
Task: {3F0386AA-844D-4FFC-872F-7C3B70336343} - System32\Tasks\060184C3-9766-46a0-B258-F4518A0B2633 => Cscript.exe "C:\ProgramData\Baidu Security\Duplicaterecord.js" <==== ATTENTION
Task: {76C21E01-4F7E-4FAA-AC84-B0ED90DA1DE9} - \Driver Booster Scan No Task File <==== ATTENTION
Task: {8387457B-C702-41C4-9C5B-8C72B1811783} - \Driver Booster Update No Task File <==== ATTENTION
HKU\S-1-5-21-2917954556-79250000-1762670911-1000\Software\Classes\exefile: "%1" %* <===== ATTENTION!
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
ShellIconOverlayIdentifiers: [BaiduAntivirusIconLock] -> {0A93904A-BB1E-4a0c-9753-B57B9AE272CC} => C:\Program Files (x86)\Baidu Security\Baidu Antivirus\BavShx64.dll No File
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
SearchScopes: HKU\.DEFAULT -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms}&type=ds&from=yac&uid=st1000dm003-1ch162_s1dj309cxxxxs1dj309c&ts=1419424228
SearchScopes: HKU\S-1-5-19 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms}&type=ds&from=yac&uid=st1000dm003-1ch162_s1dj309cxxxxs1dj309c&ts=1419424228
SearchScopes: HKU\S-1-5-20 -> {425ED333-6083-428a-92C9-0CFC28B9D1BF} URL = http://search.yac.mx/web/?q={searchTerms}&type=ds&from=yac&uid=st1000dm003-1ch162_s1dj309cxxxxs1dj309c&ts=1419424228
FF SearchPlugin: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\cke3mucd.default\searchplugins\YAC Safe Search.xml
CHR HKLM-x32\...\Chrome\Extension: [cmaiofennmphjldldcpphcechfnnohja] - No Path
S3 AppProtectEx; No ImagePath
S3 BprotectEx; No ImagePath
S3 cpuz137; No ImagePath
s1 EfwTdiFlt; No ImagePath
S3 gdrv; No ImagePath
S3 PCFApiUtil; No ImagePath
S3 WinRing0_1_2_0; No ImagePath
S1 BAPIDRV; system32\DRIVERS\BAPIDRV64.sys [X]
S1 iSafeKrnlMon; \??\D:\Program Files (x86)\Elex-tech\YAC\iSafeKrnlMon.sys [X]
C:\ProgramData\Duplicaterecord.js
Hosts:
EmptyTemp:
C:\Users\user\Desktop\Folder\Programy do ratowania systemu
HKU\S-1-5-18\...\Run: [Agent Portfela Bitdefender] => "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe"
HKU\S-1-5-18\...\Run: [Portfel Bitdefender] => "C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe" --hidden --nowizard
HKU\S-1-5-18\...\Run: [Agent aplikacji Portfel Bitdefender] => "C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe"
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
C:\ProgramData\Baidu Security
C:\ProgramData\Baidu
C:\Program Files (x86)\Baidu Security
C:\ProgramData\1422003748.bdinstall.bin
C:\Users\user\AppData\Roaming\BavMini
C:\Users\user\AppData\Roaming\Baidu Security
C:\Windows\SysWOW64\Drivers\BdSandbox.sys
C:\ProgramData\360Quarant
C:\$360Section
C:\Program Files\Common Files\Bitdefender
C:\ProgramData\BDLogging
EmptyTemp:
DeleteQuarantine:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 5 gości