CloseProcesses: CreateRestorePoint: EmptyTemp: HKLM\...\Policies\Explorer: [NoViewOnDrive] 0 HKLM\...\Policies\Explorer: [DisableLocalMachineRun] 0 HKLM\...\Policies\Explorer: [DisableLocalMachineRunOnce] 0 HKLM\...\Policies\Explorer: [DisableCurrentUserRun] 0 HKLM\...\Policies\Explorer: [DisableCurrentUserRunOnce] 0 HKLM\...\Policies\Explorer: [NoViewContextMenu] 0 HKLM\...\Policies\Explorer: [NoShellSearchButton] 0 HKLM\...\Policies\Explorer: [NoFind] 0 HKLM\...\Policies\Explorer: [NoFile] 0 HKLM\...\Policies\Explorer: [HideClock] 0 HKLM\...\Policies\Explorer: [NoTrayContextMenu] 0 HKLM\...\Policies\Explorer: [NoTrayItemsDisplay] 0 HKLM\...\Policies\Explorer: [NoSetFolders] 0 HKLM\...\Policies\Explorer: [NoDevMgrUpdate] 0 HKLM\...\Policies\Explorer: [NoSetTaskbar] 0 HKLM\...\Policies\Explorer: [NoDeletePrinter] 0 HKLM\...\Policies\Explorer: [NoDFSTab] 0 HKLM\...\Policies\Explorer: [NoChangeStartMenu] 0 HKLM\...\Policies\Explorer: [NoLogoff] 0 HKLM\...\Policies\Explorer: [NoWindowsUpdate] 0 HKLM\...\Policies\Explorer: [NoEncryptOnMove] 0 HKLM\...\Policies\Explorer: [NoRunasInstallPrompt] 0 HKLM\...\Policies\Explorer: [NoResolveSearch] 0 HKLM\...\Policies\Explorer: [NoSaveSettings] 0 HKLM\...\Policies\Explorer: [NoHardwareTab] 0 HKLM\...\Policies\Explorer: [NoStartMenuSubFolders] 0 HKLM\...\Policies\Explorer: [NoDesktop] 0 HKU\S-1-5-19\...\Policies\system: [DisableCMD] 0 HKU\S-1-5-19\...\Policies\system: [NoDispAppearancePage] 0 HKU\S-1-5-19\...\Policies\system: [NoDispBackgroundPage] 0 HKU\S-1-5-19\...\Policies\system: [NoDispSettingsPage] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoViewOnDrive] 0 HKU\S-1-5-19\...\Policies\Explorer: [DisableLocalMachineRun] 0 HKU\S-1-5-19\...\Policies\Explorer: [DisableLocalMachineRunOnce] 0 HKU\S-1-5-19\...\Policies\Explorer: [DisableCurrentUserRun] 0 HKU\S-1-5-19\...\Policies\Explorer: [DisableCurrentUserRunOnce] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoViewContextMenu] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoFile] 0 HKU\S-1-5-19\...\Policies\Explorer: [HideClock] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoTrayContextMenu] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoSetFolders] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoDevMgrUpdate] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoSetTaskbar] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoDeletePrinter] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoDFSTab] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoChangeStartMenu] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoLogoff] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoWindowsUpdate] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoEncryptOnMove] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoRunasInstallPrompt] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoResolveSearch] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoSaveSettings] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoHardwareTab] 0 HKU\S-1-5-19\...\Policies\Explorer: [NoStartMenuSubFolders] 0 HKU\S-1-5-20\...\Policies\system: [DisableCMD] 0 HKU\S-1-5-20\...\Policies\system: [NoDispAppearancePage] 0 HKU\S-1-5-20\...\Policies\system: [NoDispBackgroundPage] 0 HKU\S-1-5-20\...\Policies\system: [NoDispSettingsPage] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoViewOnDrive] 0 HKU\S-1-5-20\...\Policies\Explorer: [DisableLocalMachineRun] 0 HKU\S-1-5-20\...\Policies\Explorer: [DisableLocalMachineRunOnce] 0 HKU\S-1-5-20\...\Policies\Explorer: [DisableCurrentUserRun] 0 HKU\S-1-5-20\...\Policies\Explorer: [DisableCurrentUserRunOnce] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoViewContextMenu] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoFile] 0 HKU\S-1-5-20\...\Policies\Explorer: [HideClock] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoTrayContextMenu] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoSetFolders] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoDevMgrUpdate] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoSetTaskbar] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoDeletePrinter] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoDFSTab] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoChangeStartMenu] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoLogoff] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoWindowsUpdate] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoEncryptOnMove] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoRunasInstallPrompt] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoResolveSearch] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoSaveSettings] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoHardwareTab] 0 HKU\S-1-5-20\...\Policies\Explorer: [NoStartMenuSubFolders] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\system: [DisableCMD] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\system: [NoDispAppearancePage] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\system: [NoDispBackgroundPage] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\system: [NoDispSettingsPage] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoViewOnDrive] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [DisableLocalMachineRun] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [DisableLocalMachineRunOnce] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [DisableCurrentUserRun] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [DisableCurrentUserRunOnce] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoViewContextMenu] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoFile] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [HideClock] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoTrayContextMenu] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoSetFolders] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoDevMgrUpdate] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoSetTaskbar] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoDeletePrinter] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoDFSTab] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoChangeStartMenu] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoLogoff] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoWindowsUpdate] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoEncryptOnMove] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoRunasInstallPrompt] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoResolveSearch] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoSaveSettings] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoHardwareTab] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NoStartMenuSubFolders] 0 HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1 HKU\S-1-5-18\...\Policies\system: [DisableCMD] 0 HKU\S-1-5-18\...\Policies\system: [NoDispAppearancePage] 0 HKU\S-1-5-18\...\Policies\system: [NoDispBackgroundPage] 0 HKU\S-1-5-18\...\Policies\system: [NoDispSettingsPage] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoViewOnDrive] 0 HKU\S-1-5-18\...\Policies\Explorer: [DisableLocalMachineRun] 0 HKU\S-1-5-18\...\Policies\Explorer: [DisableLocalMachineRunOnce] 0 HKU\S-1-5-18\...\Policies\Explorer: [DisableCurrentUserRun] 0 HKU\S-1-5-18\...\Policies\Explorer: [DisableCurrentUserRunOnce] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoViewContextMenu] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoFile] 0 HKU\S-1-5-18\...\Policies\Explorer: [HideClock] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoTrayContextMenu] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoSetFolders] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoDevMgrUpdate] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoSetTaskbar] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoDeletePrinter] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoDFSTab] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoChangeStartMenu] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoLogoff] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoWindowsUpdate] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoEncryptOnMove] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoRunasInstallPrompt] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoResolveSearch] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoSaveSettings] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoHardwareTab] 0 HKU\S-1-5-18\...\Policies\Explorer: [NoStartMenuSubFolders] 0 GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Edge: Ograniczenia <==== UWAGA Task: {6B2EAD90-0363-4F16-9A45-649384CCCEA7} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\Explorer.exe /NOUACCHECK Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe Tcpip\..\Interfaces\{bfdc1718-8568-484c-a7d0-f619ce0804e7}: [DhcpNameServer] 91.214.0.100 91.214.0.100 FF NewTab: Mozilla\Firefox\Profiles\3edpxodg.default -> about:newtab FF NewTab: Mozilla\Firefox\Profiles\bs81zw65.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-12-12 12:49:57&iid=933e1cec-d9f7-45fc-a3e3-d11c808350aa&bName= FF Extension: (sty) - C:\Users\przyb\AppData\Roaming\Mozilla\Firefox\Profiles\bs81zw65.default-release\Extensions\{ed7cae8b-54d8-49f0-b0bb-95a36f8d5361}.xpi [2020-12-25] S3 cpuz145; Brak ImagePath U0 SR; Brak ImagePath U2 srservice; Brak ImagePath 2020-12-19 12:13 - 2020-12-19 12:13 - 000000448 __RSH C:\ProgramData\ntuser.pol FCheck: C:\Windows\SysWOW64\version_IObitDel.dll [2020-12-13] <==== UWAGA (zerobajtowy plik/folder) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Brak pliku ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => -> Brak pliku ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku HKU\.DEFAULT\Software\Classes\exefile: "%1" %* <==== UWAGA HKU\.DEFAULT\Software\Classes\.exe: exefile => "%1" %* <==== UWAGA HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\Software\Classes\exefile: "%1" %* <==== UWAGA HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\Software\Classes\.exe: exefile => "%1" %* <==== UWAGA IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-2764523826-2564317510-2801022712-1001\...\localhost -> localhost RemoveProxy: Hosts: