Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 10-05-2020 02 Uruchomiony przez Mateusz (10-05-2020 14:45:17) Run:4 Uruchomiony z C:\Users\Mateusz\Downloads Załadowane profile: Mateusz Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: EmptyTemp: HKU\S-1-5-21-330719071-74167495-820415541-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 Startup: C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2020-05-03] ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\Mateusz\AppData\Local\Facebook\Games\FacebookGameroom.exe (Brak pliku) BootExecute: autocheck autochk * sdnclean64.exe Task: {220A1FB2-EB8D-4DD3-AAAD-2BD2D19335BA} - System32\Tasks\Safer-Networking\Spybot Anti-Beacon\Refresh Anti-Beacon immunization => C:\Program Files (x86)\Safer-Networking Ltd\Spybot Anti-Beacon\Spybot3AntiBeacon.exe FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA CHR HKU\S-1-5-21-330719071-74167495-820415541-1001\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA Tcpip\..\Interfaces\{e0c57a6a-e5f9-4ed1-9e38-4a46e61f6595}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{e1505843-4d2e-4a70-a8ff-a7418a0b0ada}: [DhcpNameServer] 192.168.0.1 CHR Notifications: Default -> hxxps://indir.ltd; hxxps://ww3.ouo.today S1 jwxmwddg; \??\C:\WINDOWS\system32\drivers\jwxmwddg.sys [X] ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Brak pliku ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Brak pliku ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [490] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends\Apex Legends.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends\Ochrona danych osobowych i pliki cookie.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends\Pomoc techniczna.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends\Umowa użytkownika Electronic Arts.lnk C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk C:\Users\Mateusz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\AVG Secure Browser.lnk CMD: dir /a "C:\Program Files (x86)\Windows Multimedia Platform" CMD: dir /a "C:\Program Files\Windows Multimedia Platform" RemoveProxy: Hosts: ***************** Procesy zostały pomyślnie zamknięte. Błąd: (0) Nie udało się utworzyć punktu przywracania. "HKU\S-1-5-21-330719071-74167495-820415541-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoLowDiskSpaceChecks" => pomyślnie usunięto C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk => pomyślnie przeniesiono "C:\Users\Mateusz\AppData\Local\Facebook\Games\FacebookGameroom.exe" => nie znaleziono HKLM\System\CurrentControlSet\Control\Session Manager\\"BootExecute"="autocheck autochk *" => Wartość pomyślnie przywrócono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{220A1FB2-EB8D-4DD3-AAAD-2BD2D19335BA}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{220A1FB2-EB8D-4DD3-AAAD-2BD2D19335BA}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\Safer-Networking\Spybot Anti-Beacon\Refresh Anti-Beacon immunization => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot Anti-Beacon\Refresh Anti-Beacon immunization" => pomyślnie usunięto HKLM\SOFTWARE\Policies\Mozilla => pomyślnie usunięto HKLM\SOFTWARE\Policies\Google => pomyślnie usunięto HKU\S-1-5-21-330719071-74167495-820415541-1001\SOFTWARE\Policies\Google => pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e0c57a6a-e5f9-4ed1-9e38-4a46e61f6595}\\DhcpNameServer" => pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{e1505843-4d2e-4a70-a8ff-a7418a0b0ada}\\DhcpNameServer" => pomyślnie usunięto "Chrome Notifications" => pomyślnie usunięto HKLM\System\CurrentControlSet\Services\jwxmwddg => pomyślnie usunięto jwxmwddg => serwis pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => pomyślnie usunięto HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => pomyślnie usunięto HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => pomyślnie usunięto HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => pomyślnie usunięto "HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => pomyślnie usunięto HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => pomyślnie usunięto HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => pomyślnie usunięto HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => pomyślnie usunięto C:\Users\Public\Shared Files => ":VersionCache" ADS pomyślnie usunięto C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends\Apex Legends.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends\Ochrona danych osobowych i pliki cookie.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends\Pomoc techniczna.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends\Umowa użytkownika Electronic Arts.lnk => pomyślnie przeniesiono "C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk" => nie znaleziono C:\Users\Mateusz\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\AVG Secure Browser.lnk => pomyślnie przeniesiono ========= dir /a "C:\Program Files (x86)\Windows Multimedia Platform" ========= Volume in drive C has no label. Volume Serial Number is 8086-428F Directory of C:\Program Files (x86)\Windows Multimedia Platform 19.03.2020 13:11 . 19.03.2020 13:11 .. 19.03.2019 14:26 39˙720 sqmapi.dll 1 File(s) 39˙720 bytes 2 Dir(s) 26˙033˙156˙096 bytes free ========= Koniec CMD: ========= ========= dir /a "C:\Program Files\Windows Multimedia Platform" ========= Volume in drive C has no label. Volume Serial Number is 8086-428F Directory of C:\Program Files\Windows Multimedia Platform 19.03.2020 13:11 . 19.03.2020 13:11 .. 19.03.2019 14:26 47˙720 sqmapi.dll 1 File(s) 47˙720 bytes 2 Dir(s) 26˙033˙156˙096 bytes free ========= Koniec CMD: ========= ========= RemoveProxy: ========= HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => pomyślnie usunięto "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKU\S-1-5-21-330719071-74167495-820415541-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\S-1-5-21-330719071-74167495-820415541-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto ========= Koniec RemoveProxy: ========= C:\Windows\System32\Drivers\etc\hosts => pomyślnie przeniesiono Hosts pomyślnie przywrócono. =========== EmptyTemp: ========== BITS transfer queue => 8937472 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 57876165 B Java, Flash, Steam htmlcache => 243632535 B Windows/system/drivers => 32190070 B Edge => 54010 B Chrome => 379294156 B Firefox => 0 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 0 B NetworkService => 14528 B Mateusz => 97264515 B .NET v4.5 => 97264515 B .NET v4.5 Classic => 97264515 B RecycleBin => 5446 B EmptyTemp: => 966.8 MB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 14:45:49 ====