Fix result of Farbar Recovery Scan Tool (x64) Version: 21.07.2018
Ran by Uzivatel (29-07-2018 20:30:47) Run:2
Running from C:\Users\Uzivatel\Desktop
Loaded Profiles: Uzivatel (Available Profiles: Uzivatel)
Boot Mode: Safe Mode (with Networking)
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
File: C:\Users\Uzivatel\Ieuunekrioy.exe
File: C:\Program Files (x86)\Common Files\LaaSxsu.exe
File: C:\Users\Uzivatel\AppData\Roaming\BwYLTEF.exe
2017-09-29 15:42 - 2017-09-29 15:42 - 000174592 ____N (Microsoft Corporation) C:\Users\Uzivatel\Ieuunekrioy.exe
2017-09-29 15:42 - 2017-09-29 15:42 - 000059904 ____N (Microsoft Corporation) C:\Program Files (x86)\Common Files\LaaSxsu.exe
2017-09-29 15:42 - 2017-09-29 15:42 - 000059904 ____N (Microsoft Corporation) C:\Users\Uzivatel\AppData\Roaming\BwYLTEF.exe
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
Error: Restore point can only be created in normal mode.
========================= File: C:\Users\Uzivatel\Ieuunekrioy.exe ========================
C:\Users\Uzivatel\Ieuunekrioy.exe
File is digitally signed
MD5: C2E0CC069248551E1E7CC66932227382
Creation and modification date: 2017-09-29 15:42 - 2017-09-29 15:42
Size: 000174592
Attributes: ----N
Company Name: Microsoft Corporation
Internal Name: bitsadmin.exe
Original Name: bitsadmin.exe
Product: Microsoft® Windows® Operating System
Description: BITS administration utility
File Version: 7.8.16299.15 (WinBuild.160101.0800)
Product Version: 7.8.16299.15
Copyright: © Microsoft Corporation. All rights reserved.
VirusTotal:
https://www.virustotal.com/file/1479b1f ... 532849516/
====== End of File: ======
========================= File: C:\Program Files (x86)\Common Files\LaaSxsu.exe ========================
C:\Program Files (x86)\Common Files\LaaSxsu.exe
File is digitally signed
MD5: 7DBC24D758B0A77F6FE7E96E236BBE2B
Creation and modification date: 2017-09-29 15:42 - 2017-09-29 15:42
Size: 000059904
Attributes: ----N
Company Name: Microsoft Corporation
Internal Name: msiexec
Original Name: msiexec.exe
Product: Windows Installer - Unicode
Description: Windows® installer
File Version: 5.0.16299.15 (WinBuild.160101.0800)
Product Version: 5.0.16299.15
Copyright: © Microsoft Corporation. All rights reserved.
VirusTotal:
https://www.virustotal.com/file/8761879 ... 532849722/
====== End of File: ======
========================= File: C:\Users\Uzivatel\AppData\Roaming\BwYLTEF.exe ========================
C:\Users\Uzivatel\AppData\Roaming\BwYLTEF.exe
File is digitally signed
MD5: 7DBC24D758B0A77F6FE7E96E236BBE2B
Creation and modification date: 2017-09-29 15:42 - 2017-09-29 15:42
Size: 000059904
Attributes: ----N
Company Name: Microsoft Corporation
Internal Name: msiexec
Original Name: msiexec.exe
Product: Windows Installer - Unicode
Description: Windows® installer
File Version: 5.0.16299.15 (WinBuild.160101.0800)
Product Version: 5.0.16299.15
Copyright: © Microsoft Corporation. All rights reserved.
VirusTotal:
https://www.virustotal.com/file/8761879 ... 532849722/
====== End of File: ======
C:\Users\Uzivatel\Ieuunekrioy.exe => moved successfully
C:\Program Files (x86)\Common Files\LaaSxsu.exe => moved successfully
C:\Users\Uzivatel\AppData\Roaming\BwYLTEF.exe => moved successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
=========== EmptyTemp: ==========
BITS transfer queue => 11034624 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 10559242 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 109523 B
Edge => 0 B
Chrome => 123019059 B
Firefox => 24410971 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 4420 B
Uzivatel => 5325971 B
RecycleBin => 4238288579 B
EmptyTemp: => 4.1 GB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 20:31:38 ====