CreateRestorePoint: CloseProcesses: EmptyTemp: HKU\S-1-5-19\...\RunOnce: [] => [X] HKU\S-1-5-20\...\RunOnce: [] => [X] HKU\S-1-5-21-1303617771-391412065-3885917864-1000\...\Run: [ocmanage] => wscript.exe "C:\Users\Admin\AppData\Roaming\Microsoft\Windows NT\ocmanage.js" (Brak pliku) <==== UWAGA Task: {0600DD45-FAF2-4131-A006-0B17509B9F78} - \Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser -> Brak pliku <==== UWAGA Task: {4738DE7A-BCC1-4E2D-B1B0-CADB044BFA81} - \Microsoft\Windows\Customer Experience Improvement Program\KernelCeipTask -> Brak pliku <==== UWAGA Task: {6FAC31FA-4A85-4E64-BFD5-2154FF4594B3} - \Microsoft\Windows\Customer Experience Improvement Program\UsbCeip -> Brak pliku <==== UWAGA Task: {7486D5AB-90EC-4CAB-B0E9-A79A95D38C29} - System32\Tasks\Driver Booster SkipUAC (Admin) => "C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe" /skipuac (Brak pliku) Task: {4394161B-ECB7-4788-9312-9E360451319F} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Admin\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe LOGON (Brak pliku) Task: {88D637D1-E7D6-4177-A171-402578CE84EA} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Admin\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe SCHED (Brak pliku) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Brak pliku) Task: {29AFBFEE-0C7B-42CB-9BD2-D43E17E6967C} - System32\Tasks\Opera GX scheduled Autoupdate 1711073982 => C:\Users\Admin\AppData\Local\Programs\Opera GX\launcher.exe --scheduledautoupdate $(Arg0) (Brak pliku) Task: {7FE5D4F8-CF1A-45A5-B09E-3CC6E2D775C4} - System32\Tasks\Process Lasso Management Console (GUI) => "C:\Program Files\Process Lasso\processlasso.exe" (Brak pliku) Task: {1CE9A269-51DB-4BBC-8682-C081A48340BD} - System32\Tasks\Session agent for Process Lasso => "C:\Program Files\Process Lasso\bitsumsessionagent.exe" ---------------------------------------------------------------- (Brak pliku) R3 WinRing0_1_2_0; C:\Users\Admin\AppData\Local\Temp\WinRing0x64.sys [33176 2024-03-27] (NetEase(Hangzhou) Network Co. Ltd. -> ) <==== UWAGA S2 IDMWFP; \SystemRoot\System32\drivers\idmwfp.sys [X] U3 TrueSight; \??\C:\Windows\System32\drivers\truesight.sys [X] Powershell: type C:\ProgramData\ntuser.pol CustomCLSID: HKU\S-1-5-21-1303617771-391412065-3885917864-1000_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5}\InprocServer32 -> C:\Users\Admin\AppData\Local\Microsoft\EdgeUpdate\1.3.185.21\psuser_64.dll => Brak pliku CustomCLSID: HKU\S-1-5-21-1303617771-391412065-3885917864-1000_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2}\InprocServer32 -> C:\Users\Admin\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll => Brak pliku ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Brak pliku AlternateDataStreams: C:\MountUUP:$WIMMOUNTDATA [850]