Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 15-04-2020 Uruchomiony przez Ania (administrator) DESKTOP-UDOHO1P (Dell Inc. Latitude E6410) (17-04-2020 18:20:17) Uruchomiony z C:\Users\Ania\Downloads Załadowane profile: Ania (Dostępne profile: Ania) Platform: Windows 10 Home Wersja 1903 18362.720 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\HidMonitorSvc.exe (Broadcom Corp -> Broadcom Corporation) C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe (Broadcom Corp -> Broadcom Corporation) C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe (Byte Technologies LLC -> Byte Technologies LLC) C:\Program Files\ByteFence\ByteFenceService.exe (Byte Technologies LLC -> Byte Technologies LLC.) C:\Program Files\ByteFence\rtop\bin\rtop_bg.exe (Byte Technologies LLC -> Byte Technologies LLC.) C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe (Electronic Arts, Inc. -> ) C:\Program Files (x86)\Origin\QtWebEngineProcess.exe <2> (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (Farbar) [Brak podpisu cyfrowego] C:\Users\Ania\Downloads\FRST64 (2).exe (Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <13> (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] C:\Program Files\Classic Shell\ClassicStartMenu.exe (Kilonova LLC -> Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.5.0.4\Lightshot.exe (Mega Limited -> Mega Limited) C:\Users\Ania\AppData\Local\MEGAsync\MEGAsync.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\Office16\EXCEL.EXE (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19111.24110.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12004.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.120.4062.0_x64__8wekyb3d8bbwe\GameBar.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.120.4062.0_x64__8wekyb3d8bbwe\GameBarFT.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.120.4062.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2003.8-1\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2003.8-1\NisSrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <2> (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIRFE.EXE (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [727896 2015-07-09] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163800 2016-07-30] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe" HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1087184 2016-01-20] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226728 2019-07-22] (Kilonova LLC -> ) HKU\S-1-5-21-2519540801-3643557726-1873524963-1001\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIRFE.EXE [417776 2014-11-14] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) HKU\S-1-5-21-2519540801-3643557726-1873524963-1001\...\Run: [Chromium] => "c:\users\ania\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session HKU\S-1-5-21-2519540801-3643557726-1873524963-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91584872 2020-03-12] (Skype Software Sarl -> Skype Technologies S.A.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.163\Installer\chrmstp.exe [2020-04-08] (Google LLC -> Google LLC) Startup: C:\Users\Ania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2018-02-07] ShortcutTarget: MEGAsync.lnk -> C:\Users\Ania\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited) FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0E76331E-C825-4D08-A252-8D45B632D2FA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-1\MpCmdRun.exe [480272 2020-04-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {28C1A6A5-1645-43B7-977F-2AC7076ED268} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {32E9F04C-864C-43FA-B620-C5C1D862ECB3} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2519540801-3643557726-1873524963-1001 => C:\Users\Ania\AppData\Local\MEGAsync\MEGAupdater.exe [615160 2020-03-18] (Mega Limited -> Mega Limited) Task: {47FC06AD-1C15-43AB-B9A5-D4D8B727DA8C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-1\MpCmdRun.exe [480272 2020-04-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5D1D77F7-476B-4F62-A9B1-05848CABBD6C} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-2519540801-3643557726-1873524963-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [24064 2019-03-19] (Microsoft Windows -> Microsoft Corporation) Task: {5D45DD3F-269C-438C-AE67-CDDD7DDA616A} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_363_pepper.exe [1454136 2020-04-14] (Adobe Inc. -> Adobe) Task: {64B456BC-6E5D-4ED0-A337-C016953C23D0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-05-12] (Google Inc -> Google Inc.) Task: {76877D72-5E07-4C8B-9B91-A370338F68C0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-1\MpCmdRun.exe [480272 2020-04-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {781D9F94-5F69-4975-85C8-BED5D7112D00} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe Task: {80C69302-7949-4B68-BD8B-6FB06FF8EECC} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-04-14] (Adobe Inc. -> Adobe) Task: {84457129-7726-4881-8C98-C998B5249C72} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-05-12] (Google Inc -> Google Inc.) Task: {9018AD02-FC9E-4DE6-BE74-84AB38EADD59} - System32\Tasks\ByteFence => C:\Program Files\ByteFence\ByteFence.exe [3939808 2020-02-17] (Byte Technologies LLC -> Byte Technologies LLC) <==== UWAGA Task: {AB465E8B-08BF-4F31-B233-56F9B9FAA400} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: ) Task: {B6391217-6876-4777-AF2A-D899916CEA75} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems) Task: {DF403B3C-3125-4E6F-9980-909894661D83} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-1\MpCmdRun.exe [480272 2020-04-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E44E0819-ABCC-47B2-B4AB-1E33F81ED4F7} - System32\Tasks\EPSON XP-243 245 247 Series Update {CB2AE546-8D3E-4454-85B0-76E67CBC3206} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSRFE.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) Task: {E6CDF572-62D8-4FBE-9485-7D9D7EF5CCE5} - System32\Tasks\update-S-1-5-21-2519540801-3643557726-1873524963-1001 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: ) Task: {EE22CDC3-10D8-4AE5-A8A0-D6374505EBFF} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_363_Plugin.exe [1458232 2020-04-14] (Adobe Inc. -> Adobe) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\EPSON XP-243 245 247 Series Update {CB2AE546-8D3E-4454-85B0-76E67CBC3206}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSRFE.EXE:/EXE:{CB2AE546-8D3E-4454-85B0-76E67CBC3206} /F:UpdateWORKGROUP\DESKTOP-UDOHO1P$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\update-S-1-5-21-2519540801-3643557726-1873524963-1001.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 62.179.1.62 62.179.1.63 Tcpip\..\Interfaces\{8eb94d41-8ed1-4561-890e-8663265da9a8}: [DhcpNameServer] 62.179.1.62 62.179.1.63 Internet Explorer: ================== HKU\S-1-5-21-2519540801-3643557726-1873524963-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.web-pl.com/ SearchScopes: HKU\S-1-5-21-2519540801-3643557726-1873524963-1001 -> DefaultScope {52B32DF5-BA14-40DB-AE27-945428672E8A} URL = hxxp://www.web-pl.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-2519540801-3643557726-1873524963-1001 -> {52B32DF5-BA14-40DB-AE27-945428672E8A} URL = hxxp://www.web-pl.com/search?q={searchTerms} BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2016-07-30] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2016-11-16] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2016-07-30] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-11-16] (Microsoft Corporation -> Microsoft Corporation) Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-2519540801-3643557726-1873524963-1001 -> hxxp://www.web-pl.com/ FireFox: ======== FF DefaultProfile: cc9qnqeq.default FF ProfilePath: C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\cc9qnqeq.default [2018-02-12] FF Homepage: Mozilla\Firefox\Profiles\cc9qnqeq.default -> hxxp://www.web-pl.com/ FF Notifications: Mozilla\Firefox\Profiles\cc9qnqeq.default -> hxxps://poczta.onet.pl FF Extension: (uBlock Origin) - C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\cc9qnqeq.default\Extensions\uBlock0@raymondhill.net.xpi [2018-02-05] FF Extension: (Tpay.com) - C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\cc9qnqeq.default\Extensions\{ed5a5d58-4e89-4ade-903c-34f4b64265cd}.xpi [2018-01-17] FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2018-02-11] [Przestarzałe] [Brak podpisu cyfrowego] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_363.dll [2020-04-14] (Adobe Inc. -> ) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN -> VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_363.dll [2020-04-14] (Adobe Inc. -> ) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-03-06] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default [2020-04-17] CHR Notifications: Default -> hxxps://www.tauron.pl; hxxps://www.wp.pl CHR HomePage: Default -> hxxp://www.web-pl.com/ CHR StartupUrls: Default -> "hxxp://www.web-pl.com/" CHR DefaultSearchURL: Default -> hxxp://www.web-pl.com/search?q={searchTerms} CHR DefaultSearchKeyword: Default -> szukaj CHR Extension: (Prezentacje) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-02-07] CHR Extension: (Dokumenty) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-02-07] CHR Extension: (Dysk Google) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-05-12] CHR Extension: (YouTube) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-05-12] CHR Extension: (uBlock Origin) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2020-02-06] CHR Extension: (Arkusze) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-02-07] CHR Extension: (Dokumenty Google offline) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-11] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03] CHR Extension: (Gmail) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-30] CHR Extension: (Chrome Media Router) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-03] CHR Profile: C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-04-16] CHR Profile: C:\Users\Ania\AppData\Local\Google\Chrome\User Data\System Profile [2020-04-16] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 ApHidMonitorService; C:\Program Files\DellTPad\HidMonitorSvc.exe [87384 2015-07-09] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) R2 ByteFenceService; C:\Program Files\ByteFence\ByteFenceService.exe [163296 2020-02-17] (Byte Technologies LLC -> Byte Technologies LLC) <==== UWAGA R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [145224 2016-11-08] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-04-16] (Malwarebytes Inc -> Malwarebytes) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2495792 2020-04-08] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3447608 2020-04-08] (Electronic Arts, Inc. -> Electronic Arts) R2 rtop; c:\program files\bytefence\rtop\bin\rtop_svc.exe [297288 2020-03-15] (Byte Technologies LLC -> Byte Technologies LLC.) <==== UWAGA R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13216272 2020-03-20] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-1\NisSrv.exe [3294680 2020-04-16] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2003.8-1\MsMpEng.exe [103168 2020-04-16] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 Impcd; C:\WINDOWS\System32\drivers\Impcd.sys [158976 2010-02-27] (Intel Corporation) [Brak podpisu cyfrowego] S3 IntcDAud; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [317440 2010-08-31] (Intel(R) Corporation) [Brak podpisu cyfrowego] S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2020-04-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 NETwNe64; C:\WINDOWS\System32\drivers\NETwew01.sys [3343872 2019-03-19] (Microsoft Windows -> Intel Corporation) R3 SrvHsfHDA; C:\WINDOWS\system32\DRIVERS\VSTAZL6.SYS [292864 2019-03-19] (Microsoft Windows -> Conexant Systems, Inc.) R3 SrvHsfV92; C:\WINDOWS\system32\DRIVERS\VSTDPV6.SYS [1485312 2019-03-19] (Microsoft Windows -> Conexant Systems, Inc.) R3 SrvHsfWinac; C:\WINDOWS\system32\DRIVERS\VSTCNXT6.SYS [740864 2019-03-19] (Microsoft Windows -> Conexant Systems, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45960 2020-04-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [391392 2020-04-16] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [59104 2020-04-16] (Microsoft Windows -> Microsoft Corporation) S3 SWDUMon; \SystemRoot\system32\DRIVERS\SWDUMon.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-04-17 18:20 - 2020-04-17 18:21 - 000023910 _____ C:\Users\Ania\Downloads\FRST.txt 2020-04-17 18:19 - 2020-04-17 18:20 - 000000000 ____D C:\FRST 2020-04-17 18:19 - 2020-04-17 18:19 - 002281472 _____ (Farbar) C:\Users\Ania\Downloads\FRST64 (4).exe 2020-04-17 18:17 - 2020-04-17 18:17 - 002281472 _____ (Farbar) C:\Users\Ania\Downloads\FRST64 (3).exe 2020-04-17 18:16 - 2020-04-17 18:16 - 002281472 _____ (Farbar) C:\Users\Ania\Downloads\FRST64.exe 2020-04-17 18:16 - 2020-04-17 18:16 - 002281472 _____ (Farbar) C:\Users\Ania\Downloads\FRST64 (2).exe 2020-04-17 18:16 - 2020-04-17 18:16 - 002281472 _____ (Farbar) C:\Users\Ania\Downloads\FRST64 (1).exe 2020-04-16 22:05 - 2020-04-16 22:05 - 000000000 ____D C:\Users\Ania\AppData\Local\mbam 2020-04-16 22:04 - 2020-04-16 22:04 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2020-04-16 22:04 - 2020-04-16 22:04 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2020-04-16 22:04 - 2020-04-16 22:04 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2020-04-16 22:04 - 2020-04-16 22:04 - 000000000 ____D C:\Users\Ania\AppData\Local\mbamtray 2020-04-16 22:04 - 2020-04-16 22:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2020-04-16 22:04 - 2020-04-16 22:04 - 000000000 ____D C:\ProgramData\Malwarebytes 2020-04-16 22:03 - 2020-04-16 22:03 - 001965536 _____ (Malwarebytes) C:\Users\Ania\Downloads\MBSetup.exe 2020-04-16 22:03 - 2020-04-16 22:03 - 000000000 ____D C:\Program Files\Malwarebytes 2020-04-16 21:58 - 2020-04-16 21:58 - 008196784 _____ (Malwarebytes) C:\Users\Ania\Downloads\AdwCleaner (1).exe 2020-04-16 21:45 - 2020-04-16 21:47 - 000000000 ____D C:\AdwCleaner 2020-04-16 21:45 - 2020-04-16 21:45 - 008196784 _____ (Malwarebytes) C:\Users\Ania\Downloads\AdwCleaner.exe 2020-04-16 20:19 - 2020-04-16 20:19 - 000065317 _____ C:\Users\Ania\Downloads\4b_16.04 (3).pdf 2020-04-16 20:10 - 2020-04-16 20:10 - 000065317 _____ C:\Users\Ania\Downloads\4b_16.04 (2).pdf 2020-04-15 20:51 - 2020-04-15 20:51 - 000065317 _____ C:\Users\Ania\Downloads\4b_16.04 (1).pdf 2020-04-15 20:49 - 2020-04-15 20:49 - 000065317 _____ C:\Users\Ania\Downloads\4b_16.04.pdf 2020-04-15 11:25 - 2020-04-15 11:25 - 001251738 _____ C:\Users\Ania\Downloads\wielkanoc (2).pdf 2020-04-15 11:15 - 2020-04-15 11:15 - 001251738 _____ C:\Users\Ania\Downloads\wielkanoc (1).pdf 2020-04-15 11:06 - 2020-04-15 11:06 - 000052345 _____ C:\Users\Ania\Downloads\kl.4_podsumowanie_dz.5 (3).pdf 2020-04-15 10:26 - 2020-04-15 10:26 - 000005402 _____ C:\Users\Ania\Downloads\DokumentZwrotu.pdf 2020-04-15 10:13 - 2020-04-15 10:13 - 000014101 _____ C:\Users\Ania\Downloads\Zasady_oceniania_zachowania_podczas_pracy_zdalnej.odt 2020-04-14 21:41 - 2020-04-14 21:41 - 000052345 _____ C:\Users\Ania\Downloads\kl.4_podsumowanie_dz.5 (2).pdf 2020-04-14 21:39 - 2020-04-14 21:39 - 000052345 _____ C:\Users\Ania\Downloads\kl.4_podsumowanie_dz.5 (1).pdf 2020-04-14 21:32 - 2020-04-14 21:32 - 001251738 _____ C:\Users\Ania\Downloads\wielkanoc.pdf 2020-04-14 21:22 - 2020-04-14 21:22 - 000052345 _____ C:\Users\Ania\Downloads\kl.4_podsumowanie_dz.5.pdf 2020-04-14 19:44 - 2020-04-14 19:44 - 000168439 _____ C:\Users\Ania\Downloads\2_04_4 (7).pdf 2020-04-13 20:03 - 2020-04-13 20:03 - 000222855 _____ C:\Users\Ania\Downloads\Regulamin_sklepu_internetowego_50_Style_7.12.2020.pdf 2020-04-07 18:59 - 2020-04-07 18:59 - 000534963 _____ C:\Users\Ania\Downloads\instrukcja_logowanie_dla_ucznia_epodręczniki (1) (5).pdf 2020-04-07 18:58 - 2020-04-07 18:58 - 000534963 _____ C:\Users\Ania\Downloads\instrukcja_logowanie_dla_ucznia_epodręczniki (1) (4).pdf 2020-04-07 18:57 - 2020-04-07 18:57 - 000534963 _____ C:\Users\Ania\Downloads\instrukcja_logowanie_dla_ucznia_epodręczniki (1) (3).pdf 2020-04-07 18:56 - 2020-04-07 18:57 - 000534963 _____ C:\Users\Ania\Downloads\instrukcja_logowanie_dla_ucznia_epodręczniki (1) (2).pdf 2020-04-06 20:10 - 2020-04-06 20:10 - 000061530 _____ C:\Users\Ania\Downloads\4b_07.04 (3).pdf 2020-04-06 20:09 - 2020-04-06 20:09 - 000061530 _____ C:\Users\Ania\Downloads\4b_07.04 (2).pdf 2020-04-06 18:24 - 2020-04-06 18:24 - 000061312 _____ C:\Users\Ania\Downloads\4b_06.04_ (2).pdf 2020-04-06 18:23 - 2020-04-06 18:23 - 000061530 _____ C:\Users\Ania\Downloads\4b_07.04.pdf 2020-04-06 18:23 - 2020-04-06 18:23 - 000061530 _____ C:\Users\Ania\Downloads\4b_07.04 (1).pdf 2020-04-05 19:50 - 2020-04-05 19:50 - 000061312 _____ C:\Users\Ania\Downloads\4b_06.04_ (1).pdf 2020-04-05 19:39 - 2020-04-05 19:39 - 000061312 _____ C:\Users\Ania\Downloads\4b_06.04_.pdf 2020-04-03 17:34 - 2020-04-03 17:34 - 000018815 _____ C:\Users\Ania\Downloads\Lista_czynnych_poradni_STM-03-04-2020.xlsx 2020-04-02 15:00 - 2020-04-02 15:00 - 000534963 _____ C:\Users\Ania\Downloads\instrukcja_logowanie_dla_ucznia_epodręczniki (1) (1).pdf 2020-04-02 14:59 - 2020-04-02 14:59 - 000534963 _____ C:\Users\Ania\Downloads\instrukcja_logowanie_dla_ucznia_epodręczniki (1).pdf 2020-04-02 14:59 - 2020-04-02 14:59 - 000061343 _____ C:\Users\Ania\Downloads\lechowicz.pdf 2020-04-01 21:17 - 2020-04-01 21:17 - 000010680 _____ C:\Users\Ania\Downloads\XVII_wiek (4).odt 2020-04-01 21:13 - 2020-04-01 21:13 - 000168439 _____ C:\Users\Ania\Downloads\2_04_4 (6).pdf 2020-04-01 20:49 - 2020-04-01 20:49 - 000168439 _____ C:\Users\Ania\Downloads\2_04_4 (5).pdf 2020-04-01 20:40 - 2020-04-01 20:40 - 000168439 _____ C:\Users\Ania\Downloads\2_04_4 (4).pdf 2020-04-01 20:27 - 2020-04-01 20:27 - 000168439 _____ C:\Users\Ania\Downloads\2_04_4 (3).pdf 2020-04-01 17:17 - 2020-04-01 17:17 - 000168439 _____ C:\Users\Ania\Downloads\2_04_4 (2).pdf 2020-04-01 16:24 - 2020-04-01 16:24 - 000168439 _____ C:\Users\Ania\Downloads\2_04_4 (1).pdf 2020-04-01 15:25 - 2020-04-01 15:25 - 000168439 _____ C:\Users\Ania\Downloads\2_04_4.pdf 2020-04-01 11:24 - 2020-04-01 11:24 - 000000000 _____ C:\Users\Ania\AppData\Local\BIT25D9.tmp 2020-03-31 19:39 - 2020-03-31 19:39 - 000010680 _____ C:\Users\Ania\Downloads\XVII_wiek (3).odt 2020-03-31 19:10 - 2020-04-16 21:55 - 000000000 ____D C:\Users\Ania\AppData\Roaming\Zoom 2020-03-31 19:04 - 2020-03-31 19:04 - 000078168 _____ (Zoom Video Communications, Inc.) C:\Users\Ania\Downloads\Zoom_230440364482d676.exe 2020-03-30 17:42 - 2020-03-30 17:42 - 000010680 _____ C:\Users\Ania\Downloads\XVII_wiek (2).odt 2020-03-29 15:46 - 2020-03-29 15:46 - 000010680 _____ C:\Users\Ania\Downloads\XVII_wiek (1).odt 2020-03-29 15:27 - 2020-03-29 15:27 - 000010680 _____ C:\Users\Ania\Downloads\XVII_wiek.odt 2020-03-29 14:55 - 2020-03-29 14:55 - 000018053 _____ C:\Users\Ania\Downloads\harmonogram4b (5).pdf 2020-03-29 14:12 - 2020-03-29 14:12 - 001473882 _____ C:\Users\Ania\Downloads\styczeń.pdf 2020-03-29 14:12 - 2020-03-29 14:12 - 001418034 _____ C:\Users\Ania\Downloads\PLAN ZAJĘĆ GRUDZIEŃ 2018.pdf 2020-03-29 14:11 - 2020-03-29 14:11 - 000221845 _____ C:\Users\Ania\Downloads\szkoła umowa (1).pdf 2020-03-27 19:03 - 2020-03-27 19:03 - 000018053 _____ C:\Users\Ania\Downloads\harmonogram4b (4).pdf 2020-03-27 19:03 - 2020-03-27 19:03 - 000018053 _____ C:\Users\Ania\Downloads\harmonogram4b (3).pdf 2020-03-27 12:10 - 2020-03-27 12:10 - 000018053 _____ C:\Users\Ania\Downloads\harmonogram4b (2).pdf 2020-03-26 18:07 - 2020-03-26 18:07 - 000135499 _____ C:\Users\Ania\Downloads\karty_pracy_klasa_4_dzial_iv (4).pdf 2020-03-26 13:06 - 2020-04-15 12:59 - 000000418 _____ C:\WINDOWS\Tasks\update-sys.job 2020-03-26 13:06 - 2020-04-15 12:59 - 000000418 _____ C:\WINDOWS\Tasks\update-S-1-5-21-2519540801-3643557726-1873524963-1001.job 2020-03-26 13:06 - 2020-04-15 12:57 - 000003114 _____ C:\WINDOWS\system32\Tasks\update-S-1-5-21-2519540801-3643557726-1873524963-1001 2020-03-26 13:06 - 2020-04-15 12:57 - 000002858 _____ C:\WINDOWS\system32\Tasks\update-sys 2020-03-26 13:06 - 2020-03-26 13:06 - 000000424 _____ C:\Users\Ania\AppData\Local\UserProducts.xml 2020-03-26 13:06 - 2020-03-26 13:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot 2020-03-26 13:06 - 2020-03-26 13:06 - 000000000 ____D C:\Program Files (x86)\Skillbrains 2020-03-26 13:05 - 2020-03-26 13:05 - 002784344 _____ (Skillbrains ) C:\Users\Ania\Downloads\setup-lightshot.exe 2020-03-25 21:31 - 2020-03-25 21:31 - 000030730 _____ C:\Users\Ania\Downloads\faktura_vat_zam_888482 (1).pdf 2020-03-25 21:29 - 2020-03-25 21:29 - 000030730 _____ C:\Users\Ania\Downloads\faktura_vat_zam_888482.pdf 2020-03-25 18:49 - 2020-03-25 18:49 - 000001116 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk 2020-03-25 18:48 - 2020-03-25 18:48 - 027292336 _____ (TeamViewer Germany GmbH) C:\Users\Ania\Downloads\TeamViewer_Setup (5).exe 2020-03-25 18:48 - 2020-03-25 18:48 - 027292336 _____ (TeamViewer Germany GmbH) C:\Users\Ania\Downloads\TeamViewer_Setup (4).exe 2020-03-25 18:45 - 2020-03-25 18:45 - 027292336 _____ (TeamViewer Germany GmbH) C:\Users\Ania\Downloads\TeamViewer_Setup (3).exe 2020-03-25 18:45 - 2020-03-25 18:45 - 027292336 _____ (TeamViewer Germany GmbH) C:\Users\Ania\Downloads\TeamViewer_Setup (2).exe 2020-03-25 18:31 - 2020-04-15 12:57 - 000003882 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier 2020-03-25 16:15 - 2020-03-25 16:15 - 000195286 _____ C:\Users\Ania\Downloads\harmonogram_26_03.pdf 2020-03-24 18:02 - 2020-03-24 18:02 - 000035703 _____ C:\Users\Ania\Downloads\03-029-050 (4).pdf 2020-03-24 17:53 - 2020-03-24 17:53 - 000035703 _____ C:\Users\Ania\Downloads\03-029-050 (3).pdf 2020-03-24 13:57 - 2020-03-24 13:57 - 000020199 _____ C:\Users\Ania\Downloads\organizacja_od_25.03._informacja_dla_Rodziców.odt 2020-03-24 11:53 - 2020-04-17 10:58 - 000000035 _____ C:\Users\Ania\AppData\Roaming\WB.CFG 2020-03-23 15:31 - 2020-03-23 15:31 - 000878473 _____ C:\Users\Ania\Downloads\formularz-zwrotu-2020-03-23.pdf 2020-03-22 19:05 - 2020-03-22 19:05 - 000018053 _____ C:\Users\Ania\Downloads\harmonogram4b (1).pdf 2020-03-22 12:53 - 2020-03-22 12:53 - 000018053 _____ C:\Users\Ania\Downloads\harmonogram4b.pdf 2020-03-22 12:26 - 2020-03-22 12:26 - 000000000 ____D C:\Users\Ania\AppData\Local\ElevatedDiagnostics 2020-03-22 12:15 - 2020-04-17 10:37 - 000000000 ____D C:\Users\Ania\AppData\Local\CrashDumps 2020-03-22 11:11 - 2020-03-22 11:11 - 000001383 _____ C:\Users\Public\Desktop\Skype.lnk 2020-03-22 11:11 - 2020-03-22 11:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2020-03-22 11:10 - 2020-03-22 11:10 - 070011112 _____ (Skype Technologies S.A.) C:\Users\Ania\Downloads\Skype-8.58.0.93.exe ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-04-17 18:22 - 2020-03-15 13:23 - 000000000 ____D C:\Users\Ania\AppData\Roaming\Origin 2020-04-17 18:20 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-04-17 18:17 - 2020-03-15 20:29 - 000000000 ____D C:\Program Files\ByteFence 2020-04-17 18:11 - 2017-05-12 22:50 - 000744808 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2020-04-17 18:03 - 2019-10-07 21:16 - 001768484 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-04-17 18:03 - 2019-03-19 14:23 - 000785768 _____ C:\WINDOWS\system32\perfh015.dat 2020-04-17 18:03 - 2019-03-19 14:23 - 000152530 _____ C:\WINDOWS\system32\perfc015.dat 2020-04-17 18:03 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF 2020-04-17 18:00 - 2019-10-07 21:05 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-04-17 13:57 - 2020-03-15 20:31 - 000000000 ____D C:\Program Files (x86)\Origin Games 2020-04-17 13:57 - 2020-03-15 13:23 - 000000000 ____D C:\ProgramData\Origin 2020-04-17 13:56 - 2020-03-15 13:23 - 000000000 ____D C:\Users\Ania\AppData\Local\Origin 2020-04-17 12:58 - 2017-05-13 09:32 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2020-04-17 10:01 - 2019-10-07 21:14 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-04-17 10:01 - 2019-10-07 21:08 - 000000000 ____D C:\Users\Ania 2020-04-16 22:40 - 2017-05-12 22:39 - 000000000 ____D C:\Users\Ania\AppData\Local\ClassicShell 2020-04-16 22:11 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2020-04-16 22:09 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-04-16 22:04 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2020-04-16 21:59 - 2018-02-25 20:15 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2020-04-16 21:55 - 2018-02-07 21:03 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2020-04-16 21:55 - 2018-02-07 21:03 - 000000000 ____D C:\Program Files (x86)\ST Microelectronics 2020-04-16 21:53 - 2020-03-15 20:31 - 000000000 ____D C:\Users\Ania\AppData\Local\chromium 2020-04-16 21:48 - 2020-03-15 20:28 - 000000000 ____D C:\ProgramData\AVAST Software 2020-04-16 21:47 - 2017-05-12 22:32 - 000000000 ____D C:\ProgramData\BSD 2020-04-16 12:43 - 2020-03-15 20:29 - 000003358 _____ C:\WINDOWS\system32\Tasks\ByteFence 2020-04-16 11:05 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps 2020-04-16 10:30 - 2017-05-13 16:47 - 000017167 _____ C:\Users\Ania\Desktop\życie.xlsx 2020-04-15 12:59 - 2018-02-11 00:14 - 000000951 _____ C:\WINDOWS\Tasks\EPSON XP-243 245 247 Series Update {CB2AE546-8D3E-4454-85B0-76E67CBC3206}.job 2020-04-15 12:57 - 2019-10-07 21:14 - 000003912 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier 2020-04-15 12:57 - 2019-10-07 21:14 - 000003606 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater 2020-04-15 12:57 - 2019-10-07 21:14 - 000003578 _____ C:\WINDOWS\system32\Tasks\EPSON XP-243 245 247 Series Update {CB2AE546-8D3E-4454-85B0-76E67CBC3206} 2020-04-15 12:57 - 2019-10-07 21:14 - 000003558 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2020-04-15 12:57 - 2019-10-07 21:14 - 000003542 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2020-04-15 12:57 - 2019-10-07 21:14 - 000003334 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2020-04-15 12:57 - 2019-10-07 21:14 - 000002922 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2519540801-3643557726-1873524963-1001 2020-04-15 12:57 - 2019-10-07 21:14 - 000002796 _____ C:\WINDOWS\system32\Tasks\AutoKMS 2020-04-15 10:57 - 2018-02-07 19:12 - 000000000 ____D C:\Users\Ania\AppData\Local\Packages 2020-04-14 22:03 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2020-04-14 21:03 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Macromed 2020-04-11 17:45 - 2020-03-15 14:00 - 000000000 ____D C:\Program Files (x86)\Origin 2020-04-08 07:34 - 2017-05-12 21:59 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-04-07 21:08 - 2020-03-15 22:08 - 000001448 _____ C:\Users\Public\Desktop\The Sims 4.lnk 2020-04-05 13:44 - 2017-09-26 18:22 - 000018304 _____ C:\Users\Ania\Desktop\klasowe pieniążki.xlsx 2020-04-03 18:38 - 2018-02-07 17:03 - 000000000 ___RD C:\Users\Ania\Documents\MEGAsync 2020-04-01 11:30 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\NDF 2020-03-26 13:16 - 2019-10-07 21:04 - 000340880 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-03-25 18:50 - 2018-04-17 21:55 - 000000000 ____D C:\Users\Ania\AppData\Local\TeamViewer 2020-03-25 18:49 - 2017-05-13 09:33 - 000000000 ____D C:\Users\Ania\AppData\Roaming\TeamViewer 2020-03-25 18:32 - 2018-01-28 12:37 - 000000000 ____D C:\Users\Ania\AppData\Local\Adobe 2020-03-22 11:13 - 2019-10-07 21:08 - 000002408 _____ C:\Users\Ania\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-03-22 11:13 - 2017-05-12 21:38 - 000000000 ___RD C:\Users\Ania\OneDrive 2020-03-18 14:02 - 2018-02-07 17:02 - 000000000 ____D C:\Users\Ania\AppData\Local\MEGAsync ==================== Pliki w katalogu głównym wybranych folderów ======== 2020-03-24 11:53 - 2020-04-17 10:58 - 000000035 _____ () C:\Users\Ania\AppData\Roaming\WB.CFG 2020-04-01 11:24 - 2020-04-01 11:24 - 000000000 _____ () C:\Users\Ania\AppData\Local\BIT25D9.tmp 2019-03-26 19:24 - 2019-04-14 18:44 - 000000128 _____ () C:\Users\Ania\AppData\Local\PUTTY.RND 2020-03-26 13:06 - 2020-03-26 13:06 - 000000003 _____ () C:\Users\Ania\AppData\Local\updater.log 2020-03-26 13:06 - 2020-03-26 13:06 - 000000424 _____ () C:\Users\Ania\AppData\Local\UserProducts.xml ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================