Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 21.07.2018 Uruchomiony przez Maciek (31-07-2018 13:35:19) Run:13 Uruchomiony z C:\Users\Maciek\Downloads Załadowane profile: Maciek (Dostępne profile: defaultuser0 & Maciek) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: RemoveProxy: StartBatch: ipconfig /flushdns netsh advfirewall reset netsh int ipv4 reset all netsh int ipv6 reset all netsh int httpstunnel reset all netsh int portproxy reset all netsh int tcp reset all netsh winsock reset EndBatch: SearchScopes: HKU\S-1-5-21-4104627804-584984733-3715976581-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BootExecute: autocheck autochk * sdnclean64.exe MSCONFIG\Services: clsid10474 => 2 HKLM\...\StartupApproved\StartupFolder: => "ResumeInstall.exe" HKLM\...\StartupApproved\Run: => "ShadowPlay" HKLM\...\StartupApproved\Run: => "Launch LCore" HKU\S-1-5-21-4104627804-584984733-3715976581-1001\...\StartupApproved\Run: => "AceStream" HKU\S-1-5-21-4104627804-584984733-3715976581-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-4104627804-584984733-3715976581-1001\...\StartupApproved\Run: => "uTorrent" DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2018-04-18] (Zemana Ltd.) U1 avgbdisk; Brak ImagePath S1 ZAM; \??\C:\WINDOWS\System32\drivers\zam64.sys [X] C:\Program Files\Bitdefender C:\Program Files\Bitdefender Agent C:\Program Files\Common Files\AVG C:\Program Files\Common Files\Bitdefender C:\Program Files (x86)\Avira C:\Program Files (x86)\Google C:\Program Files (x86)\Spybot - Search & Destroy 2 C:\Program Files (x86)\Zemana AntiMalware C:\ProgramData\AVG C:\ProgramData\Avira C:\ProgramData\HitmanPro C:\ProgramData\Spybot - Search & Destroy C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2015.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Моzillа Firеfох.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Рrzеglądаrkа Ореrа.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tokyo Dawn Labs\TDR Nova\User manual.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Native Instruments Homepage.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Massive\Native Instruments Homepage.lnk C:\Users\Maciek\AppData\Local\Avg C:\Users\Maciek\AppData\Local\Google C:\Users\Maciek\AppData\LocalLow\uTorrent C:\Users\Maciek\AppData\Roaming\AVAST Software C:\Users\Maciek\AppData\Roaming\QuickScan C:\Users\Maciek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzillа Firеfох.lnk C:\Users\Maciek\Desktop\Avira PC Cleaner.lnk C:\Users\Maciek\Desktop\Remove Avira PC Cleaner.lnk C:\Users\Maciek\Desktop\Pulpit V3\XMind 8 Update 5.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\Acrobat Reader DC.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\Adobe Application Manager.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\Моzillа Firеfох.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\Ace Player.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\Ace Stream Media Center.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\LibreOffice 5.3.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\Origin.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\Cheat Engine.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\DSJ4.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\Euro Truck Simulator 2(x32).lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\Euro Truck Simulator 2(x64).lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\NBA 2K17.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\SWIMBI.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\Uplay.lnk C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\µTorrent.lnk C:\Users\Maciek\Downloads\Box Mockup - by Christian\SUPPORT ME.lnk C:\Users\Maciek\Documents\Euro Truck Simulator 2\readme.rtf.lnk C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk C:\WINDOWS\system32\drivers\bdelam.sys C:\WINDOWS\system32\drivers\zamguard64.sys C:\WINDOWS\system32\Drivers\etc\hosts.20180729-223118.backup C:\WINDOWS\ZAM_Guard.krnl.trace C:\WINDOWS\ZAM.krnl.trace Powershell: wevtutil el | Foreach-Object {wevtutil cl "$_"} EmptyTemp: ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. ========= RemoveProxy: ========= "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => pomyślnie usunięto "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto "HKU\S-1-5-21-4104627804-584984733-3715976581-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => pomyślnie usunięto "HKU\S-1-5-21-4104627804-584984733-3715976581-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => pomyślnie usunięto ========= Koniec RemoveProxy: ========= ========= Batch: ========= Windows IP Configuration Successfully flushed the DNS Resolver Cache. Ok. Resetting Compartment Forwarding, OK! Resetting Compartment, OK! Resetting Control Protocol, OK! Resetting Echo Sequence Request, OK! Resetting Global, OK! Resetting Interface, OK! Resetting Anycast Address, OK! Resetting Multicast Address, OK! Resetting Unicast Address, OK! Resetting Neighbor, OK! Resetting Path, OK! Resetting Potential, OK! Resetting Prefix Policy, OK! Resetting Proxy Neighbor, OK! Resetting Route, OK! Resetting Site Prefix, OK! Resetting Subinterface, OK! Resetting Wakeup Pattern, OK! Resetting Resolve Neighbor, OK! Resetting , OK! Resetting , OK! Resetting , OK! Resetting , OK! Resetting , failed. Odmowa dost©pu. Resetting , OK! Resetting , OK! Resetting , OK! Resetting , OK! Resetting , OK! Resetting , OK! Resetting , OK! Restart the computer to complete this action. Resetting Compartment Forwarding, OK! Resetting Compartment, OK! Resetting Control Protocol, OK! Resetting Echo Sequence Request, OK! Resetting Global, OK! Resetting Interface, OK! Resetting Anycast Address, OK! Resetting Multicast Address, OK! Resetting Unicast Address, OK! Resetting Neighbor, OK! Resetting Path, OK! Resetting Potential, OK! Resetting Prefix Policy, OK! Resetting Proxy Neighbor, OK! Resetting Route, OK! Resetting Site Prefix, OK! Resetting Subinterface, OK! Resetting Wakeup Pattern, OK! Resetting Resolve Neighbor, OK! Resetting , OK! Resetting , OK! Resetting , OK! Resetting , OK! Resetting , failed. Odmowa dost©pu. Resetting , OK! Resetting , OK! Resetting , OK! Resetting , OK! Resetting , OK! Resetting , OK! Resetting , OK! Restart the computer to complete this action. Reset of all TCP parameters OK! Ok. Sucessfully reset the Winsock Catalog. You must restart the computer in order to complete the reset. ========= Koniec Batch: ========= "HKU\S-1-5-21-4104627804-584984733-3715976581-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => Wartość pomyślnie przywrócono "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\clsid10474" => pomyślnie usunięto HKLM\System\CurrentControlSet\Services\clsid10474 => nie znaleziono "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ResumeInstall.exe" => nie znaleziono "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder\\ResumeInstall.exe" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\ShadowPlay" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\ShadowPlay" => nie znaleziono "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Launch LCore" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Launch LCore" => nie znaleziono "HKU\S-1-5-21-4104627804-584984733-3715976581-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\AceStream" => pomyślnie usunięto "HKU\S-1-5-21-4104627804-584984733-3715976581-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\AceStream" => nie znaleziono "HKU\S-1-5-21-4104627804-584984733-3715976581-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Discord" => pomyślnie usunięto "HKU\S-1-5-21-4104627804-584984733-3715976581-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Discord" => nie znaleziono "HKU\S-1-5-21-4104627804-584984733-3715976581-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\uTorrent" => pomyślnie usunięto "HKU\S-1-5-21-4104627804-584984733-3715976581-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\uTorrent" => nie znaleziono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking" => pomyślnie usunięto ZAM_Guard => Nie można zatrzymać usługi. "HKLM\System\CurrentControlSet\Services\ZAM_Guard" => pomyślnie usunięto ZAM_Guard => serwis pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\avgbdisk" => pomyślnie usunięto avgbdisk => serwis pomyślnie usunięto "HKLM\System\CurrentControlSet\Services\ZAM" => pomyślnie usunięto ZAM => serwis pomyślnie usunięto C:\Program Files\Bitdefender => pomyślnie przeniesiono C:\Program Files\Bitdefender Agent => pomyślnie przeniesiono C:\Program Files\Common Files\AVG => pomyślnie przeniesiono C:\Program Files\Common Files\Bitdefender => pomyślnie przeniesiono C:\Program Files (x86)\Avira => pomyślnie przeniesiono C:\Program Files (x86)\Google => pomyślnie przeniesiono C:\Program Files (x86)\Spybot - Search & Destroy 2 => pomyślnie przeniesiono C:\Program Files (x86)\Zemana AntiMalware => pomyślnie przeniesiono C:\ProgramData\AVG => pomyślnie przeniesiono C:\ProgramData\Avira => pomyślnie przeniesiono C:\ProgramData\HitmanPro => pomyślnie przeniesiono C:\ProgramData\Spybot - Search & Destroy => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro CC 2015.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Моzillа Firеfох.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Рrzеglądаrkа Ореrа.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tokyo Dawn Labs\TDR Nova\User manual.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Service Center\Native Instruments Homepage.lnk => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments\Massive\Native Instruments Homepage.lnk => pomyślnie przeniesiono C:\Users\Maciek\AppData\Local\Avg => pomyślnie przeniesiono C:\Users\Maciek\AppData\Local\Google => pomyślnie przeniesiono C:\Users\Maciek\AppData\LocalLow\uTorrent => pomyślnie przeniesiono C:\Users\Maciek\AppData\Roaming\AVAST Software => pomyślnie przeniesiono C:\Users\Maciek\AppData\Roaming\QuickScan => pomyślnie przeniesiono C:\Users\Maciek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzillа Firеfох.lnk => pomyślnie przeniesiono "C:\Users\Maciek\Desktop\Avira PC Cleaner.lnk" => nie znaleziono "C:\Users\Maciek\Desktop\Remove Avira PC Cleaner.lnk" => nie znaleziono C:\Users\Maciek\Desktop\Pulpit V3\XMind 8 Update 5.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\Acrobat Reader DC.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\Adobe Application Manager.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\Моzillа Firеfох.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\Ace Player.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\Ace Stream Media Center.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\LibreOffice 5.3.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\Origin.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\Cheat Engine.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\DSJ4.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\Euro Truck Simulator 2(x32).lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\Euro Truck Simulator 2(x64).lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\NBA 2K17.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\SWIMBI.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\Uplay.lnk => pomyślnie przeniesiono C:\Users\Maciek\Desktop\Pulpit V3\pulpit\pulpit v2\pulpit\µTorrent.lnk => pomyślnie przeniesiono C:\Users\Maciek\Downloads\Box Mockup - by Christian\SUPPORT ME.lnk => pomyślnie przeniesiono C:\Users\Maciek\Documents\Euro Truck Simulator 2\readme.rtf.lnk => pomyślnie przeniesiono C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk => pomyślnie przeniesiono C:\WINDOWS\system32\drivers\bdelam.sys => pomyślnie przeniesiono C:\WINDOWS\system32\drivers\zamguard64.sys => pomyślnie przeniesiono C:\WINDOWS\system32\Drivers\etc\hosts.20180729-223118.backup => pomyślnie przeniesiono C:\WINDOWS\ZAM_Guard.krnl.trace => pomyślnie przeniesiono C:\WINDOWS\ZAM.krnl.trace => pomyślnie przeniesiono ========= wevtutil el | Foreach-Object {wevtutil cl "$_"} ========= ========= Koniec Powershell: ========= =========== EmptyTemp: ========== BITS transfer queue => 9199616 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 111121374 B Java, Flash, Steam htmlcache => 189381113 B Windows/system/drivers => 960370 B Edge => 1135104 B Chrome => 0 B Firefox => 476047355 B Opera => 26946185 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 0 B LocalService => 0 B NetworkService => 8378 B NetworkService => 0 B defaultuser0 => 0 B Maciek => 84984606 B RecycleBin => 24824 B EmptyTemp: => 858.1 MB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 13:36:16 ====