Nie wiem czy na pewno zamieściły się poprawne logi więc wykonałam raz jeszcze.
Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 22-09-2019
Uruchomiony przez Iwona (administrator) IWONA-KOMPUTER (Hewlett-Packard HP ProBook 470 G2) (23-09-2019 21:38:15)
Uruchomiony z C:\Users\Iwona\Downloads
Załadowane profile: Iwona (Dostępne profile: Iwona & DefaultAppPool)
Platform: Windows 10 Home Wersja 1903 18362.356 (X64) Język: Polski (Polska)
Domyślna przeglądarka: FF
Tryb startu: Normal
Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Procesy (filtrowane) =================
(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
(Adobe Inc. - & gt; Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(charismathics GmbH) [Brak podpisu cyfrowego] C:\Windows\System32\cmEvtSrv64.exe
(Comarch S.A. - & gt; Comarch S.A.) C:\Program Files (x86)\Comarch\Comarch ERP Menadżer Kluczy\ComarchML.exe
(Comarch S.A. - & gt; Comarch) C:\Program Files (x86)\Comarch\Comarch ERP Menadżer Kluczy\ComarchMLTray.exe
(ESET, spol. s r.o. - & gt; ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. - & gt; ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Firebird Project) [Brak podpisu cyfrowego] C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe
(Firebird Project) [Brak podpisu cyfrowego] C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe
(HP Inc. - & gt; HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\HotKeyServiceUWP.exe
(HP Inc. - & gt; HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\HPHotkeyNotification.exe
(HP Inc. - & gt; HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_8598cf7f18c538c5\LanWlanWwanSwitchingServiceUWP.exe
(iComarch24 S.A.) [Brak podpisu cyfrowego] C:\Program Files (x86)\iBard24\3.2.2.23360\iBard24.exe
(iComarch24 S.A.) [Brak podpisu cyfrowego] C:\Program Files (x86)\iBard24\iBard24Service.exe
(iComarch24 S.A.) [Brak podpisu cyfrowego] C:\Program Files (x86)\iBard24\IBardClient.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group - & gt; Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group - & gt; Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation - Intel® Rapid Storage Technology - & gt; Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) pGFX - & gt; ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX - & gt; Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX - & gt; Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX - & gt; Intel Corporation) C:\Windows\System32\igfxHK.exe
(Ivaylo Beltchev - & gt; IvoSoft) [Brak podpisu cyfrowego] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Malwarebytes Corporation - & gt; Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation - & gt; Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation - & gt; Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation - & gt; Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.OPTIMA\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation - & gt; Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation - & gt; Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corporation - & gt; Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation - & gt; Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
(Microsoft Corporation - & gt; Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation - & gt; Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation - & gt; Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11909.1002.3.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19082.1010.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher - & gt; ) C:\Windows\System32\fpCSEvtSvc.exe
(Microsoft Windows Hardware Compatibility Publisher - & gt; AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher - & gt; AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Windows Hardware Compatibility Publisher - & gt; Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Microsoft Windows Hardware Compatibility Publisher - & gt; Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(Mozilla Corporation - & gt; Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation - & gt; Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation - & gt; Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation - & gt; Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation - & gt; Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation - & gt; Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation - & gt; Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation - & gt; Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Piriform Software Ltd - & gt; Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp. - & gt; Realtek Semiconductor Corp.) C:\Windows\RtsCM64.exe
(Realtek Semiconductor Corp. - & gt; Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. - & gt; Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp. - & gt; Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(SafeNet, Inc. - & gt; SafeNet Inc.) C:\Windows\System32\hasplms.exe
(Samsung Electronics CO., LTD. - & gt; ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Samsung Electronics CO., LTD. - & gt; ) C:\Windows\SysWOW64\SecUPDUtilSvc.exe
(Samsung Electronics CO., LTD. - & gt; ) C:\Windows\SysWOW64\spdsvc.exe
(Samsung Electronics CO., LTD. - & gt; Samsung Electronics Co., Ltd.) C:\Windows\System32\spool\drivers\x64\3\NetFaxServer64.exe
(Samsung Electronics CO., LTD. - & gt; Samsung Electronics Co., Ltd.) C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.52.138.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.52.138.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Synaptics Incorporated - & gt; Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated - & gt; Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated - & gt; Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TeamViewer GmbH - & gt; TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Validity Sensors, Inc - & gt; Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
==================== Rejestr (filtrowane) ===========================
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
HKLM\...\Run: [RTHDVCPL] = & gt; C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9269352 2019-09-23] (Realtek Semiconductor Corp. - & gt; Realtek Semiconductor)
HKLM\...\Run: [RtsCM] = & gt; C:\WINDOWS\RTSCM64.EXE [225280 2017-03-09] (Realtek Semiconductor Corp. - & gt; Realtek Semiconductor Corp.)
HKLM\...\Run: [IAStorIcon] = & gt; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320360 2014-06-25] (Intel Corporation - Intel® Rapid Storage Technology - & gt; Intel Corporation)
HKLM\...\Run: [CDAServer] = & gt; C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. - & gt; )
HKLM\...\Run: [Classic Start Menu] = & gt; C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2018-07-15] (Ivaylo Beltchev - & gt; IvoSoft) [Brak podpisu cyfrowego]
HKLM\...\Run: [Logitech Download Assistant] = & gt; C:\Windows\System32\LogiLDA.dll [3942864 2016-10-13] (Logitech - & gt; Logitech, Inc.)
HKLM\...\Run: [egui] = & gt; C:\Program Files\ESET\ESET Security\ecmds.exe [180736 2019-09-09] (ESET, spol. s r.o. - & gt; ESET)
HKLM-x32\...\Run: [ControlCenter4] = & gt; C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139776 2013-12-05] (Brother Industries, Ltd.) [Brak podpisu cyfrowego]
HKLM-x32\...\Run: [SunJavaUpdateSched] = & gt; C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle America, Inc. - & gt; Oracle Corporation)
HKLM-x32\...\Run: [BrStsMon00] = & gt; C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4513792 2014-05-22] (Brother Industries, Ltd.) [Brak podpisu cyfrowego]
HKU\S-1-5-21-2138268711-697778524-3512068609-1000\...\Run: [COLS] = & gt; C:\Program Files (x86)\Comarch\Comarch ERP Menadżer Kluczy\ComarchMLTray.exe [334536 2016-02-11] (Comarch S.A. - & gt; Comarch)
HKU\S-1-5-21-2138268711-697778524-3512068609-1000\...\Run: [iBard24] = & gt; C:\Program Files (x86)\iBard24\IBardClient.exe [334336 2016-01-13] (iComarch24 S.A.) [Brak podpisu cyfrowego]
HKU\S-1-5-21-2138268711-697778524-3512068609-1000\...\Run: [BingSvc] = & gt; C:\Users\Iwona\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-05] (Microsoft Corporation - & gt; © 2015 Microsoft Corporation)
HKU\S-1-5-21-2138268711-697778524-3512068609-1000\...\Run: [CCleaner Smart Cleaning] = & gt; C:\Program Files\CCleaner\CCleaner64.exe [22714912 2019-08-15] (Piriform Software Ltd - & gt; Piriform Ltd)
HKU\S-1-5-21-2138268711-697778524-3512068609-1000\...\MountPoints2: {077ce1b3-d870-11e9-840b-c48e8f44214a} - " F:\HiSuiteDownLoader.exe "
HKU\S-1-5-21-2138268711-697778524-3512068609-1000\Control Panel\Desktop\\SCRNSAVE.EXE - & gt; C:\Windows\system32\PhotoScreensaver.scr [567296 2019-03-19] (Microsoft Windows - & gt; Microsoft Corporation)
HKLM\Software\...\AppCompatFlags\Custom\Comarch ERP Altum HR.exe: [{6713fee8-dd53-48f5-adc5-b5a0498bde48}.sdb] - & gt; Comarch ERP WMPAINT Fix
HKLM\Software\...\AppCompatFlags\Custom\Comarch ERP XL HR.exe: [{6713fee8-dd53-48f5-adc5-b5a0498bde48}.sdb] - & gt; Comarch ERP WMPAINT Fix
HKLM\Software\...\AppCompatFlags\Custom\Comarch OPT!MA.exe: [{6713fee8-dd53-48f5-adc5-b5a0498bde48}.sdb] - & gt; Comarch ERP WMPAINT Fix
HKLM\Software\...\AppCompatFlags\InstalledSDB\{6713fee8-dd53-48f5-adc5-b5a0498bde48}: [DatabasePath] - & gt; C:\WINDOWS\AppPatch\Custom\{6713fee8-dd53-48f5-adc5-b5a0498bde48}.sdb
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] - & gt;
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter " C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter "
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Network PC Fax.lnk [2016-05-15]
ShortcutTarget: Samsung Network PC Fax.lnk - & gt; C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe (Samsung Electronics CO., LTD. - & gt; Samsung Electronics Co., Ltd.)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia & lt; ==== UWAGA
==================== Zaplanowane zadania (filtrowane) =============
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
Task: {016D9A75-3BB8-4D83-AE22-F2C9615F2583} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor = & gt; C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [979024 2019-02-13] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {07A1C8F9-8BFA-4448-8B97-B6E14CA1D550} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d - & gt; Brak pliku & lt; ==== UWAGA
Task: {097EA522-85AA-4D6E-BC1A-CA509D5CBA3F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d - & gt; Brak pliku & lt; ==== UWAGA
Task: {0AE924CF-BE62-4CD6-A78A-801FE5B18F66} - \Microsoft\Windows\UNP\RunCampaignManager - & gt; Brak pliku & lt; ==== UWAGA
Task: {0C49D435-A37F-4946-A3AC-0E650A650EAA} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {1078FA4B-4770-4595-A13F-18907A96493D} - System32\Tasks\CCleanerSkipUAC = & gt; C:\Program Files\CCleaner\CCleaner.exe [16585328 2019-08-15] (Piriform Software Ltd - & gt; Piriform Ltd)
Task: {19046D96-C96D-42F4-B1EF-BE2F22692D5A} - System32\Tasks\Microsoft\Office\Office Automatic Updates = & gt; C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [979024 2019-02-13] (Microsoft Corporation - & gt; Microsoft Corporation)
Task: {1C23B20C-44CD-4116-B6F0-BEEA387CF25E} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {22DB4338-1EF8-4E1F-A00E-063AED815D81} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime - & gt; Brak pliku & lt; ==== UWAGA
Task: {33BD7A64-287E-4FF3-913E-F01F05861600} - System32\Tasks\e-pity2017_kwiecien = & gt; C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe [1376224 2018-01-05] (e-file sp. z o.o. - & gt; e-file sp. z o.o. sp. k.)
Task: {342B59A3-7A53-47D8-9BE5-76DE9AF1C0B2} - System32\Tasks\e-pity2017_styczen = & gt; C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe [1376224 2018-01-05] (e-file sp. z o.o. - & gt; e-file sp. z o.o. sp. k.)
Task: {366DA8B9-09F6-4C87-8B76-B17491AFE4E7} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager = & gt; {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {386A8DBD-2730-43F7-82FF-E5D98E33851B} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent - & gt; Brak pliku & lt; ==== UWAGA
Task: {3FACCADD-CA18-4ADE-A221-A984F899942F} - System32\Tasks\Adobe Flash Player Updater = & gt; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-09-12] (Adobe Inc. - & gt; Adobe)
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration = & gt; {343D770D-7788-47C2-B62A-B7C4CED925CB}
Task: {4F84DF9A-11BE-46EA-A922-63C7035E5C61} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d - & gt; Brak pliku & lt; ==== UWAGA
Task: {54CEBE0B-7A67-4D39-B296-BA01A7F3C4D8} - System32\Tasks\Adobe Acrobat Update Task = & gt; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1236048 2019-07-24] (Adobe Inc. - & gt; Adobe Systems)
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls = & gt; {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {5B872B1F-D29E-4858-88E0-6B09EBAFD198} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig - & gt; Brak pliku & lt; ==== UWAGA
Task: {5CEEC73F-BA43-467B-902F-FAF6150C236A} - \Microsoft\Windows\Setup\gwx\launchtrayprocess - & gt; Brak pliku & lt; ==== UWAGA
Task: {6538BF7D-859D-4436-9A5C-1CE15AB002E5} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {6C78AFEA-34EC-4488-86B2-2D5140E7F699} - System32\Tasks\{C4A24D14-5F87-46C3-8CB2-91308E9B6188} = & gt; C:\Windows\system32\pcalua.exe -a " C:\Users\Iwona\Downloads\Mała Księgowość (BR) 2016.exe " -d C:\Users\Iwona\Downloads
Task: {71597319-4265-4D12-BA8B-6CFBA0E24013} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask = & gt; C:\WINDOWS\ehome\mcupdate.exe
Task: {7C05D95C-7694-4FE7-A7B8-D9A65B3F5EBB} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders = & gt; {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {7CA8E079-49B4-4076-B788-732DC1D823ED} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart = & gt; {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {7D18F72D-3E27-44DB-A762-4C36FC7DACB1} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask = & gt; C:\WINDOWS\ehome\mcupdate.exe
Task: {7F110E78-F3B7-4E07-897F-D4A70A47AD96} - \Microsoft\Windows\Setup\GWXTriggers\Logon-URT - & gt; Brak pliku & lt; ==== UWAGA
Task: {85839CC9-67CC-452A-95E4-67801521E06E} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate = & gt; C:\WINDOWS\ehome\mcupdate.exe
Task: {88D1CF81-888F-49BF-928C-010A04C3BA8E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {90639A78-C643-4ACC-B5CA-F90C705FFE5C} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {9373669E-8EF5-4ECC-AE3C-12DE58E05269} - System32\Tasks\Adobe Flash Player NPAPI Notifier = & gt; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_255_Plugin.exe [1457720 2019-09-12] (Adobe Inc. - & gt; Adobe)
Task: {96C3733D-B5CA-4AD8-ADFC-DFA4E4CE9D6E} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask = & gt; C:\WINDOWS\ehome\mcupdate.exe
Task: {96D90CA0-A649-4C1E-A355-02DBACAC2213} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry = & gt; C:\WINDOWS\ehome\MCUpdate.exe
Task: {971DF4F9-388B-43B3-8E1B-C7B751E83B97} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {9F000A7B-D685-4346-A54C-CFE1D59BB045} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart = & gt; C:\WINDOWS\ehome\ehrec.exe
Task: {A0BBE139-1779-4FCD-AE2F-5B3AFE54F0CD} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled = & gt; C:\WINDOWS\ehome\mcupdate.exe
Task: {A2EB0C37-833F-4366-A429-05FEC5DFC23C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {A9195FE7-EE3E-497D-A5AA-29539E990335} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent = & gt; {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {AF592375-EA3A-4837-AC84-EFF3FC789A4B} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor = & gt; {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {B22BAF58-7849-468F-B48A-1D19A15F42BC} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask = & gt; C:\WINDOWS\ehome\mcupdate.exe
Task: {B3556152-7F46-4462-9271-D5123FB18117} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B - & gt; Brak pliku & lt; ==== UWAGA
Task: {BA97A985-0CAD-49E1-A955-354B8FB9A703} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C5E3CF1B-36F7-46BD-9709-3E08BC11A978} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake = & gt; {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {C94513AF-4835-4F3C-BEBC-F28935AD7523} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance = & gt; C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe
Task: {C9C497B0-C6C7-4844-9B4D-01CC933CB691} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d - & gt; Brak pliku & lt; ==== UWAGA
Task: {CA660963-2177-485C-B7F8-D490392BB8D9} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D2C2FE5E-73B1-4F69-940D-4B53E15B36DF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d - & gt; Brak pliku & lt; ==== UWAGA
Task: {DE8EF444-1C5F-40CB-A70E-23D8E9F04575} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent - & gt; Brak pliku & lt; ==== UWAGA
Task: {E3E62406-B49B-4376-9130-9DE95D696EE6} - \OfficeSoftwareProtectionPlatform\SvcRestartTask - & gt; Brak pliku & lt; ==== UWAGA
Task: {E7C327ED-51F8-4DEC-9667-C3FBAE386315} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F2A71ED0-F292-4D3A-94FF-F48809778633} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F49F90BB-A29C-491B-91AB-D5611264CA06} - System32\Tasks\CCleaner Update = & gt; C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-08-15] (Piriform Software Ltd - & gt; Piriform Software Ltd)
Task: {F5B3768D-2F5F-4AA7-92D0-3995B8051EF9} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask = & gt; C:\WINDOWS\ehome\mcupdate.exe
Task: {F6D52F07-5702-4150-9019-EA4F679C9E56} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime - & gt; Brak pliku & lt; ==== UWAGA
Task: {F73018DC-61F3-4AF1-A704-084CD42BAF5C} - System32\Tasks\Java Platform SE Auto Updater = & gt; C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle America, Inc. - & gt; Oracle Corporation)
Task: {F8DD8142-9FE4-470A-9D50-59BA4C7DC0F4} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery = & gt; C:\WINDOWS\ehome\ehPrivJob.exe
(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
==================== Internet (filtrowane) ====================
(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 94.75.115.221
Tcpip\..\Interfaces\{0f31eb09-d362-44b4-bc87-737203108dfe}: [DhcpNameServer] 8.8.8.8 94.75.115.221
Tcpip\..\Interfaces\{83acaf13-e79f-426c-934e-cf453fb26dd7}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{f63097ee-3437-43ae-b6f1-47b231909f61}: [DhcpNameServer] 8.8.8.8 94.75.115.221
Internet Explorer:
==================
URLSearchHook: [S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415] UWAGA = & gt; Brak domyślnego URLSearchHook
BHO: Skype for Business Browser Helper - & gt; {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - & gt; C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2019-08-12] (Microsoft Corporation - & gt; Microsoft Corporation)
BHO: ExplorerBHO Class - & gt; {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - & gt; C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev - & gt; IvoSoft) [Brak podpisu cyfrowego]
BHO: Microsoft SkyDrive Pro Browser Helper - & gt; {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - & gt; C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2019-04-30] (Microsoft Corporation - & gt; Microsoft Corporation)
BHO: ClassicIEBHO Class - & gt; {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - & gt; C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2018-07-15] (Ivaylo Beltchev - & gt; IvoSoft) [Brak podpisu cyfrowego]
BHO-x32: ExplorerBHO Class - & gt; {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - & gt; C:\Program Files\Classic Shell\ClassicExplorer32.dll [2018-07-15] (Ivaylo Beltchev - & gt; IvoSoft) [Brak podpisu cyfrowego]
BHO-x32: Java(tm) Plug-In SSV Helper - & gt; {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - & gt; C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2018-01-11] (Oracle America, Inc. - & gt; Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - & gt; {DBC80044-A445-435b-BC74-9C25C1C588A9} - & gt; C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2018-01-11] (Oracle America, Inc. - & gt; Oracle Corporation)
BHO-x32: ClassicIEBHO Class - & gt; {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - & gt; C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2018-07-15] (Ivaylo Beltchev - & gt; IvoSoft) [Brak podpisu cyfrowego]
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev - & gt; IvoSoft) [Brak podpisu cyfrowego]
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2018-07-15] (Ivaylo Beltchev - & gt; IvoSoft) [Brak podpisu cyfrowego]