Anonim / 1 rok, 10 miesięcy temu | Download | Plaintext | Odpowiedz |

  1
  2
  3
  4
  5
  6
  7
  8
  9
 10
 11
 12
 13
 14
 15
 16
 17
 18
 19
 20
 21
 22
 23
 24
 25
 26
 27
 28
 29
 30
 31
 32
 33
 34
 35
 36
 37
 38
 39
 40
 41
 42
 43
 44
 45
 46
 47
 48
 49
 50
 51
 52
 53
 54
 55
 56
 57
 58
 59
 60
 61
 62
 63
 64
 65
 66
 67
 68
 69
 70
 71
 72
 73
 74
 75
 76
 77
 78
 79
 80
 81
 82
 83
 84
 85
 86
 87
 88
 89
 90
 91
 92
 93
 94
 95
 96
 97
 98
 99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
Rezultat naprawy Farbar Recovery Scan Tool (x86) Wersja:05-03-2016 01
Uruchomiony przez Łukasz (2016-03-18 15:06:09) Run:3
Uruchomiony z C:\Users\Łukasz\Downloads
Załadowane profile: Łukasz (Dostępne profile: Łukasz & DefaultAppPool)
Tryb startu: Normal

==============================================

fixlist - zawartość:
*****************
ShellIconOverlayIdentifiers: [GGDriveOverlay1] -> {E68D0A50-3C40-4712-B90D-DCFA93FF2534} =>  Brak pliku
ShellIconOverlayIdentifiers: [GGDriveOverlay2] -> {E68D0A51-3C40-4712-B90D-DCFA93FF2534} =>  Brak pliku
ShellIconOverlayIdentifiers: [GGDriveOverlay3] -> {E68D0A52-3C40-4712-B90D-DCFA93FF2534} =>  Brak pliku
ShellIconOverlayIdentifiers: [GGDriveOverlay4] -> {E68D0A53-3C40-4712-B90D-DCFA93FF2534} =>  Brak pliku
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
U3 idsvc; Brak ImagePath
U3 wpcsvc; Brak ImagePath
C:\Program Files\AdwCleaner
2015-04-14 17:28 - 2015-04-14 17:28 - 0004387 _____ () C:\Users\Łukasz\AppData\Roaming\5cjV7NOuTmAm
2015-04-19 13:20 - 2015-11-19 17:00 - 0000626 _____ () C:\Users\Łukasz\AppData\Roaming\MOp1uXtpVUFK1H4mSX
2014-12-04 11:30 - 2014-12-04 11:30 - 0138904 _____ () C:\Users\Łukasz\AppData\Roaming\PnkBstrK.sys
2015-08-30 03:09 - 2015-08-30 16:00 - 0000102 _____ () C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
Task: {1B1DA233-2B5F-4B85-8949-0E00248DFCD1} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Brak pliku <==== UWAGA
Task: {3A7660DD-9106-42DB-BB9D-EC9E4C070A4B} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
Task: {4E64D1CB-A497-420B-88EA-C84834C3C16B} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Brak pliku <==== UWAGA
Task: {6F05F61B-E853-415B-A570-CA9BF60E0AB7} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
Task: {7CC5AE40-59AC-4DF9-B80B-2B992DE76CC2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
Task: {C71157F8-69F7-4BDE-9A50-EB14EDA94590} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
Task: {E3478F7A-7D76-4921-8EB0-9A03A4F1767A} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
Task: {E857AC22-47A6-4B52-862A-F1FB50F44DE1} - System32\Tasks\{8C6ABD89-2748-4344-837A-035A5E6B3557} => pcalua.exe -a C:\Users\Łukasz\AppData\Roaming\do-search\UninstallManager.exe -c  -ptid=cor
Task: {EF1A0B17-04D0-41F0-8216-0239E38A049F} - System32\Tasks\WordFly Auto Updater 1.10.0.28 Pending Update => C:\Program Files\WordFly_1.10.0.28\Update\WordflyAutoUpdateClient.exe <==== UWAGA
Task: {F34CA1C8-E8CA-490C-AD02-46325A15BDDA} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
Task: {FAE7CB29-D899-4BD8-8120-A16C08E1FC4F} - System32\Tasks\{3E78CC2C-3188-4B5B-A293-F4093202AE59} => pcalua.exe -a C:\Users\Łukasz\AppData\Roaming\oursurfing\UninstallManager.exe -c -ptid=amt
Task: {FCF33739-45B4-4668-A167-8146344BB0C5} - System32\Tasks\WordFly Auto Updater 1.10.0.28 Core => C:\Program Files\WordFly_1.10.0.28\Update\WordflyAutoUpdateClient.exe <==== UWAGA
Task: {FD182056-22F0-4B39-8FBC-BAB5CDDEE3C3} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
Task: {FD731135-A7FC-4735-BC62-F0B93099B3EA} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
Task: C:\WINDOWS\Tasks\5cjV7NOuTmAm.job => C:\Users\Łukasz\AppData\Roaming\5cjV7NOuTmAm.exe <==== UWAGA
Task: C:\WINDOWS\Tasks\MOp1uXtpVUFK1H4mSX.job => C:\Users\Łukasz\AppData\Roaming\MOp1uXtpVUFK1H4mSX.exe <==== UWAGA
IE trusted site: HKU\S-1-5-21-2855642920-2160073068-4100759413-1001\...\webcompanion.com -> hxxp://webcompanion.com
C:\Program Files\WordFly_1.10.0.28
C:\Users\Łukasz\AppData\Roaming\*.exe
RemoveProxy:
EmptyTemp:
*****************

"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\GGDriveOverlay1" => klucz pomyślnie usunięto
HKCR\CLSID\{E68D0A50-3C40-4712-B90D-DCFA93FF2534} => klucz nie znaleziono. 
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\GGDriveOverlay2" => klucz pomyślnie usunięto
HKCR\CLSID\{E68D0A51-3C40-4712-B90D-DCFA93FF2534} => klucz nie znaleziono. 
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\GGDriveOverlay3" => klucz pomyślnie usunięto
HKCR\CLSID\{E68D0A52-3C40-4712-B90D-DCFA93FF2534} => klucz nie znaleziono. 
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\GGDriveOverlay4" => klucz pomyślnie usunięto
HKCR\CLSID\{E68D0A53-3C40-4712-B90D-DCFA93FF2534} => klucz nie znaleziono. 
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie usunięto
idsvc => serwis pomyślnie usunięto
wpcsvc => serwis pomyślnie usunięto
C:\Program Files\AdwCleaner => pomyślnie przeniesiono
C:\Users\Łukasz\AppData\Roaming\5cjV7NOuTmAm => pomyślnie przeniesiono
C:\Users\Łukasz\AppData\Roaming\MOp1uXtpVUFK1H4mSX => pomyślnie przeniesiono
C:\Users\Łukasz\AppData\Roaming\PnkBstrK.sys => pomyślnie przeniesiono
C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat => pomyślnie przeniesiono
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1B1DA233-2B5F-4B85-8949-0E00248DFCD1}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1B1DA233-2B5F-4B85-8949-0E00248DFCD1}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3A7660DD-9106-42DB-BB9D-EC9E4C070A4B}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3A7660DD-9106-42DB-BB9D-EC9E4C070A4B}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4E64D1CB-A497-420B-88EA-C84834C3C16B}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4E64D1CB-A497-420B-88EA-C84834C3C16B}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6F05F61B-E853-415B-A570-CA9BF60E0AB7}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6F05F61B-E853-415B-A570-CA9BF60E0AB7}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7CC5AE40-59AC-4DF9-B80B-2B992DE76CC2}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7CC5AE40-59AC-4DF9-B80B-2B992DE76CC2}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C71157F8-69F7-4BDE-9A50-EB14EDA94590}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C71157F8-69F7-4BDE-9A50-EB14EDA94590}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E3478F7A-7D76-4921-8EB0-9A03A4F1767A}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E3478F7A-7D76-4921-8EB0-9A03A4F1767A}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E857AC22-47A6-4B52-862A-F1FB50F44DE1}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E857AC22-47A6-4B52-862A-F1FB50F44DE1}" => klucz pomyślnie usunięto
C:\Windows\System32\Tasks\{8C6ABD89-2748-4344-837A-035A5E6B3557} => pomyślnie przeniesiono
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{8C6ABD89-2748-4344-837A-035A5E6B3557}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{EF1A0B17-04D0-41F0-8216-0239E38A049F}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF1A0B17-04D0-41F0-8216-0239E38A049F}" => klucz pomyślnie usunięto
C:\Windows\System32\Tasks\WordFly Auto Updater 1.10.0.28 Pending Update => pomyślnie przeniesiono
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WordFly Auto Updater 1.10.0.28 Pending Update" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F34CA1C8-E8CA-490C-AD02-46325A15BDDA}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F34CA1C8-E8CA-490C-AD02-46325A15BDDA}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FAE7CB29-D899-4BD8-8120-A16C08E1FC4F}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FAE7CB29-D899-4BD8-8120-A16C08E1FC4F}" => klucz pomyślnie usunięto
C:\Windows\System32\Tasks\{3E78CC2C-3188-4B5B-A293-F4093202AE59} => pomyślnie przeniesiono
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{3E78CC2C-3188-4B5B-A293-F4093202AE59}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FCF33739-45B4-4668-A167-8146344BB0C5}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FCF33739-45B4-4668-A167-8146344BB0C5}" => klucz pomyślnie usunięto
C:\Windows\System32\Tasks\WordFly Auto Updater 1.10.0.28 Core => pomyślnie przeniesiono
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WordFly Auto Updater 1.10.0.28 Core" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FD182056-22F0-4B39-8FBC-BAB5CDDEE3C3}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FD182056-22F0-4B39-8FBC-BAB5CDDEE3C3}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FD731135-A7FC-4735-BC62-F0B93099B3EA}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FD731135-A7FC-4735-BC62-F0B93099B3EA}" => klucz pomyślnie usunięto
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => klucz pomyślnie usunięto
C:\WINDOWS\Tasks\5cjV7NOuTmAm.job => pomyślnie przeniesiono
C:\WINDOWS\Tasks\MOp1uXtpVUFK1H4mSX.job => pomyślnie przeniesiono
"HKU\S-1-5-21-2855642920-2160073068-4100759413-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com" => klucz pomyślnie usunięto
"C:\Program Files\WordFly_1.10.0.28" => nie znaleziono.

=========== "C:\Users\Łukasz\AppData\Roaming\*.exe" ==========

nie znaleziono

========= Koniec -> "C:\Users\Łukasz\AppData\Roaming\*.exe" ========


========= RemoveProxy: =========

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wartość pomyślnie usunięto
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wartość pomyślnie usunięto
HKU\S-1-5-21-2855642920-2160073068-4100759413-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => Wartość pomyślnie usunięto
HKU\S-1-5-21-2855642920-2160073068-4100759413-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wartość pomyślnie usunięto
HKU\S-1-5-21-2855642920-2160073068-4100759413-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wartość pomyślnie usunięto


========= Koniec  RemoveProxy: =========

EmptyTemp: => 692.6 MB danych tymczasowych Usunięto.


System wymagał restartu.

==== Koniec  Fixlog 15:07:55 ====