Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 14-11-2022 Uruchomiony przez Ja (15-11-2022 08:45:40) Run:1 Uruchomiony z C:\Users\Ja\Desktop\FRST Załadowane profile: Ja Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CreateRestorePoint: CloseProcesses: EmptyTemp: HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1 HKLM\...\Policies\Explorer: [NoPublishingWizard] 1 HKLM\...\Policies\Explorer: [NoDriveAutoRun-] 0 HKLM\...\Policies\Explorer: [NoDriveTypeAutoRun-] 0 HKLM\...\Policies\Explorer: [NoThumbnailCache] 0 HKLM\...\Policies\Explorer: [DisableThumbnailCache] 0 HKLM\...\Policies\Explorer: [NoRecentDocsNetHood] 0 HKLM\...\Policies\Explorer: [NoInstrumentation] 1 HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [LinkResolveIgnoreLinkInfo] 1 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [NoResolveSearch] 1 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [NoInternetOpenWith] 1 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [NoViewContextMenu] 0 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [NoInstrumentation] 1 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [NoDriveAutoRun-] 0 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [NoDriveTypeAutoRun-] 0 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [NoThumbnailCache] 0 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [DisableThumbnailCache] 0 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [NoWinkeys] 0 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [NoTrayContextMenu] 0 HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\...\Policies\Explorer: [NoSetTaskbar] 0 HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe /StartMinimized (Brak pliku) GroupPolicy: Ograniczenia - Chrome <==== UWAGA GroupPolicy\User: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Edge: Ograniczenia <==== UWAGA Task: {5EF5327F-55C8-4102-A643-27CF7C757442} - \Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 -> Brak pliku <==== UWAGA FF user.js: detected! => C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\fabeanz4.default-release-1-1666970706936\user.js [2022-11-11] FF user.js: detected! => C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\5dcjlmpp.default\user.js [2022-11-11] FF user.js: detected! => C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\mhsfiyes.default-release-1621145900393\user.js [2022-11-11] FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js [2022-02-24] <==== UWAGA (Linkuje do pliku *.cfg) FF ExtraCheck: C:\Program Files\mozilla firefox\bd_config.cfg [2022-02-24] <==== UWAGA CHR HKLM\...\Chrome\Extension: [klekeajafkkpokaofllcadenjdckhinm] CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb] CHR HKLM-x32\...\Chrome\Extension: [klekeajafkkpokaofllcadenjdckhinm] S3 mracsvc; C:\WINDOWS\System32\mracsvc.exe [26030880 2022-09-30] (My.Com B.V. -> My.com B.V.) S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv1.sys [25266488 2022-09-30] (My.Com B.V. -> My.com B.V.) U4 napagent; Brak ImagePath 2022-11-11 09:21 - 2022-11-11 09:21 - 000225678 __RSH C:\ProgramData\ntuser.pol AV: Spybot - Search and Destroy (Disabled - Out of date) {F77C7796-45C4-531E-0DAE-B4A8229B11C8} AV: ESET Security (Enabled - Up to date) {89B55CC4-3881-78B2-11E2-479AE0371896} AV: Bitdefender Antywirus (Enabled - Up to date) {BAD274F4-FA00-8560-1CDE-6C830442BEFA} AV: Kaspersky Internet Security (Enabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23} FW: Kaspersky Internet Security (Disabled) {774D7037-0984-41B0-3A87-5E88E680AD58} FW: Bitdefender Zapora sieciowa (Enabled) {82E9F5D1-B06F-8438-3781-C5B6FA91F981} FW: ESET Zapora (Disabled) {B18EDDE1-72EE-79EA-3ABD-EEAF1EE45FED} CustomCLSID: HKU\S-1-5-21-3113484431-2244672255-3145403253-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => Brak pliku AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [274] HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank BHO-x32: Brak nazwy -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> Brak pliku RemoveProxy: Hosts: ***************** Punkt przywracania został pomyślnie utworzony. Procesy zostały pomyślnie zamknięte. "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoInternetOpenWith" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoPublishingWizard" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoDriveAutoRun-" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoDriveTypeAutoRun-" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoThumbnailCache" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\DisableThumbnailCache" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoRecentDocsNetHood" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoInstrumentation" => pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => pomyślnie usunięto "HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Run\\OneDriveSetup" => pomyślnie usunięto "HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Run\\OneDriveSetup" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoLowDiskSpaceChecks" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\LinkResolveIgnoreLinkInfo" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoResolveSearch" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoInternetOpenWith" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoViewContextMenu" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoInstrumentation" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoDriveAutoRun-" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoDriveTypeAutoRun-" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoThumbnailCache" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\DisableThumbnailCache" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoWinkeys" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoTrayContextMenu" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoSetTaskbar" => pomyślnie usunięto "HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\\Synapse3" => pomyślnie usunięto C:\WINDOWS\system32\GroupPolicy\Machine => pomyślnie przeniesiono C:\WINDOWS\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => pomyślnie przeniesiono C:\WINDOWS\system32\GroupPolicy\User => pomyślnie przeniesiono C:\ProgramData\NTUSER.pol => pomyślnie przeniesiono HKLM\SOFTWARE\Policies\Microsoft\Edge => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5EF5327F-55C8-4102-A643-27CF7C757442}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5EF5327F-55C8-4102-A643-27CF7C757442}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864" => nie znaleziono C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\fabeanz4.default-release-1-1666970706936\user.js => pomyślnie przeniesiono C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\5dcjlmpp.default\user.js => pomyślnie przeniesiono C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\mhsfiyes.default-release-1621145900393\user.js => pomyślnie przeniesiono C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js => pomyślnie przeniesiono C:\Program Files\mozilla firefox\bd_config.cfg => pomyślnie przeniesiono HKLM\SOFTWARE\Google\Chrome\Extensions\klekeajafkkpokaofllcadenjdckhinm => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\klekeajafkkpokaofllcadenjdckhinm => pomyślnie usunięto HKLM\System\CurrentControlSet\Services\mracsvc => pomyślnie usunięto mracsvc => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\mracdrv => pomyślnie usunięto mracdrv => serwis pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\napagent" => pomyślnie usunięto napagent => serwis pomyślnie usunięto "C:\ProgramData\ntuser.pol" => nie znaleziono "AV: Spybot - Search and Destroy (Disabled - Out of date) {F77C7796-45C4-531E-0DAE-B4A8229B11C8}" => pomyślnie usunięto "AV: ESET Security (Enabled - Up to date) {89B55CC4-3881-78B2-11E2-479AE0371896}" => pomyślnie usunięto "AV: Bitdefender Antywirus (Enabled - Up to date) {BAD274F4-FA00-8560-1CDE-6C830442BEFA}" => pomyślnie usunięto "AV: Kaspersky Internet Security (Enabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23}" => pomyślnie usunięto "FW: Kaspersky Internet Security (Disabled) {774D7037-0984-41B0-3A87-5E88E680AD58}" => pomyślnie usunięto "FW: Bitdefender Zapora sieciowa (Enabled) {82E9F5D1-B06F-8438-3781-C5B6FA91F981}" => pomyślnie usunięto "FW: ESET Zapora (Disabled) {B18EDDE1-72EE-79EA-3ABD-EEAF1EE45FED}" => pomyślnie usunięto HKU\S-1-5-21-3113484431-2244672255-3145403253-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2} => pomyślnie usunięto C:\ProgramData\TEMP => ":5C321E34" ADS pomyślnie usunięto HKLM\Software\\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\Software\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} => nie znaleziono ========= RemoveProxy: ========= HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => pomyślnie usunięto HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\SOFTWARE\Policies\Microsoft\Internet Explorer => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\S-1-5-21-3113484431-2244672255-3145403253-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto ========= Koniec RemoveProxy: ========= C:\Windows\System32\Drivers\etc\hosts => pomyślnie przeniesiono Hosts pomyślnie przywrócono. =========== EmptyTemp: ========== FlushDNS => ukończone BITS transfer queue => 786432 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 10546308 B Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 48461494 B Windows/system/drivers => 1110281 B Edge => 0 B Chrome => 77513638 B Firefox => 29831972 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 36456 B NetworkService => 36456 B Ja => 168108413 B .NET v4.5 => 168108413 B .NET v4.5 Classic => 168108413 B RecycleBin => 0 B EmptyTemp: => 641.5 MB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 08:46:03 ====