Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Fix result of Farbar Recovery Scan Tool (x64) Version: 03-10-2017
- Ran by Mateusz (03-10-2017 23:10:38) Run:1
- Running from C:\Users\Mateusz\Downloads
- Loaded Profiles: Mateusz (Available Profiles: Mateusz)
- Boot Mode: Normal
- ==============================================
- fixlist content:
- *****************
- CloseProcesses:
- ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
- Task: {438ABC54-29E6-4C9B-892D-502260C675A2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2017-05-23] (Safer-Networking Ltd.)
- Task: {43C60824-2E8C-4AB8-809A-1AB56F037E4E} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2017-05-23] (Safer-Networking Ltd.)
- Task: {727D7186-D23B-4AF3-A9A5-8C8E93F80D9B} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2017-05-23] (Safer-Networking Ltd.)
- Task: {A5FDBF8E-DFD8-4797-974C-1F387BEEE513} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe
- Task: {C559822F-0E48-4D8F-B25C-04171DAF0C4F} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [2017-06-21] (Bitdefender)
- Task: {FE460D1A-AAB9-45F7-8CB5-EFA4A9610108} - System32\Tasks\R@1n-KMS\Windows64Professional => wmic [Argument = path SoftwareLicensingProduct where (ID="2de67392-b7a7-462a-b1ca-108dd189f588") call Activate]
- FirewallRules: [{0F8FB708-5BF3-43FB-9EFF-D8D48A79E54F}] => (Allow) C:\Windows\KMS-R@1n.exe
- FirewallRules: [{21868A53-06EE-4852-BE72-E3A6650ED187}] => (Allow) C:\Windows\KMS-R@1n.exe
- HKLM\...\Run: [InstallerLauncher] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-22-4B6147B1-00BC-4D0C-9128-68596A53D8A8\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-22-4B6147B (the data entry has 44 more characters).
- HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4174464 2017-05-23] (Safer-Networking Ltd.)
- Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
- IFEO\OSppSvc.exe: [Debugger] KMS-R@1nHook.exe
- IFEO\SppExtComObj.exe: [Debugger] KMS-R@1nHook.exe
- BootExecute: autocheck autochk * sdnclean64.exe
- BHO: Portfel Bitdefender -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll => No File
- Toolbar: HKLM - Portfel Bitdefender - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll No File
- FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff => not found
- FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff => not found
- R2 KMS-R@1n; C:\Windows\KMS-R@1n.exe [26112 2017-09-24] () [File not signed]
- C:\Windows\KMS-R@1n.exe
- C:\Windows\System32\Tasks\R@1n-KMS
- DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\R@1n-KMS
- U3 mbr; \??\C:\Users\Mateusz\AppData\Local\Temp\mbr.sys [X] <==== ATTENTION
- EmptyTemp:
- *****************
- Processes closed successfully.
- HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => key removed successfully
- HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => key not found.
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{438ABC54-29E6-4C9B-892D-502260C675A2} => key not found.
- C:\WINDOWS\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => not found.
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Scan the system => key not found.
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{43C60824-2E8C-4AB8-809A-1AB56F037E4E} => key not found.
- C:\WINDOWS\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => not found.
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Check for updates => key not found.
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{727D7186-D23B-4AF3-A9A5-8C8E93F80D9B} => key not found.
- C:\WINDOWS\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => not found.
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => key not found.
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A5FDBF8E-DFD8-4797-974C-1F387BEEE513} => key removed successfully
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A5FDBF8E-DFD8-4797-974C-1F387BEEE513} => key removed successfully
- C:\WINDOWS\System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => moved successfully
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Lenovo Customer Feedback Program 64 => key removed successfully
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C559822F-0E48-4D8F-B25C-04171DAF0C4F} => key not found.
- C:\WINDOWS\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => not found.
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => key not found.
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FE460D1A-AAB9-45F7-8CB5-EFA4A9610108} => key removed successfully
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FE460D1A-AAB9-45F7-8CB5-EFA4A9610108} => key removed successfully
- C:\WINDOWS\System32\Tasks\R@1n-KMS\Windows64Professional => moved successfully
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\R@1n-KMS\Windows64Professional => key removed successfully
- HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0F8FB708-5BF3-43FB-9EFF-D8D48A79E54F} => value removed successfully
- HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{21868A53-06EE-4852-BE72-E3A6650ED187} => value removed successfully
- HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\InstallerLauncher => value not found.
- HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SDTray => value not found.
- HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SDWinLogon => key not found.
- HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\OSppSvc.exe => key removed successfully
- HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\SppExtComObj.exe => key removed successfully
- HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => value restored successfully
- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} => key removed successfully
- HKLM\Software\Classes\CLSID\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} => key removed successfully
- HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} => value removed successfully
- HKLM\Software\Classes\CLSID\{1DAC0C53-7D23-4AB3-856A-B04D98CD982A} => key not found.
- HKLM\Software\Mozilla\Firefox\Extensions\\bdwtwe@bitdefender.com => value removed successfully
- HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\bdwtwe@bitdefender.com => value removed successfully
- HKLM\System\CurrentControlSet\Services\KMS-R@1n => key removed successfully
- KMS-R@1n => service removed successfully
- C:\Windows\KMS-R@1n.exe => moved successfully
- C:\Windows\System32\Tasks\R@1n-KMS => moved successfully
- HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\R@1n-KMS => key removed successfully
- mbr => service not found.
- =========== EmptyTemp: ==========
- BITS transfer queue => 6053888 B
- DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 13868113 B
- Java, Flash, Steam htmlcache => 53228211 B
- Windows/system/drivers => 971386787 B
- Edge => 29073720 B
- Chrome => 694992471 B
- Firefox => 0 B
- Opera => 0 B
- Temp, IE cache, history, cookies, recent:
- Default => 0 B
- Users => 0 B
- ProgramData => 0 B
- Public => 0 B
- systemprofile => 128 B
- systemprofile32 => 0 B
- LocalService => 13938 B
- NetworkService => 27418 B
- Mateusz => 406512038 B
- RecycleBin => 89503 B
- EmptyTemp: => 2 GB temporary data Removed.
- ================================
- The system needed a reboot.
- ==== End of Fixlog 23:10:51 ====
Add Comment
Please, Sign In to add comment