CloseProcesses: CreateRestorePoint: HKU\S-1-5-21-2056369101-1838749867-2302508315-1001\...\Policies\Explorer: [] HKU\S-1-5-18\...\Run: [script_fcbd] => "C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\fcbd.bat" HKU\S-1-5-21-2056369101-1838749867-2302508315-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.pl/?gws_rd=ssl HKU\S-1-5-21-2056369101-1838749867-2302508315-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com/?pc=LCJB SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2056369101-1838749867-2302508315-1001 -> DefaultScope {46F21175-8480-4DBE-BF1F-D45146482741} URL = SearchScopes: HKU\S-1-5-21-2056369101-1838749867-2302508315-1001 -> {46F21175-8480-4DBE-BF1F-D45146482741} URL = FF user.js: detected! => C:\Users\Marcin\AppData\Roaming\Mozilla\Firefox\Profiles\jl5t25lr.default\user.js [2016-01-19] 2018-01-23 20:07 - 2018-01-23 20:07 - 000000000 ____D C:\ProgramData\SWCUTemp 2018-01-13 14:02 - 2018-01-13 16:44 - 000000000 ____D C:\AdwCleaner Task: {59EBB202-C6F8-4D7F-9CE4-B4931647861A} - \Marcin -> Brak pliku <==== UWAGA AlternateDataStreams: C:\Users\Public\AppData:CSM [478] Powershell: wevtutil el | Foreach-Object {wevtutil cl "$_"} EmptyTemp: HOSTS: