Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 09-12-2020 Uruchomiony przez Mirek (10-12-2020 20:34:01) Run:1 Uruchomiony z C:\Users\Mirek\Desktop Załadowane profile: Mirek Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: EmptyTemp: (@ByELDI -> @ByELDI) [Brak podpisu cyfrowego] C:\Program Files\KMSpico\Service_KMS.exe HKU\S-1-5-21-3946908048-3976235628-1492576225-1000\...\MountPoints2: {e37437a8-be34-11e6-8e2e-20cf306baa2c} - E:\autorun.exe Task: {49CE676C-6BAD-4FF9-AD8C-2F15FB236340} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\Overseer.exe [1741416 2020-09-17] (Avast Software s.r.o. -> Avast Software) Task: {A43148C4-2798-4244-AB18-0432DCF813E6} - System32\Tasks\{913FFABF-B847-40A7-9A85-A0392B0033BE} => C:\Windows\system32\pcalua.exe -a C:\Users\Mirek\AppData\Local\Temp\7zO4F364B56\setup.exe -d C:\Users\Mirek\AppData\Local\Temp\7zO4F364B56\ <==== UWAGA Task: {BCCD94E7-44D4-4716-9F71-A50D2CFBD6F7} - System32\Tasks\{B65F59F6-BE2B-4394-B4FC-2ED3EC1F484C} => C:\Windows\system32\pcalua.exe -a C:\Users\Mirek\AppData\Local\Temp\7zO4115FA7A\setup.exe -d C:\Users\Mirek\AppData\Local\Temp\7zO4115FA7A\ <==== UWAGA Tcpip\..\Interfaces\{08CFCC45-31E4-495B-8505-B8044726ECC3}: [DhcpNameServer] 192.168.43.1 R2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [745664 2016-01-11] (@ByELDI -> @ByELDI) [Brak podpisu cyfrowego] U0 aswVmm; Brak ImagePath 2020-12-10 19:26 - 2016-08-16 21:07 - 000000000 ____D C:\Program Files\KMSpico 2019-02-19 13:25 - 2019-02-19 13:25 - 038966928 _____ (Adobe Systems Incorporated) C:\Program Files (x86)\AdbeRdr11000_pl_PL.exe ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku HKU\S-1-5-21-3946908048-3976235628-1492576225-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pl-pl/?ocid=iehp FirewallRules: [SPPSVC-In-TCP] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation) ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. C:\Program Files\KMSpico\Service_KMS.exe => Nie odnaleziono uruchomionego procesu HKU\S-1-5-21-3946908048-3976235628-1492576225-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e37437a8-be34-11e6-8e2e-20cf306baa2c} => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{49CE676C-6BAD-4FF9-AD8C-2F15FB236340}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{49CE676C-6BAD-4FF9-AD8C-2F15FB236340}" => pomyślnie usunięto C:\Windows\System32\Tasks\Avast Software\Overseer => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Avast Software\Overseer" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A43148C4-2798-4244-AB18-0432DCF813E6}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A43148C4-2798-4244-AB18-0432DCF813E6}" => pomyślnie usunięto C:\Windows\System32\Tasks\{913FFABF-B847-40A7-9A85-A0392B0033BE} => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{913FFABF-B847-40A7-9A85-A0392B0033BE}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BCCD94E7-44D4-4716-9F71-A50D2CFBD6F7}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BCCD94E7-44D4-4716-9F71-A50D2CFBD6F7}" => pomyślnie usunięto C:\Windows\System32\Tasks\{B65F59F6-BE2B-4394-B4FC-2ED3EC1F484C} => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B65F59F6-BE2B-4394-B4FC-2ED3EC1F484C}" => pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{08CFCC45-31E4-495B-8505-B8044726ECC3}\\DhcpNameServer" => pomyślnie usunięto HKLM\System\CurrentControlSet\Services\Service KMSELDI => pomyślnie usunięto Service KMSELDI => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\aswVmm => pomyślnie usunięto aswVmm => serwis pomyślnie usunięto C:\Program Files\KMSpico => pomyślnie przeniesiono C:\Program Files (x86)\AdbeRdr11000_pl_PL.exe => pomyślnie przeniesiono HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast => pomyślnie usunięto HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avast => pomyślnie usunięto "HKU\S-1-5-21-3946908048-3976235628-1492576225-1000\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\SPPSVC-In-TCP" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\SPPSVC-In-TCP-NoScope" => pomyślnie usunięto =========== EmptyTemp: ========== BITS transfer queue => 8388608 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 7909724 B Java, Flash, Steam htmlcache => 492 B Windows/system/drivers => 5927271 B Edge => 0 B Chrome => 8578805 B Firefox => 0 B Opera => 311774748 B Temp, IE cache, history, cookies, recent: Users => 0 B Default => 0 B Public => 0 B ProgramData => 0 B systemprofile => 18056 B systemprofile32 => 84284 B LocalService => 150512 B NetworkService => 225706 B Mirek => 11448994 B RecycleBin => 79149 B EmptyTemp: => 338.2 MB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 20:34:41 ====