Skocz do zawartości

Sprawdzenie logów FRST


Rekomendowane odpowiedzi

Pomoc jest darmowa, ale proszę rozważ przekazanie dotacji na utrzymanie serwisu: klik.

Jest trochę syfu. Uruchom FRST.  Skopiuj zawartość podaną niżej i nigdzie nie wklejaj-FRST sam znajdzie "fixlist" w schowku systemowym.

Spoiler

Start::
CreateRestorePoint:
HKLM Group Policy restriction on software: %USERPROFILE%\AppData\Roaming\Chrome\*.exe <==== UWAGA
HKLM Group Policy restriction on software: C:\Program Files\Google\Chrome\*.exe <==== UWAGA
HKLM Group Policy restriction on software: %USERPROFILE%\AppData\Roaming\*.exe <==== UWAGA
HKLM Group Policy restriction on software: %USERPROFILE%\AppData\Roaming\windows\*.exe <==== UWAGA
HKLM Group Policy restriction on software: %Appdata%\System32\*.* <==== UWAGA
HKLM Group Policy restriction on software: %USERPROFILE%\AppData\Roaming\windows\*.* <==== UWAGA
HKLM Group Policy restriction on software: %USERPROFILE%\AppData\Local\*.exe <==== UWAGA
HKLM Group Policy restriction on software: %Appdata%\System32\*\*.exe <==== UWAGA
HKLM Group Policy restriction on software: %USERPROFILE%\AppData\Local\System32\*.exe <==== UWAGA
HKLM Group Policy restriction on software: %USERPROFILE%\AppData\Roaming\windows\*\*.exe <==== UWAGA
HKLM Group Policy restriction on software: %appdata%\Dll\*.* <==== UWAGA
HKLM Group Policy restriction on software: %USERPROFILE%\AppData\Roaming\Google\Chrome\*.exe <==== UWAGA
HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <==== UWAGA
HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <==== UWAGA
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Ograniczenia <==== UWAGA
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender Security Center: Ograniczenia <==== UWAGA
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 <==== UWAGA
HKLM\SYSTEM\...\Terminal Server: [fDenyTSConnections] = 0 <==== UWAGA
HKU\S-1-5-21-3547826266-3741025069-179654776-1000\...\Policies\Explorer: [] 
HKU\S-1-5-21-3547826266-3741025069-179654776-1000\...\CurrentVersion\Windows: [Run] C:\Users\Zibi\AppData\Local\MpCmdRun~.exe <==== UWAGA
HKU\S-1-5-21-3547826266-3741025069-179654776-1000\...\MountPoints2: {e9338a85-313c-11ee-bee0-8743c9039a3c} - "G:\setup.EXE" /AUTORUN
HKU\S-1-5-21-3547826266-3741025069-179654776-1000\...\MountPoints2: {e9338b45-313c-11ee-bee0-8743c9039a3c} - "F:\setup.EXE" /AUTORUN
GroupPolicy: Ograniczenia - Chrome <==== UWAGA
GroupPolicy-x32: Ograniczenia - Chrome <==== UWAGA
GroupPolicy\User: Ograniczenia ? <==== UWAGA
GroupPolicy-x32\User: Ograniczenia ? <==== UWAGA
Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA
Policies: C:\Users\Zibi\NTUSER.pol: Ograniczenia <==== UWAGA
HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA
Task: {9DEC07A2-7297-44B0-9629-4CF99DB119BA} - System32\Tasks\CCleanerSkipUAC - Zibi => "C:\Users\Zibi\AppData\Local\Temp\Rar$EXa1872.44000\Pro\App\CCleaner\CCleaner.exe"  $(Arg0) (Brak pliku) <==== UWAGA
Task: {F4BDEA28-E49D-433C-860F-EC00672CA41C} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe  availabilitycheck (Brak pliku)
Task: {8736179E-DD74-44CA-B69D-9EC095EB7A16} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe  /frequentupdate SCHEDULEDTASK displaylevel=False (Brak pliku)
Task: {C0D879A6-EB48-4D9F-B82A-B9D335C7F351} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe  /pushregistration (Brak pliku)
Task: {1AB12B43-9762-4D49-A256-B04DA52EA8F9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe  /WatchService (Brak pliku)
Task: {24FA1A49-9CFC-4E0C-9055-4C26D9461761} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe  (Brak pliku)
Task: {2E331780-EF67-40C3-B6F5-82C9A2D7FE79} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe  /onlogon (Brak pliku)
Task: {7B874102-D5F1-4AE2-B178-963FCC76D269} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe  (Brak pliku)
Task: {129D69BA-3054-495A-870E-1B85987F4304} - System32\Tasks\Microsoft\Windows\DirectX\GPUDriverupdate => C:\Program Files\NVIDIA Corporation\Installer2\updater.exe [10193432 2026-04-02] (NVIDIA Corporation -> NVIDIA Install Application) [Brak podpisu cyfrowego] <==== UWAGA
Task: {65F3CAB3-EC88-4FC5-8161-BA49320A359B} - System32\Tasks\Microsoft\Windows\TextServicesFramework\Assistence => C:\Users\Zibi\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs\HelpPane.exe [326144 2024-01-22] (Microsoft Corporation) [Brak podpisu cyfrowego] <==== UWAGA
Task: {33B3E288-7781-4C85-A5C8-ED2B051C7266} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Real-time Protection => C:\Users\Zibi\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates\MpCmdRun~.exe [99328 2023-10-12] (Microsoft Corporation) [Brak podpisu cyfrowego] <==== UWAGA
Task: {818BEA8D-B984-46A6-80DD-B7D35F07610E} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe  /c (Brak pliku)
Task: {489EC2B3-83DA-4010-BB8E-E17602355622} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe  /ua /installsource scheduler (Brak pliku)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <==== UWAGA
HKU\S-1-5-21-3547826266-3741025069-179654776-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <==== UWAGA
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [Brak pliku]
S2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2026-01-20] () [Brak podpisu cyfrowego]
S2 edgeupdate; "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /svc [X]
S3 edgeupdatem; "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /medsvc [X]
S3 Microsoft SharePoint Workspace Audit Service; "C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE" /auditservice [X]
S4 vivoesServiceWin7; "C:\Program Files (x86)\EasyShare_ex\vivoesServiceWin7.exe" [X]
2026-03-28 15:32 - 2026-03-28 15:32 - 000018784 __RSH C:\ProgramData\ntuser.pol
AlternateDataStreams: C:\ProgramData\TEMP:088B37DC [193]
AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51 [152]
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL => Brak pliku
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL Brak pliku
FirewallRules: [{14D1B3BD-9273-45D6-BBCB-DBD3B720EAC3}] => (Allow) C:\Program Files (x86)\ASUS\Wireless Router\Device Discovery\Discovery.exe => Brak pliku
FirewallRules: [{FFB7799A-D3E3-4584-9667-F4054E177C48}] => (Allow) C:\Program Files (x86)\ASUS\Wireless Router\Device Discovery\Discovery.exe => Brak pliku
FirewallRules: [TCP Query User{F522B95B-EE79-47C6-8C6B-7FFA57F3D220}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe => Brak pliku
FirewallRules: [UDP Query User{BAD8A08C-0481-4D0F-9193-E7C9F806020A}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe => Brak pliku
FirewallRules: [{7D947A00-12D7-45DA-B50B-4E567C2C32BC}] => (Allow) C:\Program Files (x86)\TuxlerChromeExtensionHelperApp\ExtensionHelperAppManager.exe => Brak pliku
FirewallRules: [{17F5192A-64E6-4592-ACBD-C5856AE42C8D}] => (Allow) C:\Program Files (x86)\TuxlerChromeExtensionHelperApp\ExtensionHelperApp.exe => Brak pliku
FirewallRules: [{A519095A-CEC0-4986-9870-228F7AC6E5E1}] => (Allow) C:\Program Files (x86)\TuxlerChromeExtensionHelperApp\ExtensionHelperAppManager.exe => Brak pliku
FirewallRules: [{EFBDF075-35CF-4B36-A9DD-24AEFB922066}] => (Allow) C:\Program Files (x86)\TuxlerChromeExtensionHelperApp\ExtensionHelperApp.exe => Brak pliku
FirewallRules: [{B9C6C5D5-B491-4CE5-A6A0-9A46DAFEE5D0}] => (Allow) C:\Users\Zibi\AppData\Roaming\uTorrent\uTorrent.exe => Brak pliku
FirewallRules: [{17EAA476-52E1-4B35-91D9-8393BE72C4CB}] => (Allow) C:\Users\Zibi\AppData\Roaming\uTorrent\uTorrent.exe => Brak pliku
FirewallRules: [{0996A0B9-5015-4414-B1D1-30BAF671BE0E}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{3953074D-CCFE-4C00-A88D-4F067ABD8553}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{8C502FD5-D4A4-4C56-B0A1-063294CE8E36}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{2B456847-EF6E-4C76-B55F-425014C5C47B}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{58B2CEF4-D12B-4F59-8086-9EF15DF68BF0}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{F3365D8C-8596-4AC2-98D7-15434D57887D}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{DDD392A4-F339-45F8-971B-CEEE1C48FBDF}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{602A9D12-29D2-4CD5-A2B2-EEB559C47653}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{3BE95714-9673-43BE-91A8-C5897F2B95CC}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{8DC0AC71-47CC-47E1-AF1F-A739E334FF53}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{D80D9529-509B-40BD-BF4A-B9EF240C8796}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{BD19194D-EF2A-4626-94B0-9A3AE924A427}] => (Allow) C:\Users\Zibi\Downloads\Y17A_C3_ULWC_PP-inst-C3\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{35ECC610-F23B-4EE7-938E-CBB21BA6085D}] => (Allow) C:\Users\Zibi\Downloads\Y20A_C2_UW_PP-inst-H1\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{5a5b5914-10ed-49e3-9f7d-b9b594fc9db0}] => (Allow) %SystemDrive%\AWRoot\bin\fi\AWFInterpreter_vc140.exe => Brak pliku
FirewallRules: [{29c73d5f-49f0-46e3-bd29-c0371bfffd6b}] => (Allow) %SystemDrive%\AWRoot\bin\fi\AWFInterpreter_vc140.exe => Brak pliku
FirewallRules: [{509eff3e-8a19-4af5-b9e5-d768c55a80d6}] => (Allow) %SystemDrive%\app\diagnostic\awfi\AWFInterpreter_vc140MD.exe => Brak pliku
FirewallRules: [{d82f1d28-3d2a-416c-86ce-72761089a0ee}] => (Allow) %SystemDrive%\app\diagnostic\awfi\AWFInterpreter_vc140MD.exe => Brak pliku
FirewallRules: [{EB08E41B-D10E-4021-AECF-32367218045A}] => (Allow) C:\Users\Zibi\Downloads\Y20A_C2_UW_PP-inst-H1\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{6D99BDED-30CF-439C-813A-8C604132C642}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe => Brak pliku
FirewallRules: [{6A14E7E1-9183-4668-B869-280802D1C6B3}] => (Allow) C:\Program Files (x86)\pcsuite\vivorelay\vivorelay.exe => Brak pliku
FirewallRules: [{1FD941D1-5C7B-41CC-9571-1BF88534E2B5}] => (Allow) C:\Program Files (x86)\pcsuite\vdfs\vdfsServer.exe => Brak pliku
FirewallRules: [{25487B07-5783-4F5E-930B-444FEFB0D1CB}] => (Allow) C:\Program Files (x86)\pcsuite\SyncService\vivoSyncService.exe => Brak pliku
FirewallRules: [{C1EF5B35-3A36-4D3C-9870-1EB1217F6F36}] => (Allow) C:\Program Files (x86)\pcsuite\vivoesService\x64\vivoesService_x64.exe => Brak pliku
FirewallRules: [{B6AF2966-ADEB-469F-BCE4-97C77AB511EA}] => (Allow) C:\Program Files (x86)\pcsuite\vivoesService\win32\vivoesService.exe => Brak pliku
FirewallRules: [TCP Query User{4FF45266-F8B4-45B3-AC83-5F34D5B365AF}C:\users\zibi\appdata\local\programs\stremioservice\stremio-runtime.exe] => (Allow) C:\users\zibi\appdata\local\programs\stremioservice\stremio-runtime.exe => Brak pliku
FirewallRules: [UDP Query User{A67FDACA-C743-4382-A409-9AFBE61BC828}C:\users\zibi\appdata\local\programs\stremioservice\stremio-runtime.exe] => (Allow) C:\users\zibi\appdata\local\programs\stremioservice\stremio-runtime.exe => Brak pliku
FirewallRules: [TCP Query User{935E1174-1AE9-4407-9117-2F5E443ADCD7}C:\users\zibi\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe] => (Allow) C:\users\zibi\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe => Brak pliku
FirewallRules: [UDP Query User{12B36BC7-7854-47C1-BDD8-5ECC30620356}C:\users\zibi\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe] => (Allow) C:\users\zibi\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe => Brak pliku
FirewallRules: [{4D62299C-CECA-4A4C-B167-B94AD2D624AF}] => (Allow) C:\Program Files (x86)\Brother\package\Y20A_C2_UWL_PP-inst-J1\2026-03-08-20-41-07-882\setup\install\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
FirewallRules: [{22415634-105D-497C-B3F2-377F86D02452}] => (Allow) C:\Program Files (x86)\Brother\package\Y20A_C2_UWL_PP-inst-J1\2026-03-08-20-41-07-882\setup\install\wlan_wiz\.\wlan_assistant\waw.exe => Brak pliku
EmptyTemp:
End::

Fixlist przeznaczona tylko dla autora tematu!

W FRST kliknij opcję "Napraw" (Fix). Pokaż raport  "fixlog.txt", który otrzymasz po restarcie komputera. Dodatkowo "Malwaresbytes" . Przeskanuj nim komputer, usuń jeśli coś zostanie jeszcze wykryte i pokaż raport. Pobierz też darmowy "ADWCleaner" , skanowanie, pokaż log ze skanowania.

Pobierz też darmowy programik "CrystalDiskInfo". Po jego uruchomieniu powiększ jego okno tak, aby były widoczne wszystkie parametry dysku twardego, zrób screen jego okna i pokaż na forum, zobaczymy, w jakim stanie masz twardziela.

Odnośnik do komentarza

Jeśli chcesz dodać odpowiedź, zaloguj się lub zarejestruj nowe konto

Jedynie zarejestrowani użytkownicy mogą komentować zawartość tej strony.

Zarejestruj nowe konto

Załóż nowe konto. To bardzo proste!

Zarejestruj się

Zaloguj się

Posiadasz już konto? Zaloguj się poniżej.

Zaloguj się
  • Ostatnio przeglądający   0 użytkowników

    • Brak zarejestrowanych użytkowników przeglądających tę stronę.
×
×
  • Dodaj nową pozycję...