Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 06-06-2020 Uruchomiony przez Magda (20-06-2020 13:26:53) Run:2 Uruchomiony z C:\Users\Magda\Desktop Załadowane profile: Magda Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CreateRestorePoint: CMD: reg query "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options" /s ***************** Punkt przywracania został pomyślnie utworzony. ========= reg query "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options" /s ========= HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AcroRd32.exe UseFilter REG_DWORD 0x1 DisableExceptionChainValidation REG_DWORD 0x0 MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AcroRd32.exe\615be030_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files (x86)\adobe\acrobat reader dc\reader\acrord32.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AcroRd32Info.exe DisableExceptionChainValidation REG_DWORD 0x0 MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DllNXOptions mscoree.dll REG_DWORD 0x1 mscorwks.dll REG_DWORD 0x1 mso.dll REG_DWORD 0x1 msjava.dll REG_DWORD 0x1 msci_uno.dll REG_DWORD 0x1 jvm.dll REG_DWORD 0x1 jvm_g.dll REG_DWORD 0x1 javai.dll REG_DWORD 0x1 vb40032.dll REG_DWORD 0x1 vbe6.dll REG_DWORD 0x1 ums.dll REG_DWORD 0x1 main123w.dll REG_DWORD 0x1 udtapi.dll REG_DWORD 0x1 mscorsvr.dll REG_DWORD 0x1 eMigrationmmc.dll REG_DWORD 0x1 eProcedureMMC.dll REG_DWORD 0x1 eQueryMMC.dll REG_DWORD 0x1 EncryptPatchVer.dll REG_DWORD 0x1 Cleanup.dll REG_DWORD 0x1 divx.dll REG_DWORD 0x1 divxdec.ax REG_DWORD 0x1 fullsoft.dll REG_DWORD 0x1 NSWSTE.dll REG_DWORD 0x1 ASSTE.dll REG_DWORD 0x1 NPMLIC.dll REG_DWORD 0x1 PMSTE.dll REG_DWORD 0x1 AVSTE.dll REG_DWORD 0x1 NAVOPTRF.dll REG_DWORD 0x1 DRMINST.dll REG_DWORD 0x1 TFDTCTT8.dll REG_DWORD 0x1 DJSMAR00.dll REG_DWORD 0x1 xlmlEN.dll REG_DWORD 0x1 ISSTE.dll REG_DWORD 0x1 symlcnet.dll REG_DWORD 0x1 ppw32hlp.dll REG_DWORD 0x1 Apitrap.dll REG_DWORD 0x1 Vegas60k.dll REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\excel.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\excel.exe\be5b9a08_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\office14\excel.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashPlayerApp.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashPlayerPlugin_32_0_0_363.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashPlayerUpdateService.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil32_29_0_0_113_pepper.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil32_32_0_0_363_Plugin.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil64_29_0_0_113_pepper.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FlashUtil64_32_0_0_363_Plugin.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GoogleUpdate.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\groove.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\groove.exe\be5b9a08_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\office14\groove.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IEInstal.exe ExecuteOptions REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\infopath.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\infopath.exe\be5b9a08_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\office14\infopath.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\misc.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\misc.exe\670ca995_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\windows\installer\{90140000-0011-0000-1000-0000000ff1ce}\misc.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msaccess.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msaccess.exe\be5b9a08_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\office14\msaccess.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msoxmled.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msoxmled.exe\a750c0ed_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\common files\microsoft shared\office14\msoxmled.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mspub.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mspub.exe\be5b9a08_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\office14\mspub.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mstore.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mstore.exe\be5b9a08_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\office14\mstore.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ois.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ois.exe\be5b9a08_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\office14\ois.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\onenote.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\onenote.exe\be5b9a08_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\office14\onenote.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\outlook.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\outlook.exe\be5b9a08_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\office14\outlook.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\powerpnt.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\powerpnt.exe\be5b9a08_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\office14\powerpnt.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RdrCEF.exe DisableExceptionChainValidation REG_DWORD 0x0 MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RdrServicesUpdater.exe DisableExceptionChainValidation REG_DWORD 0x0 MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sidebar.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sidebar.exe\feaae660_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\windows sidebar\sidebar.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\winword.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\winword.exe\be5b9a08_PD Debugger REG_SZ "C:\Program Files (x86)\AVG\AVG TuneUp\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\office14\winword.exe ========= Koniec CMD: ========= ==== Koniec Fixlog 13:27:13 ====