Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 21.11.2018 Uruchomiony przez STUD (23-11-2018 11:38:11) Run:3 Uruchomiony z C:\Users\STUD\Documents Załadowane profile: STUD (Dostępne profile: STUD & UpdatusUser & MSSQL$WFMSQL) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** ..CloseProcesses: CreateRestorePoint: HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-4003353032-2260459889-897377641-1000\...\RunOnce: [ALLPlayer Remote Update] => C:\Users\STUD\AppData\Local\Temp\ALLRemote.exe [2305896 2018-11-19] (ALLPlayer ) <==== UWAGA HKU\S-1-5-21-4003353032-2260459889-897377641-1000\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-4003353032-2260459889-897377641-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-4003353032-2260459889-897377641-1002\...\Run: [ROC_JAN2013_TB] => "C:\Program Files (x86)\AVG Secure Search\ROC_JAN2013_TB.exe" /PROMPT /CMPID=JAN2013_TB GroupPolicy: Ograniczenia ? <==== UWAGA GroupPolicy\User: Ograniczenia ? <==== UWAGA GroupPolicyUsers\S-1-5-21-4003353032-2260459889-897377641-1002\User: Ograniczenia <==== UWAGA HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.gazeta.pl/0,0.html?p=181&d=20140927 HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-4003353032-2260459889-897377641-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKU\S-1-5-21-4003353032-2260459889-897377641-1000 -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = DPF: HKLM-x32 {0D41B8C5-2599-4893-8183-00195EC8D5F9} hxxp://support.asus.com.tw/common/asusTek_sys_ctrl.cab FF Homepage: Mozilla\Firefox\Profiles\hrqpuyo1.default-1436371482448 -> hxxp://www.gazeta.pl/0,0.html?p=190 FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin HKU\S-1-5-21-4003353032-2260459889-897377641-1000: @onlive.com/OnLiveGameClientDetector,version=1.0.0 -> C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll [Brak pliku] FF Plugin HKU\S-1-5-21-4003353032-2260459889-897377641-1002: @onlive.com/OnLiveGameClientDetector,version=1.0.0 -> C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll [Brak pliku] FF Plugin HKU\S-1-5-21-4003353032-2260459889-897377641-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\UpdatusUser.STUDMEX\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [Brak pliku] CHR HomePage: Default -> hxxp://www.gazeta.pl/0,0.html?p=190 CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - D:\norton\Engine\22.16.2.22\Exts\Chrome.crx CHR HKLM-x32\...\Chrome\Extension: [bpegkgagfojjbcpkihigfmkojdmmimdf] - CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - D:\norton\Engine\22.16.2.22\Exts\Chrome.crx CHR HKLM-x32\...\Chrome\Extension: [ehgldbbpchgpcfagfpfjgoomddhccfgh] - CHR HKLM-x32\...\Chrome\Extension: [hahpjplbmicfkmoccokbjejahjjpnena] - C:\Users\STUD\AppData\Local\B1E\B1Tool.crx CHR HKLM-x32\...\Chrome\Extension: [jbpkiefagocgkmemidfngdkamloieekf] - C:\Program Files (x86)\TornTV.com\torn11.crx U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) <==== UWAGA (Brak ServiceDLL) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S4 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] C:\Users\STUD\AppData\Local\oobelibMkey.log RemoveDirectory: C:\AdwCleaner MSCONFIG\startupreg: Dpjojr => F:\RECYCLER\40109cb.exe ContextMenuHandlers1_S-1-5-21-4003353032-2260459889-897377641-1000: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku ContextMenuHandlers4_S-1-5-21-4003353032-2260459889-897377641-1000: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku ContextMenuHandlers5_S-1-5-21-4003353032-2260459889-897377641-1000: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku Task: {0E7E2A4A-1DE8-4691-B332-06BA4919AD84} - System32\Tasks\{18A88518-7AB7-4E0C-9833-26D8B7AF72A5} => C:\Windows\system32\pcalua.exe -a C:\Users\STUD\Desktop\WebzenBrowserExt.exe -d C:\Users\STUD\Desktop Task: {120ED159-66D9-43C7-BF89-5687092653DA} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-08-13] (Adobe Systems Incorporated) Task: {12117014-8922-44E7-9EC0-BE873D3885D9} - System32\Tasks\{BDDD75A4-F1F3-4E02-878E-6DF41C3935EB} => C:\Windows\system32\pcalua.exe -a C:\Users\STUD\Downloads\rescue2usb(1).exe -d C:\Users\STUD\Downloads Task: {1ABB1193-FC1B-4BE8-B375-47394DCEAA78} - System32\Tasks\{98C51E23-F933-401F-8A2C-63F616289B3E} => C:\Windows\system32\pcalua.exe -a C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe -c /M{DF57E946-4885-4EEA-A958-D5F82CB21B99} Task: {2152E34B-2DCF-48DF-8882-15A1369796B3} - System32\Tasks\Red Giant Link => C:\Program Files\Red Giant Link\Red Giant Link.exe <==== UWAGA Task: {3609B1A2-5444-4619-A4B5-A088EFDE3F27} - System32\Tasks\{6D63F5B1-857C-426B-AF03-93473C86C1A8} => C:\Windows\system32\pcalua.exe -a C:\Users\STUD\Downloads\SinelAs_6_4_2.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {4C9A0764-6086-4CA3-B39E-B853FC7038E5} - System32\Tasks\{3DB14F1E-A802-4E69-BBDA-D12AADECE370} => C:\Windows\system32\pcalua.exe -a "H:\ps2\defregmentacja usb\PowerDefragmenter.exe" -d "H:\ps2\defregmentacja usb" Task: {4D2F06E1-451F-4606-BE3B-44263957856E} - System32\Tasks\DivX Update => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe Task: {50BF356D-F9D2-41B0-B456-A7F7F5BEB4E4} - System32\Tasks\AdobeAAMUpdater-1.0-MAR-ART-STUD => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-10-30] (Adobe Systems Incorporated) Task: {67E790D0-8404-4844-AC8E-0CC607037771} - System32\Tasks\{C66FC346-8ADF-4837-ADC6-7D0398B1972A} => C:\Windows\system32\pcalua.exe -a C:\Users\STUD\Desktop\Windows\Windows\PL2303_Prolific_DriverInstaller_v1160.exe -d C:\Users\STUD\Desktop\Windows\Windows Task: {685B3A95-CD5E-4A0D-9979-C7F66A25E972} - System32\Tasks\{FABCABB2-E079-460F-A285-B85FE92B4E96} => C:\Windows\system32\pcalua.exe -a C:\Users\STUD\Downloads\rescue2usb.exe -d "C:\Program Files (x86)\Mozilla Firefox" Task: {7DD92F20-4351-47AD-B8E2-D583861DF3A0} - System32\Tasks\DivXUpdate => C:\Program Files (x86)\Common Files\DivX Shared\DivX Update\DivXUpdate.exe [2017-06-14] (DivX, LLC) Task: {83D2B5E5-73B2-44C4-9A46-C5906DE5EADE} - System32\Tasks\{C2F65430-91EF-4B14-A314-E49E9D93DD73} => C:\Windows\system32\pcalua.exe -a "d:\Program Files (x86)\Hi-Rez Studios\HiRezGamesDiagAndSupport.exe" -c uninstall=10 Task: {86A9534E-6A31-4813-96CB-35C4CF07526A} - System32\Tasks\e-pity2015_styczen => C:\Program Files (x86)\e-file\e-pity2014\Assets\signxml.exe Task: {978CB484-1FBF-4C6E-ABDC-D57B4D06BEA9} - System32\Tasks\e-pity2015_kwiecien => C:\Program Files (x86)\e-file\e-pity2014\Assets\signxml.exe Task: {AC8F660E-C71B-4F74-BCCE-FDA65FDF4BEF} - System32\Tasks\Adobe online update program => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-08-13] (Adobe Systems Incorporated) Task: {B20C7B31-09E3-427D-96C5-248DB4974E2D} - System32\Tasks\{5CEAB798-5C95-47D3-A580-36DA985BD107} => C:\Users\STUD\Downloads\vuex6492(2).exe Task: {B9298F7D-6633-4652-8941-B1C0FFE8D0EB} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe Task: {BDB5E360-8B6C-480B-BA72-F9914A0DFBB6} - System32\Tasks\{C71C614F-F0F1-4CF7-B4CB-153F4B3AE8CB} => C:\Windows\system32\pcalua.exe -a C:\HP_M127_128_FW_Update\Setup.exe -d C:\HP_M127_128_FW_Update Task: {C70FB394-E26B-426B-B131-2C61161F8425} - System32\Tasks\{9F6919E3-F1DF-4DB4-9489-0AC444376536} => C:\Windows\system32\pcalua.exe -a C:\EPSON\SETUP.EXE -d C:\EPSON Task: {C89BBBD7-FB85-4C8F-BD7A-553C9289E2F0} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {D5D300A3-9EE5-45CF-8106-87B8B1F287B7} - System32\Tasks\{DE50A727-CC0D-472C-96A8-698AA282E086} => C:\Windows\system32\pcalua.exe -a C:\Users\STUD\Downloads\epson322276eu(1).exe -d C:\Users\STUD\Downloads Task: {D734D653-BE28-4C3A-9463-3929FFEA06E5} - System32\Tasks\{369F334E-976E-4EB2-8378-F95C1602DDE1} => C:\Windows\system32\pcalua.exe -a "C:\Users\STUD\AppData\Local\Sony Online Entertainment\ApplicationUpdater\Uninstaller.exe" Task: {E2C8EC21-C78B-46AA-B040-23AA1CCD017D} - System32\Tasks\{66B74581-F24E-41A6-B5D3-4D9E1FB06F5B} => C:\Windows\system32\pcalua.exe -a C:\Users\STUD\Downloads\6am104ww.exe -d C:\Users\STUD\Downloads Task: {EEA065DA-CBB5-45D3-B408-C8AFA94FC2F1} - System32\Tasks\{A5455C0A-5E26-44B0-8086-FF745E7B525C} => C:\Windows\system32\pcalua.exe -a C:\Users\STUD\Desktop\PL2303_Prolific_DriverInstaller_v1160\PL2303_Prolific_DriverInstaller_v1160.exe -d C:\Users\STUD\Desktop\PL2303_Prolific_DriverInstaller_v1160 hortcutWithArgument: C:\Users\STUD\AppData\Local\Google\Chrome\User Data\Program uruchamiajacy aplikacje Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list ShortcutWithArgument: C:\Users\STUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Program uruchamiajacy aplikacje Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list ShortcutWithArgument: C:\Users\STUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\ARC Welder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=emfinbmielocnlhgmfkkmkngdoccbadn ShortcutWithArgument: C:\Users\STUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Instagram.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=dbfkcgiiaefgeommkcibpmpippbadeeg AlternateDataStreams: C:\ProgramData\TEMP:07BF512B [272] AlternateDataStreams: C:\Users\STUD\AppData\Local\Iiqu60Gh:HdY6gXQMpZX2dzkv6G2dilUBc9egv [2164] AlternateDataStreams: C:\Users\STUD\AppData\Local\Temporary Internet Files:0JU6FcWdRq6MXl9TDcD8fIpXe [2128] CMD: netsh advfirewall reset EmptyTemp: ***************** ..CloseProcesses: => Błąd: Nie znaleziono automatycznej naprawy dla tego wejścia. Punkt przywracania został pomyślnie utworzony. "HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => pomyślnie usunięto "HKU\S-1-5-21-4003353032-2260459889-897377641-1000\Software\Microsoft\Windows\CurrentVersion\RunOnce\\ALLPlayer Remote Update" => nie znaleziono "HKU\S-1-5-21-4003353032-2260459889-897377641-1000\Software\Microsoft\Windows\CurrentVersion\Policies\system\\LogonHoursAction" => pomyślnie usunięto "HKU\S-1-5-21-4003353032-2260459889-897377641-1000\Software\Microsoft\Windows\CurrentVersion\Policies\system\\DontDisplayLogonHoursWarnings" => pomyślnie usunięto "HKU\S-1-5-21-4003353032-2260459889-897377641-1002\Software\Microsoft\Windows\CurrentVersion\Run\\ROC_JAN2013_TB" => nie znaleziono C:\Windows\system32\GroupPolicy\Machine => pomyślnie przeniesiono C:\Windows\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono C:\Windows\SysWOW64\GroupPolicy\GPT.ini => pomyślnie przeniesiono C:\Windows\system32\GroupPolicy\User => pomyślnie przeniesiono C:\Windows\system32\GroupPolicyUsers\S-1-5-21-4003353032-2260459889-897377641-1002\User => pomyślnie przeniesiono HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Search Page" => pomyślnie usunięto "HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page" => pomyślnie usunięto HKU\S-1-5-21-4003353032-2260459889-897377641-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono HKU\S-1-5-21-4003353032-2260459889-897377641-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => pomyślnie usunięto HKLM\Software\Classes\CLSID\{483830EE-A4CD-4b71-B0A3-3D82E62A6909} => nie znaleziono HKLM\SOFTWARE\Wow6432Node\Microsoft\Code Store Database\Distribution Units\{0D41B8C5-2599-4893-8183-00195EC8D5F9} => pomyślnie usunięto HKLM\Software\Wow6432Node\Classes\CLSID\{0D41B8C5-2599-4893-8183-00195EC8D5F9} => pomyślnie usunięto "Firefox homepage" => pomyślnie usunięto HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE => pomyślnie usunięto HKU\S-1-5-21-4003353032-2260459889-897377641-1000\Software\MozillaPlugins\@onlive.com/OnLiveGameClientDetector,version=1.0.0 => pomyślnie usunięto "C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll" => nie znaleziono "HKU\S-1-5-21-4003353032-2260459889-897377641-1002\Software\MozillaPlugins\@onlive.com/OnLiveGameClientDetector,version=1.0.0" => nie znaleziono "C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll" => nie znaleziono "HKU\S-1-5-21-4003353032-2260459889-897377641-1002\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0" => nie znaleziono "C:\Users\UpdatusUser.STUDMEX\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll" => nie znaleziono "Chrome HomePage" => pomyślnie usunięto HKLM\SOFTWARE\Google\Chrome\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\hahpjplbmicfkmoccokbjejahjjpnena => pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\jbpkiefagocgkmemidfngdkamloieekf => pomyślnie usunięto HKLM\System\CurrentControlSet\Services\AppMgmt => pomyślnie usunięto AppMgmt => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\catchme => pomyślnie usunięto catchme => serwis pomyślnie usunięto HKLM\System\CurrentControlSet\Services\esgiguard => pomyślnie usunięto esgiguard => serwis pomyślnie usunięto C:\Users\STUD\AppData\Local\oobelibMkey.log => pomyślnie przeniesiono "C:\AdwCleaner" => pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Dpjojr => pomyślnie usunięto HKU\S-1-5-21-4003353032-2260459889-897377641-1000\Software\Classes\*\ShellEx\ContextMenuHandlers\GGDriveMenu => pomyślnie usunięto HKU\S-1-5-21-4003353032-2260459889-897377641-1000\SOFTWARE\Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534} => nie znaleziono HKU\S-1-5-21-4003353032-2260459889-897377641-1000\Software\Classes\Directory\ShellEx\ContextMenuHandlers\GGDriveMenu => pomyślnie usunięto HKU\S-1-5-21-4003353032-2260459889-897377641-1000\SOFTWARE\Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534} => nie znaleziono HKU\S-1-5-21-4003353032-2260459889-897377641-1000\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\GGDriveMenu => pomyślnie usunięto HKU\S-1-5-21-4003353032-2260459889-897377641-1000\SOFTWARE\Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534} => nie znaleziono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0E7E2A4A-1DE8-4691-B332-06BA4919AD84}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0E7E2A4A-1DE8-4691-B332-06BA4919AD84}" => pomyślnie usunięto C:\Windows\System32\Tasks\{18A88518-7AB7-4E0C-9833-26D8B7AF72A5} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{18A88518-7AB7-4E0C-9833-26D8B7AF72A5}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{120ED159-66D9-43C7-BF89-5687092653DA}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{120ED159-66D9-43C7-BF89-5687092653DA}" => pomyślnie usunięto C:\Windows\System32\Tasks\Adobe Acrobat Update Task => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Acrobat Update Task" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{12117014-8922-44E7-9EC0-BE873D3885D9}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{12117014-8922-44E7-9EC0-BE873D3885D9}" => pomyślnie usunięto C:\Windows\System32\Tasks\{BDDD75A4-F1F3-4E02-878E-6DF41C3935EB} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{BDDD75A4-F1F3-4E02-878E-6DF41C3935EB}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1ABB1193-FC1B-4BE8-B375-47394DCEAA78}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1ABB1193-FC1B-4BE8-B375-47394DCEAA78}" => pomyślnie usunięto C:\Windows\System32\Tasks\{98C51E23-F933-401F-8A2C-63F616289B3E} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{98C51E23-F933-401F-8A2C-63F616289B3E}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2152E34B-2DCF-48DF-8882-15A1369796B3}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2152E34B-2DCF-48DF-8882-15A1369796B3}" => pomyślnie usunięto C:\Windows\System32\Tasks\Red Giant Link => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Red Giant Link" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3609B1A2-5444-4619-A4B5-A088EFDE3F27}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3609B1A2-5444-4619-A4B5-A088EFDE3F27}" => pomyślnie usunięto C:\Windows\System32\Tasks\{6D63F5B1-857C-426B-AF03-93473C86C1A8} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6D63F5B1-857C-426B-AF03-93473C86C1A8}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4C9A0764-6086-4CA3-B39E-B853FC7038E5}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4C9A0764-6086-4CA3-B39E-B853FC7038E5}" => pomyślnie usunięto C:\Windows\System32\Tasks\{3DB14F1E-A802-4E69-BBDA-D12AADECE370} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{3DB14F1E-A802-4E69-BBDA-D12AADECE370}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4D2F06E1-451F-4606-BE3B-44263957856E}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4D2F06E1-451F-4606-BE3B-44263957856E}" => pomyślnie usunięto C:\Windows\System32\Tasks\DivX Update => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DivX Update" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{50BF356D-F9D2-41B0-B456-A7F7F5BEB4E4}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{50BF356D-F9D2-41B0-B456-A7F7F5BEB4E4}" => pomyślnie usunięto C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-MAR-ART-STUD => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AdobeAAMUpdater-1.0-MAR-ART-STUD" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{67E790D0-8404-4844-AC8E-0CC607037771}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{67E790D0-8404-4844-AC8E-0CC607037771}" => pomyślnie usunięto C:\Windows\System32\Tasks\{C66FC346-8ADF-4837-ADC6-7D0398B1972A} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C66FC346-8ADF-4837-ADC6-7D0398B1972A}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{685B3A95-CD5E-4A0D-9979-C7F66A25E972}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{685B3A95-CD5E-4A0D-9979-C7F66A25E972}" => pomyślnie usunięto C:\Windows\System32\Tasks\{FABCABB2-E079-460F-A285-B85FE92B4E96} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{FABCABB2-E079-460F-A285-B85FE92B4E96}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7DD92F20-4351-47AD-B8E2-D583861DF3A0}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7DD92F20-4351-47AD-B8E2-D583861DF3A0}" => pomyślnie usunięto C:\Windows\System32\Tasks\DivXUpdate => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DivXUpdate" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{83D2B5E5-73B2-44C4-9A46-C5906DE5EADE}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{83D2B5E5-73B2-44C4-9A46-C5906DE5EADE}" => pomyślnie usunięto C:\Windows\System32\Tasks\{C2F65430-91EF-4B14-A314-E49E9D93DD73} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C2F65430-91EF-4B14-A314-E49E9D93DD73}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{86A9534E-6A31-4813-96CB-35C4CF07526A}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{86A9534E-6A31-4813-96CB-35C4CF07526A}" => pomyślnie usunięto C:\Windows\System32\Tasks\e-pity2015_styczen => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e-pity2015_styczen" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{978CB484-1FBF-4C6E-ABDC-D57B4D06BEA9}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{978CB484-1FBF-4C6E-ABDC-D57B4D06BEA9}" => pomyślnie usunięto C:\Windows\System32\Tasks\e-pity2015_kwiecien => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e-pity2015_kwiecien" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AC8F660E-C71B-4F74-BCCE-FDA65FDF4BEF}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC8F660E-C71B-4F74-BCCE-FDA65FDF4BEF}" => pomyślnie usunięto C:\Windows\System32\Tasks\Adobe online update program => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe online update program" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B20C7B31-09E3-427D-96C5-248DB4974E2D}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B20C7B31-09E3-427D-96C5-248DB4974E2D}" => pomyślnie usunięto C:\Windows\System32\Tasks\{5CEAB798-5C95-47D3-A580-36DA985BD107} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{5CEAB798-5C95-47D3-A580-36DA985BD107}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B9298F7D-6633-4652-8941-B1C0FFE8D0EB}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9298F7D-6633-4652-8941-B1C0FFE8D0EB}" => pomyślnie usunięto C:\Windows\System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AVGPCTuneUp_Task_BkGndMaintenance" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BDB5E360-8B6C-480B-BA72-F9914A0DFBB6}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BDB5E360-8B6C-480B-BA72-F9914A0DFBB6}" => pomyślnie usunięto C:\Windows\System32\Tasks\{C71C614F-F0F1-4CF7-B4CB-153F4B3AE8CB} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C71C614F-F0F1-4CF7-B4CB-153F4B3AE8CB}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C70FB394-E26B-426B-B131-2C61161F8425}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C70FB394-E26B-426B-B131-2C61161F8425}" => pomyślnie usunięto C:\Windows\System32\Tasks\{9F6919E3-F1DF-4DB4-9489-0AC444376536} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{9F6919E3-F1DF-4DB4-9489-0AC444376536}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C89BBBD7-FB85-4C8F-BD7A-553C9289E2F0}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C89BBBD7-FB85-4C8F-BD7A-553C9289E2F0}" => pomyślnie usunięto C:\Windows\System32\Tasks\Apple\AppleSoftwareUpdate => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Apple\AppleSoftwareUpdate" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D5D300A3-9EE5-45CF-8106-87B8B1F287B7}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D5D300A3-9EE5-45CF-8106-87B8B1F287B7}" => pomyślnie usunięto C:\Windows\System32\Tasks\{DE50A727-CC0D-472C-96A8-698AA282E086} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{DE50A727-CC0D-472C-96A8-698AA282E086}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D734D653-BE28-4C3A-9463-3929FFEA06E5}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D734D653-BE28-4C3A-9463-3929FFEA06E5}" => pomyślnie usunięto C:\Windows\System32\Tasks\{369F334E-976E-4EB2-8378-F95C1602DDE1} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{369F334E-976E-4EB2-8378-F95C1602DDE1}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E2C8EC21-C78B-46AA-B040-23AA1CCD017D}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E2C8EC21-C78B-46AA-B040-23AA1CCD017D}" => pomyślnie usunięto C:\Windows\System32\Tasks\{66B74581-F24E-41A6-B5D3-4D9E1FB06F5B} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{66B74581-F24E-41A6-B5D3-4D9E1FB06F5B}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EEA065DA-CBB5-45D3-B408-C8AFA94FC2F1}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EEA065DA-CBB5-45D3-B408-C8AFA94FC2F1}" => pomyślnie usunięto C:\Windows\System32\Tasks\{A5455C0A-5E26-44B0-8086-FF745E7B525C} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{A5455C0A-5E26-44B0-8086-FF745E7B525C}" => pomyślnie usunięto hortcutWithArgument: C:\Users\STUD\AppData\Local\Google\Chrome\User Data\Program uruchamiajacy aplikacje Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list => Błąd: Nie znaleziono automatycznej naprawy dla tego wejścia. "C:\Users\STUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Program uruchamiajacy aplikacje Chrome.lnk" => nie znaleziono C:\Users\STUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\ARC Welder.lnk => Skrót - argument pomyślnie usunięto C:\Users\STUD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome\Instagram.lnk => Skrót - argument pomyślnie usunięto C:\ProgramData\TEMP => ":07BF512B" ADS pomyślnie usunięto C:\Users\STUD\AppData\Local\Iiqu60Gh => ":HdY6gXQMpZX2dzkv6G2dilUBc9egv" ADS pomyślnie usunięto C:\Users\STUD\AppData\Local\Temporary Internet Files => ":0JU6FcWdRq6MXl9TDcD8fIpXe" ADS pomyślnie usunięto ========= netsh advfirewall reset ========= Ok. ========= Koniec CMD: ========= =========== EmptyTemp: ========== BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 41086176 B Java, Flash, Steam htmlcache => 844 B Windows/system/drivers => 133284 B Edge => 0 B Chrome => 159082004 B Firefox => 27272456 B Opera => 0 B Temp, IE cache, history, cookies, recent: Users => 0 B Default => 0 B Public => 0 B ProgramData => 0 B systemprofile => 36124136 B systemprofile32 => 1058437 B LocalService => 385972764 B NetworkService => 3824286 B STUD => 90018284 B UpdatusUser => 0 B UpdatusUser.STUDMEX => 0 B MSSQL$WFMSQL => 0 B RecycleBin => 0 B EmptyTemp: => 710.1 MB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 11:40:04 ====