Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 26-02-2020 Uruchomiony przez Jakub (administrator) JAKUB-KOMPUTER (Acer Aspire 7739Z) (29-02-2020 17:08:53) Uruchomiony z D:\POBRANE Z NETA Załadowane profile: Jakub (Dostępne profile: Jakub) Platform: Windows 7 Ultimate Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka nie została wykryta!) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxtray.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbengine.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11831400 2011-04-22] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2723624 2011-03-28] (Synaptics Incorporated -> Synaptics Incorporated) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [262024 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-2516416180-2062623577-1553092840-1000\...\MountPoints2: {2ae4f752-c866-11e8-9391-e840f260ecf6} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-2516416180-2062623577-1553092840-1000\...\MountPoints2: {57a48ca2-ccd6-11e9-ba1e-e840f260ecf6} - G:\_AUTORUN\AUTORUN.EXE HKU\S-1-5-21-2516416180-2062623577-1553092840-1000\...\MountPoints2: {77a6ff59-8340-11e7-a6a5-e840f260ecf6} - H:\autorun.exe HKU\S-1-5-21-2516416180-2062623577-1553092840-1000\...\MountPoints2: {77a6ff62-8340-11e7-a6a5-e840f260ecf6} - G:\autorun.exe HKU\S-1-5-21-2516416180-2062623577-1553092840-1000\...\MountPoints2: {e6b3a399-ccda-11e9-b5a3-e840f260ecf6} - I:\_AUTORUN\AUTORUN.EXE HKU\S-1-5-18\...\RunOnce: [SPReview] => "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {00CF6B71-233B-4AA4-85CE-FF423C877A73} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {0ECA128A-5A2E-4DEE-A381-A432E1067A4F} - System32\Tasks\Opera scheduled assistant Autoupdate 1547144427 => C:\Users\Jakub\AppData\Local\Programs\Opera\launcher.exe [1532952 2020-02-24] (Opera Software AS -> Opera Software) Task: {164BA819-B53F-4BBE-9709-6578328C6288} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe [1660520 2020-02-29] (Avast Software s.r.o. -> Avast Software) Task: {2E5E11A3-E972-4DDF-AAB1-9202EBFCE8BF} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_330_Plugin.exe [1458232 2020-02-29] (Adobe Inc. -> Adobe) Task: {3B09355D-C4BD-442E-BE93-66DA53BC95F2} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-14] (Piriform Software Ltd -> Piriform Software Ltd) Task: {4132FAE8-3C4C-4E89-B9A2-24360EF63B37} - System32\Tasks\Opera scheduled Autoupdate 1520524939 => C:\Users\Jakub\AppData\Local\Programs\Opera\launcher.exe [1532952 2020-02-24] (Opera Software AS -> Opera Software) Task: {46E295C6-9AD1-400D-A390-E90136407277} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-02-29] (Adobe Inc. -> Adobe) Task: {4BDCAFE1-EAB5-4409-8096-635C86AD117D} - System32\Tasks\SafeZone scheduled Autoupdate 1457451075 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe Task: {708E7779-2257-4CE8-9868-FEE50E49736C} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2934152 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) Task: {CFC527CD-638C-41DD-B059-8685BA4946F6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-14] (Piriform Software Ltd -> Piriform Ltd) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 195.46.37.3 195.46.37.2 Tcpip\..\Interfaces\{E711C397-4322-4C81-9205-1A41B6B1DC5D}: [DhcpNameServer] 195.46.37.3 195.46.37.2 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.gmx.com/start?src=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=pl&p_tsrc=301ssg01&p_w=y2w04 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.gmx.com/start?src=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=pl&p_tsrc=301ssg01&p_w=y2w04 HKU\S-1-5-21-2516416180-2062623577-1553092840-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.accueil-nav.com/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=pl&p_tsrc=301ssg02&p_w=y1w10&q={searchTerms} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=pl&p_tsrc=301ssg02&p_w=y1w10&q={searchTerms} SearchScopes: HKLM -> {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=pl&p_tsrc=301ssg01&p_w=y2w04&q={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=pl&p_tsrc=301ssg02&p_w=y1w10&q={searchTerms} SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=pl&p_tsrc=301ssg02&p_w=y1w10&q={searchTerms} SearchScopes: HKLM-x32 -> {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=pl&p_tsrc=301ssg01&p_w=y2w04&q={searchTerms} SearchScopes: HKU\S-1-5-21-2516416180-2062623577-1553092840-1000 -> DefaultScope {BB37379D-C433-4ECC-8053-4EA2D67CB4A6} URL = hxxp://www.accueil-nav.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-2516416180-2062623577-1553092840-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://search.gmx.com/web/result?origin=p_jkld_pl&p=jkld&p_brw=ie&p_mkt=pl&p_tsrc=301ssg01&p_w=y2w04&q={searchTerms} SearchScopes: HKU\S-1-5-21-2516416180-2062623577-1553092840-1000 -> {06651016-6D44-4AB1-8648-82FE3528D0AB} URL = hxxp://www.global-pl.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-2516416180-2062623577-1553092840-1000 -> {BB37379D-C433-4ECC-8053-4EA2D67CB4A6} URL = hxxp://www.accueil-nav.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-2516416180-2062623577-1553092840-1000 -> {c2b8e594-d284-ef0b-2c66-48a9c98914bc} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D120718-N0400A915F698E57&form=CONBDF&conlogo=CT3335818&q={searchTerms} Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - Brak pliku StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF DefaultProfile: smrfk42a.default-1582989770455 FF ProfilePath: C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\smrfk42a.default-1582989770455 [2020-02-29] FF DownloadDir: D:\POBRANE Z NETA FF Homepage: Mozilla\Firefox\Profiles\smrfk42a.default-1582989770455 -> hxxps://www.google.com/ FF Extension: (uBlock Origin) - C:\Users\Jakub\AppData\Roaming\Mozilla\Firefox\Profiles\smrfk42a.default-1582989770455\Extensions\uBlock0@raymondhill.net.xpi [2020-02-29] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_330.dll [2020-02-29] (Adobe Inc. -> ) FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) [Brak podpisu cyfrowego] FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_330.dll [2020-02-29] (Adobe Inc. -> ) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2011-07-19] (Foxit Corporation -> Foxit Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6844776 2019-05-29] (AVAST Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [409224 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4452456 2019-09-01] (AVB Disc Soft, SIA -> Disc Soft Ltd) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2018-12-12] (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes Corporation -> Malwarebytes) S2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [25944 2019-05-08] (LAVASOFT SOFTWARE CANADA INC -> ) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37104 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [207448 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [262496 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [205848 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [61472 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [279120 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42288 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [167872 2019-08-01] (AVAST Software s.r.o. -> AVAST Software) R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112312 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [87944 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1030784 2019-08-01] (AVAST Software s.r.o. -> AVAST Software) R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [477584 2019-05-22] (AVAST Software s.r.o. -> AVAST Software) R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [225600 2019-06-17] (AVAST Software s.r.o. -> AVAST Software) R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [385880 2019-06-01] (AVAST Software s.r.o. -> AVAST Software) R3 athr; C:\Windows\System32\DRIVERS\athrx.sys [2712064 2011-03-11] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [42256 2019-09-01] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [59360 2019-09-01] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 hwdatacard; C:\Windows\System32\DRIVERS\ZDDriver.sys [122496 2010-01-20] (Microsoft Windows Hardware Compatibility Publisher -> ZD Secret Incorporated) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2018-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R0 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [253880 2018-06-27] (Malwarebytes Corporation -> Malwarebytes) S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-02-29 17:03 - 2020-02-29 17:09 - 000000000 ____D C:\FRST 2020-02-29 16:54 - 2020-02-29 16:58 - 000002822 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2020-02-29 16:54 - 2020-02-29 16:54 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update 2020-02-29 16:54 - 2020-02-29 16:54 - 000000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2020-02-29 16:54 - 2020-02-29 16:54 - 000000822 _____ C:\ProgramData\Desktop\CCleaner.lnk 2020-02-29 16:54 - 2020-02-29 16:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2020-02-29 16:54 - 2020-02-29 16:54 - 000000000 ____D C:\Program Files\CCleaner 2020-02-29 16:53 - 2020-02-29 16:53 - 000000000 ____D C:\Users\Jakub\AppData\Local\Google 2020-02-29 16:51 - 2020-02-29 16:53 - 000000000 ____D C:\Program Files (x86)\Google 2020-02-29 16:48 - 2020-02-29 16:48 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe 2020-02-29 16:48 - 2020-02-29 16:48 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2020-02-29 16:48 - 2020-02-29 16:48 - 000004532 _____ C:\Windows\system32\Tasks\Adobe Flash Player NPAPI Notifier 2020-02-29 16:48 - 2020-02-29 16:48 - 000004382 _____ C:\Windows\system32\Tasks\Adobe Flash Player Updater 2020-02-29 16:43 - 2020-02-29 16:43 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2020-02-29 16:31 - 2020-02-29 16:58 - 000004330 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1547144427 2020-02-29 16:31 - 2015-09-28 18:07 - 000070224 ____N (CANON INC.) C:\Windows\SysWOW64\IJRMF.exe 2020-02-26 19:30 - 2020-02-26 19:30 - 000000000 _____ C:\Windows\system32\last.dump 2020-02-11 12:57 - 2020-02-11 12:58 - 000000000 ____D C:\Users\Jakub\Desktop\klin prad ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-02-29 17:06 - 2018-01-31 22:38 - 000000000 ____D C:\Users\Jakub\AppData\LocalLow\Mozilla 2020-02-29 17:04 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf 2020-02-29 16:58 - 2019-03-01 14:49 - 000004138 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1520524939 2020-02-29 16:56 - 2014-11-02 16:17 - 000000000 ____D C:\Users\Jakub\AppData\Roaming\DAEMON Tools Lite 2020-02-29 16:55 - 2015-12-29 15:01 - 000000000 ____D C:\Windows\Panther 2020-02-29 16:55 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\ModemLogs 2020-02-29 16:49 - 2015-12-29 16:37 - 000000000 ____D C:\Users\Jakub\AppData\Local\Adobe 2020-02-29 16:48 - 2015-12-29 16:38 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2020-02-29 16:48 - 2015-12-29 16:38 - 000000000 ____D C:\Windows\system32\Macromed 2020-02-29 16:43 - 2015-12-29 16:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-02-29 16:39 - 2015-12-29 16:20 - 000000000 ____D C:\ProgramData\Mozilla 2020-02-29 16:34 - 2009-07-14 05:45 - 000013760 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2020-02-29 16:34 - 2009-07-14 05:45 - 000013760 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2020-02-29 16:31 - 2018-10-15 19:03 - 000000000 ____D C:\Program Files (x86)\Canon 2020-02-29 16:30 - 2019-01-11 14:10 - 000000000 ____D C:\Users\Jakub\Downloads\opera autoupdate 2020-02-29 16:30 - 2018-03-08 16:55 - 000000000 ____D C:\Users\Jakub\AppData\Local\{63BD55E1-4715-3959-2A8D-1CB10EE5E029} 2020-02-29 16:27 - 2018-01-31 19:19 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update 2020-02-29 16:26 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\tracing 2020-02-29 16:25 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2020-02-29 16:22 - 2018-11-03 17:15 - 000000000 ____D C:\Users\Jakub\Desktop\Stare dane programu Firefox 2020-02-29 16:16 - 2015-12-29 16:58 - 000000000 ____D C:\ProgramData\AVAST Software 2020-02-29 16:07 - 2017-08-17 12:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3G HSUPA Modem 2020-02-11 13:04 - 2017-08-15 23:49 - 000000000 ____D C:\Users\Jakub\Desktop\100MEDIA 2020-02-04 00:15 - 2016-03-08 16:31 - 000003972 _____ C:\Windows\system32\Tasks\SafeZone scheduled Autoupdate 1457451075 2020-02-03 21:59 - 2015-12-29 17:04 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software ==================== Pliki w katalogu głównym wybranych folderów ======== 2019-02-01 11:04 - 2019-02-21 20:44 - 000000040 _____ () C:\Users\Jakub\AppData\Roaming\WB.CFG 2019-08-10 13:02 - 2019-08-10 13:02 - 000000000 _____ () C:\Users\Jakub\AppData\Local\D2EB29.tmp ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) LastRegBack: 2019-11-10 17:40 ==================== Koniec FRST.txt ========================