Format du document : text/plain
Prévisualisation
Fix result of Farbar Recovery Scan Tool (x64) Version: 17-09-2017 01
Ran by Adrian (19-09-2017 21:53:02) Run:1
Running from C:\Users\Adrian\Desktop
Loaded Profiles: Adrian (Available Profiles: Adrian & Guest)
Boot Mode: Normal
==============================================
fixlist content:
*****************
CreateRestorePoint:
CloseProcesses:
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\...\MountPoints2: {4fe6a65d-9be5-11e5-b871-ecf4bb0c7e4f} - E:\autorun.exe
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\...\MountPoints2: {5c2ccd63-3cd8-11e4-be48-f82fa8dc94ee} - E:\AutoRun.exe
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\...\MountPoints2: {671b4005-fdf6-11e6-b49a-ecf4bb0c7e4f} - E:\Startme.exe
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\...\MountPoints2: {6ee1dae3-3cb5-11e4-a984-f82fa8dc94ee} - E:\AutoRun.exe
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\...\MountPoints2: {6ee1daf3-3cb5-11e4-a984-f82fa8dc94ee} - E:\AutoRun.exe
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\...\MountPoints2: {89376eda-793e-11e4-8c8b-f82fa8dc94ee} - E:\AutoRun.exe
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\...\MountPoints2: {9623956b-3b59-11e4-9af1-f82fa8dc94ee} - E:\AutoRun.exe
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\...\MountPoints2: {c17db7f3-ef63-11e4-9037-ecf4bb0c7e4f} - E:\autorun.exe
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\...\MountPoints2: {d4ae93aa-ae22-11e5-897c-ecf4bb0c7e4f} - F:\autorun.exe
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\...\MountPoints2: {e5909313-f7c6-11e4-aa6e-ecf4bb0c7e4f} - E:\Startme.exe
S3 EsgScanner; system32\DRIVERS\EsgScanner.sys [X]
S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [X]
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S1 LanmaMaster; \??\C:\Windows\system32\drivers\lanmamaster.sys [X]
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - \Microsoft\Windows\WindowsBackup\ConfigNotification -> No File
Task: {6F489C2D-1E62-4912-8D0E-90EC5BE13B67} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline -> No File
Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - \Microsoft\Windows\Application Experience\AitAgent -> No File
Task: {C32CCDB9-DFFA-4E56-9CD2-8E1E230EF91E} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask -> No File
Task: {CEE64558-E1A7-4D9D-80A7-2001912BE5B5} - \Microsoft\Windows\MemoryDiagnostic\CorruptionDetector -> No File
Task: {FA2BC0A6-8D4B-458A-85C8-2B8C72487513} - \Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector -> No File
EmptyTemp:
*****************
Restore point was successfully created.
Processes closed successfully.
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp => key removed successfully
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4fe6a65d-9be5-11e5-b871-ecf4bb0c7e4f} => key removed successfully
HKLM\Software\Classes\CLSID\{4fe6a65d-9be5-11e5-b871-ecf4bb0c7e4f} => key not found.
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5c2ccd63-3cd8-11e4-be48-f82fa8dc94ee} => key removed successfully
HKLM\Software\Classes\CLSID\{5c2ccd63-3cd8-11e4-be48-f82fa8dc94ee} => key not found.
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{671b4005-fdf6-11e6-b49a-ecf4bb0c7e4f} => key removed successfully
HKLM\Software\Classes\CLSID\{671b4005-fdf6-11e6-b49a-ecf4bb0c7e4f} => key not found.
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6ee1dae3-3cb5-11e4-a984-f82fa8dc94ee} => key removed successfully
HKLM\Software\Classes\CLSID\{6ee1dae3-3cb5-11e4-a984-f82fa8dc94ee} => key not found.
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6ee1daf3-3cb5-11e4-a984-f82fa8dc94ee} => key removed successfully
HKLM\Software\Classes\CLSID\{6ee1daf3-3cb5-11e4-a984-f82fa8dc94ee} => key not found.
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{89376eda-793e-11e4-8c8b-f82fa8dc94ee} => key removed successfully
HKLM\Software\Classes\CLSID\{89376eda-793e-11e4-8c8b-f82fa8dc94ee} => key not found.
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9623956b-3b59-11e4-9af1-f82fa8dc94ee} => key removed successfully
HKLM\Software\Classes\CLSID\{9623956b-3b59-11e4-9af1-f82fa8dc94ee} => key not found.
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c17db7f3-ef63-11e4-9037-ecf4bb0c7e4f} => key removed successfully
HKLM\Software\Classes\CLSID\{c17db7f3-ef63-11e4-9037-ecf4bb0c7e4f} => key not found.
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d4ae93aa-ae22-11e5-897c-ecf4bb0c7e4f} => key removed successfully
HKLM\Software\Classes\CLSID\{d4ae93aa-ae22-11e5-897c-ecf4bb0c7e4f} => key not found.
HKU\S-1-5-21-4055709356-1465872850-4113285666-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e5909313-f7c6-11e4-aa6e-ecf4bb0c7e4f} => key removed successfully
HKLM\Software\Classes\CLSID\{e5909313-f7c6-11e4-aa6e-ecf4bb0c7e4f} => key not found.
HKLM\System\CurrentControlSet\Services\EsgScanner => key removed successfully
EsgScanner => service removed successfully
HKLM\System\CurrentControlSet\Services\ewusbnet => key removed successfully
ewusbnet => service removed successfully
HKLM\System\CurrentControlSet\Services\ew_hwusbdev => key removed successfully
ew_hwusbdev => service removed successfully
HKLM\System\CurrentControlSet\Services\huawei_enumerator => key removed successfully
huawei_enumerator => service removed successfully
HKLM\System\CurrentControlSet\Services\hwdatacard => key removed successfully
hwdatacard => service removed successfully
HKLM\System\CurrentControlSet\Services\LanmaMaster => key removed successfully
LanmaMaster => service removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast => key removed successfully
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found.
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avast => key removed successfully
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsBackup\ConfigNotification => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6F489C2D-1E62-4912-8D0E-90EC5BE13B67} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6F489C2D-1E62-4912-8D0E-90EC5BE13B67} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AC4E5ACF-89F7-4220-BA21-81EE183975E2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC4E5ACF-89F7-4220-BA21-81EE183975E2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\AitAgent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C32CCDB9-DFFA-4E56-9CD2-8E1E230EF91E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C32CCDB9-DFFA-4E56-9CD2-8E1E230EF91E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Activation Technologies\ValidationTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CEE64558-E1A7-4D9D-80A7-2001912BE5B5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CEE64558-E1A7-4D9D-80A7-2001912BE5B5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MemoryDiagnostic\CorruptionDetector => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FA2BC0A6-8D4B-458A-85C8-2B8C72487513} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA2BC0A6-8D4B-458A-85C8-2B8C72487513} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector => key removed successfully
=========== EmptyTemp: ==========
BITS transfer queue => 12582912 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 51587062 B
Java, Flash, Steam htmlcache => 550 B
Windows/system/drivers => 17129512 B
Edge => 0 B
Chrome => 383088301 B
Firefox => 296046070 B
Opera => 30719176 B
Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 0 B
systemprofile32 => 2500407 B
LocalService => 0 B
NetworkService => 0 B
Adrian => 190269776 B
Guest => 432 B
RecycleBin => 118860 B
EmptyTemp: => 938.5 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 23:30:56 ====