Start::
CloseProcesses:
SystemRestore: On
CreateRestorePoint:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ограничение <==== ВНИМАНИЕ
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Ограничение <==== ВНИМАНИЕ
HKLM\SOFTWARE\Policies\Microsoft\MRT: Ограничение <==== ВНИМАНИЕ
IFEO\CompatTelRunner.exe: [Debugger] svchost.exe
IFEO\upfc.exe: [Debugger] svchost.exe
GroupPolicy: Ограничение - Chrome <==== ВНИМАНИЕ
Policies: C:\ProgramData\NTUSER.pol: Ограничение <==== ВНИМАНИЕ
HKLM\SOFTWARE\Policies\Google: Ограничение <==== ВНИМАНИЕ
Task: {E3A8E645-F4C2-40FF-99DE-D08CD6B302E7} - System32\Tasks\AdLock Update Task-S-1-5-21-45164569-329947780-844243588-1001 => C:\Windows\System32\msiexec.exe [67072 2020-04-15] (Microsoft Windows -> Microsoft Corporation) -> /i "C:\Users\Meijin\AppData\Local\Programs\ivanovsasha224\28e1fbe59a.msi" /quiet CHROME=1
C:\Users\Meijin\AppData\Local\Programs\ivanovsasha224\28e1fbe59a.msi
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ограничение <==== ВНИМАНИЕ
CHR StartupUrls: Default -> "hxxp://mypoisk.su/","hxxp://rusearch.co","hxxps://find-it.pro/?utm_source=distr_m"
2023-08-06 13:29 - 2023-08-06 12:37 - 000000000 ____D C:\Users\Meijin\AppData\Roaming\toc
2023-08-06 13:28 - 2023-08-06 13:28 - 000003426 _____ C:\Windows\system32\Tasks\planners-prophet
2023-08-06 13:28 - 2023-08-06 13:28 - 000000000 ____D C:\ProgramData\professionals-profiles
2023-08-06 13:28 - 2023-08-06 13:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\porter-promotional
2023-07-27 15:36 - 2023-07-27 15:36 - 000000000 __SHD C:\ProgramData\princeton-produce
AdBlock Shield 1.0.0.0 (HKU\S-1-5-21-45164569-329947780-844243588-1001\...\{a489364f-65bd-48d9-9177-8ca7333d1a32}) (Version: 1.0.0.0 - ivanovsasha224) Hidden
FirewallRules: [{6BD71DFC-77BA-46A7-84C5-C50625F5B6DE}] => (Allow) 㩃啜敳獲䵜楥楪屮灁䑰瑡屡潒浡湩屧潴屣癍睒⹙硥e => Нет файла
FirewallRules: [{161D3292-B302-44DE-8ADB-BB216EFCF1CD}] => (Allow) 㩃啜敳獲䵜楥楪屮灁䑰瑡屡潒浡湩屧潴屣档潲敭牤癩牥攮數 => Нет файла
FirewallRules: [{EC61D076-6ACB-4C00-A95C-4D0F2F51D8EB}] => (Allow) 㩃啜敳獲䵜楥楪屮灁䑰瑡屡潒浡湩屧潴屣桃潲敭䅜灰楬慣楴湯䍜牨浯硥e => Нет файла
FirewallRules: [{84734463-B7DF-42E5-BCB7-9DE6E634D18F}] => (Allow) 㩃啜敳獲䵜楥楪屮灁䑰瑡屡潒浡湩屧潴屣牒㡳攮數 => Нет файла
ExportKey: HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions
EmptyTemp:
Reboot:
End::