Odinstalowales RAVAntivirus?
Fixlist.txt dla FRST:
CloseProcesses:
HKLM-x32\...\Run: [QHSafeTray] => "C:\Program Files (x86)\360\Total Security\safemon\360Tray.exe" /start (Brak pliku)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA
S4 rsClientSvc; C:\Program Files\RAVAntivirus\rsClientSvc.exe [728904 2022-08-06] (Reason Cybersecurity Inc. -> Reason Software Company Inc.)
S4 rsDNSClientSvc; C:\Program Files\ReasonSaferWeb\rsDNSClientSvc.exe [740984 2022-08-06] (Reason Cybersecurity Inc. -> Reason Software Company Inc.)
S4 rsDNSResolver; C:\Program Files\ReasonSaferWeb\rsDNSResolver.exe [10827384 2022-08-06] (Reason Cybersecurity Inc. -> )
S4 rsDNSSvc; C:\Program Files\ReasonSaferWeb\rsDNSSvc.exe [332408 2022-08-06] (Reason Cybersecurity Inc. -> Reason Software Company Inc.)
S4 rsEngineSvc; C:\Program Files\RAVAntivirus\rsEngineSvc.exe [354632 2022-08-06] (Reason Cybersecurity Inc. -> Reason Software Company Inc.)
S4 rsSyncSvc; C:\Program Files\RAVAntivirus\x64\rsSyncSvc.exe [578808 2022-07-31] (Reason Cybersecurity Inc. -> Reason Software Company Inc.)
S4 rsWSC; C:\Program Files\RAVAntivirus\rsWSC.exe [204504 2022-08-06] (Reason Cybersecurity Inc. -> Reason Software Company Inc.)
S2 QHActiveDefense; "C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe" [X]
C:\Program Files\RAVAntivirus\
R1 360AntiHacker; C:\WINDOWS\System32\Drivers\360AntiHacker64.sys [199896 2023-03-15] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
S3 360AvFlt; C:\WINDOWS\System32\DRIVERS\360AvFlt.sys [110800 2023-03-15] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R1 360Box64; C:\WINDOWS\System32\DRIVERS\360Box64.sys [360664 2023-03-15] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R1 360Camera; C:\WINDOWS\System32\Drivers\360Camera64.sys [58200 2023-03-15] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
S0 360elam64; C:\WINDOWS\System32\DRIVERS\360elam64.sys [17000 2023-03-15] (Microsoft Windows Early Launch Anti-malware Publisher -> 360.cn)
R1 360FsFlt; C:\WINDOWS\System32\DRIVERS\360FsFlt.sys [540416 2023-03-15] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
S4 360Hvm; C:\WINDOWS\System32\Drivers\360Hvm64.sys [348384 2023-03-15] (Beijing Qihu Technology Co., Ltd. -> 360安全中心)
R1 360netmon; C:\WINDOWS\System32\DRIVERS\360netmon.sys [96424 2023-03-15] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
R1 ReasonCamFilter; C:\WINDOWS\System32\DRIVERS\ReasonCamFilter.sys [49992 2022-08-06] (Reason CyberSecurity Inc. -> Reason Software Company)
S3 rsDwf; C:\WINDOWS\system32\DRIVERS\rsDwf.sys [54144 2022-08-06] (Reason CyberSecurity Inc. -> Reason CyberSecurity Inc.)
S0 rsElam; C:\WINDOWS\System32\drivers\rsElam.sys [19944 2022-08-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Reason CyberSecurity Inc.)
R1 rsKernelEngine; C:\WINDOWS\System32\DRIVERS\rsKernelEngine.sys [49456 2022-08-06] (Reason CyberSecurity Inc. -> Windows (R) Win 7 DDK provider)
2024-03-18 16:22 - 2024-03-18 16:22 - 000000008 _____ C:\ProgramData\ntuser.pol
2024-03-18 15:16 - 2024-03-18 15:17 - 000000000 ____D C:\AdwCleaner
2024-03-18 16:32 - 2024-01-11 07:51 - 000000000 ____D C:\Users\grzeg\AppData\Roaming\pbxvvqtjzvnd
2024-03-18 16:32 - 2024-01-02 10:37 - 000000000 ____D C:\Users\grzeg\AppData\Roaming\atzcnomycqqa
2024-03-18 16:32 - 2021-03-12 20:11 - 000000000 ____D C:\Users\grzeg\AppData\Roaming\GzZFXOndaTQHgG
2024-03-18 16:20 - 2021-03-12 20:11 - 000000000 __SHD C:\Users\grzeg\AppData\Local\Disk
2024-03-18 16:20 - 2021-03-12 20:11 - 000000000 ____D C:\WINDOWS\system32\Tasks\Services
2024-03-18 15:17 - 2023-07-30 09:13 - 000000000 ____D C:\Users\grzeg\AppData\Roaming\Lavasoft
2024-03-18 15:17 - 2023-07-30 09:13 - 000000000 ____D C:\Users\grzeg\AppData\Local\Lavasoft
2024-03-18 15:17 - 2023-07-30 09:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2024-03-18 15:17 - 2023-07-30 09:12 - 000000000 ____D C:\ProgramData\Lavasoft
2024-03-18 15:17 - 2023-07-30 09:12 - 000000000 ____D C:\Program Files (x86)\Lavasoft
2024-03-14 14:28 - 2023-08-19 09:22 - 000000000 _RSHD C:\360SANDBOX
2023-12-04 08:33 - 2023-11-23 14:53 - 000000061 _____ () C:\ProgramData\benchmark_10M.cmd
2023-12-04 08:33 - 2023-11-23 14:53 - 000000060 _____ () C:\ProgramData\benchmark_1M.cmd
2021-03-16 09:32 - 2021-09-28 20:12 - 000000004 _____ () C:\ProgramData\lock.dat
2023-12-04 08:33 - 2023-11-23 14:53 - 000001023 _____ () C:\ProgramData\pool_mine_example.cmd
2021-03-16 09:56 - 2021-09-28 20:12 - 000000004 _____ () C:\ProgramData\rc.dat
2023-12-04 08:33 - 2023-11-23 14:53 - 000001220 _____ () C:\ProgramData\rtm_ghostrider_example.cmd
2023-12-04 08:33 - 2023-11-25 22:06 - 000000052 _____ () C:\ProgramData\run.cmd
2024-01-29 11:14 - 2024-01-26 20:18 - 000000060 _____ () C:\ProgramData\sbhfth.cmd
2023-12-04 08:33 - 2023-11-23 14:53 - 000000821 _____ () C:\ProgramData\solo_mine_example.cmd
2021-03-16 09:32 - 2021-03-16 09:32 - 000000008 _____ () C:\ProgramData\ts.dat
2021-11-29 20:45 - 2021-07-22 19:40 - 000265504 ____R (Valve Corporation) C:\Program Files (x86)\steam_api64.cdx
2021-11-29 20:45 - 2021-07-22 19:40 - 000401640 ____R (Valve Corporation) C:\Program Files (x86)\steam_api64.dll
C:\Users\grzeg\AppData\Local\Disk
C:\Program Files\RAVAntivirus
Po wykonaniu zamiesc nowe logi ze skanowania.