CloseProcesses: CreateRestorePoint: EmptyTemp: HKU\S-1-5-21-4288671410-1231269845-4146588583-1000\...\Run: [Google Update] => C:\Users\MACIEK\AppData\Local\Google\Update\1.3.33.17\GoogleUpdateCore.exe [601680 2018-05-17] (Google Inc.) CHR HKU\S-1-5-21-4288671410-1231269845-4146588583-1000\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA Tcpip\..\Interfaces\{0a555d0b-0a09-4263-86bf-3f6e322a5c05}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{0b688da0-dcc7-4c28-bddb-3b15ef1ed3aa}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{0c69e78c-c34d-4b87-81c3-8ce04e27bf6b}: [NameServer] 89.108.195.21 89.108.202.21 Tcpip\..\Interfaces\{1abd815b-82d3-4421-b0fc-42fd939738a9}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{202a3d6f-4f92-4904-ad0a-a2e090197871}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{6d5a9238-c50e-45c5-a3b5-c44c2707e566}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{6dd21292-b706-4df0-88ef-ec57d983a8c2}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{73ccef81-e551-465c-9433-77937d6f6995}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{9F2A8DAE-6E61-486A-9100-1EB8ED3D54A9}: [NameServer] 89.108.195.21 89.108.202.21 Tcpip\..\Interfaces\{a43338ae-e38c-4b6d-8747-0705aae2d355}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{ba97fbb5-0304-4591-9509-4fe1c863ac28}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{ce86ea07-6451-40bf-858d-50bc0e43d071}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{d5520059-5a58-453e-bc06-345744b29d36}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{d6c658f3-7903-48ca-8b45-c5b82423294f}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{ee1a1f23-9855-4c3e-886a-6f8bd5f27799}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{F94E2CE6-25A0-4A24-85F4-FCD61A37AB06}: [DhcpNameServer] 192.168.0.1 192.168.0.1 Tcpip\..\Interfaces\{fde3d30b-69bb-471b-bd98-5bcdc7699a78}: [NameServer] 89.108.195.21 89.108.202.21 HKU\S-1-5-21-4288671410-1231269845-4146588583-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 URLSearchHook: HKU\S-1-5-21-4288671410-1231269845-4146588583-1000 - (Brak nazwy) - {a1e75a0e-4397-4ba8-bb50-e19fb66890f4} - Brak pliku SearchScopes: HKLM-x32 -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW SearchScopes: HKU\S-1-5-21-4288671410-1231269845-4146588583-1000 -> DefaultScope {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 SearchScopes: HKU\S-1-5-21-4288671410-1231269845-4146588583-1000 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01 SearchScopes: HKU\S-1-5-21-4288671410-1231269845-4146588583-1000 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACAW_plPL409 BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> Brak pliku Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - Brak pliku Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Brak pliku Toolbar: HKLM - Brak nazwy - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - Brak pliku Toolbar: HKLM-x32 - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - Brak pliku Toolbar: HKU\S-1-5-21-4288671410-1231269845-4146588583-1000 -> Brak nazwy - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Brak pliku DPF: HKLM-x32 {108D3206-846A-4A93-BACB-F0572D043ED7} hxxp://192.168.77.245/webrec.cab DPF: HKLM-x32 {784797A8-342D-4072-9486-03C8D0F2F0A1} hxxps://www.battlefieldheroes.com/static/updater/BFHUpdater_5.0.110.0.cab FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => nie znaleziono CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.15.0.88\Exts\Chrome.crx CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton Security\Engine\22.15.0.88\Exts\Chrome.crx CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx U3 idsvc; Brak ImagePath ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Brak pliku Task: {040883D7-AF6F-4C7C-9120-F16F58AA7C46} - \{E983784E-68FE-46EF-89C7-5AAF85BC375E} -> Brak pliku <==== UWAGA Task: {055CBC71-B29B-4A47-BBAD-F2CAA3DE6F10} - \{C239788A-D2FE-4BB7-AE5F-21641CB26672} -> Brak pliku <==== UWAGA Task: {085AB568-567E-41F9-B39D-3FF52B3B96B2} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe Task: {08FBC3C1-65D2-406F-9958-4921B1189582} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {090EDAA4-5215-438C-834A-546CDA92E3BA} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Brak pliku <==== UWAGA Task: {0ABC3C42-3C61-4AF7-8AEC-2CA11B14556C} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {0FDF66E8-984B-4B8E-AC29-11083C7EDED0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.) Task: {151F9AC1-2A20-4D11-92B9-AC5BB0D7E42C} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Brak pliku <==== UWAGA Task: {1CD1E14C-7ED2-423F-97EE-992CF72E5FE4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.) Task: {1DAD5DCA-B979-4743-9365-33E4E1FDDF5D} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Brak pliku <==== UWAGA Task: {1EC261DD-735E-4497-A690-E50E807DAE07} - \Microsoft\Windows\UNP\RunCampaignManager -> Brak pliku <==== UWAGA Task: {1F463C06-0117-4F5D-ADDF-D309461B3941} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {1F5D11B4-32FC-49A9-882E-65969B396B38} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {24E7089B-52D2-4DFC-A3B0-0A616284641A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {2CBD3DDE-AA62-4954-99B4-E4E909D9CA70} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {3402BCF9-8912-4599-A591-12B7DF19FD44} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3AE13438-198D-43AA-95E7-004D3D2CA09A} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {3CA01B27-FB63-4578-A11D-44F72C3943D2} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3D2A56E3-4154-4893-B3D0-E77C792B20BA} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {464E4D7A-0254-4300-A440-13DAB453C85D} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Brak pliku <==== UWAGA Task: {46A66CB7-4E66-41F7-A8B3-67714DF062BD} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {4E3DB340-87A4-4AB8-AA3B-1A6EB5088E14} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Brak pliku <==== UWAGA Task: {570B876A-ECF4-45DE-9881-4D23E6AABD90} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {5A17799C-E8DF-4214-B91B-FEDFAA42F25A} - \WPD\SqmUpload_S-1-5-21-4288671410-1231269845-4146588583-1000 -> Brak pliku <==== UWAGA Task: {5A365B1A-6CD2-46F2-BBAE-67CE8C746F22} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Brak pliku <==== UWAGA Task: {5CA9169E-79C9-46A5-ADF5-1B7A6DDD968A} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {5D6C441C-FF02-4AE4-9173-C1C72C392469} - \{08E654A9-0981-49B8-B7C9-6E86AB690DF1} -> Brak pliku <==== UWAGA Task: {6CD09C09-F7AE-43CF-BEEA-B1A2B04AA28E} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Brak pliku <==== UWAGA Task: {6F0D9B3D-2F47-4DD0-B913-5997580F48FE} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {73D46F48-67BD-4B66-9A0F-4528CF97E63A} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {74B80653-D54F-4B65-BE5A-1BF0A7C98C98} - System32\Tasks\{F83EFA56-4D0A-4A6E-9110-1E62C3D2A6D0} => C:\Windows\system32\pcalua.exe -a C:\Users\MACIEK\Desktop\Nero8Crack.exe -d C:\Users\MACIEK\Desktop Task: {767C7B1B-7556-41B4-8BE4-AF7EE372BAC4} - \{04472F05-5673-4FF6-99A7-FDE452E03B11} -> Brak pliku <==== UWAGA Task: {76ACA76A-DF1F-4143-BDB2-B0901948514E} - System32\Tasks\Opera scheduled Autoupdate 1382025823 => C:\Program Files (x86)\Opera\launcher.exe [2018-07-25] (Opera Software) Task: {7D88DBCD-1DCF-469F-B6FC-DFC5B0E5913F} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {7FF56213-3078-49E5-B7FA-05CCE67CD868} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {823DA5C9-0D92-454C-9627-036703E181BE} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Brak pliku <==== UWAGA Task: {960E1C42-F1D8-47D6-A342-7548207BA7D1} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Brak pliku <==== UWAGA Task: {9B5C20D9-CB52-4FAB-AEAD-59A318CB849F} - \{9E9B2A02-61EC-4DD2-BD02-D5A6BAFBB637} -> Brak pliku <==== UWAGA Task: {9C6A68B3-7AA5-4951-9510-2A2E22B6FB26} - \{C4D1EAC2-4AB4-4EB3-B839-9E51863B5829} -> Brak pliku <==== UWAGA Task: {9FA2BF42-2E3C-4178-AAD8-84D6F1BCE4F5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Brak pliku <==== UWAGA Task: {A6CE8CB4-C869-4AD2-A25A-369BEAE450E2} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Brak pliku <==== UWAGA Task: {B1592EA0-21CB-451B-8381-BC1E477FB7D2} - System32\Tasks\S-1-5-21-4288671410-1231269845-4146588583-1000\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [2018-04-12] (Microsoft Corporation) Task: {BE30E482-7C35-4301-BA95-8F72A66BF5EC} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4288671410-1231269845-4146588583-1000UA => C:\Users\MACIEK\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {C8D92EAD-405C-4991-BE7C-B14D6BAE2BA9} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {CB2B897B-3F9D-488C-9E7F-58A55F35E957} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {DB133607-7784-470B-A43B-F071535128C6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Brak pliku <==== UWAGA Task: {DB6D3D12-3B20-430E-894F-458579E8974F} - \Microsoft\Windows\Media Center\StartRecording -> Brak pliku <==== UWAGA Task: {E06FDEA7-A8B9-4C2E-821A-83A700409592} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {E73A4CBB-0086-4EF6-A501-38C5F946AA46} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {ED511653-0134-43D6-8A32-CCC75B39458F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe MSCONFIG\startupreg: FixMyRegistry => C:\Program Files (x86)\SmartTweak\FixMyRegistry\FixMyRegistry.exe /ot /as MSCONFIG\startupreg: FixMyRegistry.exe => C:\Program Files (x86)\SmartTweak\FixMyRegistry\FixMyRegistry.exe /ot /as /ss MSCONFIG\startupreg: SpeedUpMyComputer => C:\Program Files (x86)\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe /ot /as MSCONFIG\startupreg: SpeedUpMyComputer.exe => C:\Program Files (x86)\SmartTweak\SpeedUpMyComputer\SpeedUpMyComputer.exe /ot /as /ss MSCONFIG\startupreg: swg => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" MSCONFIG\startupreg: WinampAgent => "C:\Program Files (x86)\Winamp\winampa.exe" FirewallRules: [{F0381D18-3D01-43A0-BA91-4BF5579FA9D9}] => (Allow) svchost.exe C:\Users\MACIEK\AppData\Roaming\Microsoft\Word\Formularz%20zwrotu%20TOP%20SECRET303222740401766016\Formularz%20zwrotu%20TOP%20SECRET.docx.lnk C:\Users\MACIEK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\CyberLink PowerDVD 9.lnk