CloseProcesses: CreateRestorePoint: EmptyTemp: (@ByELDI -> @ByELDI) [Brak podpisu cyfrowego] C:\Program Files\KMSpico\Service_KMS.exe (Data Perceptions -> Data Perceptions / PowerProgrammer) C:\Windows\SysWOW64\WebUpdateSvc4.exe HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-04-10] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-1165589590-67753357-495150563-1001\...\Run: [Minecraft] => cmd.exe /c start www.dinoraptzor.org Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa GroupPolicy: Ograniczenia ? <==== UWAGA GroupPolicy\User: Ograniczenia ? <==== UWAGA Task: {18FFCC13-99B3-47D0-8517-E0B0AEE1A8E5} - System32\Tasks\Minecraft => cmd.exe /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v Minecraft /t REG_SZ /d "cmd.exe /c start www.dinoraptzor.org" Task: {4D31A9D1-769B-45D0-B4DD-98458727D382} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [734912 2015-08-16] (@ByELDI -> @ByELDI) [Brak podpisu cyfrowego] Tcpip\..\Interfaces\{08d42cd1-063b-4aa7-ac51-59116b3f8ea7}: [DhcpNameServer] 192.168.1.1 SearchScopes: HKU\S-1-5-21-1165589590-67753357-495150563-1001 -> DefaultScope {FFEBBF0A-C22C-4172-89FF-45215A135AC7} URL = CHR HomePage: Default -> inline.go.mail.ru CHR HKLM-x32\...\Chrome\Extension: [hjdkfkdkokphfploiiddakjokndinfgb] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [iepoegkaoeljnbhagabakjodgpfniimo] - hxxps://clients2.google.com/service/update2/crx S3 mracsvc; C:\Windows\System32\mracsvc.exe [11569424 2018-11-25] (Mail.Ru LLC -> LLC Mail.Ru) R2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [734912 2015-08-16] (@ByELDI -> @ByELDI) [Brak podpisu cyfrowego] S3 mracdrv; C:\Windows\System32\drivers\mracdrv.sys [10782936 2018-11-25] (Mail.Ru LLC -> LLC Mail.Ru) S3 WacHidRouterPro; \SystemRoot\System32\drivers\wachidrouter.sys [X] S3 wacomrouterfilter; \SystemRoot\System32\drivers\wacomrouterfilter.sys [X] 2019-02-21 22:45 - 2019-02-21 22:45 - 000000128 ____H () C:\Users\Minecraft\AppData\Roaming\ecf00c38dc807e105d881c433a6b455dd2c606b6 2019-06-01 11:10 - 2019-06-01 11:10 - 000000099 _____ () C:\Users\Minecraft\AppData\Roaming\LauncherSettings_live.cfg 2019-06-01 11:08 - 2019-06-01 11:08 - 000002513 _____ () C:\Users\Minecraft\AppData\Roaming\TheHunterSettings_live.bin KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: - ) 2018-12-07 15:15 - 2015-08-16 18:27 - 000734912 _____ (@ByELDI -> @ByELDI) [Brak podpisu cyfrowego] C:\Program Files\KMSpico\Service_KMS.exe AlternateDataStreams: C:\ProgramData:iSpring Solutions [128] AlternateDataStreams: C:\ProgramData:NT [40] AlternateDataStreams: C:\ProgramData:NT2 [768] AlternateDataStreams: C:\Users\All Users:iSpring Solutions [128] AlternateDataStreams: C:\Users\All Users:NT [40] AlternateDataStreams: C:\Users\All Users:NT2 [768] AlternateDataStreams: C:\ProgramData\Dane aplikacji:iSpring Solutions [128] AlternateDataStreams: C:\ProgramData\Dane aplikacji:NT [40] AlternateDataStreams: C:\ProgramData\Dane aplikacji:NT2 [768] AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT [40] AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2 [768] AlternateDataStreams: C:\Users\Minecraft\Dane aplikacji:00e481b5e22dbe1f649fcddd505d3eb7 [394] AlternateDataStreams: C:\Users\Minecraft\Dane aplikacji:iSpring Solutions [128] AlternateDataStreams: C:\Users\Minecraft\Dane aplikacji:NT [40] AlternateDataStreams: C:\Users\Minecraft\Dane aplikacji:NT2 [768] AlternateDataStreams: C:\Users\Minecraft\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394] AlternateDataStreams: C:\Users\Minecraft\AppData\Roaming:iSpring Solutions [128] AlternateDataStreams: C:\Users\Minecraft\AppData\Roaming:NT [40] AlternateDataStreams: C:\Users\Minecraft\AppData\Roaming:NT2 [768] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [480] FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe (Microsoft Windows -> ) FirewallRules: [TCP Query User{EE11B286-AB81-43B3-9E9F-B35576872E0A}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.196\deploy\leagueclient.exe] => (Block) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.196\deploy\leagueclient.exe Brak pliku FirewallRules: [UDP Query User{3DC46D62-2015-4C3C-A7C0-61B125043525}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.196\deploy\leagueclient.exe] => (Block) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.196\deploy\leagueclient.exe Brak pliku FirewallRules: [TCP Query User{D732C7F6-3850-4FBC-933E-6120CF99619C}C:\program files (x86)\overwatch\overwatch.exe] => (Block) C:\program files (x86)\overwatch\overwatch.exe Brak pliku FirewallRules: [UDP Query User{4568401A-3B8F-4C95-B44F-956250921836}C:\program files (x86)\overwatch\overwatch.exe] => (Block) C:\program files (x86)\overwatch\overwatch.exe Brak pliku FirewallRules: [TCP Query User{D50A2FAE-E4C8-4B81-8BDF-2FF5BEAED067}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.197\deploy\leagueclient.exe] => (Block) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.197\deploy\leagueclient.exe Brak pliku FirewallRules: [UDP Query User{FD3CF0E2-1502-4FB9-A893-D43327E8433C}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.197\deploy\leagueclient.exe] => (Block) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.197\deploy\leagueclient.exe Brak pliku FirewallRules: [TCP Query User{19402D64-36D3-47B6-9026-750BE8A57A25}E:\gry\bit torrent\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe] => (Block) E:\gry\bit torrent\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe Brak pliku FirewallRules: [UDP Query User{4CB8E178-24D0-422A-9A80-AB34CAD74436}E:\gry\bit torrent\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe] => (Block) E:\gry\bit torrent\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe Brak pliku FirewallRules: [TCP Query User{5D62D081-D777-447D-B510-0C60D5BAA0D3}C:\program files (x86)\cybertank\cybertank.exe] => (Block) C:\program files (x86)\cybertank\cybertank.exe Brak pliku FirewallRules: [UDP Query User{84549B01-D7C9-47AE-BF27-96553873404A}C:\program files (x86)\cybertank\cybertank.exe] => (Block) C:\program files (x86)\cybertank\cybertank.exe Brak pliku FirewallRules: [TCP Query User{4CD33D65-5158-4F37-A25E-3D521A1A3EBA}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe] => (Block) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe Brak pliku FirewallRules: [UDP Query User{1933D225-0657-46FE-85F1-8476EACBFF43}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe] => (Block) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.200\deploy\leagueclient.exe Brak pliku FirewallRules: [TCP Query User{42F27F4A-0B99-413D-A4A9-F40F9FD5CAAA}E:\gry\world war z\world war z\en_us\client\bin\pc\wwzretailegs.exe] => (Block) E:\gry\world war z\world war z\en_us\client\bin\pc\wwzretailegs.exe Brak pliku FirewallRules: [UDP Query User{50DADD81-C275-49A2-9E12-66B1FC4956F8}E:\gry\world war z\world war z\en_us\client\bin\pc\wwzretailegs.exe] => (Block) E:\gry\world war z\world war z\en_us\client\bin\pc\wwzretailegs.exe Brak pliku FirewallRules: [TCP Query User{7A3675D7-ABCC-40D8-86B9-1D49A115CE7A}E:\gry\generation zero\generation zero\generationzero_f.exe] => (Block) E:\gry\generation zero\generation zero\generationzero_f.exe Brak pliku FirewallRules: [UDP Query User{F66C157B-204A-44D5-870C-3107F0A0B92E}E:\gry\generation zero\generation zero\generationzero_f.exe] => (Block) E:\gry\generation zero\generation zero\generationzero_f.exe Brak pliku FirewallRules: [TCP Query User{49093643-6897-4AAD-AF4D-18F5321DE9FA}E:\gry\apex\apex\r5apex.exe] => (Block) E:\gry\apex\apex\r5apex.exe Brak pliku FirewallRules: [UDP Query User{D07D3C46-5B58-46C7-B950-DBC92F650B87}E:\gry\apex\apex\r5apex.exe] => (Block) E:\gry\apex\apex\r5apex.exe Brak pliku FirewallRules: [{305B2AC4-A7CE-47AF-A023-11DF12D47942}] => (Allow) E:\Gry\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe Brak pliku FirewallRules: [{D79763D0-8810-4AB8-98D1-988F2B5CC9FC}] => (Allow) E:\Gry\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe Brak pliku FirewallRules: [TCP Query User{9408D8F0-D466-46EF-8C0A-D3645A5239C2}E:\gry\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Block) E:\gry\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe Brak pliku FirewallRules: [UDP Query User{8EB1981F-7778-4A7F-9915-2BFE113EA22A}E:\gry\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Block) E:\gry\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe Brak pliku FirewallRules: [TCP Query User{D0979529-5241-4622-958C-6543A4D47D1F}E:\gry\steam\steamapps\common\assettocorsa\acs.exe] => (Block) E:\gry\steam\steamapps\common\assettocorsa\acs.exe Brak pliku FirewallRules: [UDP Query User{D2FF270D-B86B-4012-BCF6-D84AE2ED97DC}E:\gry\steam\steamapps\common\assettocorsa\acs.exe] => (Block) E:\gry\steam\steamapps\common\assettocorsa\acs.exe Brak pliku FirewallRules: [{CCF80EDF-30A7-4C83-BAFB-C4EB08CC9F65}] => (Allow) D:\nowe gry 2019\steamapps\common\Squishy\bin\squishy.exe Brak pliku FirewallRules: [{BE4C1767-D261-41E1-9FCB-5C80405D3F84}] => (Allow) D:\nowe gry 2019\steamapps\common\Squishy\bin\squishy.exe Brak pliku FirewallRules: [TCP Query User{154254EF-71C8-4AAE-BBDA-7A0F98DD4EE1}E:\gry\steam\steamapps\common\h1z1\h1z1.exe] => (Block) E:\gry\steam\steamapps\common\h1z1\h1z1.exe Brak pliku FirewallRules: [UDP Query User{CFA99262-7BDC-42E7-8678-ED1892993782}E:\gry\steam\steamapps\common\h1z1\h1z1.exe] => (Block) E:\gry\steam\steamapps\common\h1z1\h1z1.exe Brak pliku FirewallRules: [{80B04088-C6F6-4027-8296-6CBDBDD8D75C}] => (Allow) E:\Gry\Steam\steamapps\common\theHunter\launcher\launcher.exe Brak pliku FirewallRules: [{CB1AA1BC-E807-43B7-80D6-12DD02580A08}] => (Allow) E:\Gry\Steam\steamapps\common\theHunter\launcher\launcher.exe Brak pliku FirewallRules: [{0F74E413-6AF9-42F4-906F-50DEA9906834}] => (Allow) E:\Gry\Steam\steamapps\common\Albion Online\launcher\AlbionLauncher.exe Brak pliku FirewallRules: [{8E08A0DF-2478-4AA8-9FB7-28C6F54D66DF}] => (Allow) E:\Gry\Steam\steamapps\common\Albion Online\launcher\AlbionLauncher.exe Brak pliku FirewallRules: [TCP Query User{DAB5FD8A-E307-46D2-AD98-2FEAF1BED23E}E:\gry\steam\steamapps\common\thehunter\game\thehunter.exe] => (Block) E:\gry\steam\steamapps\common\thehunter\game\thehunter.exe Brak pliku FirewallRules: [UDP Query User{15DA89D6-34EF-45FB-8731-49DEFA89130E}E:\gry\steam\steamapps\common\thehunter\game\thehunter.exe] => (Block) E:\gry\steam\steamapps\common\thehunter\game\thehunter.exe Brak pliku FirewallRules: [{F4B9FF99-6E2D-427D-99AA-D8A853A74AAB}] => (Allow) 㩃啜敳獲䵜湩捥慲瑦䅜灰慄慴剜慯業杮癜敩屷楶睥攮數 Brak pliku FirewallRules: [{4F3AB946-A85E-4FE8-82B1-84C9EC39A06E}] => (Allow) 㩃啜敳獲䵜湩捥慲瑦䅜灰慄慴剜慯業杮癜敩屷楶睥⹕硥e Brak pliku FirewallRules: [TCP Query User{3227E269-D0C0-4FB4-BD5A-34C73B7B6529}C:\program files (x86)\steam\steamapps\common\newz\newzlauncher.exe] => (Block) C:\program files (x86)\steam\steamapps\common\newz\newzlauncher.exe Brak pliku FirewallRules: [UDP Query User{CFF5F665-F213-4840-95A3-AE635CF54568}C:\program files (x86)\steam\steamapps\common\newz\newzlauncher.exe] => (Block) C:\program files (x86)\steam\steamapps\common\newz\newzlauncher.exe Brak pliku FirewallRules: [TCP Query User{6B77E0B2-86ED-4DBD-93BC-86C0410EE0E4}E:\gry\steam\steamapps\common\riders of icarus\bin64\launcher.exe] => (Block) E:\gry\steam\steamapps\common\riders of icarus\bin64\launcher.exe Brak pliku FirewallRules: [UDP Query User{ED2F3308-7DA2-447B-90E5-3C2174ACF212}E:\gry\steam\steamapps\common\riders of icarus\bin64\launcher.exe] => (Block) E:\gry\steam\steamapps\common\riders of icarus\bin64\launcher.exe Brak pliku FirewallRules: [TCP Query User{4FC01B0B-45EA-4F21-B6D7-90E5994748CB}C:\program files\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_45\bin\javaw.exe FirewallRules: [UDP Query User{3FCB51C5-B113-4BAD-8FC5-4C702E6A5B0C}C:\program files\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_45\bin\javaw.exe FirewallRules: [{216D74ED-DD49-4D77-8CEA-7C3D51DC2DB2}] => (Allow) C:\Program Files (x86)\Remotr\RemotrServer.exe Brak pliku FirewallRules: [{6F5F94F7-B5FB-4E79-A5D6-C0EA149908DA}] => (Allow) C:\Program Files (x86)\Remotr\RemotrServer.exe Brak pliku FirewallRules: [TCP Query User{1A8B1E2C-7318-435A-AB3B-2DCD9E92A125}E:\gry\sims 4\the sims 4 island living\game\bin\ts4_x64.exe] => (Block) E:\gry\sims 4\the sims 4 island living\game\bin\ts4_x64.exe Brak pliku FirewallRules: [UDP Query User{109B134B-0773-4EEB-BCC8-70BA4058C58D}E:\gry\sims 4\the sims 4 island living\game\bin\ts4_x64.exe] => (Block) E:\gry\sims 4\the sims 4 island living\game\bin\ts4_x64.exe Brak pliku RemoveProxy: