Fix result of Farbar Recovery Scan Tool (x64) Version: 21-01-2025 Ran by SYSTEM (01-02-2025 09:09:53) Run:1 Running from H:\ Boot Mode: Recovery ============================================== fixlist content: ***************** HKLM-x32\...\Run: [Genshin Impact_launcher_mihoyo_1_0] => D:\Genshin Impact\updateProgram\Update.exe (No File) HKU\Administrator\...\Run: [AvastBrowserAutoLaunch_8901C211194C0DFF277C9606C1448E31] => "C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe" --check-run=src=logon --auto-launch-at-startup --profile-directory="Default" (No File) HKU\Baltuss\...\Run: [AvastBrowserAutoLaunch_0BE1254EF4F64572E84D2FE0975B59B2] => "C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe" --check-run=src=logon --onboarding-at-startup --auto-launch-at-startup --profile-directory="Default" (No File) HKU\Baltuss\...\Run: [Steam] => "C:\Program Files (x86)\Steam\steam.exe" -silent (No File) HKU\Martyna\...\Run: [AvastBrowserAutoLaunch_1CC11B308769223F46EB880C91BFA998] => "C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe" --check-run=src=logon --auto-launch-at-startup --profile-directory="Default" (No File) HKU\TEZTYSIA\...\Run: [AvastBrowserAutoLaunch_5A29C5F4A4D8E75C2B8E8233F0628BFD] => "C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe" --check-run=src=logon --onboarding-at-startup --auto-launch-at-startup --profile-directory="Default" (No File) GroupPolicy: Restriction - Chrome <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION Task: {E48300F6-1FB7-46BB-BBFD-6D300B70CE0E} - System32\Tasks\HPCustPartic.exe_{BDC2EDDF-3AB4-4242-BEA7-9575BBDE4176} => C:\Program Files\HP\HP DeskJet 4530 series\Bin\HPCustPartic.exe /surveydata /cc pl /zipcode /usagetype /lang pl (No File) Task: {800CE2BF-7AB0-4670-9588-429B9F5892A4} - System32\Tasks\HPCustPartic.exe_{E0BAE2DA-68CC-41F1-9D63-A836486D8013} => C:\Program Files\HP\HP DeskJet 4530 series\Bin\HPCustPartic.exe /installoptout 1485619537 /installreport no (No File) Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - System32\Tasks\Microsoft\Windows\Application Experience\AitAgent => aitagent (No File) Task: {A7C73732-9F11-4281-8D19-764D4EC9D94D} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => C:\Windows\SysWOW64\rundll32.exe [44544 2009-07-14] (Microsoft Corporation) -> aepdu.dll,AePduRunUpdate <==== ATTENTION Task: {D7B6E81D-3CF4-432C-84D2-24213F4316E6} - System32\Tasks\Microsoft\Windows\Autochk\Proxy => C:\Windows\SysWOW64\rundll32.exe [44544 2009-07-14] (Microsoft Corporation) -> /d acproxy.dll,PerformAutochkOperations <==== ATTENTION Task: {507E3B71-CCE9-4D4D-9015-A78C2697A666} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector => C:\Windows\SysWOW64\rundll32.exe [44544 2009-07-14] (Microsoft Corporation) -> dfdts.dll,DfdGetDefaultPolicyAndSMART <==== ATTENTION Task: {81540B9F-B5BF-47EB-9C95-BE195BF2C664} - System32\Tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo => C:\Windows\system32\gatherNetworkInfo.vbs [40552 2009-06-10] () Task: {994C86AD-A929-4B2C-88A0-4E25A107A029} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\SysWOW64\rundll32.exe [44544 2009-07-14] (Microsoft Corporation) -> /d srrstr.dll,ExecuteScheduledSPPCreation <==== ATTENTION Task: {088482FA-65B8-4E17-9ABF-1DCD48E8D373} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 => C:\Windows\SysWOW64\rundll32.exe [44544 2009-07-14] (Microsoft Corporation) -> ndfapi.dll,NdfRunDllDuplicateIPOffendingSystem <==== ATTENTION Task: {09F06BFE-A3C8-40E3-846A-6E6F4000C238} - System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 => C:\Windows\SysWOW64\rundll32.exe [44544 2009-07-14] (Microsoft Corporation) -> ndfapi.dll,NdfRunDllDuplicateIPDefendingSystem <==== ATTENTION Task: {E22A8667-F75B-4BA9-BA46-067ED4429DE8} - System32\Tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange => C:\Windows\SysWOW64\rundll32.exe [44544 2009-07-14] (Microsoft Corporation) -> bfe.dll,BfeOnServiceStartTypeChange <==== ATTENTION ***************** "HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Genshin Impact_launcher_mihoyo_1_0" => removed successfully "HKU\Administrator\Software\Microsoft\Windows\CurrentVersion\Run\\AvastBrowserAutoLaunch_8901C211194C0DFF277C9606C1448E31" => removed successfully "HKU\Baltuss\Software\Microsoft\Windows\CurrentVersion\Run\\AvastBrowserAutoLaunch_0BE1254EF4F64572E84D2FE0975B59B2" => removed successfully "HKU\Baltuss\Software\Microsoft\Windows\CurrentVersion\Run\\Steam" => removed successfully "HKU\Martyna\Software\Microsoft\Windows\CurrentVersion\Run\\AvastBrowserAutoLaunch_1CC11B308769223F46EB880C91BFA998" => removed successfully "HKU\TEZTYSIA\Software\Microsoft\Windows\CurrentVersion\Run\\AvastBrowserAutoLaunch_5A29C5F4A4D8E75C2B8E8233F0628BFD" => removed successfully C:\Windows\System32\GroupPolicy\Machine => Could not move C:\Windows\System32\GroupPolicy\GPT.ini => moved successfully C:\ProgramData\NTUSER.pol => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E48300F6-1FB7-46BB-BBFD-6D300B70CE0E} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E48300F6-1FB7-46BB-BBFD-6D300B70CE0E} => removed successfully C:\Windows\System32\Tasks\HPCustPartic.exe_{BDC2EDDF-3AB4-4242-BEA7-9575BBDE4176} => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HPCustPartic.exe_{BDC2EDDF-3AB4-4242-BEA7-9575BBDE4176} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{800CE2BF-7AB0-4670-9588-429B9F5892A4} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{800CE2BF-7AB0-4670-9588-429B9F5892A4} => removed successfully C:\Windows\System32\Tasks\HPCustPartic.exe_{E0BAE2DA-68CC-41F1-9D63-A836486D8013} => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HPCustPartic.exe_{E0BAE2DA-68CC-41F1-9D63-A836486D8013} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AC4E5ACF-89F7-4220-BA21-81EE183975E2} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC4E5ACF-89F7-4220-BA21-81EE183975E2} => removed successfully C:\Windows\System32\Tasks\Microsoft\Windows\Application Experience\AitAgent => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\AitAgent => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A7C73732-9F11-4281-8D19-764D4EC9D94D} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A7C73732-9F11-4281-8D19-764D4EC9D94D} => removed successfully C:\Windows\System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\ProgramDataUpdater => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{D7B6E81D-3CF4-432C-84D2-24213F4316E6} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D7B6E81D-3CF4-432C-84D2-24213F4316E6} => removed successfully C:\Windows\System32\Tasks\Microsoft\Windows\Autochk\Proxy => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Autochk\Proxy => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{507E3B71-CCE9-4D4D-9015-A78C2697A666} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{507E3B71-CCE9-4D4D-9015-A78C2697A666} => removed successfully C:\Windows\System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{81540B9F-B5BF-47EB-9C95-BE195BF2C664} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{81540B9F-B5BF-47EB-9C95-BE195BF2C664} => removed successfully C:\Windows\System32\Tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\NetTrace\GatherNetworkInfo => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{994C86AD-A929-4B2C-88A0-4E25A107A029} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{994C86AD-A929-4B2C-88A0-4E25A107A029} => removed successfully C:\Windows\System32\Tasks\Microsoft\Windows\SystemRestore\SR => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\SystemRestore\SR => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{088482FA-65B8-4E17-9ABF-1DCD48E8D373} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{088482FA-65B8-4E17-9ABF-1DCD48E8D373} => removed successfully C:\Windows\System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict1 => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Tcpip\IpAddressConflict1 => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{09F06BFE-A3C8-40E3-846A-6E6F4000C238} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{09F06BFE-A3C8-40E3-846A-6E6F4000C238} => removed successfully C:\Windows\System32\Tasks\Microsoft\Windows\Tcpip\IpAddressConflict2 => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Tcpip\IpAddressConflict2 => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E22A8667-F75B-4BA9-BA46-067ED4429DE8} => removed successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E22A8667-F75B-4BA9-BA46-067ED4429DE8} => removed successfully C:\Windows\System32\Tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange => moved successfully HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange => removed successfully ==== End of Fixlog 09:09:55 ====