Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 18-09-2016 Uruchomiony przez Piotr Chmielewski (20-09-2016 00:13:50) Run:1 Uruchomiony z C:\Users\Piotr Chmielewski\Downloads Załadowane profile: Piotr Chmielewski (Dostępne profile: Piotr Chmielewski) Tryb startu: Safe Mode (minimal) ============================================== fixlist - zawartość: ***************** CloseProcesses: (Microsoft Corporation) C:\Windows\explorer.exe R1 UCGuard; C:\Windows\System32\DRIVERS\ucguard.sys [81792 2016-08-29] (Huorong Borui (Beijing) Technology Co., Ltd.) <==== UWAGA R2 Hkhlp; C:\Program Files (x86)\Common Files\Apps\Hkhlp.dll [280576 2016-09-05] () [Brak podpisu cyfrowego] R2 MeneghtNodifier; C:\Program Files (x86)\Lopchchatught\stofigegrinespCloud.dll [297984 2016-09-16] () [Brak podpisu cyfrowego] S2 DecacultSystem; C:\Program Files (x86)\Sherbaly\BpsCloud.dll [X] NETSVCx32: HpSvc -> Brak ścieżki do pliku. Task: {01A14B24-F120-41CA-B7A0-CC27C3DB6613} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe Task: {0968DE7E-E94F-4138-9D1D-4A6FF091340F} - \Microsoft\Windows\Setup\gwx\rundetector -> Brak pliku <==== UWAGA Task: {1967334D-D2D0-432D-8E5F-D17EB13F8548} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Brak pliku <==== UWAGA Task: {1C4E1A54-FE3C-4683-9E5A-C2E6D61662CA} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA Task: {277FE09A-EB2B-4FA8-8846-1B658F2BA66F} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA Task: {5452B4A0-538A-44CD-8E9B-72C595BD9511} - \CCleanerSkipUAC -> Brak pliku <==== UWAGA Task: {5512A6BE-C150-44AC-8ED0-472B497F27C8} - System32\Tasks\UCBrowserUpdaterCore => C:\Program Files (x86)\UCBrowser\Application\update_task.exe [2016-08-29] (UCWeb Inc) <==== UWAGA Task: {62C68AA6-2DFC-4D73-BE4F-F12467A75D83} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA Task: {6CE51701-C90F-49AC-ABFD-CDE9248E7636} - System32\Tasks\UCBrowserUpdater => C:\Program Files (x86)\UCBrowser\Application\update_task.exe [2016-08-29] (UCWeb Inc) <==== UWAGA Task: {879CC183-9379-4D67-8FF9-51243ED2A59B} - \Desk 365 RunAsStdUser -> Brak pliku <==== UWAGA Task: {908BEF62-ED7D-475D-89CB-AE349A9EDE44} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA Task: {91CA4E88-9DA3-41B1-A59E-7151F60B12D2} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA Task: {A1FA585C-E739-41C6-B61B-56D251B6C847} - System32\Tasks\Pholdom Center => C:\Program Files (x86)\Mzityatupile\kivaty.exe [2016-09-16] (Kunshan Aunbox software co.,Ltd) Task: {AAEDF554-139A-4F61-A71C-E7362BC60DC8} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA Task: {B01E74A3-318B-4946-879F-6114A7CF011A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA Task: {B1CB2E76-2B1D-46AA-9D71-62ABFA317E4A} - System32\Tasks\Decacult System => C:\Program Files (x86)\Sherbaly\clebaly.exe Task: {B363F06A-EBFE-42AC-BD25-9CC618FAB438} - System32\Tasks\Meneght Nodifier => C:\Program Files (x86)\Lopchchatught\arevly.exe [2016-09-16] (CHENGDU YIWO Tech Development Co., Ltd) Task: {B77A6898-7462-480E-9C79-EA1985D21B3F} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Brak pliku <==== UWAGA Task: {BAED9D64-73CF-405F-9B32-1B801B9E9E42} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA Task: {D1312E44-82F6-4346-9951-6940B62D30C5} - System32\Tasks\Sony Corporation\VAIO Care\UpdateContacts => C:\ProgramData\Sony Corporation\VAIO Care\UpdateContacts.exe Task: {E19F7C4C-3EAD-4C18-B10D-E2B67D99675E} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Brak pliku <==== UWAGA Task: {EF0C2853-286B-4AA6-9872-DAB87B70F37B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA Task: {F98E4113-5B15-47E0-82C7-6FFA0CEEE3E5} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA Task: {FC451B58-0448-485B-8DD8-1DB4FD353E0F} - System32\Tasks\{73A0484E-0076-4985-A4B3-92478C3D29FA} => pcalua.exe -a D:\autorun.exe -d D:\ Task: C:\WINDOWS\Tasks\UCBrowserUpdater.job => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== UWAGA Task: C:\WINDOWS\Tasks\UCBrowserUpdaterCore.job => C:\Program Files (x86)\UCBrowser\Application\update_task.exe <==== UWAGA ShellIconOverlayIdentifiers: [KzShlobj] -> {AAA0C5B8-933F-4200-93AD-B143D7FFF9F2} => C:\Program Files\żěŃą\X64\KZipShell.dll [2016-09-16] () HKLM\...\Run: [BtvStack] => "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" HKLM\...\Run: [BtTray] => "C:\Program Files (x86)\Bluetooth Suite\BtTray.exe" HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [sun21] => [X] HKLM-x32\...\Run: [win_en_77] => [X] HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\...\Run: [] => 0 HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\...\Run: [svchost0] => "C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe"\UUC0789.exe HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\...\Run: [OZIDFASLW3] => "C:\Program Files (x86)\DPower\POFDRUJ3WS.exe" HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\...\Policies\Explorer: [] HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\...\StartupApproved\Run: => "Spotify" WMI_ActiveScriptEventConsumer_ASEC: <===== UWAGA ShortcutWithArgument: C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\PIOTRC~1\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://yeabests.cc ShortcutWithArgument: C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://yeabests.cc ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\PIOTRC~1\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://yeabests.cc ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --load-extension="C:\Users\PIOTRC~1\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" hxxp://yeabests.cc GroupPolicy: Ograniczenia - Chrome <======= UWAGA HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\Software\Microsoft\Internet Explorer\Main,Start Page = SearchScopes: HKU\S-1-5-21-2351160239-3609625897-3084254237-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Youtube AdBlock -> {95E84BD3-3604-4AAC-B2CA-D9AC3E55B64B} -> Brak pliku StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.coldsearch.com/?uid=807f9e37-daae-4542-b490-1e01b500b667 FirewallRules: [TCP Query User{B2F6FFB8-AB39-468F-AA6F-A2FB5D56F9A5}C:\users\piotr chmielewski\appdata\local\temp\is-l3mrf.tmp\download\minithunderplatform.exe] => (Block) C:\users\piotr chmielewski\appdata\local\temp\is-l3mrf.tmp\download\minithunderplatform.exe FirewallRules: [UDP Query User{E133170E-7300-4977-82C6-7D3593C50C2A}C:\users\piotr chmielewski\appdata\local\temp\is-l3mrf.tmp\download\minithunderplatform.exe] => (Block) C:\users\piotr chmielewski\appdata\local\temp\is-l3mrf.tmp\download\minithunderplatform.exe FirewallRules: [{156C7830-4177-49B9-BE18-3940AA052C34}] => (Allow) C:\Users\Piotr Chmielewski\AppData\Local\Temp\is-L3MRF.tmp\download\MiniThunderPlatform.exe FirewallRules: [{F36B2E05-77F9-49B6-9ACB-5C9253B34AA7}] => (Allow) C:\Users\Piotr Chmielewski\AppData\Local\Temp\00002844\inst_buychannel_37.exe FirewallRules: [{19583E26-C47D-4848-A033-DF1F0828A457}] => (Allow) C:\Users\Piotr Chmielewski\AppData\Local\Temp\00002844\inst_buychannel_37.exe FirewallRules: [{DFC54A4F-9636-4840-AFB4-54F9353529A8}] => (Allow) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe FirewallRules: [{73A686A1-DB95-4E5A-8E47-A1EF4A7D7F4A}] => (Allow) C:\Program Files (x86)\LuDaShi\ComputerZTray.exe FirewallRules: [{60993930-37A3-4E95-B25D-4C0660E767AE}] => (Allow) C:\Program Files (x86)\LuDaShi\ComputerZTray.exe FirewallRules: [{2E434BA0-6A5C-4778-A6DE-0FF5698255E6}] => (Allow) C:\Program Files (x86)\LuDaShi\Utils\mininews.exe FirewallRules: [{E4E6F595-8207-4AF3-877A-AC2314A3CA98}] => (Allow) C:\Program Files (x86)\LuDaShi\Utils\mininews.exe FirewallRules: [{14C5200E-3AE9-447A-ADF2-63B962754D94}] => (Allow) C:\Program Files (x86)\GreatMaker\MaohaWiFi\MaohaWifiSvr.exe Reg: reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /f Reg: reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /ve /t REG_SZ /d Bing /f Reg: reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v URL /t REG_SZ /d "http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC" /f Reg: reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v DisplayName /t REG_SZ /d "@ieframe.dll,-12512" /f Reg: reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /f Reg: reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /ve /t REG_SZ /d Bing /f Reg: reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v URL /t REG_SZ /d "http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC" /f Reg: reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v DisplayName /t REG_SZ /d "@ieframe.dll,-12512" /f DeleteKey: HKCU\Software\Mozilla DeleteKey: HKLM\SOFTWARE\Microsoft\Microsoft Antimalware DeleteKey: HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths DeleteKey: HKLM\SOFTWARE\Mozilla DeleteKey: HKLM\SOFTWARE\MozillaPlugins DeleteKey: HKLM\SOFTWARE\Wow6432Node\Mozilla DeleteKey: HKLM\SOFTWARE\Wow6432Node\mozilla.org DeleteKey: HKLM\SOFTWARE\Wow6432Node\MozillaPlugins C:\Program Files\żěŃą C:\Program Files (x86)\evmtjez4 C:\Program Files (x86)\Lopchchatught C:\Program Files (x86)\Mzityatupile C:\Program Files (x86)\Pleqok C:\Program Files (x86)\sbqh C:\Program Files (x86)\Sherbaly C:\Program Files (x86)\UCBrowser C:\Program Files (x86)\Common Files\Apps C:\ProgramData\AVAST Software C:\ProgramData\AVG C:\ProgramData\Avira C:\ProgramData\cosun C:\ProgramData\Thunder Network C:\ProgramData\Microsoft\Windows\Start Menu\Programs\鲁大师 C:\Users\Piotr Chmielewski\AppData\Local\Ckulalypezok C:\Users\Piotr Chmielewski\AppData\Local\Clervagh C:\Users\Piotr Chmielewski\AppData\Local\Pakaphshuzosh C:\Users\Piotr Chmielewski\AppData\Local\Plvirygasuied C:\Users\Piotr Chmielewski\AppData\Local\UCBrowser C:\Users\Piotr Chmielewski\AppData\Roaming\Kuaizip C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\UC浏览器.lnk C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7eacadfa43776aec\Google Chrome.lnk C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9\user0 - Chrome.lnk C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnеt Ехрlоrеr.lnk C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UC浏览器 C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Windows\Start Menu\żěŃą.lnk C:\Users\Piotr Chmielewski\Downloads\*.crdownload C:\Users\Piotr Chmielewski\Desktop\Continue VLC media player installation.lnk C:\Users\Public\Thunder Network C:\WINDOWS\Joberphlusisp C:\WINDOWS\system32\Drivers\ucguard.sys C:\WINDOWS\system32\SSL CMD: attrib /d /s -r -s -h C:\FOUND.* CMD: for /d %f in (C:\FOUND.*) do rd /s /q "%f" Hosts: EmptyTemp: ***************** Procesy zostały pomyślnie zamknięte. [1584] C:\Windows\explorer.exe => proces pomyślnie zamknięty. UCGuard => serwis pomyślnie usunięto Hkhlp => serwis pomyślnie usunięto MeneghtNodifier => serwis pomyślnie usunięto DecacultSystem => serwis pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\SvcHost\\netsvcs HpSvc => pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{01A14B24-F120-41CA-B7A0-CC27C3DB6613}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{01A14B24-F120-41CA-B7A0-CC27C3DB6613}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Office\Office 15 Subscription Heartbeat" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0968DE7E-E94F-4138-9D1D-4A6FF091340F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0968DE7E-E94F-4138-9D1D-4A6FF091340F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\rundetector" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1967334D-D2D0-432D-8E5F-D17EB13F8548}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1967334D-D2D0-432D-8E5F-D17EB13F8548}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1C4E1A54-FE3C-4683-9E5A-C2E6D61662CA}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1C4E1A54-FE3C-4683-9E5A-C2E6D61662CA}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{277FE09A-EB2B-4FA8-8846-1B658F2BA66F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{277FE09A-EB2B-4FA8-8846-1B658F2BA66F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5452B4A0-538A-44CD-8E9B-72C595BD9511}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5452B4A0-538A-44CD-8E9B-72C595BD9511}" => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC => klucz nie znaleziono. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5512A6BE-C150-44AC-8ED0-472B497F27C8}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5512A6BE-C150-44AC-8ED0-472B497F27C8}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\UCBrowserUpdaterCore => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UCBrowserUpdaterCore" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{62C68AA6-2DFC-4D73-BE4F-F12467A75D83}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{62C68AA6-2DFC-4D73-BE4F-F12467A75D83}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6CE51701-C90F-49AC-ABFD-CDE9248E7636}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6CE51701-C90F-49AC-ABFD-CDE9248E7636}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\UCBrowserUpdater => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\UCBrowserUpdater" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{879CC183-9379-4D67-8FF9-51243ED2A59B}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{879CC183-9379-4D67-8FF9-51243ED2A59B}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Desk 365 RunAsStdUser" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{908BEF62-ED7D-475D-89CB-AE349A9EDE44}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{908BEF62-ED7D-475D-89CB-AE349A9EDE44}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{91CA4E88-9DA3-41B1-A59E-7151F60B12D2}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91CA4E88-9DA3-41B1-A59E-7151F60B12D2}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A1FA585C-E739-41C6-B61B-56D251B6C847}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A1FA585C-E739-41C6-B61B-56D251B6C847}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\Pholdom Center => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Pholdom Center" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AAEDF554-139A-4F61-A71C-E7362BC60DC8}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AAEDF554-139A-4F61-A71C-E7362BC60DC8}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B01E74A3-318B-4946-879F-6114A7CF011A}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B01E74A3-318B-4946-879F-6114A7CF011A}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B1CB2E76-2B1D-46AA-9D71-62ABFA317E4A}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B1CB2E76-2B1D-46AA-9D71-62ABFA317E4A}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\Decacult System => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Decacult System" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B363F06A-EBFE-42AC-BD25-9CC618FAB438}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B363F06A-EBFE-42AC-BD25-9CC618FAB438}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\Meneght Nodifier => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Meneght Nodifier" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B77A6898-7462-480E-9C79-EA1985D21B3F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B77A6898-7462-480E-9C79-EA1985D21B3F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BAED9D64-73CF-405F-9B32-1B801B9E9E42}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BAED9D64-73CF-405F-9B32-1B801B9E9E42}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D1312E44-82F6-4346-9951-6940B62D30C5}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D1312E44-82F6-4346-9951-6940B62D30C5}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\Sony Corporation\VAIO Care\UpdateContacts => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Sony Corporation\VAIO Care\UpdateContacts" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E19F7C4C-3EAD-4C18-B10D-E2B67D99675E}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E19F7C4C-3EAD-4C18-B10D-E2B67D99675E}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EF0C2853-286B-4AA6-9872-DAB87B70F37B}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF0C2853-286B-4AA6-9872-DAB87B70F37B}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F98E4113-5B15-47E0-82C7-6FFA0CEEE3E5}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F98E4113-5B15-47E0-82C7-6FFA0CEEE3E5}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FC451B58-0448-485B-8DD8-1DB4FD353E0F}" => klucz pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FC451B58-0448-485B-8DD8-1DB4FD353E0F}" => klucz pomyślnie usunięto C:\WINDOWS\System32\Tasks\{73A0484E-0076-4985-A4B3-92478C3D29FA} => pomyślnie przeniesiono "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{73A0484E-0076-4985-A4B3-92478C3D29FA}" => klucz pomyślnie usunięto C:\WINDOWS\Tasks\UCBrowserUpdater.job => pomyślnie przeniesiono C:\WINDOWS\Tasks\UCBrowserUpdaterCore.job => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\KzShlobj" => klucz pomyślnie usunięto "HKCR\CLSID\{AAA0C5B8-933F-4200-93AD-B143D7FFF9F2}" => klucz pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\BtvStack => Wartość pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\BtTray => Wartość pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Wondershare Helper Compact.exe => Wartość pomyślnie usunięto HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Wartość pomyślnie usunięto HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\sun21 => Wartość pomyślnie usunięto HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\win_en_77 => Wartość pomyślnie usunięto HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\Software\Microsoft\Windows\CurrentVersion\Run\\ => Wartość pomyślnie usunięto HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\Software\Microsoft\Windows\CurrentVersion\Run\\svchost0 => Wartość pomyślnie usunięto HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\Software\Microsoft\Windows\CurrentVersion\Run\\OZIDFASLW3 => Wartość pomyślnie usunięto HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ => Wartość pomyślnie usunięto HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Spotify => Wartość pomyślnie usunięto HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Spotify => Wartość nie znaleziono. WMI_ActiveScriptEventConsumer_ASEC: <===== UWAGA => pomyślnie usunięto C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk => Skrót - argument pomyślnie usunięto. C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk => Skrót - argument pomyślnie usunięto. C:\Users\Public\Desktop\Google Chrome.lnk => Skrót - argument pomyślnie usunięto. C:\WINDOWS\system32\GroupPolicy\Machine => pomyślnie przeniesiono C:\WINDOWS\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Wartość pomyślnie przywrócono HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\Software\Microsoft\Internet Explorer\Main\\Start Page => Wartość pomyślnie przywrócono HKU\S-1-5-21-2351160239-3609625897-3084254237-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wartość pomyślnie usunięto "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95E84BD3-3604-4AAC-B2CA-D9AC3E55B64B}" => klucz pomyślnie usunięto "HKCR\CLSID\{95E84BD3-3604-4AAC-B2CA-D9AC3E55B64B}" => klucz pomyślnie usunięto HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\\Default => Wartość pomyślnie przywrócono HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{B2F6FFB8-AB39-468F-AA6F-A2FB5D56F9A5}C:\users\piotr chmielewski\appdata\local\temp\is-l3mrf.tmp\download\minithunderplatform.exe => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E133170E-7300-4977-82C6-7D3593C50C2A}C:\users\piotr chmielewski\appdata\local\temp\is-l3mrf.tmp\download\minithunderplatform.exe => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{156C7830-4177-49B9-BE18-3940AA052C34} => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F36B2E05-77F9-49B6-9ACB-5C9253B34AA7} => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{19583E26-C47D-4848-A033-DF1F0828A457} => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DFC54A4F-9636-4840-AFB4-54F9353529A8} => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{73A686A1-DB95-4E5A-8E47-A1EF4A7D7F4A} => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{60993930-37A3-4E95-B25D-4C0660E767AE} => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E434BA0-6A5C-4778-A6DE-0FF5698255E6} => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E4E6F595-8207-4AF3-877A-AC2314A3CA98} => Wartość pomyślnie usunięto HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{14C5200E-3AE9-447A-ADF2-63B962754D94} => Wartość pomyślnie usunięto ========= reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /ve /t REG_SZ /d Bing /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v URL /t REG_SZ /d "http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg add "HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v DisplayName /t REG_SZ /d "@ieframe.dll,-12512" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /ve /t REG_SZ /d Bing /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v URL /t REG_SZ /d "http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= ========= reg add "HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" /v DisplayName /t REG_SZ /d "@ieframe.dll,-12512" /f ========= Operacja ukoäczona pomy˜lnie. ========= Koniec Reg: ========= HKCU\Software\Mozilla => klucz nie znaleziono. HKLM\SOFTWARE\Microsoft\Microsoft Antimalware => niepowodzenie przy usuwaniu w pierwszym podejściu (ErrorCode: C0000121), zobacz kolejną linię. HKLM\SOFTWARE\Microsoft\Microsoft Antimalware => klucz pomyślnie usunięto HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths => klucz pomyślnie usunięto HKLM\SOFTWARE\Mozilla => niepowodzenie przy usuwaniu w pierwszym podejściu (ErrorCode: C0000121), zobacz kolejną linię. HKLM\SOFTWARE\Mozilla => klucz pomyślnie usunięto HKLM\SOFTWARE\MozillaPlugins => niepowodzenie przy usuwaniu w pierwszym podejściu (ErrorCode: C0000121), zobacz kolejną linię. HKLM\SOFTWARE\MozillaPlugins => klucz pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\Mozilla => niepowodzenie przy usuwaniu w pierwszym podejściu (ErrorCode: C0000121), zobacz kolejną linię. HKLM\SOFTWARE\Wow6432Node\Mozilla => klucz pomyślnie usunięto HKLM\SOFTWARE\Wow6432Node\mozilla.org => klucz nie znaleziono. HKLM\SOFTWARE\Wow6432Node\MozillaPlugins => niepowodzenie przy usuwaniu w pierwszym podejściu (ErrorCode: C0000121), zobacz kolejną linię. HKLM\SOFTWARE\Wow6432Node\MozillaPlugins => klucz pomyślnie usunięto C:\Program Files\żěŃą => pomyślnie przeniesiono C:\Program Files (x86)\evmtjez4 => pomyślnie przeniesiono C:\Program Files (x86)\Lopchchatught => pomyślnie przeniesiono C:\Program Files (x86)\Mzityatupile => pomyślnie przeniesiono C:\Program Files (x86)\Pleqok => pomyślnie przeniesiono C:\Program Files (x86)\sbqh => pomyślnie przeniesiono C:\Program Files (x86)\Sherbaly => pomyślnie przeniesiono C:\Program Files (x86)\UCBrowser => pomyślnie przeniesiono C:\Program Files (x86)\Common Files\Apps => pomyślnie przeniesiono C:\ProgramData\AVAST Software => pomyślnie przeniesiono C:\ProgramData\AVG => pomyślnie przeniesiono C:\ProgramData\Avira => pomyślnie przeniesiono C:\ProgramData\cosun => pomyślnie przeniesiono C:\ProgramData\Thunder Network => pomyślnie przeniesiono C:\ProgramData\Microsoft\Windows\Start Menu\Programs\鲁大师 => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Local\Ckulalypezok => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Local\Clervagh => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Local\Pakaphshuzosh => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Local\Plvirygasuied => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Local\UCBrowser => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Roaming\Kuaizip => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\UC浏览器.lnk => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7eacadfa43776aec\Google Chrome.lnk => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\360c22b137d62ce9\user0 - Chrome.lnk => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnеt Ехрlоrеr.lnk => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UC浏览器 => pomyślnie przeniesiono C:\Users\Piotr Chmielewski\AppData\Roaming\Microsoft\Windows\Start Menu\żěŃą.lnk => pomyślnie przeniesiono =========== "C:\Users\Piotr Chmielewski\Downloads\*.crdownload" ========== C:\Users\Piotr Chmielewski\Downloads\Niepotwierdzony 529560.crdownload => pomyślnie przeniesiono ========= Koniec -> "C:\Users\Piotr Chmielewski\Downloads\*.crdownload" ======== C:\Users\Piotr Chmielewski\Desktop\Continue VLC media player installation.lnk => pomyślnie przeniesiono C:\Users\Public\Thunder Network => pomyślnie przeniesiono C:\WINDOWS\Joberphlusisp => pomyślnie przeniesiono C:\WINDOWS\system32\Drivers\ucguard.sys => pomyślnie przeniesiono C:\WINDOWS\system32\SSL => pomyślnie przeniesiono ========= attrib /d /s -r -s -h C:\FOUND.* ========= ========= Koniec CMD: ========= ========= for /d %f in (C:\FOUND.*) do rd /s /q "%f" ========= ========= Koniec CMD: ========= C:\Windows\System32\Drivers\etc\hosts => pomyślnie przeniesiono Hosts pomyślnie przywrócono. =========== EmptyTemp: ========== BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 38295638 B Java, Flash, Steam htmlcache => 2309 B Windows/system/drivers => 205043210 B Edge => 35560081 B Chrome => 16575730 B Firefox => 0 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 1457198 B NetworkService => 278832 B Piotr Chmielewski => 1968730871 B RecycleBin => 1981147685 B EmptyTemp: => 4 GB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 00:32:50 ====