Ještě Fixlog při povoleném WMI:
Fix result of Farbar Recovery Scan Tool (x64) Version: 19-05.2019
Ran by mixxe (24-05-2019 20:43:26) Run:1
Running from C:\Users\mixxe\Desktop
Loaded Profiles: mixxe (Available Profiles: mixxe)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {0BA334AC-B359-44D0-93CC-DF512C92D52B} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1d4707b9967031a => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [157016 2018-10-30] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) <==== ATTENTION
Task: {2DC390CD-9906-47F4-83FA-2C22D12FF08D} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [157016 2018-10-30] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) <==== ATTENTION
Task: {EE34C5CB-F8A3-4CF3-942D-67E3B31B05CC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-07-27] (Google Inc -> Google Inc.)
Task: {FA350DBA-5EC4-4F59-B0FB-CF814248B51F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-07-27] (Google Inc -> Google Inc.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
SearchScopes: HKU\S-1-5-21-388966791-1049865966-1523499693-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL =
hxxp://www.google.com/search?q={searchTerms}
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] -
hxxp://clients2.google.com/service/update2/crxCHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] -
hxxps://clients2.google.com/service/update2/crxCHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] -
hxxp://clients2.google.com/service/update2/crxCHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] -
hxxps://clients2.google.com/service/update2/crxS3 cpuz147; \??\C:\WINDOWS\temp\cpuz147\cpuz147_x64.sys [X]
HKU\S-1-5-21-388966791-1049865966-1523499693-1001\...\MountPoints2: {5f8d65b8-c37d-11e8-a601-e0d55e620c95} - "E:\HiSuiteDownLoader.exe"
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
C:\WINDOWS\system32\SET5088.tmp
C:\WINDOWS\system32\Drivers\SET5068.tmp
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
FirewallRules: [TCP Query User{7E55BC94-9D98-4517-9AF5-7876AC069312}C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe No File
FirewallRules: [UDP Query User{BCC06D27-18D7-458D-84C6-F03A0118264A}C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe No File
FirewallRules: [TCP Query User{FA720952-DF4A-4B53-B39D-CFFD811D7A7C}D:\bf3\apex\r5apex.exe] => (Allow) D:\bf3\apex\r5apex.exe No File
FirewallRules: [UDP Query User{AD879BD8-388F-45B4-A301-D95EC7512460}D:\bf3\apex\r5apex.exe] => (Allow) D:\bf3\apex\r5apex.exe No File
FirewallRules: [TCP Query User{65C1559E-E996-46BD-B68A-0ED92B9E604C}C:\program files (x86)\common files\oracle\java\javapath_target_326875\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_326875\java.exe No File
FirewallRules: [UDP Query User{202730D3-5B87-4C55-AC91-4AD4542A28D8}C:\program files (x86)\common files\oracle\java\javapath_target_326875\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_326875\java.exe No File
FirewallRules: [TCP Query User{C96B2F65-C6DB-4C25-9B11-96F7A9F0DB74}C:\program files (x86)\common files\oracle\java\javapath_target_57450109\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_57450109\java.exe No File
FirewallRules: [UDP Query User{4B60E7F5-B71C-4295-BEDA-6B73DE2B4304}C:\program files (x86)\common files\oracle\java\javapath_target_57450109\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_57450109\java.exe No File
EmptyTemp:
End
*****************
Restore point was successfully created.
Processes closed successfully.
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0BA334AC-B359-44D0-93CC-DF512C92D52B}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0BA334AC-B359-44D0-93CC-DF512C92D52B}" => removed successfully
C:\WINDOWS\System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1d4707b9967031a => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS\ASUSUpdateTaskMachineCore1d4707b9967031a" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2DC390CD-9906-47F4-83FA-2C22D12FF08D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2DC390CD-9906-47F4-83FA-2C22D12FF08D}" => removed successfully
C:\WINDOWS\System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS\ASUSUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EE34C5CB-F8A3-4CF3-942D-67E3B31B05CC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EE34C5CB-F8A3-4CF3-942D-67E3B31B05CC}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{FA350DBA-5EC4-4F59-B0FB-CF814248B51F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA350DBA-5EC4-4F59-B0FB-CF814248B51F}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => moved successfully
HKU\S-1-5-21-388966791-1049865966-1523499693-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} => removed successfully
HKLM\Software\Classes\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => not found
HKLM\SOFTWARE\Google\Chrome\Extensions\fheoggkfdfchfphceeifdbepaooicaho => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\fheoggkfdfchfphceeifdbepaooicaho => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => removed successfully
HKLM\System\CurrentControlSet\Services\cpuz147 => removed successfully
cpuz147 => service removed successfully
HKU\S-1-5-21-388966791-1049865966-1523499693-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5f8d65b8-c37d-11e8-a601-e0d55e620c95} => removed successfully
HKLM\Software\Classes\CLSID\{5f8d65b8-c37d-11e8-a601-e0d55e620c95} => not found
HKLM\SOFTWARE\Policies\Mozilla => not found
"C:\WINDOWS\system32\SET5088.tmp" => not found
"C:\WINDOWS\system32\Drivers\SET5068.tmp" => not found
"C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7E55BC94-9D98-4517-9AF5-7876AC069312}C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BCC06D27-18D7-458D-84C6-F03A0118264A}C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FA720952-DF4A-4B53-B39D-CFFD811D7A7C}D:\bf3\apex\r5apex.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AD879BD8-388F-45B4-A301-D95EC7512460}D:\bf3\apex\r5apex.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{65C1559E-E996-46BD-B68A-0ED92B9E604C}C:\program files (x86)\common files\oracle\java\javapath_target_326875\java.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{202730D3-5B87-4C55-AC91-4AD4542A28D8}C:\program files (x86)\common files\oracle\java\javapath_target_326875\java.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{C96B2F65-C6DB-4C25-9B11-96F7A9F0DB74}C:\program files (x86)\common files\oracle\java\javapath_target_57450109\java.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{4B60E7F5-B71C-4295-BEDA-6B73DE2B4304}C:\program files (x86)\common files\oracle\java\javapath_target_57450109\java.exe" => removed successfully
=========== EmptyTemp: ==========
BITS transfer queue => 10248192 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 27658248 B
Java, Flash, Steam htmlcache => 37757955 B
Windows/system/drivers => 873726 B
Edge => 6320 B
Chrome => 256007652 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 3636 B
LocalService => 0 B
NetworkService => 9652 B
NetworkService => 0 B
mixxe => 22685776 B
RecycleBin => 213775 B
EmptyTemp: => 339 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 20:44:00 ====