Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 25-09-2019
- Uruchomiony przez oem (25-09-2019 21:28:49) Run:1
- Uruchomiony z C:\Users\oem\Downloads
- Załadowane profile: oem (Dostępne profile: oem)
- Tryb startu: Normal
- ==============================================
- fixlist - zawartość:
- *****************
- CloseProcesses:
- CreateRestorePoint:
- EmptyTemp:
- File: C:\Advanced Wheel Mouse\wh_exec.exe
- HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA
- HKU\S-1-5-21-402273477-2533903143-1535139638-1000\...\MountPoints2: {e88a7ae9-a33e-11e9-b8d5-1c6f65cf632e} - F:\HiSuiteDownLoader.exe
- HKU\S-1-5-21-402273477-2533903143-1535139638-1000\...\MountPoints2: {e88a7b00-a33e-11e9-b8d5-1c6f65cf632e} - F:\HiSuiteDownLoader.exe
- HKU\S-1-5-21-402273477-2533903143-1535139638-1000\...\MountPoints2: {ec622409-c983-11e9-828f-1c6f65cf632e} - F:\HiSuiteDownLoader.exe
- FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
- Task: {0644C2C1-5D57-46DC-9BC7-CD7B666DBBBD} - System32\Tasks\Opera scheduled Autoupdate 1492006570 => C:\Program Files\Opera\launcher.exe [1520152 2019-09-18] (Opera Software AS -> Opera Software)
- Tcpip\..\Interfaces\{582B0274-CA87-4332-8B7A-FE3F0454BF61}: [DhcpNameServer] 194.204.159.1 194.204.152.34
- Tcpip\..\Interfaces\{D0DAD9D1-07B4-4C1B-9898-6645604757B8}: [DhcpNameServer] 194.204.159.1 194.204.152.34
- HKU\S-1-5-21-402273477-2533903143-1535139638-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pl-pl/?ocid=iehp
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [Brak pliku]
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [Brak pliku]
- CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <nie znaleziono>
- 2019-09-25 17:34 - 2017-04-12 16:16 - 000003884 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1492006570
- ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Brak pliku
- ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Brak pliku
- ContextMenuHandlers1_S-1-5-21-402273477-2533903143-1535139638-1000: [GGDriveMenu] -> [CC]{E68D0A55-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku
- ContextMenuHandlers4_S-1-5-21-402273477-2533903143-1535139638-1000: [GGDriveMenu] -> [CC]{E68D0A55-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku
- *****************
- Procesy zostały pomyślnie zamknięte.
- Punkt przywracania został pomyślnie utworzony.
- ========================= File: C:\Advanced Wheel Mouse\wh_exec.exe ========================
- C:\Advanced Wheel Mouse\wh_exec.exe
- Brak podpisu cyfrowego
- MD5: 7335312DDDEB92AA7462A4DC20467B82
- Data utworzenia i modyfikacji: 2016-08-24 11:58 - 2000-01-01 02:00
- Rozmiar: 000147456
- Atrybuty: ----A
- Firma:
- Wewnętrzna nazwa:
- Oryginalna nazwa:
- Produkt:
- Opis: Mouse Start Program
- Plik Wersja:
- Produkt Wersja:
- Prawa autorskie:
- VirusTotal: https://www.virustotal.com/file/f0f0ea438101a3d41c89817f22a3118ad7e8a4004d63ed16291c6a56a8503ef8/analysis/1487884631/
- ====== Koniec File: ======
- HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => pomyślnie usunięto
- HKU\S-1-5-21-402273477-2533903143-1535139638-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e88a7ae9-a33e-11e9-b8d5-1c6f65cf632e} => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{e88a7ae9-a33e-11e9-b8d5-1c6f65cf632e} => nie znaleziono
- HKU\S-1-5-21-402273477-2533903143-1535139638-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e88a7b00-a33e-11e9-b8d5-1c6f65cf632e} => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{e88a7b00-a33e-11e9-b8d5-1c6f65cf632e} => nie znaleziono
- HKU\S-1-5-21-402273477-2533903143-1535139638-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ec622409-c983-11e9-828f-1c6f65cf632e} => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{ec622409-c983-11e9-828f-1c6f65cf632e} => nie znaleziono
- HKLM\SOFTWARE\Policies\Mozilla => pomyślnie usunięto
- "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{0644C2C1-5D57-46DC-9BC7-CD7B666DBBBD}" => pomyślnie usunięto
- "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0644C2C1-5D57-46DC-9BC7-CD7B666DBBBD}" => pomyślnie usunięto
- C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1492006570 => pomyślnie przeniesiono
- "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Opera scheduled Autoupdate 1492006570" => pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{582B0274-CA87-4332-8B7A-FE3F0454BF61}\\DhcpNameServer" => pomyślnie usunięto
- "HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{D0DAD9D1-07B4-4C1B-9898-6645604757B8}\\DhcpNameServer" => pomyślnie usunięto
- "HKU\S-1-5-21-402273477-2533903143-1535139638-1000\Software\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache" => pomyślnie usunięto
- HKLM\Software\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 => pomyślnie usunięto
- HKLM\Software\Wow6432Node\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater => pomyślnie usunięto
- HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => pomyślnie usunięto
- HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => pomyślnie usunięto
- "C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1492006570" => nie znaleziono
- HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => nie znaleziono
- HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => pomyślnie usunięto
- HKLM\Software\Classes\CLSID\{474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => nie znaleziono
- HKU\S-1-5-21-402273477-2533903143-1535139638-1000\Software\Classes\*\ShellEx\ContextMenuHandlers\GGDriveMenu => pomyślnie usunięto
- HKU\S-1-5-21-402273477-2533903143-1535139638-1000\SOFTWARE\Classes\CLSID\[CC]{E68D0A55-3C40-4712-B90D-DCFA93FF2534} => nie znaleziono
- HKU\S-1-5-21-402273477-2533903143-1535139638-1000\Software\Classes\Directory\ShellEx\ContextMenuHandlers\GGDriveMenu => pomyślnie usunięto
- HKU\S-1-5-21-402273477-2533903143-1535139638-1000\SOFTWARE\Classes\CLSID\[CC]{E68D0A55-3C40-4712-B90D-DCFA93FF2534} => nie znaleziono
- =========== EmptyTemp: ==========
- BITS transfer queue => 8388608 B
- DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 23756061 B
- Java, Flash, Steam htmlcache => 6749093 B
- Windows/system/drivers => 963969 B
- Edge => 0 B
- Chrome => 7067629 B
- Firefox => 130217570 B
- Opera => 25549394 B
- Temp, IE cache, history, cookies, recent:
- Users => 0 B
- Default => 0 B
- Public => 0 B
- ProgramData => 0 B
- systemprofile => 18123 B
- systemprofile32 => 132523 B
- LocalService => 132244 B
- NetworkService => 692 B
- oem => 11888925 B
- RecycleBin => 0 B
- EmptyTemp: => 204.9 MB danych tymczasowych Usunięto.
- ================================
- System wymagał restartu.
- ==== Koniec Fixlog 21:29:45 ====
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement