CloseProcesses: CreateRestorePoint: HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-4220218007-3790434411-981619641-1000\...\MountPoints2: E - E:\AutoRun.exe HKU\S-1-5-21-4220218007-3790434411-981619641-1000\...\MountPoints2: {095ef336-ad9b-11e6-83e9-acb57d43d967} - E:\AutoRun.exe HKU\S-1-5-21-4220218007-3790434411-981619641-1000\...\MountPoints2: {3c2b466a-6538-11e7-9781-acb57d43d967} - H:\HiSuiteDownLoader.exe HKU\S-1-5-21-4220218007-3790434411-981619641-1000\...\MountPoints2: {7a9af232-b4c3-11e6-8362-acb57d43d967} - E:\Startme.exe HKU\S-1-5-21-4220218007-3790434411-981619641-1000\...\MountPoints2: {b0997799-ae5f-11e6-8742-acb57d43d967} - E:\AutoRun.exe HKU\S-1-5-21-4220218007-3790434411-981619641-1000\...\MountPoints2: {b70696b2-aa6f-11e6-b8b7-acb57d43d967} - E:\AutoRun.exe HKU\S-1-5-21-4220218007-3790434411-981619641-1000\...\MountPoints2: {b70696c0-aa6f-11e6-b8b7-acb57d43d967} - E:\AutoRun.exe HKU\S-1-5-21-4220218007-3790434411-981619641-1000\...\MountPoints2: {ed0749cc-d041-11e6-8592-acb57d43d967} - E:\AutoRun.exe HKU\S-1-5-21-4220218007-3790434411-981619641-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Bubbles.scr [878592 2010-11-20] (Microsoft Corporation) ManualProxies: 0hxxp://noblok.biz/wpad.dat?cc5c7208e62c69fe6f612a301de906d327431719 HKU\S-1-5-21-4220218007-3790434411-981619641-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pl-pl/?ocid=iehp Toolbar: HKLM - Brak nazwy - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - Brak pliku CHR HKLM\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-4220218007-3790434411-981619641-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Robo\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx CHR HKU\S-1-5-21-4220218007-3790434411-981619641-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-4220218007-3790434411-981619641-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx S3 VGPU; System32\drivers\rdvgkmd.sys [X] Task: {742DD62A-F845-4054-8E67-30D8A22A8E48} - System32\Tasks\Driver Booster SkipUAC (Robo) => C:\Program Files\IObit\Driver Booster\4.2.0\DriverBooster.exe [2017-01-10] (IObit) Task: {F44B737D-1FDF-41CC-ABBE-81BF272ACADB} - System32\Tasks\{89C8CC02-AEF2-40DE-B5A6-70078FA8D990} => C:\Users\Robo\Desktop\dsj21\DSJ.EXE AlternateDataStreams: C:\Users\Public\Desktop\Stronghold Legends: Steam Edition.lnk [4566] MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Stronghold Crusader Extreme HD.lnk C:\Users\Robo\Documents\MAGIX\Movie Edit Pro 2014 Premium\Slideshow Music.lnk C:\Users\Robo\Documents\MAGIX\Movie Edit Pro 2014 Premium\_Studio-Preview.LNK C:\Users\Robo\Documents\MAGIX\Movie Edit Pro 2014 Premium\_TV Anti Cropping.LNK C:\Users\Robo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk C:\Users\Robo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Przeglądarka Opera.lnk C:\ProgramData\SWCUTemp C:\AdwCleaner C:\Users\Robo\AppData\Local\Temp\0244341516099037mcinst.exe C:\Users\Robo\AppData\Local\Temp\clearRemnants.exe C:\Users\Robo\AppData\Local\Temp\s3.exe C:\Users\Robo\AppData\Local\Temp\vsdel.exe HOSTS: EmptyTemp: