13 Lis 2015, 17:35
13 Lis 2015, 17:41
13 Lis 2015, 18:17
13 Lis 2015, 20:31
13 Lis 2015, 21:09
13 Lis 2015, 22:07
HKU\S-1-5-21-597724127-1644861597-3766419850-1000\...\Run: [ASRockXTU] => [X]
HKU\S-1-5-21-597724127-1644861597-3766419850-1000\...\Run: [zASRockInstantBoot] => [X]
GroupPolicy: Ograniczenia - Chrome <======= UWAGA
CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
CHR HKU\S-1-5-21-597724127-1644861597-3766419850-1000\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA
FF HKU\S-1-5-21-597724127-1644861597-3766419850-1000\...\Firefox\Extensions: [{A2BE95D3-6C50-DE96-6AD7-087A04A7F6BB}] - C:\Program Files (x86)\ver0BlockAndSurf\188.xpi => nie znaleziono
CHR Extension: (Dokumenty Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-22] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Dysk Google) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-22] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (YouTube) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-22] [UpdateUrl: hxxp://mynamedomain.koko/00] <==== UWAGA
CHR Extension: (Google Search) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-22] [UpdateUrl: hxxp://mynamedomain.koko/00] <==== UWAGA
CHR Extension: (Skype Click to Call) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-06-23] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Google Wallet) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-06-22] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== UWAGA
CHR Extension: (Gmail) - C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-22] [UpdateUrl: hxxp://mynamedomain.koko/00] <==== UWAGA
S2 cae99edb; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\Super Optimizer\SupOptStats.dll",ENT
S2 ef5c25b2; "C:\Windows\system32\rundll32.exe" "c:\Program Files (x86)\compfix\compfix.dll",serv
S3 TrustedInstaller; %SystemRoot%\servicing\TrustedInstaller.exe [X]
c:\Program Files (x86)\compfix
c:\Program Files (x86)\Super Optimizer
S3 GDPkIcpt; \??\C:\Windows\system32\drivers\PktIcpt.sys [X]
S3 MSICDSetup; \??\E:\CDriver64.sys [X]
S1 {15005ce0-4adb-4842-9f2a-405172e87bce}Gw64; system32\drivers\{15005ce0-4adb-4842-9f2a-405172e87bce}Gw64.sys [X]
S1 {155269df-e342-42e1-af8a-a92196148922}Gw64; system32\drivers\{155269df-e342-42e1-af8a-a92196148922}Gw64.sys [X]
S1 {1cd3f706-5219-4089-9f86-6d8cc40aacac}Gw64; system32\drivers\{1cd3f706-5219-4089-9f86-6d8cc40aacac}Gw64.sys [X]
S1 {3c4fd987-a31c-4e2b-a0ae-9209b42926d2}Gw64; system32\drivers\{3c4fd987-a31c-4e2b-a0ae-9209b42926d2}Gw64.sys [X]
S1 {3cee21b8-f45f-4b81-8601-1f2cae0a9621}Gw64; system32\drivers\{3cee21b8-f45f-4b81-8601-1f2cae0a9621}Gw64.sys [X]
S1 {439426a3-319f-4595-8446-0791284f3711}Gw64; system32\drivers\{439426a3-319f-4595-8446-0791284f3711}Gw64.sys [X]
S1 {44aaa5c7-6c47-4345-a18c-80d1c6fe1418}Gw64; system32\drivers\{44aaa5c7-6c47-4345-a18c-80d1c6fe1418}Gw64.sys [X]
S1 {4c14fc1a-d770-412e-9ddc-7a6cca9696cd}Gw64; system32\drivers\{4c14fc1a-d770-412e-9ddc-7a6cca9696cd}Gw64.sys [X]
S1 {4d764ff2-b4ed-464e-844f-8a1fbea806f0}Gw64; system32\drivers\{4d764ff2-b4ed-464e-844f-8a1fbea806f0}Gw64.sys [X]
S1 {54742081-917b-4bcc-81f0-2e513917f7e3}Gw64; system32\drivers\{54742081-917b-4bcc-81f0-2e513917f7e3}Gw64.sys [X]
S1 {560ee3fd-9654-4ad9-9a90-e7be99f5b3c7}Gw64; system32\drivers\{560ee3fd-9654-4ad9-9a90-e7be99f5b3c7}Gw64.sys [X]
S1 {560ee3fd-9654-4ad9-9a90-e7be99f5b3c7}w64; system32\drivers\{560ee3fd-9654-4ad9-9a90-e7be99f5b3c7}w64.sys [X]
S1 {5906a05d-88b0-4097-80ee-2301046e6d00}Gw64; system32\drivers\{5906a05d-88b0-4097-80ee-2301046e6d00}Gw64.sys [X]
S1 {5ba6553b-6340-4c7d-bf54-0c684c734bbb}Gw64; system32\drivers\{5ba6553b-6340-4c7d-bf54-0c684c734bbb}Gw64.sys [X]
S1 {62469e06-7e58-4462-b250-e2bdf049adec}Gw64; system32\drivers\{62469e06-7e58-4462-b250-e2bdf049adec}Gw64.sys [X]
S1 {62eca849-70b6-47ed-932e-18163afa5bee}Gw64; system32\drivers\{62eca849-70b6-47ed-932e-18163afa5bee}Gw64.sys [X]
S1 {77f6a904-58d8-47e1-b07f-da8c7e56f35d}Gw64; system32\drivers\{77f6a904-58d8-47e1-b07f-da8c7e56f35d}Gw64.sys [X]
S1 {83d61599-0efb-4f42-943e-3fde87e711f5}Gw64; system32\drivers\{83d61599-0efb-4f42-943e-3fde87e711f5}Gw64.sys [X]
S1 {84d18c2a-0c81-41a6-b882-f2bd093f92fb}Gw64; system32\drivers\{84d18c2a-0c81-41a6-b882-f2bd093f92fb}Gw64.sys [X]
S1 {b2f8ce07-8f89-4e49-8c2d-1824051845da}Gw64; system32\drivers\{b2f8ce07-8f89-4e49-8c2d-1824051845da}Gw64.sys [X]
S1 {be8f1758-855f-4af9-98b8-aa4f8e6ebf65}Gw64; system32\drivers\{be8f1758-855f-4af9-98b8-aa4f8e6ebf65}Gw64.sys [X]
S1 {c44114b8-1134-4aeb-950a-2e0ff4eceaae}Gw64; system32\drivers\{c44114b8-1134-4aeb-950a-2e0ff4eceaae}Gw64.sys [X]
S1 {c8576b75-cc46-4cd3-80ad-eb9418cd1f02}Gw64; system32\drivers\{c8576b75-cc46-4cd3-80ad-eb9418cd1f02}Gw64.sys [X]
S1 {ca032d0a-a16a-4ca5-8bc6-c3c5a2d19d37}Gw64; system32\drivers\{ca032d0a-a16a-4ca5-8bc6-c3c5a2d19d37}Gw64.sys [X]
S1 {dcd044e6-adb7-46c3-8ece-3d3a0a33bf3a}Gw64; system32\drivers\{dcd044e6-adb7-46c3-8ece-3d3a0a33bf3a}Gw64.sys [X]
S1 {e65048d8-bd76-44ed-ac28-c25d339ab590}Gw64; system32\drivers\{e65048d8-bd76-44ed-ac28-c25d339ab590}Gw64.sys [X]
S1 {f3daddfc-782d-4450-a020-ed3b44858e01}Gw64; system32\drivers\{f3daddfc-782d-4450-a020-ed3b44858e01}Gw64.sys [X]
S1 {feff35ba-2139-454f-bd8e-bc1ab8b3774d}Gw64; system32\drivers\{feff35ba-2139-454f-bd8e-bc1ab8b3774d}Gw64.sys [X]
2015-11-13 20:04 - 2015-11-13 20:04 - 00094656 _____ (CACE Technologies) C:\Windows\system32\WPRO_41_2001woem.tmp
2015-11-11 17:12 - 2015-02-28 08:14 - 00000000 ____D C:\Program Files (x86)\bc67438f-331c-4b6c-88ff-94037f449c0c
2015-11-11 17:12 - 2015-02-27 07:02 - 00000000 ____D C:\Program Files (x86)\607d462d-f90d-47dd-ac2d-74c3628ac8cf
2015-11-11 17:12 - 2015-02-26 08:10 - 00000000 ____D C:\Program Files (x86)\300bef0b-706f-4423-9b31-6e913966d2ba
2015-11-11 17:12 - 2015-02-23 09:58 - 00000000 ____D C:\Program Files (x86)\23fb8f43-dea9-45b0-8197-db9333ca3e93
2015-11-11 17:12 - 2015-02-19 09:48 - 00000000 ____D C:\Program Files (x86)\6a2dce3a-09f8-40f5-b5d9-e117aa83b0de
2015-11-11 17:12 - 2015-02-08 21:50 - 00000000 ____D C:\Program Files (x86)\31bce240-4e10-4853-8633-8545fb78f55b
2015-11-11 12:20 - 2015-06-09 13:41 - 00000000 ____D C:\Program Files (x86)\Sidewise Tree Style Tabs
2015-11-11 12:20 - 2015-05-05 06:28 - 00000000 ____D C:\Program Files (x86)\Uploads Only for Youtube
2015-11-11 12:19 - 2015-07-04 07:27 - 00000000 ____D C:\Program Files (x86)\Hypothesis Web PDF Annotation
2015-11-11 12:19 - 2015-06-27 11:17 - 00000000 ____D C:\Program Files (x86)\New Tab Helper
2015-11-11 12:19 - 2015-06-09 15:01 - 00000000 ____D C:\Program Files (x86)\NewTab Connect Homepage
2015-11-11 12:18 - 2015-07-23 13:26 - 00000000 ____D C:\Program Files (x86)\ffb2810a-8a9c-42a2-a391-0be19fb036dc
2015-11-11 12:18 - 2015-06-01 18:07 - 00000000 ____D C:\Program Files (x86)\HostCabinet Who is hosting that website
2015-11-11 12:17 - 2015-06-27 11:37 - 00000000 ____D C:\Program Files (x86)\DO IT
2015-11-11 12:17 - 2015-04-29 13:29 - 00000000 ____D C:\Program Files (x86)\Dr.Web Anti-Virus Link Checker
2015-11-11 12:17 - 2015-04-09 06:25 - 00000000 ____D C:\Program Files (x86)\Fauxbar
2015-11-11 12:16 - 2015-06-14 08:21 - 00000000 ____D C:\Program Files (x86)\Cricket Masters Unleashed
2015-11-11 12:16 - 2015-06-08 11:10 - 00000000 ____D C:\Program Files (x86)\buyandbrrOOwwSE
2015-11-11 12:15 - 2015-08-27 17:39 - 00000000 ____D C:\Program Files (x86)\88b2754b-d381-45c1-98dd-0454a0a75933
2015-11-11 12:15 - 2015-06-08 11:11 - 00000000 ____D C:\Program Files (x86)\Abios eSports Match Ticker
2015-11-11 12:15 - 2015-05-19 14:08 - 00000000 ____D C:\Program Files (x86)\Kraken io Image Optimizer
2015-11-11 12:15 - 2015-04-15 06:18 - 00000000 ____D C:\Program Files (x86)\Playjack
2015-11-11 12:13 - 2015-08-27 18:03 - 00000000 ____D C:\Program Files (x86)\2dfa8853-0aea-4e68-84fb-7bc72aba9e3b
2015-11-11 12:13 - 2015-08-15 19:42 - 00000000 ____D C:\Program Files (x86)\193a3135-76b5-4f1a-a8d6-8f457629cc35
2015-11-11 12:13 - 2015-07-24 05:55 - 00000000 ____D C:\Program Files (x86)\1ca46774-821f-42b2-83e9-62aaf9c4a308
C:\ProgramData\hash.dat
C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat
Task: {9C71C9BA-621D-46DA-A478-C0F897933490} - System32\Tasks\godzilla_shopper_helper_service => C:\Program Files (x86)\Godzilla Shopper\godzilla_shopper_helper_service.exe <==== UWAGA
Task: {9D8073BE-E961-4D9B-88D8-B9A9C290A8E6} - System32\Tasks\Touch Browser => Rundll32.exe "C:\Users\user\AppData\Local\Touch Browser\Bin\TouchBrowser.dll",#3 <==== UWAGA
C:\Users\user\AppData\Local\Touch Browser
C:\Program Files (x86)\Godzilla Shopper
Task: {D9613BA9-B44D-4750-A350-1809A5C1735A} - System32\Tasks\sup_games_notification_service => C:\Program Files (x86)\sup games\sup_games_notification_service.exe <==== UWAGA
C:\Program Files (x86)\sup games
Task: C:\Windows\Tasks\godzilla_shopper_helper_service.job => C:\Program Files (x86)\Godzilla Shopper\godzilla_shopper_helper_service.exe <==== UWAGA
Task: C:\Windows\Tasks\sup_games_notification_service.job => C:\Program Files (x86)\sup games\sup_games_notification_service.exeǥ/url='hxxp:/cdn.selectbestopt.com/notf_sys/index.html' /crregname='sup games' /appid='73143' /srcid='2913' /bic='1abfc552069b430af7a512508e7fcbea' /verifier='eb464f2e898c5ad9db85e5a86dc842d9' /installerversion='1.50.3.10' /statsdomain='hxxp:/stats.buildomserv.com/data.gif?' /errorsdomain='hxxp:/stats.buildomserv.com/data.gif?' /monetizationdomain='hxxp:/logs.buildomserv.com/monetization.gif <==== UWAGA
EmptyTemp:
13 Lis 2015, 22:29
14 Lis 2015, 18:40
Toolbar: HKU\S-1-5-21-597724127-1644861597-3766419850-1000Brak nazwy - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Brak pliku
2015-11-13 21:23 - 2015-11-13 21:23 - 00094656 _____ (CACE Technologies) C:\Windows\system32\WPRO_41_2001woem.tmp
2015-11-11 10:03 - 2015-11-13 21:18 - 00000000 ____D C:\AdwCleaner