CloseProcesses: CreateRestorePoint: EmptyTemp: HKLM\...\Policies\Explorer: [HideSCAHealth] 1 HKU\S-1-5-21-1662803595-2493366942-667640475-1000\...\MountPoints2: {368fa269-9372-11e6-92b4-50e549e6572c} - G:\startme.exe HKU\S-1-5-21-1662803595-2493366942-667640475-1000\...\MountPoints2: {5f4ef84a-1d17-11e2-bd65-50e549e6572c} - I:\Startme.exe HKU\S-1-5-21-1662803595-2493366942-667640475-1000\...\MountPoints2: {e2e6e931-3be1-11e2-99e0-50e549e6572c} - F:\setup.exe HKU\S-1-5-21-1662803595-2493366942-667640475-1000\...\MountPoints2: {ebf97d29-a9aa-11e1-b472-50e549e6572c} - G:\setup.exe HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache IFEO\RegWorks.exe: [Debugger] svchost.exe IFEO\RSITx64.exe: [Debugger] svchost.exe BootExecute: autocheck autochk * tpnative Task: {027FAA1C-0B80-48D2-ACAF-F77EFD9CDD7A} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1662803595-2493366942-667640475-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [146504 2014-04-06] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {0DE30FF2-467F-41E8-9E31-5DC210A5B384} - System32\Tasks\Java Update Schedule => C:\Users\admin\AppData\Roaming\Real\Java\jusched.exe Task: {180EDA87-3D0D-4320-A1CE-CE1A3B7E9DC9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-29] (Google Inc -> Google Inc.) Task: {1AD84AA0-5329-4426-8D60-E643159FD57A} - System32\Tasks\GoogleUpdateTaskMachineUA1d1667edc888d83 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-29] (Google Inc -> Google Inc.) Task: {3BDE8E8E-E410-442D-B929-8E8700E93377} - System32\Tasks\{C081EB91-D682-4B23-B948-35D8342ACDA6} => D:\gry\roller\RCT3plus.exe Task: {3F4CAB09-98D4-4662-99E5-7F77949B3173} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1662803595-2493366942-667640475-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [140800 2014-04-07] (RealNetworks, Inc.) [Brak podpisu cyfrowego] Task: {3FF3FD40-6F7D-440B-B8FF-32E5410D475E} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1662803595-2493366942-667640475-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [140800 2014-04-07] (RealNetworks, Inc.) [Brak podpisu cyfrowego] Task: {445C10D7-DF01-49EF-A515-81084C259297} - System32\Tasks\GoogleUpdateTaskMachineUA1d0c2ea74358f3d => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-29] (Google Inc -> Google Inc.) Task: {612CF774-C99C-434A-AFE2-A9F25B07465E} - System32\Tasks\GoogleUpdateTaskMachineUA1d04214bd30b365 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-29] (Google Inc -> Google Inc.) Task: {6487EE32-EF86-448F-8EE3-AA443E4BC6D0} - System32\Tasks\GoogleUpdateTaskMachineCore1d0c2ea732af51e => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-29] (Google Inc -> Google Inc.) Task: {6F96C4B0-BF37-4F26-AA7B-FCA89F593047} - System32\Tasks\GoogleUpdateTaskMachineUA1d1125ba605c3c2 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-29] (Google Inc -> Google Inc.) Task: {7123D93E-5F44-420F-BD33-691D98342F80} - System32\Tasks\GoogleUpdateTaskMachineCore1d04214bc8a10b4 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-29] (Google Inc -> Google Inc.) Task: {7B51F401-2E67-4D64-B918-97122A364EE3} - System32\Tasks\{0FF208FD-53DC-4A77-A6AD-892DDD37081D} => C:\Windows\system32\pcalua.exe -a C:\Users\admin\Downloads\subedit_b4072_install.exe -d C:\Users\admin\Downloads Task: {7D5DC5A2-EF78-43FC-A31A-509098989AF7} - System32\Tasks\GoogleUpdateTaskMachineUA1d09168428b6b5e => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-29] (Google Inc -> Google Inc.) Task: {87A9F3E2-E37D-4451-9362-AE6B72219A69} - System32\Tasks\TrustPort Updater => C:\Program Files (x86)\Common Files\TrustPort\bin\tpupdate.exe [346840 2014-10-22] (TrustPort -> TrustPort, a.s.) Task: {8CBABF4F-0842-488F-A919-F385507DF62C} - System32\Tasks\{32F0145D-904E-4597-A124-167060275FE8} => C:\Windows\system32\pcalua.exe -a H:\setup.exe -d H:\ Task: {964BAFC7-1915-49AD-9354-5167DE35086D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-29] (Google Inc -> Google Inc.) Task: {9A516801-125A-4F02-A34E-979972989499} - System32\Tasks\{83EAA1B7-48B2-487B-9C19-249AC4139EFA} => C:\Windows\system32\pcalua.exe -a "C:\Users\admin\Downloads\do simsow\8. Aktualizacja 2.3 z 15-12-2009.exe" -d "C:\Users\admin\Downloads\do simsow" Task: {A532F78C-9D40-407E-A816-7712D160250D} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1662803595-2493366942-667640475-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [140800 2014-04-07] (RealNetworks, Inc.) [Brak podpisu cyfrowego] Task: {AB0A6C52-BB7B-4093-A9E9-7C4FC741668B} - System32\Tasks\GoogleUpdateTaskMachineCore1d0916841f25d71 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-29] (Google Inc -> Google Inc.) Task: {AE7634A0-D484-4489-9597-D90223C7B905} - System32\Tasks\{69396909-0F54-4F19-B9F1-389EAA5C9D8C} => C:\Windows\system32\pcalua.exe -a "E:\Dragon.Age.Inquisition\Dragon age\Dragon Age Inquisition\__Installer\vc\vc2010sp1\redist\vcredist_x64.exe" -d "E:\Dragon.Age.Inquisition\Dragon age\Dragon Age Inquisition\__Installer\vc\vc2010sp1\redist" Task: {B2AC32E4-9662-4C25-BBBD-616D5A529762} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1662803595-2493366942-667640475-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [146504 2014-04-06] (RealNetworks, Inc. -> RealNetworks, Inc.) Task: {CAD6AF7A-C360-4465-A7D1-A9F5595AE05E} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1662803595-2493366942-667640475-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [140800 2014-04-07] (RealNetworks, Inc.) [Brak podpisu cyfrowego] Task: {E01C7A6D-2C5E-4974-8296-5DD0A6BE4DDD} - System32\Tasks\GoogleUpdateTaskMachineCore1d1125ba54c186c => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-29] (Google Inc -> Google Inc.) Task: {F907F6E0-15F9-425F-A237-46CCC8CD0D0B} - System32\Tasks\{3C82384D-5CA2-41A8-883D-A11A387C47A7} => C:\Windows\system32\pcalua.exe -a "C:\Users\admin\Downloads\1. Aktualizacja 1.2.7 z 25-06-2009.exe" -d C:\Users\admin\Downloads Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d04214bc8a10b4.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0916841f25d71.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0c2ea732af51e.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d1125ba54c186c.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d04214bd30b365.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d09168428b6b5e.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0c2ea74358f3d.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d1125ba605c3c2.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d1667edc888d83.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Tcpip\..\Interfaces\{DB63B216-E745-458B-AF5E-0955B88409FC}: [DhcpNameServer] 192.168.1.1 192.168.1.1 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-1662803595-2493366942-667640475-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.pl/ SearchScopes: HKU\S-1-5-21-1662803595-2493366942-667640475-1000 -> {07D1F4F5-7C7A-41fe-917C-727C47CD92D7} URL = hxxp://www.google.com/cse?cx=partner-pub-3794288947762788%3A7941509802&ie=UTF-8&sa=Search&siteurl=www.google.com%2Fcse%2Fhome%3Fcx%3Dpartner-pub-3794288947762788%3A7941509802&q={searchTerms} SearchScopes: HKU\S-1-5-21-1662803595-2493366942-667640475-1000 -> {1FDED57C-F6FD-482e-9A12-142C231ED1F3} URL = hxxp://pl.search.yahoo.com/search?p={searchTerms}&fr=chr-comodo BHO: Brak nazwy -> {FB16E5C3-A9E2-47A2-8EFC-319E775E62CC} -> Brak pliku FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => nie znaleziono FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => nie znaleziono FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2014-04-06] U3 agqkz8yk; C:\Windows\System32\Drivers\agqkz8yk.sys [0 0000-00-00] (Advanced Micro Devices) <==== UWAGA (zerobajtowy plik/folder) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 gdrv; \??\C:\Windows\gdrv.sys [X] S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [X] S3 MSICDSetup; \??\F:\CDriver64.sys [X] S3 npf; \??\C:\Users\admin\AppData\Local\Temp\HouseCall\tmase\nmap\npf\x64\npf.sys [X] <==== UWAGA SaveByClick (HKLM\...\{F92E5927-5EA9-4637-A4DC-168B22CD7BD1}) (Version: 1.0 - SaveByClick) <==== UWAGA ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Brak pliku ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Brak pliku ContextMenuHandlers1_S-1-5-21-1662803595-2493366942-667640475-1000: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku ContextMenuHandlers4_S-1-5-21-1662803595-2493366942-667640475-1000: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku ContextMenuHandlers5_S-1-5-21-1662803595-2493366942-667640475-1000: [GGDriveMenu] -> {E68D0A55-3C40-4712-B90D-DCFA93FF2534} => -> Brak pliku AlternateDataStreams: C:\Users\admin:Heroes & Generals [38] AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`20hfm [0] AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm [0] AlternateDataStreams: C:\ProgramData\TEMP:5C321E34 [119] HKLM\...\.scr: => <==== UWAGA C:\Users\admin\Documents\Corel\Próbki CorelDRAW X6\target.lnk C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Social Games.lnk C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView\Available Languages.lnk C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView\Available PlugIns.lnk C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView\What's New.lnk C:\Users\admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\COMODO GeekBuddy.lnk C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{E4D16918-BB46-4EDE-9A12-A9DADC40852A}\PlayTasks\0\Zagraj.lnk C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{AB6A76E9-3AAD-4DEB-9227-C37D6A181851}\PlayTasks\3\Technical Support.lnk C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{AB6A76E9-3AAD-4DEB-9227-C37D6A181851}\PlayTasks\2\End User License Agreement.lnk C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{AB6A76E9-3AAD-4DEB-9227-C37D6A181851}\PlayTasks\1\Read Me.lnk C:\Users\admin\AppData\Local\Microsoft\Windows\GameExplorer\{AB6A76E9-3AAD-4DEB-9227-C37D6A181851}\PlayTasks\0\The Sims™ 3 Seasons.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoPad Video Editor.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WavePad Sound Editor.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Historia.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\PDFCreator Pomoc.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\PDFCreator.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Strona WWW programu PDFCreator.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Translation Tool.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Wspomó¿ finansowo PDFCreator.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Licenses\AFPL License.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Licenses\FairPlay License.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Licenses\GPL License.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator\Images2PDF\Images2PDF.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\CD Audio Burn Recorder.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\CD Audio Rip Extractor.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\Crescendo Music Notation.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\Dictation Recorder.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\DJ Mixing Software.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\Multitrack Mixer.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\Record to CD or Mp3 Wizard.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\Sound File Converter.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\Sound File Editor.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\Sound File Recorder.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\Streaming Audio Recorder.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\Streaming Audio Server.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Related Programs\Text-to-Speech Reader.lnk C:\Users\Gość\Desktop\50 FREE MP3s +1 Free Audiobook!.lnk C:\Users\Gość\Desktop\EVEREST Home Edition.lnk C:\Users\Gość\Desktop\Games.lnk C:\Users\Gość\Desktop\Oxygen Not Included.lnk C:\Users\Gość\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Social Games.lnk C:\Users\Rodzice\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Social Games.lnk RemoveProxy: Hosts: