Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 08-03-2020 Uruchomiony przez SirKroko (21-03-2020 14:52:12) Run:1 Uruchomiony z C:\Users\SirKroko\Desktop Załadowane profile: SirKroko (Dostępne profile: SirKroko) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: EmptyTemp: Startup: C:\Users\SirKroko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Powiadomienia monitorowania tuszu - HP Deskjet 3520 series Class Driver.lnk [2019-03-25] FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA Tcpip\..\Interfaces\{099e88f7-e85a-438e-a919-1d6cd6fc9dc6}: [DhcpNameServer] 192.168.1.1 HKU\S-1-5-21-4037187918-1198607602-2718029985-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.web-pl.com/ SearchScopes: HKU\S-1-5-21-4037187918-1198607602-2718029985-1000 -> DefaultScope {52B32DF5-BA14-40DB-AE27-945428672E8A} URL = hxxp://www.web-pl.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-4037187918-1198607602-2718029985-1000 -> {52B32DF5-BA14-40DB-AE27-945428672E8A} URL = hxxp://www.web-pl.com/search?q={searchTerms} CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.20.1.69\Exts\Chrome.crx CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.20.1.69\Exts\Chrome.crx CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] S2 Nero BackItUp Scheduler 4.0; C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe [X] U1 avgbdisk; Brak ImagePath CustomCLSID: HKU\S-1-5-21-4037187918-1198607602-2718029985-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\SirKroko\AppData\Local\Microsoft\OneDrive\19.232.1124.0010\amd64\FileSyncShell64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-4037187918-1198607602-2718029985-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\SirKroko\AppData\Local\Microsoft\OneDrive\19.232.1124.0010\amd64\FileSyncShell64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-4037187918-1198607602-2718029985-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\SirKroko\AppData\Local\Microsoft\OneDrive\19.232.1124.0010\amd64\FileSyncShell64.dll => Brak pliku ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku FirewallRules: [{6C48679E-10C4-4991-9738-54C1E9E23FB5}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe Brak pliku FirewallRules: [{C61B8C38-8EBA-4FF9-948F-523A839ADB9A}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe Brak pliku FirewallRules: [{AA32A6DD-1BCD-4785-8534-2714E6841DDC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe Brak pliku FirewallRules: [{D7B05C5A-15F9-49A3-BD56-608A3A3508BB}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe Brak pliku FirewallRules: [{27BEC1A5-B851-43B1-A0C3-9F85CA6D9F75}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Brak pliku FirewallRules: [{4E23B614-16D8-4987-804E-E27D600EE312}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Brak pliku FirewallRules: [{6C05300C-2EF8-4847-A1A0-D5532D48B491}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\They Can't Stop All Of Us\They Cant Stop All Of Us.exe Brak pliku FirewallRules: [{FDC0CDB8-9E16-475F-BDD5-B1591B7AE1E7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\They Can't Stop All Of Us\They Cant Stop All Of Us.exe Brak pliku FirewallRules: [{4A8D0859-12D3-4A76-AD98-49CE3B686E2E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Legend of Keepers Prologue\LegendOfKeepersPrologue.exe Brak pliku FirewallRules: [{B557A13A-F52B-427F-9639-C3C568D71B14}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Legend of Keepers Prologue\LegendOfKeepersPrologue.exe Brak pliku FirewallRules: [{8548127A-2C62-4DB7-B73B-7F35A54FB261}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Napoleon Total War Demo\Napoleon.exe Brak pliku FirewallRules: [{E74A19BE-F100-4D56-B937-DFB9EE86E5B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Napoleon Total War Demo\Napoleon.exe Brak pliku FirewallRules: [{61E9E9A4-E25B-4F74-8330-6699D9790A27}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe Brak pliku FirewallRules: [{FC2D2AE3-2E11-464B-AB61-87E25C3DA5BD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe Brak pliku RemoveProxy: ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. C:\Users\SirKroko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Powiadomienia monitorowania tuszu - HP Deskjet 3520 series Class Driver.lnk => pomyślnie przeniesiono HKLM\SOFTWARE\Policies\Mozilla => pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{099e88f7-e85a-438e-a919-1d6cd6fc9dc6}\\DhcpNameServer" => pomyślnie usunięto HKU\S-1-5-21-4037187918-1198607602-2718029985-1000\Software\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono "HKU\S-1-5-21-4037187918-1198607602-2718029985-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto HKU\S-1-5-21-4037187918-1198607602-2718029985-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{52B32DF5-BA14-40DB-AE27-945428672E8A} => pomyślnie usunięto HKLM\SOFTWARE\Google\Chrome\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe => nie znaleziono HKLM\SOFTWARE\Google\Chrome\Extensions\iikflkcanblccfahdhdonehdalibjnif => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe => nie znaleziono HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\iikflkcanblccfahdhdonehdalibjnif => pomyślnie usunięto HKLM\System\CurrentControlSet\Services\Nero BackItUp Scheduler 4.0 => pomyślnie usunięto Nero BackItUp Scheduler 4.0 => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\avgbdisk => pomyślnie usunięto avgbdisk => serwis pomyślnie usunięto HKU\S-1-5-21-4037187918-1198607602-2718029985-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => pomyślnie usunięto HKU\S-1-5-21-4037187918-1198607602-2718029985-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => pomyślnie usunięto HKU\S-1-5-21-4037187918-1198607602-2718029985-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => pomyślnie usunięto HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avg => nie znaleziono "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6C48679E-10C4-4991-9738-54C1E9E23FB5}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C61B8C38-8EBA-4FF9-948F-523A839ADB9A}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AA32A6DD-1BCD-4785-8534-2714E6841DDC}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D7B05C5A-15F9-49A3-BD56-608A3A3508BB}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{27BEC1A5-B851-43B1-A0C3-9F85CA6D9F75}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4E23B614-16D8-4987-804E-E27D600EE312}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6C05300C-2EF8-4847-A1A0-D5532D48B491}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FDC0CDB8-9E16-475F-BDD5-B1591B7AE1E7}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4A8D0859-12D3-4A76-AD98-49CE3B686E2E}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B557A13A-F52B-427F-9639-C3C568D71B14}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8548127A-2C62-4DB7-B73B-7F35A54FB261}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E74A19BE-F100-4D56-B937-DFB9EE86E5B1}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{61E9E9A4-E25B-4F74-8330-6699D9790A27}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FC2D2AE3-2E11-464B-AB61-87E25C3DA5BD}" => pomyślnie usunięto ========= RemoveProxy: ========= "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKU\S-1-5-21-4037187918-1198607602-2718029985-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\S-1-5-21-4037187918-1198607602-2718029985-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKU\S-1-5-21-4037187918-1198607602-2718029985-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-03212020144407062\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\S-1-5-21-4037187918-1198607602-2718029985-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-03212020144407062\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto ========= Koniec RemoveProxy: ========= =========== EmptyTemp: ========== BITS transfer queue => 10248192 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 62971245 B Java, Flash, Steam htmlcache => 32431477 B Windows/system/drivers => 8659859 B Edge => 32744540 B Chrome => 0 B Firefox => 1126432153 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 6656 B Users => 6656 B ProgramData => 6656 B Public => 6656 B systemprofile => 6656 B systemprofile32 => 6656 B LocalService => 266640 B NetworkService => 650100 B SirKroko => 106136693 B RecycleBin => 17031473598 B EmptyTemp: => 17.1 GB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 14:59:00 ====