Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 14-03-2021 Uruchomiony przez danie (16-03-2021 23:05:13) Run:1 Uruchomiony z C:\Users\danie\Downloads Załadowane profile: defaultuser0 & danie Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: EmptyTemp: HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\...\MountPoints2: {dd8bf20e-dcf8-11e7-83dc-e4a7a0b87ae9} - "E:\SETUP.EXE" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk [2021-03-15] ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (Brak pliku) BootExecute: autocheck autochk * sdnclean64.exe HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA Task: {30106F0A-0A12-4E33-9157-732A69D8EAE1} - \Microsoft\Windows\UNP\RunCampaignManager -> Brak pliku <==== UWAGA Task: {396F5678-EF10-47ED-BD9B-CC249701A3E5} - System32\Tasks\App Explorer => C:\Users\danie\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe [7025560 2018-05-29] (SweetLabs Inc. -> SweetLabs, Inc) <==== UWAGA Task: {4F3A5196-694D-4EA0-B577-865E044F45DF} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\Opera scheduled Autoupdate 1582567237" /ENABLE Task: {65C61F70-7FCC-4C2B-834E-5D69A2275182} - System32\Tasks\Opera scheduled Autoupdate 1582567237 => C:\Users\danie\AppData\Local\Programs\Opera\launcher.exe [1793688 2021-03-11] (Opera Software AS -> Opera Software) Tcpip\..\Interfaces\{09cf8f16-7481-4e77-b764-e49cfd8267a7}: [DhcpNameServer] 192.168.178.1 8.8.8.8 Tcpip\..\Interfaces\{439113ed-f6e6-43c8-94ec-7f9524d7a156}: [DhcpNameServer] 192.168.1.1 OPR Extension: (Rich Hints Agent) - C:\Users\danie\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-02-24] S4 McAfee WebAdvisor; "C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe" [X] ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo17win10.msn.com/?pc=LCTE HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com SearchScopes: HKU\S-1-5-21-2794851035-1582714509-3820221992-1001 -> DefaultScope {C8944E69-C014-40E0-B606-58FB2C773D18} URL = SearchScopes: HKU\S-1-5-21-2794851035-1582714509-3820221992-1001 -> {C8944E69-C014-40E0-B606-58FB2C773D18} URL = FirewallRules: [TCP Query User{76CAC2BA-9911-4AEC-AF2E-B167B5A74421}C:\users\danie\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Allow) C:\users\danie\appdata\local\programs\opera\74.0.3911.160\opera.exe => Brak pliku FirewallRules: [UDP Query User{2352D0FC-EA76-498F-93DF-37D799E9A648}C:\users\danie\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Allow) C:\users\danie\appdata\local\programs\opera\74.0.3911.160\opera.exe => Brak pliku RemoveProxy: Hosts: ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{dd8bf20e-dcf8-11e7-83dc-e4a7a0b87ae9} => pomyślnie usunięto C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk => pomyślnie przeniesiono "ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (Brak pliku)" => nie znaleziono HKLM\System\CurrentControlSet\Control\Session Manager\\"BootExecute"="autocheck autochk *" => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Policies\Mozilla => pomyślnie usunięto HKLM\SOFTWARE\Policies\Google => pomyślnie usunięto HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\SOFTWARE\Policies\Google => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{30106F0A-0A12-4E33-9157-732A69D8EAE1}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{30106F0A-0A12-4E33-9157-732A69D8EAE1}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => nie znaleziono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{396F5678-EF10-47ED-BD9B-CC249701A3E5}" => nie znaleziono "C:\WINDOWS\System32\Tasks\App Explorer" => nie znaleziono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\App Explorer" => nie znaleziono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{4F3A5196-694D-4EA0-B577-865E044F45DF}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4F3A5196-694D-4EA0-B577-865E044F45DF}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AVAST Software\Gaming mode Task Scheduler recovery" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{65C61F70-7FCC-4C2B-834E-5D69A2275182}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65C61F70-7FCC-4C2B-834E-5D69A2275182}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1582567237 => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Opera scheduled Autoupdate 1582567237" => pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{09cf8f16-7481-4e77-b764-e49cfd8267a7}\\DhcpNameServer" => pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{439113ed-f6e6-43c8-94ec-7f9524d7a156}\\DhcpNameServer" => pomyślnie usunięto OPR Extension: (Rich Hints Agent) - C:\Users\danie\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-02-24] => Błąd: Nie znaleziono automatycznej naprawy dla tego wejścia. HKLM\System\CurrentControlSet\Services\McAfee WebAdvisor => pomyślnie usunięto McAfee WebAdvisor => serwis pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => pomyślnie usunięto HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => pomyślnie usunięto HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\Software\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\Software\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono "HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\Software\Microsoft\Internet Explorer\Main\\Secondary Start Pages" => pomyślnie usunięto "HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C8944E69-C014-40E0-B606-58FB2C773D18} => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{76CAC2BA-9911-4AEC-AF2E-B167B5A74421}C:\users\danie\appdata\local\programs\opera\74.0.3911.160\opera.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2352D0FC-EA76-498F-93DF-37D799E9A648}C:\users\danie\appdata\local\programs\opera\74.0.3911.160\opera.exe" => pomyślnie usunięto ========= RemoveProxy: ========= "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKU\S-1-5-21-2794851035-1582714509-3820221992-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\S-1-5-21-2794851035-1582714509-3820221992-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\S-1-5-21-2794851035-1582714509-3820221992-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto ========= Koniec RemoveProxy: ========= C:\Windows\System32\Drivers\etc\hosts => pomyślnie przeniesiono Hosts pomyślnie przywrócono. =========== EmptyTemp: ========== BITS transfer queue => 11034624 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 24285028 B Java, Flash, Steam htmlcache => 104184062 B Windows/system/drivers => 5518748 B Edge => 11038132 B Chrome => 45233048 B Firefox => 0 B Opera => 26110956 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 14660 B NetworkService => 152491302 B defaultuser0 => 152491302 B danie => 661220874 B RecycleBin => 201266 B EmptyTemp: => 1.1 GB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 01:08:56 ====