SystemRestore: On CloseProcesses: CreateRestorePoint: EmptyTemp: VirusTotal: C:\Program Files (x86)\Common Files\KMSpico\Update\kmsupd.exe (@ByELDI -> ByELDI) [Brak podpisu cyfrowego] C:\Program Files (x86)\Common Files\KMSpico\Update\kmsupd.exe GroupPolicy: Ograniczenia ? <==== UWAGA GroupPolicy\User: Ograniczenia ? <==== UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA Task: {119DF59E-EFEB-4B42-9F5C-08B687BEC625} - System32\Tasks\KMSpico Auto Update Scheduler => C:\Program Files (x86)\Common Files\KMSpico\Update\kmsupd.exe [81248 2020-02-26] (@ByELDI -> ByELDI) [Brak podpisu cyfrowego] Task: {A97C9301-AECA-4856-ABCF-49AFF1F29C60} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe Task: C:\WINDOWS\Tasks\HARRISVILLE Launcher.job => C:\Program Files\HARRISVILLE\HARRISVILLE.exe Task: C:\WINDOWS\Tasks\HARRISVILLE.job => C:\Program Files\HARRISVILLE\HARRISVILLE.exe HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings: [ProxySettingsPerUser] 0 <==== UWAGA (Ograniczenia - ProxySettings) AutoConfigURL: [HKLM] => hxxp://127.0.0.1:86/ AutoConfigURL: [HKLM-x32] => hxxp://127.0.0.1:86/ AutoConfigURL: [S-1-5-21-4274124972-4000838131-776618168-1001] => hxxp://127.0.0.1:86/ Tcpip\..\Interfaces\{15c679bb-4f92-437c-80b9-5cfa3b6960d8}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{15c679bb-4f92-437c-80b9-5cfa3b6960d8}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{2d0938ac-de02-11e7-9457-806e6f6e6963}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{803eb89f-3b5b-45fa-8fb7-cf3053d8808c}: [NameServer] 8.8.8.8 ManualProxies: 0hxxp://127.0.0.1:86/ HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <==== UWAGA FF HKU\S-1-5-21-4274124972-4000838131-776618168-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\kam_g\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => nie znaleziono FF Plugin HKU\S-1-5-21-4274124972-4000838131-776618168-1001: @acestream.net/acestreamplugin,version=3.1.28 -> C:\Users\kam_g\AppData\Roaming\ACEStream\player\npace_plugin.dll [Brak pliku] ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> Brak pliku ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> Brak pliku AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT [40] AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2 [432] FirewallRules: [{3346F103-18FC-4788-8BD0-23995C9401C3}] => (Allow) C:\Windows\SysWOW64\svchost.exe (Microsoft Windows Publisher -> Microsoft Corporation) FirewallRules: [{9963387A-BDE7-48FE-A806-7F99A301F217}] => (Allow) C:\Windows\SysWOW64\svchost.exe (Microsoft Windows Publisher -> Microsoft Corporation) FirewallRules: [{A9A7D0A9-3979-442F-A08B-3F887ADCF3D6}] => (Allow) C:\Windows\SysWOW64\svchost.exe (Microsoft Windows Publisher -> Microsoft Corporation) FirewallRules: [{C5F53CF4-6C6D-48C8-897A-F50B188D49F9}] => (Allow) C:\Users\kam_g\dWeHWY.exe (Microsoft Corporation) [Brak podpisu cyfrowego] FirewallRules: [{7FB987AC-0D0B-4107-BD1C-FAF84B71B900}] => (Allow) C:\Users\kam_g\euUwzj.exe (Microsoft Corporation) [Brak podpisu cyfrowego] FirewallRules: [{2B056478-12F0-4319-86D0-CEF88E833213}] => (Allow) C:\Windows\SysWOW64\msiexec.exe (Microsoft Windows -> Microsoft Corporation) RemoveProxy: