CloseProcesses: CreateRestorePoint: EmptyTemp: File: C:\Users\mati123\AppData\Roaming\ProductAuthenticationService\pas.exe HKU\S-1-5-21-4291272340-2643005322-3467024192-1002\...\Run: [ProductAuthenticationService] => C:\Users\mati123\AppData\Roaming\ProductAuthenticationService\pas.exe [533008 2019-01-19] (DVJ LIMITED -> DVJ LIMITED) HKU\S-1-5-21-4291272340-2643005322-3467024192-1002\...\Policies\Explorer: [NolowDiskSpaceChecks] 1 HKU\S-1-5-21-4291272340-2643005322-3467024192-1002\...\MountPoints2: {26b31baf-1550-11e8-8285-f0761c2c864a} - "E:\AutoRun.exe" HKU\S-1-5-21-4291272340-2643005322-3467024192-1002\...\MountPoints2: {3d7fb7cd-09c0-11e8-8283-3010b38d2583} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-4291272340-2643005322-3467024192-1002\...\MountPoints2: {3d7fb7ec-09c0-11e8-8283-3010b38d2583} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-4291272340-2643005322-3467024192-1002\...\MountPoints2: {9eb92851-4c07-11e6-8270-f0761c2c864a} - "E:\setup.exe" HKU\S-1-5-21-4291272340-2643005322-3467024192-1002\...\MountPoints2: {b8e2ed0d-9f8c-11e6-8280-f0761c2c864a} - "G:\HiSuiteDownLoader.exe" HKU\S-1-5-21-4291272340-2643005322-3467024192-1002\...\MountPoints2: {ff661966-1cf5-11e7-825d-f0761c2c864a} - "F:\setup.exe" HKU\S-1-5-21-4291272340-2643005322-3467024192-1002\...\MountPoints2: {ff661970-1cf5-11e7-825d-f0761c2c864a} - "H:\setup.exe" GroupPolicy: Ograniczenia ? <==== UWAGA ProxyEnable: [S-1-5-21-4291272340-2643005322-3467024192-1002] => Proxy [funkcja włączona] Tcpip\..\Interfaces\{01E441DB-7B0B-429F-8CE3-90149E4ED12C}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{10F85F5C-820B-4EBF-9995-4338BAF682E6}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{10F85F5C-820B-4EBF-9995-4338BAF682E6}: [DhcpNameServer] 192.168.0.1 SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-4291272340-2643005322-3467024192-1002 -> DefaultScope {190F4328-8D6B-41D2-8484-E1CF966F3E60} URL = SearchScopes: HKU\S-1-5-21-4291272340-2643005322-3467024192-1002 -> {190F4328-8D6B-41D2-8484-E1CF966F3E60} URL = BHO-x32: Brak nazwy -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> Brak pliku BHO-x32: Brak nazwy -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> Brak pliku FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [Brak pliku] FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [Brak pliku] CHR NewTab: Default -> Not-active:"chrome-extension://ofmacdiceehcibkfednmgpkhgfhpacgi/newtab.html", Not-active:"chrome-extension://fkdkclojceekfcnegncnfjijfllfegpp/stubby.html" CHR DefaultSearchKeyword: Default -> atavi CHR Profile: C:\Users\mati123\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-02-15] CHR Profile: C:\Users\mati123\AppData\Local\Google\Chrome\User Data\System Profile [2019-02-15] CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx S3 cpuz143; \??\C:\WINDOWS\temp\cpuz143\cpuz143_x64.sys [X] 2019-02-13 13:30 - 2019-02-13 13:30 - 000000008 __RSH C:\ProgramData\ntuser.pol 2019-02-15 09:01 - 2017-07-16 12:22 - 000000000 ___HD C:\Users\mati123\AppData\Local\~SweetLabs App Platform ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku Task: {3E64B025-BF4D-43AE-A1EE-176621D8C396} - System32\Tasks\Opera scheduled Autoupdate 1500209155 => C:\Users\mati123\AppData\Local\Programs\Opera\launcher.exe (Opera Software AS -> Opera Software) Task: {FAD5E2DC-2084-46B2-962F-4E377FCDD3CF} - System32\Tasks\Opera scheduled assistant Autoupdate 1547131528 => C:\Users\mati123\AppData\Local\Programs\Opera\launcher.exe (Opera Software AS -> Opera Software) AlternateDataStreams: C:\ProgramData:NT [40] AlternateDataStreams: C:\ProgramData:NT2 [624] AlternateDataStreams: C:\Users\mati123:Heroes & Generals [38] AlternateDataStreams: C:\ProgramData\Dane aplikacji:NT [40] AlternateDataStreams: C:\ProgramData\Dane aplikacji:NT2 [624] AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT [40] AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2 [624] AlternateDataStreams: C:\Users\mati123\Dane aplikacji:NT [40] AlternateDataStreams: C:\Users\mati123\Dane aplikacji:NT2 [624] AlternateDataStreams: C:\Users\mati123\AppData\Roaming:NT [40] AlternateDataStreams: C:\Users\mati123\AppData\Roaming:NT2 [624] AlternateDataStreams: C:\Users\Public\AppData:CSM [466] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [464] FirewallRules: [TCP Query User{A592880B-A065-470E-9F76-ACFDB2B573B1}C:\program files\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_60\bin\javaw.exe Brak pliku FirewallRules: [UDP Query User{A5EBACAB-C78C-4B14-B69C-378061C4491B}C:\program files\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_60\bin\javaw.exe Brak pliku FirewallRules: [TCP Query User{8D67B17E-F212-47E9-9F23-EAC01B13394E}C:\program files\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_60\bin\javaw.exe Brak pliku FirewallRules: [UDP Query User{7745860F-DC77-4405-B00D-9D0A94128E61}C:\program files\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_60\bin\javaw.exe Brak pliku FirewallRules: [TCP Query User{D881FDF0-5945-48F6-AC29-52E44817E2DE}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe Brak pliku FirewallRules: [UDP Query User{FDAE3BF8-7960-40D8-9F61-CE944BA8B146}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe Brak pliku FirewallRules: [TCP Query User{96D0233B-F1BC-4479-BCF3-E84C61FC3B56}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe Brak pliku FirewallRules: [UDP Query User{DF932F09-58C2-49FF-B2BC-2D0AB250E01B}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe Brak pliku RemoveProxy: CMD: ipconfig /flushdns