Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 19.06.2018 Uruchomiony przez User (19-06-2018 21:29:02) Run:4 Uruchomiony z C:\Users\User\Desktop Załadowane profile: User (Dostępne profile: User) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: HKLM\...\.scr: => <==== UWAGA HKU\S-1-5-21-4155290210-3035117307-2680524550-1001\...\MountPoints2: {3153fdce-0732-11e8-b001-6014b3b092ea} - "H:\Install.exe" HKU\S-1-5-21-4155290210-3035117307-2680524550-1001\...\MountPoints2: {fff2b269-05d7-11e8-afff-6014b3b092ea} - "E:\setup.exe" HKU\S-1-5-21-4155290210-3035117307-2680524550-1001\...\Winlogon: [Shell] C:\Windows\System32\cmd.exe [272896 2017-09-29] (Microsoft Corporation) <==== UWAGA HKU\S-1-5-21-4155290210-3035117307-2680524550-1001\...\Command Processor: @mode 20,5 & tasklist /FI "IMAGENAME eq SoundMixer.exe" 2>NUL | find /I /N "SoundMixer.exe">NUL && exit & if exist "C:\Users\User\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe" ( start /MIN "" "C:\Users\User\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe" & tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) else ( tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) <==== UWAGA C:\Users\User\AppData\Roaming\Microsoft\SoundMixer GroupPolicy: Ograniczenia ? <==== UWAGA DeleteKey: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains Hosts: Powershell: wevtutil el | Foreach-Object {wevtutil cl "$_"} EmptyTemp: ***************** Procesy zostały pomyślnie zamknięte. HKLM\Software\Classes\.scr\\Default => Wartość pomyślnie przywrócono "HKU\S-1-5-21-4155290210-3035117307-2680524550-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{3153fdce-0732-11e8-b001-6014b3b092ea}" => pomyślnie usunięto HKLM\Software\Classes\CLSID\{3153fdce-0732-11e8-b001-6014b3b092ea} => nie znaleziono "HKU\S-1-5-21-4155290210-3035117307-2680524550-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{fff2b269-05d7-11e8-afff-6014b3b092ea}" => pomyślnie usunięto HKLM\Software\Classes\CLSID\{fff2b269-05d7-11e8-afff-6014b3b092ea} => nie znaleziono "HKU\S-1-5-21-4155290210-3035117307-2680524550-1001\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell" => pomyślnie usunięto "HKU\S-1-5-21-4155290210-3035117307-2680524550-1001\Software\Microsoft\Command Processor\\AutoRun" => pomyślnie usunięto C:\Users\User\AppData\Roaming\Microsoft\SoundMixer => pomyślnie przeniesiono C:\Windows\system32\GroupPolicy\Machine => pomyślnie przeniesiono C:\Windows\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono C:\Windows\SysWOW64\GroupPolicy\GPT.ini => pomyślnie przeniesiono "HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains" => pomyślnie usunięto C:\Windows\System32\Drivers\etc\hosts => pomyślnie przeniesiono Hosts pomyślnie przywrócono. ========= wevtutil el | Foreach-Object {wevtutil cl "$_"} ========= ========= Koniec Powershell: ========= =========== EmptyTemp: ========== BITS transfer queue => 10772480 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 25680275 B Java, Flash, Steam htmlcache => 988 B Windows/system/drivers => 290276 B Edge => 15360 B Chrome => 0 B Firefox => 383060780 B Opera => 201956 B Temp, IE cache, history, cookies, recent: Default => 0 B Users => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 6594 B NetworkService => 0 B User => 10920221 B RecycleBin => 2416863 B EmptyTemp: => 413.3 MB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 21:31:32 ====