CreateRestorePoint: CloseProcesses: EmptyTemp: HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-4059998745-934529957-3264396687-1001\...\Run: [GalaxyClient] => [X] GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA Task: {1D83DDDE-1FDD-47F2-B426-B72234904A83} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent => {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} Task: {2A2EC4CB-0A79-4A75-BB4E-0BD4CF585AE7} - System32\Tasks\McAfeeLogon => C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe Task: {EEA3D051-9197-45B8-A1D2-6F7D005C6679} - System32\Tasks\McAfee\McAfee Idle Detection Task => {ABCDCA3B-DE6B-5A7C-B132-6D7CBA63E5C5} Task: {FAD559AC-864F-40B2-8665-C5B2376298AB} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [3949168 2017-08-03] (McAfee, Inc. -> McAfee, Inc.) Tcpip\..\Interfaces\{41d6a3a0-e23b-4067-8ba4-4cfeabbaabcb}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{bc0f3f20-ffa0-43e7-9860-ee5d389c3b2e}: [DhcpNameServer] 192.168.33.1 Tcpip\..\Interfaces\{bc800bbd-a9d4-4176-85e4-e265ef96048b}: [DhcpNameServer] 192.168.33.1 FF NewTab: Mozilla\Firefox\Profiles\5gng3yrj.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-10-09 01:29:46&bName= FF NewTab: Mozilla\Firefox\Profiles\g3k0x5za.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-10-09 01:29:46&bName= FF NetworkProxy: Mozilla\Firefox\Profiles\g3k0x5za.default-release -> http", "104.238.99.130" S4 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1046456 2017-09-14] (McAfee, Inc. -> Intel Security, Inc.) S3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [492520 2017-10-17] (McAfee, Inc. -> McAfee LLC) S3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [505768 2017-11-14] (McAfee, Inc. -> McAfee LLC.) S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [108456 2017-11-14] (McAfee, Inc. -> McAfee LLC.) S3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [115176 2017-10-17] (McAfee, Inc. -> McAfee LLC) 2021-01-23 01:53 - 2019-08-01 21:39 - 000000266 __RSH C:\ProgramData\ntuser.pol CustomCLSID: HKU\S-1-5-21-4059998745-934529957-3264396687-1001_Classes\CLSID\{233525e0-5434-46ef-b464-fd7e45e2e145}\localserver32 -> "C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe" -ToastActivated => Brak pliku ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Brak pliku ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Brak pliku ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Brak pliku ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Brak pliku ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Brak pliku HKU\S-1-5-21-4059998745-934529957-3264396687-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-10-09 01:29:46&bName= HKU\S-1-5-21-4059998745-934529957-3264396687-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus17win10.msn.com/?pc=ASTE SearchScopes: HKU\S-1-5-21-4059998745-934529957-3264396687-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-4059998745-934529957-3264396687-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-4059998745-934529957-3264396687-1001 -> {993F5746-4C15-42BC-99C1-064A1764271B} URL = hxxps://securesearch.org?q={searchTerms} Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - Brak pliku IE trusted site: HKU\S-1-5-21-4059998745-934529957-3264396687-1001\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-4059998745-934529957-3264396687-1001\...\webcompanion.com -> hxxp://webcompanion.com FirewallRules: [UDP Query User{1033CA1F-D383-4E38-9951-F8F573E61D91}C:\gry\cyberpunk-2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\gry\cyberpunk-2077\bin\x64\cyberpunk2077.exe => Brak pliku FirewallRules: [TCP Query User{9ED8DD3E-9E9C-4DA4-AAE9-5E39CF620D09}C:\gry\cyberpunk-2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\gry\cyberpunk-2077\bin\x64\cyberpunk2077.exe => Brak pliku FirewallRules: [{A3B4A843-0FF8-4070-A810-BAC997CB057C}] => (Allow) C:\Users\a\Downloads\Wot mody\WGCheck_EU\WGCheck.exe => Brak pliku FirewallRules: [{AC93667D-D6F4-4A09-BE3D-F4C0FABD1ABC}] => (Allow) C:\Users\a\Downloads\Wot mody\WGCheck_EU\WGCheck.exe => Brak pliku FirewallRules: [{6D4373D6-1492-457F-A639-EE220044F319}] => (Allow) C:\Program Files (x86)\Origin Games\Anthem\Anthem.exe => Brak pliku FirewallRules: [{A38F99F8-05EA-458F-B893-356101567B91}] => (Allow) C:\Program Files (x86)\Origin Games\Anthem\Anthem.exe => Brak pliku FirewallRules: [{467F6A4C-0AE6-4981-BD10-E82C9D04C3D1}] => (Allow) C:\Program Files (x86)\Origin Games\Anthem\AnthemTrial.exe => Brak pliku FirewallRules: [{49E4C4C8-5953-4FEA-826F-30D31FBDF328}] => (Allow) C:\Program Files (x86)\Origin Games\Anthem\AnthemTrial.exe => Brak pliku FirewallRules: [UDP Query User{1B96C41C-986A-406B-8725-46E28E1DB513}C:\gry\fifa 19\fifa19.exe] => (Allow) C:\gry\fifa 19\fifa19.exe => Brak pliku FirewallRules: [TCP Query User{AE200EAC-8230-45FF-BB8D-2D1FCCD662A6}C:\gry\fifa 19\fifa19.exe] => (Allow) C:\gry\fifa 19\fifa19.exe => Brak pliku FirewallRules: [{86715003-537B-4499-B574-13FF3E0D91B4}] => (Allow) C:\Gry\FIFA 19\FIFASetup\fifaconfig.exe => Brak pliku FirewallRules: [{7EC40693-18F7-4AA6-8426-280159C5246E}] => (Allow) C:\Gry\FIFA 19\FIFASetup\fifaconfig.exe => Brak pliku FirewallRules: [{1274A0D5-E59A-4E27-A5D8-BC0DFFF0B750}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe => Brak pliku FirewallRules: [{581F7481-26EC-4317-B7B8-C80EB926C32F}] => (Block) C:\Gry\Forza Horizon 4\FH4\Microsoft.SunriseBaseGame_1.332.904.2_x64__8wekyb3d8bbwe.exe => Brak pliku FirewallRules: [{A4F4CA9D-8D36-4998-827D-8FA9C7158D4D}] => (Block) C:\Gry\Forza Horizon 4\FH4\Microsoft.SunriseBaseGame_1.332.904.2_x64__8wekyb3d8bbwe.exe => Brak pliku FirewallRules: [{D7EFBC11-BB70-448B-ADB8-6AFC9E024636}] => (Allow) C:\Ross-Tech\VCDS\VCDS.EXE => Brak pliku FirewallRules: [{03940BFE-DCEF-46BE-B891-9DB64B46342B}] => (Allow) C:\Ross-Tech\VCDS\VCIConfig.EXE => Brak pliku FirewallRules: [{87832A56-0FB1-43FF-A7FC-46B7304FDF57}] => (Allow) C:\Program Files\Rainway\Rainway.Common.dll => Brak pliku C:\Users\a\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VCDS\Logs Folder.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VCDS\UnInstall.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VCDS\VC-Scope.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VCDS\VCDS Release 20.12.lnk C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VCDS\VCIConfig.lnk C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk RemoveProxy: Hosts: