CloseProcesses: CreateRestorePoint: EmptyTemp: VirusTotal: C:\WINDOWS\system32\drivers\multikey.sys HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {07cea9e0-d65a-11e0-bd7d-00150054552f} - F:\APPInst.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {2337418f-bb7f-11df-bc81-00150054552f} - F:\AutoRun.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {287caf62-4243-11df-bbf5-00150054552f} - F:\StartPortableApps.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {2dc83300-02b4-11e2-be59-00150054552f} - setupSNK.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {2f0b4ad6-28ce-11e1-bdc8-00150054552f} - F:\DTVP_Launcher.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {5f5bf65c-0494-11df-bb8e-000e8c812465} - click/jack.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {5f5bf65d-0494-11df-bb8e-000e8c812465} - click/jack.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {60d45adc-34fc-11e2-be8e-00150054552f} - F:\setupSNK.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {63246986-0192-11e6-8056-00150054552f} - F:\AutoRun.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {67d0f5da-c894-11de-bb3d-000e8c812465} - F:\AutoRun.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {7ea15b40-32a6-11e2-be8b-00150054552f} - F:\AutoRun.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {886aab06-d9ae-11e0-bd80-00150054552f} - F:\AutoRun.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {886aab0d-d9ae-11e0-bd80-00150054552f} - F:\AutoRun.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {918534a8-b462-11df-bc7c-00150054552f} - F:\StartPortableApps.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {9b4425d2-09ff-11e2-be5e-00150054552f} - F:\AutoRun.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {9b4425d6-09ff-11e2-be5e-00150054552f} - F:\AutoRun.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {f1456fac-1c14-11df-bbab-00150054552f} - F:\AutoRun.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {f1456fad-1c14-11df-bbab-00150054552f} - F:\AutoRun.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\MountPoints2: {f43408f4-d9c2-11e6-b613-00150054552f} - F:\Setup.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\...\Winlogon: [Shell] C:\WINDOWS\Explorer.exe [1032192 2005-02-01] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION Lsa: [Notification Packages] :\WINDOW Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe HKU\S-1-5-21-854245398-1958367476-1801674531-500\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.pl/ HKU\S-1-5-21-854245398-1958367476-1801674531-500\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch S4 MoboroboDeviceService; C:\Program Files\Moborobo\MoboroboDeviceService.exe [X] S4 TcEventLogger; "C:\TwinCAT\EventLogger\TcEventLogger.exe" [X] U3 SSDPSRV; C:\WINDOWS\system32\svchost.exe [14336 2005-02-01] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL) U3 av9ry7h9; C:\Windows\System32\Drivers\av9ry7h9.sys [0 0000-00-00] (Microsoft Corporation) <==== ATTENTION (zero byte File/Folder) U2 CertPropSvc; no ImagePath U4 dwshd; \SystemRoot\System32\drivers\dwshd.sys [X] S4 ewusbnet; system32\DRIVERS\ewusbnet.sys [X] S4 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X] S4 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X] S4 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X] S4 huawei_cdcecm; system32\DRIVERS\ew_jucdcecm.sys [X] S4 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X] S4 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X] S4 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X] S4 IOPort; \??\C:\WINDOWS\system32\DRIVERS\IOPORT.SYS [X] S4 S7oppilx; \SystemRoot\System32\Drivers\S7oppilx.sys [X] S4 smserial; system32\DRIVERS\smserial.sys [X] U2 TwinCAT System Service; C:\TwinCAT\TCATSysSrv.exe [X] CustomCLSID: HKU\S-1-5-21-854245398-1958367476-1801674531-500_Classes\CLSID\{039B2CA5-3B41-4D93-AD77-47D3293FC5CB}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File CustomCLSID: HKU\S-1-5-21-854245398-1958367476-1801674531-500_Classes\CLSID\{42481700-CF3C-4D05-8EC6-F9A1C57E8DC0}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File CustomCLSID: HKU\S-1-5-21-854245398-1958367476-1801674531-500_Classes\CLSID\{D0D38C6E-BF64-4C42-840D-3E0019D9F7A6}\InprocServer32 -> C:\Program Files\Skype\Plugin Manager\ezPMUtils.dll => No File