UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.193 Safari/537.36
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.193 Safari/537.36
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
GroupPolicy: Ograniczenia ? <==== UWAGA
S3 cpuz149; \??\C:\WINDOWS\temp\cpuz149\cpuz149_x64.sys [X]
U3 dmwappushsvc; Brak ImagePath
S3 ewusbmbb; \SystemRoot\System32\drivers\ewusbwwan.sys [X]
S3 huawei_enumerator; \SystemRoot\System32\drivers\ew_jubusenum.sys [X]
U4 npcap_wifi; Brak ImagePath
S3 PATRIOTRGB; \SystemRoot\System32\drivers\PATRIOTRGB.sys [X]
CustomCLSID: HKU\S-1-5-21-1833127128-3269513424-1964963530-1001_Classes\CLSID\{028A3F08-E52B-4F35-A3FC-4ED901EDC384}\localserver32 -> C:\WINDOWS\System32\RunDll32.exe "C:\Program Files\Autorun Organizer\Notifications.dll",Activate -ToastActivated => Brak pliku
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Brak pliku
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Brak pliku
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
FirewallRules: [TCP Query User{82B86090-4202-4E2F-9410-1F5EA0000364}C:\program files (x86)\steam\steamapps\common\beamng.drive\bin64\beamng.drive.x64.exe] => (Block) C:\program files (x86)\steam\steamapps\common\beamng.drive\bin64\beamng.drive.x64.exe => Brak pliku
FirewallRules: [UDP Query User{DED05D95-1A74-46B0-8D8E-7B7DFBAE4F73}C:\program files (x86)\steam\steamapps\common\beamng.drive\bin64\beamng.drive.x64.exe] => (Block) C:\program files (x86)\steam\steamapps\common\beamng.drive\bin64\beamng.drive.x64.exe => Brak pliku
FirewallRules: [TCP Query User{16DD5498-04C3-4D87-852E-4A6EC57F1571}C:\users\oskar\desktop\racer\racer.exe] => (Allow) C:\users\oskar\desktop\racer\racer.exe => Brak pliku
FirewallRules: [UDP Query User{11CFDF53-E6DF-462C-A0C1-BFADCA1738D7}C:\users\oskar\desktop\racer\racer.exe] => (Allow) C:\users\oskar\desktop\racer\racer.exe => Brak pliku
FirewallRules: [TCP Query User{B598AB06-7AC3-4EF5-8AC4-E2768E6F90A2}C:\users\oskar\desktop\racer086\racer.exe] => (Allow) C:\users\oskar\desktop\racer086\racer.exe => Brak pliku
FirewallRules: [UDP Query User{9737000A-97B3-4D11-9993-EA44398F2BBC}C:\users\oskar\desktop\racer086\racer.exe] => (Allow) C:\users\oskar\desktop\racer086\racer.exe => Brak pliku
EmptyTemp:
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.193 Safari/537.36
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.193 Safari/537.36
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.193 Safari/537.36
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/86.0.4240.193 Safari/537.36
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0
UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:82.0) Gecko/20100101 Firefox/82.0
GMER 2.2.19882 - http://www.gmer.net
Rootkit scan 2020-11-12 21:35:37
Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000041 NVMe____ rev.1000 476,94GB
Running: gmer.exe; Driver: C:\Users\Oskar\AppData\Local\Temp\pgtdypod.sys
---- Disk sectors - GMER 2.2 ----
Disk \Device\Harddisk0\DR0 unknown MBR code
---- Threads - GMER 2.2 ----
Thread C:\WINDOWS\system32\csrss.exe [820:948] ffff91b8dc2a2a50
---- Services - GMER 2.2 ----
Service C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9A760114-DB31-4D8C-BC3A-AA5FC99C394E}\MpKslDrv.sys (*** hidden *** ) [MANUAL] MpKsl25468228 <-- ROOTKIT !!!
---- EOF - GMER 2.2 ----
Zarejestrowani użytkownicy: Bing [Bot]