Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 15-03-2017 Uruchomiony przez niko (13-04-2017 19:18:14) Run:2 Uruchomiony z C:\Users\niko\Downloads Załadowane profile: niko (Dostępne profile: niko) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** ShellIconOverlayIdentifiers: [.QMDeskTopGCIcon] -> {B7667919-3765-4815-A66D-98A09BE662D6} => C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QMGCShellExt64.dll -> Brak pliku ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => -> Brak pliku ShellIconOverlayIdentifiers: [KzShlobj] -> {AAA0C5B8-933F-4200-93AD-B143D7FFF9F2} => -> Brak pliku CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = BHO: Brak nazwy -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> Brak pliku BHO: ????????? -> {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} -> C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\TSWebMon64.dat => Brak pliku BHO-x32: Brak nazwy -> {50F4150A-48B2-417A-BE4C-C83F580FB904} -> Brak pliku BHO-x32: Brak nazwy -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> Brak pliku Toolbar: HKU\S-1-5-21-3651358100-1429554799-4116503857-1000 -> Brak nazwy - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Brak pliku S2 Dhrelrer; Brak ImagePath S2 Ekeh Updater; Brak ImagePath S2 Eruvwee; Brak ImagePath S2 Kajajugt Updater; Brak ImagePath S2 Kufhuo; Brak ImagePath S2 MagetytofishclnGhefocktotoge.exe; "C:\Program Files (x86)\Atubotckipi\MagetytofishclnGhefocktotoge.exe" {C25DA384-2010-45A4-A1ED-BFA540D4789B} {9DC74CD5-24EA-4ADE-9C42-608A8CE17116} [X] S2 Tiuauh; Brak ImagePath S3 VutjUbaweu; Brak ImagePath S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [485512 2016-12-12] (BitDefender S.R.L.) S3 gdrv; \??\C:\Windows\gdrv.sys [X] R0 flowhlp; C:\Windows\System32\drivers\flowhlp.dat [155168 2017-03-15] () [Brak podpisu cyfrowego] 2017-03-15 17:23 - 2017-03-15 17:23 - 00000000 ____D C:\Users\niko\AppData\Local\Avg 2017-03-15 17:23 - 2017-03-15 17:23 - 00000000 ____D C:\ProgramData\Avg 2017-03-15 15:43 - 2017-03-15 15:43 - 00155168 _____ C:\Windows\system32\Drivers\flowhlp.dat 2017-03-15 15:51 - 2017-03-15 15:51 - 00000000 ____D C:\Users\niko\AppData\Local\Nox 2017-03-15 15:43 - 2017-03-15 15:43 - 00000000 ____D C:\Program Files (x86)\FlowSprit 2017-04-13 13:09 - 2016-07-24 10:26 - 00000000 ____D C:\ProgramData\Lavasoft 2017-04-13 13:09 - 2016-04-17 21:53 - 00000000 ____D C:\AdwCleaner 2016-04-17 19:01 - 2016-04-17 19:01 - 0005120 _____ () C:\Users\niko\AppData\Roaming\GiftBag.db 2017-03-15 14:51 - 2017-03-15 15:08 - 0000115 _____ () C:\Users\niko\AppData\Roaming\LogFile.txt 2016-04-17 19:00 - 2016-04-17 19:00 - 0000000 _____ () C:\Users\niko\AppData\Roaming\svrupg.exe CustomCLSID: HKU\S-1-5-21-3651358100-1429554799-4116503857-1000_Classes\CLSID\{034DF736-A378-4292-ACAE-A561088999F5}\InprocServer32 -> C:\Users\niko\AppData\Local\PPTAssist\pptassist64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-3651358100-1429554799-4116503857-1000_Classes\CLSID\{1077138E-896C-445E-BD31-CFCFFA4636C4}\InprocServer32 -> C:\Users\niko\AppData\Local\PPTAssist\pptassist64.dll => Brak pliku Task: {00E36E03-8359-46A3-AD3B-465909F6A2A6} - System32\Tasks\Redywo => C:\PROGRA~1\Ekeh\Uosietta.bat <==== UWAGA Task: {039D6DCF-0850-435E-90D8-B17DD72C0870} - System32\Tasks\{26DD8030-38E1-4175-9A76-4CBE4A992146} => D:\Nowy folder (2)\GameforgeLive\GameforgeLive.exe Task: {25D956A7-6C30-4398-AF82-B2EBC31F9D95} - System32\Tasks\e-pity2015a_styczen => C:\Program Files (x86)\e-file\e-pity2015\Assets\signxml.exe Task: {2C43BD74-830C-4DDC-ADA4-73FD74E09524} - System32\Tasks\{851B85FA-CB50-4692-BE26-EB9549D53761} => D:\Nowy folder (2)\GameforgeLive\GameforgeLive.exe Task: {502EC042-098B-437E-A80E-F42E08B20659} - \ThunderMaster -> Brak pliku <==== UWAGA Task: {510AE649-A02C-4B72-B3B5-6B5370FD8440} - System32\Tasks\{3195DC96-2E9F-4309-93F0-1083C784CD23} => pcalua.exe -a C:\Users\niko\AppData\Local\Roblox\Versions\version-f8254f342fd444a6\RobloxStudioLauncherBeta.exe -c -uninstall Task: {53198E04-55AD-45BA-8336-D93D73FD3411} - System32\Tasks\{C0C59267-7C3A-46B2-8F87-330853D1BF50} => D:\Nowy folder (2)\GameforgeLive\GameforgeLive.exe Task: {5B109931-79AB-40D5-AC58-5D28A3D3D91D} - \nikoXystusDecibelsV2 -> Brak pliku <==== UWAGA Task: {5DD4BE8F-4919-4FC4-BFD8-E76798A62429} - System32\Tasks\{45EFBA1A-31DF-4992-A6AA-F81BD92A906A} => pcalua.exe -a "C:\Program Files (x86)\EasyHotspot\uninstaller.exe" -d "C:\Program Files (x86)\EasyHotspot" Task: {77918E54-4A7C-4539-AAF7-66F2B70375DA} - System32\Tasks\{DB03BAE8-4EA8-4920-966E-EBB715F48D92} => pcalua.exe -a "D:\Games\Might & Magic - Heroes 7\_Redist\dotnetfx35.exe" -d "D:\Games\Might & Magic - Heroes 7\_Redist" Task: {803CF758-E803-4AC7-97A6-D2E521FF9C1A} - \{0D7F7E47-0E0B-0E7D-0C11-0A7F7D0D110E} -> Brak pliku <==== UWAGA Task: {A43D0E55-D516-4B2F-AA09-2D1A74F0CD8A} - System32\Tasks\{52788278-E553-4B24-985A-0655F5844E53} => pcalua.exe -a "D:\Games\Might & Magic - Heroes 7\_Redist\vcredist_x64_2010_sp1_x64.exe" -d "D:\Games\Might & Magic - Heroes 7\_Redist" Task: {A8BB2116-697F-4C5A-908D-F016EF8A4063} - System32\Tasks\e-pity2015a_kwiecien => C:\Program Files (x86)\e-file\e-pity2015\Assets\signxml.exe Task: {AF59DB08-31CE-4276-B638-50A896C70ADC} - System32\Tasks\Uwewbiut => C:\PROGRA~1\Kajajugt\Eiomu.bat <==== UWAGA Task: {E66DAEA6-FD5C-4D48-8CFD-DE9AD8BCEB30} - System32\Tasks\{7FA15CCF-B939-4EF8-BCD8-6902EE8842D1} => pcalua.exe -a "C:\Program Files (x86)\EasyHotspot\uninstaller.exe" -d "C:\Program Files (x86)\EasyHotspot" Task: {E8FF351D-ECD4-4657-9BB9-FF2A1FDE9093} - System32\Tasks\PPTAssistantNotifyTask_niko => C:\Users\niko\AppData\Local\PPTAssist\notify.exe <==== UWAGA Task: {F726BD4B-550C-4C21-AF5F-EC87BA1CC3B7} - System32\Tasks\PPTAssistantUpdateTask_niko => C:\Users\niko\AppData\Local\PPTAssist\assistupdate.exe <==== UWAGA Task: {F796B354-1F87-4037-8A01-24483F1B27F7} - System32\Tasks\CMEClient => C:\Program Files (x86)\ChallengeMe.GG Client\ChallengeMeClient.exe Task: C:\Windows\Tasks\PPTAssistantNotifyTask_niko.job => C:\Users\niko\AppData\Local\PPTAssist\notify.exe <==== UWAGA Task: C:\Windows\Tasks\PPTAssistantUpdateTask_niko.job => C:\Users\niko\AppData\Local\PPTAssist\assistupdate.exe <==== UWAGA MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Update Notifier.lnk => C:\Windows\pss\Update Notifier.lnk.CommonStartup MSCONFIG\startupreg: QQPCTray => "C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCTRAY.EXE" /regrun /qqrepair MSCONFIG\startupreg: Discord => C:\Users\niko\AppData\Local\Discord\app-0.0.296\Discord.exe MSCONFIG\startupreg: spoolsv => D:\Program Files\svchost\spoolsv.exe C:\Windows\pss\Update Notifier.lnk.CommonStartup C:\Users\niko\AppData\Local\Discord C:\Program Files (x86)\Tencent D:\Program Files\svchost FirewallRules: [{A07CF0D2-FEFA-46BE-B1F4-6EC02035AD21}] => (Allow) C:\Users\niko\AppData\Roaming\UPUpdata\download\MiniThunderPlatform.exe FirewallRules: [{E7D389CF-FBF1-4824-8AA0-DEDF332F248A}] => (Allow) C:\Users\niko\AppData\Roaming\UPUpdata\download\MiniThunderPlatform.exe FirewallRules: [{D14D39F1-E096-4489-85F1-5891E4FC23D3}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCmgrInstallGuide.exe FirewallRules: [{0AE22A51-C6E5-438A-85A9-BA8356733CAB}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCTray.exe FirewallRules: [{AE7EE5E4-8BFC-4819-BA54-8CA284F240E2}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCMgr.exe FirewallRules: [{F267C2DC-9480-464E-9F06-A9816977D01F}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCRTP.exe FirewallRules: [{93088982-155B-4D10-896D-45BF0E982C15}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QMDL.exe FirewallRules: [{F276B2C2-DD21-4A58-B833-965518620C69}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\bugreport.exe FirewallRules: [{30DBEB07-BEDF-43CA-AB42-8F185EB18272}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCFileOpen.exe FirewallRules: [{4334EADA-C6DA-4A56-BAC8-7C51B6C985D7}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCLeakScan.exe FirewallRules: [{F0D5BEBD-A670-4761-9909-EFFAA1DA00E4}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPConfig.exe FirewallRules: [{D2A1AEFF-E827-4853-B129-0D142D676102}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCSoftMgr.exe FirewallRules: [{D8449327-B823-4A33-AACE-03CE101DAFED}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\plugins\QMNetMon\QQPCNetFlow.exe FirewallRules: [{D4455FFD-F06B-43F9-9F56-946A7B05D79E}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCBTU.exe FirewallRules: [{A542F4DA-88B6-47ED-8FC4-C2D518CC1CE9}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCClinic.exe FirewallRules: [{ADC1E2FF-0261-4CE0-AA3B-AA0530A24A50}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCLaunch.exe FirewallRules: [{266D8323-9BF1-4CFF-8CCF-040B04867EC0}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QMUpdate\QQPCMgrUpdate.exe FirewallRules: [{50AF1D86-2EB2-44D1-BA33-67FEBF06D203}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCSoftGame.exe FirewallRules: [{B5C1C58A-D9CC-417D-A190-AD0FBBC5FBCD}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCSysOptimize.exe FirewallRules: [{EACAC35E-FCDF-4A4B-B24D-086A9DF2A8D4}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCUpdateAVLib.exe FirewallRules: [{FFA3930C-055E-453B-ADDB-6C84066D271C}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQRepair.exe FirewallRules: [{90CE8116-A15E-43CE-A004-AC93102040D7}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\Uninst.exe FirewallRules: [{FC08F1C4-B46A-40C7-A6D4-E1B6C67FD38B}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe FirewallRules: [{C9600742-B458-4882-8778-D3F43AFC2A2D}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QQPCPatch.exe FirewallRules: [{260016EE-A272-42EB-981A-578257FD28A4}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\TpkUpdate.exe FirewallRules: [{E5192719-7200-4AC4-901E-3BE3292A46DE}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe FirewallRules: [{3046AD49-8EB6-4333-9C9A-C145E6A11210}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QMRouterMgr.exe FirewallRules: [{A0B7F9A2-45E6-48DB-A176-AA334E878F81}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QMAccountProtection.exe FirewallRules: [{04CB9434-21F2-440C-BE6D-7A9560924039}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\11.4.17339.217\QMAdBlock.exe FirewallRules: [TCP Query User{7F808C34-7792-4B7F-B327-9489F15BE42D}C:\users\niko\appdata\local\apps\2.0\9hey4573.ov2\qom0zbzc.3wl\leve..tion_3af41edd49c109a3_0000.0009_68082bad8b8cd4e1\tools\aria2-1.16.3-win-32bit-build1\aria2c.exe] => (Allow) C:\users\niko\appdata\local\apps\2.0\9hey4573.ov2\qom0zbzc.3wl\leve..tion_3af41edd49c109a3_0000.0009_68082bad8b8cd4e1\tools\aria2-1.16.3-win-32bit-build1\aria2c.exe FirewallRules: [UDP Query User{8711B9F0-CFE3-4820-8646-5539D011B9C9}C:\users\niko\appdata\local\apps\2.0\9hey4573.ov2\qom0zbzc.3wl\leve..tion_3af41edd49c109a3_0000.0009_68082bad8b8cd4e1\tools\aria2-1.16.3-win-32bit-build1\aria2c.exe] => (Allow) C:\users\niko\appdata\local\apps\2.0\9hey4573.ov2\qom0zbzc.3wl\leve..tion_3af41edd49c109a3_0000.0009_68082bad8b8cd4e1\tools\aria2-1.16.3-win-32bit-build1\aria2c.exe FirewallRules: [{42C1E54F-127A-484C-BCC6-C2426FEE3A8E}] => (Allow) C:\Program Files (x86)\LuDaShi\ComputerZTray.exe FirewallRules: [{197E8623-B5DB-4484-83A6-5D62C0AEC5B7}] => (Allow) C:\Program Files (x86)\LuDaShi\ComputerZTray.exe Hosts: EmptyTemp: ***************** HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\.QMDeskTopGCIcon => klucz pomyślnie usunięto HKCR\CLSID\{B7667919-3765-4815-A66D-98A09BE662D6} => klucz nie znaleziono. HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\GDriveSharedOverlay => klucz pomyślnie usunięto HKCR\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => klucz nie znaleziono. HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\KzShlobj => klucz pomyślnie usunięto HKCR\CLSID\{AAA0C5B8-933F-4200-93AD-B143D7FFF9F2} => klucz nie znaleziono. HKLM\SOFTWARE\Policies\Google => klucz pomyślnie usunięto HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} => klucz pomyślnie usunięto HKCR\CLSID\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} => klucz nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} => klucz pomyślnie usunięto HKCR\CLSID\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} => klucz nie znaleziono. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50F4150A-48B2-417A-BE4C-C83F580FB904} => niepowodzenie przy usuwaniu klucz. Odmowa dostępu. HKCR\Wow6432Node\CLSID\{50F4150A-48B2-417A-BE4C-C83F580FB904} => klucz nie znaleziono. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} => klucz pomyślnie usunięto HKCR\Wow6432Node\CLSID\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} => klucz nie znaleziono. HKU\S-1-5-21-3651358100-1429554799-4116503857-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Wartość nie znaleziono. HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => klucz nie znaleziono. Dhrelrer => serwis nie znaleziono. Ekeh Updater => serwis nie znaleziono. Eruvwee => serwis nie znaleziono. Kajajugt Updater => serwis nie znaleziono. Kufhuo => serwis nie znaleziono. MagetytofishclnGhefocktotoge.exe => serwis nie znaleziono. Tiuauh => serwis nie znaleziono. VutjUbaweu => serwis nie znaleziono. Trufos => serwis nie znaleziono. gdrv => serwis nie znaleziono. HKLM\System\CurrentControlSet\Services\flowhlp => klucz pomyślnie usunięto flowhlp => serwis pomyślnie usunięto "C:\Users\niko\AppData\Local\Avg" => nie znaleziono. "C:\ProgramData\Avg" => nie znaleziono. "C:\Windows\system32\Drivers\flowhlp.dat" => nie znaleziono. "C:\Users\niko\AppData\Local\Nox" => nie znaleziono. "C:\Program Files (x86)\FlowSprit" => nie znaleziono. "C:\ProgramData\Lavasoft" => nie znaleziono. "C:\AdwCleaner" => nie znaleziono. "C:\Users\niko\AppData\Roaming\GiftBag.db" => nie znaleziono. "C:\Users\niko\AppData\Roaming\LogFile.txt" => nie znaleziono. "C:\Users\niko\AppData\Roaming\svrupg.exe" => nie znaleziono. HKU\S-1-5-21-3651358100-1429554799-4116503857-1000_Classes\CLSID\{034DF736-A378-4292-ACAE-A561088999F5} => klucz nie znaleziono. HKU\S-1-5-21-3651358100-1429554799-4116503857-1000_Classes\CLSID\{1077138E-896C-445E-BD31-CFCFFA4636C4} => klucz nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{00E36E03-8359-46A3-AD3B-465909F6A2A6} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{00E36E03-8359-46A3-AD3B-465909F6A2A6} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\Redywo => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Redywo => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{039D6DCF-0850-435E-90D8-B17DD72C0870} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{039D6DCF-0850-435E-90D8-B17DD72C0870} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{26DD8030-38E1-4175-9A76-4CBE4A992146} => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{26DD8030-38E1-4175-9A76-4CBE4A992146} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{25D956A7-6C30-4398-AF82-B2EBC31F9D95} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{25D956A7-6C30-4398-AF82-B2EBC31F9D95} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\e-pity2015a_styczen => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e-pity2015a_styczen => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2C43BD74-830C-4DDC-ADA4-73FD74E09524} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2C43BD74-830C-4DDC-ADA4-73FD74E09524} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{851B85FA-CB50-4692-BE26-EB9549D53761} => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{851B85FA-CB50-4692-BE26-EB9549D53761} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{502EC042-098B-437E-A80E-F42E08B20659} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{502EC042-098B-437E-A80E-F42E08B20659} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ThunderMaster => klucz nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{510AE649-A02C-4B72-B3B5-6B5370FD8440} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{510AE649-A02C-4B72-B3B5-6B5370FD8440} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{3195DC96-2E9F-4309-93F0-1083C784CD23} => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{3195DC96-2E9F-4309-93F0-1083C784CD23} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{53198E04-55AD-45BA-8336-D93D73FD3411} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{53198E04-55AD-45BA-8336-D93D73FD3411} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{C0C59267-7C3A-46B2-8F87-330853D1BF50} => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C0C59267-7C3A-46B2-8F87-330853D1BF50} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5B109931-79AB-40D5-AC58-5D28A3D3D91D} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5B109931-79AB-40D5-AC58-5D28A3D3D91D} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\nikoXystusDecibelsV2 => klucz nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5DD4BE8F-4919-4FC4-BFD8-E76798A62429} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5DD4BE8F-4919-4FC4-BFD8-E76798A62429} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{45EFBA1A-31DF-4992-A6AA-F81BD92A906A} => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{45EFBA1A-31DF-4992-A6AA-F81BD92A906A} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{77918E54-4A7C-4539-AAF7-66F2B70375DA} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77918E54-4A7C-4539-AAF7-66F2B70375DA} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{DB03BAE8-4EA8-4920-966E-EBB715F48D92} => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{DB03BAE8-4EA8-4920-966E-EBB715F48D92} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{803CF758-E803-4AC7-97A6-D2E521FF9C1A} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{803CF758-E803-4AC7-97A6-D2E521FF9C1A} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{0D7F7E47-0E0B-0E7D-0C11-0A7F7D0D110E} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A43D0E55-D516-4B2F-AA09-2D1A74F0CD8A} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A43D0E55-D516-4B2F-AA09-2D1A74F0CD8A} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{52788278-E553-4B24-985A-0655F5844E53} => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{52788278-E553-4B24-985A-0655F5844E53} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A8BB2116-697F-4C5A-908D-F016EF8A4063} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A8BB2116-697F-4C5A-908D-F016EF8A4063} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\e-pity2015a_kwiecien => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e-pity2015a_kwiecien => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AF59DB08-31CE-4276-B638-50A896C70ADC} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AF59DB08-31CE-4276-B638-50A896C70ADC} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\Uwewbiut => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Uwewbiut => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E66DAEA6-FD5C-4D48-8CFD-DE9AD8BCEB30} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E66DAEA6-FD5C-4D48-8CFD-DE9AD8BCEB30} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{7FA15CCF-B939-4EF8-BCD8-6902EE8842D1} => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7FA15CCF-B939-4EF8-BCD8-6902EE8842D1} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E8FF351D-ECD4-4657-9BB9-FF2A1FDE9093} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E8FF351D-ECD4-4657-9BB9-FF2A1FDE9093} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\PPTAssistantNotifyTask_niko => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PPTAssistantNotifyTask_niko => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F726BD4B-550C-4C21-AF5F-EC87BA1CC3B7} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F726BD4B-550C-4C21-AF5F-EC87BA1CC3B7} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\PPTAssistantUpdateTask_niko => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\PPTAssistantUpdateTask_niko => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F796B354-1F87-4037-8A01-24483F1B27F7} => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F796B354-1F87-4037-8A01-24483F1B27F7} => klucz pomyślnie usunięto C:\Windows\System32\Tasks\CMEClient => nie znaleziono. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CMEClient => klucz pomyślnie usunięto C:\Windows\Tasks\PPTAssistantNotifyTask_niko.job => nie znaleziono. C:\Windows\Tasks\PPTAssistantUpdateTask_niko.job => nie znaleziono. HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Update Notifier.lnk => klucz pomyślnie usunięto C:\Windows\pss\Update Notifier.lnk.CommonStartup => nie znaleziono. HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ QQPCTray => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Discord => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\spoolsv => klucz pomyślnie usunięto "C:\Windows\pss\Update Notifier.lnk.CommonStartup" => nie znaleziono. "C:\Users\niko\AppData\Local\Discord" => nie znaleziono. "C:\Program Files (x86)\Tencent" => nie znaleziono. "D:\Program Files\svchost" => nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A07CF0D2-FEFA-46BE-B1F4-6EC02035AD21} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E7D389CF-FBF1-4824-8AA0-DEDF332F248A} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D14D39F1-E096-4489-85F1-5891E4FC23D3} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0AE22A51-C6E5-438A-85A9-BA8356733CAB} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AE7EE5E4-8BFC-4819-BA54-8CA284F240E2} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F267C2DC-9480-464E-9F06-A9816977D01F} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{93088982-155B-4D10-896D-45BF0E982C15} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F276B2C2-DD21-4A58-B833-965518620C69} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{30DBEB07-BEDF-43CA-AB42-8F185EB18272} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4334EADA-C6DA-4A56-BAC8-7C51B6C985D7} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F0D5BEBD-A670-4761-9909-EFFAA1DA00E4} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D2A1AEFF-E827-4853-B129-0D142D676102} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D8449327-B823-4A33-AACE-03CE101DAFED} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D4455FFD-F06B-43F9-9F56-946A7B05D79E} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A542F4DA-88B6-47ED-8FC4-C2D518CC1CE9} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{ADC1E2FF-0261-4CE0-AA3B-AA0530A24A50} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{266D8323-9BF1-4CFF-8CCF-040B04867EC0} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{50AF1D86-2EB2-44D1-BA33-67FEBF06D203} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B5C1C58A-D9CC-417D-A190-AD0FBBC5FBCD} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EACAC35E-FCDF-4A4B-B24D-086A9DF2A8D4} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FFA3930C-055E-453B-ADDB-6C84066D271C} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{90CE8116-A15E-43CE-A004-AC93102040D7} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FC08F1C4-B46A-40C7-A6D4-E1B6C67FD38B} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C9600742-B458-4882-8778-D3F43AFC2A2D} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{260016EE-A272-42EB-981A-578257FD28A4} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E5192719-7200-4AC4-901E-3BE3292A46DE} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3046AD49-8EB6-4333-9C9A-C145E6A11210} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A0B7F9A2-45E6-48DB-A176-AA334E878F81} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{04CB9434-21F2-440C-BE6D-7A9560924039} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7F808C34-7792-4B7F-B327-9489F15BE42D}C:\users\niko\appdata\local\apps\2.0\9hey4573.ov2\qom0zbzc.3wl\leve..tion_3af41edd49c109a3_0000.0009_68082bad8b8cd4e1\tools\aria2-1.16.3-win-32bit-build1\aria2c.exe => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8711B9F0-CFE3-4820-8646-5539D011B9C9}C:\users\niko\appdata\local\apps\2.0\9hey4573.ov2\qom0zbzc.3wl\leve..tion_3af41edd49c109a3_0000.0009_68082bad8b8cd4e1\tools\aria2-1.16.3-win-32bit-build1\aria2c.exe => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{42C1E54F-127A-484C-BCC6-C2426FEE3A8E} => Wartość nie znaleziono. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{197E8623-B5DB-4484-83A6-5D62C0AEC5B7} => Wartość nie znaleziono. C:\Windows\System32\Drivers\etc\hosts => pomyślnie przeniesiono Hosts pomyślnie przywrócono. =========== EmptyTemp: ========== BITS transfer queue => 8388608 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 5501310 B Java, Flash, Steam htmlcache => 21634940 B Windows/system/drivers => 3515 B Edge => 0 B Chrome => 0 B Firefox => 0 B Opera => 24148268 B Temp, IE cache, history, cookies, recent: Users => 0 B Default => 0 B Public => 0 B ProgramData => 0 B systemprofile => 424 B systemprofile32 => 0 B LocalService => 66228 B NetworkService => 0 B niko => 2082768784 B RecycleBin => 0 B EmptyTemp: => 2 GB danych tymczasowych Usunięto. ================================ Rezultat przenoszenia plików przy restarcie (Tryb startu: Normal) (Data i godzina: 13-04-2017 19:23:34) Rezultat usuwania kluczy przy restarcie: HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{50F4150A-48B2-417A-BE4C-C83F580FB904} => klucz pomyślnie usunięto ==== Koniec Fixlog 19:23:34 ====