CloseProcesses: CreateRestorePoint: EmptyTemp: HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-1083722848-3659342530-462597780-1001\...\MountPoints2: {000e8f26-096d-11ea-95f0-b42e9960af03} - "H:\setup.exe" HKU\S-1-5-21-1083722848-3659342530-462597780-1001\...\MountPoints2: {0f7733f9-1b70-11ea-95fa-b42e9960af03} - "G:\HiSuiteDownLoader.exe" HKU\S-1-5-21-1083722848-3659342530-462597780-1001\...\MountPoints2: {a5a13077-088c-11ea-95ee-b42e9960af03} - "G:\setup.exe" HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Windows\System32\winlogon.exe [844800 2019-11-18] (Microsoft Windows -> Microsoft Corporation) <==== UWAGA Task: {656F0E63-F068-460F-B65A-7BFAD6ED1990} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK Tcpip\..\Interfaces\{e1686b47-3181-4404-9d2d-8e97bd895df5}: [DhcpNameServer] 192.168.1.1 S2 apachezt; "C:\Users\Merodach\Downloads\xampp\apache\bin\httpd.exe" -k runservice [X] U4 dmwappushsvc; Brak ImagePath S3 EuGdiDrv; \SystemRoot\system32\EuGdiDrv.sys [X] U4 npcap_wifi; Brak ImagePath CustomCLSID: HKU\S-1-5-21-1083722848-3659342530-462597780-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Merodach\AppData\Local\Microsoft\OneDrive\19.174.0902.0013\amd64\FileSyncShell64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-1083722848-3659342530-462597780-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Merodach\AppData\Local\Microsoft\OneDrive\19.174.0902.0013\amd64\FileSyncShell64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-1083722848-3659342530-462597780-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Merodach\AppData\Local\Microsoft\OneDrive\19.174.0902.0013\amd64\FileSyncShell64.dll => Brak pliku ContextMenuHandlers6: [Library Location] -> -{3dad6c5d-2167-4cae-9914-f99e41c12cfa} => -> Brak pliku FirewallRules: [{1A3857E1-3CF3-4338-93A4-06C9ED87E151}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Brak pliku FirewallRules: [{E9DF9570-2488-445F-8D1E-735DAB5EE2AD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Brak pliku FirewallRules: [TCP Query User{B3C9C42D-31E3-4442-8774-C6CF3AE5C27E}C:\users\merodach\appdata\local\programs\nimbus-electron\nimbus note.exe] => (Block) C:\users\merodach\appdata\local\programs\nimbus-electron\nimbus note.exe Brak pliku FirewallRules: [UDP Query User{488A6A76-6915-4EDA-84FA-2045E866C6A2}C:\users\merodach\appdata\local\programs\nimbus-electron\nimbus note.exe] => (Block) C:\users\merodach\appdata\local\programs\nimbus-electron\nimbus note.exe Brak pliku FirewallRules: [TCP Query User{8DE909E9-6BC6-4431-9349-4B612BDF5629}C:\program files (x86)\netgear genie\bin\netgeargenie.exe] => (Allow) C:\program files (x86)\netgear genie\bin\netgeargenie.exe Brak pliku FirewallRules: [UDP Query User{2A6C93E1-7A05-4AF2-A7AD-D0808A23D065}C:\program files (x86)\netgear genie\bin\netgeargenie.exe] => (Allow) C:\program files (x86)\netgear genie\bin\netgeargenie.exe Brak pliku