Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja:21-02-2016 01 Uruchomiony przez Samsung (2016-02-24 10:04:21) Run:1 Uruchomiony z C:\Users\Samsung\Desktop\Beata Załadowane profile: Samsung (Dostępne profile: Samsung) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: Task: {0E267AE3-AFC8-4695-8ABC-BDD1EE6C7FF6} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA Task: {1FDB69FC-614A-4B85-B863-2377E9F063EA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA Task: {243A8442-656A-4DC5-B37A-096BCD83D58E} - System32\Tasks\{6074CBD1-A732-4621-AADB-9A4962EC0C37} => pcalua.exe -a E:\SkinOnSkin.exe -d E:\ Task: {24DA14CD-0425-40B1-8198-738110CFFFDC} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe Task: {4D07948E-C629-4420-A248-A9CC0DDB8A38} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA Task: {53D9F1CD-ADEE-40D0-8F88-305374F58730} - System32\Tasks\Settings => C:\Program Files (x86)\Samsung\Settings\sSettings.exe Task: {659ADE0A-4963-4D6B-9F83-6BEFB9AFE088} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA Task: {8761D8DD-DB3A-476E-B26F-60D00E766EF4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA Task: {96E60D98-46B1-45E1-BE3D-530B96ABD57F} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA Task: {9BA1E043-4CC2-449F-B4DC-F3F56CCBC9F7} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA Task: {A87DC23F-BD45-4B61-9571-C7A6F7328DCE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA Task: {DC64F5B9-BFFE-431A-822B-0F2148615948} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA Task: {F65DADB4-3353-460B-A98E-6CC7F58236F3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA Task: {FB98F029-25B6-4E09-81EA-8614D36728FE} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-4159141245-907251572-3825534944-1001\...\MountPoints2: {72b76f7b-d223-11e5-bf1b-1867b08a8c40} - "F:\AutoRun.exe" CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA SearchScopes: HKU\S-1-5-21-4159141245-907251572-3825534944-1001 -> DefaultScope {5FFC30EF-5AEF-4531-8B67-B95E1040DDCE} URL = SearchScopes: HKU\S-1-5-21-4159141245-907251572-3825534944-1001 -> {547039B8-31F1-40B3-A079-62680D846C39} URL = hxxp://www.search.ask.com/web?tpid=ORJ-ST-SPE&o=APN11467&pf=V7&p2=^BED^OSJ000^YY^PL&gct=&itbv=12.24.1.53&apn_uid=5A5FDCC3-9BBD-4B6B-A0B3-C8E51884B617&apn_ptnrs=BED&apn_dtid=^OSJ000^YY^PL&apn_dbr=cr_43.0.2357.10&doi=2015-04-12&trgb=CR&q={searchTerms}&psv=&pt=tb SearchScopes: HKU\S-1-5-21-4159141245-907251572-3825534944-1001 -> {5FFC30EF-5AEF-4531-8B67-B95E1040DDCE} URL = C:\ProgramData\APN C:\ProgramData\Avg C:\ProgramData\MFAData C:\Users\Samsung\AppData\Local\Avg C:\Users\Samsung\AppData\Local\AvgSetupLog Reg: reg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 /v "Adobe Reader Speed Launcher" /f Reg: reg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 /v "Adobe ARM" /f Reg: reg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 /v ApnTBMon /f CMD: netsh advfirewall reset CMD: type C:\ProgramData\MakeMarkerFile.xml EmptyTemp: ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0E267AE3-AFC8-4695-8ABC-BDD1EE6C7FF6}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0E267AE3-AFC8-4695-8ABC-BDD1EE6C7FF6}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1FDB69FC-614A-4B85-B863-2377E9F063EA}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1FDB69FC-614A-4B85-B863-2377E9F063EA}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{243A8442-656A-4DC5-B37A-096BCD83D58E}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{243A8442-656A-4DC5-B37A-096BCD83D58E}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\{6074CBD1-A732-4621-AADB-9A4962EC0C37} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6074CBD1-A732-4621-AADB-9A4962EC0C37}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{24DA14CD-0425-40B1-8198-738110CFFFDC}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{24DA14CD-0425-40B1-8198-738110CFFFDC}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CreateChoiceProcessTask" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4D07948E-C629-4420-A248-A9CC0DDB8A38}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4D07948E-C629-4420-A248-A9CC0DDB8A38}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{53D9F1CD-ADEE-40D0-8F88-305374F58730}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{53D9F1CD-ADEE-40D0-8F88-305374F58730}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\Settings => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Settings" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{659ADE0A-4963-4D6B-9F83-6BEFB9AFE088}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{659ADE0A-4963-4D6B-9F83-6BEFB9AFE088}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8761D8DD-DB3A-476E-B26F-60D00E766EF4}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8761D8DD-DB3A-476E-B26F-60D00E766EF4}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{96E60D98-46B1-45E1-BE3D-530B96ABD57F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{96E60D98-46B1-45E1-BE3D-530B96ABD57F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9BA1E043-4CC2-449F-B4DC-F3F56CCBC9F7}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9BA1E043-4CC2-449F-B4DC-F3F56CCBC9F7}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A87DC23F-BD45-4B61-9571-C7A6F7328DCE}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A87DC23F-BD45-4B61-9571-C7A6F7328DCE}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DC64F5B9-BFFE-431A-822B-0F2148615948}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DC64F5B9-BFFE-431A-822B-0F2148615948}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F65DADB4-3353-460B-A98E-6CC7F58236F3}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F65DADB4-3353-460B-A98E-6CC7F58236F3}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FB98F029-25B6-4E09-81EA-8614D36728FE}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FB98F029-25B6-4E09-81EA-8614D36728FE}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => klucz pomyślnie usunięto HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Wartość pomyślnie usunięto "HKU\S-1-5-21-4159141245-907251572-3825534944-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{72b76f7b-d223-11e5-bf1b-1867b08a8c40}" => klucz pomyślnie usunięto HKCR\CLSID\{72b76f7b-d223-11e5-bf1b-1867b08a8c40} => klucz nie znaleziono. "HKLM\SOFTWARE\Policies\Google" => klucz pomyślnie usunięto HKU\S-1-5-21-4159141245-907251572-3825534944-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie usunięto "HKU\S-1-5-21-4159141245-907251572-3825534944-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{547039B8-31F1-40B3-A079-62680D846C39}" => klucz pomyślnie usunięto HKCR\CLSID\{547039B8-31F1-40B3-A079-62680D846C39} => klucz nie znaleziono. "HKU\S-1-5-21-4159141245-907251572-3825534944-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{5FFC30EF-5AEF-4531-8B67-B95E1040DDCE}" => klucz pomyślnie usunięto HKCR\CLSID\{5FFC30EF-5AEF-4531-8B67-B95E1040DDCE} => klucz nie znaleziono. C:\ProgramData\APN => pomyślnie przeniesiono C:\ProgramData\Avg => pomyślnie przeniesiono C:\ProgramData\MFAData => pomyślnie przeniesiono C:\Users\Samsung\AppData\Local\Avg => pomyślnie przeniesiono C:\Users\Samsung\AppData\Local\AvgSetupLog => pomyślnie przeniesiono ========= reg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 /v "Adobe Reader Speed Launcher" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 /v "Adobe ARM" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32 /v ApnTBMon /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= netsh advfirewall reset ========= Ok. ========= Koniec CMD: ========= ========= type C:\ProgramData\MakeMarkerFile.xml ========= 2011-03-10T17:42:24.7527327 nani_NP-PC\nani_NP true PT35S S-1-5-32-545 HighestAvailable IgnoreNew false false true false false true false true true false false false PT0S 7 "%ProgramData%\MakeMarkerFile.exe" ========= Koniec CMD: ========= EmptyTemp: => 1.5 GB danych tymczasowych Usunięto. System wymagał restartu. ==== Koniec Fixlog 10:05:52 ====