Advertisement
Guest User

fixlogsam

a guest
Feb 5th, 2017
289
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 11.41 KB | None | 0 0
  1. Fix result of Farbar Recovery Scan Tool (x64) Version: 29-01-2017
  2. Ran by Sam (31-01-2017 01:03:58) Run:4
  3. Running from C:\Users\Sam\Downloads
  4. Loaded Profiles: Sam & (Available Profiles: Sam)
  5. Boot Mode: Normal
  6. ==============================================
  7.  
  8. fixlist content:
  9. *****************
  10. start
  11. CreateRestorePoint:
  12. bl (x32 Version: 1.0.0 - Your Company Name) Hidden
  13. ph (x32 Version: 1.0.0 - Your Company Name) Hidden
  14. CustomCLSID: HKU\S-1-5-21-336042120-3881833094-1070839671-1001_Classes\CLSID\{9E169071-C5A7-849F-38A1-692C9AC86E9C}\InprocServer32 -> no filepath
  15. CustomCLSID: HKU\S-1-5-21-336042120-3881833094-1070839671-1001_Classes\CLSID\{CA7B762C-8604-76D3-0CB3-A42D8B3DA8F1}\InprocServer32 -> no filepath
  16. Task: {24192157-DF55-433D-AB08-4230C8E58ACE} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
  17. Task: {262F48A5-A2C4-4A66-89E6-C08AF90C4F83} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
  18. Task: {36E64567-0921-4ADC-BD4A-E284B80D0EA1} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
  19. Task: {39E4CDCA-19CF-4D03-8A04-2B4C835379FD} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
  20. Task: {64412004-2C29-42B5-B406-E9864B527AAF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
  21. Task: {783577F4-C8B9-4240-ACE3-977BCC6A810C} - System32\Tasks\GNOK => C:\Users\Natascha\AppData\Roaming\GNOK.exe <==== ATTENTION
  22. Task: {8E0AF61B-F056-4D66-86CA-3469E9A19080} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
  23. Task: {A4F146C9-B743-4791-87BB-418B999A9263} - System32\Tasks\UCBrowserUpdaterCore => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== ATTENTION
  24. Task: {AD2FCCB7-A3F2-4D01-9BA8-B334A6010534} - System32\Tasks\SecureUpdater => C:\Program Files (x86)\UCBrowser\Application\uclauncher.exe <==== ATTENTION
  25. Task: {B835580A-56CB-43EA-A5CB-571A4891288D} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
  26. Task: {B9321CBB-FDDC-4DA0-B365-342D9772D10C} - System32\Tasks\UCBrowserUpdater => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== ATTENTION
  27. Task: {CC272B6D-F853-40A7-8AEC-EE9303C00831} - System32\Tasks\BYAIAMUF => C:\Users\Natascha\AppData\Roaming\BYAIAMUF.exe <==== ATTENTION
  28. Task: {DBBD7C40-007E-411B-9986-4D5F102B1761} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
  29. Task: {DE45C6D9-4394-419B-98E1-B23E6A983FCC} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
  30. Task: {F4EAA9A2-837B-422F-90B8-EB5DE9CCFFF5} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
  31. Task: {FD0B294B-1A4E-439D-9A87-D3B6E6FF238E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
  32. Task: C:\WINDOWS\Tasks\BYAIAMUF.job => C:\Users\Natascha\AppData\Roaming\BYAIAMUF.exe <==== ATTENTION
  33. Task: C:\WINDOWS\Tasks\GNOK.job => C:\Users\Natascha\AppData\Roaming\GNOK.exe <==== ATTENTION
  34. WMI_ActiveScriptEventConsumer_ASEC: <===== ATTENTION
  35. HKLM\...\StartupApproved\StartupFolder: => "McAfee Security Scan Plus.lnk"
  36. HKU\S-1-5-21-336042120-3881833094-1070839671-1001\...\StartupApproved\Run: => "svchost0"
  37. FirewallRules: [{081DDE02-B844-4BDB-8E43-8C5C50367DC5}] => (Allow) C:\Users\Natascha\AppData\Local\MediaGet2\mediaget.exe
  38. FirewallRules: [{820EE744-18E8-4158-AB98-11CA79E68385}] => (Allow) C:\Users\Natascha\AppData\Local\MediaGet2\mediaget.exe
  39. FirewallRules: [{C1991A0B-F410-4455-BD7D-9B9C9C4333BA}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe
  40. FirewallRules: [{F932511F-498E-42FD-9A06-86DA7CC9F9B2}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe
  41. HKLM-x32\...\Run: [] => [X]
  42. ShellIconOverlayIdentifiers: [KzShlobj] -> {AAA0C5B8-933F-4200-93AD-B143D7FFF9F2} => No File
  43. ShellIconOverlayIdentifiers: [KzShlobj2] -> {AAA0C5B8-933F-4200-93AD-B143D7FFF9F3} => No File
  44. HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
  45. SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
  46. BHO: No Name -> {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} -> No File
  47. Toolbar: HKLM - No Name - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - No File
  48. Toolbar: HKU\S-1-5-21-336042120-3881833094-1070839671-1001 -> No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
  49. Toolbar: HKU\S-1-5-21-336042120-3881833094-1070839671-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
  50. FF ProfilePath: C:\Users\Natascha\AppData\Roaming\Mozilla\Firefox\naweriweentcofise\Profiles\2r3ugg6v.default\Profiles\2r3ugg6v.default [not found]
  51. FF HKLM-x32\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.6.0.27\coFFPlgn => not found
  52. FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [No File]
  53. CHR HKLM-x32\...\Chrome\Extension: [nppllibpnmahfaklnpggkibhkapjkeob] - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.7.0.43\Exts\Chrome.crx <not found>
  54. R1 UCGuard; C:\WINDOWS\System32\DRIVERS\ucguard.sys [81792 2016-08-29] (Huorong Borui (Beijing) Technology Co., Ltd.) <==== ATTENTION
  55. 2016-10-25 15:46 - 2016-10-25 17:06 - 00000000 __SHD C:\Users\Natascha\AppData\Local\svchost
  56. 2016-10-25 15:43 - 2016-10-25 20:00 - 00002654 _____ C:\WINDOWS\System32\Tasks\UCBrowserUpdaterCore
  57. 2016-10-25 15:43 - 2016-10-25 15:43 - 00003504 _____ C:\WINDOWS\System32\Tasks\UCBrowserUpdater
  58. 2016-10-25 15:07 - 2016-10-25 15:07 - 00000000 ____D C:\ProgramData\Avira
  59. 2016-10-25 15:07 - 2016-10-25 15:07 - 00000000 ____D C:\ProgramData\Avg
  60. 2016-10-25 15:07 - 2016-10-25 15:07 - 00000000 ____D C:\ProgramData\AVAST Software
  61. 2016-10-25 14:57 - 2016-08-29 07:50 - 00081792 _____ (Huorong Borui (Beijing) Technology Co., Ltd.) C:\WINDOWS\system32\Drivers\ucguard.sys
  62. 2016-10-31 04:52 - 2015-05-10 12:28 - 00001716 _____ C:\WINDOWS\Tasks\BYAIAMUF.job
  63. 2016-10-30 21:42 - 2015-05-10 12:29 - 00001364 _____ C:\WINDOWS\Tasks\GNOK.job
  64. 2015-03-09 18:30 - 2015-03-09 18:30 - 0005487 _____ () C:\Users\Natascha\AppData\Roaming\BYAIAMUF
  65. EmptyTemp:
  66. Reboot:
  67. end
  68. *****************
  69.  
  70. Restore point was successfully created.
  71. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\\SystemComponent => value not found.
  72. HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\\SystemComponent => value not found.
  73. HKU\S-1-5-21-336042120-3881833094-1070839671-1001_Classes\CLSID\{9E169071-C5A7-849F-38A1-692C9AC86E9C} => key not found.
  74. HKU\S-1-5-21-336042120-3881833094-1070839671-1001_Classes\CLSID\{CA7B762C-8604-76D3-0CB3-A42D8B3DA8F1} => key not found.
  75. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{24192157-DF55-433D-AB08-4230C8E58ACE} => key not found.
  76. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => key not found.
  77. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{262F48A5-A2C4-4A66-89E6-C08AF90C4F83} => key not found.
  78. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => key not found.
  79. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{36E64567-0921-4ADC-BD4A-E284B80D0EA1} => key not found.
  80. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => key not found.
  81. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{39E4CDCA-19CF-4D03-8A04-2B4C835379FD} => key not found.
  82. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => key not found.
  83. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{64412004-2C29-42B5-B406-E9864B527AAF} => key not found.
  84. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => key not found.
  85. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{783577F4-C8B9-4240-ACE3-977BCC6A810C} => key not found.
  86. C:\WINDOWS\System32\Tasks\GNOK => not found.
  87. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GNOK => key not found.
  88. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8E0AF61B-F056-4D66-86CA-3469E9A19080} => key not found.
  89. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => key not found.
  90. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A4F146C9-B743-4791-87BB-418B999A9263} => key not found.
  91. C:\WINDOWS\System32\Tasks\UCBrowserUpdaterCore => not found.
  92. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UCBrowserUpdaterCore => key not found.
  93. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AD2FCCB7-A3F2-4D01-9BA8-B334A6010534} => key not found.
  94. C:\WINDOWS\System32\Tasks\SecureUpdater => not found.
  95. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SecureUpdater => key not found.
  96. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B835580A-56CB-43EA-A5CB-571A4891288D} => key not found.
  97. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => key not found.
  98. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9321CBB-FDDC-4DA0-B365-342D9772D10C} => key not found.
  99. C:\WINDOWS\System32\Tasks\UCBrowserUpdater => not found.
  100. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UCBrowserUpdater => key not found.
  101. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CC272B6D-F853-40A7-8AEC-EE9303C00831} => key not found.
  102. C:\WINDOWS\System32\Tasks\BYAIAMUF => not found.
  103. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BYAIAMUF => key not found.
  104. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DBBD7C40-007E-411B-9986-4D5F102B1761} => key not found.
  105. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => key not found.
  106. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DE45C6D9-4394-419B-98E1-B23E6A983FCC} => key not found.
  107. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd => key not found.
  108. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F4EAA9A2-837B-422F-90B8-EB5DE9CCFFF5} => key not found.
  109. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => key not found.
  110. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FD0B294B-1A4E-439D-9A87-D3B6E6FF238E} => key not found.
  111. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => key not found.
  112. C:\WINDOWS\Tasks\BYAIAMUF.job => not found.
  113. C:\WINDOWS\Tasks\GNOK.job => not found.
  114. WMI_ActiveScriptEventConsumer_ASEC: <===== ATTENTION => not found
  115. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk => not found.
  116. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\McAfee Security Scan Plus.lnk => value not found.
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement