Odinstaluj:
ProxyGate version 3.0.0.1180
Wykonaj Fixlist.txt dla FRST:
CloseProcesses:
EmptyTemp:
Task: {1E756A1B-2442-4805-807E-326F017068F2} - System32\Tasks\RDReminder => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
Task: {47191DF8-397D-45B0-86E2-BE938F4B4629} - System32\Tasks\{6AE99988-6023-4479-969A-75E4685571AE} => "c:\program files (x86)\google\chrome\application\chrome.exe" hxxps://ui.skype.com/ui/0/7.36.0.101/pl/abandoninstall?source=lightinstaller&page=tsBing
Task: {7D423B65-516C-4F74-A0EA-EBE77D0123F5} - \DLL-Files.Com Fixer_MONTHLY -> Brak pliku <==== UWAGA
Task: {D3F99154-5C16-4AD7-BC5A-7EC3F95834E6} - \DLL-Files.Com Fixer_Updates -> Brak pliku <==== UWAGA
Shortcut: C:\Users\Damian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NFS Most Wanted PL\NFS Most Wanted - Spolszczenie.lnk -> E:\NFS MW\speed.bat (Brak pliku)
(Gold Click Ltd) C:\Program Files (x86)\ProxyGate\PGChk.exe
(SoundMixer) C:\Users\Damian\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe
(Gold Click Ltd) C:\Program Files (x86)\ProxyGate\Cloud.exe
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [jswtrayutil] => "C:\Program Files (x86)\Jumpstart\jswtrayutil.exe"
HKU\S-1-5-21-2337524587-3902629998-3529064734-1001\...\Run: [5F8F5B5E4A808BE75FC6188DA276F8B683B1D340._service_run] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680 2018-12-12] (Google Inc.)
HKU\S-1-5-21-2337524587-3902629998-3529064734-1001\...\MountPoints2: {04e9366b-043c-11e7-a0df-d07e35d7180a} - "I:\setup.exe"
HKU\S-1-5-21-2337524587-3902629998-3529064734-1001\...\MountPoints2: {5843d1d2-6f3d-11e7-a0fc-d07e35d7180a} - "H:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2337524587-3902629998-3529064734-1001\...\MountPoints2: {749207bb-41f5-11e7-a0f2-d07e35d7180a} - "H:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2337524587-3902629998-3529064734-1001\...\MountPoints2: {b4e245ad-a9f1-11e7-a101-d07e35d7180a} - "H:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2337524587-3902629998-3529064734-1001\...\Winlogon: [Shell] %comspec% <==== UWAGA
HKU\S-1-5-21-2337524587-3902629998-3529064734-1001\...\Command Processor: @mode 20,5 & tasklist /FI "IMAGENAME eq SoundMixer.exe" 2>NUL | find /I /N "SoundMixer.exe">NUL && exit & if exist "C:\Users\Damian\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe" ( start /MIN "" "C:\Users\Damian\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe" & tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) else ( tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) <==== UWAGA
GroupPolicy: Ograniczenia ? <==== UWAGA
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre-10.0.1\bin\ssv.dll => Brak pliku
BHO: Spyware Terminator 2015 Internet Guard -> {82A76710-4F98-4957-92BE-99648A4E2475} -> Brak pliku
FF Extension: (Brak nazwy) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [nie znaleziono]
S2 pgt_svc; C:\Program Files (x86)\ProxyGate\MainService.exe [2285664 2017-02-22] (Gold Click Ltd) <==== UWAGA
S2 HuaweiHiSuiteService64.exe; "C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe" -/service [X]
S2 jswpbapi; C:\Program Files (x86)\Jumpstart\jswpbapi.exe [X]
S3 jswpsapi; C:\Program Files (x86)\Jumpstart\jswpsapi.exe [X]
2019-01-09 21:05 - 2018-05-26 16:21 - 000000000 ____D C:\Program Files (x86)\ProxyGate
2018-05-26 16:21 - 2018-05-26 16:21 - 000000000 _____ () C:\Users\Damian\AppData\Roaming\FC29FA0894FE.ini
2018-10-12 17:47 - 2018-10-12 17:47 - 004712448 _____ (SoundMixer) C:\Users\Damian\AppData\Roaming\Launcher_01.exe
C:\Users\Damian\AppData\Roaming\Microsoft\SoundMixer\