CloseProcesses: CreateRestorePoint: EmptyTemp: HKLM\...\Policies\Explorer: [HideSCAHealth] 1 HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-3920829809-2158873225-4063753776-1000\...\MountPoints2: {121c302e-c7b3-11e7-91fc-74d4352dc98f} - F:\HiSuiteDownLoader.exe HKU\S-1-5-21-3920829809-2158873225-4063753776-1000\...\MountPoints2: {443c10c1-6414-11e7-b5e2-74d4352dc98f} - F:\setup.exe HKU\S-1-5-21-3920829809-2158873225-4063753776-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11264 2009-07-14] (Microsoft Windows -> Microsoft Corporation) FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA Task: {42BF397A-447C-4EB0-91C9-8B8D11C4C8C7} - System32\Tasks\{93163726-9FE0-47B8-8FB0-FE5EC17902AC} => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91591032 2020-04-14] (Skype Software Sarl -> Skype Technologies S.A.) Task: {E9129ED4-4627-497F-A69D-73FC865BD15E} - System32\Tasks\{A041FB7D-AFC3-4107-83B0-785A622000BB} => C:\Windows\system32\pcalua.exe -a "C:\Users\Admin\Desktop\Nowy folder\au\W7\setup.exe" -d "C:\Users\Admin\Desktop\Nowy folder\au\W7" Tcpip\..\Interfaces\{17C5D2DA-26F0-482E-9D8F-2F33B3924268}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{67733B01-B70A-4974-8068-638881556E9C}: [DhcpNameServer] 192.168.42.129 FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] S3 Kaozundxi; \??\C:\Windows\system32\Kaozundxi.sys [X] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku AlternateDataStreams: C:\Users\Admin\Dane aplikacji:6699d3ee8dd9cf775caae782c8f44f03 [394] AlternateDataStreams: C:\Users\Admin\AppData\Roaming:6699d3ee8dd9cf775caae782c8f44f03 [394] AlternateDataStreams: C:\Users\Admin\AppData\Local\Temp:$DATA​ [16] C:\Users\Admin\Desktop\Programy\µTorrent.lnk C:\Users\Admin\AppData\Local\Microsoft\Windows\GameExplorer\{64A7BCB0-B64A-47BD-A609-B2E72F0284EF}\PlayTasks\0\Zagraj.lnk C:\Users\Admin\AppData\Local\Microsoft\Windows\GameExplorer\{04416EB5-2719-48F4-8B02-1FE66402E784}\PlayTasks\0\Zagraj.lnk CMD: netsh advfirewall reset CMD: ipconfig /flushdns RemoveProxy: