Fixlog po restarcie:
Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 17.03.2019
Uruchomiony przez Grzesiek (13-04-2019 13:48:36) Run:1
Uruchomiony z C:\Users\Grzesiek\Desktop\PROGRAMY\FRST
Załadowane profile: Grzesiek (Dostępne profile: Grzesiek)
Tryb startu: Normal
==============================================
fixlist - zawartość:
*****************
CloseProcesses:
CreateRestorePoint:
EmptyTemp:
HKLM-x32\...\Run: [Babakan] = & gt; cmd.exe /k if %date:~6,4%%date:~3,2%%date:~0,2% LEQ 20131017 (exit) else (start hxxp://dinoklafbzor.org & & exit)
HKU\S-1-5-21-3953819830-622224066-1830746929-1000\...\MountPoints2: {173a2b11-ba56-11e7-9e7d-001bb1d0da73} - " F:\LG_PC_Programs.exe "
Tcpip\..\Interfaces\{754e1346-34d8-4b16-8765-d2cf71486d7c}: [DhcpNameServer] 192.168.8.1 192.168.8.1
Tcpip\..\Interfaces\{c8277afe-8c7b-4a56-b785-18dd50a548e3}: [DhcpNameServer] 192.168.8.1 192.168.8.1
SearchScopes: HKU\S-1-5-21-3953819830-622224066-1830746929-1000 - & gt; {243C9667-4AC0-4558-B99A-88469EADF63F} URL = hxxp://www.google.com/search?q={searchTerms}
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] - hxxps://clients2.google.com/service/update2/crx
S3 AndnetBus; \SystemRoot\System32\drivers\lgandnetbus64.sys [X]
S3 AndNetDiag; \SystemRoot\system32\DRIVERS\lgandnetdiag64.sys [X]
S3 ANDNetModem; \SystemRoot\system32\DRIVERS\lgandnetmodem64.sys [X]
Task: {1BE936D4-EE40-4F04-84E0-18FFD27C0A6A} - System32\Tasks\Microsoft\Windows\Chkdsk\SyspartRepair = & gt; C:\WINDOWS\system32\bcdboot.exe [2018-04-12] (Microsoft Corporation)
Task: {1CC0C748-3507-4B3B-8851-33BD8BA28E47} - System32\Tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition = & gt; C:\WINDOWS\system32\ClipRenew.exe [2018-04-12] (Microsoft Corporation)
Task: {21EC1F94-6F08-45D7-9671-B49335698AFC} - System32\Tasks\{A53288A6-4E92-462A-86F1-99393405486A} = & gt; pcalua.exe -a " D:\zz karol\gry\fifa 14\FIFA 14\ModdingWayInstaller.exe " -d " D:\zz karol\gry\fifa 14\FIFA 14 "
Task: {29F3A47A-C0DC-48D8-ACAF-89413EE0731D} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr = & gt; C:\WINDOWS\System32\UNP\UpdateNotificationMgr.exe [2019-02-16] (Microsoft Corporation) & lt; ==== UWAGA
Task: {511AF402-E0EA-42DC-81B0-6C6E65ECDE60} - System32\Tasks\Microsoft\Windows\Subscription\LicenseAcquisition = & gt; C:\WINDOWS\system32\ClipRenew.exe [2018-04-12] (Microsoft Corporation)
Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask = & gt; C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] () & lt; ==== UWAGA
Task: {8F255F88-A87A-495F-B828-A4AFEC70BDB0} - System32\Tasks\Microsoft\Windows\DirectX\DXGIAdapterCache = & gt; C:\WINDOWS\system32\dxgiadaptercache.exe [2018-04-12] (Microsoft Corporation)
Task: {E0862994-9083-482D-A921-27B4860FFA21} - System32\Tasks\Microsoft\Windows\Printing\EduPrintProv = & gt; C:\WINDOWS\system32\eduprintprov.exe [2018-04-12] (Microsoft Corporation)
Task: {E83B279C-87C5-4391-9F08-E7F5E739A963} - \Microsoft\Windows\UNP\RunCampaignManager - & gt; Brak pliku & lt; ==== UWAGA
IE trusted site: HKU\S-1-5-21-3953819830-622224066-1830746929-1000\...\localhost - & gt; localhost
FilesInDirectory: C:\Users\Grzesiek\AppData\Local\*.exe;*.dll;*.ini
*****************
Procesy zostały pomyślnie zamknięte.
Błąd: (0) Nie udało się utworzyć punktu przywracania.
" HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Babakan " = & gt; pomyślnie usunięto
HKU\S-1-5-21-3953819830-622224066-1830746929-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{173a2b11-ba56-11e7-9e7d-001bb1d0da73} = & gt; pomyślnie usunięto
HKLM\Software\Classes\CLSID\{173a2b11-ba56-11e7-9e7d-001bb1d0da73} = & gt; nie znaleziono
" HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{754e1346-34d8-4b16-8765-d2cf71486d7c}\\DhcpNameServer " = & gt; pomyślnie usunięto
" HKLM\System\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{c8277afe-8c7b-4a56-b785-18dd50a548e3}\\DhcpNameServer " = & gt; pomyślnie usunięto
HKU\S-1-5-21-3953819830-622224066-1830746929-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{243C9667-4AC0-4558-B99A-88469EADF63F} = & gt; pomyślnie usunięto
HKLM\Software\Classes\CLSID\{243C9667-4AC0-4558-B99A-88469EADF63F} = & gt; nie znaleziono
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj = & gt; pomyślnie usunięto
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ofoeigeaodhbjogdigckajfhjbonaofg = & gt; pomyślnie usunięto
HKLM\System\CurrentControlSet\Services\AndnetBus = & gt; pomyślnie usunięto
AndnetBus = & gt; serwis pomyślnie usunięto
HKLM\System\CurrentControlSet\Services\AndNetDiag = & gt; pomyślnie usunięto
AndNetDiag = & gt; serwis pomyślnie usunięto
HKLM\System\CurrentControlSet\Services\ANDNetModem = & gt; pomyślnie usunięto
ANDNetModem = & gt; serwis pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1BE936D4-EE40-4F04-84E0-18FFD27C0A6A} " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1BE936D4-EE40-4F04-84E0-18FFD27C0A6A} " = & gt; pomyślnie usunięto
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Chkdsk\SyspartRepair = & gt; pomyślnie przeniesiono
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Chkdsk\SyspartRepair " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1CC0C748-3507-4B3B-8851-33BD8BA28E47} " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1CC0C748-3507-4B3B-8851-33BD8BA28E47} " = & gt; pomyślnie usunięto
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition = & gt; pomyślnie przeniesiono
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Subscription\EnableLicenseAcquisition " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{21EC1F94-6F08-45D7-9671-B49335698AFC} " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{21EC1F94-6F08-45D7-9671-B49335698AFC} " = & gt; pomyślnie usunięto
C:\WINDOWS\System32\Tasks\{A53288A6-4E92-462A-86F1-99393405486A} = & gt; pomyślnie przeniesiono
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{A53288A6-4E92-462A-86F1-99393405486A} " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{29F3A47A-C0DC-48D8-ACAF-89413EE0731D} " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{29F3A47A-C0DC-48D8-ACAF-89413EE0731D} " = & gt; pomyślnie usunięto
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr = & gt; pomyślnie przeniesiono
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunUpdateNotificationMgr " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{511AF402-E0EA-42DC-81B0-6C6E65ECDE60} " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{511AF402-E0EA-42DC-81B0-6C6E65ECDE60} " = & gt; pomyślnie usunięto
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Subscription\LicenseAcquisition = & gt; pomyślnie przeniesiono
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Subscription\LicenseAcquisition " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{65B85F6F-35B3-4459-A179-28255D5B7B25} " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65B85F6F-35B3-4459-A179-28255D5B7B25} " = & gt; pomyślnie usunięto
C:\WINDOWS\System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask = & gt; pomyślnie przeniesiono
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\HelloFace\FODCleanupTask " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8F255F88-A87A-495F-B828-A4AFEC70BDB0} " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8F255F88-A87A-495F-B828-A4AFEC70BDB0} " = & gt; pomyślnie usunięto
C:\WINDOWS\System32\Tasks\Microsoft\Windows\DirectX\DXGIAdapterCache = & gt; pomyślnie przeniesiono
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DirectX\DXGIAdapterCache " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0862994-9083-482D-A921-27B4860FFA21} " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0862994-9083-482D-A921-27B4860FFA21} " = & gt; pomyślnie usunięto
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Printing\EduPrintProv = & gt; pomyślnie przeniesiono
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Printing\EduPrintProv " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E83B279C-87C5-4391-9F08-E7F5E739A963} " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E83B279C-87C5-4391-9F08-E7F5E739A963} " = & gt; pomyślnie usunięto
" HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager " = & gt; nie znaleziono
HKU\S-1-5-21-3953819830-622224066-1830746929-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\localhost = & gt; pomyślnie usunięto
========================= FilesInDirectory: C:\Users\Grzesiek\AppData\Local\*.exe;*.dll;*.ini ========================
====== Koniec Filesindirectory ======
=========== EmptyTemp: ==========
BITS transfer queue = & gt; 9199616 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache = & gt; 894258013 B
Java, Flash, Steam htmlcache = & gt; 200493612 B
Windows/system/drivers = & gt; 2060776 B
Edge = & gt; 15082619 B
Chrome = & gt; 0 B
Firefox = & gt; 0 B
Opera = & gt; 528412758 B
Temp, IE cache, history, cookies, recent:
Default = & gt; 0 B
Users = & gt; 0 B
ProgramData = & gt; 0 B
Public = & gt; 0 B
systemprofile = & gt; 0 B
systemprofile32 = & gt; 0 B
LocalService = & gt; 882 B
LocalService = & gt; 0 B
NetworkService = & gt; 484514 B
NetworkService = & gt; 0 B
Grzesiek = & gt; 61686246 B
RecycleBin = & gt; 0 B
EmptyTemp: = & gt; 1.6 GB danych tymczasowych Usunięto.
================================
System wymagał restartu.
==== Koniec Fixlog 13:52:28 ====