CloseProcesses: CreateRestorePoint: EmptyTemp: VirusTotal: C:\Users\Biezon\AppData\Roaming\Microsoft\SoundModule\SoundModule.exe HKU\S-1-5-21-3590867538-1801098156-3626726041-1001\...\MountPoints2: {3d3c0c8e-3bb6-11ea-95ea-00d861c240be} - "D:\setup.exe" HKU\S-1-5-21-3590867538-1801098156-3626726041-1001\...\Winlogon: [Shell] %comspec% <==== UWAGA HKU\S-1-5-21-3590867538-1801098156-3626726041-1001\...\Command Processor: @mode 20,5 & tasklist /FI "IMAGENAME eq SoundModule.exe" 2>NUL | find /I /N "SoundModule.exe">NUL && exit & if exist "C:\Users\Biezon\AppData\Roaming\Microsoft\SoundModule\SoundModule.exe" ( start /MIN "" "C:\Users\Biezon\AppData\Roaming\Microsoft\SoundModule\SoundModule.exe" & tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) else ( tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) <==== UWAGA Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa Task: {FB779186-3798-4A61-877A-A476A97F001E} - \Microsoft\Windows\Maintenance\InstallWinSAT -> Brak pliku <==== UWAGA Tcpip\..\Interfaces\{823f2c23-abab-467c-952a-dd8b29e03695}: [DhcpNameServer] 192.168.1.1 ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Brak pliku ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Brak pliku ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Brak pliku FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe Brak pliku