Advertisement
Guest User

Untitled

a guest
Aug 15th, 2018
104
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 10.37 KB | None | 0 0
  1. Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 02.08.2018
  2. Uruchomiony przez Pawel (15-08-2018 19:10:08) Run:1
  3. Uruchomiony z C:\Users\Pawel\Downloads
  4. Załadowane profile: Pawel (Dostępne profile: defaultuser0 & Pawel)
  5. Tryb startu: Normal
  6. ==============================================
  7.  
  8. fixlist - zawartość:
  9. *****************
  10. CloseProcesses:
  11. CreateRestorePoint:
  12. EmptyTemp:
  13. HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA
  14. HKU\S-1-5-21-3906695049-374512793-3673757490-1001\...\MountPoints2: {aa9ef9bd-e965-11e6-b25f-f832e47116e8} - "F:\setup.exe"
  15. GroupPolicy: Ograniczenia ? <==== UWAGA
  16. FF HKU\S-1-5-21-3906695049-374512793-3673757490-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\Pawel\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => nie znaleziono
  17. FF Plugin HKU\S-1-5-21-3906695049-374512793-3673757490-1001: @acestream.net/acestreamplugin,version=3.1.28 -> C:\Users\Pawel\AppData\Roaming\ACEStream\player\npace_plugin.dll [Brak pliku]
  18. CHR HKU\S-1-5-21-3906695049-374512793-3673757490-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] - hxxps://clients2.google.com/service/update2/crx
  19. S3 WinRing0_1_2_0; \??\C:\Users\Pawel\Downloads\RealTemp_370\WinRing0x64.sys [X]
  20. 2018-08-05 12:57 - 2018-08-05 12:57 - 000001132 __RSH C:\ProgramData\ntuser.pol
  21. Task: {014B1F6C-BD31-4565-856F-29C48CC34054} - System32\Tasks\{C4926274-54CB-42AD-9106-E1A8D59FB8E2} => C:\Windows\system32\pcalua.exe -a G:\OriginSetup.exe -d G:\
  22. Task: {2AC4C88F-66DC-4B62-BA90-1B5EDB5E7DD1} - System32\Tasks\S-1-5-21-3906695049-374512793-3673757490-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [2018-04-12] (Microsoft Corporation)
  23. Task: {4C4741DB-2265-4FE7-AECE-B8B3080FAB1D} - \Microsoft\Windows\UNP\RunCampaignManager -> Brak pliku <==== UWAGA
  24. HKU\S-1-5-21-3906695049-374512793-3673757490-1001\...\StartupApproved\StartupFolder: => "Guard.lnk"
  25. HKU\S-1-5-21-3906695049-374512793-3673757490-1001\...\StartupApproved\StartupFolder: => "Sound Volume Control.lnk"
  26. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOOM VFR.lnk
  27. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio\Android Studio.lnk
  28. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools\AVD Manager.lnk
  29. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools\SDK Manager.lnk
  30. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools\Uninstall Android SDK Tools.lnk
  31. C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
  32. C:\Users\Pawel\Documents\Euro Truck Simulator 2\readme.rtf.lnk
  33. C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tibia\Tibia 10.lnk
  34. C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tibia\Uninstall Tibia 10.lnk
  35. FilesInDirectory: C:\Users\Pawel\AppData\Local\*.exe;*.dll;*.ini
  36. FilesInDirectory: C:\Users\Pawel\AppData\Roaming\*.exe;*.dll;*.ini
  37. CMD: dir /a "C:\Users\Pawel\AppData\Roaming\Microsoft\Windows"
  38. CMD: ipconfig /flushdns
  39. RemoveProxy:
  40.  
  41. *****************
  42.  
  43. Procesy zostały pomyślnie zamknięte.
  44. Punkt przywracania został pomyślnie utworzony.
  45. "HKLM\SOFTWARE\Policies\Microsoft\Windows Defender" => pomyślnie usunięto
  46. "HKU\S-1-5-21-3906695049-374512793-3673757490-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{aa9ef9bd-e965-11e6-b25f-f832e47116e8}" => pomyślnie usunięto
  47. HKLM\Software\Classes\CLSID\{aa9ef9bd-e965-11e6-b25f-f832e47116e8} => nie znaleziono
  48. C:\WINDOWS\system32\GroupPolicy\Machine => pomyślnie przeniesiono
  49. C:\WINDOWS\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono
  50. C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => pomyślnie przeniesiono
  51. "HKU\S-1-5-21-3906695049-374512793-3673757490-1001\Software\Mozilla\Firefox\Extensions\\acewebextension_unlisted@acestream.org" => pomyślnie usunięto
  52. "HKU\S-1-5-21-3906695049-374512793-3673757490-1001\Software\MozillaPlugins\@acestream.net/acestreamplugin,version=3.1.28" => pomyślnie usunięto
  53. "C:\Users\Pawel\AppData\Roaming\ACEStream\player\npace_plugin.dll" => nie znaleziono
  54. "HKU\S-1-5-21-3906695049-374512793-3673757490-1001\SOFTWARE\Google\Chrome\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo" => pomyślnie usunięto
  55. "HKLM\System\CurrentControlSet\Services\WinRing0_1_2_0" => pomyślnie usunięto
  56. WinRing0_1_2_0 => serwis pomyślnie usunięto
  57. C:\ProgramData\ntuser.pol => pomyślnie przeniesiono
  58. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{014B1F6C-BD31-4565-856F-29C48CC34054}" => pomyślnie usunięto
  59. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{014B1F6C-BD31-4565-856F-29C48CC34054}" => pomyślnie usunięto
  60. C:\WINDOWS\System32\Tasks\{C4926274-54CB-42AD-9106-E1A8D59FB8E2} => pomyślnie przeniesiono
  61. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C4926274-54CB-42AD-9106-E1A8D59FB8E2}" => pomyślnie usunięto
  62. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2AC4C88F-66DC-4B62-BA90-1B5EDB5E7DD1}" => pomyślnie usunięto
  63. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2AC4C88F-66DC-4B62-BA90-1B5EDB5E7DD1}" => pomyślnie usunięto
  64. C:\WINDOWS\System32\Tasks\S-1-5-21-3906695049-374512793-3673757490-1001\DataSenseLiveTileTask => pomyślnie przeniesiono
  65. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\S-1-5-21-3906695049-374512793-3673757490-1001\DataSenseLiveTileTask" => pomyślnie usunięto
  66. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4C4741DB-2265-4FE7-AECE-B8B3080FAB1D}" => pomyślnie usunięto
  67. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C4741DB-2265-4FE7-AECE-B8B3080FAB1D}" => pomyślnie usunięto
  68. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager => nie znaleziono
  69. "C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Guard.lnk" => nie znaleziono
  70. "HKU\S-1-5-21-3906695049-374512793-3673757490-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\Guard.lnk" => pomyślnie usunięto
  71. "C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sound Volume Control.lnk" => nie znaleziono
  72. "HKU\S-1-5-21-3906695049-374512793-3673757490-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\Sound Volume Control.lnk" => pomyślnie usunięto
  73. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOOM VFR.lnk => pomyślnie przeniesiono
  74. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio\Android Studio.lnk => pomyślnie przeniesiono
  75. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools\AVD Manager.lnk => pomyślnie przeniesiono
  76. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools\SDK Manager.lnk => pomyślnie przeniesiono
  77. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools\Uninstall Android SDK Tools.lnk => pomyślnie przeniesiono
  78. C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk => pomyślnie przeniesiono
  79. C:\Users\Pawel\Documents\Euro Truck Simulator 2\readme.rtf.lnk => pomyślnie przeniesiono
  80. C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tibia\Tibia 10.lnk => pomyślnie przeniesiono
  81. C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tibia\Uninstall Tibia 10.lnk => pomyślnie przeniesiono
  82.  
  83. ========================= FilesInDirectory: C:\Users\Pawel\AppData\Local\*.exe;*.dll;*.ini ========================
  84.  
  85.  
  86. ====== Koniec Filesindirectory ======
  87.  
  88. ========================= FilesInDirectory: C:\Users\Pawel\AppData\Roaming\*.exe;*.dll;*.ini ========================
  89.  
  90.  
  91. ====== Koniec Filesindirectory ======
  92.  
  93. ========= dir /a "C:\Users\Pawel\AppData\Roaming\Microsoft\Windows" =========
  94.  
  95. Volume in drive C has no label.
  96. Volume Serial Number is 4545-4545
  97.  
  98. Directory of C:\Users\Pawel\AppData\Roaming\Microsoft\Windows
  99.  
  100. 15.08.2018 12:04 <DIR> .
  101. 15.08.2018 12:04 <DIR> ..
  102. 12.07.2018 06:39 <DIR> AccountPictures
  103. 15.08.2018 12:20 <DIR> bbvcvejc
  104. 13.05.2018 09:55 <DIR> CloudStore
  105. 12.07.2018 06:39 <DIR> Libraries
  106. 12.04.2018 01:38 <DIR> Network Shortcuts
  107. 13.05.2018 08:59 <DIR> PowerShell
  108. 12.04.2018 01:38 <DIR> Printer Shortcuts
  109. 15.08.2018 19:09 <DIR> Recent
  110. 11.08.2018 14:54 <DIR> SendTo
  111. 12.07.2018 06:39 <DIR> Start Menu
  112. 12.04.2018 01:38 <DIR> Templates
  113. 11.08.2018 17:55 <DIR> Themes
  114. 0 File(s) 0 bytes
  115. 14 Dir(s) 120˙956˙858˙368 bytes free
  116.  
  117. ========= Koniec CMD: =========
  118.  
  119.  
  120. ========= ipconfig /flushdns =========
  121.  
  122.  
  123. Windows IP Configuration
  124.  
  125. Successfully flushed the DNS Resolver Cache.
  126.  
  127. ========= Koniec CMD: =========
  128.  
  129.  
  130. ========= RemoveProxy: =========
  131.  
  132. "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto
  133. "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto
  134. "HKU\S-1-5-21-3906695049-374512793-3673757490-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto
  135. "HKU\S-1-5-21-3906695049-374512793-3673757490-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto
  136.  
  137.  
  138. ========= Koniec RemoveProxy: =========
  139.  
  140.  
  141. =========== EmptyTemp: ==========
  142.  
  143. BITS transfer queue => 8151040 B
  144. DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 218780275 B
  145. Java, Flash, Steam htmlcache => 113975754 B
  146. Windows/system/drivers => 778596 B
  147. Edge => 11431 B
  148. Chrome => 1123302235 B
  149. Firefox => 0 B
  150. Opera => 0 B
  151.  
  152. Temp, IE cache, history, cookies, recent:
  153. Default => 0 B
  154. Users => 0 B
  155. ProgramData => 0 B
  156. Public => 0 B
  157. systemprofile => 0 B
  158. systemprofile32 => 0 B
  159. LocalService => 5438 B
  160. LocalService => 0 B
  161. NetworkService => 0 B
  162. NetworkService => 0 B
  163. defaultuser0 => 0 B
  164. Pawel => 187606516 B
  165.  
  166. RecycleBin => 0 B
  167. EmptyTemp: => 1.5 GB danych tymczasowych Usunięto.
  168.  
  169. ================================
  170.  
  171.  
  172. System wymagał restartu.
  173.  
  174. ==== Koniec Fixlog 19:10:29 ====
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement