CreateRestorePoint: CloseProcesses: BootExecute: autocheck autochk * aswBoot.exe /M:19829c1c2eb /dir:"C:\Program Files\AVAST Software\Avast" HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA Task: {0CDC3AF7-F99D-4AE0-8220-C4C20E90A58D} - System32\Tasks\{34BD1BB7-52C1-458A-84AA-D47676841C89} => C:\Windows\system32\pcalua.exe -a C:\Users\Karol\Downloads\3840_plk_win2k_xp.exe -d C:\Users\Karol\Downloads Task: {143B3520-F958-471D-9846-BEDAFBFDD445} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {1698D22C-2BFE-40DB-B264-37DE1C0D6144} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {1CA8E34E-80B9-43BF-914E-306C41291E52} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {2D779113-36AF-4930-A271-96AC94D49F12} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {32055769-A5AF-4D2E-BFBA-D5A00426C040} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {3492C764-0C91-4519-B85C-B1B27F9CA78D} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {37658071-8531-45A2-BEE0-31B97648FA11} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\Explorer.exe /NOUACCHECK Task: {3DC07C39-048C-46D7-B0DA-F3C55B13D2E8} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {41E37D2A-1FDD-4D90-9E3F-4C4BD6848986} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {5EF2799B-E97E-4E6B-9DEB-F23AB6FCAFFE} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {72229ABD-613B-44F2-B221-396F0F7E6225} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {81A0CFE4-8C9D-4D20-9C3B-C0318C3A1C50} - System32\Tasks\{2A2FEDC5-C013-499E-8816-99B443676941} => C:\Windows\system32\pcalua.exe -a "C:\Users\Karol\Downloads\s24_driver_v4000\919_OpticPro S24 CMA V4.0.0 WebDriver\INSTALL.EXE" -d "C:\Users\Karol\Downloads\s24_driver_v4000\919_OpticPro S24 CMA V4.0.0 WebDriver" Task: {931B4F85-72FF-4A2A-A40F-EC59F1856017} - System32\Tasks\{069BAEC4-CFDB-42D3-835B-CAC7E6BF809B} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\Creative Cloud Uninstaller.exe" Task: {96E843D0-B7E2-4952-8C9F-9379841788EE} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {96F33D86-235E-49FE-A95C-4D97976A1670} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {97360A4F-1611-4410-8D58-BC248CC0C5FB} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {9EFEA3E6-D036-4FAB-915C-B7014E991073} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {9F016722-FF50-4FE5-8D4B-DA4FB23A7E54} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {A63A7CF8-3E1C-4D43-AD36-E605B75FBE11} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {AC2E12CF-FBC5-4957-8CE3-931F7EF2049A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1741416 2020-09-24] (Avast Software s.r.o. -> Avast Software) Task: {B39DB6CA-6E34-4DC2-B765-C0ADC5CF0F39} - System32\Tasks\{2B5D8F31-9B5A-4AA4-BB74-A5DD926BDDBD} => C:\Windows\system32\pcalua.exe -a C:\Windows\system32\pcwrun.exe -c "C:\Program Files (x86)\Plustek\OpticPro S24\Scanutl.exe" Task: {B65F10DC-9CB6-4874-A95B-CB392B891372} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {C03675D7-9CD8-4E9A-95A7-C8AFFF32301B} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C640E7AC-F7F3-4D42-8AB4-9737A128DB49} - System32\Tasks\{9EF06494-49DF-4DE6-909B-0469C7AB9A58} => C:\Windows\system32\pcalua.exe -a C:\Windows\system32\pcwrun.exe -c "C:\Program Files (x86)\Plustek\OpticPro S24\AM32.exe" Task: {CC0E9266-9A83-4277-BC51-83312D6B1677} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {D0E14E27-4595-4428-B9F4-189AB7AE6658} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {D276F086-3AA7-4065-9AA3-3F57C6EE6659} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {D95AB394-415B-4283-9F46-B9F695BF226C} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {EA46F878-DA03-4407-829B-34CC4C7F6685} - System32\Tasks\{CB519C83-C644-4B1D-A9CF-A02EF59D4A75} => C:\Windows\system32\pcalua.exe -a "C:\Users\Karol\Downloads\s24_driver_v4000\919_OpticPro S24 CMA V4.0.0 WebDriver\setup.exe" -d "C:\Users\Karol\Downloads\s24_driver_v4000\919_OpticPro S24 CMA V4.0.0 WebDriver" Task: {F55942D9-FB0F-48AD-AA58-98FF244BE50A} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {F92FAFB5-DF0D-47C9-841D-3760278DCCA7} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Tcpip\..\Interfaces\{002205E8-9B88-4A53-9E1C-49D9F8BC5EA1}: [NameServer] 89.108.195.20 89.108.202.21 Tcpip\..\Interfaces\{3c0c3e47-fb34-4c96-afdb-c6a2f948be37}: [DhcpNameServer] 31.11.202.254 37.8.214.2 Tcpip\..\Interfaces\{53429d53-092f-4089-b095-01ca62b14fbc}: [DhcpNameServer] 192.168.43.1 Tcpip\..\Interfaces\{69ef4ad2-9fd7-417b-a434-7743ff68773d}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{9f09edcb-5cfb-4735-82bc-f359cb5916c1}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{a3b62608-d1b6-4c06-8086-b0e13b1b8396}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{a7144d64-8f70-4b63-9fb9-56336d327510}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{bfaf9c78-143c-4b87-95b4-2491bd5117cf}: [NameServer] 185.89.185.1 89.108.202.20 Tcpip\..\Interfaces\{d2e9c816-d55f-43c9-b9f1-26d3eb2fe8c6}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{deacc797-f543-4600-a19a-2b56e805dd29}: [NameServer] 89.108.195.21 89.108.202.21 Tcpip\..\Interfaces\{deacc797-f543-4600-a19a-2b56e805dd29}: [DhcpNameServer] 89.108.195.21 89.108.202.21 U3 idsvc; Brak ImagePath ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Brak pliku AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`20hfm [0] AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0] BHO: Brak nazwy -> {13D67BB7-DB5F-48AA-884D-7A5D94168509} -> Brak pliku BHO-x32: Brak nazwy -> {13D67BB7-DB5F-48AA-884D-7A5D94168509} -> Brak pliku BHO-x32: Brak nazwy -> {F8A6CAA2-533D-4AED-9E05-8EB19A4021AB} -> Brak pliku Toolbar: HKU\S-1-5-21-2983785935-3158574787-268798856-1000 -> Brak nazwy - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Brak pliku FirewallRules: [{3C5316A2-E136-4620-8403-EBACBA7F492F}] => (Block) B:\program file\adobe\adobe dreamweaver cs3\dreamweaver.exe => Brak pliku FirewallRules: [{A840F4FD-78B5-49A6-8508-54733C74BDB7}] => (Block) B:\program file\adobe\adobe dreamweaver cs3\dreamweaver.exe => Brak pliku FirewallRules: [TCP Query User{5284B408-AAFF-4374-AB60-4D9F86754623}B:\program file\vlc\vlc.exe] => (Block) B:\program file\vlc\vlc.exe => Brak pliku FirewallRules: [UDP Query User{00451D20-12B1-42BE-B6A6-DC61D4878620}B:\program file\vlc\vlc.exe] => (Block) B:\program file\vlc\vlc.exe => Brak pliku FirewallRules: [{552614C0-4B96-41B3-A296-AEA05EB2ED6C}] => (Allow) LPort=3935