Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 29-05-2023 Uruchomiony przez BRW (04-06-2023 10:40:01) Run:1 Uruchomiony z C:\Users\BRW\Documents\frst Załadowane profile: BRW Tryb startu: Normal ============================================== fixlist - zawartość: ***************** SystemRestore: On CreateRestorePoint: CloseProcesses: EmptyTemp: HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA Task: {9551D213-FA85-4495-BBE4-2F33908DB807} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (Brak pliku) Task: {A3D3135E-4DCD-4421-8019-15FEDE11511B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (Brak pliku) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Brak pliku) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Brak pliku) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [856472 2023-05-19] (McAfee, LLC -> McAfee, LLC) SearchScopes: HKU\S-1-5-21-1461851175-602919670-2182510368-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1461851175-602919670-2182510368-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC) BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC) FirewallRules: [{7D7FBAA9-D4D2-48C2-AD51-E0F64CF61BC5}] => (Block) C:\Users\BRW\AppData\Local\Roblox\Versions\version-dc61c2db7d694b7b\RobloxPlayerLauncher.exe => Brak pliku FirewallRules: [{9DB8577E-0F1B-49E2-AB02-74953B7F8394}] => (Block) C:\Users\BRW\AppData\Local\Roblox\Versions\version-dc61c2db7d694b7b\RobloxPlayerLauncher.exe => Brak pliku FirewallRules: [{3943B141-05D2-4EAF-839F-D5A20DE6E862}] => (Allow) C:\Program Files\BlueStacks_nxt\HD-Player.exe => Brak pliku FirewallRules: [{E64D1CCA-09F8-4DF3-B906-1EB658D9D837}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe => Brak pliku FirewallRules: [{E04B3AE2-729F-4700-892C-5882260F3D79}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe => Brak pliku FirewallRules: [{E05BCF1F-F36B-4308-998B-5F306F4F923A}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe => Brak pliku FirewallRules: [{BC80B1DA-8879-47CD-BA75-8AE45E231677}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe => Brak pliku FirewallRules: [{5F7D3788-66EA-407B-B4B6-88ED2D0FF37F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stumble Guys\Stumble Guys.exe => Brak pliku FirewallRules: [{7CD0954E-01F0-4B60-88C9-D1049EC1458D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stumble Guys\Stumble Guys.exe => Brak pliku FirewallRules: [{0B659166-B797-452A-9982-D71AEF7224EC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => Brak pliku FirewallRules: [{EE7F727A-5BB6-4853-9716-AA35FE6C08A7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => Brak pliku FirewallRules: [{14535065-FBA0-41E2-A36C-6C03626959C0}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => Brak pliku FirewallRules: [{81334A2A-5FD8-4B74-8340-26FC1652FC91}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => Brak pliku FirewallRules: [UDP Query User{5A6E92CD-7313-4723-B412-0DFFAE839E0B}C:\users\brw\appdata\local\roblox\versions\version-8e7dd5a5f3644613\robloxstudiobeta.exe] => (Allow) C:\users\brw\appdata\local\roblox\versions\version-8e7dd5a5f3644613\robloxstudiobeta.exe => Brak pliku FirewallRules: [TCP Query User{C8DD1B46-F620-45AB-B447-DF904EF8C849}C:\users\brw\appdata\local\roblox\versions\version-8e7dd5a5f3644613\robloxstudiobeta.exe] => (Allow) C:\users\brw\appdata\local\roblox\versions\version-8e7dd5a5f3644613\robloxstudiobeta.exe => Brak pliku FirewallRules: [UDP Query User{AB592665-AF69-4371-8D2D-178D2A36FE65}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => Brak pliku FirewallRules: [TCP Query User{4F3E5331-32C5-421D-93BC-86ADD8CC4D31}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe => Brak pliku FirewallRules: [UDP Query User{960CB1A0-1A84-4AB8-8FEA-344F2CA300D7}C:\program files\epic games\ue_5.0\engine\binaries\win64\unrealeditor.exe] => (Block) C:\program files\epic games\ue_5.0\engine\binaries\win64\unrealeditor.exe => Brak pliku FirewallRules: [TCP Query User{7B513114-A52D-4615-84E3-26EAF13DB173}C:\program files\epic games\ue_5.0\engine\binaries\win64\unrealeditor.exe] => (Block) C:\program files\epic games\ue_5.0\engine\binaries\win64\unrealeditor.exe => Brak pliku FirewallRules: [UDP Query User{D130370F-6351-4BB3-89C7-7A987A44F81D}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe => Brak pliku FirewallRules: [TCP Query User{1AFA8DE2-767B-4BFD-A031-662637BAF87F}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe => Brak pliku FirewallRules: [UDP Query User{1C210855-6EDB-4269-B5AE-5C341181A719}C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe] => (Allow) C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe => Brak pliku FirewallRules: [TCP Query User{03489D0B-578F-4B43-BF41-8FC6F0113617}C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe] => (Allow) C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe => Brak pliku FirewallRules: [UDP Query User{5EA92314-C563-44C8-A870-0ACB3630D95E}C:\users\brw\appdata\roaming\crystal-launcher\runtimes\nx\17.0.1-windows64\jdk-17.0.1+12\bin\javaw.exe] => (Allow) C:\users\brw\appdata\roaming\crystal-launcher\runtimes\nx\17.0.1-windows64\jdk-17.0.1+12\bin\javaw.exe => Brak pliku FirewallRules: [TCP Query User{7604DACC-9724-402E-B894-C99FC25C58B3}C:\users\brw\appdata\roaming\crystal-launcher\runtimes\nx\17.0.1-windows64\jdk-17.0.1+12\bin\javaw.exe] => (Allow) C:\users\brw\appdata\roaming\crystal-launcher\runtimes\nx\17.0.1-windows64\jdk-17.0.1+12\bin\javaw.exe => Brak pliku FirewallRules: [UDP Query User{9C04C6BF-FBAF-40AC-B7E2-A0DC24EFB0CC}C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jre1.8.0_271\bin\javaw.exe] => (Allow) C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jre1.8.0_271\bin\javaw.exe => Brak pliku FirewallRules: [TCP Query User{AC3C8780-E74E-44C0-893D-F552E0BDC240}C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jre1.8.0_271\bin\javaw.exe] => (Allow) C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jre1.8.0_271\bin\javaw.exe => Brak pliku ***************** SystemRestore: On => ukończone Punkt przywracania został pomyślnie utworzony. Procesy zostały pomyślnie zamknięte. HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Policies\Mozilla => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9551D213-FA85-4495-BBE4-2F33908DB807}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9551D213-FA85-4495-BBE4-2F33908DB807}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A3D3135E-4DCD-4421-8019-15FEDE11511B}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A3D3135E-4DCD-4421-8019-15FEDE11511B}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_AC" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => pomyślnie usunięto McAfee WebAdvisor => Usługa pomyślnie zatrzymana. HKLM\System\CurrentControlSet\Services\McAfee WebAdvisor => pomyślnie usunięto McAfee WebAdvisor => serwis pomyślnie usunięto "HKU\S-1-5-21-1461851175-602919670-2182510368-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto HKU\S-1-5-21-1461851175-602919670-2182510368-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => pomyślnie usunięto HKLM\Software\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => pomyślnie usunięto HKLM\Software\Wow6432Node\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7D7FBAA9-D4D2-48C2-AD51-E0F64CF61BC5}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9DB8577E-0F1B-49E2-AB02-74953B7F8394}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3943B141-05D2-4EAF-839F-D5A20DE6E862}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E64D1CCA-09F8-4DF3-B906-1EB658D9D837}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E04B3AE2-729F-4700-892C-5882260F3D79}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E05BCF1F-F36B-4308-998B-5F306F4F923A}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC80B1DA-8879-47CD-BA75-8AE45E231677}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5F7D3788-66EA-407B-B4B6-88ED2D0FF37F}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7CD0954E-01F0-4B60-88C9-D1049EC1458D}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0B659166-B797-452A-9982-D71AEF7224EC}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EE7F727A-5BB6-4853-9716-AA35FE6C08A7}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{14535065-FBA0-41E2-A36C-6C03626959C0}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{81334A2A-5FD8-4B74-8340-26FC1652FC91}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5A6E92CD-7313-4723-B412-0DFFAE839E0B}C:\users\brw\appdata\local\roblox\versions\version-8e7dd5a5f3644613\robloxstudiobeta.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{C8DD1B46-F620-45AB-B447-DF904EF8C849}C:\users\brw\appdata\local\roblox\versions\version-8e7dd5a5f3644613\robloxstudiobeta.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AB592665-AF69-4371-8D2D-178D2A36FE65}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{4F3E5331-32C5-421D-93BC-86ADD8CC4D31}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{960CB1A0-1A84-4AB8-8FEA-344F2CA300D7}C:\program files\epic games\ue_5.0\engine\binaries\win64\unrealeditor.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7B513114-A52D-4615-84E3-26EAF13DB173}C:\program files\epic games\ue_5.0\engine\binaries\win64\unrealeditor.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D130370F-6351-4BB3-89C7-7A987A44F81D}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1AFA8DE2-767B-4BFD-A031-662637BAF87F}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{1C210855-6EDB-4269-B5AE-5C341181A719}C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{03489D0B-578F-4B43-BF41-8FC6F0113617}C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jdk-17.0.1+12\bin\javaw.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5EA92314-C563-44C8-A870-0ACB3630D95E}C:\users\brw\appdata\roaming\crystal-launcher\runtimes\nx\17.0.1-windows64\jdk-17.0.1+12\bin\javaw.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7604DACC-9724-402E-B894-C99FC25C58B3}C:\users\brw\appdata\roaming\crystal-launcher\runtimes\nx\17.0.1-windows64\jdk-17.0.1+12\bin\javaw.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9C04C6BF-FBAF-40AC-B7E2-A0DC24EFB0CC}C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jre1.8.0_271\bin\javaw.exe" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{AC3C8780-E74E-44C0-893D-F552E0BDC240}C:\users\brw\appdata\roaming\crystal-launcher\runtime\64\jre1.8.0_271\bin\javaw.exe" => pomyślnie usunięto =========== EmptyTemp: ========== FlushDNS => ukończone BITS transfer queue => 1048576 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 67376749 B Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 38650466 B Windows/system/drivers => 6127217 B Edge => 0 B Firefox => 0 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 73994 B NetworkService => 75094 B BRW => 1170290730 B RecycleBin => 0 B EmptyTemp: => 1.2 GB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 10:40:32 ====