SystemRestore: On CreateRestorePoint: CloseProcesses: EmptyTemp: HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {0f29f8ef-8dba-11e8-8280-0071cca38d4c} - "F:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {0f29f9d6-8dba-11e8-8280-0071cca38d4c} - "D:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {111ac43c-0943-11e9-8292-0071cca38d4c} - "D:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {1a298c07-48b7-11ea-82b3-0071cca38d4c} - "D:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {23b542a1-473b-11e8-8272-0071cca38d4c} - "D:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {3a56038c-f24b-11e7-826b-0071cca38d4c} - "D:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {5b8e331f-fefb-11e8-8292-0071cca38d4c} - "D:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {807ce006-d73d-11e7-8268-0071cca38d4c} - "D:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {83a911a2-36cc-11e9-829a-0071cca38d4c} - "D:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {94afd0ee-05f8-11ea-82ae-0071cca38d4c} - "D:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {adb4b502-82df-11ea-82b9-0071cca38d4c} - "D:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {f0408802-8db0-11e7-8262-0071cca38d4c} - "D:\AutoRun.exe" HKU\S-1-5-21-2370092219-325240825-1937348586-1001\...\MountPoints2: {f040885d-8db0-11e7-8262-0071cca38d4c} - "D:\AutoRun.exe" HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA Task: {6835185D-58DC-4661-9323-508CBD28984B} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Acrobat Update Task" /ENABLE Task: {6835185D-58DC-4661-9323-508CBD28984B} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE Task: {6835185D-58DC-4661-9323-508CBD28984B} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE Task: {6835185D-58DC-4661-9323-508CBD28984B} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineCore" /ENABLE Task: {6835185D-58DC-4661-9323-508CBD28984B} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineUA" /ENABLE Task: {6835185D-58DC-4661-9323-508CBD28984B} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\User_Feed_Synchronization-{E74205F8-3F1D-428D-9186-8D758D150347}" /ENABLE Task: {6835185D-58DC-4661-9323-508CBD28984B} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE Tcpip\..\Interfaces\{3CFAD308-F9C2-47E2-935D-7BDE69FF2B8F}: [DhcpNameServer] 62.233.233.233 8.8.8.8 192.168.1.1 CHR DefaultSearchURL: Default -> hxxps://pl.search.yahoo.com/search?fr=mcafee_uninternational&type=E210PL91105G0&p={searchTerms} CHR DefaultSearchKeyword: Default -> mcafee 2021-01-15 18:38 - 2020-03-26 18:44 - 000000000 ____D C:\Program Files\ByteFence ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku HKU\S-1-5-21-2370092219-325240825-1937348586-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.pl/?gws_rd=ssl Hosts: