
http://www.wklejto.pl/867611
http://www.wklejto.pl/867612
za pomoc thx

HKU\S-1-5-21-2780102501-1545818305-475526552-1000\...\Run: [Chromium] => "c:\users\robert\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA
Task: {5A27151C-A2D1-4DA2-9A01-27DC3CA78087} - System32\Tasks\{46E4526A-9163-424B-8F80-682F57BDB272} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\IObit\Advanced SystemCare\SecurityHole_Backup\KB2538243.exe" -d "C:\Program Files\IObit\Advanced SystemCare" -c /quiet /norestart
Task: {81E857D8-C6D0-4601-A8B5-957291B5FD96} - System32\Tasks\{5F8C7B59-1F11-4099-8F53-A76A1FB864AD} => C:\Windows\system32\pcalua.exe -a D:\setup.exe -d D:\
Task: {B308C256-1DE1-4CD7-89FC-55C60DF311E5} - System32\Tasks\{06133774-BB82-47E7-B5B7-ECD136D0B0FC} => C:\Windows\system32\pcalua.exe -a C:\Windows\system32\pcwrun.exe -c "C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"
S3 BlueletAudio; system32\DRIVERS\blueletaudio.sys [X]
S3 BlueletSCOAudio; system32\DRIVERS\BlueletSCOAudio.sys [X]
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S0 BTHidEnum; System32\Drivers\vbtenum.sys [X]
S0 BTHidMgr; System32\Drivers\BTHidMgr.sys [X]
S3 cpuz134; \??\C:\Users\Robert\AppData\Local\Temp\cpuz134\cpuz134_x32.sys [X] <==== UWAGA
S3 ewusbmbb; system32\DRIVERS\ewusbwwan.sys [X]
S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]
S4 IMFFilter; \??\C:\Program Files\IObit\IObit Malware Fighter\Drivers\win7_x86\IMFFilter.sys [X]
S3 massfilter; system32\drivers\massfilter.sys [X]
S3 netr28u; system32\DRIVERS\netr28u.sys [X]
S3 RegFilter; \??\C:\Program Files\IObit\IObit Malware Fighter\drivers\win7_x86\regfilter.sys [X]
S3 VComm; system32\DRIVERS\VComm.sys [X]
S3 VcommMgr; System32\Drivers\VcommMgr.sys [X]
S3 ZTEusbmdm6k; system32\DRIVERS\ZTEusbmdm6k.sys [X]
S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [X]
S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [X]
U3 pfpirfod; \??\C:\Users\Robert\AppData\Local\Temp\pfpirfod.sys [X] <==== UWAGA
C:\Windows\Minidump\*.dmp
C:\Users\Robert\AppData\Local\Temp*.html
SearchScopes: HKLM -> DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL =
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=400&systemid=406&v=a13251-244&apn_uid=4504874549484551&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2780102501-1545818305-475526552-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search.ask.com/sr?src=ieb&gct=ds&appid=400&systemid=406&v=a13251-244&apn_uid=4504874549484551&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms}
FirewallRules: [{AF7ED454-3BE1-4BE7-AFD7-BC8DB84BBEE7}] => (Allow) C:\Windows\System32\msiexec.exe (Microsoft Corporation) [Brak podpisu cyfrowego]
FirewallRules: [{6E6C5F53-42AA-46A7-8A8E-5FC9FA73FE8F}] => (Allow) C:\Windows\System32\msiexec.exe (Microsoft Corporation) [Brak podpisu cyfrowego]
Powershell: wevtutil el | Foreach-Object {wevtutil cl "$_"}
EmptyTemp:
Użytkownicy przeglądający to forum: Brak zarejestrowanych użytkowników oraz 1 gość