Rezultat naprawy Farbar Recovery Scan Tool (x86) Wersja: 02.08.2018 Uruchomiony przez Piotr (18-08-2018 16:44:46) Run:2 Uruchomiony z C:\Users\Piotr\Desktop Załadowane profile: Piotr (Dostępne profile: Piotr & Administrator & DefaultAppPool) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.yahoo.com/?fr=vmn&type=auslog_ya_hp SearchScopes: HKU\S-1-5-21-2399471354-2781755390-4139130681-1000 -> DefaultScope {76DEFAE6-09B2-40B2-8F8A-5A6A5D5CE4EB} URL = hxxps://search.yahoo.com/search/?toggle=1&cop=mss&ei=UTF-8&fr=vmn&type=auslog_ya_ch&p={searchTerms} SearchScopes: HKU\S-1-5-21-2399471354-2781755390-4139130681-1000 -> {76DEFAE6-09B2-40B2-8F8A-5A6A5D5CE4EB} URL = hxxps://search.yahoo.com/search/?toggle=1&cop=mss&ei=UTF-8&fr=vmn&type=auslog_ya_ch&p={searchTerms} HKLM\...\StartupApproved\Run: => "vdcss" HKLM\...\StartupApproved\Run: => "tvncontrol" HKLM\...\StartupApproved\Run: => "UnlockerAssistant" HKLM\...\StartupApproved\Run: => "HP Software Update" HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\...\StartupApproved\Run: => "Uninstall C:\Users\Piotr\AppData\Local\Microsoft\OneDrive\17.3.5892.0626" HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_555C9C84E87400ED348C4CD617569470" U3 aswbdisk; Brak ImagePath ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => -> Brak pliku ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => -> Brak pliku ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => -> Brak pliku Task: {1A1121A1-08F0-4942-BBA5-31DFDFB089C3} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {1A98F843-9700-46D9-B47E-5A0B17653020} - System32\Tasks\IObitSelfCheckTask => C:\Program Files\IObit\Smart Defrag\IObitSelfCheck.exe Task: {1ACB854E-E0CF-4341-8D2D-75BBB958BC20} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2EC6C6BC-C517-4514-BC85-D35ADCC346F7} - System32\Tasks\Avast Software\Overseer => C:\Program Files\AVAST Software\Avast\setup\overseer.exe Task: {39B1A940-F6AB-4957-878E-403DAEA2F90D} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {5AF24127-A8EF-4D41-8089-5909BFFAB13F} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {65AC2595-1FD2-493D-8920-8B699ABE48E6} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {72001CCE-615B-4525-AD47-C65773853DAB} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {8D1E148B-48BA-4F95-BA99-D39D5895368D} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {8EE43131-902E-4597-B76D-8598710666F2} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {916BA7FD-A5E6-4F6C-9CD1-A7021817A082} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {977012BC-715A-4E89-87A4-44A7EA454052} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {98FFE0D5-FC49-46E7-9F91-B9DC9D19C5AC} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {9AE90ADC-AC65-4A10-96DB-CAE8DF88CEF8} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {9BFB8F36-5F82-4B87-9462-45D30A8B346E} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {A901EADA-7274-4037-AE9D-8DFEFA5630AC} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {AC5E7E33-4E1D-4EE5-AF3E-AF524C98C7C4} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {B3037A25-B8E8-4C3F-B5DF-F3E05B4E9E80} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {BCDD542D-7506-4C2B-91F7-BF4B57E6199E} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {BDA8EBF5-6289-4824-923E-BA8DEAFF743B} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {C3A24FBB-73A9-48BB-AD49-A125AD889504} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {C63FBABA-983F-44D4-8081-8ABB3C2BE749} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {E0E57650-35B3-49CA-9053-A3F7C158CD08} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {EC983AE2-8277-43E5-8615-D0D3D9047EC2} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe DeleteKey: HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center DeleteKey: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\*.LNK C:\Users\Piotr\Desktop\chapters — skrót .lnk C:\WINDOWS\Reimage.ini C:\WINDOWS\ehome C:\Windows\System32\accesschk.exe Powershell: wevtutil el | Foreach-Object {wevtutil cl "$_"} EmptyTemp: ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => Błąd przy ustawianiu wartości. "HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => pomyślnie usunięto "HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{76DEFAE6-09B2-40B2-8F8A-5A6A5D5CE4EB}" => pomyślnie usunięto HKLM\Software\Classes\CLSID\{76DEFAE6-09B2-40B2-8F8A-5A6A5D5CE4EB} => nie znaleziono "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\vdcss" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\vdcss" => nie znaleziono "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\tvncontrol" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\tvncontrol" => nie znaleziono "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\UnlockerAssistant" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\UnlockerAssistant" => nie znaleziono "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\HP Software Update" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\HP Software Update" => nie znaleziono "HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Uninstall C:\Users\Piotr\AppData\Local\Microsoft\OneDrive\17.3.5892.0626" => pomyślnie usunięto "HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Uninstall C:\Users\Piotr\AppData\Local\Microsoft\OneDrive\17.3.5892.0626" => nie znaleziono "HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\uTorrent" => pomyślnie usunięto "HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\uTorrent" => nie znaleziono "HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\GoogleChromeAutoLaunch_555C9C84E87400ED348C4CD617569470" => pomyślnie usunięto "HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_555C9C84E87400ED348C4CD617569470" => nie znaleziono "HKLM\System\CurrentControlSet\Services\aswbdisk" => pomyślnie usunięto aswbdisk => serwis pomyślnie usunięto "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OverlayExcluded" => pomyślnie usunięto HKLM\Software\Classes\CLSID\{4433A54A-1AC8-432F-90FC-85F045CF383C} => nie znaleziono "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OverlayPending" => pomyślnie usunięto HKLM\Software\Classes\CLSID\{F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => nie znaleziono "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OverlayProtected" => pomyślnie usunięto HKLM\Software\Classes\CLSID\{476D0EA3-80F9-48B5-B70B-05E677C9C148} => nie znaleziono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{1A1121A1-08F0-4942-BBA5-31DFDFB089C3}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1A1121A1-08F0-4942-BBA5-31DFDFB089C3}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\RecordingRestart" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1A98F843-9700-46D9-B47E-5A0B17653020}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1A98F843-9700-46D9-B47E-5A0B17653020}" => pomyślnie usunięto C:\Windows\System32\Tasks\IObitSelfCheckTask => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IObitSelfCheckTask" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1ACB854E-E0CF-4341-8D2D-75BBB958BC20}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1ACB854E-E0CF-4341-8D2D-75BBB958BC20}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ReindexSearchRoot" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{2EC6C6BC-C517-4514-BC85-D35ADCC346F7}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2EC6C6BC-C517-4514-BC85-D35ADCC346F7}" => pomyślnie usunięto C:\Windows\System32\Tasks\Avast Software\Overseer => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Avast Software\Overseer" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{39B1A940-F6AB-4957-878E-403DAEA2F90D}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{39B1A940-F6AB-4957-878E-403DAEA2F90D}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\InstallPlayReady" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5AF24127-A8EF-4D41-8089-5909BFFAB13F}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5AF24127-A8EF-4D41-8089-5909BFFAB13F}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\StartRecording => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\StartRecording" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{65AC2595-1FD2-493D-8920-8B699ABE48E6}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{65AC2595-1FD2-493D-8920-8B699ABE48E6}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscoveryW1" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{72001CCE-615B-4525-AD47-C65773853DAB}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{72001CCE-615B-4525-AD47-C65773853DAB}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ActivateWindowsSearch" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8D1E148B-48BA-4F95-BA99-D39D5895368D}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D1E148B-48BA-4F95-BA99-D39D5895368D}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\DispatchRecoveryTasks" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8EE43131-902E-4597-B76D-8598710666F2}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8EE43131-902E-4597-B76D-8598710666F2}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\SqlLiteRecoveryTask" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{916BA7FD-A5E6-4F6C-9CD1-A7021817A082}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{916BA7FD-A5E6-4F6C-9CD1-A7021817A082}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PvrRecoveryTask" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{977012BC-715A-4E89-87A4-44A7EA454052}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{977012BC-715A-4E89-87A4-44A7EA454052}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\MediaCenterRecoveryTask" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{98FFE0D5-FC49-46E7-9F91-B9DC9D19C5AC}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{98FFE0D5-FC49-46E7-9F91-B9DC9D19C5AC}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscoveryW2" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9AE90ADC-AC65-4A10-96DB-CAE8DF88CEF8}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9AE90ADC-AC65-4A10-96DB-CAE8DF88CEF8}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ehDRMInit" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9BFB8F36-5F82-4B87-9462-45D30A8B346E}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9BFB8F36-5F82-4B87-9462-45D30A8B346E}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\OCURDiscovery" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A901EADA-7274-4037-AE9D-8DFEFA5630AC}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A901EADA-7274-4037-AE9D-8DFEFA5630AC}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PBDADiscovery" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AC5E7E33-4E1D-4EE5-AF3E-AF524C98C7C4}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC5E7E33-4E1D-4EE5-AF3E-AF524C98C7C4}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ConfigureInternetTimeService" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B3037A25-B8E8-4C3F-B5DF-F3E05B4E9E80}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B3037A25-B8E8-4C3F-B5DF-F3E05B4E9E80}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\OCURActivate" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BCDD542D-7506-4C2B-91F7-BF4B57E6199E}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BCDD542D-7506-4C2B-91F7-BF4B57E6199E}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BDA8EBF5-6289-4824-923E-BA8DEAFF743B}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BDA8EBF5-6289-4824-923E-BA8DEAFF743B}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\mcupdate => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\mcupdate" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C3A24FBB-73A9-48BB-AD49-A125AD889504}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C3A24FBB-73A9-48BB-AD49-A125AD889504}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PvrScheduleTask" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C63FBABA-983F-44D4-8081-8ABB3C2BE749}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C63FBABA-983F-44D4-8081-8ABB3C2BE749}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\UpdateRecordPath" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0E57650-35B3-49CA-9053-A3F7C158CD08}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0E57650-35B3-49CA-9053-A3F7C158CD08}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\PeriodicScanRetry" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EC983AE2-8277-43E5-8615-D0D3D9047EC2}" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EC983AE2-8277-43E5-8615-D0D3D9047EC2}" => pomyślnie usunięto C:\Windows\System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center\RegisterSearch" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Media Center" => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg" => pomyślnie usunięto =========== "C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\*.LNK" ========== C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Dokumenty.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Dysk wymienny (F).LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Dysk wymienny (H).LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\EMS project letter 2009.xls.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Kopia S2 2006 PRICE INCREASE TY GRADE.xls.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Matrix.xls.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Oblicza sarmatyzmu.ppt.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Oferty.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\PATRIOT (H).LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Praktyka.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Praktyka.mdb.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Projekty.xls.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Projekty_Arnaud.xls.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Pulpit.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Płytoteka.xls.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\rhodia projects2.xls.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\SABIC PP Qrystal.ppt.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Szablony.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\TDC.doc.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Temp.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Transfer.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\umowa ZIELONKA 2013-11-27.doc.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Weksel własny - ZIELONKA.doc.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Zestawienie_termoplasty.xls.LNK => pomyślnie przeniesiono C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\Zestawienie_termoplasty_bis.xls.LNK => pomyślnie przeniesiono ========= Koniec -> "C:\Users\Piotr\AppData\Roaming\Microsoft\Office\Niedawny\*.LNK" ======== C:\Users\Piotr\Desktop\chapters — skrót .lnk => pomyślnie przeniesiono C:\WINDOWS\Reimage.ini => pomyślnie przeniesiono "C:\WINDOWS\ehome" => nie znaleziono C:\Windows\System32\accesschk.exe => pomyślnie przeniesiono ========= wevtutil el | Foreach-Object {wevtutil cl "$_"} ========= ========= Koniec Powershell: ========= =========== EmptyTemp: ========== BITS transfer queue => 9199616 B DOMStoree, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 210350033 B Java, Flash, Steam htmlcache => 291 B Windows/system/drivers => 95088555 B Edge => 17408 B Chrome => 6116234 B Firefox => 131914163 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 14187 B LocalService => 908 B NetworkService => 0 B Piotr => 155805829 B Administrator => 3047780 B DefaultAppPool => 0 B RecycleBin => 2309 B EmptyTemp: => 583.2 MB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 16:50:52 ====