Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja:24-08-2015 Uruchomiony przez kuba (2015-08-26 12:32:43) Run:1 Uruchomiony z C:\Users\kuba\Desktop Załadowane profile: UpdatusUser & kuba (Dostępne profile: UpdatusUser & kuba) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** ShortcutWithArgument: C:\Users\kuba\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\TheSettlersOnline.lnk -> C:\Users\kuba\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) -> --app=hxxp://www.thesettlersonline.pl/?pid=TSO_PL_05_0316_09_000_02_0514_00 --app-window-size=1366,768 FirewallRules: [TCP Query User{1B326EA5-2CCE-4621-BC2A-47D98D284AB4}C:\users\kuba\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\kuba\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{EBAEE11C-9EE3-4ACC-9112-970C53B20EB3}C:\users\kuba\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\kuba\appdata\local\akamai\netsession_win.exe Task: {30403A59-C3E9-48BD-A51C-C6306AC2226D} - System32\Tasks\{1ECF8733-C313-4F20-9A03-65183F74BA73} => pcalua.exe -a C:\Users\kuba\Downloads\Knights.and.Merchants.The.Shattered.Kingdom.i.The.Peasants.Rebbelion.PL\Knights.and.Merchants.The.Shattered.Kingdom.i.The.Peasants.Rebbelion.PL\KaM_TPR\KaM_TPR_patch\sr2_polish.exe -d C:\Users\kuba\Downloads\Knights.and.Merchants.The.Shattered.Kingdom.i.The.Peasants.Rebbelion.PL\Knights.and.Merchants.The.Shattered.Kingdom.i.The.Peasants.Rebbelion.PL\KaM_TPR\KaM_TPR_patch Task: {4E14A8A9-6AB1-45AA-A61E-9DA66339D4C6} - System32\Tasks\Zadania podglądu zdarzeń\818644e6-fdbf-4728-a086-9ed46bd1973b => Wscript.exe "C:\Users\kuba\AppData\Local\Temp\tmpAB9D.vbs" <==== UWAGA Task: {989FF1C8-5313-48BC-A1ED-E572C2B8433B} - System32\Tasks\{32CD24A5-C2A4-4B21-A229-53851D801C01} => pcalua.exe -a "E:\Program Files\gothic\Materiały Dodatkowe\gothic1_playerkit-1.08k.exe" -d "E:\Program Files\gothic\Materiały Dodatkowe" Task: {ACD3705D-4FA1-4B75-963B-8ABEA458E250} - System32\Tasks\{03AADE93-CA62-4776-8D36-BCB8C7B87FC1} => pcalua.exe -a "C:\Users\kuba\Desktop\Hearts of Iron 2 Doomsday - Armagedon[PL]\HoI 2 Doomsday Armagedon\setup.exe" -d "C:\Users\kuba\Desktop\Hearts of Iron 2 Doomsday - Armagedon[PL]\HoI 2 Doomsday Armagedon" Task: {C9B3F332-4DB8-4C47-B098-4330D77B5C72} - System32\Tasks\{C5BCE396-915B-4A94-A3F8-FAFE1AE9F565} => pcalua.exe -a C:\Users\kuba\Desktop\TagesSetup.exe -d C:\Users\kuba\Desktop Task: {FAD92861-DB69-425B-96C5-8CA504A00930} - System32\Tasks\{7D3D6221-6F47-4D64-84B6-A58E66D9D2DB} => pcalua.exe -a "F:\DUNGON KEEPER 2\(PATCHE DO GRY)\DK2 1.3 do 1.7 patch\Aktualizacja wersji 1.3 do 1.7.exe" -d "F:\DUNGON KEEPER 2\(PATCHE DO GRY)\DK2 1.3 do 1.7 patch" HKLM-x32\...\Run: [tuto4pc_pl_5] => [X] HKU\S-1-5-21-4106749709-3876302293-3960192693-1001\...\Run: [Akamai NetSession Interface] => "C:\Users\kuba\AppData\Local\Akamai\netsession_win.exe" C:\Users\kuba\AppData\Local\Akamai\netsession_win.exe SearchScopes: HKLM-x32 -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2031308 SearchScopes: HKLM-x32 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2031308 SearchScopes: HKU\S-1-5-21-4106749709-3876302293-3960192693-1001 -> {A69A52F6-B39E-4B0D-B61E-B6F2FAEC20B3} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYPL&apn_uid=8EBED9A7-939F-4E5E-9DD8-8FF2F175073B&apn_sauid=98FC1BF8-EC22-4FE4-AC01-B194402E0B80 S3 massfilter_lte; \??\C:\Windows\system32\drivers\massfilter_lte.sys [X] S3 zgdcat; system32\DRIVERS\zgdcat.sys [X] S3 zgdcdiag; system32\DRIVERS\zgdcdiag.sys [X] S3 zgdcmdm; system32\DRIVERS\zgdcmdm.sys [X] S3 zgdcnet; system32\DRIVERS\zgdcnet.sys [X] S3 zgdcnmea; system32\DRIVERS\zgdcnmea.sys [X] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Reset VLC media player preferences and cache files.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem\AcerSystem User Guide.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem\AcerSystem User Quick Guide.lnk C:\Users\UpdatusUser\Desktop\Heroes III In the Wake of Gods.lnk C:\Users\UpdatusUser\Desktop\Knights & Merchants TPR.lnk C:\Users\UpdatusUser\Desktop\Mount&Blade.lnk C:\Users\UpdatusUser\Desktop\New Features of Heroes III In the Wake of Gods.lnk EmptyTemp: ***************** C:\Users\kuba\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\TheSettlersOnline.lnk => Skrót - argument pomyślnie usunięto. HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1B326EA5-2CCE-4621-BC2A-47D98D284AB4}C:\users\kuba\appdata\local\akamai\netsession_win.exe => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{EBAEE11C-9EE3-4ACC-9112-970C53B20EB3}C:\users\kuba\appdata\local\akamai\netsession_win.exe => Wartość pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{30403A59-C3E9-48BD-A51C-C6306AC2226D}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{30403A59-C3E9-48BD-A51C-C6306AC2226D}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{1ECF8733-C313-4F20-9A03-65183F74BA73} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{1ECF8733-C313-4F20-9A03-65183F74BA73}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4E14A8A9-6AB1-45AA-A61E-9DA66339D4C6}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4E14A8A9-6AB1-45AA-A61E-9DA66339D4C6}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\Zadania podglądu zdarzeń\818644e6-fdbf-4728-a086-9ed46bd1973b => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Zadania podglądu zdarzeń\818644e6-fdbf-4728-a086-9ed46bd1973b" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{989FF1C8-5313-48BC-A1ED-E572C2B8433B}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{989FF1C8-5313-48BC-A1ED-E572C2B8433B}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{32CD24A5-C2A4-4B21-A229-53851D801C01} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{32CD24A5-C2A4-4B21-A229-53851D801C01}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ACD3705D-4FA1-4B75-963B-8ABEA458E250}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ACD3705D-4FA1-4B75-963B-8ABEA458E250}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{03AADE93-CA62-4776-8D36-BCB8C7B87FC1} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{03AADE93-CA62-4776-8D36-BCB8C7B87FC1}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C9B3F332-4DB8-4C47-B098-4330D77B5C72}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C9B3F332-4DB8-4C47-B098-4330D77B5C72}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{C5BCE396-915B-4A94-A3F8-FAFE1AE9F565} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C5BCE396-915B-4A94-A3F8-FAFE1AE9F565}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FAD92861-DB69-425B-96C5-8CA504A00930}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FAD92861-DB69-425B-96C5-8CA504A00930}" => klucz pomyślnie usunięto C:\Windows\System32\Tasks\{7D3D6221-6F47-4D64-84B6-A58E66D9D2DB} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7D3D6221-6F47-4D64-84B6-A58E66D9D2DB}" => klucz pomyślnie usunięto HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\tuto4pc_pl_5 => Wartość pomyślnie usunięto HKU\S-1-5-21-4106749709-3876302293-3960192693-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => Wartość pomyślnie usunięto "C:\Users\kuba\AppData\Local\Akamai\netsession_win.exe" => plik/folder nie znaleziono. HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => klucz nie znaleziono. HKCR\Wow6432Node\CLSID\{afdbddaa-5d3f-42ee-b79c-185a7020515b} => klucz nie znaleziono. "HKU\S-1-5-21-4106749709-3876302293-3960192693-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{A69A52F6-B39E-4B0D-B61E-B6F2FAEC20B3}" => klucz pomyślnie usunięto HKCR\CLSID\{A69A52F6-B39E-4B0D-B61E-B6F2FAEC20B3} => klucz nie znaleziono. massfilter_lte => serwis pomyślnie usunięto zgdcat => serwis pomyślnie usunięto zgdcdiag => serwis pomyślnie usunięto zgdcmdm => serwis pomyślnie usunięto zgdcnet => serwis pomyślnie usunięto zgdcnmea => serwis pomyślnie usunięto C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Reset VLC media player preferences and cache files.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem\AcerSystem User Guide.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem\AcerSystem User Quick Guide.lnk => pomyślnie przeniesiono C:\Users\UpdatusUser\Desktop\Heroes III In the Wake of Gods.lnk => pomyślnie przeniesiono C:\Users\UpdatusUser\Desktop\Knights & Merchants TPR.lnk => pomyślnie przeniesiono C:\Users\UpdatusUser\Desktop\Mount&Blade.lnk => pomyślnie przeniesiono C:\Users\UpdatusUser\Desktop\New Features of Heroes III In the Wake of Gods.lnk => pomyślnie przeniesiono EmptyTemp: => 2.8 GB danych tymczasowych Usunięto. System wymagał restartu.. ==== Koniec Fixlog 12:35:54 ====