Advertisement
Guest User

Untitled

a guest
Nov 28th, 2019
424
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 6.86 KB | None | 0 0
  1. Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 25-11-2019 01
  2. Uruchomiony przez paula (28-11-2019 23:30:55) Run:2
  3. Uruchomiony z C:\Users\paula\Downloads
  4. Załadowane profile: paula (Dostępne profile: paula)
  5. Tryb startu: Normal
  6. ==============================================
  7.  
  8. fixlist - zawartość:
  9. *****************
  10. CloseProcesses:
  11. CreateRestorePoint:
  12. HKU\S-1-5-21-2858759977-1372284025-741021665-1001\...\Run: [9115345] => C:\Users\paula\AppData\Roaming\1mtfwdfrmb5\ybcl2104odb.exe [4503502 2019-11-27] ( ) [Brak podpisu cyfrowego]
  13. AppInit_DLLs: C:\ProgramData\AppxeetouQ\Daltwarm.dll => C:\ProgramData\AppxeetouQ\Daltwarm.dll [342528 2019-11-27] () [Brak podpisu cyfrowego]
  14. AppInit_DLLs-x32: C:\ProgramData\AppxeetouQ\Zumit.dll => C:\ProgramData\AppxeetouQ\Zumit.dll [460800 2019-11-27] () [Brak podpisu cyfrowego]
  15. ProxyServer: [S-1-5-21-2858759977-1372284025-741021665-1001] => http=127.0.0.1:8080;https=127.0.0.1:8080
  16. CHR DefaultSearchURL: Default -> hxxps://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoGk3GzeHhcr-ccYpEu3QWpfYxwNGsiS5Sz4pbehwe7cONIzJZJgtGiyRJV-qHKJD-0NDBv6AP83p-C9xxGQfXcsLGFymxoISzFGRw3dmt_IJDFS3Oy5bOKkmTGG8i97IL11yidHfLF2TPyU64xHSCxtUNcAyXBhPE7etN-87BJYd&q={searchTerms}
  17. CHR DefaultSearchKeyword: Default -> feed.sonic-search.com
  18. Task: {0A69E4F9-D98C-46AC-B4D1-09B63287A5A4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [360448 2019-11-24] (CloudBees, Inc.) [Brak podpisu cyfrowego]
  19. Task: {25B9A571-3AB5-403F-9E80-9FBF84787E16} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [360448 2019-11-24] (CloudBees, Inc.) [Brak podpisu cyfrowego]
  20. R2 AppxeetouQ; C:\ProgramData\\AppxeetouQ\\AppxeetouQ.exe [1044480 2019-11-19] () [Brak podpisu cyfrowego]
  21. C:\ProgramData\AppxeetouQs
  22. C:\ProgramData\AppxeetouQ
  23. C:\Program Files\X6UGLJS8ZD
  24. C:\Users\paula\AppData\Roaming\tkt5whznn5z
  25. C:\Users\paula\AppData\Roaming\5mg4h3e2qr1
  26. C:\Users\paula\AppData\Roaming\1mtfwdfrmb5
  27. C:\Users\paula\AppData\Roaming\Mozilla
  28. ShortcutWithArgument: C:\Users\paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> %SNP%
  29. ShortcutWithArgument: C:\Users\paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> %SNP%
  30. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> %SNP%
  31. ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> %SNP%
  32. C:\ProgramData\AppxeetouQ\Daltwarm.dll
  33. C:\Users\paula\AppData\Local\Temp\is-10LNB.tmp
  34. C:\Users\paula\AppData\Local\Temp\is-19KUR.tmp
  35. CMD: netsh firewall reset
  36. EmptyTemp:
  37. *****************
  38.  
  39. Procesy zostały pomyślnie zamknięte.
  40. Punkt przywracania został pomyślnie utworzony.
  41. "HKU\S-1-5-21-2858759977-1372284025-741021665-1001\Software\Microsoft\Windows\CurrentVersion\Run\\9115345" => pomyślnie usunięto
  42. "C:\ProgramData\AppxeetouQ\Daltwarm.dll" => Dane wartości pomyślnie usunięto
  43. "C:\ProgramData\AppxeetouQ\Zumit.dll" => Dane wartości pomyślnie usunięto
  44. "HKU\S-1-5-21-2858759977-1372284025-741021665-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer" => pomyślnie usunięto
  45. "Chrome DefaultSearchURL" => pomyślnie usunięto
  46. "Chrome DefaultSearchKeyword" => pomyślnie usunięto
  47. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0A69E4F9-D98C-46AC-B4D1-09B63287A5A4}" => pomyślnie usunięto
  48. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0A69E4F9-D98C-46AC-B4D1-09B63287A5A4}" => pomyślnie usunięto
  49. C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => pomyślnie przeniesiono
  50. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => pomyślnie usunięto
  51. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{25B9A571-3AB5-403F-9E80-9FBF84787E16}" => pomyślnie usunięto
  52. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{25B9A571-3AB5-403F-9E80-9FBF84787E16}" => pomyślnie usunięto
  53. C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => pomyślnie przeniesiono
  54. "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => pomyślnie usunięto
  55. HKLM\System\CurrentControlSet\Services\AppxeetouQ => pomyślnie usunięto
  56. AppxeetouQ => serwis pomyślnie usunięto
  57. C:\ProgramData\AppxeetouQs => pomyślnie przeniesiono
  58. C:\ProgramData\AppxeetouQ => pomyślnie przeniesiono
  59. C:\Program Files\X6UGLJS8ZD => pomyślnie przeniesiono
  60. C:\Users\paula\AppData\Roaming\tkt5whznn5z => pomyślnie przeniesiono
  61. C:\Users\paula\AppData\Roaming\5mg4h3e2qr1 => pomyślnie przeniesiono
  62. C:\Users\paula\AppData\Roaming\1mtfwdfrmb5 => pomyślnie przeniesiono
  63. C:\Users\paula\AppData\Roaming\Mozilla => pomyślnie przeniesiono
  64. C:\Users\paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk => Skrót - argument pomyślnie usunięto
  65. C:\Users\paula\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk => Skrót - argument pomyślnie usunięto
  66. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk => Skrót - argument pomyślnie usunięto
  67. C:\Users\Public\Desktop\Google Chrome.lnk => Skrót - argument pomyślnie usunięto
  68. "C:\ProgramData\AppxeetouQ\Daltwarm.dll" => nie znaleziono
  69. C:\Users\paula\AppData\Local\Temp\is-10LNB.tmp => pomyślnie przeniesiono
  70. C:\Users\paula\AppData\Local\Temp\is-19KUR.tmp => pomyślnie przeniesiono
  71.  
  72. ========= netsh firewall reset =========
  73.  
  74.  
  75. IMPORTANT: Command executed successfully.
  76. However, "netsh firewall" is deprecated;
  77. use "netsh advfirewall firewall" instead.
  78. For more information on using "netsh advfirewall firewall" commands
  79. instead of "netsh firewall", see KB article 947709
  80. at https://go.microsoft.com/fwlink/?linkid=121488 .
  81.  
  82. Ok.
  83.  
  84.  
  85. ========= Koniec CMD: =========
  86.  
  87.  
  88. =========== EmptyTemp: ==========
  89.  
  90. BITS transfer queue => 7626752 B
  91. DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 11745211 B
  92. Java, Flash, Steam htmlcache => 0 B
  93. Windows/system/drivers => 61218210 B
  94. Edge => 0 B
  95. Chrome => 55574903 B
  96. Firefox => 0 B
  97. Opera => 0 B
  98.  
  99. Temp, IE cache, history, cookies, recent:
  100. Default => 0 B
  101. Users => 0 B
  102. ProgramData => 0 B
  103. Public => 0 B
  104. systemprofile => 0 B
  105. systemprofile32 => 0 B
  106. LocalService => 0 B
  107. NetworkService => 3236 B
  108. paula => 4567244 B
  109.  
  110. RecycleBin => 229332 B
  111. EmptyTemp: => 134.4 MB danych tymczasowych Usunięto.
  112.  
  113. ================================
  114.  
  115.  
  116. System wymagał restartu.
  117.  
  118. ==== Koniec Fixlog 23:32:48 ====
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement