Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 20.06.2018
- Uruchomiony przez admin (25-06-2018 20:56:20) Run:1
- Uruchomiony z C:\Users\admin\Downloads
- Załadowane profile: admin (Dostępne profile: admin)
- Tryb startu: Safe Mode (with Networking)
- ==============================================
- fixlist - zawartość:
- *****************
- CloseProcesses:
- CreateRestorePoint:
- EmptyTemp:
- HKLM\...\RunOnce: [ucdrv_repair] => "C:\Program Files (x86)\UCBrowser\Security\uclauncher.exe" --repair
- HKLM\ DisallowedCertificates: 03D22C9C66915D58C88912B64C1F984B8344EF09 (Comodo Security Solutions) <==== UWAGA
- HKLM\ DisallowedCertificates: 0F684EC1163281085C6AF20528878103ACEFCAAB (F-Secure Corporation) <==== UWAGA
- HKLM\ DisallowedCertificates: 1667908C9E22EFBD0590E088715CC74BE4C60884 (FRISK Software International/F-Prot) <==== UWAGA
- HKLM\ DisallowedCertificates: 18DEA4EFA93B06AE997D234411F3FD72A677EECE (Bitdefender SRL) <==== UWAGA
- HKLM\ DisallowedCertificates: 2026D13756EB0DB753DF26CB3B7EEBE3E70BB2CF (G DATA Software AG) <==== UWAGA
- HKLM\ DisallowedCertificates: 249BDA38A611CD746A132FA2AF995A2D3C941264 (Malwarebytes Corporation) <==== UWAGA
- HKLM\ DisallowedCertificates: 31AC96A6C17C425222C46D55C3CCA6BA12E54DAF (Symantec Corporation) <==== UWAGA
- HKLM\ DisallowedCertificates: 331E2046A1CCA7BFEF766724394BE6112B4CA3F7 (Trend Micro) <==== UWAGA
- HKLM\ DisallowedCertificates: 3353EA609334A9F23A701B9159E30CB6C22D4C59 (Webroot Inc.) <==== UWAGA
- HKLM\ DisallowedCertificates: 373C33726722D3A5D1EDD1F1585D5D25B39BEA1A (SUPERAntiSpyware.com) <==== UWAGA
- HKLM\ DisallowedCertificates: 3850EDD77CC74EC9F4829AE406BBF9C21E0DA87F (Kaspersky Lab) <==== UWAGA
- HKLM\ DisallowedCertificates: 3D496FA682E65FC122351EC29B55AB94F3BB03FC (AVG Technologies CZ) <==== UWAGA
- HKLM\ DisallowedCertificates: 4243A03DB4C3C15149CEA8B38EEA1DA4F26BD159 (PC Tools) <==== UWAGA
- HKLM\ DisallowedCertificates: 42727E052C0C2E1B35AB53E1005FD9EDC9DE8F01 (K7 Computing Pvt Ltd) <==== UWAGA
- HKLM\ DisallowedCertificates: 4420C99742DF11DD0795BC15B7B0ABF090DC84DF (Doctor Web Ltd.) <==== UWAGA
- HKLM\ DisallowedCertificates: 4C0AF5719009B7C9D85C5EAEDFA3B7F090FE5FFF (Emsisoft Ltd) <==== UWAGA
- HKLM\ DisallowedCertificates: 5240AB5B05D11B37900AC7712A3C6AE42F377C8C (Check Point Software Technologies Ltd.) <==== UWAGA
- HKLM\ DisallowedCertificates: 5DD3D41810F28B2A13E9A004E6412061E28FA48D (Emsisoft Ltd) <==== UWAGA
- HKLM\ DisallowedCertificates: 7457A3793086DBB58B3858D6476889E3311E550E (K7 Computing Pvt Ltd) <==== UWAGA
- HKLM\ DisallowedCertificates: 76A9295EF4343E12DFC5FE05DC57227C1AB00D29 (BullGuard Ltd) <==== UWAGA
- HKLM\ DisallowedCertificates: 775B373B33B9D15B58BC02B184704332B97C3CAF (McAfee) <==== UWAGA
- HKLM\ DisallowedCertificates: 872CD334B7E7B3C3D1C6114CD6B221026D505EAB (Comodo Security Solutions) <==== UWAGA
- HKLM\ DisallowedCertificates: 88AD5DFE24126872B33175D1778687B642323ACF (McAfee) <==== UWAGA
- HKLM\ DisallowedCertificates: 9132E8B079D080E01D52631690BE18EBC2347C1E (Adaware Software) <==== UWAGA
- HKLM\ DisallowedCertificates: 982D98951CF3C0CA2A02814D474A976CBFF6BDB1 (Safer Networking Ltd.) <==== UWAGA
- HKLM\ DisallowedCertificates: 9A08641F7C5F2CCA0888388BE3E5DBDDAAA3B361 (Webroot Inc.) <==== UWAGA
- HKLM\ DisallowedCertificates: 9C43F665E690AB4D486D4717B456C5554D4BCEB5 (ThreatTrack Security) <==== UWAGA
- HKLM\ DisallowedCertificates: 9E3F95577B37C74CA2F70C1E1859E798B7FC6B13 (CURIOLAB S.M.B.A.) <==== UWAGA
- HKLM\ DisallowedCertificates: A1F8DCB086E461E2ABB4B46ADCFA0B48C58B6E99 (Avira Operations GmbH & Co. KG) <==== UWAGA
- HKLM\ DisallowedCertificates: A5341949ABE1407DD7BF7DFE75460D9608FBC309 (BullGuard Ltd) <==== UWAGA
- HKLM\ DisallowedCertificates: A59CC32724DD07A6FC33F7806945481A2D13CA2F (ESET) <==== UWAGA
- HKLM\ DisallowedCertificates: AB7E760DA2485EA9EF5A6EEE7647748D4BA6B947 (AVG Technologies CZ) <==== UWAGA
- HKLM\ DisallowedCertificates: AD4C5429E10F4FF6C01840C20ABA344D7401209F (Avast Antivirus/Software) <==== UWAGA
- HKLM\ DisallowedCertificates: AD96BB64BA36379D2E354660780C2067B81DA2E0 (Symantec Corporation) <==== UWAGA
- HKLM\ DisallowedCertificates: B8EBF0E696AF77F51C96DB4D044586E2F4F8FD84 (Malwarebytes Corporation) <==== UWAGA
- HKLM\ DisallowedCertificates: CDC37C22FE9272D8F2610206AD397A45040326B8 (Trend Micro) <==== UWAGA
- HKLM\ DisallowedCertificates: D3F78D747E7C5D6D3AE8ABFDDA7522BFB4CBD598 (Kaspersky Lab) <==== UWAGA
- HKLM\ DisallowedCertificates: DB303C9B61282DE525DC754A535CA2D6A9BD3D87 (ThreatTrack Security) <==== UWAGA
- HKLM\ DisallowedCertificates: DB77E5CFEC34459146748B667C97B185619251BA (Avast Antivirus/Software) <==== UWAGA
- HKLM\ DisallowedCertificates: E22240E837B52E691C71DF248F12D27F96441C00 (Total Defense, Inc.) <==== UWAGA
- HKLM\ DisallowedCertificates: E513EAB8610CFFD7C87E00BCA15C23AAB407FCEF (AVG Technologies CZ) <==== UWAGA
- HKLM\ DisallowedCertificates: ED841A61C0F76025598421BC1B00E24189E68D54 (Bitdefender SRL) <==== UWAGA
- HKLM\ DisallowedCertificates: F83099622B4A9F72CB5081F742164AD1B8D048C9 (ESET) <==== UWAGA
- HKLM\ DisallowedCertificates: FBB42F089AF2D570F2BF6F493D107A3255A9BB1A (Panda Security S.L) <==== UWAGA
- HKLM\ DisallowedCertificates: FFFA650F2CB2ABC0D80527B524DD3F9FC172C138 (Doctor Web Ltd.) <==== UWAGA
- HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\Policies\Explorer: []
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: G - G:\AutoRun.exe
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {0842096d-57c8-11e6-bd05-94de80615e8b} - G:\AutoRun.exe
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {528f65ee-54fc-11e6-bdca-94de80615e8b} - I:\AutoRun.exe
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {528f6607-54fc-11e6-bdca-94de80615e8b} - G:\AutoRun.exe
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {5c4528af-1fa5-11e3-a719-806e6f6e6963} - D:\Run.exe
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {65ef0f89-5596-11e6-a554-94de80615e8b} - G:\AutoRun.exe
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {900e1b01-ea7a-11e3-a58a-94de80615e8b} - G:\Startme.exe
- HKU\S-1-5-18\...\Run: [] => [X]
- GroupPolicy: Ograniczenia - Chrome <==== UWAGA
- CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA
- HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?bcutc=sp-006
- HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?bcutc=sp-006
- SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
- SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
- SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- SearchScopes: HKU\S-1-5-21-2298222908-433205819-1316438490-1000 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
- BHO-x32: Brak nazwy -> {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} -> Brak pliku
- FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku]
- FF Plugin-x32: @graphisoft.com/GDL Web Plug-in -> C:\Program Files (x86)\GRAPHISOFT\GDLWebControl\npGDLMozilla.dll [Brak pliku]
- FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku]
- FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> D:\VLC\npvlc.dll [Brak pliku]
- CHR HKU\S-1-5-21-2298222908-433205819-1316438490-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
- S2 UCBrowserSvc; "C:\Program Files (x86)\UCBrowser\Application\UCService.exe" [X] <==== UWAGA
- S1 ucdrv; C:\Windows\System32\drivers:ucdrv-x64.sys [25444 ] (UC Web Inc.) <==== UWAGA
- S3 cpuz135; \??\C:\Users\admin\AppData\Local\Temp\HBCD\PCWizard\pcwiz_x64.sys [X] <==== UWAGA
- S3 esgiguard; \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys [X]
- S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
- S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
- S3 gdrv; \??\C:\Windows\gdrv.sys [X]
- S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
- S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
- S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
- S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
- S3 hwusb_cdcacm; system32\DRIVERS\ew_cdcacm.sys [X]
- S3 hwusb_wwanecm; system32\DRIVERS\ew_wwanecm.sys [X]
- 2018-06-13 19:52 - 2018-06-13 19:52 - 000000266 __RSH C:\Users\admin\ntuser.pol
- 2018-06-13 19:44 - 2018-06-13 22:49 - 000000266 __RSH C:\ProgramData\ntuser.pol
- VirusTotal: C:\Users\admin\AppData\Local\mp4tomov_setup.exe
- VirusTotal: C:\ProgramData\Microsoft\Windows\Audio\winamgr.exe
- ContextMenuHandlers1: [KuaiZip2ShlExt] -> {6ADF19E3-77A3-4395-ADB4-9FD7D351EB3F} => -> Brak pliku
- ContextMenuHandlers1: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll -> Brak pliku
- ContextMenuHandlers1: [KZipShell2Ext] -> {6ADF19E3-77A3-4395-ADB4-9FD7D351EB3F} => -> Brak pliku
- ContextMenuHandlers2: [KuaiZip2ShlExt] -> {6ADF19E3-77A3-4395-ADB4-9FD7D351EB3F} => -> Brak pliku
- ContextMenuHandlers2: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll -> Brak pliku
- ContextMenuHandlers4: [KuaiZip2ShlExt] -> {6ADF19E3-77A3-4395-ADB4-9FD7D351EB3F} => -> Brak pliku
- ContextMenuHandlers6: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll -> Brak pliku
- Task: {2E8FDEA2-834C-4A6C-B04D-38B9DE69C5E2} - \WarThunder24 -> Brak pliku <==== UWAGA
- Task: {3FBBD80F-9F56-4D2D-9830-BB28AF3A9ECE} - System32\Tasks\{27255DE4-5108-389B-BC43-756072BCCABC} => C:\Program Files (x86)\Common Files\oYcrNERiYiuM.exe [1601-01-03] (Microsoft Corporation)
- Task: {48A54D51-0308-44BE-8437-8124075386E2} - System32\Tasks\{153CED8F-1F64-F1CF-14FC-2F76962E44BA} => C:\Program Files (x86)\EEGaUi.exe [1601-01-03] (Microsoft Corporation) <==== UWAGA
- Task: {8D4A0E28-182F-4C5E-A667-F39C9CA48D4A} - \RSF Media Convertor 2 -> Brak pliku <==== UWAGA
- Task: {B2D754C5-3744-4765-88A2-2BA011A99F49} - System32\Tasks\UCBrowserUpdater => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== UWAGA
- Task: {BA9CED07-7FF0-4AE2-A289-307EE3B77B4A} - \WarThunder sun -> Brak pliku <==== UWAGA
- Task: {E2A17C36-97B8-49C9-B4F9-B148DC2759C7} - \WarThunder sat -> Brak pliku <==== UWAGA
- Task: C:\Windows\Tasks\UCBrowserUpdater.job => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== UWAGA
- AlternateDataStreams: C:\Windows\system32\drivers:ucdrv-x64.sys [25444]
- AlternateDataStreams: C:\Windows\system32\drivers:x64 [1498914]
- AlternateDataStreams: C:\Windows\system32\drivers:x86 [1223458]
- AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0]
- AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm [0]
- MSCONFIG\startupreg: app => C:\Program Files (x86)\sbqh\uc.exe
- MSCONFIG\startupreg: svchost0 => C:\Program Files (x86)\sbqh\uc.exe
- CMD: ipconfig /flushdns
- CMD: dir /a "C:\Program Files"
- CMD: dir /a "C:\Program Files (x86)"
- CMD: dir /a "C:\Users\admin\AppData\Roaming"
- CMD: dir /a "C:\Users\admin\AppData\Local"
- Hosts:
- *****************
- Procesy zostały pomyślnie zamknięte.
- Błąd: Punkt przywracania można utworzyć tylko w trybie normalnym.
- "HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\ucdrv_repair" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\03D22C9C66915D58C88912B64C1F984B8344EF09" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\0F684EC1163281085C6AF20528878103ACEFCAAB" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\1667908C9E22EFBD0590E088715CC74BE4C60884" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\18DEA4EFA93B06AE997D234411F3FD72A677EECE" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\2026D13756EB0DB753DF26CB3B7EEBE3E70BB2CF" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\249BDA38A611CD746A132FA2AF995A2D3C941264" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\31AC96A6C17C425222C46D55C3CCA6BA12E54DAF" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\331E2046A1CCA7BFEF766724394BE6112B4CA3F7" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\3353EA609334A9F23A701B9159E30CB6C22D4C59" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\373C33726722D3A5D1EDD1F1585D5D25B39BEA1A" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\3850EDD77CC74EC9F4829AE406BBF9C21E0DA87F" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\3D496FA682E65FC122351EC29B55AB94F3BB03FC" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\4243A03DB4C3C15149CEA8B38EEA1DA4F26BD159" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\42727E052C0C2E1B35AB53E1005FD9EDC9DE8F01" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\4420C99742DF11DD0795BC15B7B0ABF090DC84DF" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\4C0AF5719009B7C9D85C5EAEDFA3B7F090FE5FFF" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\5240AB5B05D11B37900AC7712A3C6AE42F377C8C" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\5DD3D41810F28B2A13E9A004E6412061E28FA48D" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\7457A3793086DBB58B3858D6476889E3311E550E" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\76A9295EF4343E12DFC5FE05DC57227C1AB00D29" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\775B373B33B9D15B58BC02B184704332B97C3CAF" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\872CD334B7E7B3C3D1C6114CD6B221026D505EAB" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\88AD5DFE24126872B33175D1778687B642323ACF" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\9132E8B079D080E01D52631690BE18EBC2347C1E" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\982D98951CF3C0CA2A02814D474A976CBFF6BDB1" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\9A08641F7C5F2CCA0888388BE3E5DBDDAAA3B361" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\9C43F665E690AB4D486D4717B456C5554D4BCEB5" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\9E3F95577B37C74CA2F70C1E1859E798B7FC6B13" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\A1F8DCB086E461E2ABB4B46ADCFA0B48C58B6E99" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\A5341949ABE1407DD7BF7DFE75460D9608FBC309" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\A59CC32724DD07A6FC33F7806945481A2D13CA2F" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\AB7E760DA2485EA9EF5A6EEE7647748D4BA6B947" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\AD4C5429E10F4FF6C01840C20ABA344D7401209F" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\AD96BB64BA36379D2E354660780C2067B81DA2E0" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\B8EBF0E696AF77F51C96DB4D044586E2F4F8FD84" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\CDC37C22FE9272D8F2610206AD397A45040326B8" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\D3F78D747E7C5D6D3AE8ABFDDA7522BFB4CBD598" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\DB303C9B61282DE525DC754A535CA2D6A9BD3D87" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\DB77E5CFEC34459146748B667C97B185619251BA" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\E22240E837B52E691C71DF248F12D27F96441C00" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\E513EAB8610CFFD7C87E00BCA15C23AAB407FCEF" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\ED841A61C0F76025598421BC1B00E24189E68D54" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\F83099622B4A9F72CB5081F742164AD1B8D048C9" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\FBB42F089AF2D570F2BF6F493D107A3255A9BB1A" => pomyślnie usunięto
- "HKLM\Software\Microsoft\SystemCertificates\Disallowed\Certificates\FFFA650F2CB2ABC0D80527B524DD3F9FC172C138" => pomyślnie usunięto
- "HKLM\SOFTWARE\Policies\Microsoft\Windows Defender" => pomyślnie usunięto
- "HKU\S-1-5-21-2298222908-433205819-1316438490-1000\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\" => pomyślnie usunięto
- "HKU\S-1-5-21-2298222908-433205819-1316438490-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\G" => pomyślnie usunięto
- "HKU\S-1-5-21-2298222908-433205819-1316438490-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0842096d-57c8-11e6-bd05-94de80615e8b}" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{0842096d-57c8-11e6-bd05-94de80615e8b} => nie znaleziono
- "HKU\S-1-5-21-2298222908-433205819-1316438490-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{528f65ee-54fc-11e6-bdca-94de80615e8b}" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{528f65ee-54fc-11e6-bdca-94de80615e8b} => nie znaleziono
- "HKU\S-1-5-21-2298222908-433205819-1316438490-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{528f6607-54fc-11e6-bdca-94de80615e8b}" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{528f6607-54fc-11e6-bdca-94de80615e8b} => nie znaleziono
- "HKU\S-1-5-21-2298222908-433205819-1316438490-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5c4528af-1fa5-11e3-a719-806e6f6e6963}" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{5c4528af-1fa5-11e3-a719-806e6f6e6963} => nie znaleziono
- "HKU\S-1-5-21-2298222908-433205819-1316438490-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{65ef0f89-5596-11e6-a554-94de80615e8b}" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{65ef0f89-5596-11e6-a554-94de80615e8b} => nie znaleziono
- "HKU\S-1-5-21-2298222908-433205819-1316438490-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{900e1b01-ea7a-11e3-a58a-94de80615e8b}" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{900e1b01-ea7a-11e3-a58a-94de80615e8b} => nie znaleziono
- "HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run\\" => pomyślnie usunięto
- C:\Windows\system32\GroupPolicy\Machine => pomyślnie przeniesiono
- C:\Windows\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono
- "HKLM\SOFTWARE\Policies\Google" => pomyślnie usunięto
- HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono
- HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono
- HKU\S-1-5-21-2298222908-433205819-1316438490-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono
- HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie przywrócono
- "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" => pomyślnie usunięto
- HKLM\Software\Wow6432Node\Classes\CLSID\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} => nie znaleziono
- "HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto
- "HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto
- "HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto
- "HKU\S-1-5-21-2298222908-433205819-1316438490-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F}" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} => nie znaleziono
- "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF925EF3-7A87-44E4-9CAF-8D7B280BF616}" => pomyślnie usunięto
- HKLM\Software\Wow6432Node\Classes\CLSID\{DF925EF3-7A87-44E4-9CAF-8D7B280BF616} => nie znaleziono
- "HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => pomyślnie usunięto
- "HKLM\Software\Wow6432Node\MozillaPlugins\@graphisoft.com/GDL Web Plug-in" => pomyślnie usunięto
- "HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => pomyślnie usunięto
- "HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.6" => pomyślnie usunięto
- "HKU\S-1-5-21-2298222908-433205819-1316438490-1000\SOFTWARE\Google\Chrome\Extensions\bknbnapaddjdnbilpmlacdkjdkjmbjhd" => pomyślnie usunięto
- "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\bknbnapaddjdnbilpmlacdkjdkjmbjhd" => pomyślnie usunięto
- "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck" => pomyślnie usunięto
- "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki" => pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\UCBrowserSvc" => pomyślnie usunięto
- UCBrowserSvc => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\ucdrv" => pomyślnie usunięto
- ucdrv => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\cpuz135" => pomyślnie usunięto
- cpuz135 => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\esgiguard" => pomyślnie usunięto
- esgiguard => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\ew_hwusbdev" => pomyślnie usunięto
- ew_hwusbdev => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\ew_usbenumfilter" => pomyślnie usunięto
- ew_usbenumfilter => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\gdrv" => pomyślnie usunięto
- gdrv => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\huawei_cdcacm" => pomyślnie usunięto
- huawei_cdcacm => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\huawei_enumerator" => pomyślnie usunięto
- huawei_enumerator => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\huawei_ext_ctrl" => pomyślnie usunięto
- huawei_ext_ctrl => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\huawei_wwanecm" => pomyślnie usunięto
- huawei_wwanecm => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\hwusb_cdcacm" => pomyślnie usunięto
- hwusb_cdcacm => serwis pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\hwusb_wwanecm" => pomyślnie usunięto
- hwusb_wwanecm => serwis pomyślnie usunięto
- C:\Users\admin\ntuser.pol => pomyślnie przeniesiono
- C:\ProgramData\ntuser.pol => pomyślnie przeniesiono
- VirusTotal: C:\Users\admin\AppData\Local\mp4tomov_setup.exe => https://www.virustotal.com/file/23514a09416d12250563b92c4ddd62e76bf86faddc60aac239396af7fd2d8a43/analysis/1450068786/
- VirusTotal: C:\ProgramData\Microsoft\Windows\Audio\winamgr.exe => https://www.virustotal.com/file/9cc81ca81f785f83bc3a2d258715682002bce751186545f6b84143216cee03c8/analysis/1529949605/
- "HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\KuaiZip2ShlExt" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{6ADF19E3-77A3-4395-ADB4-9FD7D351EB3F} => nie znaleziono
- "HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Comodo Antivirus" => pomyślnie usunięto
- "HKLM\Software\Classes\CLSID\{4255A182-CAD9-4214-A19B-7BA7FB633BBD}" => pomyślnie usunięto
- "HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\KZipShell2Ext" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{6ADF19E3-77A3-4395-ADB4-9FD7D351EB3F} => nie znaleziono
- "HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\KuaiZip2ShlExt" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{6ADF19E3-77A3-4395-ADB4-9FD7D351EB3F} => nie znaleziono
- "HKLM\Software\Classes\Drive\ShellEx\ContextMenuHandlers\Comodo Antivirus" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{4255A182-CAD9-4214-A19B-7BA7FB633BBD} => nie znaleziono
- "HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\KuaiZip2ShlExt" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{6ADF19E3-77A3-4395-ADB4-9FD7D351EB3F} => nie znaleziono
- "HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Comodo Antivirus" => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{4255A182-CAD9-4214-A19B-7BA7FB633BBD} => nie znaleziono
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2E8FDEA2-834C-4A6C-B04D-38B9DE69C5E2}" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2E8FDEA2-834C-4A6C-B04D-38B9DE69C5E2}" => pomyślnie usunięto
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WarThunder24 => nie znaleziono
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3FBBD80F-9F56-4D2D-9830-BB28AF3A9ECE}" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3FBBD80F-9F56-4D2D-9830-BB28AF3A9ECE}" => pomyślnie usunięto
- C:\Windows\System32\Tasks\{27255DE4-5108-389B-BC43-756072BCCABC} => pomyślnie przeniesiono
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{27255DE4-5108-389B-BC43-756072BCCABC}" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{48A54D51-0308-44BE-8437-8124075386E2}" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{48A54D51-0308-44BE-8437-8124075386E2}" => pomyślnie usunięto
- C:\Windows\System32\Tasks\{153CED8F-1F64-F1CF-14FC-2F76962E44BA} => pomyślnie przeniesiono
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{153CED8F-1F64-F1CF-14FC-2F76962E44BA}" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{8D4A0E28-182F-4C5E-A667-F39C9CA48D4A}" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D4A0E28-182F-4C5E-A667-F39C9CA48D4A}" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RSF Media Convertor 2" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B2D754C5-3744-4765-88A2-2BA011A99F49}" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B2D754C5-3744-4765-88A2-2BA011A99F49}" => pomyślnie usunięto
- C:\Windows\System32\Tasks\UCBrowserUpdater => pomyślnie przeniesiono
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UCBrowserUpdater" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BA9CED07-7FF0-4AE2-A289-307EE3B77B4A}" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BA9CED07-7FF0-4AE2-A289-307EE3B77B4A}" => pomyślnie usunięto
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WarThunder sun => nie znaleziono
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E2A17C36-97B8-49C9-B4F9-B148DC2759C7}" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E2A17C36-97B8-49C9-B4F9-B148DC2759C7}" => pomyślnie usunięto
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WarThunder sat => nie znaleziono
- C:\Windows\Tasks\UCBrowserUpdater.job => pomyślnie przeniesiono
- C:\Windows\system32\drivers => ":ucdrv-x64.sys" ADS pomyślnie usunięto
- C:\Windows\system32\drivers => ":x64" ADS pomyślnie usunięto
- C:\Windows\system32\drivers => ":x86" ADS pomyślnie usunięto
- C:\ProgramData\Reprise => ":wupeogjxlctlfudivq`qsp`28hfm" ADS pomyślnie usunięto
- C:\ProgramData\Reprise => ":wupeogjxldtlfudivq`qsp`26hfm" ADS pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\app" => pomyślnie usunięto
- "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\svchost0" => pomyślnie usunięto
- ========= ipconfig /flushdns =========
- Konfiguracja IP systemu Windows
- Pomylnie opr˘ľniono pami©† podr©cznĄ programu rozpoznawania nazw DNS.
- ========= Koniec CMD: =========
- ========= dir /a "C:\Program Files" =========
- Wolumin w stacji C nie ma etykiety.
- Numer seryjny woluminu: 2E92-8E22
- Katalog: C:\Program Files
- 2018-06-19 21:55 <DIR> .
- 2018-06-19 21:55 <DIR> ..
- 2017-08-21 17:55 <DIR> Adobe
- 2016-01-04 15:17 <DIR> Artlantis Studio 5
- 2018-03-18 16:53 <DIR> Artlantis Studio 6.5
- 2017-01-22 20:20 <DIR> Autodesk
- 2018-06-13 23:16 <DIR> AVAST Software
- 2016-03-20 14:18 <DIR> Bonjour
- 2018-06-13 23:17 <DIR> CCleaner
- 2018-06-14 18:22 <DIR> Common Files
- 2018-06-19 21:55 <DIR> COMODO
- 2009-07-14 06:54 174 desktop.ini
- 2017-03-15 19:48 <DIR> DVD Maker
- 2018-06-03 16:16 <DIR> GRAPHISOFT
- 2018-06-19 21:19 <DIR> Intel
- 2017-03-15 19:48 <DIR> Internet Explorer
- 2016-03-20 14:20 <DIR> iPod
- 2016-03-20 14:20 <DIR> iTunes
- 2014-01-05 20:12 <DIR> M-Audio
- 2018-06-19 21:49 <DIR> Malwarebytes
- 2011-04-12 15:32 <DIR> Microsoft Games
- 2014-04-15 17:44 <DIR> Microsoft Office
- 2017-03-15 00:33 <DIR> Microsoft Silverlight
- 2018-03-21 01:50 <DIR> mmpicker
- 2009-07-14 07:32 <DIR> MSBuild
- 2016-12-10 13:42 <DIR> NVIDIA Corporation
- 2013-09-17 10:48 <DIR> Realtek
- 2015-01-28 20:30 <DIR> REAPER (x64)
- 2009-07-14 07:32 <DIR> Reference Assemblies
- 2009-07-14 05:20 <DIR> RSF Media Convertor 2
- 2018-06-12 15:58 <DIR> SketchUp
- 2015-01-13 19:05 <DIR> Softland
- 2009-07-14 07:09 <DIR> Uninstall Information
- 2018-06-19 22:08 <DIR> VueScan
- 2013-09-17 12:24 <DIR> Windows Defender
- 2011-04-12 15:21 <DIR> Windows Mail
- 2016-10-12 21:25 <DIR> Windows Media Player
- 2013-09-17 10:39 <DIR> Windows NT
- 2011-04-12 15:21 <DIR> Windows Photo Viewer
- 2010-11-21 05:31 <DIR> Windows Portable Devices
- 2011-04-12 15:21 <DIR> Windows Sidebar
- 1 plik(˘w) 174 bajt˘w
- 40 katalog(˘w) 14˙789˙070˙848 bajt˘w wolnych
- ========= Koniec CMD: =========
- ========= dir /a "C:\Program Files (x86)" =========
- Wolumin w stacji C nie ma etykiety.
- Numer seryjny woluminu: 2E92-8E22
- Katalog: C:\Program Files (x86)
- 2018-06-25 19:11 <DIR> .
- 2018-06-25 19:11 <DIR> ..
- 2016-02-10 00:37 <DIR> ALLPlayer
- 2016-03-20 14:21 <DIR> Apple Software Update
- 2014-09-26 17:20 <DIR> ASIO4ALL v2
- 2017-01-22 20:41 <DIR> Autodesk
- 2016-03-20 14:18 <DIR> Bonjour
- 2018-06-13 23:21 <DIR> C++
- 2018-06-11 21:19 <DIR> CodeMeter
- 2018-06-19 21:16 <DIR> Common Files
- 2018-06-19 23:36 <DIR> Comodo
- 2013-10-02 20:59 <DIR> DAEMON Tools Lite
- 2009-07-14 06:54 174 desktop.ini
- 2015-05-25 17:12 <DIR> DigiDesign
- 1601-01-03 21:33 73˙216 EEGaUi.exe
- 2018-06-25 19:12 <DIR> Google
- 2018-06-25 19:11 <DIR> GUM7F2D.tmp
- 2018-06-25 19:28 7˙649˙280 GUT7F2E.tmp
- 2017-08-25 18:45 <DIR> HP
- 2014-04-28 21:52 <DIR> IK Multimedia
- 2018-06-13 23:49 <DIR> InstallShield Installation Information
- 2018-06-19 21:19 <DIR> Intel
- 2017-03-15 19:48 <DIR> Internet Explorer
- 2016-03-20 14:20 <DIR> iTunes
- 2016-03-22 14:57 <DIR> Java
- 2016-01-06 00:53 <DIR> K-Lite Codec Pack
- 2014-01-05 04:05 <DIR> Lame For Audacity
- 2015-10-29 16:11 <DIR> Lenovo
- 2013-09-17 14:41 <DIR> LibreOffice 4.0
- 2014-01-05 20:12 <DIR> M-Audio
- 2014-10-17 00:39 <DIR> Microsoft ASP.NET
- 2014-04-15 17:45 <DIR> Microsoft Office
- 2017-03-15 00:33 <DIR> Microsoft Silverlight
- 2014-11-17 01:40 <DIR> Microsoft SQL Server Compact Edition
- 2014-04-15 17:45 <DIR> Microsoft Visual Studio
- 2014-04-15 17:44 <DIR> Microsoft Visual Studio 8
- 2014-04-16 03:00 <DIR> Microsoft Works
- 2014-04-15 17:45 <DIR> Microsoft.NET
- 2018-06-07 19:56 <DIR> Mozilla Firefox
- 2013-11-07 20:16 <DIR> Mozilla Maintenance Service
- 2017-09-10 21:57 <DIR> Mr DJ
- 2014-04-15 17:45 <DIR> MSBuild
- 2015-05-06 01:00 <DIR> MSXML 4.0
- 2015-10-05 16:24 <DIR> Novation
- 2016-12-10 13:42 <DIR> NVIDIA Corporation
- 2014-03-24 00:44 <DIR> Opera
- 2016-03-22 15:01 <DIR> Pinnacle
- 2016-03-20 14:21 <DIR> QuickTime
- 2013-09-17 10:48 <DIR> Realtek
- 2009-07-14 07:32 <DIR> Reference Assemblies
- 2016-10-05 19:26 <DIR> sbqh
- 2018-06-13 22:49 <DIR> Spybot - Search & Destroy 2
- 2013-09-17 10:48 <DIR> Temp
- 2015-10-05 16:24 <DIR> Uninstall Information
- 2013-09-17 12:24 <DIR> Windows Defender
- 2014-11-17 01:40 <DIR> Windows Live
- 2011-04-12 15:21 <DIR> Windows Mail
- 2016-10-12 21:25 <DIR> Windows Media Player
- 2009-07-14 07:32 <DIR> Windows NT
- 2011-04-12 15:21 <DIR> Windows Photo Viewer
- 2010-11-21 05:31 <DIR> Windows Portable Devices
- 2011-04-12 15:21 <DIR> Windows Sidebar
- 3 plik(˘w) 7˙722˙670 bajt˘w
- 59 katalog(˘w) 14˙789˙066˙752 bajt˘w wolnych
- ========= Koniec CMD: =========
- ========= dir /a "C:\Users\admin\AppData\Roaming" =========
- Wolumin w stacji C nie ma etykiety.
- Numer seryjny woluminu: 2E92-8E22
- Katalog: C:\Users\admin\AppData\Roaming
- 2018-06-20 00:00 <DIR> .
- 2018-06-20 00:00 <DIR> ..
- 2016-10-26 17:10 <DIR> .mono
- 2017-01-01 16:45 38 .pedal.version
- 2017-01-01 16:34 33 .pgbiaspedal
- 2015-10-05 16:01 <DIR> Ableton
- 2018-06-12 17:44 <DIR> Abvent_Artlantis5
- 2018-06-12 23:24 <DIR> Abvent_Artlantis6
- 2017-09-10 22:12 <DIR> AC3Filter
- 2016-02-01 19:40 1˙926 ADMIN-KOMPUTER.MTBF.txt
- 2018-01-31 10:41 <DIR> Adobe
- 2016-10-05 19:25 693˙760 Alpha-Ron.exe
- 2016-10-05 19:26 1˙926˙611 Alpha-Ron.tst
- 2018-03-26 20:27 <DIR> Apple Computer
- 2015-06-24 14:26 <DIR> Audacity
- 2018-06-13 22:51 <DIR> Autodesk
- 2018-06-13 23:18 <DIR> AVAST Software
- 2014-10-30 01:47 <DIR> Bentley
- 2017-01-01 16:45 <DIR> BIAS Pedal
- 2017-01-01 16:34 <DIR> BIAS_Pedal
- 2017-12-28 00:05 <DIR> DAEMON Tools Lite
- 2017-08-27 00:01 <DIR> foobar2000
- 2014-01-20 02:21 <DIR> GHISLER
- 2017-01-08 14:30 <DIR> Google
- 2018-06-13 19:52 <DIR> gpipbx1tgth
- 2018-06-03 16:19 <DIR> Graphisoft
- 2016-10-05 19:25 937˙776 hKXF.exe
- 2016-10-05 19:25 961˙349 hKXFC.au3
- 2017-08-25 18:45 <DIR> HP
- 2018-06-13 23:37 <DIR> HpUpdate
- 2013-09-17 10:39 <DIR> Identities
- 2018-06-03 16:16 <DIR> Install.GS
- 2013-09-17 10:46 <DIR> InstallShield
- 2013-09-17 10:51 <DIR> Intel Corporation
- 2018-06-11 21:25 <DIR> JAM Software
- 2017-06-12 19:15 <DIR> knaufinsulation
- 2013-09-17 14:41 <DIR> LibreOffice
- 2013-09-17 15:22 <DIR> Macromedia
- 2017-11-10 15:55 <DIR> Maize Sampler Player
- 2018-06-03 16:25 <DIR> MAXON
- 2011-04-12 15:32 <DIR> Media Center Programs
- 2017-01-10 21:56 <DIR> Microsoft
- 2014-09-23 22:35 <DIR> Modiac
- 2017-11-14 19:37 <DIR> Mozilla
- 2018-06-13 23:37 <DIR> MPC-HC
- 2014-01-24 01:36 <DIR> NapiProjekt
- 2014-12-16 14:58 <DIR> NVIDIA
- 2015-04-10 00:55 <DIR> ObviousIdea
- 2014-03-24 00:43 <DIR> OpenOffice
- 2014-03-24 00:43 <DIR> Opera Software
- 2018-06-13 19:44 <DIR> oyhsvfkdgqc
- 2016-05-03 21:05 132 Preferencje formatu GIF CS6 firmy Adobe
- 2016-06-15 11:58 132 Preferencje formatu PNG CS6 firmy Adobe
- 2016-03-03 16:19 <DIR> REAPER
- 2016-03-22 15:02 <DIR> SanDisk
- 2017-01-08 14:19 <DIR> SketchUp
- 2018-06-13 23:37 <DIR> Skype
- 2015-01-13 19:06 <DIR> Softland
- 2018-06-19 23:17 <DIR> Spotify
- 2015-01-30 16:02 <DIR> StageManager.BD092818F67280F4B42B04877600987F0111B594.1
- 2016-08-24 20:43 <DIR> Steam
- 2016-10-05 19:26 190˙394 Tiptam.bin
- 2017-01-08 14:13 <DIR> Trimble Connect for SketchUp
- 2018-06-12 15:58 <DIR> Trimble Navigation Limited
- 2018-02-28 23:40 <DIR> TS3Client
- 2016-10-05 19:26 32˙038 uninstall_temp.ico
- 2018-03-26 20:23 <DIR> uTorrent
- 2017-08-02 17:51 <DIR> vlc
- 2015-12-07 18:09 <DIR> WarThunder
- 2015-03-09 01:20 157 WB.CFG
- 2013-10-08 15:27 <DIR> WinRAR
- 2016-10-05 19:26 1˙897˙576 Zonex.bin
- 13 plik(˘w) 6˙641˙922 bajt˘w
- 59 katalog(˘w) 14˙789˙066˙752 bajt˘w wolnych
- ========= Koniec CMD: =========
- ========= dir /a "C:\Users\admin\AppData\Local" =========
- Wolumin w stacji C nie ma etykiety.
- Numer seryjny woluminu: 2E92-8E22
- Katalog: C:\Users\admin\AppData\Local
- 2018-06-25 20:53 <DIR> .
- 2018-06-25 20:53 <DIR> ..
- 2018-06-13 23:27 <DIR> 361618bd08934136af379eb7aa29e1a8
- 2013-10-25 22:10 <DIR> Activision
- 2018-06-19 20:31 <DIR> Adobe
- 2013-09-17 11:15 <DIR> ALLMediaServer
- 2016-02-10 00:36 <DIR> ALLPlayer
- 2013-10-08 15:19 <DIR> Apple
- 2014-07-16 21:03 <DIR> Apple Computer
- 2013-09-17 12:27 <DIR> Apps
- 2017-01-22 20:57 <DIR> Autodesk
- 2013-10-02 21:01 <DIR> avgchrome
- 2018-06-13 23:35 <DIR> Avid
- 2014-10-30 01:47 <DIR> Bentley
- 2014-11-24 15:55 <DIR> BlueStacksSetup
- 2018-06-25 20:52 <DIR> C.Framework
- 2016-03-22 01:23 <DIR> cache
- 2018-06-19 21:20 <DIR> CCleaner v9.18
- 2015-09-30 18:31 <DIR> CEF
- 2018-01-17 22:39 <DIR> ChomikBox
- 2016-12-18 19:32 <DIR> Chromium
- 2016-10-26 17:10 <DIR> Colossal Order
- 2018-06-19 21:55 <DIR> Comodo
- 2018-06-25 19:09 <DIR> CrashDumps
- 2013-09-17 10:39 <JUNCTION> Dane aplikacji [C:\Users\admin\AppData\Local]
- 2013-09-17 12:27 <DIR> Deployment
- 2018-06-15 22:56 <DIR> Diagnostics
- 2016-02-01 19:37 <DIR> Downloaded Installations
- 2018-06-22 18:23 <DIR> ElevatedDiagnostics
- 2015-06-17 11:42 <DIR> EmieBrowserModeList
- 2015-06-17 11:42 <DIR> EmieSiteList
- 2015-06-17 11:42 <DIR> EmieUserList
- 2017-12-04 18:28 <DIR> EpicGamesLauncher
- 2017-12-04 18:54 <DIR> FortniteGame
- 2017-08-07 22:32 188˙936 GDIPFONTCACHEV1.DAT
- 2014-01-24 03:39 <DIR> GHISLER
- 2017-12-03 20:11 <DIR> Google
- 2017-01-12 19:49 <DIR> Graphisoft
- 2014-01-26 02:30 <DIR> GS-LW-Temp
- 2015-06-01 23:55 <DIR> GWX
- 2013-09-17 10:39 <JUNCTION> Historia [C:\Users\admin\AppData\Local\Microsoft\Windows\History]
- 2017-08-25 18:08 <DIR> HP
- 2018-06-25 20:53 1˙292˙034 IconCache.db
- 2015-11-30 15:21 <DIR> iWesoft
- 2015-10-29 16:11 <DIR> Lenovo
- 2018-02-25 20:09 <DIR> LIBFREDO6_DATA_Dir
- 2015-06-11 00:25 1 llftool.4.40.agreement
- 2014-03-03 11:31 <DIR> LogMeIn
- 2013-09-30 22:51 <DIR> Macromedia
- 2015-12-08 16:24 <DIR> MediaFire Desktop
- 2018-06-13 23:54 <DIR> Microsoft
- 2014-04-15 17:44 <DIR> Microsoft Help
- 2014-09-23 22:35 <DIR> Modiac
- 2015-01-17 22:55 <DIR> Movavi
- 2013-09-30 22:46 <DIR> Mozilla
- 2015-11-22 23:42 1˙020˙214 mp4tomov_setup.exe
- 2016-12-10 18:42 <DIR> NVIDIA
- 2016-12-10 13:42 <DIR> NVIDIA Corporation
- 2014-03-24 00:43 <DIR> Opera Software
- 2018-06-22 19:08 <DIR> Opera-12.8
- 2018-06-13 23:35 <DIR> Pinnacle
- 2013-09-17 11:15 <DIR> Programs
- 2017-01-19 22:29 7˙605 Resmon.ResmonCfg
- 2015-05-26 11:28 <DIR> Skype
- 2018-06-19 20:31 <DIR> Spotify
- 2015-01-13 19:05 <DIR> Startup
- 2016-12-18 19:32 <DIR> Steam
- 2017-02-09 21:15 <DIR> TeamSpeak 3
- 2018-06-25 20:56 <DIR> Temp
- 2013-09-17 10:39 <JUNCTION> Temporary Internet Files [C:\Users\admin\AppData\Local\Microsoft\Windows\Temporary Internet Files]
- 2017-12-04 18:54 <DIR> UnrealEngine
- 2017-12-04 18:28 <DIR> UnrealEngineLauncher
- 2018-06-14 23:29 <DIR> VirtualStore
- 2018-06-13 19:44 3 wbem.ini
- 2018-06-13 19:57 <DIR> Windows
- 2017-02-20 13:05 <DIR> Windows Live
- 6 plik(˘w) 2˙508˙793 bajt˘w
- 70 katalog(˘w) 14˙789˙062˙656 bajt˘w wolnych
- ========= Koniec CMD: =========
- C:\Windows\System32\Drivers\etc\hosts => pomyślnie przeniesiono
- Hosts pomyślnie przywrócono.
- =========== EmptyTemp: ==========
- BITS transfer queue => 0 B
- DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 12853898 B
- Java, Flash, Steam htmlcache => 199620675 B
- Windows/system/drivers => 2396089 B
- Edge => 0 B
- Chrome => 2179113 B
- Firefox => 79172323 B
- Opera => 392192 B
- Temp, IE cache, history, cookies, recent:
- Users => 0 B
- Default => 0 B
- Public => 0 B
- ProgramData => 0 B
- systemprofile => 33058 B
- systemprofile32 => 72310 B
- LocalService => 66228 B
- NetworkService => 66228 B
- admin => 41339041 B
- RecycleBin => 120441 B
- EmptyTemp: => 322.6 MB danych tymczasowych Usunięto.
- ================================
- System wymagał restartu.
- ==== Koniec Fixlog 20:56:46 ====
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement