Rezultat naprawy Farbar Recovery Scan Tool (x86) Wersja:09-12-2015 Uruchomiony przez Jacek (2015-12-10 20:57:12) Run:2 Uruchomiony z C:\Users\Jacek\Desktop ZaÅ‚adowane profile: Jacek (DostÄ™pne profile: Jacek) Tryb startu: Normal ============================================== fixlist - zawartość: ***************** Task: {8A20BDBA-6D36-47AD-A57B-559C1F071667} - System32\Tasks\{00313BA0-A4E9-49BB-8C9B-778A52B84981} => pcalua.exe -a "C:\Program Files\F-Secure\Uninstall\fsuninst.exe" -c /UninstRegKey:"F-Secure Anti-Virus" BHO: Browsing Protection Class -> {C6867EB7-8350-4856-877F-93CF8AE3DC9C} -> C:\Program Files\F-Secure\NRS\iescript\baselitmus.dll => Brak pliku Toolbar: HKLM - Browsing Protection Toolbar - {265EEE8E-3228-44D3-AEA5-F7FDF5860049} - C:\Program Files\F-Secure\NRS\iescript\baselitmus.dll Brak pliku CMD: netsh advfirewall reset Reg: reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /f Reg: reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /ve /t REG_SZ /d Bing /f Reg: reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v URL /t REG_SZ /d "http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC" /f Reg: reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v DisplayName /t REG_SZ /d "@ieframe.dll,-12512" /f Reg: reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{F4B9AB2B-ED96-4444-B391-1E0DA906E0FB}" /f RemoveDirectory: C:\FRST\Quarantine RemoveDirectory: C:\ProgramData\Adobe RemoveDirectory: C:\ProgramData\F-Secure RemoveDirectory: C:\ProgramData\fssg RemoveDirectory: C:\Users\Jacek\AppData\Local\Adobe RemoveDirectory: C:\Users\Jacek\Desktop\Stare dane programu Firefox CMD: del /q C:\Windows\system32\Drivers\fsbts.sy ***************** "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8A20BDBA-6D36-47AD-A57B-559C1F071667}" => klucz pomyÅ›lnie usuniÄ™to "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8A20BDBA-6D36-47AD-A57B-559C1F071667}" => klucz pomyÅ›lnie usuniÄ™to C:\Windows\System32\Tasks\{00313BA0-A4E9-49BB-8C9B-778A52B84981} => pomyÅ›lnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{00313BA0-A4E9-49BB-8C9B-778A52B84981}" => klucz pomyÅ›lnie usuniÄ™to HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C6867EB7-8350-4856-877F-93CF8AE3DC9C} => klucz nie znaleziono. HKCR\CLSID\{C6867EB7-8350-4856-877F-93CF8AE3DC9C} => klucz nie znaleziono. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{265EEE8E-3228-44D3-AEA5-F7FDF5860049} => Wartość nie znaleziono. HKCR\CLSID\{265EEE8E-3228-44D3-AEA5-F7FDF5860049} => klucz nie znaleziono. ========= netsh advfirewall reset ========= Ok. ========= Koniec CMD: ========= ========= reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /ve /t REG_SZ /d Bing /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v URL /t REG_SZ /d "http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v DisplayName /t REG_SZ /d "@ieframe.dll,-12512" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg delete "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{F4B9AB2B-ED96-4444-B391-1E0DA906E0FB}" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= "C:\FRST\Quarantine" => pomyÅ›lnie usuniÄ™to. "C:\ProgramData\Adobe" => pomyÅ›lnie usuniÄ™to. "C:\ProgramData\F-Secure" => pomyÅ›lnie usuniÄ™to. "C:\ProgramData\fssg" => pomyÅ›lnie usuniÄ™to. "C:\Users\Jacek\AppData\Local\Adobe" => pomyÅ›lnie usuniÄ™to. "C:\Users\Jacek\Desktop\Stare dane programu Firefox" => pomyÅ›lnie usuniÄ™to. ========= del /q C:\Windows\system32\Drivers\fsbts.sy ========= Nie mo¾na odnale«† C:\Windows\system32\Drivers\fsbts.sy. ========= Koniec CMD: ========= ==== Koniec Fixlog 20:57:28 ====