UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/54.0.2840.16 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.1; rv:43.0) Gecko/20100101 Firefox/43.0 SeaMonkey/2.40
Czy ewentualna reinstalacja Windowsa naprawi problem?
Task: {3D96249F-4110-4631-BB1A-C8CBC1492F5A} - System32\Tasks\PatrykSPossessingLemmaV2 => Rundll32.exe EngrailingDowntimes.dll,main 7 1 <==== UWAGA
HKU\S-1-5-21-365131593-1072081075-2620177376-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBPxn5dJ8gs0DGDT3GOWsi_8CTz4dOJG0WE1KWhoel4kpMLrf6Y04vCvRr-CyTmcSdp0mVA6umr3nZ9qLT2GnlEAlez0-43FzNO-md0HE2EVrpu5PZ5PCXpGaK_HTkTtxKflsYl4TegMCx_6N6WjtXQ4Uvov7WzHr5sS6_oLm6BtPdNQ4jSdGfnQW8,&q={searchTerms}
HKU\S-1-5-21-365131593-1072081075-2620177376-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBPxn5dJ8gs0DGDT3GOWsi_8CTz4dOJG0WE1KWhoel4kpMLrf6Y04vCvRr-CyTmcSdp0mVA6umr3nZ9qLT2GnlEAlez0-43FzNO-md0HE2EVrpu5PZ5PCXpGaK_HTkTtxKflsYl4TegMCx_6N6WjtXQ4Uvov7WzHr5sS6_oLm6BtPdNQ4jSdGfnQW8,&q={searchTerms}
HKU\S-1-5-21-365131593-1072081075-2620177376-1001\Software\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBPxn5dJ8gs0DGDT3GOWsi_8CTz4dOJG0WE1KWhoel4kpMLrf6Y04vCvRr-CyTmcSdp0mVA6umr3nZ9qLT2GnlEAlez0-43FzNO-md0HE2EVrpu5PZ5PCXpGaK_HTkTtxKflsYl4TegMCx_6N6WjtXQ4Uvov7WzHr5sS6_oLm6BtPdNQ4jSdGfnQW8,&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {ielnksrch} URL =
SearchScopes: HKLM-x32 -> ielnksrch URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBPxn5dJ8gs0DGDT3GOWsi_8CTz4dOJG0WE1KWhoel4kpMLrf6Y04vCvRr-CyTmcSdp0mVA6umr3nZ9qLT2GnlEAlez0-43FzNO-md0HE2EVrpu5PZ5PCXpGaK_HTkTtxKflsYl4TegMCx_6N6WjtXQ4Uvov7WzHr5sS6_oLm6BtPdNQ4jSdGfnQW8,&q={searchTerms}
SearchScopes: HKU\S-1-5-21-365131593-1072081075-2620177376-1001 -> {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBPxn5dJ8gs0DGDT3GOWsi_8CTz4dOJG0WE1KWhoel4kpMLrf6Y04vCvRr-CyTmcSdp0mVA6umr3nZ9qLT2GnlEAlez0-43FzNO-md0HE2EVrpu5PZ5PCXpGaK_HTkTtxKflsYl4TegMCx_6N6WjtXQ4Uvov7WzHr5sS6_oLm6BtPdNQ4jSdGfnQW8,&q={searchTerms}
2016-06-22 14:02 - 2016-06-22 14:02 - 6867968 _____ () C:\Users\PatrykS\AppData\Roaming\agent.dat
2016-06-22 14:02 - 2016-06-22 14:02 - 0067968 _____ () C:\Users\PatrykS\AppData\Roaming\Config.xml
2016-06-22 14:01 - 2016-06-22 14:02 - 0014448 _____ () C:\Users\PatrykS\AppData\Roaming\InstallationConfiguration.xml
2016-06-22 14:01 - 2016-06-22 14:01 - 0128512 _____ () C:\Users\PatrykS\AppData\Roaming\Installer.dat
2016-06-22 14:02 - 2016-06-22 14:02 - 0018432 _____ () C:\Users\PatrykS\AppData\Roaming\Main.dat
2016-06-22 14:02 - 2016-06-22 14:02 - 0005568 _____ () C:\Users\PatrykS\AppData\Roaming\md.xml
2016-06-22 14:02 - 2016-06-22 14:02 - 0126464 _____ () C:\Users\PatrykS\AppData\Roaming\noah.dat
2016-06-22 14:02 - 2016-06-22 14:01 - 0953856 _____ () C:\Users\PatrykS\AppData\Roaming\Single-Zap.exe
2016-06-22 14:02 - 2016-06-22 14:02 - 1759964 _____ () C:\Users\PatrykS\AppData\Roaming\Single-Zap.tst
2016-06-22 14:03 - 2016-06-22 14:03 - 2279413 _____ () C:\Users\PatrykS\AppData\Roaming\Techtop.bin
2016-06-22 14:03 - 2016-06-22 14:03 - 0032038 _____ () C:\Users\PatrykS\AppData\Roaming\uninstall_temp.ico
EmptyTemp:
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/54.0.2840.16 Safari/537.36
UA: Mozilla/5.0 (Windows NT 6.1; rv:43.0) Gecko/20100101 Firefox/43.0 SeaMonkey/2.40
AppInit_DLLs: C:\ProgramData\Quotenamron\Touchfresh.dll => C:\ProgramData\Quotenamron\Touchfresh.dll [363008 2016-06-22] ()
RemoveDirectory: C:\ProgramData\Logic Handler
RemoveDirectory: C:\Users\PatrykS\AppData\Local\PossessingLemma
RemoveDirectory: C:\ProgramData\Quotenamron
Task: {F3076178-C15D-4AAE-B40E-13E5FA5BF385} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA
Task: {D9CA0E9B-0187-49E9-BBF1-C203B48257C3} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA
Task: {E90A3CA9-8B86-4211-A28B-A67273EE29BE} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Brak pliku <==== UWAGA
Task: {E92BD60B-397E-4695-BD84-E7B0B459FD0D} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA
Task: {F8DD46D7-4703-4CE6-98DB-DDDDAC2FCC0C} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA
Task: {D59D6D7F-57A4-4B28-A8F5-D1C902868568} - \WPD\SqmUpload_S-1-5-21-365131593-1072081075-2620177376-1001 -> Brak pliku <==== UWAGA
Task: {AD646A24-E83D-45F5-82C6-B6C40B11DE64} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Brak pliku <==== UWAGA
Task: {B2D786FA-0D27-46E0-A4C0-16B251FB633A} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Brak pliku <==== UWAGA
Task: {8CDC13B9-DFD7-4F69-A1A2-BABC528287D3} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA
Task: {96859264-9968-49E3-A7F1-68A21641A164} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA
Task: {9748E163-144C-4F61-BADF-EFCD632ACEB9} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> Brak pliku <==== UWAGA
Task: {990A1ADE-245B-4699-AE6B-DE6A6B89ED3B} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA
Task: {5781BC02-865C-44B9-81B3-C20C7E2CD46B} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA
Task: {66E33549-0ED8-4027-8389-0C855054D186} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA
Task: {2EBE95CE-3A3B-455C-B6E2-EB7B4A484DE7} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA
Task: {312947C1-5488-4416-8017-0B67BB5E90D6} - \Microsoft\Windows\Setup\gwx\rundetector -> Brak pliku <==== UWAGA
ShortcutWithArgument: C:\Users\PatrykS\AppData\Local\PossessingLemma\allegro.pl .lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\PatrykS\AppData\Local\PossessingLemma\allegro.pl.smenu.URL
ShortcutWithArgument: C:\Users\PatrykS\AppData\Local\PossessingLemma\allegro.pl.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\PatrykS\AppData\Local\PossessingLemma\allegro.pl.tbar.URL
ShortcutWithArgument: C:\Users\PatrykS\AppData\Local\PossessingLemma\Booking .lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\PatrykS\AppData\Local\PossessingLemma\Booking.smenu.URL
ShortcutWithArgument: C:\Users\PatrykS\AppData\Local\PossessingLemma\Booking.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> C:\Users\PatrykS\AppData\Local\PossessingLemma\Booking.tbar.URL
C:\WINDOWS\Minidump\*.dmp
R2 backlh; C:\ProgramData\Logic Handler\set.exe [2089472 2016-05-15] () [Brak podpisu cyfrowego]
HOSTS:
EmptyTemp:
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/54.0.2840.16 Safari/537.36
Zarejestrowani użytkownicy: Brak zarejestrowanych użytkowników