:OTL
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btfilter.sys -- (BtFilter)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btath_rcp.sys -- (BTATH_RCP)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btath_lwflt.sys -- (BTATH_LWFLT)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btath_hcrp.sys -- (BTATH_HCRP)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btath_bus.sys -- (BTATH_BUS)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\drivers\btath_a2dp.sys -- (BTATH_A2DP)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btath_flt.sys -- (AthBTPort)
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
Dostępne tylko dla zarejestrowanych użytkowników{searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
IE - HKU\S-1-5-21-949604294-1122213028-3298125209-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
Dostępne tylko dla zarejestrowanych użytkownikówIE - HKU\S-1-5-21-949604294-1122213028-3298125209-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
Dostępne tylko dla zarejestrowanych użytkownikówIE - HKU\S-1-5-21-949604294-1122213028-3298125209-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.135\npGoogleUpdate3.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
[2013-05-03 22:44:33 | 000,098,992 | ---- | C] (Kaspersky Lab, GERT) -- C:\Windows\System32\drivers\96662736.sys
[2013-04-28 22:28:13 | 000,000,000 | ---D | C] -- C:\Users\Żelka\AppData\Local\{AF2A508A-0DF9-49B7-85E5-67B8EC5E2C9D}
[2013-04-28 22:28:13 | 000,000,000 | ---D | C] -- C:\Users\Żelka\AppData\Local\{4390B998-04DF-4144-91F7-C7B3778C6178}
[2013-05-01 23:06:28 | 000,000,017 | ---- | M] () -- C:\Windows\System32\shortcut_ex.dat
[2013-03-03 09:10:29 | 000,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\TuneUp Software
[2013-03-03 09:10:29 | 000,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\TuneUp Software
[2013-01-24 12:00:26 | 000,000,000 | ---D | M] -- C:\Users\Żelka\AppData\Roaming\TuneUp Software
:Services
gupdate
gupdatem
:Files
C:\Program Files\Google\Update
C:\Windows\tasks\*.*
:Commands
[clearallrestorepoints]
[emptytemp]