CloseProcesses: CreateRestorePoint: EmptyTemp: HKLM\...\Run: [] => [X] HKU\S-1-5-21-530610989-3515677142-4144176666-1000\...\MountPoints2: {127b1832-5194-11e7-81c4-6c626d8467b2} - E:\HiSuiteDownLoader.exe HKU\S-1-5-21-530610989-3515677142-4144176666-1000\...\MountPoints2: {127b183d-5194-11e7-81c4-6c626d8467b2} - E:\HiSuiteDownLoader.exe SearchScopes: HKU\S-1-5-21-530610989-3515677142-4144176666-1000 -> DefaultScope {36B54FCE-B8AF-470D-BF97-CDAC9242FE9A} URL = hxxps://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKU\S-1-5-21-530610989-3515677142-4144176666-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?FORM=U453DF&PC=U453&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-530610989-3515677142-4144176666-1000 -> {36B54FCE-B8AF-470D-BF97-CDAC9242FE9A} URL = hxxps://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} Toolbar: HKU\S-1-5-21-530610989-3515677142-4144176666-1000 -> Brak nazwy - {093F479D-712E-46CD-9E06-62E734A05F68} - Brak pliku FF HKLM\...\Firefox\Extensions: [light_plugin_F363A72DD7B6435783A76E5F612C9006@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi => nie znaleziono CustomCLSID: HKU\S-1-5-21-530610989-3515677142-4144176666-1000_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\Ela\AppData\Local\Google\Update\1.3.33.5\psuser.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-530610989-3515677142-4144176666-1000_Classes\CLSID\{8C46158B-D978-483C-A312-16EE5013BE04}\InprocServer32 -> C:\Users\Ela\AppData\Local\Google\Update\1.3.33.3\psuser.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-530610989-3515677142-4144176666-1000_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Ela\AppData\Local\Google\Update\1.3.33.7\psuser.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-530610989-3515677142-4144176666-1000_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Ela\AppData\Local\Google\Update\1.3.32.7\psuser.dll => Brak pliku Task: {68DE1ABB-7D05-4F18-BFB0-E1F7DE2986EF} - System32\Tasks\{5C03ACDA-1EE4-4BD9-A915-63B681D4EE56} => C:\Windows\system32\pcalua.exe -a C:\Users\Ela\Downloads\RegCleaner(dobreprogramy.pl).exe -d C:\Users\Ela\Downloads Task: {9CF2383C-0433-424D-A1BF-2D40B258C637} - System32\Tasks\Opera scheduled Autoupdate 1489242468 => C:\Program Files\Opera\launcher.exe [2018-06-12] (Opera Software) MSCONFIG\startupfolder: C:^Users^Ela^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk => C:\Windows\pss\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk.Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDex\CDex Help.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDex\CDex Uninstall.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDex\CDexPlayer.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\Documents\Audible\Downloads.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\Desktop\FajnaFaktura.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\Desktop\Rzeźnik MPEG'ów .lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\Desktop\Fajna Faktura\FajnaFaktura.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Gadu-Gadu.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander\Total Commander Help.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander\Total Commander.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView\About IrfanView.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView\Available Languages.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView\Available PlugIns.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView\Command line Options.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView\IrfanView - Thumbnails.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView\IrfanView 4.28.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView\IrfanView Help.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView\What's New.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fajna Faktura Start\FajnaFaktura.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fajna Faktura Start\uninstall.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Windows\SendTo\TeamViewer.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Ashampoo Burning Studio 9.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\foobar2000.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk C:\Users\Ela\Desktop\Kopia zapasowa Ela\ela\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\IrfanView.lnk