16 Kwi 2020, 17:34
17 Kwi 2020, 02:27
HKU\S-1-5-21-28359674-3157001413-3025923474-1001\...\Winlogon: [Shell] %comspec% <==== UWAGA
HKU\S-1-5-21-28359674-3157001413-3025923474-1001\...\Command Processor: @mode 20,5 & tasklist /FI "IMAGENAME eq SoundMixer.exe" 2>NUL | find /I /N "SoundMixer.exe">NUL && exit & if exist " ( start /MIN "" " & tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) else ( tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) <==== UWAGA
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => nie znaleziono
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi => nie znaleziono
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{0215A4C0-5431-4FD0-9B06-46589B5C4939}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{048ED0E0-12CF-4C0F-9FFA-947C2FBE8C8E}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{071339A1-1946-44B2-B63E-50459B15DB86}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{08A60FF7-BB37-44F4-9759-0ADA6C7B9CC9}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{0B38CACA-3D3C-48EA-BEB5-7D95F4F6EE15}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{0C3393F8-94F5-4B79-8C01-49A2D0CC0FE9}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{0D555CE0-304A-47A6-858B-B145209A3982}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{12545889-6D32-4424-9967-1E1D7BD1F809}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{14679E3B-C952-4998-8E13-4B1286E6DD99}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{1481B385-759A-4B00-9257-E96357563999}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{162EF0A1-5A33-46F2-ACCF-CA388B084A09}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{1D625598-C876-4C51-8EF5-F9D8F96F62AA}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{1D6DFD6A-9E16-435A-9327-6FFEC6BA372F}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{1E5724EA-3423-4BD3-ABD6-46E650D2DC66}\InprocServer32 -> AcETransmit.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{1E8A29BA-827D-4031-A4A3-AE7999B402F6}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{1EA072EE-57FD-495E-889C-8243C3BDBDBC}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{1FD7F53F-7ED5-439C-9A77-A3821CD09E98}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{20E47D5B-529A-45BD-8E77-BF1A3064A008}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{2709544A-5B24-4F9F-A5DA-CEC7297D3A4E}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{2BCA857B-A18B-4AFA-B183-CC0E49C12058}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{2C74F89E-7421-46B4-BA54-F86F1BD9F237}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{2C7D1157-7D50-4A88-9777-5EBBA3189AB8}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{3497C2EC-5684-4B21-AF74-F6760E0221DC}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{38C8B14E-7879-4DA9-8C3F-8CAAC359293A}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{3FCEB42C-9B98-486A-BED7-FD7F3ADB7291}\InprocServer32 -> AcETransmit.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{40770568-0D5E-49D4-BE47-BC47A4F0B0A4}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{44A52280-AE56-490D-890C-89FB7279ED6B}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{46C56738-39C6-4240-8B9B-008CCD769A84}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{47179DDE-10AC-4737-97C9-8CE5379343EA}\InprocServer32 -> AcETransmit.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{475C7B4A-6964-4F9E-9708-05A16EAC31D0}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{48270F9E-CCF6-4C79-B6FF-267C960E6425}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{48FEFCD7-5D7C-4E4A-9F11-60E69A31D4B1}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{49998808-648A-4A9C-A7A5-B1672775D9AB}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{4A756F5F-CBA4-428B-B17F-AF80C0C8502D}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{4B40437B-8972-4444-BBE3-1588FF55F203}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{4BD03680-3C0F-4501-AFF7-3D008586917F}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{5544903C-2CCC-487C-91BB-F310B72A8E9B}\InprocServer32 -> AcETransmit.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{59A224A2-BEF8-4C89-96E0-83A5411ABB6C}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{622F6193-E4DD-46E6-BC66-2ED88E9FD28D}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{6451051B-AD22-4C6A-ACCE-013A0E1DDBC3}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{64B99FDB-1D85-447F-98C7-569DBDA723DB}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{6BCE6F6E-C050-4F39-BD98-E2743949F724}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{6F56D7C9-18DD-4C15-9FA8-C54E3610EC40}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{70DBCAE8-8C2B-450C-9E1D-43E4686C6512}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{713C0E8A-5AE8-4695-B442-5ED6C4FE5C42}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{7293E009-3015-4AD3-96EC-D42C36B5FCE3}\InprocServer32 -> AcETransmit.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{72EFC580-D085-4B81-8C55-26A79E445338}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{750AEC19-2E4C-4ED9-9B9F-F9CAFCD060F3}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{794199C5-827C-41C8-8CB2-3A1EA056AF5E}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{798391FE-4AF2-4851-9DDA-1F0D70C02A9E}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{7BA16B3F-1AB3-4BD7-B959-52C4B8504EE9}\InprocServer32 -> AcInetUI.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{7C239DAB-BC87-45F3-B7B1-FCC1541A235B}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{834CE679-2E47-49DE-9E41-FEC87E9192EB}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{849AFB5B-D6C9-4924-A712-F7118FF9611F}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{85452F88-5071-492E-B850-2E3C586DCBD8}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{87F5CF8F-A06D-498F-A05F-E520E6B570DB}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{89F0FC31-3B1D-494B-A75B-6BD4FA527B8A}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{8AA16DFC-DFC6-4B51-8FA2-A5D812BE33BF}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{8ED07FEF-E1B0-4CC3-B2BA-D354828AB952}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{988F4102-E6E3-4282-ACAC-55270827F2A8}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{9906CDFC-DB2C-4126-9422-13139B148495}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{9A21C6C5-27FC-4442-8590-575E7AFD73BB}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{9ECF83FB-23C5-43B6-83DE-93CFBDD74D4A}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{A58F47CC-FF65-4152-B0B1-666C643A5BFC}\InprocServer32 -> AcETransmit.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{A6A3D586-44CF-44C2-A92C-620BB713B4F2}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{ABBE3F83-D585-4A50-9B69-198B0F566F2E}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{AC5CECFA-F03A-41D2-A89C-704C44935941}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{B1560245-190E-4BBD-81DF-9B642D0E5325}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{B2A579E0-A797-40B1-8AEE-A8F6404719F8}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{B47196BC-D4AB-41BB-A771-543D67CFC9F5}\InprocServer32 -> AcETransmit.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{B53CEF4B-1A13-49DE-BBC5-A7100FB2F38C}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{B5EE2B68-9A23-4BCD-BB77-FEA6DFB24DD6}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{B80687F9-FA4C-4735-9DC4-E5715F2BC698}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{BAE5802A-CF21-4F9C-AE04-D98F4036AC31}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{BBF6A206-CB04-479D-96AE-349E1E83319A}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{BC71DEA1-D6FB-48B8-AB06-D151C81BBCDD}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{BF224DC3-B602-4EEE-BFE9-9E4E0AED6837}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{BF4CC07E-E9BB-40D6-873F-855B211033B9}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{C061C82C-D041-4214-BB07-B608107CEFCB}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{C2D4ACCC-A3D1-4A0A-AD59-0DD8BA3D5EE1}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{C8C18F89-794D-466B-8B97-95634D9890EF}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{C8EC7647-1E79-4F13-81D7-2EED803D0D22}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{CC23CA32-9892-4FBA-A108-FE31CA0F35A6}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{CD865713-70D6-4E15-BB7B-9B99AD9DEB85}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{D56F5AB3-9C4D-4F1A-A851-A671D9FE8C22}\InprocServer32 -> AcETransmit.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{D66873EA-AAE5-41CC-8DD2-8CE3228E9F89}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{D86B6C47-11F2-4D95-B635-EA575F0892FC}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{DB207560-8449-4FAF-BDC2-61676EB012D4}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{DE74F5AD-DA2F-429F-BAF9-850A2808D585}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{DF6525C2-6358-4B07-813D-708120C5FE1A}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{E177A457-9EAA-43C3-A3CE-84874A28F6CA}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{E29F6C45-6927-4508-8F3F-34105FD3FC5F}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{E4222C78-3670-4BB1-9AD4-7D8F3E581F2D}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{E70DE962-842A-4488-9481-1D0FD72A020F}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{E9C07CEC-7B82-49E4-BBA2-7533B88E9D64}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{EA34A0C0-5CE7-4701-A6FA-117D25CD5EBB}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{EF01D98A-747B-4522-AD70-991B90855DBF}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{F196F03F-651A-43AF-BE34-D11942F24445}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{F2DB0EE3-7137-4CB0-8349-483C4FF2143A}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{F40E2FF0-4D77-40B2-9A44-A3AEECCE8EFF}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{F5522F0C-962A-48AC-9992-E81B07628F1F}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{F78DCF7C-043D-45FC-9D21-676FC307BA3F}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{F868EAEC-1B73-4F5E-BA73-90EBA94E75BE}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{FA97F7A7-FD19-4D55-ABF2-CFEFFF777426}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{FD51ED8A-D518-4554-B236-B6E9D234FD03}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{FE054BB2-AF94-40AC-88AA-2F59F7018B1D}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{FE317223-8EDE-4684-B424-E48B9EA90220}\InprocServer32 -> axdb.dll => Brak pliku
CustomCLSID: HKU\S-1-5-21-28359674-3157001413-3025923474-1001_Classes\CLSID\{FE718E8F-C3AA-4F30-9103-432450CF1DA1}\InprocServer32 -> axdb.dll => Brak pliku
FirewallRules: [{9C0BCE83-AA0A-4CA1-BA9A-1DD0A828B12D}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe Brak pliku
FirewallRules: [{2634D90E-8B40-4435-9929-B7B8CE48DE8B}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe Brak pliku
FirewallRules: [{8A2325BF-042E-4A3A-B536-52BA7A983793}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Brak pliku
FirewallRules: [{45CDA7F7-59CB-494C-B20B-CBA9D19EB4FD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Brak pliku
FirewallRules: [{0A10AD82-9E8E-4466-9B95-2BA34EA09C78}] => (Allow) D:\Program Files (x86\The Elder Scrolls V Skyrim Legendary Edition\SkyrimLauncher.exe Brak pliku
FirewallRules: [{82A4C15B-D259-4D90-B5EC-6EF525A808A4}] => (Allow) D:\Program Files (x86\The Elder Scrolls V Skyrim Legendary Edition\SkyrimLauncher.exe Brak pliku
FirewallRules: [TCP Query User{332AD533-BE79-4D93-AD9F-72FEA6037AD1}C:\users\erito\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\erito\appdata\local\akamai\netsession_win.exe Brak pliku
FirewallRules: [UDP Query User{77973FF4-3882-4971-809C-4B1C302CBA49}C:\users\erito\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\erito\appdata\local\akamai\netsession_win.exe Brak pliku
FirewallRules: [{F9284827-FC28-4CD6-8EFF-26D3624106F2}] => (Block) D:\Games\The Elder Scrolls V Skyrim Special Edition\SkyrimSELauncher.exe Brak pliku
FirewallRules: [{5DB70189-CD64-43E4-A70C-34A77D51F17D}] => (Block) D:\Games\The Elder Scrolls V Skyrim Special Edition\SkyrimSE.exe Brak pliku
C:\Users\Erito\AppData\Roaming\Microsoft\Word\umowa%20hudraulik308053823997142256\umowa%20hudraulik.docx.lnk
EmptyTemp:
17 Kwi 2020, 10:58
17 Kwi 2020, 15:55
11 Lis 2020, 19:26
12 Lis 2020, 00:28
12 Lis 2020, 19:09
12 Lis 2020, 19:55
Performancer (HKLM-x32\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{dfc86759}) (Version: - 24soft) <==== UWAGA
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-715093024-1239835609-3985976727-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.buenosearch.com/?babsrc=HP_ss&mntrId=12390E84DCF75C31&affID=127894&tsp=5140
HKU\S-1-5-21-715093024-1239835609-3985976727-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com
HKU\S-1-5-21-715093024-1239835609-3985976727-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://vod.tvp.pl/website/m-jak-milosc,1654521
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-715093024-1239835609-3985976727-1001 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www.buenosearch.com/?q={searchTerms}&babsrc=SP_ss&mntrId=12390E84DCF75C31&affID=127894&tsp=5140
SearchScopes: HKU\S-1-5-21-715093024-1239835609-3985976727-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=SK2MDF&PC=SK2M&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-715093024-1239835609-3985976727-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=SK2MDF&PC=SK2M&q={searchTerms}&src=IE-SearchBox
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Brak pliku)
FirewallRules: [TCP Query User{940D3C2B-50D5-42AB-968D-86A8916D908A}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe => Brak pliku
FirewallRules: [UDP Query User{9EBB8627-4962-4601-B36A-663195AF07F2}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe => Brak pliku
FirewallRules: [TCP Query User{25D6E77F-5FE5-4E54-9705-1C1B53F286BD}C:\program files\jetbrains\intellij idea 183.2940.10\jre64\bin\java.exe] => (Allow) C:\program files\jetbrains\intellij idea 183.2940.10\jre64\bin\java.exe => Brak pliku
FirewallRules: [UDP Query User{22BAF1FA-FC51-47E7-A41B-BD2D197010E2}C:\program files\jetbrains\intellij idea 183.2940.10\jre64\bin\java.exe] => (Allow) C:\program files\jetbrains\intellij idea 183.2940.10\jre64\bin\java.exe => Brak pliku
FirewallRules: [TCP Query User{067F28D4-3DFC-4DF5-B6BD-D4622AE2E126}C:\program files\jetbrains\intellij idea 183.2940.10\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea 183.2940.10\bin\idea64.exe => Brak pliku
FirewallRules: [UDP Query User{093E1E85-8147-493E-B2D4-09F1AF97437A}C:\program files\jetbrains\intellij idea 183.2940.10\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea 183.2940.10\bin\idea64.exe => Brak pliku
IFEO\DatamngrCoordinator.exe: [Debugger] tasklist.exe
GroupPolicy: Ograniczenia - Chrome <==== UWAGA
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA
AutoConfigURL: [{C1FA4528-8305-43E0-9627-94E8BD8932DA}] => hxxp://cdn1.browsersecurity.net/safe/cloud.js?si=77302&tid=18145&ver=5.7&ts=1400347549778&tguid=77302-18145-1400347549778-D05EF95EB6741F413F61B689A010EBEB
AutoConfigURL: [S-1-5-21-715093024-1239835609-3985976727-1002] => hxxp://cdn1.browsersecurity.net/safe/cloud.js?si=77302&tid=18145&ver=5.7&ts=1400347549778&tguid=77302-18145-1400347549778-D05EF95EB6741F413F61B689A010EBEB
ManualProxies: 0hxxp://cdn1.browsersecurity.net/safe/cloud.js?si=77302&tid=18145&ver=5.7&ts=1400347549778&tguid=77302-18145-1400347549778-D05EF95EB6741F413F61B689A010EBEB
FF HKU\S-1-5-21-715093024-1239835609-3985976727-1002\...\Firefox\Extensions: [freegames4357@BestOffers] - C:\Users\Katarzyna\AppData\Roaming\Mozilla\Extensions\freegames4357@BestOffers => nie znaleziono
FF HKU\S-1-5-21-715093024-1239835609-3985976727-1002\...\Firefox\Extensions: [speedtest4354@BestOffers] - C:\Users\Katarzyna\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers => nie znaleziono
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [Brak pliku]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <nie znaleziono>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <nie znaleziono>
S3 semav6msr64; \??\C:\WINDOWS\system32\drivers\semav6msr64.sys [X]
S3 semav6thermal64ro; \??\C:\WINDOWS\system32\drivers\semav6thermal64ro.sys [X]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter\GDSMux.lnk
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter\Uninstall.lnk
C:\Users\Katarzyna\Pictures\New folder\Canon Solution Menu EX.lnk
C:\Users\Katarzyna\Pictures\New folder\Continue Live Installation.lnk
C:\Users\Katarzyna\Pictures\New folder\VAIO Manual.lnk
C:\Users\Katarzyna\Pictures\New folder\VAIO Update.lnk
C:\Users\Katarzyna\Documents\Nowy folder\Garmin Express.lnk
C:\Users\Katarzyna\Documents\Nowy folder\IntelliJ IDEA 183.2940.10 x64.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flvto YouTube Downloader.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Uninstall Flvto YouTube Downloader.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flvto Youtube Downloader\Flvto Youtube Downloader.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flvto Youtube Downloader\Uninstall Flvto Youtube Downloader.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Avast Secure Browser.lnk
C:\Users\Katarzyna\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Viber.lnk
C:\Users\Katarzyna\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Calendar.lnk
C:\Users\Katarzyna\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Mail.lnk
C:\Users\Katarzyna\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.People.lnk
EmptyTemp:
12 Lis 2020, 21:24
12 Lis 2020, 21:41
12 Lis 2020, 23:24
13 Lis 2020, 01:20
Tcpip\..\Interfaces\{88C1EB6D-8D93-4D1B-BB27-406659378B05}: [DhcpNameServer] 192.168.1.1 192.168.1.1
S3 NetworkSupport; "C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe" [X]
S3 SpfService; "C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe" [X]
S3 VAIO Event Service; "C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe" [X]
S3 VAIO Power Management; "C:\Program Files\Sony\VAIO Power Management\SPMService.exe" [X]
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
CMD: netsh advfirewall reset
CMD: ipconfig /release
CMD: ipconfig /all
CMD: ipconfig /flushdns
CMD: ipconfig /renew
CMD: netsh winsock reset
CMD: netsh int ip set dns
EmptyTemp: