Nie warto niczego naprawiac, zresetuj system do ustawien fabrycznych, masz zepsute uslugi, brak plikow, do tego koparka krypto. McAfee tez do wywalenia.
Fixlist.txt:
CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [646776 2020-03-12] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-2977008837-31542234-2952191184-1001\...\MountPoints2: {0a8b07bd-e7e9-11eb-8377-80304976465a} - "D:\setup.exe"
HKU\S-1-5-21-2977008837-31542234-2952191184-1001\...\MountPoints2: {0a8b07e2-e7e9-11eb-8377-80304976465a} - "E:\_AUTORUN\AUTORUN.EXE"
GroupPolicy: Ograniczenia ? <==== UWAGA
Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA
C:\Users\Dawid\AppData\Local\Updates\
Task: {E41F8EF6-1DBE-40CB-8B92-A4D0560BAEC4} - System32\Tasks\Window Update => C:\Users\Dawid\AppData\Local\Updates\Run.vbs [1015 2022-05-09] () [Brak podpisu cyfrowego] <==== UWAGA
Task: {4C7618B4-AAE1-4AF0-9A5C-B6758897FE5E} - System32\Tasks\Windows Service Task => C:\Users\Dawid\AppData\Local\Updates\WindowsService.exe [5581312 2022-05-11] () [Brak podpisu cyfrowego] <==== UWAGA
2011-05-17 23:20 - 2011-05-13 11:33 - 000003336 _____ () C:\Program Files (x86)\eurobattle.reg
2011-05-17 23:20 - 2011-05-17 23:22 - 000098816 _____ (hxxp://w3l.info.tm) C:\Program Files (x86)\euroloader.exe
2011-05-17 23:20 - 2011-05-06 18:47 - 000000046 _____ () C:\Program Files (x86)\euroloader.txt
2011-05-17 23:20 - 2011-05-13 15:01 - 000131584 _____ () C:\Program Files (x86)\gproxy.exe
2011-05-17 23:44 - 2011-05-17 23:43 - 000061798 _____ () C:\Program Files (x86)\Gproxy.ico
2023-11-16 17:59 - 2023-11-16 17:59 - 000325952 _____ () C:\Program Files (x86)\lua5.1.dll
2011-05-17 23:20 - 2003-04-10 17:18 - 000184320 _____ (ShadowFlare Software) C:\Program Files (x86)\SFmpq.dll
2023-11-16 17:59 - 2023-11-16 17:59 - 001341440 _____ (Indigo Rose Corporation) C:\Program Files (x86)\uninstall.exe
2011-05-17 23:20 - 1996-11-08 03:17 - 000721168 _____ (Microsoft Corporation) C:\Program Files (x86)\VB40032.DLL
2011-05-17 23:20 - 2011-04-24 01:30 - 000068608 _____ ( hxxp://w3l.info.tm) C:\Program Files (x86)\w3lh.dll
2011-05-17 23:20 - 2003-04-10 17:56 - 000351744 _____ (ShadowFlare Software) C:\Program Files (x86)\winmpq.exe