Otwórz notatnik systemowy i wklej: CustomCLSID: HKU\S-1-5-21-1497154117-3051764922-3882586589-1000_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Wiktoria\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll => Brak pliku ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers1_S-1-5-21-1497154117-3051764922-3882586589-1000: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => C:\Users\Wiktoria\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll -> Brak pliku ContextMenuHandlers4_S-1-5-21-1497154117-3051764922-3882586589-1000: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => C:\Users\Wiktoria\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll -> Brak pliku ContextMenuHandlers5_S-1-5-21-1497154117-3051764922-3882586589-1000: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => C:\Users\Wiktoria\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll -> Brak pliku Task: {0A5878BE-F360-4361-899C-2EF040B1F94B} - System32\Tasks\{3ED98DE7-2CA9-49A2-AA96-BB335C52D4EB} => C:\Program Files\Running With Scissors\Postal 2 Complete\ShareThePain\System\AWP.exe Task: {1D86223B-5393-4652-BC3E-418379C96367} - System32\Tasks\{5736A07B-7EDD-41F4-8ACF-48422AB1FEF9} => C:\Windows\system32\pcalua.exe -a "D:\Program Files\Bejeweled 2 Deluxe 1.0 (Crack Only).exe" -d "D:\Program Files" Task: {8271753F-72F7-4DAC-8D28-B93B21CB9D0E} - System32\Tasks\{B33E1C49-D1C5-4B04-A05E-57989D5A13D4} => C:\Program Files\SCS Software\Euro Truck Simulator 2 - Heavy Cargo Pack\bin\win_x86\eurotrucks2.exe Task: {85E2483D-A399-47E0-ABE1-C2C4C3A78B47} - System32\Tasks\{3A3ADF49-0AB8-4177-9A62-64E35879BFA7} => C:\Program Files\Atari\Test Drive Unlimited\TestDriveUnlimited.exe Task: {9D4ECA4E-6353-4611-B590-7B30D136AC30} - System32\Tasks\{F7750283-456D-42E6-AC7D-AA67B4F14C26} => C:\Windows\system32\pcalua.exe -a "F:\Gry\Gry Małe\Magus W poszukiwaniu przygody\MagusInsearchofadventurePl_20033.exe" -d "F:\Gry\Gry Małe\Magus W poszukiwaniu przygody" Task: {9EC77373-33E6-43CB-8A76-7303E204F210} - System32\Tasks\{EDF1D0AA-3950-43E2-9E7F-C7D93F9FD7DA} => C:\Windows\system32\pcalua.exe -a "D:\Program Files\Maxis\SimCity 4 Deluxe\SC4_uninst.exe" -d "D:\Program Files\Maxis\SimCity 4 Deluxe" Task: {A562BF27-EB3B-4D01-9012-DE0A812ACC04} - System32\Tasks\{59FBEFCC-7043-4196-BBF8-A5DA8D5633CA} => C:\Program Files\Gothic III\Gothic3.exe Task: {AC2FA7BC-C260-43BC-86B0-C0682213989F} - System32\Tasks\{F32F46AD-53B6-4429-BB50-7727103F5BD3} => C:\Program Files\Running With Scissors\Postal 2 Complete\ShareThePain\System\AWP.exe Task: {B57DE68F-2334-42EA-84AB-227E9076731B} - System32\Tasks\{39EF080D-261B-4456-824F-DA06474F6C89} => C:\Program Files\SCS Software\Euro Truck Simulator 2 - Heavy Cargo Pack\bin\win_x86\eurotrucks2.exe Task: {C3FED082-3C9A-4870-9C1E-1A5B988CC868} - System32\Tasks\{B1F0D0F7-5B95-4E50-80C1-5D85A38F1355} => C:\Windows\system32\pcalua.exe -a "D:\Program Files\SimCity 4 Deluxe\SC4_uninst.exe" -d "D:\Program Files\SimCity 4 Deluxe" Task: {D7D54058-E4A3-40C0-AED7-98BC75B9E337} - System32\Tasks\soHDWF2uAbdg => sohdwf2uabdg.exe Shortcut: C:\Users\Wiktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Intеrnet Еxplorеr (Nо Аdd-оns).lnk -> C:\Users\Wiktoria\AppData\Roaming\Browsers\exe.erolpxei.bat (Brak pliku) <==== Cyrillic Shortcut: C:\Users\Wiktoria\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Gоogle Сhromе.lnk -> C:\Users\Wiktoria\AppData\Roaming\Browsers\exe.emorhc.bat (Brak pliku) <==== Cyrillic Shortcut: C:\Users\Wiktoria\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Lаunсh Internet Еxрlоrеr Вrowser.lnk -> C:\Users\Wiktoria\AppData\Roaming\Browsers\exe.erolpxei.bat (Brak pliku) <==== Cyrillic Shortcut: C:\Users\Wiktoria\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gоogle Сhrоme.lnk -> C:\Users\Wiktoria\AppData\Roaming\Browsers\exe.emorhc.bat (Brak pliku) <==== Cyrillic Shortcut: C:\Users\Wiktoria\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Мozilla Firefоx.lnk -> C:\Users\Wiktoria\AppData\Roaming\Browsers\exe.xoferif.bat (Brak pliku) <==== Cyrillic AlternateDataStreams: C:\ProgramData:NT [40] AlternateDataStreams: C:\ProgramData:NT2 [432] AlternateDataStreams: C:\Users\All Users:NT [40] AlternateDataStreams: C:\Users\All Users:NT2 [432] AlternateDataStreams: C:\ProgramData\Application Data:NT [40] AlternateDataStreams: C:\ProgramData\Application Data:NT2 [432] AlternateDataStreams: C:\ProgramData\Dane aplikacji:NT [40] AlternateDataStreams: C:\ProgramData\Dane aplikacji:NT2 [432] AlternateDataStreams: C:\Users\Wiktoria\Dane aplikacji:NT [40] AlternateDataStreams: C:\Users\Wiktoria\Dane aplikacji:NT2 [432] AlternateDataStreams: C:\Users\Wiktoria\AppData\Roaming:NT [40] AlternateDataStreams: C:\Users\Wiktoria\AppData\Roaming:NT2 [432] Hosts: HKLM\...\Run: [SERVICE] => [X] HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-1497154117-3051764922-3882586589-1000\...\MountPoints2: F - F:\setup.exe HKU\S-1-5-21-1497154117-3051764922-3882586589-1000\...\MountPoints2: G - G:\AutoRun.exe --autorun HKU\S-1-5-21-1497154117-3051764922-3882586589-1000\...\MountPoints2: {05069129-5fbc-11e7-90d1-001018000000} - F:\AutoRun.exe HKU\S-1-5-21-1497154117-3051764922-3882586589-1000\...\MountPoints2: {05069141-5fbc-11e7-90d1-001018000000} - F:\AutoRun.exe HKU\S-1-5-21-1497154117-3051764922-3882586589-1000\...\MountPoints2: {187854e4-37de-11e7-8fbc-001018000000} - F:\setup.exe AUTORUN=1 HKU\S-1-5-21-1497154117-3051764922-3882586589-1000\...\MountPoints2: {82205dd7-c85a-11e7-8966-001018000000} - H:\Install.exe HKU\S-1-5-21-1497154117-3051764922-3882586589-1000\...\MountPoints2: {82205dd9-c85a-11e7-8966-001018000000} - I:\Install.exe HKU\S-1-5-21-1497154117-3051764922-3882586589-1000\...\MountPoints2: {fb6ba741-3332-11e6-8b62-001018000000} - G:\Autorun.exe GroupPolicy: Ograniczenia - Chrome <==== UWAGA S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X] S3 FairplayKD1; \??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [X] S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X] S3 hwusb_cdcacm; system32\DRIVERS\ew_cdcacm.sys [X] S3 hwusb_wwanecm; system32\DRIVERS\ew_wwanecm.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] 2018-02-10 20:35 - 2017-12-10 15:08 - 000000000 ____D C:\AdwCleaner EmptyTemp: Plik zapisz pod nazwą fixlist.txt i umieść obok FRST w tym samym folderze. Uruchom jako administrator FRST i kliknij w Fix/Napraw. Pobierz i uruchom jako administrator AdwCleaner https://toolslib.net/downloads/finish/1/ Kliknij Scan(Skanuj) i później Cleaning(Oczyść).