Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 16-08-2017 Uruchomiony przez LawendoweSpa (16-08-2017 18:15:09) Run:1 Uruchomiony z C:\Users\LawendoweSpa\Downloads Załadowane profile: LawendoweSpa (Dostępne profile: LawendoweSpa) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku C:\Program Files (x86)\Firefox C:\Users\LawendoweSpa\AppData\Local\Firefox C:\Users\LawendoweSpa\AppData\Roaming\Firefox IFEO\taskmgr.exe: [Debugger] CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = SearchScopes: HKLM -> DefaultScope {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = SearchScopes: HKLM -> {503D5AA2-D2D2-499D-B90B-DF31A80953A1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3086125673-826957410-2058139994-1001 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = hxxp://v9.com/web?type=ds&ts=1450257336&from=zzgbkk123&uid=st500lt012-1dg142_s3pb09lc&z=2c903c6fa664b667079b86cg1zawce0ocw4m1c1cdw&q={searchTerms} StartMenuInternet: IEXPLORE.EXE - iexplore.exe HKU\S-1-5-21-3086125673-826957410-2058139994-1001\...\StartMenuInternet\ChromeHTML: -> C:\Program Files (x86)\Bagsarah\Application\chrome.exe <==== UWAGA C:\Program Files (x86)\Bagsarah C:\Users\LawendoweSpa\AppData\Local\Bagsarah C:\Users\LawendoweSpa\AppData\Roaming\Bagsarah 2017-08-15 15:40 - 2017-02-07 17:48 - 000000000 ____D C:\Users\LawendoweSpa\AppData\Local\3 2017-08-15 15:40 - 2017-02-07 15:48 - 000000000 ____D C:\Users\LawendoweSpa\AppData\Local\1 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip\Uninstall.lnk C:\Users\LawendoweSpa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\chrome.lnk C:\Program Files (x86)\WinZipper C:\Program Files (x86)\Guntony C:\Users\LawendoweSpa\AppData\Local\Guntony C:\Users\LawendoweSpa\AppData\Roaming\Guntony C:\Users\LawendoweSpa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\839f680194ff9273\ghokswa.lnk C:\Users\LawendoweSpa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\5d696d521de238c3\Google Chrome.lnk C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_1818532532_pl.lnk C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_2846494135_pl.lnk C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_3731308582_pl.lnk C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Calendar.lnk C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Mail.lnk C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.People.lnk C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\Application Shortcuts\AD2F1837.HPPrinterControl_v10z8vjag6ke6\AD2F1837.HPPrinterControl.lnk DeleteKey: HKCU\Software\Firefox DeleteKey: HKLM\SOFTWARE\WOW6432Node\Firefox DeleteKey: HKCU\Software\Bagsarah DeleteKey: HKLM\SOFTWARE\WOW6432Node\Bagsarah DeleteKey: HKCU\Software\Guntony DeleteKey: HKLM\SOFTWARE\WOW6432Node\Guntony CMD: dir /a "C:\Program Files" CMD: dir /a "C:\Program Files (x86)" CMD: dir /a "C:\Program Files\Common Files\System" CMD: dir /a "C:\Program Files (x86)\Common Files\System" CMD: dir /a C:\ProgramData CMD: dir /a C:\Users\LawendoweSpa\AppData\Local CMD: dir /a C:\Users\LawendoweSpa\AppData\LocalLow CMD: dir /a C:\Users\LawendoweSpa\AppData\Roaming CMD: netsh advfirewall reset EmptyTemp: ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => klucz pomyślnie usunięto HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => klucz nie znaleziono. HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast => klucz pomyślnie usunięto HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => klucz nie znaleziono. C:\Program Files (x86)\Firefox => pomyślnie przeniesiono C:\Users\LawendoweSpa\AppData\Local\Firefox => pomyślnie przeniesiono "C:\Users\LawendoweSpa\AppData\Roaming\Firefox" => nie znaleziono. HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\taskmgr.exe => klucz pomyślnie usunięto HKLM\SOFTWARE\Policies\Google => klucz pomyślnie usunięto HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{503D5AA2-D2D2-499D-B90B-DF31A80953A1} => klucz pomyślnie usunięto HKLM\Software\Classes\CLSID\{503D5AA2-D2D2-499D-B90B-DF31A80953A1} => klucz nie znaleziono. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => klucz pomyślnie usunięto HKLM\Software\Wow6432Node\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => klucz nie znaleziono. HKU\S-1-5-21-3086125673-826957410-2058139994-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{425ED333-6083-428a-92C9-0CFC28B9D1BF} => klucz pomyślnie usunięto HKLM\Software\Classes\CLSID\{425ED333-6083-428a-92C9-0CFC28B9D1BF} => klucz nie znaleziono. HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Wartość pomyślnie przywrócono HKU\S-1-5-21-3086125673-826957410-2058139994-1001\SOFTWARE\Clients\StartMenuInternet\ChromeHTML => klucz pomyślnie usunięto "C:\Program Files (x86)\Bagsarah" => nie znaleziono. "C:\Users\LawendoweSpa\AppData\Local\Bagsarah" => nie znaleziono. "C:\Users\LawendoweSpa\AppData\Roaming\Bagsarah" => nie znaleziono. C:\Users\LawendoweSpa\AppData\Local\3 => pomyślnie przeniesiono C:\Users\LawendoweSpa\AppData\Local\1 => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip\Uninstall.lnk => pomyślnie przeniesiono C:\Users\LawendoweSpa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\chrome.lnk => pomyślnie przeniesiono "C:\Program Files (x86)\WinZipper" => nie znaleziono. "C:\Program Files (x86)\Guntony" => nie znaleziono. "C:\Users\LawendoweSpa\AppData\Local\Guntony" => nie znaleziono. "C:\Users\LawendoweSpa\AppData\Roaming\Guntony" => nie znaleziono. C:\Users\LawendoweSpa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\839f680194ff9273\ghokswa.lnk => pomyślnie przeniesiono C:\Users\LawendoweSpa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\5d696d521de238c3\Google Chrome.lnk => pomyślnie przeniesiono C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_1818532532_pl.lnk => pomyślnie przeniesiono C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_2846494135_pl.lnk => pomyślnie przeniesiono C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\ConnectedSearch\History\set_3731308582_pl.lnk => pomyślnie przeniesiono C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Calendar.lnk => pomyślnie przeniesiono C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Mail.lnk => pomyślnie przeniesiono C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.People.lnk => pomyślnie przeniesiono C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\Application Shortcuts\AD2F1837.HPPrinterControl_v10z8vjag6ke6\AD2F1837.HPPrinterControl.lnk => pomyślnie przeniesiono HKCU\Software\Firefox => klucz pomyślnie usunięto HKLM\SOFTWARE\WOW6432Node\Firefox => klucz pomyślnie usunięto HKCU\Software\Bagsarah => klucz nie znaleziono. HKLM\SOFTWARE\WOW6432Node\Bagsarah => klucz nie znaleziono. HKCU\Software\Guntony => klucz nie znaleziono. HKLM\SOFTWARE\WOW6432Node\Guntony => klucz nie znaleziono. ========= dir /a "C:\Program Files" ========= Volume in drive C is Windows Volume Serial Number is 1E36-208B Directory of C:\Program Files 2017-08-15 14:43 . 2017-08-15 14:43 .. 2015-03-17 12:48 7-Zip 2015-02-13 13:06 Adware-Removal-Tool 2017-08-15 14:35 AVAST Software 2015-01-10 14:38 CCleaner 2015-12-03 17:25 Common Files 2013-08-22 17:35 174 desktop.ini 2015-01-10 14:27 Hewlett-Packard 2014-09-12 21:07 Intel 2017-05-12 19:00 Internet Explorer 2017-08-15 14:43 Malwarebytes 2014-04-02 11:50 MSBuild 2014-09-12 21:14 Realtek 2014-04-02 11:50 Reference Assemblies 2014-09-12 21:13 Synaptics 2013-08-22 16:47 Uninstall Information 2017-04-13 09:13 Windows Defender 2015-04-28 08:55 Windows Mail 2015-04-28 08:55 Windows Media Player 2015-04-28 08:55 Windows Multimedia Platform 2015-01-05 12:18 Windows NT 2015-04-28 08:55 Windows Photo Viewer 2015-04-28 08:55 Windows Portable Devices 2013-08-22 17:36 Windows Sidebar 2017-08-15 17:36 WindowsApps 2015-04-28 08:49 WindowsPowerShell 1 File(s) 174 bytes 26 Dir(s) 442˙755˙092˙480 bytes free ========= Koniec CMD: ========= ========= dir /a "C:\Program Files (x86)" ========= Volume in drive C is Windows Volume Serial Number is 1E36-208B Directory of C:\Program Files (x86) 2017-08-16 18:16 . 2017-08-16 18:16 .. 2017-03-07 13:29 58BE9994_cacayima 2017-03-08 15:31 58C007C3_cacayima 2017-03-09 10:50 58C11743_cacayima 2017-03-10 11:03 58C26BC9_cacayima 2017-03-13 12:02 58C66E4E_cacayima 2017-03-14 13:10 58C7CFB1_cacayima 2017-03-15 13:23 58C92435_cacayima 2017-03-16 15:41 58CA95EE_cacayima 2017-03-17 12:51 58CBBFB0_cacayima 2015-01-07 10:24 ALLPlayer 2015-01-07 10:25 ALLPlayer Remote 2015-12-03 17:25 Common Files 2015-01-10 13:01 CyberLink 2013-08-22 17:34 174 desktop.ini 2016-10-26 12:01 Elex-tech 2017-08-15 17:38 Google 2015-07-16 09:47 GUMFFD8.tmp 2015-01-10 13:34 Hewlett-Packard 2017-08-15 19:37 InstallShield Installation Information 2014-09-12 21:10 Intel 2017-05-12 19:00 Internet Explorer 2015-01-10 12:53 McAfee 2017-05-09 11:08 90˙568 metadata 2014-04-25 04:31 Microsoft Office 2015-01-07 10:24 Microsoft Silverlight 2014-04-25 04:42 Microsoft SQL Server Compact Edition 2013-08-22 17:36 Microsoft.NET 2017-03-21 12:09 MK 2014-04-02 11:50 MSBuild 2017-05-31 12:39 n1 2015-01-07 10:24 Napisy24 2015-01-05 14:50 Online Services 2015-01-07 11:53 OpenOffice 4 2017-08-15 16:17 Opera 2014-09-12 21:09 Ralink Corporation 2014-09-12 21:13 Realtek 2014-04-02 11:50 Reference Assemblies 2017-05-09 11:08 reports 2017-05-09 11:06 40 settings.dat 2017-08-15 19:36 Temp 2017-08-15 15:39 unkbackup7z_00000000 2017-08-15 15:39 unkbackup7z_00000001 2017-08-15 15:40 unkbackup7z_00000002 2017-08-15 15:39 unkbackup7z_00000003 2017-08-15 15:39 unkbackup7z_00000004 2017-08-15 15:40 unkbackup7z_00000005 2017-08-15 15:39 unkbackup7z_00000006 2017-08-15 15:39 unkbackup7z_00000007 2017-08-15 15:40 unkbackup7z_00000008 2017-08-15 15:39 unkbackup7z_00000009 2017-08-15 15:39 unkbackup7z_0000000A 2017-08-15 15:40 unkbackup7z_0000000B 2017-08-15 15:39 unkbackup7z_0000000C 2017-08-15 15:39 unkbackup7z_0000000D 2017-08-15 15:40 unkbackup7z_0000000E 2017-08-15 15:39 unkbackup7z_0000000F 2017-08-15 15:39 unkbackup7z_00000010 2017-08-15 15:40 unkbackup7z_00000011 2017-08-15 15:39 unkbackup7z_00000012 2017-08-15 15:39 unkbackup7z_00000013 2017-08-15 15:40 unkbackup7z_00000014 2017-08-15 15:39 unkbackup7z_00000015 2017-08-15 15:39 unkbackup7z_00000016 2017-08-15 15:40 unkbackup7z_00000017 2017-08-15 15:40 unkbackup7z_00000018 2017-08-15 15:40 unkbackup7z_00000019 2017-08-15 15:40 unkbackup7z_0000001A 2017-08-15 15:40 unkbackup7z_0000001B 2017-08-15 15:40 unkbackup7z_0000001C 2017-08-15 15:40 unkbackup7z_0000001D 2017-08-15 15:40 unkbackup7z_0000001E 2017-05-26 13:07 unkbackup7z_0000001F 2017-08-15 15:40 unkbackup7z_00000020 2017-04-13 09:13 Windows Defender 2014-04-25 04:42 Windows Live 2015-04-28 08:49 Windows Mail 2015-04-28 08:49 Windows Media Player 2015-04-28 08:49 Windows Multimedia Platform 2013-08-22 17:36 Windows NT 2015-04-28 08:49 Windows Photo Viewer 2015-04-28 08:49 Windows Portable Devices 2013-08-22 17:36 Windows Sidebar 2013-08-22 17:36 WindowsPowerShell 3 File(s) 90˙782 bytes 82 Dir(s) 442˙755˙026˙944 bytes free ========= Koniec CMD: ========= ========= dir /a "C:\Program Files\Common Files\System" ========= Volume in drive C is Windows Volume Serial Number is 1E36-208B Directory of C:\Program Files\Common Files\System 2015-04-28 08:55 . 2015-04-28 08:55 .. 2017-05-12 19:00 ado 2014-10-29 04:19 32˙256 DirectDB.dll 2015-04-28 08:55 msadc 2015-04-28 08:55 Ole DB 2014-04-25 13:45 pl-PL 2014-10-29 03:36 887˙296 wab32.dll 2013-08-22 13:42 988˙160 wab32res.dll 3 File(s) 1˙907˙712 bytes 6 Dir(s) 442˙754˙973˙696 bytes free ========= Koniec CMD: ========= ========= dir /a "C:\Program Files (x86)\Common Files\System" ========= Volume in drive C is Windows Volume Serial Number is 1E36-208B Directory of C:\Program Files (x86)\Common Files\System 2015-04-28 08:49 . 2015-04-28 08:49 .. 2017-05-12 19:00 ado 2014-10-29 03:40 27˙648 DirectDB.dll 2015-04-28 08:49 msadc 2016-04-13 18:44 Ole DB 2014-04-25 13:45 pl-PL 2014-10-29 03:09 760˙320 wab32.dll 2013-08-22 06:17 988˙160 wab32res.dll 3 File(s) 1˙776˙128 bytes 6 Dir(s) 442˙754˙916˙352 bytes free ========= Koniec CMD: ========= ========= dir /a C:\ProgramData ========= Volume in drive C is Windows Volume Serial Number is 1E36-208B Directory of C:\ProgramData 2017-08-15 17:49 . 2017-08-15 17:49 .. 2015-01-07 10:24 ALLPlayer 2015-01-07 10:25 ALLPlayerRemote 2017-02-24 17:53 Apple 2013-08-22 16:45 Application Data [C:\ProgramData] 2017-08-15 14:35 AVAST Software 2017-06-20 08:39 BIT 2016-03-18 13:39 Chrome 2015-12-22 18:33 CyberLink 2015-01-05 12:18 Dane aplikacji [C:\ProgramData] 2013-08-22 16:45 Desktop [C:\Users\Public\Desktop] 2013-08-22 16:45 Documents [C:\Users\Public\Documents] 2015-01-05 12:18 Dokumenty [C:\Users\Public\Documents] 2016-03-18 13:39 Google 2015-01-10 13:09 Hewlett-Packard 2017-08-15 17:59 HitmanPro 2014-09-12 21:27 install_clap 2014-09-12 21:07 Intel 2017-08-15 14:43 Malwarebytes 2015-01-10 12:53 McAfee 2015-01-05 12:18 Menu Start [C:\ProgramData\Microsoft\Windows\Start Menu] 2015-01-10 14:20 Microsoft 2017-05-11 10:52 Microsoft OneDrive 2015-01-07 10:24 Napisy24 2017-08-15 16:00 266 ntuser.pol 2015-01-05 12:18 Pulpit [C:\Users\Public\Desktop] 2014-09-12 21:10 Ralink Driver 2014-09-13 06:31 regid.1991-06.com.microsoft 2013-08-22 16:45 Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu] 2016-09-07 14:14 Sun 2015-01-05 14:51 Synaptics 2015-01-05 12:18 Szablony [C:\ProgramData\Microsoft\Windows\Templates] 2014-09-12 21:27 Temp 2013-08-22 16:45 Templates [C:\ProgramData\Microsoft\Windows\Templates] 2016-12-19 15:31 ttff 2017-01-23 12:52 ucky 2016-06-30 12:44 W 1 File(s) 266 bytes 37 Dir(s) 442˙754˙854˙912 bytes free ========= Koniec CMD: ========= ========= dir /a C:\Users\LawendoweSpa\AppData\Local ========= Volume in drive C is Windows Volume Serial Number is 1E36-208B Directory of C:\Users\LawendoweSpa\AppData\Local 2017-08-16 18:19 . 2017-08-16 18:19 .. 2017-03-18 09:11 0 2017-03-18 09:11 2 2017-05-13 09:03 AMD 2015-01-07 11:12 Apps 2017-08-15 15:58 background_fault 2016-10-15 09:08 CEF 2017-04-13 09:40 clean 2015-12-22 18:33 CyberLink 2015-01-05 14:50 Dane aplikacji [C:\Users\LawendoweSpa\AppData\Local] 2017-08-15 17:37 Deployment 2016-08-22 08:52 Diagnostics 2017-08-15 18:18 ElevatedDiagnostics 2016-03-24 13:29 EmieBrowserModeList 2016-03-24 13:28 EmieSiteList 2016-03-24 13:29 EmieUserList 2015-02-13 13:05 ESET 2016-11-02 10:06 Google 2015-06-02 07:54 GWX 2015-01-06 10:50 Hewlett-Packard 2015-01-05 14:50 Historia [C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\History] 2015-01-10 13:02 HPConnectedMusic 2017-08-16 16:55 120˙820 IconCache.db 2015-12-23 14:19 MediaShow 2017-06-20 09:03 Microsoft 2017-08-15 16:17 Opera Software 2017-06-17 08:32 Packages 2015-01-05 14:51 Power2Go8 2015-01-07 10:21 Programs 2017-08-16 18:15 Temp 2015-01-05 14:50 Temporary Internet Files [C:\Users\LawendoweSpa\AppData\Local\Microsoft\Windows\INetCache] 2017-08-15 17:29 VirtualStore 2016-12-16 10:02 0 {B1218098-CC55-46C8-B96C-3726B5A78C59} 2 File(s) 120˙820 bytes 32 Dir(s) 442˙754˙809˙856 bytes free ========= Koniec CMD: ========= ========= dir /a C:\Users\LawendoweSpa\AppData\LocalLow ========= Volume in drive C is Windows Volume Serial Number is 1E36-208B Directory of C:\Users\LawendoweSpa\AppData\LocalLow 2017-01-19 10:00 . 2017-01-19 10:00 .. 2016-04-08 12:44 EmieBrowserModeList 2016-04-08 12:44 EmieSiteList 2016-04-08 12:44 EmieUserList 2015-01-05 15:02 Microsoft 2017-08-15 13:50 Mozilla 0 File(s) 0 bytes 7 Dir(s) 442˙754˙752˙512 bytes free ========= Koniec CMD: ========= ========= dir /a C:\Users\LawendoweSpa\AppData\Roaming ========= Volume in drive C is Windows Volume Serial Number is 1E36-208B Directory of C:\Users\LawendoweSpa\AppData\Roaming 2017-08-15 17:51 . 2017-08-15 17:51 .. 2015-01-05 14:50 Adobe 2015-04-20 17:26 AVAST Software 2015-12-23 14:18 CyberLink 2015-03-17 12:38 Dropbox 2016-12-20 11:50 ehaeh 2015-02-13 13:05 ESET 2015-01-05 15:14 Hewlett-Packard 2015-01-10 13:08 hpqlog 2015-04-28 09:06 Identities 2015-01-05 14:56 Macromedia 2017-08-15 14:38 Microsoft 2016-09-07 14:15 Mozilla 2015-01-07 11:55 OpenOffice 2015-02-25 10:18 Opera Software 2015-01-05 14:51 Synaptics 0 File(s) 0 bytes 17 Dir(s) 442˙754˙691˙072 bytes free ========= Koniec CMD: ========= ========= netsh advfirewall reset ========= Ok. ========= Koniec CMD: ========= =========== EmptyTemp: ========== BITS transfer queue => 8388608 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 19410188 B Java, Flash, Steam htmlcache => 795 B Windows/system/drivers => 359929231 B Edge => 0 B Chrome => 38242587 B Firefox => 0 B Opera => 13443172 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 81505 B systemprofile32 => 39411 B LocalService => 15508 B NetworkService => 8629980 B LawendoweSpa => 1811703204 B RecycleBin => 0 B EmptyTemp: => 2.1 GB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 19:03:47 ====