Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 21-01-2025 Uruchomiony przez ITI1032 (22-01-2025 08:56:31) Run:1 Uruchomiony z E:\test\frst2 Załadowane profile: ITI1032 & SUZ & scanbizhub Tryb startu: Normal ============================================== fixlist - zawartość: ***************** Start:: HKLM-x32\...\Run: [st_global] => D:\FunPlus\StormShot\Launcher.exe (Brak pliku) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA HKU\S-1-5-21-1999557217-327936263-3457369781-1001\...\MountPoints2: {b985026f-2879-11ef-8acc-18c04dc47848} - "G:\SISetup.exe" Task: {55656AF1-DDE5-4DB9-8787-3B09DE7AC919} - System32\Tasks\e-pity2023_kwiecien => "D:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe" notify 2 30.04.2025 (Brak pliku) Task: {0B374BF2-423D-4C65-AAB6-0FFBEE21CA84} - System32\Tasks\e-pity2023_styczen => "D:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe" notify 2 30.04.2025 (Brak pliku) S3 NPF; system32\drivers\NPF.sys [X] HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-1999557217-327936263-3457369781-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://192.168.1.10:82/ FirewallRules: [{E5AE9AC5-7FC0-4953-BB41-F5501E8DEB81}] => (Allow) %USERPROFILE%\Downloads\TeamViewer_Setup_x64.exe => Brak pliku FirewallRules: [{2E3C73AF-5488-44B4-9246-3B01610A4E3B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{F64E1F43-DE33-4EB7-8AC1-D92D4063757E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{015D41BD-CD55-4159-9A2C-0EC68BF6726D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{65448C23-7B58-4B87-96D0-ED0E8ECA1A3B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Brak pliku FirewallRules: [{6FC484BF-55E7-4D12-8D47-8B291A3B012D}] => (Allow) C:\Users\ITI1032\AppData\Roaming\Zoom\bin\airhost.exe => Brak pliku CreateRestorePoint: EmptyTemp: End:: ***************** "HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\st_global" => pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => Wartość pomyślnie przywrócono HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => Wartość pomyślnie przywrócono HKU\S-1-5-21-1999557217-327936263-3457369781-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b985026f-2879-11ef-8acc-18c04dc47848} => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{55656AF1-DDE5-4DB9-8787-3B09DE7AC919}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{55656AF1-DDE5-4DB9-8787-3B09DE7AC919}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\e-pity2023_kwiecien => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e-pity2023_kwiecien" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0B374BF2-423D-4C65-AAB6-0FFBEE21CA84}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0B374BF2-423D-4C65-AAB6-0FFBEE21CA84}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\e-pity2023_styczen => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\e-pity2023_styczen" => pomyślnie usunięto HKLM\System\CurrentControlSet\Services\NPF => pomyślnie usunięto NPF => serwis pomyślnie usunięto HKLM\Software\\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" => Wartość pomyślnie przywrócono HKU\S-1-5-21-1999557217-327936263-3457369781-1001\Software\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => Wartość pomyślnie przywrócono "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E5AE9AC5-7FC0-4953-BB41-F5501E8DEB81}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E3C73AF-5488-44B4-9246-3B01610A4E3B}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F64E1F43-DE33-4EB7-8AC1-D92D4063757E}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{015D41BD-CD55-4159-9A2C-0EC68BF6726D}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{65448C23-7B58-4B87-96D0-ED0E8ECA1A3B}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6FC484BF-55E7-4D12-8D47-8B291A3B012D}" => pomyślnie usunięto Punkt przywracania został pomyślnie utworzony. =========== EmptyTemp: ========== FlushDNS => ukończone BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 448336764 B Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B Windows/system/drivers => 239256969 B Edge => 0 B Chrome => 650010351 B Firefox => 37438068 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 191474 B systemprofile32 => 191474 B LocalService => 882562 B NetworkService => 882562 B ITI1032 => 550128812 B SUZ => 550138020 B scanbizhub => 550147204 B RecycleBin => 111376353 B EmptyTemp: => 2.9 GB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 09:00:37 ====