Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 16-10-2017
Uruchomiony przez Rafał (17-10-2017 17:43:01) Run:2
Uruchomiony z C:\Users\Rafał\Downloads\Programy
Załadowane profile: Rafał (Dostępne profile: Rafał)
Tryb startu: Normal
==============================================
fixlist - zawartość:
*****************
CloseProcesses:
CreateRestorePoint:
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Firefox
DeleteKey: HKEY_LOCAL_MACHINE\SYSTEM\VritualRoot\MACHINE\SOFTWARE\WOW6432Node\Firefox
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
U0 aswVmm; Brak ImagePath
2017-10-15 00:37 - 2017-10-15 00:37 - 000003584 _____ C:\Windows\SECOH-QAD.dll
2017-10-16 19:27 - 2016-12-09 02:39 - 000000040 _____ C:\Program Files (x86)\settings.dat
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku
ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku
C:\Users\Rafał\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\deb74e6ef302b553\Speed Dial [FVD] - New Tab Page, 3D, Sync.lnk
DeleteKey: HKCU\Software\Mozilla
DeleteKey: HKCU\Software\MozillaPlugins
DeleteKey: HKLM\SOFTWARE\Mozilla
DeleteKey: HKLM\SOFTWARE\MozillaPlugins
DeleteKey: HKLM\SOFTWARE\Wow6432Node\Mozilla
DeleteKey: HKLM\SOFTWARE\Wow6432Node\mozilla.org
DeleteKey: HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
C:\Users\Rafał\AppData\Local\Mozilla
C:\Users\Rafał\AppData\Roaming\Mozilla
C:\Users\Rafał\AppData\Roaming\Profiles
CMD: dir /a "C:\Program Files"
CMD: dir /a "C:\Program Files (x86)"
CMD: dir /a "C:\Program Files\Common Files\System"
CMD: dir /a "C:\Program Files (x86)\Common Files\System"
CMD: dir /a C:\ProgramData
CMD: dir /a C:\Users\Rafał\AppData\Local
CMD: dir /a C:\Users\Rafał\AppData\LocalLow
CMD: dir /a C:\Users\Rafał\AppData\Roaming
CMD: netsh advfirewall reset
Powershell: wevtutil el | Foreach-Object {wevtutil cl "$_"}
Hosts:
EmptyTemp:
*****************
Procesy zostały pomyślnie zamknięte.
Punkt przywracania został pomyślnie utworzony.
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\Firefox => klucz pomyślnie usunięto
HKEY_LOCAL_MACHINE\SYSTEM\VritualRoot\MACHINE\SOFTWARE\WOW6432Node\Firefox => klucz nie znaleziono.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => Wartość pomyślnie przywrócono
HKLM\Software\\Microsoft\Internet Explorer\Main\\Local Page => Wartość pomyślnie przywrócono
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Local Page => Wartość pomyślnie przywrócono
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie przywrócono
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => klucz pomyślnie usunięto
HKLM\Software\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => klucz nie znaleziono.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie przywrócono
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => klucz pomyślnie usunięto
HKLM\Software\Wow6432Node\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => klucz nie znaleziono.
HKLM\System\CurrentControlSet\Services\aswVmm => klucz pomyślnie usunięto
aswVmm => serwis pomyślnie usunięto
C:\Windows\SECOH-QAD.dll => pomyślnie przeniesiono
C:\Program Files (x86)\settings.dat => pomyślnie przeniesiono
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast => klucz pomyślnie usunięto
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => klucz nie znaleziono.
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avast => klucz pomyślnie usunięto
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => klucz nie znaleziono.
C:\Users\Rafał\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\deb74e6ef302b553\Speed Dial [FVD] - New Tab Page, 3D, Sync.lnk => pomyślnie przeniesiono
HKCU\Software\Mozilla => klucz pomyślnie usunięto
HKCU\Software\MozillaPlugins => klucz pomyślnie usunięto
HKLM\SOFTWARE\Mozilla => klucz pomyślnie usunięto
HKLM\SOFTWARE\MozillaPlugins => klucz pomyślnie usunięto
HKLM\SOFTWARE\Wow6432Node\Mozilla => klucz pomyślnie usunięto
HKLM\SOFTWARE\Wow6432Node\mozilla.org => klucz pomyślnie usunięto
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins => klucz pomyślnie usunięto
C:\Users\Rafał\AppData\Local\Mozilla => pomyślnie przeniesiono
C:\Users\Rafał\AppData\Roaming\Mozilla => pomyślnie przeniesiono
C:\Users\Rafał\AppData\Roaming\Profiles => pomyślnie przeniesiono
========= dir /a "C:\Program Files" =========
Volume in drive C is Dysk
Volume Serial Number is 9C1F-2C87
Directory of C:\Program Files
2017-10-16 19:29
.
2017-10-16 19:29 ..
2017-09-17 12:12 Adobe
2017-09-19 15:52 Boris FX, Inc
2016-10-16 01:15 CCleaner
2017-10-15 23:41 Common Files
2017-10-16 19:29 COMODO
2016-12-11 01:45 Corel
2017-10-02 18:13 DAEMON Tools Lite
2017-05-20 12:26 Dell
2013-08-22 17:35 174 desktop.ini
2017-09-19 15:52 FXHOME
2014-10-28 21:02 Intel
2017-10-14 22:01 Internet Explorer
2017-10-16 18:35 Malwarebytes
2017-10-15 23:39 Microsoft Analysis Services
2017-10-15 23:40 Microsoft Office
2017-10-15 23:40 Microsoft SQL Server
2017-10-15 23:41 Microsoft.NET
2016-12-30 03:45 MPC-HC
2014-10-29 04:35 MSBuild
2017-02-18 00:36 NVIDIA Corporation
2014-10-28 20:41 Realtek
2014-10-29 04:35 Reference Assemblies
2014-10-28 21:06 Synaptics
2013-08-22 16:47 Uninstall Information
2017-04-15 20:40 Windows Defender
2016-10-17 20:36 Windows Mail
2017-10-04 12:48 Windows Media Player
2016-10-17 20:36 Windows Multimedia Platform
2016-10-11 20:59 Windows NT
2016-10-17 20:36 Windows Photo Viewer
2016-10-17 20:36 Windows Portable Devices
2013-08-22 17:36 Windows Sidebar
2017-10-11 11:58 WindowsApps
2016-10-17 20:36 WindowsPowerShell
2016-10-13 10:52 WinRAR
1 File(s) 174 bytes
36 Dir(s) 300˙706˙357˙248 bytes free
========= Koniec CMD: =========
========= dir /a "C:\Program Files (x86)" =========
Volume in drive C is Dysk
Volume Serial Number is 9C1F-2C87
Directory of C:\Program Files (x86)
2017-10-17 17:43 .
2017-10-17 17:43 ..
2016-12-26 21:15 4KDownload
2016-12-12 02:58 Adobe
2016-12-26 21:29 AIMP
2017-05-01 23:01 AviSynth 2.5
2017-09-17 12:32 Boris FX, Inc
2016-11-20 15:23 Cisco
2017-10-15 22:52 Common Files
2017-10-16 19:29 COMODO
2017-10-05 00:48 Corel
2016-11-20 15:23 Dell
2017-10-16 18:15 Dell Backup and Recovery
2016-11-20 15:23 Dell Digital Delivery
2016-11-20 15:23 Dell Product Registration
2016-11-20 15:23 Dell Update
2016-11-20 15:23 Dell Wireless
2013-08-22 17:34 174 desktop.ini
2017-10-16 19:15 Google
2017-05-18 18:50 InstallShield Installation Information
2016-11-20 15:23 Intel
2017-10-14 22:01 Internet Explorer
2016-12-09 02:39 0 metadata
2017-10-15 23:39 Microsoft Analysis Services
2017-10-15 23:38 Microsoft Office
2017-10-15 23:40 Microsoft SQL Server
2017-10-15 23:41 Microsoft.NET
2017-10-15 23:41 Mozilla Firefox
2017-09-18 01:52 MSBuild
2016-11-20 15:23 NCH Software
2017-02-18 00:36 NVIDIA Corporation
2016-11-20 15:24 Realtek
2017-09-16 21:52 REAPER
2016-11-20 15:23 Reference Assemblies
2016-12-09 02:39 reports
2016-12-30 18:55 Scientific Software
2017-10-15 17:04 Steam
2017-09-16 20:26 uTorrent
2017-07-24 14:46 VideoLAN
2017-04-15 20:40 Windows Defender
2016-11-20 15:23 Windows Mail
2016-11-20 15:23 Windows Multimedia Platform
2016-11-20 15:23 Windows NT
2016-11-20 15:23 Windows Photo Viewer
2016-11-20 15:23 Windows Portable Devices
2016-11-20 15:23 Windows Sidebar
2016-11-20 15:23 WindowsPowerShell
2017-04-16 22:23 Xvid
2 File(s) 174 bytes
46 Dir(s) 300˙706˙353˙152 bytes free
========= Koniec CMD: =========
========= dir /a "C:\Program Files\Common Files\System" =========
Volume in drive C is Dysk
Volume Serial Number is 9C1F-2C87
Directory of C:\Program Files\Common Files\System
2017-10-15 23:39 .
2017-10-15 23:39 ..
2017-05-20 12:24 ado
2014-10-29 04:19 32˙256 DirectDB.dll
2013-08-22 16:51 en-US
2016-10-17 20:36 msadc
2017-10-15 23:39 MSMAPI
2017-10-15 23:41 Ole DB
2014-03-18 11:25 pl-PL
2014-10-29 03:36 887˙296 wab32.dll
2013-08-22 13:42 988˙160 wab32res.dll
3 File(s) 1˙907˙712 bytes
8 Dir(s) 300˙706˙357˙248 bytes free
========= Koniec CMD: =========
========= dir /a "C:\Program Files (x86)\Common Files\System" =========
Volume in drive C is Dysk
Volume Serial Number is 9C1F-2C87
Directory of C:\Program Files (x86)\Common Files\System
2017-09-18 01:51 .
2017-09-18 01:51 ..
2017-05-20 12:24 ado
2014-10-29 03:40 27˙648 DirectDB.dll
2013-08-22 16:51 en-US
2016-10-17 20:36 msadc
2017-10-15 23:40 Ole DB
2014-03-18 11:25 pl-PL
2014-10-29 03:09 760˙320 wab32.dll
2013-08-22 06:17 988˙160 wab32res.dll
3 File(s) 1˙776˙128 bytes
7 Dir(s) 300˙706˙357˙248 bytes free
========= Koniec CMD: =========
========= dir /a C:\ProgramData =========
Volume in drive C is Dysk
Volume Serial Number is 9C1F-2C87
Directory of C:\ProgramData
2017-10-16 19:58 .
2017-10-16 19:58 ..
2017-02-12 20:34 .mono
2017-10-16 12:53 adaware
2016-12-12 02:55 Adobe
2017-09-17 12:12 ALM
2017-04-16 21:57 Apowersoft
2013-08-22 16:45 Application Data [C:\ProgramData]
2016-12-31 18:18 Atheros
2016-12-09 01:59 AVAST Software
2016-11-20 15:24 Avg
2014-10-28 21:14 Aviata
2017-01-04 00:10 Avira
2016-10-16 16:57 CLSK
2017-10-16 19:29 Comodo
2017-10-16 19:26 Comodo Downloader
2017-02-21 01:45 Corel
2016-10-16 16:57 CyberLink
2017-08-20 16:31 DAEMON Tools Lite
2016-10-11 20:59 Dane aplikacji [C:\ProgramData]
2017-03-28 06:30 dbg
2016-10-13 15:42 DELL
2013-08-22 16:45 Desktop [C:\Users\Public\Desktop]
2017-10-16 19:58 Dishonored 2
2013-08-22 16:45 Documents [C:\Users\Public\Documents]
2016-10-11 20:59 Dokumenty [C:\Users\Public\Documents]
2014-10-28 21:14 Downloaded Installations
2014-10-28 20:42 0 DP45977C.lfl
2017-10-15 19:51 DxO Labs
2017-09-18 19:04 FXHOME
2014-10-28 21:01 install_clap
2014-10-28 21:02 Intel
2017-09-20 15:17 IObit
2017-07-22 20:00 Kaspersky Lab Setup Files
2017-10-15 22:32 KMSAuto
2017-07-22 15:59 Lavasoft
2017-07-22 16:05 Malwarebytes
2016-10-13 11:07 McAfee
2016-10-11 20:59 Menu Start [C:\ProgramData\Microsoft\Windows\Start Menu]
2017-10-15 12:32 Microsoft
2017-10-15 23:43 Microsoft Help
2017-10-15 13:08 Microsoft OneDrive
2017-10-15 22:36 Microsoft Toolkit
2016-11-17 23:27 NCH Software
2017-07-22 15:31 262˙144 ntuser.dat
2016-12-09 02:08 8˙192 ntuser.dat.LOG1
2016-12-09 02:08 8˙192 ntuser.dat.LOG2
2016-12-09 02:08 65˙536 ntuser.dat{5749e708-bda2-11e6-8263-4cbb58361d73}.TM.blf
2016-12-09 02:08 524˙288 ntuser.dat{5749e708-bda2-11e6-8263-4cbb58361d73}.TMContainer00000000000000000001.regtrans-ms
2016-12-09 02:08 524˙288 ntuser.dat{5749e708-bda2-11e6-8263-4cbb58361d73}.TMContainer00000000000000000002.regtrans-ms
2017-10-16 18:07 8 ntuser.pol
2017-10-17 17:43 NVIDIA
2017-02-18 00:36 NVIDIA Corporation
2017-08-07 09:57 Origin
2017-10-02 19:10 Package Cache
2016-12-25 01:34 PC-Doctor, Inc
2016-10-13 13:09 PCDr
2016-12-11 01:45 Protexis
2016-10-11 20:59 Pulpit [C:\Users\Public\Desktop]
2017-09-17 12:13 regid.1986-12.com.adobe
2017-10-15 23:41 regid.1991-06.com.microsoft
2016-12-30 18:55 Scientific Software
2017-10-16 19:25 Shared Space
2017-02-18 00:55 SkidRow
2017-07-28 17:37 Skype
2017-06-19 23:10 SoftThinks
2013-08-22 16:45 Start Menu [C:\ProgramData\Microsoft\Windows\Start Menu]
2017-03-17 00:29 Steam
2017-05-02 18:41 SupportAssistAgent
2016-10-11 20:59 Szablony [C:\ProgramData\Microsoft\Windows\Templates]
2014-10-28 21:01 Temp
2016-10-16 16:55 32 Temp.log
2013-08-22 16:45 Templates [C:\ProgramData\Microsoft\Windows\Templates]
2016-12-11 01:43 UniqueId
2014-10-28 21:01 121 {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log
2014-10-28 20:59 106 {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log
2017-05-02 18:41 {6E35203C-6E98-4378-8362-112CFE55C2C1}
2014-10-28 21:00 111 {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}.log
2014-10-28 21:01 108 {B46BEA36-0B71-4A4E-AE41-87241643FA0A}.log
2014-10-28 20:58 107 {C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
14 File(s) 1˙393˙233 bytes
66 Dir(s) 300˙706˙344˙960 bytes free
========= Koniec CMD: =========
========= dir /a C:\Users\Rafał\AppData\Local =========
Volume in drive C is Dysk
Volume Serial Number is 9C1F-2C87
Directory of C:\Users\Rafa\AppData\Local
2017-10-17 17:43 .
2017-10-17 17:43 ..
2017-03-16 00:06 2K Games
2017-03-14 21:18 4A Games
2016-12-26 21:15 4kdownload.com
2017-07-22 16:02 AdAwareDesktop
2017-07-22 16:00 AdAwareUpdater
2017-09-19 21:43 Adobe
2016-10-11 20:37 Apps
2017-09-17 01:43 Audacity
2016-10-11 20:11 Aviata
2016-10-11 20:11 BMExplorer
2016-11-20 15:35 CEF
2017-03-03 00:24 Colossal Order
2017-10-16 19:27 Comodo
2017-10-16 19:35 CrashDumps
2017-09-18 19:07 Crashpad
2016-10-11 20:07 Dane aplikacji [C:\Users\Rafa\AppData\Local]
2016-12-09 03:24 Deployment
2017-09-26 15:57 Diagnostics
2016-11-21 00:27 Disc_Soft_Ltd
2017-03-28 06:30 drmingw
2016-10-11 20:11 DropboxOEM
2016-12-11 01:40 DxO_Labs
2016-12-07 20:19 ElevatedDiagnostics
2016-12-09 03:24 EmieSiteList
2016-12-09 03:24 EmieUserList
2017-09-17 05:08 enchant
2017-01-22 17:02 FileZilla
2016-12-07 16:58 Firefox
2017-09-17 04:57 fontconfig
2017-09-18 19:07 FXHOME
2017-09-18 19:07 FXHOME Helper
2017-09-16 21:04 127˙568 GDIPFONTCACHEV1.DAT
2017-06-13 12:52 GG
2017-10-16 19:15 Google
2016-10-11 20:07 Historia [C:\Users\Rafa\AppData\Local\Microsoft\Windows\History]
2017-09-18 19:20 HitFilm 4 Express Activation
2017-09-18 19:07 HitFilm Express 2017 Activation
2017-10-16 18:05 18˙376 IconCache.db
2016-12-11 01:33 IsolatedStorage
2017-05-18 18:49 LG Electronics
2017-06-12 12:56 Macromedia
2017-10-15 22:46 Microsoft
2017-01-13 14:56 Microsoft Help
2017-10-15 00:29 mpress
2017-10-15 22:38 MSfree Inc
2016-10-21 22:01 NVIDIA
2016-10-21 22:01 NVIDIA Corporation
2017-10-11 11:58 Packages
2016-10-11 20:10 Power2Go8
2016-10-13 15:34 Programs
2017-09-18 20:24 1˙310 recently-used.xbel
2016-10-11 20:36 7˙608 Resmon.ResmonCfg
2017-06-24 12:45 Sports Interactive
2017-03-20 19:08 Steam
2017-10-17 17:36 Temp
2016-10-11 20:07 Temporary Internet Files [C:\Users\Rafa\AppData\Local\Microsoft\Windows\INetCache]
2017-04-16 22:09 VirtualStore
4 File(s) 154˙862 bytes
55 Dir(s) 300˙706˙344˙960 bytes free
========= Koniec CMD: =========
========= dir /a C:\Users\Rafał\AppData\LocalLow =========
Volume in drive C is Dysk
Volume Serial Number is 9C1F-2C87
Directory of C:\Users\Rafa\AppData\LocalLow
2017-09-10 23:11 .
2017-09-10 23:11 ..
2016-12-12 03:27 Adobe
2016-12-09 03:23 EmieSiteList
2016-12-09 03:23 EmieUserList
2017-03-17 00:28 InXile Entertainment
2017-06-12 12:56 Microsoft
2017-07-24 14:47 Mozilla
2017-02-25 23:00 Playdead
2017-10-16 18:05 Temp
2017-02-19 20:23 The Chinese Room & Robert Briscoe @ LittleLostPoly_co_uk
0 File(s) 0 bytes
11 Dir(s) 300˙706˙344˙960 bytes free
========= Koniec CMD: =========
========= dir /a C:\Users\Rafał\AppData\Roaming =========
Volume in drive C is Dysk
Volume Serial Number is 9C1F-2C87
Directory of C:\Users\Rafa\AppData\Roaming
2017-10-17 17:43 .
2017-10-17 17:43 ..
2017-02-12 20:34 .mono
2016-11-21 02:08 2K Sports
2017-09-19 15:45 ActivePresenter
2017-09-17 12:25 Adobe
2017-09-18 21:28 34 AdobeWLCMCache.dat
2017-10-12 17:53 AIMP
2017-04-16 21:57 Apowersoft
2017-01-03 16:21 Atheros
2017-09-28 22:00 audacity
2017-01-03 21:51 Avira
2016-11-17 23:40 Avnex
2016-10-21 20:11 Codeusa Software
2016-10-13 15:39 Cool Record Edit Pro
2016-12-11 01:45 Corel
2017-03-16 19:00 Crystal Dynamics
2017-10-15 22:02 DAEMON Tools Lite
2016-12-11 01:40 DxO Labs
2016-12-23 23:56 Eidos Montreal
2017-03-31 22:06 FileZilla
2017-02-17 21:14 FiraxisLive
2017-07-23 23:33 FMRTE17
2017-06-24 12:56 GG
2017-05-16 13:49 Google
2016-12-09 02:57