Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 13-05-2020 01 Uruchomiony przez MINIA (administrator) DESKTOP-ADVELBU (Hewlett-Packard HP ENVY m6 Sleekbook) (18-05-2020 19:20:39) Uruchomiony z C:\Users\MINIA\Downloads Załadowane profile: MINIA Platform: Windows 10 Home Wersja 1803 17134.1276 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\MINIA\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12005.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MpCmdRun.exe <2> (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\NisSrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <8> (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe <6> (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Synology Inc. -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe (Synology Inc. -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\Synology\SynologyDrive\bin\vss-service-x64.exe (Synology Inc. -> Synology Inc.) [Brak podpisu cyfrowego] C:\Users\MINIA\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-connect.exe (Synology Inc. -> Synology Inc.) [Brak podpisu cyfrowego] C:\Users\MINIA\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-daemon.exe (Synology Inc. -> Synology Inc.) [Brak podpisu cyfrowego] C:\Users\MINIA\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-ui.exe (TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [153296 2018-05-30] (Panda Security S.L. -> Panda Security, S.L.) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452016 2011-01-15] (Canon Inc. -> CANON INC.) HKU\S-1-5-21-1602982470-281351081-3737781985-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2019-01-15] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-1602982470-281351081-3737781985-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22245560 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd) Startup: C:\Users\MINIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Synology Drive Client.lnk [2020-05-18] ShortcutTarget: Synology Drive Client.lnk -> C:\Program Files (x86)\Synology\SynologyDrive\bin\launcher.exe (Synology Inc. -> Synology Inc.) [Brak podpisu cyfrowego] ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {121559E2-DC68-4152-BFA4-6309721DC961} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [127176 2020-05-12] (Mozilla Corporation -> Mozilla Foundation) Task: {1D5B9E2C-63E8-4CE0-9FF0-10E393F1D42F} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_371_Plugin.exe [1458232 2020-05-12] (Adobe Inc. -> Adobe) Task: {3F14D4E9-7CD2-4CC8-B452-A99C66F3ABBF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation) Task: {45354997-1CC2-4204-BB12-C4041CFD0514} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd) Task: {495644DE-2EB5-4B59-8170-4A8EABCE408C} - System32\Tasks\eM Client Database Backup (S-1-5-21-1602982470-281351081-3737781985-1001) => C:\Program Files (x86)\eM Client\DbBackup.exe Task: {50A1F012-15C6-4221-B21C-788565C0B951} - Brak ścieżki do pliku Task: {594AD3DE-2F1D-4C5F-80BB-C3DF728B930F} - Brak ścieżki do pliku Task: {5BCD6109-14F7-4990-B6B1-033F1C9FF62D} - Brak ścieżki do pliku Task: {5F69754D-6038-4B5C-A87B-ABB85F1C33C6} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-05-12] (Adobe Inc. -> Adobe) Task: {68602B4E-CEAA-4D95-BD1A-E55FB43BAC5B} - Brak ścieżki do pliku Task: {6FF7522C-7336-4382-960C-175D5B29CEDF} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18227896 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd) Task: {8A7E3C69-A2CC-4B8C-8187-E5DD03CFC818} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe Task: {936ABDFB-3C07-4B4B-A046-DB9C0340A0F2} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems) Task: {C787EEF6-BC93-433C-A537-A8E3C51CF4BD} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1723392 2019-08-27] () [Brak podpisu cyfrowego] Task: {CA219AB2-6442-492A-9A86-FA14E854C759} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation) Task: {ED4C59DA-B79A-46DA-92BD-C830CECD0DF3} - Brak ścieżki do pliku (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{3a574041-0b74-4838-8915-5768aeb8e6ad}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF DefaultProfile: ceye6o35.default FF ProfilePath: C:\Users\MINIA\AppData\Roaming\Mozilla\Firefox\Profiles\ceye6o35.default [2020-05-18] FF Session Restore: Mozilla\Firefox\Profiles\ceye6o35.default -> [funkcja włączona] FF Notifications: Mozilla\Firefox\Profiles\ceye6o35.default -> hxxps://dashboard.tawk.to FF Extension: (SafeGuard) - C:\Users\MINIA\AppData\Roaming\Mozilla\Firefox\Profiles\ceye6o35.default\Extensions\extension@safeguard.ws.xpi [2019-09-17] FF Extension: (Refunder) - C:\Users\MINIA\AppData\Roaming\Mozilla\Firefox\Profiles\ceye6o35.default\Extensions\{60e510fa-ad43-4f02-9dd9-e9af0d9272e0}.xpi [2020-03-18] [UpdateUrl:hxxps://account.refunder.pl/addon/PL/firefox/update.firefox.xml] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_371.dll [2020-05-12] (Adobe Inc. -> ) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_371.dll [2020-05-12] (Adobe Inc. -> ) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2018-09-19] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2018-09-19] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2018-09-19] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2018-09-19] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-05-04] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1602982470-281351081-3737781985-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\MINIA\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-14] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [257032 2015-08-21] (Microsoft Windows Hardware Compatibility Publisher -> AMD) R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [109024 2017-11-08] (Panda Security S.L. -> Panda Security, S.L.) S3 Panda VPN Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-20] (AnchorFree Inc -> ) R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [84176 2019-02-19] (Panda Security S.L. -> Panda Security, S.L.) R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [48784 2018-05-30] (Panda Security S.L. -> Panda Security, S.L.) R2 Synology Drive VSS Service x64; C:\Program Files (x86)\Synology\SynologyDrive\bin\vss-service-x64.exe [365080 2019-07-03] (Synology Inc. -> ) [Brak podpisu cyfrowego] R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [278616 2017-08-18] (Synaptics Incorporated -> Synaptics Incorporated) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11969880 2019-07-03] (TeamViewer GmbH -> TeamViewer GmbH) R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [248856 2018-05-11] (Synology Inc. -> ) [Brak podpisu cyfrowego] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-02-16] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-02-16] (Microsoft Windows Publisher -> Microsoft Corporation) S4 sedsvc; "C:\Program Files\rempl\sedsvc.exe" [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 Accelerometer; C:\WINDOWS\System32\drivers\Accelerometer.sys [53904 2019-07-22] (HP Inc. -> HP) R3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2017-11-16] (AnchorFree Inc -> The OpenVPN Project) R3 amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [21635072 2015-08-21] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) R3 amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [673816 2015-08-21] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices) R3 busenum; C:\WINDOWS\System32\drivers\busenum.sys [57824 2012-08-03] (Synology Inc. -> Windows (R) Win 7 DDK provider) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-04-02] (Disc Soft Ltd -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-04-02] (Disc Soft Ltd -> Disc Soft Ltd) R0 hpdskflt; C:\WINDOWS\System32\drivers\hpdskflt.sys [41104 2019-07-22] (HP Inc. -> HP) R3 netr28x; C:\WINDOWS\System32\drivers\netr28x.sys [2537984 2018-04-12] (Microsoft Windows -> MediaTek Inc.) R1 NNSALPC; C:\WINDOWS\system32\DRIVERS\NNSALPC.sys [108000 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTP; C:\WINDOWS\system32\DRIVERS\NNSHTTP.sys [211936 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTPS; C:\WINDOWS\system32\DRIVERS\NNSHTTPS.sys [121312 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSIDS; C:\WINDOWS\system32\DRIVERS\NNSIDS.sys [126432 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSNAHSL; C:\WINDOWS\system32\DRIVERS\NNSNAHSL.sys [99512 2017-09-26] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPICC; C:\WINDOWS\system32\DRIVERS\NNSPICC.sys [118240 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPIHSW; C:\WINDOWS\system32\DRIVERS\NNSPIHSW.sys [91616 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPOP3; C:\WINDOWS\system32\DRIVERS\NNSPOP3.sys [135648 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPROT; C:\WINDOWS\system32\DRIVERS\NNSPROT.sys [336352 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPRV; C:\WINDOWS\system32\DRIVERS\NNSPRV.sys [249312 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSMTP; C:\WINDOWS\system32\DRIVERS\NNSSMTP.sys [123360 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSTRM; C:\WINDOWS\system32\DRIVERS\NNSSTRM.sys [281056 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSTLSC; C:\WINDOWS\system32\DRIVERS\NNSTLSC.sys [125920 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINAflt; C:\WINDOWS\system32\DRIVERS\PSINAflt.sys [191448 2017-11-09] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINFile; C:\WINDOWS\System32\DRIVERS\PSINFile.sys [153992 2018-01-23] (Panda Security S.L. -> Panda Security, S.L.) R1 PSINKNC; C:\WINDOWS\system32\DRIVERS\PSINKNC.sys [207248 2018-01-30] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProc; C:\WINDOWS\System32\DRIVERS\PSINProc.sys [146912 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProt; C:\WINDOWS\system32\DRIVERS\PSINProt.sys [159200 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINReg; C:\WINDOWS\system32\DRIVERS\PSINReg.sys [129504 2017-10-17] (Panda Security S.L. -> Panda Security, S.L.) R3 PSKMAD; C:\WINDOWS\System32\DRIVERS\PSKMAD.sys [72648 2017-05-22] (Panda Security S.L. -> Panda Security, S.L.) R3 RSP2STOR; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [310528 2015-06-05] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) R3 rtbth; C:\WINDOWS\System32\drivers\rtbth.sys [1219200 2015-06-03] (MEDIATEK INC. -> Ralink Technology, Corp.) R3 SmbDrv; C:\WINDOWS\system32\DRIVERS\Smb_driver_AMDASF.sys [53848 2017-08-18] (Synaptics Incorporated -> Synaptics Incorporated) S3 SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [79960 2016-10-05] (Synaptics Incorporated -> Synaptics Incorporated) S3 ssudcdf; C:\WINDOWS\System32\drivers\ssudcdf.sys [36608 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssuddmgr; C:\WINDOWS\System32\drivers\ssuddmgr.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ssudobex; C:\WINDOWS\System32\drivers\ssudobex.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64640 2016-09-05] (Samsung Electronics CO., LTD. -> QUALCOMM Incorporated) S3 ssudrmnet; C:\WINDOWS\System32\drivers\ssudrmnet.sys [70400 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.) S3 ssudserd; C:\WINDOWS\System32\drivers\ssudserd.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ss_conn_usb_driver; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver.sys [26368 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45664 2020-02-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [355760 2020-02-16] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-02-16] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [34944 2018-05-11] (HP Inc. -> HP) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-05-18 19:20 - 2020-05-18 19:24 - 000020215 _____ C:\Users\MINIA\Downloads\FRST.txt 2020-05-18 19:19 - 2020-05-18 19:19 - 002286080 _____ (Farbar) C:\Users\MINIA\Downloads\FRST64.exe 2020-05-18 19:07 - 2020-05-18 19:23 - 000000000 ____D C:\FRST 2020-05-18 18:56 - 2020-05-18 18:56 - 000000000 ____D C:\Windows.old 2020-05-17 20:37 - 2020-05-17 20:37 - 000231509 _____ C:\Users\MINIA\Desktop\List motywacyjny Justyna Wójcik.pdf 2020-05-17 19:33 - 2020-05-18 18:56 - 000000000 ____D C:\$WINDOWS.~BT 2020-05-17 19:22 - 2020-05-17 19:26 - 000000000 ___HD C:\$GetCurrent 2020-05-12 21:20 - 2020-05-12 21:20 - 007271084 _____ C:\Users\MINIA\Downloads\zjecia 1.rar 2020-05-12 20:50 - 2020-05-12 20:50 - 009513667 _____ C:\Users\MINIA\Downloads\ffffffffffffffff.rar 2020-05-12 17:43 - 2020-05-12 17:43 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2020-05-12 16:34 - 2020-05-17 19:07 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-05-12 16:28 - 2020-05-12 16:28 - 006136376 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe 2020-05-08 16:24 - 2020-05-13 16:26 - 000245480 _____ C:\Users\MINIA\Downloads\comprando ando-1-strony-3.pdf 2020-05-08 16:19 - 2020-05-08 16:19 - 003272998 _____ C:\Users\MINIA\Downloads\comprando ando-1.pdf 2020-05-08 16:14 - 2020-05-08 17:20 - 000468633 _____ C:\Users\MINIA\Downloads\actividad-juego-espanol-practicar-comparaciones-a1.pdf 2020-05-05 16:44 - 2020-05-05 16:44 - 000058933 _____ C:\Users\MINIA\Downloads\verbos_irregulares-strony-1-2.pdf 2020-05-05 16:13 - 2020-05-05 16:13 - 000097703 _____ C:\Users\MINIA\Downloads\verbos_irregulares.pdf 2020-05-05 16:13 - 2020-05-05 16:13 - 000095004 _____ C:\Users\MINIA\Downloads\dossierb1-strony-2-4.pdf 2020-05-05 16:09 - 2020-05-05 16:09 - 000485136 _____ C:\Users\MINIA\Downloads\dossierb1.pdf 2020-05-05 16:07 - 2020-05-05 16:07 - 000660361 _____ C:\Users\MINIA\Downloads\Vocabulario_Elemental_A1-A2-strony-150-157-strony-5-8.pdf 2020-05-01 14:18 - 2020-05-01 14:18 - 001279390 _____ C:\Users\MINIA\Desktop\zdjęcia skype kwiecień.pdf 2020-05-01 14:16 - 2020-05-01 14:16 - 000412872 _____ C:\Users\MINIA\Desktop\Raport zajęć 2019 2020 Justyna Wójcik KWIECIEŃ.pdf 2020-05-01 13:58 - 2020-05-01 13:58 - 000098351 _____ C:\Users\MINIA\Downloads\Faktura F 0001_04_2020.pdf 2020-04-28 19:47 - 2020-04-28 19:47 - 001450480 _____ C:\Users\MINIA\Downloads\p. Lila subjuntivo 28.04.2020.pdf 2020-04-28 19:47 - 2020-04-28 19:47 - 001270228 _____ C:\Users\MINIA\Downloads\p. Lila 28.04.2020.pdf 2020-04-26 13:03 - 2020-04-26 13:03 - 000632458 _____ C:\Users\MINIA\Downloads\Vocabulario_Elemental_A1-A2-strony-150-157-strony-1-4.pdf 2020-04-26 10:40 - 2020-04-26 10:40 - 001290457 _____ C:\Users\MINIA\Downloads\Vocabulario_Elemental_A1-A2-strony-150-157.pdf 2020-04-26 10:37 - 2020-04-26 10:37 - 178289227 _____ C:\Users\MINIA\Downloads\Vocabulario_B1.pdf 2020-04-26 10:37 - 2020-04-26 10:37 - 033837272 _____ C:\Users\MINIA\Downloads\Vocabulario_Elemental_A1-A2.pdf 2020-04-26 10:16 - 2020-04-26 10:16 - 078561515 _____ C:\Users\MINIA\Downloads\Aula_Internacional_2_Nueva_edici_243_n.pdf 2020-04-26 10:14 - 2020-04-26 10:14 - 015327499 _____ C:\Users\MINIA\Downloads\Aula_Internacional_2_Nueva_edici_243_n_Libro_del_profesor.pdf 2020-04-24 10:47 - 2020-04-24 10:47 - 022267336 _____ (Piriform Software Ltd) C:\Users\MINIA\Downloads\ccsetup565.exe 2020-04-22 16:25 - 2020-04-22 16:25 - 069917744 _____ (Skype Technologies S.A.) C:\Users\MINIA\Downloads\Skype-8.59.0.77.exe 2020-04-21 18:02 - 2020-04-21 18:02 - 002743965 _____ C:\Users\MINIA\Downloads\tarjetas-conversacic3b3n1.pdf 2020-04-21 18:01 - 2020-04-21 18:01 - 000317481 _____ C:\Users\MINIA\Downloads\PROHIBIDO HABLAR MIENTRAS SE COME(1).pdf ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-05-18 19:20 - 2018-10-24 14:28 - 000744808 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2020-05-18 19:15 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-05-18 18:59 - 2018-10-24 12:35 - 000000000 ____D C:\Users\MINIA\AppData\LocalLow\Mozilla 2020-05-18 18:55 - 2020-01-26 16:55 - 000000000 ___DC C:\WINDOWS\Panther 2020-05-18 18:49 - 2019-07-15 22:07 - 000000000 ___RD C:\Users\MINIA\SynologyDrive 2020-05-18 18:49 - 2019-07-15 22:05 - 000000000 ____D C:\Users\MINIA\AppData\Local\SynologyDrive 2020-05-17 20:40 - 2019-07-28 13:13 - 000395625 _____ C:\Users\MINIA\Desktop\CV Justyna Wójcik.pdf 2020-05-17 20:35 - 2019-07-28 13:20 - 000000000 ____D C:\Users\MINIA\Desktop\CV 28.07 2020-05-17 19:56 - 2020-01-26 21:11 - 000001908 _____ C:\WINDOWS\diagwrn.xml 2020-05-17 19:56 - 2020-01-26 21:11 - 000001908 _____ C:\WINDOWS\diagerr.xml 2020-05-17 19:47 - 2020-01-26 20:43 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-05-17 19:42 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Registration 2020-05-17 19:33 - 2020-01-26 16:48 - 000000036 _____ C:\WINDOWS\progress.ini 2020-05-17 19:26 - 2019-06-02 13:19 - 000000000 ____D C:\Windows10Upgrade 2020-05-17 19:07 - 2020-01-26 21:11 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-05-17 19:07 - 2019-01-31 20:56 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2020-05-17 19:07 - 2018-10-24 12:34 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-05-17 17:49 - 2018-10-24 12:11 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin 2020-05-17 17:49 - 2018-04-11 23:04 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2020-05-17 17:48 - 2018-04-11 23:04 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2020-05-17 11:35 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-05-15 12:51 - 2018-10-27 11:36 - 000000000 ____D C:\WINDOWS\system32\MRT 2020-05-15 12:45 - 2018-10-27 11:36 - 120636720 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2020-05-15 12:44 - 2018-11-01 20:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2020-05-15 12:42 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps 2020-05-15 12:33 - 2020-01-26 20:51 - 000002407 _____ C:\Users\MINIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-05-15 12:33 - 2018-10-24 12:35 - 000000000 ___RD C:\Users\MINIA\OneDrive 2020-05-13 16:00 - 2020-03-20 17:10 - 000000000 ____D C:\Users\MINIA\AppData\Local\D3DSCache 2020-05-12 17:43 - 2018-10-24 12:35 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2020-05-12 16:39 - 2019-01-30 21:10 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-05-12 16:31 - 2020-01-26 21:11 - 000004688 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier 2020-05-12 16:30 - 2020-01-26 21:03 - 001763504 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-05-12 16:30 - 2018-04-12 17:51 - 000783576 _____ C:\WINDOWS\system32\perfh015.dat 2020-05-12 16:30 - 2018-04-12 17:51 - 000151702 _____ C:\WINDOWS\system32\perfc015.dat 2020-05-12 16:30 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Macromed 2020-05-12 16:30 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF 2020-05-12 16:29 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2020-05-01 13:57 - 2019-12-31 14:58 - 000012402 _____ C:\Users\MINIA\Desktop\Rozliczenia lekcji.xlsx 2020-05-01 13:25 - 2018-10-24 12:29 - 000000000 ____D C:\Users\MINIA\AppData\Local\Packages 2020-04-24 12:53 - 2019-09-17 17:59 - 000000000 ____D C:\Users\MINIA\AppData\Roaming\MPC-HC 2020-04-24 12:53 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2020-04-24 10:57 - 2020-01-26 21:11 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2020-04-24 10:57 - 2019-06-20 17:50 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2020-04-22 16:26 - 2020-03-20 10:00 - 000001379 _____ C:\Users\Public\Desktop\Skype.lnk 2020-04-22 16:26 - 2020-03-20 10:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2020-04-19 16:22 - 2020-04-08 18:53 - 000000000 ____D C:\Users\MINIA\Desktop\cło dhl ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================