JustPaste.it

Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 11-11-2020
Uruchomiony przez Katarzyna (12-11-2020 19:12:50) Run:1
Uruchomiony z C:\Users\Katarzyna\Downloads
Załadowane profile: UpdatusUser & Katarzyna
Tryb startu: Normal
==============================================

fixlist - zawartość:
*****************
Performancer (HKLM-x32\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{dfc86759}) (Version:  - 24soft) <==== UWAGA
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-715093024-1239835609-3985976727-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.buenosearch.com/?babsrc=HP_ss&mntrId=12390E84DCF75C31&affID=127894&tsp=5140
HKU\S-1-5-21-715093024-1239835609-3985976727-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com
HKU\S-1-5-21-715093024-1239835609-3985976727-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://vod.tvp.pl/website/m-jak-milosc,1654521
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-715093024-1239835609-3985976727-1001 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www.buenosearch.com/?q={searchTerms}&babsrc=SP_ss&mntrId=12390E84DCF75C31&affID=127894&tsp=5140
SearchScopes: HKU\S-1-5-21-715093024-1239835609-3985976727-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=SK2MDF&PC=SK2M&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-715093024-1239835609-3985976727-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=SK2MDF&PC=SK2M&q={searchTerms}&src=IE-SearchBox
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Brak pliku)
FirewallRules: [TCP Query User{940D3C2B-50D5-42AB-968D-86A8916D908A}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe => Brak pliku
FirewallRules: [UDP Query User{9EBB8627-4962-4601-B36A-663195AF07F2}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe => Brak pliku
FirewallRules: [TCP Query User{25D6E77F-5FE5-4E54-9705-1C1B53F286BD}C:\program files\jetbrains\intellij idea 183.2940.10\jre64\bin\java.exe] => (Allow) C:\program files\jetbrains\intellij idea 183.2940.10\jre64\bin\java.exe => Brak pliku
FirewallRules: [UDP Query User{22BAF1FA-FC51-47E7-A41B-BD2D197010E2}C:\program files\jetbrains\intellij idea 183.2940.10\jre64\bin\java.exe] => (Allow) C:\program files\jetbrains\intellij idea 183.2940.10\jre64\bin\java.exe => Brak pliku
FirewallRules: [TCP Query User{067F28D4-3DFC-4DF5-B6BD-D4622AE2E126}C:\program files\jetbrains\intellij idea 183.2940.10\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea 183.2940.10\bin\idea64.exe => Brak pliku
FirewallRules: [UDP Query User{093E1E85-8147-493E-B2D4-09F1AF97437A}C:\program files\jetbrains\intellij idea 183.2940.10\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea 183.2940.10\bin\idea64.exe => Brak pliku
IFEO\DatamngrCoordinator.exe: [Debugger] tasklist.exe
GroupPolicy: Ograniczenia - Chrome <==== UWAGA
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA
AutoConfigURL: [{C1FA4528-8305-43E0-9627-94E8BD8932DA}] => hxxp://cdn1.browsersecurity.net/safe/cloud.js?si=77302&tid=18145&ver=5.7&ts=1400347549778&tguid=77302-18145-1400347549778-D05EF95EB6741F413F61B689A010EBEB
AutoConfigURL: [S-1-5-21-715093024-1239835609-3985976727-1002] => hxxp://cdn1.browsersecurity.net/safe/cloud.js?si=77302&tid=18145&ver=5.7&ts=1400347549778&tguid=77302-18145-1400347549778-D05EF95EB6741F413F61B689A010EBEB
ManualProxies: 0hxxp://cdn1.browsersecurity.net/safe/cloud.js?si=77302&tid=18145&ver=5.7&ts=1400347549778&tguid=77302-18145-1400347549778-D05EF95EB6741F413F61B689A010EBEB
FF HKU\S-1-5-21-715093024-1239835609-3985976727-1002\...\Firefox\Extensions: [freegames4357@BestOffers] - C:\Users\Katarzyna\AppData\Roaming\Mozilla\Extensions\freegames4357@BestOffers => nie znaleziono
FF HKU\S-1-5-21-715093024-1239835609-3985976727-1002\...\Firefox\Extensions: [speedtest4354@BestOffers] - C:\Users\Katarzyna\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers => nie znaleziono
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [Brak pliku]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <nie znaleziono>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <nie znaleziono>
S3 semav6msr64; \??\C:\WINDOWS\system32\drivers\semav6msr64.sys [X]
S3 semav6thermal64ro; \??\C:\WINDOWS\system32\drivers\semav6thermal64ro.sys [X]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter\GDSMux.lnk
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter\Uninstall.lnk
C:\Users\Katarzyna\Pictures\New folder\Canon Solution Menu EX.lnk
C:\Users\Katarzyna\Pictures\New folder\Continue Live Installation.lnk
C:\Users\Katarzyna\Pictures\New folder\VAIO Manual.lnk
C:\Users\Katarzyna\Pictures\New folder\VAIO Update.lnk
C:\Users\Katarzyna\Documents\Nowy folder\Garmin Express.lnk
C:\Users\Katarzyna\Documents\Nowy folder\IntelliJ IDEA 183.2940.10 x64.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flvto YouTube Downloader.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Uninstall Flvto YouTube Downloader.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flvto Youtube Downloader\Flvto Youtube Downloader.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flvto Youtube Downloader\Uninstall Flvto Youtube Downloader.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Avast Secure Browser.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Viber.lnk
C:\Users\Katarzyna\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Calendar.lnk
C:\Users\Katarzyna\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Mail.lnk
C:\Users\Katarzyna\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.People.lnk
EmptyTemp:
*****************

Performancer (HKLM-x32\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{dfc86759}) (Version:  - 24soft) <==== UWAGA => Błąd: Nie znaleziono automatycznej naprawy dla tego wejścia.
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" => Wartość pomyślnie przywrócono
HKU\S-1-5-21-715093024-1239835609-3985976727-1001\Software\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono
HKU\S-1-5-21-715093024-1239835609-3985976727-1001\Software\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono
HKU\S-1-5-21-715093024-1239835609-3985976727-1002\Software\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Wartość pomyślnie przywrócono
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => pomyślnie usunięto
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} => pomyślnie usunięto
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Wartość pomyślnie przywrócono
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => pomyślnie usunięto
HKU\S-1-5-21-715093024-1239835609-3985976727-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => pomyślnie usunięto
"HKU\S-1-5-21-715093024-1239835609-3985976727-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto
HKU\S-1-5-21-715093024-1239835609-3985976727-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => pomyślnie usunięto
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Brak pliku) => Błąd: Nie znaleziono automatycznej naprawy dla tego wejścia.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{940D3C2B-50D5-42AB-968D-86A8916D908A}C:\program files (x86)\skype\phone\skype.exe" => nie znaleziono
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9EBB8627-4962-4601-B36A-663195AF07F2}C:\program files (x86)\skype\phone\skype.exe" => nie znaleziono
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{25D6E77F-5FE5-4E54-9705-1C1B53F286BD}C:\program files\jetbrains\intellij idea 183.2940.10\jre64\bin\java.exe" => nie znaleziono
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{22BAF1FA-FC51-47E7-A41B-BD2D197010E2}C:\program files\jetbrains\intellij idea 183.2940.10\jre64\bin\java.exe" => nie znaleziono
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{067F28D4-3DFC-4DF5-B6BD-D4622AE2E126}C:\program files\jetbrains\intellij idea 183.2940.10\bin\idea64.exe" => nie znaleziono
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{093E1E85-8147-493E-B2D4-09F1AF97437A}C:\program files\jetbrains\intellij idea 183.2940.10\bin\idea64.exe" => nie znaleziono
HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\DatamngrCoordinator.exe => pomyślnie usunięto
C:\WINDOWS\system32\GroupPolicy\Machine => pomyślnie przeniesiono
C:\WINDOWS\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => pomyślnie przeniesiono
HKLM\SOFTWARE\Policies\Mozilla => pomyślnie usunięto
HKLM\SOFTWARE\Policies\Google => pomyślnie usunięto
HKLM\SYSTEM\CurrentControlSet\Services\iphlpsvc\Parameters\ProxyMgr\{C1FA4528-8305-43E0-9627-94E8BD8932DA} => pomyślnie usunięto
HKLM\SYSTEM\CurrentControlSet\Services\iphlpsvc\Parameters\ProxyMgr\S-1-5-21-715093024-1239835609-3985976727-1002 => nie znaleziono
"HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies\\" => pomyślnie usunięto
"HKU\S-1-5-21-715093024-1239835609-3985976727-1002\Software\Mozilla\Firefox\Extensions\\freegames4357@BestOffers" => pomyślnie usunięto
"HKU\S-1-5-21-715093024-1239835609-3985976727-1002\Software\Mozilla\Firefox\Extensions\\speedtest4354@BestOffers" => pomyślnie usunięto
HKLM\Software\Wow6432Node\MozillaPlugins\@canon.com/EPPEX => pomyślnie usunięto
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => pomyślnie usunięto
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => pomyślnie usunięto
HKLM\System\CurrentControlSet\Services\semav6msr64 => pomyślnie usunięto
semav6msr64 => serwis pomyślnie usunięto
HKLM\System\CurrentControlSet\Services\semav6thermal64ro => pomyślnie usunięto
semav6thermal64ro => serwis pomyślnie usunięto
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter\GDSMux.lnk => pomyślnie przeniesiono
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter\Uninstall.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\Pictures\New folder\Canon Solution Menu EX.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\Pictures\New folder\Continue Live Installation.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\Pictures\New folder\VAIO Manual.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\Pictures\New folder\VAIO Update.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\Documents\Nowy folder\Garmin Express.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\Documents\Nowy folder\IntelliJ IDEA 183.2940.10 x64.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flvto YouTube Downloader.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Uninstall Flvto YouTube Downloader.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flvto Youtube Downloader\Flvto Youtube Downloader.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flvto Youtube Downloader\Uninstall Flvto Youtube Downloader.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Avast Secure Browser.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Viber.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Calendar.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Mail.lnk => pomyślnie przeniesiono
C:\Users\Katarzyna\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.People.lnk => pomyślnie przeniesiono

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 76486721 B
Java, Flash, Steam htmlcache => 1265 B
Windows/system/drivers => 73953748 B
Edge => 0 B
Chrome => 72168399 B
Firefox => 10626388 B
Opera => 155189 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 132423 B
systemprofile32 => 132551 B
LocalService => 132551 B
NetworkService => 125748679 B
UpdatusUser => 125748679 B
Katarzyna => 141626643 B

RecycleBin => 0 B
EmptyTemp: => 605.9 MB danych tymczasowych Usunięto.

================================


System wymagał restartu.

==== Koniec  Fixlog 19:13:23 ====