Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 05-08-2019 Uruchomiony przez Anna (07-08-2019 08:31:18) Run:2 Uruchomiony z D:\Tools Załadowane profile: Anna (Dostępne profile: Anna) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: EmptyTemp: FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA Task: {256130B0-ECA4-4545-ADBF-EE86BEFA6A5E} - System32\Tasks\Opera scheduled Autoupdate 1447255967 => C:\Program Files (x86)\Opera\launcher.exe [1252440 2019-03-28] (Opera Software AS -> Opera Software) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Tcpip\..\Interfaces\{472055e2-3c5d-458f-950f-db573a0ec914}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{90e7bf70-b825-4428-bbad-5726f43a8308}: [DhcpNameServer] 192.168.2.8 HKU\S-1-5-21-4254136652-4004266533-809866772-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nav-pl.com/ HKU\S-1-5-21-4254136652-4004266533-809866772-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB SearchScopes: HKU\S-1-5-21-4254136652-4004266533-809866772-1001 -> DefaultScope {087B6495-B8CF-4677-907C-4ED6A2664202} URL = hxxp://www.nav-pl.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-4254136652-4004266533-809866772-1001 -> {087B6495-B8CF-4677-907C-4ED6A2664202} URL = hxxp://www.nav-pl.com/search?q={searchTerms} BHO: STATISTICA Browser Helper -> {990A8747-93BF-4EF7-B72E-94A6884B98C2} -> C:\Program Files\Dell\Statistica 13\StaBHO.dll [2016-06-20] (Dell Inc.) [Brak podpisu cyfrowego] BHO: Brak nazwy -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> Brak pliku BHO-x32: STATISTICA Browser Helper -> {990A8747-93BF-4EF7-B72E-94A6884B98C2} -> C:\Program Files\Dell\Statistica 13\Support\StaBHO.dll [2016-06-19] (Dell Inc.) [Brak podpisu cyfrowego] BHO-x32: Brak nazwy -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> Brak pliku Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - Brak pliku CHR HomePage: Default -> hxxp://www.nav-pl.com/ CHR StartupUrls: Default -> "hxxp://www.nav-pl.com/" CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx S3 AvastWscReporter; "C:\Program Files\AVAST Software\Avast\wsc_proxy.exe" /runassvc [X] 2018-11-30 11:47 - 2019-01-06 16:10 - 000000093 _____ () C:\Users\Anna\AppData\Roaming\sp_data.sys ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku FirewallRules: [{C876649C-DA63-407B-8E24-C3EB09FF8AD2}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Brak pliku FirewallRules: [{DAD306C7-E28A-427D-9B36-BDC5C4116721}] => (Allow) D:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Brak pliku FirewallRules: [{D863FC09-41B2-49CB-A73C-CF701DEFA282}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe Brak pliku FirewallRules: [{9FF28AA5-8828-48D9-A89B-9DEDF7C73A7D}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe Brak pliku FirewallRules: [{ACDDFA73-0176-46B6-90A8-35D80F93E4EC}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe Brak pliku FirewallRules: [{C5E96523-F729-45C8-A2B2-B037131909F4}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe Brak pliku FirewallRules: [{E2230228-7651-488D-AFE1-D59284115EEE}] => (Allow) C:\Program Files (x86)\Opera\48.0.2685.52\opera.exe Brak pliku C:\Users\Anna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\McAfee WebAdvisor.lnk RemoveProxy: ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. HKLM\SOFTWARE\Policies\Mozilla => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{256130B0-ECA4-4545-ADBF-EE86BEFA6A5E}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{256130B0-ECA4-4545-ADBF-EE86BEFA6A5E}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1447255967 => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Opera scheduled Autoupdate 1447255967" => pomyślnie usunięto C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => pomyślnie przeniesiono "HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{472055e2-3c5d-458f-950f-db573a0ec914}\\DhcpNameServer" => pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{90e7bf70-b825-4428-bbad-5726f43a8308}\\DhcpNameServer" => pomyślnie usunięto HKU\S-1-5-21-4254136652-4004266533-809866772-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKU\S-1-5-21-4254136652-4004266533-809866772-1001\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono "HKU\S-1-5-21-4254136652-4004266533-809866772-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto HKU\S-1-5-21-4254136652-4004266533-809866772-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{087B6495-B8CF-4677-907C-4ED6A2664202} => pomyślnie usunięto HKLM\Software\Classes\CLSID\{087B6495-B8CF-4677-907C-4ED6A2664202} => nie znaleziono HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{990A8747-93BF-4EF7-B72E-94A6884B98C2} => pomyślnie usunięto HKLM\Software\Classes\CLSID\{990A8747-93BF-4EF7-B72E-94A6884B98C2} => pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => pomyślnie usunięto HKLM\Software\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => nie znaleziono HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{990A8747-93BF-4EF7-B72E-94A6884B98C2} => pomyślnie usunięto HKLM\Software\Wow6432Node\Classes\CLSID\{990A8747-93BF-4EF7-B72E-94A6884B98C2} => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => pomyślnie usunięto HKLM\Software\Wow6432Node\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => nie znaleziono HKLM\Software\Classes\PROTOCOLS\Filter\application/x-mfe-ipt => pomyślnie usunięto HKLM\Software\Classes\CLSID\{3EF5086B-5478-4598-A054-786C45D75692} => nie znaleziono "Chrome HomePage" => pomyślnie usunięto "Chrome StartupUrls" => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => pomyślnie usunięto HKLM\System\CurrentControlSet\Services\AvastWscReporter => pomyślnie usunięto AvastWscReporter => serwis pomyślnie usunięto C:\Users\Anna\AppData\Roaming\sp_data.sys => pomyślnie przeniesiono HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => pomyślnie usunięto HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => nie znaleziono HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => pomyślnie usunięto HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => nie znaleziono "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C876649C-DA63-407B-8E24-C3EB09FF8AD2}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DAD306C7-E28A-427D-9B36-BDC5C4116721}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D863FC09-41B2-49CB-A73C-CF701DEFA282}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9FF28AA5-8828-48D9-A89B-9DEDF7C73A7D}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{ACDDFA73-0176-46B6-90A8-35D80F93E4EC}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C5E96523-F729-45C8-A2B2-B037131909F4}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E2230228-7651-488D-AFE1-D59284115EEE}" => pomyślnie usunięto C:\Users\Anna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\McAfee WebAdvisor.lnk => pomyślnie przeniesiono ========= RemoveProxy: ========= "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKU\S-1-5-21-4254136652-4004266533-809866772-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\S-1-5-21-4254136652-4004266533-809866772-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto ========= Koniec RemoveProxy: ========= =========== EmptyTemp: ========== BITS transfer queue => 12607488 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 79603316 B Java, Flash, Steam htmlcache => 29078028 B Windows/system/drivers => 696466 B Edge => 48996886 B Chrome => 441252680 B Firefox => 0 B Opera => 73438002 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 51214 B LocalService => 0 B NetworkService => 32930 B NetworkService => 0 B Anna => 104932109 B RecycleBin => 108 B EmptyTemp: => 754.1 MB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 08:40:46 ====