Inc.)
Atheros Bluetooth Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.4.0.122 - Atheros)
Backup Manager V3 (x32 Version: 3.0.0.100 - NTI Corporation) Hidden
Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.00.3004 - Acer Incorporated)
clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.00.3004 - Acer Incorporated)
COMODO Antivirus (HKLM\...\{73830292-868E-4C82-9AF5-CCFE2047B6A3}) (Version: 8.2.0.4508 - COMODO Security Solutions Inc.)
CyberLink MediaEspresso (HKLM-x32\...\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}) (Version: 6.5.1720_38230 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.7000.7 - Dolby Laboratories Inc)
EA Download Manager (HKLM-x32\...\EADM) (Version: 5.0.0.288 - Electronic Arts, Inc.)
eBay Worldwide (HKLM-x32\...\{D3E5A972-9A15-427D-AE78-8181A5FD943C}) (Version: 2.2.0409 - OEM)
Evernote v. 4.5.2 (HKLM-x32\...\{F77EF646-19EB-11E1-9A9E-984BE15F174E}) (Version: 4.5.2.5866 - Evernote Corp.)
FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden
Final Drive: Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden
Fooz Kids (HKLM-x32\...\FoozKids) (Version: 3.1.2 - FUHU, Inc.)
Fooz Kids (x32 Version: 3.1.2 - FUHU, Inc.) Hidden
Fooz Kids Platform (HKLM-x32\...\{8D68CE08-9A14-4B7B-9857-3C646A2F34C7}) (Version: 2.1 - FUHU, Inc.)
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotografica del Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
GTA2 (HKLM-x32\...\{2987EE84-C4EE-4FF5-8160-32DE00D6ABC6}) (Version: 1.00.001 - )
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated)
Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden
Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217055FF}) (Version: 7.0.650 - Oracle)
Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Jewel Quest Mysteries: The Seventh Gate Collector's Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.15 - Acer Inc.)
LG United Mobile Drivers (HKLM-x32\...\{5DB849D6-9392-4FB7-9ABB-87ED433152E5}) (Version: 3.8.1 - LG Electronics)
McAfee Internet Security Suite (HKLM-x32\...\MSC) (Version: 12.8.934 - McAfee, Inc.)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - Polski (HKLM-x32\...\{90140011-0066-0415-0000-0000000FF1CE}) (Version: 14.0.5139.5005 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Model Railroad 3D 1.0 PL (HKLM-x32\...\{56422BB7-5768-4C27-B01A-5F7DC0130331}_is1) (Version:  - PLAY Sp. z o.o.)
Moduł Szybka instalacja pakietu Microsoft Office 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Moduł Szybka instalacja pakietu Microsoft Office 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Mozilla Firefox 37.0.1 (x86 pl) (HKLM-x32\...\Mozilla Firefox 37.0.1 (x86 pl)) (Version: 37.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 36.0.4 - Mozilla)
MyWinLocker (Version: 4.0.14.27 - Egis Technology Inc.) Hidden
MyWinLocker 4 (x32 Version: 4.0.14.27 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.19 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 4.0.14.19 - Egis Technology Inc.) Hidden
newsXpresso (HKLM-x32\...\InstallShield_{613C0AC5-3A67-4B94-8B13-9176AD83F5BF}) (Version: 1.0.0.40 - esobi Inc.)
newsXpresso (x32 Version: 1.0.0.40 - esobi Inc.) Hidden
Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation)
NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.9006 - NTI Corporation)
NTI Media Maker 9 (x32 Version: 9.0.2.9006 - NTI Corporation) Hidden
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
Penguins! (x32 Version: 2.2.0.98 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
PLAY ONLINE (HKLM-x32\...\PLAY ONLINE) (Version: 23.015.02.00.264 - Huawei Technologies Co.,Ltd)
Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Qualcomm Atheros WiFi Driver Installation  (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 3.1 - Qualcomm Atheros)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Rayman Legends (HKLM-x32\...\{72B119B2-493F-4040-A4A7-69830B0BDDAE}_is1) (Version: 1.2 - Ubisoft Entertainment, Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6559 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.28104 - Realtek Semiconductor Corp.)
Shredder (Version: 2.0.8.9 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.9 - Egis Technology Inc.) Hidden
Slingo Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Strong Signal (HKLM-x32\...\Strong Signal) (Version: 2.0.5559.15476 - Strong Signal) <==== ATTENTION!
Tales of Lagoona (x32 Version: 2.2.0.98 - WildTangent) Hidden
TmNationsForever (HKLM-x32\...\TmNationsForever_is1) (Version:  - Nadeo)
Torchlight (x32 Version: 2.2.0.98 - WildTangent) Hidden
Unity Web Player (HKU\S-1-5-21-565013978-3981129426-2025703209-1000\...\UnityWebPlayer) (Version: 4.5.1f3 - Unity Technologies ApS)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Uplay (HKLM-x32\...\Uplay) (Version: 3.0 - Ubisoft)
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.97 - WildTangent) Hidden
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (HKLM-x32\...\{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01) (Version: 9.0.30729.01 - Microsoft Corporation)
Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3507 - Acer Incorporated)
WildTangent Games App (Acer Games) (x32 Version: 4.0.5.32 - WildTangent) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation)
WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
??????? ??????????? ??? Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
???????? ?????????? Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
????? Windows Live (x32 Version: 15.4.3502.0922 - ?????????? ??????????) Hidden
?????????? Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
??????????? ?? Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
?????? ??????? ?? Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
???? Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
???? ??? Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

Could not list restore points.
Check "winmgmt" service or repair WMI.


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2014-08-06 12:51 - 00000860 ____N C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
::1 localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {010480F3-4576-4994-9489-C8DB4579D8EF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-20] (Google Inc.)
Task: {05D54DC5-6F75-426A-9F26-0401028FEDEF} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-04-01] (COMODO)
Task: {2ACBEB1F-7459-442A-9438-F3C20C273457} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-25] (Microsoft Corporation)
Task: {318F2FFC-3200-4368-9EA7-C85C2CD5B994} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2011-03-29] (Egis Technology Inc.)
Task: {39C9FE04-A8C2-455E-9350-5F2C23A9AD2F} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {45279815-1E14-4498-AADE-9529C26B9628} - \{7068D692-31B6-4F75-9E10-F88A9E2713E4} No Task File <==== ATTENTION
Task: {47078267-C96C-44C3-9F3C-474AE09DA062} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {4A1912BE-CF32-48B1-9D8D-049DE7B029CA} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-04-01] (COMODO)
Task: {52DD571D-1734-4E73-981B-930976DCC488} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-20] (Google Inc.)
Task: {689ACF1B-562D-4859-8EE1-6010E2514261} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-03-19] (Adobe Systems Incorporated)
Task: {6A7C487E-B53B-44BE-AF25-7AAC60B4A21C} - System32\Tasks\UALU notificatin => C:\Program Files\Acer\Acer Updater\UALU.exe [2012-02-07] (Acer Incorporated)
Task: {92B713CC-3A18-4EC4-BEFE-8AE6B452DB8D} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-04-01] (COMODO)
Task: {93E41A9A-757F-4B64-8CAE-104315436C9E} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {9587885F-2593-4C1E-862C-CC4D8F7F4646} - \{FC38E099-8764-43F0-97DA-03E837B593D0} No Task File <==== ATTENTION
Task: {9A3D982D-6C99-4638-AAD1-390E8D317AA2} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2011-03-29] (Egis Technology Inc.)
Task: {BDC972C2-C06F-438F-B974-4AA06CE872D2} - System32\Tasks\Anvi AD Blocker Ultimate => C:\Program Files (x86)\Anvisoft\Anvi AD Blocker Ultimate\adblocker2.exe
Task: {D7A32939-E499-48BD-B3C1-AF4DD32A3935} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {E030A615-AB7C-49AD-A626-D1A9EC56B6E7} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-04-01] (COMODO)
Task: {F7294115-75EB-45ED-88BA-0BCC31E3B94F} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-04-01] (COMODO)
Task: {FE99C48A-E3F8-4D0E-A391-F141B3CAEC45} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2011-05-20] (CyberLink)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2013-10-28 04:02 - 2013-10-28 04:02 - 00351824 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe
2014-09-04 12:35 - 2013-10-26 11:45 - 00651856 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe
2009-01-22 01:45 - 2009-01-22 01:45 - 01401856 _____ () C:\Program Files (x86)\EgisTec MyWinLocker\x64\LIBEAY32.dll
2014-09-04 12:34 - 2014-09-04 12:34 - 00515072 _____ () C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe
2012-02-29 14:22 - 2012-02-29 14:22 - 00369152 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2011-11-09 10:55 - 2011-11-09 10:55 - 00016384 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
2012-02-21 00:34 - 2012-02-21 00:34 - 00040552 _____ () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe
2012-02-21 00:34 - 2012-02-21 00:34 - 00022632 _____ () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe
2015-01-08 23:02 - 2015-01-08 23:02 - 00067808 _____ () C:\Program Files\COMODO\COMODO Internet Security\scanners\smart.cav
2014-09-27 13:50 - 2013-10-26 11:45 - 01531472 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\LiveUpd.exe
2012-01-05 23:22 - 2012-01-05 23:22 - 00465344 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
2012-01-05 23:22 - 2012-01-05 23:22 - 01081368 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll
2012-01-05 23:22 - 2012-01-05 23:22 - 00125464 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll
2014-09-04 12:35 - 2013-08-31 07:44 - 02417152 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtCore4.dll
2014-09-04 12:35 - 2009-01-10 20:32 - 00011362 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\mingwm10.dll
2014-09-04 12:35 - 2009-06-23 04:42 - 00043008 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\libgcc_s_dw2-1.dll
2014-09-04 12:35 - 2013-08-31 07:46 - 01148416 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtNetwork4.dll
2014-09-04 12:34 - 2013-12-23 14:11 - 00537088 _____ () C:\Program Files (x86)\PLAY ONLINE\core.dll
2014-09-04 12:34 - 2013-10-28 10:25 - 00288768 _____ () C:\Program Files (x86)\PLAY ONLINE\sdk.dll
2014-09-04 12:34 - 2013-08-31 07:44 - 02417152 _____ () C:\Program Files (x86)\PLAY ONLINE\QtCore4.dll
2014-09-04 12:34 - 2009-01-10 20:32 - 00011362 _____ () C:\Program Files (x86)\PLAY ONLINE\mingwm10.dll
2014-09-04 12:34 - 2009-06-23 04:42 - 00043008 _____ () C:\Program Files (x86)\PLAY ONLINE\libgcc_s_dw2-1.dll
2014-09-04 12:34 - 2013-08-31 07:59 - 09559040 _____ () C:\Program Files (x86)\PLAY ONLINE\QtGui4.dll
2014-09-04 12:34 - 2013-08-31 11:41 - 15675904 _____ () C:\Program Files (x86)\PLAY ONLINE\QtWebKit4.DLL
2014-09-04 12:34 - 2013-08-31 07:46 - 01148416 _____ () C:\Program Files (x86)\PLAY ONLINE\QtNetwork4.dll
2014-09-04 12:34 - 2013-08-31 10:42 - 03962368 _____ () C:\Program Files (x86)\PLAY ONLINE\QtXmlPatterns4.dll
2014-09-04 12:34 - 2013-08-31 10:43 - 00306176 _____ () C:\Program Files (x86)\PLAY ONLINE\phonon4.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00407552 _____ () C:\Program Files (x86)\PLAY ONLINE\Proxy.DLL
2014-09-04 12:34 - 2013-10-28 10:24 - 00628224 _____ () C:\Program Files (x86)\PLAY ONLINE\Common.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00157696 _____ () C:\Program Files (x86)\PLAY ONLINE\Trace.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00583168 _____ () C:\Program Files (x86)\PLAY ONLINE\PluginContainer.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00646144 _____ () C:\Program Files (x86)\PLAY ONLINE\AtCodec.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00730112 _____ () C:\Program Files (x86)\PLAY ONLINE\DeviceSrvPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00195584 _____ () C:\Program Files (x86)\PLAY ONLINE\XCodec.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00253952 _____ () C:\Program Files (x86)\PLAY ONLINE\NetSrvPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00166912 _____ () C:\Program Files (x86)\PLAY ONLINE\OSDialup.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00155136 _____ () C:\Program Files (x86)\PLAY ONLINE\DataServicePlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00177152 _____ () C:\Program Files (x86)\PLAY ONLINE\CallSrvPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00672768 _____ () C:\Program Files (x86)\PLAY ONLINE\AddrBookSrvPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00220160 _____ () C:\Program Files (x86)\PLAY ONLINE\SmsSrvPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00142336 _____ () C:\Program Files (x86)\PLAY ONLINE\USSDSrvPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00157184 _____ () C:\Program Files (x86)\PLAY ONLINE\STKSrvPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00731136 _____ () C:\Program Files (x86)\PLAY ONLINE\DeviceAppPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00065536 _____ () C:\Program Files (x86)\PLAY ONLINE\OSPowerMgr.dll
2014-09-04 12:34 - 2013-06-08 05:46 - 00155648 _____ () C:\Program Files (x86)\PLAY ONLINE\Win7Support.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 01124352 _____ () C:\Program Files (x86)\PLAY ONLINE\AddrBookPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00704000 _____ () C:\Program Files (x86)\PLAY ONLINE\SmsAppPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00187392 _____ () C:\Program Files (x86)\PLAY ONLINE\CallAppPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00569344 _____ () C:\Program Files (x86)\PLAY ONLINE\CallLogSrvPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00158720 _____ () C:\Program Files (x86)\PLAY ONLINE\NetConnectSrvPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00236032 _____ () C:\Program Files (x86)\PLAY ONLINE\DialUpPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00102400 _____ () C:\Program Files (x86)\PLAY ONLINE\OSAdapt.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00201728 _____ () C:\Program Files (x86)\PLAY ONLINE\NDISPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00131584 _____ () C:\Program Files (x86)\PLAY ONLINE\OSNDIS.dll
2014-09-04 12:34 - 2013-10-15 14:16 - 01146880 _____ () C:\Program Files (x86)\PLAY ONLINE\NDISAPI.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00702464 _____ () C:\Program Files (x86)\PLAY ONLINE\NetInfoSrvPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00062976 _____ () C:\Program Files (x86)\PLAY ONLINE\OSCall.dll
2014-09-04 12:34 - 2013-06-08 05:46 - 00224256 _____ () C:\Program Files (x86)\PLAY ONLINE\tdpcvoice.dll
2014-09-04 12:34 - 2013-10-28 10:25 - 00581120 _____ () C:\Program Files (x86)\PLAY ONLINE\DeviceMgrUIPlugin.dll
2014-09-04 12:34 - 2013-08-31 07:44 - 00398336 _____ () C:\Program Files (x86)\PLAY ONLINE\QtXml4.dll
2014-09-04 12:34 - 2013-10-28 10:24 - 00168960 _____ () C:\Program Files (x86)\PLAY ONLINE\ATR2SMgr.dll
2014-09-04 12:34 - 2013-12-26 13:22 - 00287744 _____ () C:\Program Files (x86)\PLAY ONLINE\XFramePlugin.dll
2014-09-04 12:34 - 2013-10-28 10:25 - 00323072 _____ () C:\Program Files (x86)\PLAY ONLINE\StatusBarMgrPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:25 - 00394240 _____ () C:\Program Files (x86)\PLAY ONLINE\NetConnectPlugin.dll
2014-09-04 12:34 - 2013-12-23 14:12 - 00599552 _____ () C:\Program Files (x86)\PLAY ONLINE\DialupUIPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:25 - 00097792 _____ () C:\Program Files (x86)\PLAY ONLINE\NotifyServicePlugin.dll
2014-09-04 12:34 - 2013-10-28 10:25 - 00117248 _____ () C:\Program Files (x86)\PLAY ONLINE\LayoutPlugin.dll
2014-09-04 12:34 - 2013-12-23 14:14 - 00103424 _____ () C:\Program Files (x86)\PLAY ONLINE\MainpagePlugin.dll
2014-09-04 12:34 - 2013-10-28 10:26 - 00119296 _____ () C:\Program Files (x86)\PLAY ONLINE\ConnectMgrUIPlugin.dll
2014-09-04 12:34 - 2013-12-23 14:14 - 00338944 _____ () C:\Program Files (x86)\PLAY ONLINE\MenuMgrPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:26 - 00487424 _____ () C:\Program Files (x86)\PLAY ONLINE\USSDUIPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:26 - 00303616 _____ () C:\Program Files (x86)\PLAY ONLINE\DiagnosisPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:26 - 00493568 _____ () C:\Program Files (x86)\PLAY ONLINE\NetInfoUIExPlugin.dll
2014-09-04 12:34 - 2013-12-23 14:13 - 00855552 _____ () C:\Program Files (x86)\PLAY ONLINE\SMSUIPlugin.dll
2014-09-04 12:34 - 2013-10-28 10:25 - 00819712 _____ () C:\Program Files (x86)\PLAY ONLINE\AddrBookUIPlugin.dll
2014-09-04 12:34 - 2013-12-23 14:14 - 00224768 _____ () C:\Program Files (x86)\PLAY ONLINE\ToolBarMgrPlugin.dll
2014-09-04 12:34 - 2013-06-08 05:45 - 00082944 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qgif4.dll
2014-09-04 12:34 - 2013-06-08 05:45 - 00081920 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qico4.dll
2014-09-04 12:34 - 2013-06-08 05:45 - 00192000 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qjpeg4.dll
2014-09-04 12:34 - 2013-06-08 05:45 - 00350720 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qmng4.dll
2014-09-04 12:34 - 2013-06-08 05:45 - 00370176 _____ () C:\Program Files (x86)\PLAY ONLINE\plugins\imageformats\qtiff4.dll
2014-09-04 12:34 - 2013-10-26 11:08 - 00692224 _____ () C:\Program Files (x86)\PLAY ONLINE\LiveUpdateInterface.DLL
2014-09-04 12:35 - 2013-08-31 07:59 - 09559040 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\QtGui4.dll
2014-09-27 13:50 - 2013-06-08 05:45 - 00082944 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\plugins\imageformats\qgif4.dll
2014-09-27 13:50 - 2013-06-08 05:45 - 00081920 _____ () C:\ProgramData\PLAY ONLINE\OnlineUpdate\plugins\imageformats\qico4.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Windows\system32\certsentry.exe_20150414145401:$CmdTcID
AlternateDataStreams: C:\Users\Artur\Desktop\4331479_hd.mp4:$CmdTcID
AlternateDataStreams: C:\Users\Artur\Desktop\4331479_hd.mp4:$CmdZnID
AlternateDataStreams: C:\Users\Artur\Desktop\a2.mp4:$CmdTcID
AlternateDataStreams: C:\Users\Artur\Desktop\a2.mp4:$CmdZnID
AlternateDataStreams: C:\Users\Artur\Desktop\a21.mp4:$CmdTcID
AlternateDataStreams: C:\Users\Artur\Desktop\a21.mp4:$CmdZnID
AlternateDataStreams: C:\Users\Artur\Desktop\FRST64.exe:$CmdTcID
AlternateDataStreams: C:\Users\Artur\Desktop\FRST64.exe:$CmdZnID

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver"

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)

HKU\S-1-5-21-565013978-3981129426-2025703209-1000\Software\Classes\.exe: exefile =>  <===== ATTENTION!
HKU\S-1-5-21-565013978-3981129426-2025703209-1000\Software\Classes\exefile:  <===== ATTENTION!

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-565013978-3981129426-2025703209-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 89.108.202.20 - 89.108.195.20

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== Accounts: =============================

Administrator (S-1-5-21-565013978-3981129426-2025703209-500 - Administrator - Disabled)
Artur (S-1-5-21-565013978-3981129426-2025703209-1000 - Administrator - Enabled) => C:\Users\Artur
Gość (S-1-5-21-565013978-3981129426-2025703209-501 - Limited - Disabled)

==================== Faulty Device Manager Devices =============

Could not list Devices. Check "winmgmt" service or repair WMI.


==================== Event log errors: =========================

Could not start eventlog service, could not read events.

Wyst?pi? b??d systemu 123.

Nazwa pliku, nazwa katalogu lub sk?adnia etykiety woluminu jest niepoprawna.


==================== Memory info ===========================

Processor: AMD A6-4400M APU with Radeon™ HD Graphics
Percentage of memory in use: 59%
Total physical RAM: 3561.37 MB
Available physical RAM: 1451.14 MB
Total Pagefile: 7120.92 MB
Available Pagefile: 4053.3 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:447.66 GB) (Free:274.58 GB) NTFS
Drive e: (PLAY ONLINE) (CDROM) (Total:0.03 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================

 

 

2 raport

 

 

 

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-04-2015

Ran by Artur (administrator) on ARTUR-KOMPUTER on 14-04-2015 17:06:07

Running from C:\Users\Artur\Desktop

Loaded Profiles: Artur (Available profiles: Artur)

Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polski (Polska)

Internet Explorer Version 11 (Default browser: FF)

Boot Mode: Normal

Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe

(AMD) C:\Windows\System32\atiesrxx.exe

(AMD) C:\Windows\System32\atieclxx.exe

(Microsoft Corporation) C:\Windows\System32\wlanext.exe

(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe

(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe

(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe

(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe

(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe

() C:\ProgramData\DatacardService\HWDeviceService64.exe

(Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe

(McAfee, Inc.) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe

(McAfee, Inc.) C:\Windows\System32\mfevtps.exe

(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe

(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe

(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe

(Microsoft Corporation) C:\Windows\System32\rundll32.exe

() C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe

(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe

(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe

(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe

(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe

(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe

(McAfee, Inc.) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe

(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe

(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE

(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe

() C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe

(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe

(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe

(COMODO) C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe

(McAfee, Inc.) C:\Program Files\Common Files\mcafee\Platform\McUICnt.exe

(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe

(Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe

(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe

(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe

(CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe

(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe

(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe

(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe

(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe

(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe

() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe

() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe

(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe

(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mcshield.exe

(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe

(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe

(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe

(McAfee, Inc.) C:\Program Files\mcafee\msm\McSmtFwk.exe

(Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe

(Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe

(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe

(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe

(Microsoft Corporation) C:\Windows\System32\dllhost.exe

 

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [InstantUpdate] => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuDaemon.exe [124520 2012-02-21] ()

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12446824 2012-01-31] (Realtek Semiconductor)

HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1156712 2011-11-15] (Realtek Semiconductor)

HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [1020576 2012-02-20] (Atheros Communications)

HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [800416 2012-02-20] (Atheros Commnucations)

HKLM\...\Run: [Power Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1829768 2012-02-07] (Acer Incorporated)

HKLM\...\Run: [COMODO Internet Security] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1426136 2015-04-01] (COMODO)

HKLM-x32\...\Run: [mcui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-01-28] (McAfee, Inc.)

HKLM-x32\...\Run: [SuiteTray] => C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [341360 2011-09-20] (Egis Technology Inc.)

HKLM-x32\...\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-02] (Symantec Corporation)

HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)

HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [296984 2012-01-05] (NTI Corporation)

HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Dolby PCEE4\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.)

HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1105488 2012-03-23] (Dritek System Inc.)

HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [630912 2012-02-29] (Advanced Micro Devices, Inc.)

HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-01-28] (McAfee, Inc.)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-11] (Oracle Corporation)

HKLM\...\Winlogon: [Userinit] C:\Windows\SysWOW64\userinit.exe,

HKLM\...\Policies\Explorer: [NoControlPanel] 0

HKU\S-1-5-20\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}

HKU\S-1-5-21-565013978-3981129426-2025703209-1000\...\Run: [EA Core] => C:\Program Files (x86)\Electronic Arts\EADM\Core.exe [3338240 2009-04-29] (Electronic Arts)

HKU\S-1-5-21-565013978-3981129426-2025703209-1000\...\MountPoints2: {12f38a28-7746-11e4-9ebf-dc0ea1a95568} - E:\AutoRun.exe

HKU\S-1-5-21-565013978-3981129426-2025703209-1000\...\MountPoints2: {2594961b-33fb-11e4-a959-dc0ea1a95568} - E:\AutoRun.exe

HKU\S-1-5-21-565013978-3981129426-2025703209-1000\...\MountPoints2: {25949627-33fb-11e4-a959-dc0ea1a95568} - E:\AutoRun.exe

HKU\S-1-5-21-565013978-3981129426-2025703209-1000\...\MountPoints2: {78181849-fc6b-11e3-b3d5-dc0ea1a95568} - G:\LGAutoRun.exe

HKU\S-1-5-21-565013978-3981129426-2025703209-1000\...\MountPoints2: {99175d08-68e8-11e4-b500-dc0ea1a95568} - E:\AutoRun.exe

HKU\S-1-5-19\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}

HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}

 

==================== Internet (Whitelisted) ====================

 

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

 

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION

HKU\S-1-5-21-565013978-3981129426-2025703209-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.wp.pl/?src01=dp120150322

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.wp.pl/?src01=dp120150322

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com

HKU\S-1-5-21-565013978-3981129426-2025703209-1000\Software\Microsoft\Internet Explorer\Main,Start Page = www.wp.pl/?src01=dp120150322

URLSearchHook: HKU\S-1-5-21-565013978-3981129426-2025703209-1000 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)

URLSearchHook: HKU\S-1-5-21-565013978-3981129426-2025703209-1000 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)

SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2011-06-08] (Advanced Micro Devices)

BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.)

BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2014-04-24] (McAfee, Inc.)

BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06] (Adobe Systems Incorporated)

BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2011-06-08] (Advanced Micro Devices)

BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-11] (Oracle Corporation)

BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-02-20] (Atheros Commnucations)

BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.)

BHO-x32: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2014-04-24] (McAfee, Inc.)

BHO-x32: Strong Signal -> {c723a437-2eaf-466d-a95b-3fa0966bf88c} -> C:\Program Files (x86)\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll No File

BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-11] (Oracle Corporation)

Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2014-04-24] (McAfee, Inc.)

Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2014-04-24] (McAfee, Inc.)

Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2014-04-24] (McAfee, Inc.)

Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2014-04-24] (McAfee, Inc.)

Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2014-04-24] (McAfee, Inc.)

Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2014-04-24] (McAfee, Inc.)

Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2014-01-28] (McAfee, Inc.)

Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2014-01-28] (McAfee, Inc.)

Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)

Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)

Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)

Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices)

Tcpip\Parameters: [DhcpNameServer] 10.0.2.1 217.8.168.244

Tcpip\..\Interfaces\{7314B738-5F15-4708-9C1A-2646572A115B}: [NameServer] 89.108.195.20 89.108.202.20

Tcpip\..\Interfaces\{742E73EE-0CC3-424B-A725-39F486698053}: [NameServer] 89.108.202.20 89.108.195.20

Tcpip\..\Interfaces\{7693B8AA-D06D-441B-B341-78E73992ECEE}: [NameServer] 89.108.195.20 89.108.202.20

Tcpip\..\Interfaces\{CB35BA3D-F1C6-4D48-96AB-6035FBE40D0B}: [NameServer] 89.108.202.20 89.108.195.20

FireFox:

========

FF ProfilePath: C:\Users\Artur\AppData\Roaming\Mozilla\Firefox\Profiles\490a5n9t.default-1428354728894

FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2014-01-28] ()

FF Plugin: @microsoft.com/GENUINE -> disabled No File

FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)

FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)

FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-07-11] (Oracle Corporation)

FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-07-11] (Oracle Corporation)

FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2014-01-28] ()

FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File

FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)

FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-14] (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-14] (Microsoft Corporation)

FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)

FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)

FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2010-12-08] ()

FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2011-06-06] (Adobe Systems Inc.)

FF Plugin HKU\S-1-5-21-565013978-3981129426-2025703209-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Artur\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-06-11] (Unity Technologies ApS)

FF Extension: Ghostery - C:\Users\Artur\AppData\Roaming\Mozilla\Firefox\Profiles\490a5n9t.default-1428354728894\Extensions\firefox@ghostery.com.xpi [2015-04-06]

FF Extension: Google™ Translator Lite - C:\Users\Artur\AppData\Roaming\Mozilla\Firefox\Profiles\490a5n9t.default-1428354728894\Extensions\jid1-f3mYMbCpz2AZYl@jetpack.xpi [2015-04-06]

FF Extension: Clear Input Field Text - C:\Users\Artur\AppData\Roaming\Mozilla\Firefox\Profiles\490a5n9t.default-1428354728894\Extensions\patilkr24@clearinputfield.com.xpi [2015-04-06]

FF Extension: Resurrect Pages - C:\Users\Artur\AppData\Roaming\Mozilla\Firefox\Profiles\490a5n9t.default-1428354728894\Extensions\{0c8fbd76-bdeb-4c52-9b24-d587ce7b9dc3}.xpi [2015-04-06]

FF Extension: Adblock Plus - C:\Users\Artur\AppData\Roaming\Mozilla\Firefox\Profiles\490a5n9t.default-1428354728894\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-04-06]

FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor

FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2012-03-19]

FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore

FF Extension: McAfee ScriptScan for Firefox - C:\Program Files (x86)\Common Files\McAfee\SystemCore [2012-03-19]

FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK

FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2012-03-19]

Chrome:

=======

CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - http://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

Locked "BFE" service could not be unlocked. <===== ATTENTION

U2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [106144 2012-02-20] (Atheros Commnucations) [File not signed]

U2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5540424 2015-04-01] (COMODO)

U3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2265816 2015-04-01] (COMODO)

U2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)

U2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2013-10-28] ()

U2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [249936 2011-01-28] (McAfee, Inc.)

U2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-01-28] (McAfee, Inc.)

U3 McAWFwk; c:\Program Files\mcafee\msc\McAWFwk.exe [225216 2011-01-28] (McAfee, Inc.)

U2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)

U2 McNaiAnn; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)

U3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.)

U4 McOobeSv; C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe [249936 2011-01-28] (McAfee, Inc.)

U2 mcpltsvc; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)

U2 McProxy; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)

U2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [199272 2012-02-22] (McAfee, Inc.)

U2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1025232 2013-12-11] (McAfee, Inc.)

U2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-01-27] (McAfee, Inc.)

U2 mfevtp; C:\Windows\system32\mfevtps.exe [185792 2014-01-27] (McAfee, Inc.)

U2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)

U2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-02] (Symantec Corporation)

U2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256536 2012-01-05] (NTI Corporation)

U2 PLAY ONLINE. RunOuc; C:\Program Files (x86)\PLAY ONLINE\UpdateDog\ouc.exe [651856 2013-10-26] ()

U3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

U2 LavasoftTcpService; C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.3.0\LavasoftTcpService.exe [X]

 

==================== Drivers (Whitelisted) ====================

 

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

 

U0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [31872 2012-02-01] (Advanced Micro Devices, Inc.)

U3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2012-07-03] (LG Electronics Inc.)

U3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [36352 2012-07-03] (LG Electronics Inc.)

U3 andnetndis; C:\Windows\System32\DRIVERS\lgandnetndis64.sys [93184 2012-07-04] (LG Electronics Inc.)

U3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70592 2014-01-27] (McAfee, Inc.)

U1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [20696 2015-04-01] (COMODO)

U1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [797280 2015-04-01] (COMODO)

U1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [45880 2015-04-01] (COMODO)

U3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)

U3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [246272 2013-06-29] (Huawei Technologies Co., Ltd.)

U1 inspect; C:\Windows\System32\DRIVERS\inspect.sys [104608 2015-04-01] (COMODO)

U2 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [180272 2014-01-27] (McAfee, Inc.)

U3 mfeapfk01; No ImagePath

U2 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311600 2014-01-27] (McAfee, Inc.)

U3 mfeavfk01; No ImagePath

U3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [520696 2014-01-27] (McAfee, Inc.)

U2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [783864 2014-01-27] (McAfee, Inc.)

U3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [411944 2013-11-26] (McAfee, Inc.)

U3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96112 2013-11-26] (McAfee, Inc.)

U3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [100912 2012-02-22] (McAfee, Inc.)

U2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [344688 2014-01-27] (McAfee, Inc.)

U3 L1C; system32\DRIVERS\L1C62x64.sys [X]

U2 sbapifs; system32\DRIVERS\sbapifs.sys [X]

 

==================== NetSvcs (Whitelisted) ===================

 

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

 

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-14 17:01 - 2015-04-14 17:02 - 00054926 _____ () C:\Users\Artur\Desktop\FRST 12.txt

2015-04-14 16:54 - 2015-04-14 17:03 - 00031561 _____ () C:\Users\Artur\Desktop\Addition.txt

2015-04-14 16:51 - 2015-04-14 17:06 - 00024399 _____ () C:\Users\Artur\Desktop\FRST.txt

2015-04-14 16:51 - 2015-04-14 17:06 - 00000000 ____D () C:\FRST

2015-04-14 16:50 - 2015-04-14 16:50 - 02096640 _____ (Farbar) C:\Users\Artur\Desktop\FRST64.exe

2015-04-14 16:50 - 2015-04-14 16:50 - 00000000 ___HD () C:\VTRoot

2015-04-14 16:43 - 2015-04-14 16:58 - 00028608 _____ () C:\Windows\system32\Drivers\fvstore.dat

2015-04-14 16:18 - 2015-04-14 16:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee

2015-04-14 08:49 - 2015-04-14 08:54 - 00024296 _____ (COMODO CA Limited) C:\Windows\system32\certsentry.exe_20150414145401

2015-04-14 05:08 - 2015-04-14 05:21 - 72970668 _____ () C:\Users\Artur\Desktop\a21.mp4

2015-04-14 04:31 - 2015-04-14 05:47 - 556961915 _____ () C:\Users\Artur\Desktop\a2.mp4

2015-04-14 04:30 - 2015-04-14 05:04 - 194072965 _____ () C:\Users\Artur\Desktop\4331479_hd.mp4

2015-04-14 02:07 - 2015-04-14 17:02 - 01077296 _____ () C:\Windows\system32\Drivers\sfi.dat

2015-04-14 02:07 - 2015-04-14 02:08 - 00000000 ____D () C:\Windows\System32\Tasks\COMODO

2015-04-14 02:07 - 2015-04-14 02:07 - 00001872 _____ () C:\Users\Public\Desktop\COMODO Antivirus.lnk

2015-04-14 02:06 - 2015-04-14 02:06 - 00000000 ____D () C:\ProgramData\Shared Space

2015-04-14 02:04 - 2015-04-14 02:05 - 00000000 ____D () C:\Program Files\COMODO

2015-04-14 02:03 - 2015-04-14 16:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo

2015-04-14 02:03 - 2015-04-14 02:03 - 00000000 ____D () C:\Users\Artur\AppData\Local\Comodo

2015-04-14 02:02 - 2015-04-14 02:07 - 00000000 ____D () C:\ProgramData\Comodo

2015-04-14 01:34 - 2015-04-14 02:00 - 214041880 _____ (COMODO) C:\Users\Artur\Desktop\cav_installer_3264_29.exe

2015-04-14 00:18 - 2012-03-19 13:29 - 02212176 _____ (ELAN Microelectronics Corp.) C:\Windows\ETDUninst.dll

2015-04-05 04:14 - 2015-04-05 04:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox

2015-04-05 03:01 - 2015-04-05 03:01 - 00000000 ___SD () C:\Windows\SysWOW64\GWX

2015-04-05 03:01 - 2015-04-05 03:01 - 00000000 ___SD () C:\Windows\system32\GWX

2015-04-02 17:13 - 2015-04-02 17:13 - 00000000 ____D () C:\Users\Artur\AppData\Local\{4C426606-6061-4C5B-B291-E9FE9523560A}

2015-04-01 18:49 - 2015-04-01 18:49 - 00797280 _____ (COMODO) C:\Windows\system32\Drivers\cmdguard.sys

2015-04-01 18:49 - 2015-04-01 18:49 - 00104608 _____ (COMODO) C:\Windows\system32\Drivers\inspect.sys

2015-04-01 18:49 - 2015-04-01 18:49 - 00045880 _____ (COMODO) C:\Windows\system32\Drivers\cmdhlp.sys

2015-04-01 18:49 - 2015-04-01 18:49 - 00020696 _____ (COMODO) C:\Windows\system32\Drivers\cmderd.sys

2015-04-01 18:48 - 2015-04-01 18:48 - 00576848 _____ (COMODO) C:\Windows\system32\guard64.dll

2015-04-01 18:48 - 2015-04-01 18:48 - 00444472 _____ (COMODO) C:\Windows\SysWOW64\guard32.dll

2015-04-01 18:48 - 2015-04-01 18:48 - 00041248 _____ (COMODO) C:\Windows\system32\cmdcsr.dll

2015-04-01 18:47 - 2015-04-01 18:47 - 00358104 _____ (COMODO) C:\Windows\system32\cmdvrt64.dll

2015-04-01 18:46 - 2015-04-01 18:46 - 00045784 _____ (COMODO) C:\Windows\system32\cmdkbd64.dll

2015-04-01 18:45 - 2015-04-01 18:45 - 00288472 _____ (COMODO) C:\Windows\SysWOW64\cmdvrt32.dll

2015-04-01 18:45 - 2015-04-01 18:45 - 00040664 _____ (COMODO) C:\Windows\SysWOW64\cmdkbd32.dll

2015-03-31 04:33 - 2015-04-14 00:32 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Panda Security

2015-03-31 04:31 - 2015-04-14 00:33 - 00000000 ____D () C:\Program Files (x86)\Panda Security

2015-03-31 04:27 - 2015-04-14 00:33 - 00000000 ____D () C:\ProgramData\Panda Security

2015-03-24 23:47 - 2015-04-06 23:12 - 00000000 ____D () C:\Users\Artur\Desktop\Stare dane programu Firefox

2015-03-23 22:24 - 2015-03-23 22:24 - 00000467 _____ () C:\Windows\SysWOW64\BlockerLog.log

2015-03-23 21:10 - 2015-04-08 15:21 - 00000000 ____D () C:\ProgramData\OnlineUpdate

2015-03-23 21:10 - 2015-04-08 15:20 - 00000000 ____D () C:\ProgramData\log

2015-03-23 00:04 - 2015-03-23 00:07 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Cream Software

2015-03-22 23:49 - 2015-03-23 00:35 - 00000000 ____D () C:\Program Files (x86)\123 Flash Menu

2015-03-22 23:27 - 2015-03-22 23:27 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Crystal Security

2015-03-22 22:47 - 2015-03-23 22:27 - 00003284 _____ () C:\Windows\System32\Tasks\Anvi AD Blocker Ultimate

2015-03-22 22:47 - 2015-03-22 22:47 - 00000000 ____D () C:\ProgramData\Anvisoft

2015-03-22 22:46 - 2015-03-23 22:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft

2015-03-22 22:46 - 2015-03-22 22:46 - 00000000 ____D () C:\Program Files (x86)\Anvisoft

2015-03-22 22:16 - 2015-03-12 12:59 - 00373864 _____ (Lavasoft Limited) C:\Windows\system32\LavasoftTcpService64.dll

2015-03-22 22:16 - 2015-03-12 12:58 - 00326288 _____ (Lavasoft Limited) C:\Windows\SysWOW64\LavasoftTcpService.dll

2015-03-22 22:14 - 2015-03-22 22:14 - 00000000 ____D () C:\Program Files (x86)\Lavasoft

2015-03-22 22:01 - 2015-03-22 22:24 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Lavasoft

2015-03-22 21:52 - 2015-04-08 15:20 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service

2015-03-22 21:52 - 2015-03-22 21:52 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk

2015-03-22 21:52 - 2015-03-22 21:52 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk

2015-03-22 21:52 - 2015-03-22 21:52 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Mozilla

2015-03-22 21:52 - 2015-03-22 21:52 - 00000000 ____D () C:\Users\Artur\AppData\Local\Mozilla

2015-03-22 21:52 - 2015-03-22 21:52 - 00000000 ____D () C:\ProgramData\Mozilla

2015-03-22 21:43 - 2015-04-14 16:47 - 00000000 ____D () C:\ProgramData\0780f478-67ce-4ec3-98db-39a65f4618ce

2015-03-22 21:23 - 2015-04-14 16:48 - 00000000 ____D () C:\AdwCleaner

2015-03-22 19:04 - 2015-03-22 19:04 - 00000000 __SHD () C:\Users\Artur\AppData\Local\EmieBrowserModeList

2015-03-16 22:15 - 2015-03-16 22:15 - 00250721 _____ () C:\Users\Artur\Desktop\czerwony-skala-smok.jpeg

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-14 16:54 - 2012-03-19 11:25 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater

2015-04-14 16:54 - 2012-03-19 11:25 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job

2015-04-14 16:21 - 2009-07-14 06:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

2015-04-14 16:21 - 2009-07-14 06:45 - 00024608 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

2015-04-14 16:19 - 2014-01-19 20:44 - 01395833 _____ () C:\Windows\WindowsUpdate.log

2015-04-14 16:14 - 2014-01-20 16:29 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

2015-04-14 16:13 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT

2015-04-14 16:13 - 2009-07-14 06:51 - 00137494 _____ () C:\Windows\setupact.log

2015-04-14 16:12 - 2010-11-21 05:47 - 00124278 _____ () C:\Windows\PFRO.log

2015-04-14 11:35 - 2014-01-20 16:29 - 00001048 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

2015-04-14 04:35 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk

2015-04-14 04:11 - 2014-03-05 20:09 - 00000000 ____D () C:\Users\Artur\AppData\Local\Windows Live

2015-04-14 02:38 - 2009-07-14 06:45 - 00271080 _____ () C:\Windows\system32\FNTCACHE.DAT

2015-04-14 02:08 - 2014-01-20 05:35 - 00849516 _____ () C:\Windows\system32\perfh015.dat

2015-04-14 02:08 - 2014-01-20 05:35 - 00210612 _____ () C:\Windows\system32\perfc015.dat

2015-04-14 01:19 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games

2015-04-14 01:12 - 2014-01-19 21:56 - 00060424 _____ () C:\Users\Artur\AppData\Local\GDIPFONTCACHEV1.DAT

2015-04-14 00:30 - 2014-02-10 18:11 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\SoftGrid Client

2015-04-14 00:22 - 2012-03-19 10:52 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information

2015-04-13 21:34 - 2015-02-26 01:29 - 00000000 ____D () C:\Users\Artur\Documents\TrackMania

2015-04-13 21:17 - 2015-02-26 01:31 - 00000000 ____D () C:\ProgramData\TrackMania

2015-04-13 20:10 - 2014-03-31 06:58 - 00001842 _____ () C:\Users\Artur\Desktop\Nowy dokument tekstowy (3).txt

2015-04-08 15:29 - 2009-07-14 07:13 - 01670754 _____ () C:\Windows\system32\PerfStringBackup.INI

2015-03-28 16:42 - 2014-01-19 21:55 - 00000000 ____D () C:\Users\Artur

2015-03-28 16:40 - 2014-12-10 18:55 - 00000000 ____D () C:\Windows\system32\appraiser

2015-03-28 16:40 - 2014-05-06 21:43 - 00000000 ___SD () C:\Windows\system32\CompatTel

2015-03-28 16:40 - 2014-01-24 23:13 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

2015-03-28 16:40 - 2014-01-24 23:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR

2015-03-28 16:40 - 2014-01-19 21:15 - 00000000 ____D () C:\ProgramData\Atheros

2015-03-28 16:40 - 2010-11-21 09:16 - 00000000 ___RD () C:\Users\Public\Recorded TV

2015-03-28 16:40 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration

2015-03-23 21:10 - 2014-01-24 23:13 - 00000000 ____D () C:\Program Files (x86)\WinRAR

2015-03-22 22:24 - 2014-08-09 19:47 - 00000000 ____D () C:\Users\Artur\AppData\Roaming\LavasoftStatistics

2015-03-22 22:24 - 2014-08-09 19:32 - 00000000 ____D () C:\ProgramData\Lavasoft

2015-03-22 21:33 - 2014-01-20 16:29 - 00000000 ____D () C:\Users\Artur\AppData\Local\Google

2015-03-22 21:33 - 2014-01-20 16:29 - 00000000 ____D () C:\Program Files (x86)\Google

2015-03-22 21:01 - 2014-01-20 16:28 - 00000000 ____D () C:\Users\Artur\AppData\Local\Deployment

2015-03-22 18:58 - 2014-01-19 21:59 - 00001425 _____ () C:\Users\Artur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk

2015-03-17 18:17 - 2014-01-20 22:23 - 00002536 _____ () C:\Windows\wininit.ini

==================== Files in the root of some directories =======

2014-12-23 13:29 - 2014-12-23 13:29 - 0000000 _____ () C:\Users\Artur\AppData\Local\{D2A01179-4B54-425F-89B3-A8151117F9AA}

2014-01-19 21:27 - 2014-01-19 21:32 - 0002454 _____ () C:\ProgramData\clear.fiSDK20.log

2014-01-19 21:30 - 2014-01-19 21:30 - 0000032 _____ () C:\ProgramData\PS.log

Some content of TEMP:

====================

C:\Users\Artur\AppData\Local\Temp\1a826ea5-0342-48ce-9835-6207dc718096.exe

C:\Users\Artur\AppData\Local\Temp\EAD1074.exe

C:\Users\Artur\AppData\Local\Temp\EAD1075.exe

C:\Users\Artur\AppData\Local\Temp\EAD112F.exe

C:\Users\Artur\AppData\Local\Temp\EAD118C.exe

C:\Users\Artur\AppData\Local\Temp\EAD1506.exe

C:\Users\Artur\AppData\Local\Temp\EAD167C.exe

C:\Users\Artur\AppData\Local\Temp\EAD17F2.exe

C:\Users\Artur\AppData\Local\Temp\EAD1821.exe

C:\Users\Artur\AppData\Local\Temp\EAD18AE.exe

C:\Users\Artur\AppData\Local\Temp\EAD1C17.exe

C:\Users\Artur\AppData\Local\Temp\EAD1CC3.exe

C:\Users\Artur\AppData\Local\Temp\EAD1E2A.exe

C:\Users\Artur\AppData\Local\Temp\EAD1EF4.exe

C:\Users\Artur\AppData\Local\Temp\EAD1F52.exe

C:\Users\Artur\AppData\Local\Temp\EAD1F62.exe

C:\Users\Artur\AppData\Local\Temp\EAD204C.exe

C:\Users\Artur\AppData\Local\Temp\EAD212.exe

C:\Users\Artur\AppData\Local\Temp\EAD241.exe

C:\Users\Artur\AppData\Local\Temp\EAD256A.exe

C:\Users\Artur\AppData\Local\Temp\EAD2683.exe

C:\Users\Artur\AppData\Local\Temp\EAD271F.exe

C:\Users\Artur\AppData\Local\Temp\EAD29DD.exe

C:\Users\Artur\AppData\Local\Temp\EAD29EC.exe

C:\Users\Artur\AppData\Local\Temp\EAD2A3A.exe

C:\Users\Artur\AppData\Local\Temp\EAD2A69.exe

C:\Users\Artur\AppData\Local\Temp\EAD2A6A.exe

C:\Users\Artur\AppData\Local\Temp\EAD2E11.exe

C:\Users\Artur\AppData\Local\Temp\EAD2FC.exe

C:\Users\Artur\AppData\Local\Temp\EAD3052.exe

C:\Users\Artur\AppData\Local\Temp\EAD339D.exe

C:\Users\Artur\AppData\Local\Temp\EAD3580.exe

C:\Users\Artur\AppData\Local\Temp\EAD369.exe

C:\Users\Artur\AppData\Local\Temp\EAD383E.exe

C:\Users\Artur\AppData\Local\Temp\EAD389C.exe

C:\Users\Artur\AppData\Local\Temp\EAD3986.exe

C:\Users\Artur\AppData\Local\Temp\EAD3A70.exe

C:\Users\Artur\AppData\Local\Temp\EAD3A9F.exe

C:\Users\Artur\AppData\Local\Temp\EAD3E18.exe

C:\Users\Artur\AppData\Local\Temp\EAD3E28.exe

C:\Users\Artur\AppData\Local\Temp\EAD452A.exe

C:\Users\Artur\AppData\Local\Temp\EAD472.exe

C:\Users\Artur\AppData\Local\Temp\EAD478A.exe

C:\Users\Artur\AppData\Local\Temp\EAD48B2.exe

C:\Users\Artur\AppData\Local\Temp\EAD499C.exe

C:\Users\Artur\AppData\Local\Temp\EAD4BBE.exe

C:\Users\Artur\AppData\Local\Temp\EAD4C7A.exe

C:\Users\Artur\AppData\Local\Temp\EAD51B7.exe

C:\Users\Artur\AppData\Local\Temp\EAD5724.exe

C:\Users\Artur\AppData\Local\Temp\EAD59D2.exe

C:\Users\Artur\AppData\Local\Temp\EAD5A4F.exe

C:\Users\Artur\AppData\Local\Temp\EAD5B58.exe

C:\Users\Artur\AppData\Local\Temp\EAD5BA6.exe

C:\Users\Artur\AppData\Local\Temp\EAD5E55.exe

C:\Users\Artur\AppData\Local\Temp\EAD5FEA.exe

C:\Users\Artur\AppData\Local\Temp\EAD6141.exe

C:\Users\Artur\AppData\Local\Temp\EAD625A.exe

C:\Users\Artur\AppData\Local\Temp\EAD6298.exe

C:\Users\Artur\AppData\Local\Temp\EAD62D7.exe

C:\Users\Artur\AppData\Local\Temp\EAD65F2.exe

C:\Users\Artur\AppData\Local\Temp\EAD666F.exe

C:\Users\Artur\AppData\Local\Temp\EAD67F5.exe

C:\Users\Artur\AppData\Local\Temp\EAD6863.exe

C:\Users\Artur\AppData\Local\Temp\EAD693D.exe

C:\Users\Artur\AppData\Local\Temp\EAD6AD2.exe

C:\Users\Artur\AppData\Local\Temp\EAD6C97.exe

C:\Users\Artur\AppData\Local\Temp\EAD6CD5.exe

C:\Users\Artur\AppData\Local\Temp\EAD6FE1.exe

C:\Users\Artur\AppData\Local\Temp\EAD704F.exe

C:\Users\Artur\AppData\Local\Temp\EAD730.exe

C:\Users\Artur\AppData\Local\Temp\EAD740.exe

C:\Users\Artur\AppData\Local\Temp\EAD781B.exe

C:\Users\Artur\AppData\Local\Temp\EAD7982.exe

C:\Users\Artur\AppData\Local\Temp\EAD7AD.exe

C:\Users\Artur\AppData\Local\Temp\EAD7CAD.exe

C:\Users\Artur\AppData\Local\Temp\EAD7DB7.exe

C:\Users\Artur\AppData\Local\Temp\EAD8084.exe

C:\Users\Artur\AppData\Local\Temp\EAD8371.exe

C:\Users\Artur\AppData\Local\Temp\EAD864F.exe

C:\Users\Artur\AppData\Local\Temp\EAD8803.exe

C:\Users\Artur\AppData\Local\Temp\EAD88BE.exe

C:\Users\Artur\AppData\Local\Temp\EAD895A.exe

C:\Users\Artur\AppData\Local\Temp\EAD8999.exe

C:\Users\Artur\AppData\Local\Temp\EAD8AC1.exe

C:\Users\Artur\AppData\Local\Temp\EAD8CF3.exe

C:\Users\Artur\AppData\Local\Temp\EAD8DEC.exe

C:\Users\Artur\AppData\Local\Temp\EAD8F82.exe

C:\Users\Artur\AppData\Local\Temp\EAD900E.exe

C:\Users\Artur\AppData\Local\Temp\EAD9240.exe

C:\Users\Artur\AppData\Local\Temp\EAD933.exe

C:\Users\Artur\AppData\Local\Temp\EAD94DF.exe

C:\Users\Artur\AppData\Local\Temp\EAD9655.exe

C:\Users\Artur\AppData\Local\Temp\EAD96E1.exe

C:\Users\Artur\AppData\Local\Temp\EAD972F.exe

C:\Users\Artur\AppData\Local\Temp\EAD973F.exe

C:\Users\Artur\AppData\Local\Temp\EAD97DB.exe

C:\Users\Artur\AppData\Local\Temp\EAD97FA.exe

C:\Users\Artur\AppData\Local\Temp\EAD9A2C.exe

C:\Users\Artur\AppData\Local\Temp\EAD9B25.exe

C:\Users\Artur\AppData\Local\Temp\EAD9B93.exe

C:\Users\Artur\AppData\Local\Temp\EAD9C0F.exe

C:\Users\Artur\AppData\Local\Temp\EAD9CEA.exe

C:\Users\Artur\AppData\Local\Temp\EAD9D57.exe

C:\Users\Artur\AppData\Local\Temp\EAD9DA5.exe

C:\Users\Artur\AppData\Local\Temp\EAD9DD4.exe

C:\Users\Artur\AppData\Local\Temp\EAD9E7F.exe

C:\Users\Artur\AppData\Local\Temp\EAD9F79.exe

C:\Users\Artur\AppData\Local\Temp\EAD9F89.exe

C:\Users\Artur\AppData\Local\Temp\EAD9FF6.exe

C:\Users\Artur\AppData\Local\Temp\EADA044.exe

C:\Users\Artur\AppData\Local\Temp\EADA092.exe

C:\Users\Artur\AppData\Local\Temp\EADA0B1.exe

C:\Users\Artur\AppData\Local\Temp\EADA0C1.exe

C:\Users\Artur\AppData\Local\Temp\EADA0C2.exe

C:\Users\Artur\AppData\Local\Temp\EADA13D.exe

C:\Users\Artur\AppData\Local\Temp\EADA15D.exe

C:\Users\Artur\AppData\Local\Temp\EADA1AB.exe

C:\Users\Artur\AppData\Local\Temp\EADA1AC.exe

C:\Users\Artur\AppData\Local\Temp\EADA1CA.exe

C:\Users\Artur\AppData\Local\Temp\EADA1D9.exe

C:\Users\Artur\AppData\Local\Temp\EADA37F.exe

C:\Users\Artur\AppData\Local\Temp\EADA3AD.exe

C:\Users\Artur\AppData\Local\Temp\EADA3CD.exe

C:\Users\Artur\AppData\Local\Temp\EADA3DC.exe

C:\Users\Artur\AppData\Local\Temp\EADA3FB.exe

C:\Users\Artur\AppData\Local\Temp\EADA3FC.exe

C:\Users\Artur\AppData\Local\Temp\EADA41B.exe

C:\Users\Artur\AppData\Local\Temp\EADA41C.exe

C:\Users\Artur\AppData\Local\Temp\EADA41D.exe

C:\Users\Artur\AppData\Local\Temp\EADA5FE.exe

C:\Users\Artur\AppData\Local\Temp\EADA62D.exe

C:\Users\Artur\AppData\Local\Temp\EADA65C.exe

C:\Users\Artur\AppData\Local\Temp\EADA6C9.exe

C:\Users\Artur\AppData\Local\Temp\EADA6CA.exe

C:\Users\Artur\AppData\Local\Temp\EADA727.exe

C:\Users\Artur\AppData\Local\Temp\EADA728.exe

C:\Users\Artur\AppData\Local\Temp\EADA755.exe

C:\Users\Artur\AppData\Local\Temp\EADA784.exe

C:\Users\Artur\AppData\Local\Temp\EADA7F1.exe

C:\Users\Artur\AppData\Local\Temp\EADA85F.exe

C:\Users\Artur\AppData\Local\Temp\EADA86E.exe

C:\Users\Artur\AppData\Local\Temp\EADA86F.exe

C:\Users\Artur\AppData\Local\Temp\EADA89D.exe

C:\Users\Artur\AppData\Local\Temp\EADA89E.exe

C:\Users\Artur\AppData\Local\Temp\EADA8EB.exe

C:\Users\Artur\AppData\Local\Temp\EADA90A.exe

C:\Users\Artur\AppData\Local\Temp\EADA929.exe

C:\Users\Artur\AppData\Local\Temp\EADA92A.exe

C:\Users\Artur\AppData\Local\Temp\EADA939.exe

C:\Users\Artur\AppData\Local\Temp\EADA949.exe

C:\Users\Artur\AppData\Local\Temp\EADA977.exe

C:\Users\Artur\AppData\Local\Temp\EADA9E5.exe

C:\Users\Artur\AppData\Local\Temp\EADAA04.exe

C:\Users\Artur\AppData\Local\Temp\EADAA23.exe

C:\Users\Artur\AppData\Local\Temp\EADAA52.exe

C:\Users\Artur\AppData\Local\Temp\EADAAAF.exe

C:\Users\Artur\AppData\Local\Temp\EADAADE.exe

C:\Users\Artur\AppData\Local\Temp\EADAB0D.exe

C:\Users\Artur\AppData\Local\Temp\EADAB1D.exe

C:\Users\Artur\AppData\Local\Temp\EADAB2C.exe

C:\Users\Artur\AppData\Local\Temp\EADAB2D.exe

C:\Users\Artur\AppData\Local\Temp\EADAB2E.exe

C:\Users\Artur\AppData\Local\Temp\EADAB3C.exe

C:\Users\Artur\AppData\Local\Temp\EADAB3D.exe

C:\Users\Artur\AppData\Local\Temp\EADAB5B.exe

C:\Users\Artur\AppData\Local\Temp\EADAB5C.exe

C:\Users\Artur\AppData\Local\Temp\EADABA9.exe

C:\Users\Artur\AppData\Local\Temp\EADABF7.exe

C:\Users\Artur\AppData\Local\Temp\EADAC07.exe

C:\Users\Artur\AppData\Local\Temp\EADAC16.exe

C:\Users\Artur\AppData\Local\Temp\EADAC26.exe

C:\Users\Artur\AppData\Local\Temp\EADAC27.exe

C:\Users\Artur\AppData\Local\Temp\EADAC45.exe

C:\Users\Artur\AppData\Local\Temp\EADAC55.exe

C:\Users\Artur\AppData\Local\Temp\EADAC83.exe

C:\Users\Artur\AppData\Local\Temp\EADAC84.exe

C:\Users\Artur\AppData\Local\Temp\EADACA3.exe

C:\Users\Artur\AppData\Local\Temp\EADACB2.exe

C:\Users\Artur\AppData\Local\Temp\EADAD5E.exe

C:\Users\Artur\AppData\Local\Temp\EADADBB.exe

C:\Users\Artur\AppData\Local\Temp\EADAE09.exe

C:\Users\Artur\AppData\Local\Temp\EADAE19.exe

C:\Users\Artur\AppData\Local\Temp\EADAE38.exe

C:\Users\Artur\AppData\Local\Temp\EADAE77.exe

C:\Users\Artur\AppData\Local\Temp\EADAED4.exe

C:\Users\Artur\AppData\Local\Temp\EADAEF3.exe

C:\Users\Artur\AppData\Local\Temp\EADAF22.exe

C:\Users\Artur\AppData\Local\Temp\EADAF61.exe

C:\Users\Artur\AppData\Local\Temp\EADAF70.exe

C:\Users\Artur\AppData\Local\Temp\EADAF9F.exe

C:\Users\Artur\AppData\Local\Temp\EADB00C.exe

C:\Users\Artur\AppData\Local\Temp\EADB06A.exe

C:\Users\Artur\AppData\Local\Temp\EADB089.exe

C:\Users\Artur\AppData\Local\Temp\EADB08A.exe

C:\Users\Artur\AppData\Local\Temp\EADB0B8.exe

C:\Users\Artur\AppData\Local\Temp\EADB0C7.exe

C:\Users\Artur\AppData\Local\Temp\EADB125.exe

C:\Users\Artur\AppData\Local\Temp\EADB192.exe

C:\Users\Artur\AppData\Local\Temp\EADB1D1.exe

C:\Users\Artur\AppData\Local\Temp\EADB1FF.exe

C:\Users\Artur\AppData\Local\Temp\EADB20F.exe

C:\Users\Artur\AppData\Local\Temp\EADB26D.exe

C:\Users\Artur\AppData\Local\Temp\EADB28C.exe

C:\Users\Artur\AppData\Local\Temp\EADB2E9.exe

C:\Users\Artur\AppData\Local\Temp\EADB309.exe

C:\Users\Artur\AppData\Local\Temp\EADB402.exe

C:\Users\Artur\AppData\Local\Temp\EADB403.exe

C:\Users\Artur\AppData\Local\Temp\EADB441.exe

C:\Users\Artur\AppData\Local\Temp\EADB460.exe

C:\Users\Artur\AppData\Local\Temp\EADB47F.exe

C:\Users\Artur\AppData\Local\Temp\EADB4CD.exe

C:\Users\Artur\AppData\Local\Temp\EADB4CE.exe

C:\Users\Artur\AppData\Local\Temp\EADB4CF.exe

C:\Users\Artur\AppData\Local\Temp\EADB4EC.exe

C:\Users\Artur\AppData\Local\Temp\EADB4ED.exe

C:\Users\Artur\AppData\Local\Temp\EADB51B.exe

C:\Users\Artur\AppData\Local\Temp\EADB53A.exe

C:\Users\Artur\AppData\Local\Temp\EADB5A7.exe

C:\Users\Artur\AppData\Local\Temp\EADB634.exe

C:\Users\Artur\AppData\Local\Temp\EADB635.exe

C:\Users\Artur\AppData\Local\Temp\EADB663.exe

C:\Users\Artur\AppData\Local\Temp\EADB691.exe

C:\Users\Artur\AppData\Local\Temp\EADB6B1.exe

C:\Users\Artur\AppData\Local\Temp\EADB6D0.exe

C:\Users\Artur\AppData\Local\Temp\EADB6DF.exe

C:\Users\Artur\AppData\Local\Temp\EADB70E.exe

C:\Users\Artur\AppData\Local\Temp\EADB73D.exe

C:\Users\Artur\AppData\Local\Temp\EADB74D.exe

C:\Users\Artur\AppData\Local\Temp\EADB76C.exe

C:\Users\Artur\AppData\Local\Temp\EADB7AA.exe

C:\Users\Artur\AppData\Local\Temp\EADB7D9.exe

C:\Users\Artur\AppData\Local\Temp\EADB808.exe

C:\Users\Artur\AppData\Local\Temp\EADB846.exe

C:\Users\Artur\AppData\Local\Temp\EADB885.exe

C:\Users\Artur\AppData\Local\Temp\EADB8D3.exe

C:\Users\Artur\AppData\Local\Temp\EADB8F2.exe

C:\Users\Artur\AppData\Local\Temp\EADB901.exe

C:\Users\Artur\AppData\Local\Temp\EADB902.exe

C:\Users\Artur\AppData\Local\Temp\EADB97E.exe

C:\Users\Artur\AppData\Local\Temp\EADB98E.exe

C:\Users\Artur\AppData\Local\Temp\EADB98F.exe

C:\Users\Artur\AppData\Local\Temp\EADB990.exe

C:\Users\Artur\AppData\Local\Temp\EADB9BD.exe

C:\Users\Artur\AppData\Local\Temp\EADBA0B.exe

C:\Users\Artur\AppData\Local\Temp\EADBA68.exe

C:\Users\Artur\AppData\Local\Temp\EADBA87.exe

C:\Users\Artur\AppData\Local\Temp\EADBAD5.exe

C:\Users\Artur\AppData\Local\Temp\EADBC2D.exe

C:\Users\Artur\AppData\Local\Temp\EADBC4C.exe

C:\Users\Artur\AppData\Local\Temp\EADBC7B.exe

C:\Users\Artur\AppData\Local\Temp\EADBC9A.exe

C:\Users\Artur\AppData\Local\Temp\EADBCC9.exe

C:\Users\Artur\AppData\Local\Temp\EADBCCA.exe

C:\Users\Artur\AppData\Local\Temp\EADBD45.exe

C:\Users\Artur\AppData\Local\Temp\EADBD74.exe

C:\Users\Artur\AppData\Local\Temp\EADBDB3.exe

C:\Users\Artur\AppData\Local\Temp\EADBDB4.exe

C:\Users\Artur\AppData\Local\Temp\EADBE9D.exe

C:\Users\Artur\AppData\Local\Temp\EADBECB.exe

C:\Users\Artur\AppData\Local\Temp\EADBF0A.exe

C:\Users\Artur\AppData\Local\Temp\EADBF67.exe

C:\Users\Artur\AppData\Local\Temp\EADBF77.exe

C:\Users\Artur\AppData\Local\Temp\EADBFE4.exe

C:\Users\Artur\AppData\Local\Temp\EADC013.exe

C:\Users\Artur\AppData\Local\Temp\EADC014.exe

C:\Users\Artur\AppData\Local\Temp\EADC051.exe

C:\Users\Artur\AppData\Local\Temp\EADC052.exe

C:\Users\Artur\AppData\Local\Temp\EADC071.exe

C:\Users\Artur\AppData\Local\Temp\EADC080.exe

C:\Users\Artur\AppData\Local\Temp\EADC0FD.exe

C:\Users\Artur\AppData\Local\Temp\EADC16A.exe

C:\Users\Artur\AppData\Local\Temp\EADC1C8.exe

C:\Users\Artur\AppData\Local\Temp\EADC1C9.exe

C:\Users\Artur\AppData\Local\Temp\EADC1E7.exe

C:\Users\Artur\AppData\Local\Temp\EADC254.exe

C:\Users\Artur\AppData\Local\Temp\EADC30F.exe

C:\Users\Artur\AppData\Local\Temp\EADC409.exe

C:\Users\Artur\AppData\Local\Temp\EADC40A.exe

C:\Users\Artur\AppData\Local\Temp\EADC419.exe

C:\Users\Artur\AppData\Local\Temp\EADC457.exe

C:\Users\Artur\AppData\Local\Temp\EADC476.exe

C:\Users\Artur\AppData\Local\Temp\EADC4D4.exe

C:\Users\Artur\AppData\Local\Temp\EADC503.exe

C:\Users\Artur\AppData\Local\Temp\EADC5CD.exe

C:\Users\Artur\AppData\Local\Temp\EADC679.exe

C:\Users\Artur\AppData\Local\Temp\EADC689.exe

C:\Users\Artur\AppData\Local\Temp\EADC715.exe

C:\Users\Artur\AppData\Local\Temp\EADC734.exe

C:\Users\Artur\AppData\Local\Temp\EADC753.exe

C:\Users\Artur\AppData\Local\Temp\EADC7FF.exe

C:\Users\Artur\AppData\Local\Temp\EADC87C.exe

C:\Users\Artur\AppData\Local\Temp\EADC8BA.exe

C:\Users\Artur\AppData\Local\Temp\EADC975.exe

C:\Users\Artur\AppData\Local\Temp\EADC995.exe

C:\Users\Artur\AppData\Local\Temp\EADCA40.exe

C:\Users\Artur\AppData\Local\Temp\EADCA6F.exe

C:\Users\Artur\AppData\Local\Temp\EADCA70.exe

C:\Users\Artur\AppData\Local\Temp\EADCACD.exe

C:\Users\Artur\AppData\Local\Temp\EADCB97.exe

C:\Users\Artur\AppData\Local\Temp\EADCC05.exe

C:\Users\Artur\AppData\Local\Temp\EADCEC3.exe

C:\Users\Artur\AppData\Local\Temp\EADCFAD.exe

C:\Users\Artur\AppData\Local\Temp\EADCFBC.exe

C:\Users\Artur\AppData\Local\Temp\EADD00A.exe

C:\Users\Artur\AppData\Local\Temp\EADD0D5.exe

C:\Users\Artur\AppData\Local\Temp\EADD3D1.exe

C:\Users\Artur\AppData\Local\Temp\EADD48D.exe

C:\Users\Artur\AppData\Local\Temp\EADD548.exe

C:\Users\Artur\AppData\Local\Temp\EADD577.exe

C:\Users\Artur\AppData\Local\Temp\EADD5C5.exe

C:\Users\Artur\AppData\Local\Temp\EADD5D4.exe

C:\Users\Artur\AppData\Local\Temp\EADD661.exe

C:\Users\Artur\AppData\Local\Temp\EADD670.exe

C:\Users\Artur\AppData\Local\Temp\EADD6BE.exe

C:\Users\Artur\AppData\Local\Temp\EADD6DE.exe

C:\Users\Artur\AppData\Local\Temp\EADD74B.exe

C:\Users\Artur\AppData\Local\Temp\EADD789.exe

C:\Users\Artur\AppData\Local\Temp\EADD806.exe

C:\Users\Artur\AppData\Local\Temp\EADD835.exe

C:\Users\Artur\AppData\Local\Temp\EADD8B1.exe

C:\Users\Artur\AppData\Local\Temp\EADD93E.exe

C:\Users\Artur\AppData\Local\Temp\EADD95D.exe

C:\Users\Artur\AppData\Local\Temp\EADD97C.exe

C:\Users\Artur\AppData\Local\Temp\EADDA85.exe

C:\Users\Artur\AppData\Local\Temp\EADDAA5.exe

C:\Users\Artur\AppData\Local\Temp\EADDAB4.exe

C:\Users\Artur\AppData\Local\Temp\EADDAE3.exe

C:\Users\Artur\AppData\Local\Temp\EADDB21.exe

C:\Users\Artur\AppData\Local\Temp\EADDB7F.exe

C:\Users\Artur\AppData\Local\Temp\EADDCF5.exe

C:\Users\Artur\AppData\Local\Temp\EADDDD0.exe

C:\Users\Artur\AppData\Local\Temp\EADDDEF.exe

C:\Users\Artur\AppData\Local\Temp\EADDE0E.exe

C:\Users\Artur\AppData\Local\Temp\EADDE9B.exe

C:\Users\Artur\AppData\Local\Temp\EADE011.exe

C:\Users\Artur\AppData\Local\Temp\EADE021.exe

C:\Users\Artur\AppData\Local\Temp\EADE08E.exe

C:\Users\Artur\AppData\Local\Temp\EADE0DC.exe

C:\Users\Artur\AppData\Local\Temp\EADE149.exe

C:\Users\Artur\AppData\Local\Temp\EADE197.exe

C:\Users\Artur\AppData\Local\Temp\EADE4F1.exe

C:\Users\Artur\AppData\Local\Temp\EADE520.exe

C:\Users\Artur\AppData\Local\Temp\EADE9B2.exe

C:\Users\Artur\AppData\Local\Temp\EADE9F0.exe

C:\Users\Artur\AppData\Local\Temp\EADEBD4.exe

C:\Users\Artur\AppData\Local\Temp\EADEC41.exe

C:\Users\Artur\AppData\Local\Temp\EADEC60.exe

C:\Users\Artur\AppData\Local\Temp\EADEC8F.exe

C:\Users\Artur\AppData\Local\Temp\EADED2B.exe

C:\Users\Artur\AppData\Local\Temp\EADEDC7.exe

C:\Users\Artur\AppData\Local\Temp\EADEE7F.exe

C:\Users\Artur\AppData\Local\Temp\EADEEFF.exe

C:\Users\Artur\AppData\Local\Temp\EADEF2E.exe

C:\Users\Artur\AppData\Local\Temp\EADEF3D.exe

C:\Users\Artur\AppData\Local\Temp\EADEFD.exe

C:\Users\Artur\AppData\Local\Temp\EADEFD9.exe

C:\Users\Artur\AppData\Local\Temp\EADF0C3.exe

C:\Users\Artur\AppData\Local\Temp\EADF121.exe

C:\Users\Artur\AppData\Local\Temp\EADF140.exe

C:\Users\Artur\AppData\Local\Temp\EADF18E.exe

C:\Users\Artur\AppData\Local\Temp\EADF18F.exe

C:\Users\Artur\AppData\Local\Temp\EADF1CD.exe

C:\Users\Artur\AppData\Local\Temp\EADF1FC.exe

C:\Users\Artur\AppData\Local\Temp\EADF269.exe

C:\Users\Artur\AppData\Local\Temp\EADF611.exe

C:\Users\Artur\AppData\Local\Temp\EADF660.exe

C:\Users\Artur\AppData\Local\Temp\EADF6AD.exe

C:\Users\Artur\AppData\Local\Temp\EADF7D5.exe

C:\Users\Artur\AppData\Local\Temp\EADF7D6.exe

C:\Users\Artur\AppData\Local\Temp\EADF804.exe

C:\Users\Artur\AppData\Local\Temp\EADF8A.exe

C:\Users\Artur\AppData\Local\Temp\EADF8BF.exe

C:\Users\Artur\AppData\Local\Temp\EADF96B.exe

C:\Users\Artur\AppData\Local\Temp\EADFC29.exe

C:\Users\Artur\AppData\Local\Temp\EADFC96.exe

C:\Users\Artur\AppData\Local\Temp\EADFCD4.exe

C:\Users\Artur\AppData\Local\Temp\EADFD61.exe

C:\Users\Artur\AppData\Local\Temp\EADFDAF.exe

C:\Users\Artur\AppData\Local\Temp\EADFDFD.exe

C:\Users\Artur\AppData\Local\Temp\EADFE5A.exe

C:\Users\Artur\AppData\Local\Temp\EADFEF6.exe

C:\Users\Artur\AppData\Local\Temp\EADFFC1.exe

C:\Users\Artur\AppData\Local\Temp\hp_251E.tmp.exe

C:\Users\Artur\AppData\Local\Temp\hp_BBD1.tmp.exe

C:\Users\Artur\AppData\Local\Temp\Incollector_instalator_sciagnij.exe

C:\Users\Artur\AppData\Local\Temp\SpOrder.dll

C:\Users\Artur\AppData\Local\Temp\ubi6211.tmp.exe

C:\Users\Artur\AppData\Local\Temp\ubi6F75.tmp.exe

C:\Users\Artur\AppData\Local\Temp\ubi9C6E.tmp.exe

C:\Users\Artur\AppData\Local\Temp\{15D042F0-920D-47DC-B59F-D6051976A828}.exe

C:\Users\Artur\AppData\Local\Temp\{6C45AB34-516E-402C-AC9E-7C1CF97CF978}-38.0.2125.101_37.0.2062.124_chrome_updater.exe

 

==================== Bamital & volsnap Check =================

 

(There is no automatic fix for files that do not pass verification.)

 

C:\Windows\System32\winlogon.exe => File is digitally signed

C:\Windows\System32\wininit.exe => File is digitally signed

C:\Windows\SysWOW64\wininit.exe => File is digitally signed

C:\Windows\explorer.exe => File is digitally signed

C:\Windows\SysWOW64\explorer.exe => File is digitally signed

C:\Windows\System32\svchost.exe => File is digitally signed

C:\Windows\SysWOW64\svchost.exe => File is digitally signed

C:\Windows\System32\services.exe => File is digitally signed

C:\Windows\System32\User32.dll => File is digitally signed

C:\Windows\SysWOW64\User32.dll => File is digitally signed

C:\Windows\System32\userinit.exe => File is digitally signed

C:\Windows\SysWOW64\userinit.exe => File is digitally signed

C:\Windows\System32\rpcss.dll => File is digitally signed

C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

 

LastRegBack: 2015-04-13 03:42

 

==================== End Of Log ============================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 0153262B)
Partition 1: (Not Active) - (Size=18 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=447.7 GB) - (Type=07 NTFS)

==================== End Of Log ============================


  • 0

#8 arturek32

arturek32

    Obserwator

  • 6 postów

Napisano 29 04 2015 - 15:12

HNMM SZUKAŁEM PO INTERNECIE ODPOWIEDZI NAJLEPSZA TO NOWA ZAINSTALOWANA MOZILLA CHIŃSKIE ZNAKI ZNIKLY X JUŻ TEZ SIĘ NIE POJAWIA na PRZEGLĄDARCE ZOBACZYMY ZA KILKA DNI NAJLEPIEJ ZAINSTALOWAĆ DODATEK BLOKOWANIE REKLAM I NIECHCIANYCH SKRYPTÓW OD RAZU POZDRAWIAM !!!!!!

-----------------------
JAK SIĘ CHCE TO SIĘ ZNAJDZIE A PO 2 NIE ŚCIAGAC GŁUPICH PROGRAMÓW ANTY WIRUSOWYCH SPY HUNTER ITP BO SAME MAJĄ TROJANY


POWINIENEM NOBLA DOSTAĆ :D ZA TO ^______________________^ albo część udziału ehhhhhhh

Użytkownik arturek32 edytował ten post 29 04 2015 - 15:19

  • 0

Zobacz więcej tematów z tagiem: wirus



Użytkownicy przeglądający ten temat: 0

0 użytkowników, 0 gości, 0 anonimowych