CloseProcesses: CreateRestorePoint: EmptyTemp: HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA Tcpip\..\Interfaces\{6EB765DF-F59C-4B50-8B4F-18592E5AA8C8}: [DhcpNameServer] 8.8.8.8 8.8.4.4 Tcpip\..\Interfaces\{C607BC98-869C-41A4-80A3-7819E6751306}: [DhcpNameServer] 10.11.0.1 HKLM\SYSTEM\ControlSet001\Services\hitmanpro37 => \??\C:\Windows\system32\drivers\hitmanpro37.sys <==== UWAGA (Rootkit!/Zablokowana usługa) U3 aswbdisk; Brak ImagePath AlternateDataStreams: C:\ProgramData:NT [40] AlternateDataStreams: C:\ProgramData:NT2 [678] AlternateDataStreams: C:\Users\All Users:NT [40] AlternateDataStreams: C:\Users\All Users:NT2 [678] AlternateDataStreams: C:\ProgramData\Application Data:NT [40] AlternateDataStreams: C:\ProgramData\Application Data:NT2 [678] AlternateDataStreams: C:\ProgramData\Dane aplikacji:NT [40] AlternateDataStreams: C:\ProgramData\Dane aplikacji:NT2 [678] MSCONFIG\startupfolder: C:^Users^Gigabyte^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk => C:\Windows\pss\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk.Startup FirewallRules: [SPPSVC-In-TCP] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{19106126-6AF5-45BF-BA78-6CC732F6F3A4}] => (Allow) LPort=5357 FirewallRules: [TCP Query User{887A9622-EFE0-4949-B4D4-C2D56C719D25}C:\Program Files\Java\jre1.8.0_181\bin\javaw.exe] => (Allow) C:\Program Files\Java\jre1.8.0_181\bin\javaw.exe FirewallRules: [UDP Query User{4FDDA2C6-F9BF-4270-8913-146ACA8DBEA7}C:\Program Files\Java\jre1.8.0_181\bin\javaw.exe] => (Allow) C:\Program Files\Java\jre1.8.0_181\bin\javaw.exe FirewallRules: [TCP Query User{FCBCF095-DDE5-45A5-A2B6-7FE527055D4A}C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe FirewallRules: [UDP Query User{800A6CFA-C478-48B0-83AB-409D6123B058}C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe RemoveProxy: