Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 19-10-2020 Uruchomiony przez dulte (23-10-2020 15:16:17) Run:2 Uruchomiony z C:\Users\dulte\Downloads\FRST Załadowane profile: dulte Tryb startu: Normal ============================================== fixlist - zawartość: ***************** (Microsoft Corporation) C:\Windows\System32\wscript.exe (Microsoft Corporation) C:\Windows\System32\wscript.exe HKLM\...\Run: [tmp4DF1] - C:\Users\dulte\AppData\Local\Temp\tmp4DF1.tmp.vbs [156060 2014-02-06] () HKU\S-1-5-21-263107825-2801771057-2943010423-1001\...\Run: [tmpD0A8] - C:\Users\dulte\AppData\Roaming\tmpD0A8.tmp.update.vbs [281787 2014-01-16] () HKU\S-1-5-21-263107825-2801771057-2943010423-1001\...\Run: [oloixtuelf] - C:\Users\dulte\AppData\Local\Temp\oloixtuelf.Firfox.vbs [653150 2014-02-06] () HKU\S-1-5-21-263107825-2801771057-2943010423-1001\...\Run: [tmp4DF1] - C:\Users\dulte\AppData\Local\Temp\tmp4DF1.tmp.vbs [156060 2014-02-06] () HKU\S-1-5-21-263107825-2801771057-2943010423-1001\...\Run: [DVDclone] - C:\Users\dulte\AppData\Local\Temp\DVDclone.vbs [653150 2014-02-06] () Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DVDclone.vbs () Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Google () Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Link.vbs () Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\oloixtuelf.Firfox.vbs () Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmp4DF1.tmp.vbs () Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmpD0A8.tmp.update.vbs () StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Users\dulte\AppData\Local\Google C:\Users\dulte\AppData\Roaming\tmpD0A8.tmp.update.vbs C:\Users\dulte\Downloads\Total-Commander(12316).exe Reg: reg delete HKLM\SOFTWARE\Wow6432Node\Google /f CMD: netsh advfirewall reset ***************** [15396] C:\Windows\System32\wscript.exe => proces pomyślnie zamknięty. C:\Windows\System32\wscript.exe => Nie odnaleziono uruchomionego procesu "HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\HKLM\...\Run: [tmp4DF1] - C:\Users\dulte\AppData\Local\Temp\tmp4DF1.tmp.vbs [156060 2014-02-06] ()" => nie znaleziono "HKU\S-1-5-21-263107825-2801771057-2943010423-1001\Software\Microsoft\Windows\CurrentVersion\Run\\HKU\S-1-5-21-263107825-2801771057-2943010423-1001\...\Run: [tmpD0A8] - C:\Users\dulte\AppData\Roaming\tmpD0A8.tmp.update.vbs [281787 2014-01-16] ()" => nie znaleziono "HKU\S-1-5-21-263107825-2801771057-2943010423-1001\Software\Microsoft\Windows\CurrentVersion\Run\\HKU\S-1-5-21-263107825-2801771057-2943010423-1001\...\Run: [oloixtuelf] - C:\Users\dulte\AppData\Local\Temp\oloixtuelf.Firfox.vbs [653150 2014-02-06] ()" => nie znaleziono "HKU\S-1-5-21-263107825-2801771057-2943010423-1001\Software\Microsoft\Windows\CurrentVersion\Run\\HKU\S-1-5-21-263107825-2801771057-2943010423-1001\...\Run: [tmp4DF1] - C:\Users\dulte\AppData\Local\Temp\tmp4DF1.tmp.vbs [156060 2014-02-06] ()" => nie znaleziono "HKU\S-1-5-21-263107825-2801771057-2943010423-1001\Software\Microsoft\Windows\CurrentVersion\Run\\HKU\S-1-5-21-263107825-2801771057-2943010423-1001\...\Run: [DVDclone] - C:\Users\dulte\AppData\Local\Temp\DVDclone.vbs [653150 2014-02-06] ()" => nie znaleziono "Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DVDclone.vbs ()" => nie znaleziono "Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Google ()" => nie znaleziono "Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Link.vbs ()" => nie znaleziono "Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\oloixtuelf.Firfox.vbs ()" => nie znaleziono "Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmp4DF1.tmp.vbs ()" => nie znaleziono "Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmpD0A8.tmp.update.vbs ()" => nie znaleziono HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\"Default"="C:\Program Files\Internet Explorer\iexplore.exe" => Wartość pomyślnie przywrócono C:\Users\dulte\AppData\Local\Google => pomyślnie przeniesiono "C:\Users\dulte\AppData\Roaming\tmpD0A8.tmp.update.vbs" => nie znaleziono "C:\Users\dulte\Downloads\Total-Commander(12316).exe" => nie znaleziono ========= reg delete HKLM\SOFTWARE\Wow6432Node\Google /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= netsh advfirewall reset ========= Ok. ========= Koniec CMD: ========= ==== Koniec Fixlog 15:16:28 ====