Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 20-06-2020 Uruchomiony przez muszk (20-06-2020 19:16:47) Run:1 Uruchomiony z C:\Users\muszk\OneDrive\Pulpit Załadowane profile: muszk Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CreateRestorePoint: CMD: reg query "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options" /s ***************** Punkt przywracania został pomyślnie utworzony. ========= reg query "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options" /s ========= HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\adobe premiere pro.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\adobe premiere pro.exe\6c4b88c7_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\adobe\adobe premiere pro cc 2019\adobe premiere pro.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AppSharingHookController.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AsusUpdate.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\autoclicker.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\autoclicker.exe\da1f3e20_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\onedrive\pulpit\autoclicker.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AvastBrowserUpdate.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cblauncher.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cblauncher.exe\201ffff_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\codeblocks\cblauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cbp2make.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cbp2make.exe\201ffff_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\codeblocks\cbp2make.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cb_share_config.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cb_share_config.exe\201ffff_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\codeblocks\cb_share_config.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cc patcher s.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cc patcher s.exe\caf94385_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\appdata\local\ccpatcher\cc patcher s.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\clview.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cnfnot32.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\codeblocks.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\codeblocks.exe\201ffff_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\codeblocks\codeblocks.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\creative cloud.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\creative cloud.exe\818ed5de_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\adobe\adobe creative cloud\acc\creative cloud.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dropbox.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dropbox.exe\c8524023_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files (x86)\dropbox\client\dropbox.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DropboxUpdate.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\excelcnv.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ExtExport.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\GoogleUpdate.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\graph.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ie4uinit.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ieinstal.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ielowutil.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ieUnatt.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iexplore.exe DisableExceptionChainValidation REG_DWORD 0x0 DisableUserModeCallbackFilter REG_DWORD 0x1 MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\installer.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\installer.exe\85fc86b9_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\appdata\roaming\zoom\uninstall\installer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\launcher.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\launcher.exe\8ae8a7e9_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ C:\Users\muszk\AppData\Local\Programs\Opera GX\launcher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\launcher.exe\b820b326_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\appdata\local\programs\opera\launcher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\lcore.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\lcore.exe\bcaeb61e_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\logitech gaming software\lcore.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\LICLUA.EXE DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\logicapture.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\logicapture.exe\527775ae_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\logitech\logicapture\bin\logicapture.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\lync.exe UseFilter REG_DWORD 0x1 MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\lync.exe\2a33dc50_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\microsoft office\root\office16\lync.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mc launcher v4.3.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mc launcher v4.3.exe\da1f3e20_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\onedrive\pulpit\mc launcher v4.3.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MicrosoftEdgeUpdate.exe DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MRT.exe CFGOptions REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mscorsvw.exe MitigationOptions REG_QWORD 0x100000000 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msfeedssync.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mshta.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MsMpEng.exe CFGOptions REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msoadfsb.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msoasb.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msohtmed.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msosrec.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msosync.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\msqry32.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ngen.exe MitigationOptions REG_QWORD 0x100000000 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ngentask.exe MitigationOptions REG_QWORD 0x100000000 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nvidia geforce experience.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nvidia geforce experience.exe\e6daf751_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files (x86)\nvidia corporation\nvidia geforce experience\nvidia geforce experience.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\onenotem.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\orgchart.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\origin.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\origin.exe\cae331b6_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files (x86)\origin\origin.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\originer.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\originer.exe\cae331b6_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files (x86)\origin\originer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\originuninstall.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\originuninstall.exe\cae331b6_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files (x86)\origin\originuninstall.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\OSPPREARM.EXE DisableExceptionChainValidation REG_DWORD 0x0 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PresentationHost.exe MitigationOptions REG_QWORD 0x111111 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PrintDialog.exe MitigationOptions REG_QWORD 0x100000000 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PrintIsolationHost.exe MitigationOptions REG_QWORD 0x200000 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\r5apex.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\r5apex.exe\586211f2_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ d:\no to fajnie\apex\r5apex.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\runtimebroker.exe MitigationOptions REG_QWORD 0x100000000 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\scanost.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\scanpst.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sdxhelper.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\selfcert.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\setlang.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\splwow64.exe MitigationOptions REG_QWORD 0x200000 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\spoolsv.exe MitigationOptions REG_QWORD 0x200000 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\steam.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\steam.exe\2323e56a_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ D:\D_Steam\Steam.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\steam.exe\307c5ddc_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files (x86)\steam\steam.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\steam.exe\fbf29cc5_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\onedrive\pulpit\nowy folder\steam.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\svchost.exe MinimumStackCommitInBytes REG_DWORD 0x8000 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SystemSettings.exe MitigationOptions REG_QWORD 0x100000000 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tlauncher.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tlauncher.exe\88f9fcc3_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\appdata\roaming\.minecraft\tlauncher.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\uninstall.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\uninstall.exe\201ffff_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\codeblocks\uninstall.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Update.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Update.exe\d8f35c00_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ C:\Users\muszk\AppData\Local\Discord\Update.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\virtualbox.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\virtualbox.exe\470ef78b_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\program files\oracle\virtualbox\virtualbox.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\win 10.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\win 10.exe\da1f3e20_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\onedrive\pulpit\win 10.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\winrar.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\winrar.exe\1d8193a4_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\winrar.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wordconv.exe MitigationOptions REG_QWORD 0x100 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\xampp-windows-x64-7.4.3-0-vc15-installer.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\xampp-windows-x64-7.4.3-0-vc15-installer.exe\da1f3e20_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\onedrive\pulpit\xampp-windows-x64-7.4.3-0-vc15-installer.exe HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\zoom.exe UseFilter REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\zoom.exe\908c9ce6_PD Debugger REG_SZ "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe" FilterFullPath REG_SZ c:\users\muszk\appdata\roaming\zoom\bin\zoom.exe ========= Koniec CMD: ========= ==== Koniec Fixlog 19:17:00 ====