Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja:14-12-2015 Uruchomiony przez AREK (2015-12-16 07:40:26) Run:14 Uruchomiony z C:\Users\AREK\Downloads Załadowane profile: AREK & Paulina & Zbigniew (Dostępne profile: AREK & Paulina & Zbigniew) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** Unlock: HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders Unlock: HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders Unlock: HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders Unlock: HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders ListPermissions: HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders ListPermissions: HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders ListPermissions: HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders ListPermissions: HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders Reg: reg query "HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" Reg: reg query "HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" Reg: reg query "HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" Reg: reg query "HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" ***************** "HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" => klucz został odblokowany "HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" => klucz został odblokowany "HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" => klucz został odblokowany "HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" => klucz został odblokowany =================================== uprawnienia "HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders": Owner: BUILTIN\Administrators DACL(PAI): BUILTIN\Users ALLOW READ (NI) BUILTIN\Users ALLOW READ (OI-CI-IO) BUILTIN\Administrators ALLOW FULL (NI) BUILTIN\Administrators ALLOW FULL (OI-CI-IO) NT AUTHORITY\SYSTEM ALLOW FULL (NI) NT AUTHORITY\SYSTEM ALLOW FULL (OI-CI-IO) =================================== =================================== uprawnienia "HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders": Owner: BUILTIN\Administrators DACL(PAI): BUILTIN\Users ALLOW READ (NI) BUILTIN\Users ALLOW READ (OI-CI-IO) BUILTIN\Administrators ALLOW FULL (NI) BUILTIN\Administrators ALLOW FULL (OI-CI-IO) NT AUTHORITY\SYSTEM ALLOW FULL (NI) NT AUTHORITY\SYSTEM ALLOW FULL (OI-CI-IO) =================================== =================================== uprawnienia "HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders": Owner: BUILTIN\Administrators DACL(PAI): BUILTIN\Users ALLOW READ (NI) BUILTIN\Users ALLOW READ (OI-CI-IO) BUILTIN\Administrators ALLOW FULL (NI) BUILTIN\Administrators ALLOW FULL (OI-CI-IO) NT AUTHORITY\SYSTEM ALLOW FULL (NI) NT AUTHORITY\SYSTEM ALLOW FULL (OI-CI-IO) =================================== =================================== uprawnienia "HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders": Owner: BUILTIN\Administrators DACL(PAI): BUILTIN\Users ALLOW READ (NI) BUILTIN\Users ALLOW READ (OI-CI-IO) BUILTIN\Administrators ALLOW FULL (NI) BUILTIN\Administrators ALLOW FULL (OI-CI-IO) NT AUTHORITY\SYSTEM ALLOW FULL (NI) NT AUTHORITY\SYSTEM ALLOW FULL (OI-CI-IO) =================================== ========= reg query "HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" ========= HKEY_USERS\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders !Do not use this registry key REG_SZ Use the SHGetFolderPath or SHGetKnownFolderPath function instead AppData REG_SZ C:\Users\Paulina\AppData\Roaming Local AppData REG_SZ C:\Users\Paulina\AppData\Local My Video REG_SZ C:\Users\Paulina\Videos {1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE} REG_SZ C:\Users\Paulina\AppData\Roaming\Microsoft\Windows\Libraries My Pictures REG_SZ C:\Users\Paulina\Pictures Desktop REG_SZ C:\Users\Paulina\Desktop History REG_SZ C:\Users\Paulina\AppData\Local\Microsoft\Windows\History NetHood REG_SZ C:\Users\Paulina\AppData\Roaming\Microsoft\Windows\Network Shortcuts {56784854-C6CB-462B-8169-88E350ACB882} REG_SZ C:\Users\Paulina\Contacts Cookies REG_SZ C:\Users\Paulina\AppData\Roaming\Microsoft\Windows\Cookies Favorites REG_SZ C:\Users\Paulina\Favorites SendTo REG_SZ C:\Users\Paulina\AppData\Roaming\Microsoft\Windows\SendTo Start Menu REG_SZ C:\Users\Paulina\AppData\Roaming\Microsoft\Windows\Start Menu My Music REG_SZ C:\Users\Paulina\Music Programs REG_SZ C:\Users\Paulina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs Recent REG_SZ C:\Users\Paulina\AppData\Roaming\Microsoft\Windows\Recent CD Burning REG_SZ C:\Users\Paulina\AppData\Local\Microsoft\Windows\Burn\Burn PrintHood REG_SZ C:\Users\Paulina\AppData\Roaming\Microsoft\Windows\Printer Shortcuts {7D1D3A04-DEBB-4115-95CF-2F29DA2920DA} REG_SZ C:\Users\Paulina\Searches {374DE290-123F-4565-9164-39C4925E467B} REG_SZ C:\Users\Paulina\Downloads {A520A1A4-1780-4FF6-BD18-167343C5AF16} REG_SZ C:\Users\Paulina\AppData\LocalLow Startup REG_SZ C:\Users\Paulina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Administrative Tools REG_SZ C:\Users\Paulina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools Personal REG_SZ C:\Users\Paulina\Documents {BFB9D5E0-C6A9-404C-B2B2-AE6DB6AF4968} REG_SZ C:\Users\Paulina\Links Cache REG_SZ C:\Users\Paulina\AppData\Local\Microsoft\Windows\Temporary Internet Files Templates REG_SZ C:\Users\Paulina\AppData\Roaming\Microsoft\Windows\Templates {4C5C32FF-BB9D-43B0-B5B4-2D72E54EAAA4} REG_SZ C:\Users\Paulina\Saved Games Fonts REG_SZ C:\Windows\Fonts ========= Koniec Reg: ========= ========= reg query "HKU\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" ========= HKEY_USERS\S-1-5-21-74317436-289575424-2793545732-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders AppData REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming Cache REG_EXPAND_SZ %USERPROFILE%\AppData\Local\Microsoft\Windows\Temporary Internet Files Cookies REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Cookies Desktop REG_EXPAND_SZ %USERPROFILE%\Desktop Favorites REG_EXPAND_SZ %USERPROFILE%\Favorites History REG_EXPAND_SZ %USERPROFILE%\AppData\Local\Microsoft\Windows\History Local AppData REG_EXPAND_SZ %USERPROFILE%\AppData\Local My Music REG_EXPAND_SZ %USERPROFILE%\Music My Pictures REG_EXPAND_SZ %USERPROFILE%\Pictures My Video REG_EXPAND_SZ %USERPROFILE%\Videos NetHood REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Network Shortcuts Personal REG_EXPAND_SZ %USERPROFILE%\Documents Programs REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs Recent REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Recent SendTo REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\SendTo Startup REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Start Menu REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu Templates REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Templates {374DE290-123F-4565-9164-39C4925E467B} REG_EXPAND_SZ %USERPROFILE%\Downloads PrintHood REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Printer Shortcuts ========= Koniec Reg: ========= ========= reg query "HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders" ========= HKEY_USERS\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders !Do not use this registry key REG_SZ Use the SHGetFolderPath or SHGetKnownFolderPath function instead AppData REG_SZ C:\Users\Zbigniew\AppData\Roaming Local AppData REG_SZ C:\Users\Zbigniew\AppData\Local My Video REG_SZ C:\Users\Zbigniew\Videos {1B3EA5DC-B587-4786-B4EF-BD1DC332AEAE} REG_SZ C:\Users\Zbigniew\AppData\Roaming\Microsoft\Windows\Libraries My Pictures REG_SZ C:\Users\Zbigniew\Pictures Desktop REG_SZ C:\Users\Zbigniew\Desktop History REG_SZ C:\Users\Zbigniew\AppData\Local\Microsoft\Windows\History NetHood REG_SZ C:\Users\Zbigniew\AppData\Roaming\Microsoft\Windows\Network Shortcuts {56784854-C6CB-462B-8169-88E350ACB882} REG_SZ C:\Users\Zbigniew\Contacts Cookies REG_SZ C:\Users\Zbigniew\AppData\Roaming\Microsoft\Windows\Cookies Favorites REG_SZ C:\Users\Zbigniew\Favorites SendTo REG_SZ C:\Users\Zbigniew\AppData\Roaming\Microsoft\Windows\SendTo Start Menu REG_SZ C:\Users\Zbigniew\AppData\Roaming\Microsoft\Windows\Start Menu My Music REG_SZ C:\Users\Zbigniew\Music Programs REG_SZ C:\Users\Zbigniew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs Recent REG_SZ C:\Users\Zbigniew\AppData\Roaming\Microsoft\Windows\Recent CD Burning REG_SZ C:\Users\Zbigniew\AppData\Local\Microsoft\Windows\Burn\Burn PrintHood REG_SZ C:\Users\Zbigniew\AppData\Roaming\Microsoft\Windows\Printer Shortcuts {7D1D3A04-DEBB-4115-95CF-2F29DA2920DA} REG_SZ C:\Users\Zbigniew\Searches {374DE290-123F-4565-9164-39C4925E467B} REG_SZ C:\Users\Zbigniew\Downloads {A520A1A4-1780-4FF6-BD18-167343C5AF16} REG_SZ C:\Users\Zbigniew\AppData\LocalLow Startup REG_SZ C:\Users\Zbigniew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Administrative Tools REG_SZ C:\Users\Zbigniew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools Personal REG_SZ C:\Users\Zbigniew\Documents {BFB9D5E0-C6A9-404C-B2B2-AE6DB6AF4968} REG_SZ C:\Users\Zbigniew\Links Cache REG_SZ C:\Users\Zbigniew\AppData\Local\Microsoft\Windows\Temporary Internet Files Templates REG_SZ C:\Users\Zbigniew\AppData\Roaming\Microsoft\Windows\Templates {4C5C32FF-BB9D-43B0-B5B4-2D72E54EAAA4} REG_SZ C:\Users\Zbigniew\Saved Games Fonts REG_SZ C:\Windows\Fonts ========= Koniec Reg: ========= ========= reg query "HKU\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders" ========= HKEY_USERS\S-1-5-21-74317436-289575424-2793545732-1004\Software\Microsoft\Windows\CurrentVersion\Explorer\User Shell Folders AppData REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming Cache REG_EXPAND_SZ %USERPROFILE%\AppData\Local\Microsoft\Windows\Temporary Internet Files Cookies REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Cookies Desktop REG_EXPAND_SZ %USERPROFILE%\Desktop Favorites REG_EXPAND_SZ %USERPROFILE%\Favorites History REG_EXPAND_SZ %USERPROFILE%\AppData\Local\Microsoft\Windows\History Local AppData REG_EXPAND_SZ %USERPROFILE%\AppData\Local My Music REG_EXPAND_SZ %USERPROFILE%\Music My Pictures REG_EXPAND_SZ %USERPROFILE%\Pictures My Video REG_EXPAND_SZ %USERPROFILE%\Videos NetHood REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Network Shortcuts Personal REG_EXPAND_SZ %USERPROFILE%\Documents Programs REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs Recent REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Recent SendTo REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\SendTo Startup REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup Start Menu REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Start Menu Templates REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Templates {374DE290-123F-4565-9164-39C4925E467B} REG_EXPAND_SZ %USERPROFILE%\Downloads PrintHood REG_EXPAND_SZ %USERPROFILE%\AppData\Roaming\Microsoft\Windows\Printer Shortcuts ========= Koniec Reg: ========= ==== Koniec Fixlog 07:40:26 ====