Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 13-05-2020 01 Uruchomiony przez toshiba (administrator) DESKTOP-ASESP11 (TOSHIBA SATELLITE L50-B) (21-05-2020 18:49:13) Uruchomiony z C:\FRST\bin Załadowane profile: toshiba Platform: Windows 10 Home Wersja 1903 18362.175 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe (Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11910.1001.4.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2004.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2004.6-0\NisSrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <5> (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [601944 2015-08-14] (Conexant Systems, Inc. -> Conexant Systems, Inc.) HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc. -> Conexant Systems, Inc.) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [33648 2007-08-24] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3060302328-456549250-2804008892-1001\...\Run: [toshiba] => explorer.exe hxxp://dipladoks.org <==== UWAGA HKU\S-1-5-21-3060302328-456549250-2804008892-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [27775672 2020-05-01] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-3060302328-456549250-2804008892-1001\...\MountPoints2: {4a6a46b9-3823-11e9-bfbc-a0886959eeac} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3060302328-456549250-2804008892-1001\...\MountPoints2: {f1d89365-8972-11ea-bff9-a0886959eeac} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3060302328-456549250-2804008892-1001\...\MountPoints2: {fc9f321f-0b87-11ea-abbe-a0886959eeac} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3060302328-456549250-2804008892-1001\...\MountPoints2: {fc9f34b7-0b87-11ea-abbe-a0886959eeac} - "E:\HiSuiteDownLoader.exe" GroupPolicy: Ograniczenia ? <==== UWAGA FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0A8CCEA6-7A0C-4CB2-AA9B-100EB0F247F6} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23772552 2020-05-08] (Microsoft Corporation -> Microsoft Corporation) Task: {14989065-CCC9-4D47-89CC-82A27B72E5C2} - System32\Tasks\klcp_update Task: {266B9C62-8980-4775-B8F5-2476920E7186} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [23571128 2020-05-01] (Piriform Software Ltd -> Piriform Software Ltd) Task: {453ADABC-91F3-498F-9AA7-691A89511956} - System32\Tasks\Driver Booster SkipUAC (toshiba) Task: {4B384727-F9B7-4755-843A-1AC32441C28C} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-05-01] (Piriform Software Ltd -> Piriform Software Ltd) Task: {4BCDAE9C-F69A-4560-8B77-DEEC0CCE2B8C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23772552 2020-05-08] (Microsoft Corporation -> Microsoft Corporation) Task: {591248E9-249D-4E83-A363-1FC8F1F3F058} - System32\Tasks\Adobe Acrobat Update Task Task: {5C1DDA00-A9E8-4850-A4EC-F1FF27DE4B6C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe [485944 2020-05-20] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {66BE37DF-128C-45C4-9A36-B8C651B45D4A} - System32\Tasks\Adobe Flash Player NPAPI Notifier Task: {69981330-205E-4D9B-A638-643EAE5F608B} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [127176 2020-05-07] (Mozilla Corporation -> Mozilla Foundation) Task: {6C47003C-B0ED-4740-A9E3-A9D151EB4AA5} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [124752 2020-05-21] (Microsoft Corporation -> Microsoft Corporation) Task: {7ED145C4-673F-40B3-AC37-63DA056FCCB9} - System32\Tasks\Adobe Flash Player Updater Task: {A1855C06-55F5-4494-B493-DD5794FD2BCD} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [124752 2020-05-21] (Microsoft Corporation -> Microsoft Corporation) Task: {A29BD69D-2334-4D88-A9B9-225A785B6145} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe [485944 2020-05-20] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C0CF8171-413F-4CE0-BCFA-EF894D1E8DE1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe [485944 2020-05-20] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E1B4A9BE-2999-4E47-94DD-B88E767A526C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MpCmdRun.exe [485944 2020-05-20] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F4661E8C-0183-4A90-8289-160FC8FE60ED} - System32\Tasks\toshiba (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{9849aec9-bdd9-4480-9cdc-b5d1863b2abc}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-3060302328-456549250-2804008892-1001\Software\Microsoft\Internet Explorer\Main,Local Page = HKU\S-1-5-21-3060302328-456549250-2804008892-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://google.pl HKU\S-1-5-21-3060302328-456549250-2804008892-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://google.pl SearchScopes: HKU\S-1-5-21-3060302328-456549250-2804008892-1001 -> DefaultScope {A91837E9-F15A-4260-83F5-A5130D47583F} URL = hxxp://www.web-pl.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-3060302328-456549250-2804008892-1001 -> {A91837E9-F15A-4260-83F5-A5130D47583F} URL = hxxp://www.web-pl.com/search?q={searchTerms} BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-05-21] (Microsoft Corporation -> Microsoft Corporation) BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2020-02-12] () [Brak podpisu cyfrowego] BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2020-02-12] () Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-05-21] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-05-21] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-05-21] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-05-21] (Microsoft Corporation -> Microsoft Corporation) Edge: ====== DownloadDir: C:\Users\toshiba\Desktop Edge HomeButtonPage: HKU\S-1-5-21-3060302328-456549250-2804008892-1001 -> about:start FireFox: ======== FF DefaultProfile: b8vpogn1.default FF ProfilePath: C:\Users\toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\b8vpogn1.default [2020-05-21] FF user.js: detected! => C:\Users\toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\b8vpogn1.default\user.js [2019-12-04] FF NewTab: Mozilla\Firefox\Profiles\b8vpogn1.default -> hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10420__190105 FF Extension: (Avast Online Security) - C:\Users\toshiba\AppData\Roaming\Mozilla\Firefox\Profiles\b8vpogn1.default\Extensions\wrc@avast.com.xpi [2019-01-05] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Extension: (Brak nazwy) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2020-02-12] [Brak podpisu cyfrowego] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_321.dll [2020-01-25] (Adobe Inc. -> ) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_321.dll [2020-01-25] (Adobe Inc. -> ) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-05-21] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.) Chrome: ======= CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [10612592 2020-05-07] (Microsoft Corporation -> Microsoft Corporation) S4 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2018-12-12] (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [541896 2018-07-20] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373712 2018-04-17] (Intel(R) pGFX -> Intel Corporation) S4 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [915832 2020-02-12] (McAfee, LLC -> McAfee, Inc.) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [287240 2018-03-29] (Synaptics Incorporated -> Synaptics Incorporated) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\NisSrv.exe [3304992 2020-05-20] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2004.6-0\MsMpEng.exe [103376 2020-05-20] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [31816 2018-07-20] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronic Corp.) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2018-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2018-07-20] (Martin Malik - REALiX -> REALiX(tm)) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [136720 2018-07-20] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) R1 MpKslDrv; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E9163620-8284-46FE-8804-2AC11570B966}\MpKslDrv.sys [43232 2020-05-21] (Microsoft Windows -> Microsoft Corporation) R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3586072 2018-07-20] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) R3 QIOMem; C:\WINDOWS\System32\drivers\QIOMem.sys [22736 2015-05-28] (WDKTestCert 1,130752733198717037 -> TOSHIBA) R3 RSP2STOR; C:\WINDOWS\System32\drivers\RtsP2Stor.sys [329664 2018-07-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1106256 2018-07-20] (Realtek Semiconductor Corp. -> Realtek ) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [54792 2018-03-29] (Synaptics Incorporated -> Synaptics Incorporated) R3 Thotkey; C:\WINDOWS\System32\drivers\Thotkey.sys [54424 2015-07-29] (TOSHIBA CORPORATION -> Toshiba Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45960 2020-05-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [394680 2020-05-20] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [64944 2020-05-20] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-05-21 18:46 - 2020-05-21 18:46 - 000017408 _____ C:\WINDOWS\SysWOW64\rpcnetp.dll 2020-05-21 18:21 - 2020-05-21 18:21 - 002286080 _____ (Farbar) C:\Users\toshiba\Downloads\FRST64(1).exe 2020-05-21 18:20 - 2020-05-21 18:20 - 000000000 ____D C:\WINDOWS\PCHEALTH 2020-05-21 17:38 - 2020-05-21 17:38 - 000002513 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2020-05-21 17:38 - 2020-05-21 17:38 - 000002501 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2020-05-21 17:38 - 2020-05-21 17:38 - 000002486 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2020-05-21 17:38 - 2020-05-21 17:38 - 000002483 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2020-05-21 17:38 - 2020-05-21 17:38 - 000002480 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2020-05-21 17:38 - 2020-05-21 17:38 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2020-05-21 17:38 - 2020-05-21 17:38 - 000002437 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2020-05-21 17:38 - 2020-05-21 17:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2020-05-21 17:33 - 2020-05-21 17:33 - 000000000 ____D C:\Program Files\Microsoft Office 15 2020-05-21 16:53 - 2020-05-21 16:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeyFinder 2020-05-21 16:53 - 2020-05-21 16:53 - 000000000 ____D C:\Program Files (x86)\Magical Jelly Bean 2020-05-21 16:52 - 2020-05-21 16:52 - 000928232 _____ (Magical Jelly Bean ) C:\Users\toshiba\Downloads\KeyFinderInstaller.exe 2020-05-21 15:18 - 2020-05-21 15:22 - 000027615 _____ C:\Users\toshiba\Downloads\Addition.txt 2020-05-21 15:16 - 2020-05-21 18:50 - 000000000 ____D C:\FRST 2020-05-21 15:16 - 2020-05-21 15:22 - 000021190 _____ C:\Users\toshiba\Downloads\FRST.txt 2020-05-21 12:54 - 2020-05-21 12:55 - 000000000 ____D C:\AdwCleaner 2020-05-20 22:29 - 2020-05-20 22:31 - 000000266 __RSH C:\ProgramData\ntuser.pol 2020-05-20 22:26 - 2020-05-20 22:26 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2020-05-20 22:04 - 2020-05-20 22:04 - 000001961 _____ C:\ProgramData\Microsoft\Windows\Start Menu\SmartAudio.lnk 2020-05-20 22:00 - 2020-05-20 22:00 - 000133488 ____C C:\Users\toshiba\Documents\cc_20200520_220039.reg 2020-05-20 21:42 - 2020-05-20 21:42 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2020-05-20 21:42 - 2020-05-20 21:42 - 000002892 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2020-05-20 21:42 - 2020-05-20 21:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2020-05-20 21:42 - 2020-05-20 21:42 - 000000000 ____D C:\Program Files\CCleaner 2020-05-20 21:41 - 2020-05-20 21:41 - 000000683 ____C C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2020-05-20 21:41 - 2020-05-20 21:41 - 000000000 ____D C:\Users\toshiba\AppData\Local\ESET 2020-04-21 23:12 - 2020-04-21 23:12 - 000000858 ____C C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox Installer.lnk ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-05-21 18:48 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-05-21 18:48 - 2018-07-20 13:27 - 000000000 ___DC C:\Users\toshiba\AppData\LocalLow\Mozilla 2020-05-21 18:46 - 2019-11-20 13:29 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-05-21 18:46 - 2019-11-20 13:19 - 000447488 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-05-21 18:46 - 2018-07-20 12:53 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2020-05-21 18:46 - 2018-07-20 12:53 - 000000000 __SHD C:\Users\toshiba\IntelGraphicsProfiles 2020-05-21 18:46 - 2018-07-20 12:44 - 000073232 _____ (Absolute Software Corp.) C:\WINDOWS\SysWOW64\rpcnet.dll 2020-05-21 18:46 - 2018-07-20 12:28 - 000029976 _____ C:\WINDOWS\system32\wpbbin.exe 2020-05-21 18:46 - 2018-07-20 12:28 - 000017408 ____N C:\WINDOWS\SysWOW64\rpcnetp.exe 2020-05-21 18:46 - 2018-07-20 12:28 - 000017408 _____ C:\WINDOWS\system32\rpcnetp.exe 2020-05-21 18:41 - 2019-03-19 06:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2020-05-21 18:23 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-05-21 18:19 - 2019-11-20 13:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-05-21 17:38 - 2018-07-20 13:34 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2020-05-21 17:37 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF 2020-05-21 17:33 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2020-05-21 17:24 - 2018-07-20 13:34 - 000000000 ___DC C:\Users\toshiba\AppData\Local\Microsoft Help 2020-05-21 15:50 - 2019-11-20 13:27 - 001678734 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-05-21 15:50 - 2019-03-19 14:23 - 000748958 _____ C:\WINDOWS\system32\perfh015.dat 2020-05-21 15:50 - 2019-03-19 14:23 - 000144570 _____ C:\WINDOWS\system32\perfc015.dat 2020-05-21 15:08 - 2018-08-09 09:54 - 000000000 ___DC C:\Users\toshiba\AppData\Local\PlaceholderTileLogoFolder 2020-05-21 12:59 - 2018-07-20 13:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Toshiba 2020-05-21 12:55 - 2018-07-20 12:45 - 000000000 ___DC C:\Users\toshiba\AppData\Roaming\IObit 2020-05-20 22:36 - 2018-07-20 13:22 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-05-20 22:31 - 2019-01-05 14:19 - 000000000 ___DC C:\Users\toshiba\AppData\Local\CrashDumps 2020-05-20 22:29 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2020-05-20 22:29 - 2017-09-29 15:46 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2020-05-20 22:26 - 2019-12-08 15:53 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2020-05-20 22:26 - 2018-07-20 13:22 - 000001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2020-05-20 22:25 - 2018-07-20 15:16 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2020-05-20 22:17 - 2018-07-20 12:44 - 000073232 ____N (Absolute Software Corp.) C:\WINDOWS\SysWOW64\rpcnet.exe 2020-05-20 22:16 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps 2020-05-20 22:16 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-05-20 22:11 - 2019-01-05 14:02 - 000000000 ____D C:\ProgramData\AVAST Software 2020-05-20 22:10 - 2018-07-20 12:34 - 000000000 ___DC C:\Users\toshiba\AppData\Local\Packages 2020-05-20 22:09 - 2019-12-04 16:10 - 000000000 ____D C:\Users\toshiba\AppData\Roaming\DAEMON Tools Lite 2020-05-20 22:09 - 2019-12-04 16:09 - 000000000 ____D C:\ProgramData\DAEMON Tools Lite 2020-05-20 22:02 - 2018-07-20 14:14 - 000000000 ____D C:\WINDOWS\system32\SRSLabs 2020-05-20 22:00 - 2019-11-20 13:29 - 000003382 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3060302328-456549250-2804008892-1001 2020-05-20 22:00 - 2019-11-20 13:21 - 000002413 ____C C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-05-20 22:00 - 2018-07-20 13:50 - 000744808 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2020-05-20 22:00 - 2018-07-20 12:36 - 000000000 ___RD C:\Users\toshiba\OneDrive 2020-05-20 21:59 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2020-05-20 21:59 - 2019-01-13 23:57 - 000000000 ___DC C:\Users\toshiba\AppData\Roaming\MPC-HC 2020-05-20 21:39 - 2020-03-31 17:18 - 000000000 ___DC C:\Users\toshiba\AppData\LocalLow\uTorrent 2020-05-20 21:39 - 2019-01-22 15:24 - 000000000 ___DC C:\Users\toshiba\AppData\Local\ChomikBox 2020-05-20 21:38 - 2019-03-15 17:05 - 000000000 ___DC C:\Users\toshiba\AppData\Local\BitTorrentHelper 2020-05-20 21:38 - 2019-01-22 15:25 - 000000000 ____D C:\Users\toshiba\.gstreamer-0.10 2020-05-20 21:38 - 2018-10-02 12:35 - 000000000 ___DC C:\Users\toshiba\AppData\Local\D3DSCache 2020-05-20 21:14 - 2019-11-20 13:21 - 000000000 ____D C:\Users\toshiba 2020-05-05 20:17 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2020-04-29 20:36 - 2019-03-08 21:26 - 000000000 ___DC C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox 2020-04-28 19:01 - 2020-03-21 12:41 - 000000000 ___DC C:\Users\toshiba\Documents\Nowy folder 2020-04-28 15:38 - 2019-03-08 21:26 - 000000254 ____C C:\Users\toshiba\AppData\LocalLow\rbxcsettings.rbx 2020-04-28 15:35 - 2019-03-08 21:26 - 000000000 ___DC C:\Users\toshiba\AppData\Local\Roblox 2020-04-28 14:39 - 2019-01-22 15:15 - 000001875 ____C C:\Users\toshiba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================