Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 20.06.2018 Uruchomiony przez dom (07-07-2018 15:17:15) Run:1 Uruchomiony z C:\Users\dom\Desktop\frst Załadowane profile: dom (Dostępne profile: dom) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** Task: {B8565C5B-60C8-4D1A-B766-8DEF4F681861} - System32\Tasks\{9615CE69-F3B5-5705-42B7-48621F33CDB9} => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" hxxp://newsupforu.com/cl/?guid=s1etkr9d2umaclxs3lbaiypa9ho4tpyc&prid=1&pid=4_1324_0 Task: {3B3977A4-9CF1-4384-9AE7-C9F8498C98E0} - System32\Tasks\{7E2FBB9A-BDFA-B805-7C57-9974B659BA25} => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" hxxp://newsupforu.com/cl/?guid=i00gfca093e3n3owrdcg234a16m4s250&prid=1&pid=4_1324_0 Task: {151E0505-4189-48A2-8615-8AD384B40FFC} - System32\Tasks\{2128CED9-E709-CE6B-5F27-569A9C16DBF8} => C:\Windows\SysWOW64\IEikY.exe [2009-07-14] (Microsoft Corporation) C:\Windows\SysWOW64\IEikY.exe C:\Program Files (x86)\TmIyIadF.exe C:\Users\dom\AppData\Roaming\UIiADVwGuQb.exe C:\Windows\SysWOW64\Kiuezoe.exe C:\Users\dom\CYaEyIdSuEee.exe C:\Program Files (x86)\TmIyIadF.exe C:\Program Files (x86)\Common Files\aIaeb.exe C:\Users\dom\AppData\Roaming\UIiADVwGuQb.exe C:\Users\dom\AppData\Local\imw.ini C:\Windows\wmsvr.exe FirewallRules: [{A314A6DC-993A-4411-B930-7587155AD06A}] => (Allow) C:\Program Files (x86)\TmIyIadF.exe FirewallRules: [{9879BA8E-A504-4BE3-A13B-B7B69C6CCD6E}] => (Allow) C:\Users\dom\AppData\Roaming\UIiADVwGuQb.exe FirewallRules: [{BCB95922-805C-4900-824A-226E48B6F9EC}] => (Allow) C:\Windows\SysWOW64\Kiuezoe.exe FirewallRules: [{404A30A8-8920-4B24-A1D1-7CA0105C9F03}] => (Allow) C:\Windows\SysWOW64\IEikY.exe FirewallRules: [{3F980185-6E11-464D-9282-3C2DF4A9945B}] => (Allow) C:\Users\dom\AppData\Local\$NtUninstallWIC$\msiexec64.exe FirewallRules: [{20585533-0801-432A-8E9B-537961C08BF3}] => (Allow) C:\Users\dom\AppData\Local\$NtUninstallWIC$\msiexec64.exe IFEO\BigUpgrade_IU.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\Dashlane_Launcher.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\DiscSoftBusServiceLite.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\DSPut.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\DTAgent.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\DTHelper.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\DTLauncher.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\DTLite.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\DTLiteHelper.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\DTShellHlp.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\Extractor.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\Feedback.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\HDDC2017.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\HDDC2017Service.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\IObitDownloader.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\IUDM.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\IUService.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\iush.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\Live Update.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\MSIRegister.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\MSIRegisterService.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\MSI_LiveUpdate_Service.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\NoteIcon.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\SCEWIN.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\SCEWIN_64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\ScreenShot.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\SendBugReportNew.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\ShortCutModifier.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\SpecUTool.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\SPTDinst-x64.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe IFEO\updateMediator.exe: [Debugger] C:\Program Files (x86)\IObit\Advanced SystemCare\AutoReactivator.exe Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk [2018-07-06] ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (Brak pliku) GroupPolicy: Ograniczenia ? <==== UWAGA GroupPolicy\User: Ograniczenia ? <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <==== UWAGA SearchScopes: HKU\S-1-5-21-152516410-3345548443-2374492543-1000 -> DefaultScope {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = S2 0064151530914270mcinstcleanup; C:\Users\dom\AppData\Local\Temp\0064151530914270mcinst.exe [1031928 2018-07-06] (McAfee, Inc.) <==== UWAGA S3 cleanhlp; Brak ImagePath S3 cpuz143; Brak ImagePath S3 MSICDSetup; \??\H:\CDriver64.sys [X] S3 NTIOLib_1_0_C; \??\H:\NTIOLib_X64.sys [X] HOSTS: EmptyTemp: ***************** "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B8565C5B-60C8-4D1A-B766-8DEF4F681861}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B8565C5B-60C8-4D1A-B766-8DEF4F681861}" => pomyślnie usunięto C:\Windows\System32\Tasks\{9615CE69-F3B5-5705-42B7-48621F33CDB9} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{9615CE69-F3B5-5705-42B7-48621F33CDB9}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3B3977A4-9CF1-4384-9AE7-C9F8498C98E0}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3B3977A4-9CF1-4384-9AE7-C9F8498C98E0}" => pomyślnie usunięto C:\Windows\System32\Tasks\{7E2FBB9A-BDFA-B805-7C57-9974B659BA25} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7E2FBB9A-BDFA-B805-7C57-9974B659BA25}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{151E0505-4189-48A2-8615-8AD384B40FFC}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{151E0505-4189-48A2-8615-8AD384B40FFC}" => pomyślnie usunięto C:\Windows\System32\Tasks\{2128CED9-E709-CE6B-5F27-569A9C16DBF8} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{2128CED9-E709-CE6B-5F27-569A9C16DBF8}" => pomyślnie usunięto C:\Windows\SysWOW64\IEikY.exe => pomyślnie przeniesiono C:\Program Files (x86)\TmIyIadF.exe => pomyślnie przeniesiono C:\Users\dom\AppData\Roaming\UIiADVwGuQb.exe => pomyślnie przeniesiono C:\Windows\SysWOW64\Kiuezoe.exe => pomyślnie przeniesiono C:\Users\dom\CYaEyIdSuEee.exe => pomyślnie przeniesiono "C:\Program Files (x86)\TmIyIadF.exe" => nie znaleziono C:\Program Files (x86)\Common Files\aIaeb.exe => pomyślnie przeniesiono "C:\Users\dom\AppData\Roaming\UIiADVwGuQb.exe" => nie znaleziono C:\Users\dom\AppData\Local\imw.ini => pomyślnie przeniesiono C:\Windows\wmsvr.exe => pomyślnie przeniesiono "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A314A6DC-993A-4411-B930-7587155AD06A}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9879BA8E-A504-4BE3-A13B-B7B69C6CCD6E}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BCB95922-805C-4900-824A-226E48B6F9EC}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{404A30A8-8920-4B24-A1D1-7CA0105C9F03}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3F980185-6E11-464D-9282-3C2DF4A9945B}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{20585533-0801-432A-8E9B-537961C08BF3}" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\BigUpgrade_IU.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\Dashlane_Launcher.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\DiscSoftBusServiceLite.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\DSPut.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\DTAgent.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\DTHelper.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\DTLauncher.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\DTLite.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\DTLiteHelper.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\DTShellHlp.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\Extractor.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\Feedback.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\HDDC2017.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\HDDC2017Service.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\IObitDownloader.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\IUDM.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\IUService.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\iush.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\Live Update.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\MSIRegister.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\MSIRegisterService.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\MSI_LiveUpdate_Service.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\NoteIcon.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\SCEWIN.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\SCEWIN_64.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\ScreenShot.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\SendBugReportNew.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\ShortCutModifier.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\SpecUTool.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\SPTDinst-x64.exe" => pomyślnie usunięto "HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\updateMediator.exe" => pomyślnie usunięto "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk" => nie znaleziono "ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (Brak pliku)" => nie znaleziono C:\Windows\system32\GroupPolicy\Machine => pomyślnie przeniesiono C:\Windows\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono C:\Windows\SysWOW64\GroupPolicy\GPT.ini => pomyślnie przeniesiono C:\Windows\system32\GroupPolicy\User => pomyślnie przeniesiono "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => pomyślnie usunięto "HKU\S-1-5-21-152516410-3345548443-2374492543-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto 0064151530914270mcinstcleanup => serwis nie znaleziono. "HKLM\System\CurrentControlSet\Services\cleanhlp" => pomyślnie usunięto cleanhlp => serwis pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\cpuz143" => pomyślnie usunięto cpuz143 => serwis pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\MSICDSetup" => pomyślnie usunięto MSICDSetup => serwis pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\NTIOLib_1_0_C" => pomyślnie usunięto NTIOLib_1_0_C => serwis pomyślnie usunięto C:\Windows\System32\Drivers\etc\hosts => pomyślnie przeniesiono Hosts pomyślnie przywrócono. =========== EmptyTemp: ========== BITS transfer queue => 8388608 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 11210077 B Java, Flash, Steam htmlcache => 84937193 B Windows/system/drivers => 29962384 B Edge => 0 B Chrome => 800080301 B Firefox => 27579673 B Opera => 0 B Temp, IE cache, history, cookies, recent: Users => 0 B Default => 66228 B Public => 0 B ProgramData => 0 B systemprofile => 58558406 B systemprofile32 => 75772 B LocalService => 132244 B NetworkService => 132524 B dom => 444545312 B RecycleBin => 7548 B EmptyTemp: => 1.4 GB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 15:20:03 ====