CloseProcesses: CreateRestorePoint: EmptyTemp: C:\Users\w7\Desktop\Programy\Adobe Reader XI.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Default User\Menu Start\Programy\Pomoc zdalna.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Default User\Menu Start\Programy\Akcesoria\Kreator zgodności programów.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Default User\Menu Start\Programy\Akcesoria\Samouczek systemu Windows XP.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\SendTo\Skype.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Microsoft Excel 2010.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Pokaż pulpit.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\Outlook Express.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\Pomoc zdalna.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\WinRAR\Console RAR manual.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\WinRAR\WinRAR help.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\WinRAR\WinRAR.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\SopCast\SopCast web site.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\SopCast\SopCast.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\SopCast\Uninstall.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\Microsoft Office\Microsoft Excel 2010.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\Google Chrome\Google Chrome.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\Akcesoria\Kreator zgodności programów.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\Akcesoria\Książka adresowa.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Menu Start\Programy\Akcesoria\Samouczek systemu Windows XP.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Faktura VAT 2013 PRO.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Microsoft Excel 2010.lnk C:\Users\w7\Desktop\Programy\Documents and Settings\Administrator\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Microsoft Word 2010.lnk VirusTotal: C:\Program Files (x86)\Hewlett-Packard\Drive Encryption\HpFkCrypt.exe Task: {0685A4E4-DF3C-404B-8809-B324EF4FEE9A} - System32\Tasks\GoogleUpdateTaskMachineUA1d040a027b1d5b4 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {114EE5CF-25FF-4006-B299-F609F2E8FFBE} - System32\Tasks\GoogleUpdateTaskMachineCore1d040a0270dcb1d => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {672F40DE-7AB4-494C-B125-E06684BBBF04} - System32\Tasks\GoogleUpdateTaskMachineCore1cf908fbc5573fa => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {83921171-49DE-4996-A146-A7CBA6721EDC} - System32\Tasks\GoogleUpdateTaskMachineUA1cf6c0cfb0311db => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {F51684B8-B3A3-4F61-B76B-DC6652BCB5CF} - System32\Tasks\GoogleUpdateTaskMachineUA1d091f65375d81 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf908fbc5573fa.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cf6c0cfb0311db.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d040a027b1d5b4.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125] FirewallRules: [{6384BD70-CCBE-49B7-92A0-7BEBD5A2D242}] => (Allow) C:\Users\w7\AppData\Local\Temp\7zS6235\hppiw.exe FirewallRules: [{0FCBFF0C-3F15-48E2-A190-23BEB364D62E}] => (Allow) C:\Users\w7\AppData\Local\Temp\7zS6235\hppiw.exe FirewallRules: [{99DE2F30-115F-4B72-A9C3-9A803656C113}] => (Allow) C:\Users\w7\AppData\Local\Temp\7zS7EB2\HPDiagnosticCoreUI.exe FirewallRules: [{F440A071-44FA-4B09-887D-A97D37FDA23F}] => (Allow) C:\Users\w7\AppData\Local\Temp\7zS7EB2\HPDiagnosticCoreUI.exe FirewallRules: [{45444ADC-E6DD-4799-B3B9-EC22B42647BC}] => (Allow) C:\Users\w7\AppData\Local\Temp\7zS34E2\HPDiagnosticCoreUI.exe FirewallRules: [{47C9E235-4DF6-49A4-99BF-2917CC37F611}] => (Allow) C:\Users\w7\AppData\Local\Temp\7zS34E2\HPDiagnosticCoreUI.exe HKLM-x32\...\Run: [] => [X] Winlogon\Notify\ScCertProp: wlnotify.dll [X] HKU\S-1-5-21-1038351038-304127116-1171213393-1000\...\MountPoints2: {11ea7268-abcb-11e5-a0ed-0027136f2f06} - E:\HiSuiteDownLoader.exe HKU\S-1-5-21-1038351038-304127116-1171213393-1000\...\MountPoints2: {11ea726b-abcb-11e5-a0ed-0027136f2f06} - G:\AutoRun.exe HKU\S-1-5-21-1038351038-304127116-1171213393-1000\...\MountPoints2: {38c0b5a0-521f-11e3-8844-0027136f2f06} - G:\iStudio.exe HKU\S-1-5-21-1038351038-304127116-1171213393-1000\...\MountPoints2: {6f0b3e5d-6e15-11e8-8708-0027136f2f06} - E:\HiSuiteDownLoader.exe HKU\S-1-5-21-1038351038-304127116-1171213393-1000\...\MountPoints2: {8f14b401-d90a-11e7-8846-0027136f2f06} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-1038351038-304127116-1171213393-1000\...\MountPoints2: {ef266929-ffd4-11e6-818f-0027136f2f06} - E:\HiSuiteDownLoader.exe Lsa: [Notification Packages] scecli ASCredProv64 Tcpip\..\Interfaces\{3AAE13C7-FBFD-473B-A2E7-6F55F99D0899}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{638A5F0C-DE90-4E70-A53E-2CA4B127A054}: [DhcpNameServer] 192.168.8.1 Tcpip\..\Interfaces\{F04F752D-5969-475A-BB74-280DE867961C}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{F79F10F1-2C78-41D7-ACF6-3855C517407C}: [DhcpNameServer] 192.168.0.1 FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => nie znaleziono FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => nie znaleziono FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx S2 SSPORT; \??\C:\Windows\system32\Drivers\SSPORT.sys [X]